Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Alles rund um Windows (https://www.trojaner-board.de/alles-rund-um-windows/)
-   -   Windows 10 | Hartnäckiger Schädling trotz Win-neuinstallation | Streaming-Anwendungen betroffen (https://www.trojaner-board.de/196232-windows-10-hartnaeckiger-schaedling-trotz-win-neuinstallation-streaming-anwendungen-betroffen.html)

NotADutchGuy 21.08.2019 23:44

Windows 10 | Hartnäckiger Schädling trotz Win-neuinstallation | Streaming-Anwendungen betroffen
 
Hallo Zusammen,

ich fasse kurz zusammen, wie sich mein Problem bemerkbar macht und was ich bisher unternommen habe, am Ende befinden sich noch die logs (Edit: zu Groß für einen Beitrag) :kaffee:

Das Problem:
Bei gängigen Streaming-Anwendungen wie Youtube oder Twitch (auch in der Desktop-Version) hängt sich die Wiedergabe nach einiger Zeit ohne mein Zutun auf. Zu sehen ist dann bei Videos ein Standbild mit Ladesymbol. Es kann weiterhin zu anderen Zeitpunken im Video per Mausklick gesprungen werden, jedoch lädt auch hier nur ein Standbild. Ein wenig Buffer wird in der unteren Leiste auch angezeigt, lädt jedoch nicht weiter. Dieser Zustand lässt sich anscheinend durch mehrfaches springen im Video provozieren. Da das Phänomen jedoch auch ohne meine Einwirkung auftritt möchte ich damit nicht leben.

Meine Ansätze:
Zunächst einmal habe ich versucht das Problem durch folgende Punkte zu beheben:
  • Wechsel zwischen HTML5 und Flash player Wiedergabe
  • Wechsel zu verschiedenen Browsern (Firefox, Chrome und Edge)
  • Deaktiveren der Hardwarebeschleunigung im Browser
  • De- und Neuinstallation des Adobe Flash Players
Alles erfolglos. Lediglich ein Neustart des Computers hilft das Symptom vorrübergehend zu beseitigen. Wie ich zugeben muss habe ich bevor das Problem auftrat mindestens eine etwas Fragwürdige Seite besucht. Somit kann ich einen Virenbefall nicht ausschließen. Um etwaigen Viren Herr zu werden, habe ich dann den "Königsweg" gewählt, da mein System eh schon länger läuft und einige Anwendungen es etwas langsam gemacht haben. Sprich, ich habe eine suabere Neuinstallation von Windows versucht :killpc:. Hierfür habe ich mir das MediaCreationTool auf einen USB stick geladen und von diesem gebootet. Leider führte dies vor allem dazu, dass ich erst einmal festsaß, da Windows nicht direkt installiert werden konnte. Die Festplatten Partitionen wurden nicht richtig erkannt. Daraufhin habe ich mit GParted alle Partitionen gelöscht, die Festplatten formatiert und neu Partitionert. Nun konnte ich mit dem USB-Stick Windows neu auf meiner SSD installieren.

Ich war zunächst glücklich, da das Problem am ersten Tag behoben schien. Einen Tag später trat es nun jedoch wieder auf. Wesshalb ich professionelle Hilfe brauche. Falls sich herrausstellt, dass mein System tatsächlich Virenfrei ist, sowie es mein aktueller Virenscann berichtet (siehe Log weiter unten), dann ist mir wenigstens in sofern geholfen, dass ich mir keine Sorgen um sensible Daten machen muss.

Vielen Dank für jegliche Unterstützung :dankeschoen:

Logs:
ESET online scanner
Code:

8/22/2019 0:21:12 AM
Geprüfte Dateien: 172646
Infizierte Dateien: 0
Gesäuberte Bedrohungen: 0
Prüfdauer gesamt: 00:26:52
Prüfstatus: Abgeschlossen

FRST 1/2
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2019
Ran by Admin (administrator) on DESKTOP-LKF0I57 (22-08-2019 00:21:51)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 10 Home Version 1903 18362.295 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\protectedservice.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.RealTimeOptimizer.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\VolPanlu.exe
(Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe
(Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(ESET, spol. s r.o. -> ESET spol. s r.o.) D:\DownloadsII\ESETOnlineScanner_DEU.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18114.19418.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.263_none_5f1fc00458f64d76\TiWorker.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Creative SB Monitoring Utility Launcher] => C:\Windows\system32\SBAVMonL.dll [68104 2018-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [99048 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [330008 2019-08-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [VolPanel] => E:\Use\creative\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd) [File not signed]
HKLM-x32\...\Run: [Module Loader] => C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-24] (Creative Technology Ltd.) [File not signed]
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [601784 2019-07-17] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Spotify] => C:\Users\Admin\AppData\Roaming\Spotify\Spotify.exe [25932192 2019-08-20] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Steam] => E:\Games\Steam\steam.exe [3210528 2019-08-13] (Valve -> Valve Corporation)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-08] (Discord Inc. -> Discord Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.100\Installer\chrmstp.exe [2019-08-21] (Google LLC -> Google LLC)
Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-08-20]
ShortcutTarget: Twitch.lnk -> C:\Users\Admin\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {03B18AC2-7A95-4318-ADED-339249595498} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1EC7CB99-2453-4680-9721-282B2B4D3C86} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2756136 2019-07-31] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {4300A120-1955-425D-B2E8-D5E3FD858FED} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {45BBB28A-8E3E-4D02-8EA7-B9A105078BB8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {507D8577-C77E-479E-8C91-B5990A0A391D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_238_Plugin.exe [1457208 2019-08-21] (Adobe Inc. -> Adobe)
Task: {58BEFD65-5E96-4CFB-B2EA-D114105E5172} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {62AD70E2-9F84-44CC-825D-7412B478F992} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6FE6541C-2F66-49CD-8FE2-5D04F883A2B5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {855D0230-50D2-458B-8267-AEC114C91B0B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8A448A44-C950-427F-AB1F-3F9B71DABD8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {912FF747-015B-40AA-88B0-344A999FD003} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {985446C6-9FBB-4320-81A4-F7501E8FEBAC} - System32\Tasks\AviraSystemSpeedupUpdate => C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [26060672 2019-08-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG )
Task: {9CD84509-ECB0-4172-BE3B-23ED027CF124} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-08-21] (Adobe Inc. -> Adobe)
Task: {B6934253-6321-4662-8A5F-672B50511B2F} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent => {61f77d5e-afe9-400b-a5e6-e9e80fc8e601} C:\Windows\System32\RDXTaskFactory.dll [415744 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {BE908194-F114-4DD4-A6A3-3FC4CC9DB0E3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F45D87CF-4E54-4CCE-A6A1-6410CF1C5791} - System32\Tasks\Opera scheduled Autoupdate 1566311716 => C:\Users\Admin\AppData\Local\Programs\Opera\launcher.exe [1348632 2019-08-16] (Opera Software AS -> Opera Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{d7e09eb4-7029-4455-bd3b-69ea158b61fb}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================

FireFox:
========
FF DefaultProfile: 8m8buwld.default
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\8m8buwld.default [2019-08-20]
FF Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\8m8buwld.default\Extensions\passwordmanager@avira.com [2019-08-20]
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\k2mkt33j.default-release [2019-08-22]
FF DownloadDir: D:\DownloadsII
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll [2019-08-21] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll [2019-08-21] (Adobe Inc. -> )
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-08-22] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-08-22] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)

Chrome:
=======
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2019-08-21]
CHR Extension: (Präsentationen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-21]
CHR Extension: (Docs) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-21]
CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-21]
CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-21]
CHR Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2019-08-21]
CHR Extension: (Tabellen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-21]
CHR Extension: (Google Docs Offline) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-21]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-08-21]
CHR Extension: (Google Mail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-21]
CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-21]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx

Opera:
=======
OPR Extension: (Avira Browser Safety) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-08-20]
OPR Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg [2019-08-20]
OPR Extension: (Free Avira Phantom VPN – Unblock Websites) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcgkmkjdikhiodinhloioejnpjgmfigd [2019-08-20]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1206520 2019-08-05] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntivirProtectedService; C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe [533816 2019-07-31] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [482288 2019-07-31] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [482288 2019-07-31] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [422056 2019-08-05] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [453408 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2982312 2019-08-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [382216 2019-08-07] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [103840 2019-07-03] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8577760 2019-08-20] (BattlEye Innovations e.K. -> )
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2019-08-20] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AthDfu; C:\Windows\System32\Drivers\AthDfu.sys [55336 2012-08-22] (Atheros Communications Inc. -> Windows (R) Win 7 DDK provider)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [78936 2019-06-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S0 avelam; C:\Windows\System32\drivers\avelam.sys [22336 2019-03-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [199008 2019-07-22] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [196328 2019-07-16] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [46704 2019-03-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [89736 2019-03-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [45472 2019-03-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R3 BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [610336 2016-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros)
R3 ksaud; C:\Windows\system32\drivers\ksaud.sys [2116616 2018-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ce1961376673184c\nvlddmkm.sys [15600248 2017-08-22] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Ph3xIB64; C:\Windows\system32\DRIVERS\Ph3xIB64.sys [1418112 2007-04-03] (Microsoft Windows Hardware Compatibility Publisher -> Philips Semiconductors GmbH)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc. -> Razer Inc)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


NotADutchGuy 21.08.2019 23:51

Windows 10 | Hartnäckiger Schädling trotz Win-neuinstallation | Streaming-Anwendungen betroffen 2/3
 
Zweiter Teil des FRST Logs zum o.g. Beitrag

FRST 2/2
Code:

==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-22 00:21 - 2019-08-22 00:21 - 000000306 _____ C:\Users\Admin\Desktop\ESETscan.txt
2019-08-21 23:21 - 2019-08-21 23:21 - 000025170 _____ C:\Users\Admin\Desktop\Addition.txt
2019-08-21 23:20 - 2019-08-22 00:22 - 000024270 _____ C:\Users\Admin\Desktop\FRST.txt
2019-08-21 23:19 - 2019-08-22 00:21 - 000000000 ____D C:\FRST
2019-08-21 23:19 - 2019-08-21 23:19 - 001612800 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2019-08-21 22:59 - 2019-08-21 23:06 - 000000000 ____D C:\Users\Admin\AppData\Local\Google
2019-08-21 22:59 - 2019-08-21 22:59 - 000003630 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-21 22:59 - 2019-08-21 22:59 - 000003506 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-21 22:59 - 2019-08-21 22:59 - 000002369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-08-21 22:59 - 2019-08-21 22:59 - 000002328 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-08-21 22:59 - 2019-08-21 22:59 - 000000000 ____D C:\Program Files (x86)\Google
2019-08-21 22:57 - 2019-08-21 22:57 - 000004536 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-08-21 22:57 - 2019-08-21 22:57 - 000004370 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-08-21 22:57 - 2019-08-21 22:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Macromedia
2019-08-21 22:57 - 2019-08-21 22:57 - 000000000 ____D C:\Users\Admin\AppData\Local\Adobe
2019-08-21 22:30 - 2019-08-21 23:37 - 000000649 _____ C:\Users\Admin\Desktop\ESET Online Scanner.lnk
2019-08-21 22:30 - 2019-08-21 22:30 - 000000718 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-08-21 22:30 - 2019-08-21 22:30 - 000000000 ____D C:\Users\Admin\AppData\Local\ESET
2019-08-21 10:38 - 2019-08-21 10:46 - 000000000 ____D C:\Windows\system32\MRT
2019-08-21 10:38 - 2019-08-21 10:38 - 134272480 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-08-21 02:05 - 2019-08-21 01:08 - 000000000 ____D C:\Windows\Panther
2019-08-21 01:17 - 2019-08-21 01:17 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ___HD C:\Users\Admin\MicrosoftEdgeBackups
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ____D C:\Users\Admin\AppData\Local\MicrosoftEdge
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ____D C:\Program Files\Common Files\Atheros
2019-08-21 01:16 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Publishers
2019-08-21 01:16 - 2019-08-20 17:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-08-21 01:16 - 2019-08-20 17:00 - 000000000 ___RD C:\Users\Admin\3D Objects
2019-08-21 01:15 - 2019-08-21 21:25 - 000000000 ____D C:\ProgramData\NVIDIA
2019-08-21 01:15 - 2019-08-21 01:16 - 000000000 ____D C:\Users\Admin\AppData\Local\ConnectedDevicesPlatform
2019-08-21 01:15 - 2019-08-21 01:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2019-08-21 01:15 - 2019-08-21 01:15 - 000000000 ____D C:\Users\Admin\AppData\Local\VirtualStore
2019-08-21 01:15 - 2019-08-20 19:17 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-21 01:15 - 2019-08-20 18:28 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-08-21 01:15 - 2019-08-20 18:27 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-21 01:15 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2019-08-21 01:15 - 2017-11-09 13:43 - 000540784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-08-21 01:15 - 2017-11-09 13:43 - 000446392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-08-21 01:15 - 2017-09-18 08:55 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2019-08-21 01:15 - 2017-08-22 01:10 - 006463424 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 002479224 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000549312 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000082040 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2019-08-21 01:15 - 2017-08-19 09:10 - 008142301 _____ C:\Windows\system32\nvcoproc.bin
2019-08-21 01:14 - 2019-08-21 01:14 - 000000020 ___SH C:\Users\Admin\ntuser.ini
2019-08-21 01:14 - 2019-08-20 16:18 - 000002367 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-08-21 01:14 - 2019-08-20 16:18 - 000000000 ____D C:\Users\Admin
2019-08-21 01:14 - 2017-11-09 13:38 - 001997752 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438813.dll
2019-08-21 01:14 - 2017-11-09 13:38 - 001682544 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438813.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 004210360 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 001615448 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 000617232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 000218712 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2019-08-21 01:14 - 2017-08-22 03:01 - 000046453 _____ C:\Windows\system32\nvinfo.pb
2019-08-21 01:13 - 2019-08-21 10:31 - 000840848 _____ C:\Windows\system32\PerfStringBackup.INI
2019-08-21 01:12 - 2007-04-03 19:30 - 001418112 _____ (Philips Semiconductors GmbH) C:\Windows\system32\Drivers\Ph3xIB64.sys
2019-08-21 01:12 - 2007-04-03 19:27 - 000015872 _____ (Philips Semiconductors GmbH) C:\Windows\system32\Ph3xIB64MV.dll
2019-08-21 01:11 - 2019-08-21 01:11 - 000000000 ____D C:\ProgramData\USOShared
2019-08-21 01:11 - 2019-07-09 03:48 - 002874368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2019-08-21 01:09 - 2019-08-21 01:09 - 000000000 _SHDL C:\Documents and Settings
2019-08-21 01:09 - 2019-08-21 01:09 - 000000000 ____D C:\Windows\minidump
2019-08-21 01:06 - 2019-08-21 21:54 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-08-21 01:06 - 2019-08-21 01:06 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2019-08-21 01:06 - 2019-08-21 01:06 - 000000000 ____D C:\Windows\system32\Drivers\wd
2019-08-21 01:06 - 2019-08-21 01:06 - 000000000 ____D C:\Windows\ServiceProfiles
2019-08-21 01:06 - 2019-08-20 19:17 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-08-21 01:06 - 2019-08-20 16:58 - 000257904 _____ C:\Windows\system32\FNTCACHE.DAT
2019-08-21 00:19 - 2019-08-21 00:19 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2019-08-20 22:58 - 2019-08-20 22:58 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Wizards Of The Coast
2019-08-20 22:56 - 2019-08-20 22:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTG Arena
2019-08-20 22:55 - 2019-08-20 22:56 - 000000749 _____ C:\Users\Admin\Desktop\MTG Arena.lnk
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Public\Documents\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\Documents\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\AppData\Roaming\NVIDIA
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\AppData\Roaming\helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Program Files\Common Files\VST3
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files\MSBuild
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-08-20 22:19 - 2019-03-02 02:31 - 001166488 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2019-08-20 22:19 - 2019-03-02 02:31 - 000124568 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2019-08-20 22:19 - 2019-03-02 02:31 - 000035592 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2019-08-20 22:19 - 2019-02-06 03:41 - 000778912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2019-08-20 22:19 - 2019-02-06 03:41 - 000103072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-08-20 22:19 - 2019-02-06 03:41 - 000035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2019-08-20 19:30 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\UnrealEngine
2019-08-20 19:30 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\TslGame
2019-08-20 19:29 - 2019-08-20 19:29 - 000000000 ____D C:\Users\Admin\AppData\Local\BattlEye
2019-08-20 19:25 - 2010-06-02 13:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 002526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2019-08-20 19:25 - 2008-07-31 19:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2019-08-20 19:25 - 2008-07-31 19:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2019-08-20 19:25 - 2008-07-10 20:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2019-08-20 19:25 - 2008-05-30 23:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2019-08-20 19:25 - 2008-05-30 23:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2019-08-20 19:25 - 2008-05-30 23:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2019-08-20 19:25 - 2008-05-30 23:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2019-08-20 19:25 - 2008-05-30 23:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2019-08-20 19:25 - 2008-03-06 01:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2019-08-20 19:25 - 2008-03-06 01:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2019-08-20 19:25 - 2008-03-06 01:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2019-08-20 19:25 - 2008-02-06 08:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2019-08-20 19:25 - 2008-02-06 08:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2019-08-20 19:25 - 2007-10-22 12:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2019-08-20 19:25 - 2007-10-22 12:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2019-08-20 19:25 - 2007-10-22 12:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2019-08-20 19:25 - 2007-10-22 12:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2019-08-20 19:25 - 2007-10-02 18:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2019-08-20 19:25 - 2007-10-02 18:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2019-08-20 19:25 - 2007-07-20 09:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2019-08-20 19:25 - 2007-07-20 09:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2019-08-20 19:25 - 2007-06-21 05:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2019-08-20 19:25 - 2007-06-21 05:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2019-08-20 19:25 - 2007-04-05 03:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2019-08-20 19:25 - 2007-04-05 03:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2019-08-20 19:25 - 2007-04-05 03:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2019-08-20 19:25 - 2007-04-05 03:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2019-08-20 19:25 - 2007-03-16 01:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2019-08-20 19:25 - 2007-03-16 01:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2019-08-20 19:25 - 2007-03-05 21:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2019-08-20 19:25 - 2007-03-05 21:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2019-08-20 19:25 - 2007-01-25 00:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2019-08-20 19:25 - 2007-01-25 00:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2019-08-20 19:25 - 2006-12-08 21:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2019-08-20 19:25 - 2006-12-08 21:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2019-08-20 19:25 - 2006-09-29 01:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2019-08-20 19:25 - 2006-07-28 18:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2019-08-20 19:25 - 2006-05-31 16:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2019-08-20 19:25 - 2006-05-31 16:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2019-08-20 19:25 - 2006-03-31 21:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2019-08-20 19:25 - 2006-03-31 21:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2019-08-20 19:25 - 2006-03-31 21:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2019-08-20 19:25 - 2006-02-03 17:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2019-08-20 19:25 - 2006-02-03 17:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2019-08-20 19:25 - 2006-02-03 17:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2019-08-20 19:25 - 2006-02-03 17:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2019-08-20 19:25 - 2006-02-03 17:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2019-08-20 19:25 - 2006-02-03 17:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2019-08-20 19:25 - 2005-12-06 03:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2019-08-20 19:25 - 2005-12-06 03:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2019-08-20 19:25 - 2005-07-23 04:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2019-08-20 19:25 - 2005-07-23 04:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2019-08-20 19:25 - 2005-05-27 00:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2019-08-20 19:25 - 2005-05-27 00:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2019-08-20 19:25 - 2005-03-19 02:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2019-08-20 19:25 - 2005-03-19 02:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2019-08-20 19:25 - 2005-02-06 04:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2019-08-20 19:25 - 2005-02-06 04:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2019-08-20 19:24 - 2019-08-20 19:24 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2019-08-20 19:15 - 2019-08-20 19:17 - 000000000 ____D C:\ProgramData\Razer
2019-08-20 19:15 - 2019-08-20 19:16 - 000000000 ____D C:\Program Files (x86)\Razer
2019-08-20 19:15 - 2019-08-20 19:15 - 000000000 ____D C:\Users\Admin\AppData\Local\Razer
2019-08-20 19:15 - 2019-08-20 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2019-08-20 18:20 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA Corporation
2019-08-20 18:20 - 2019-08-20 18:20 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2019-08-20 18:14 - 2019-08-20 18:27 - 000004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2019-08-20 18:27 - 000004000 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2019-08-20 18:27 - 000003940 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2017-10-11 03:05 - 001796032 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2019-08-20 18:14 - 2017-10-11 03:05 - 001577920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2019-08-20 18:14 - 2017-10-11 03:05 - 000918976 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2019-08-20 18:14 - 2017-08-22 03:01 - 001755256 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2019-08-20 18:14 - 2017-08-22 03:01 - 001317496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2019-08-20 18:13 - 2019-08-20 18:27 - 000003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003696 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-08-20 18:13 - 2017-10-11 03:05 - 000186304 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2019-08-20 18:13 - 2017-10-11 03:05 - 000152512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2019-08-20 18:13 - 2017-10-11 01:26 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2019-08-20 18:12 - 2019-08-20 18:12 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2019-08-20 18:12 - 2017-08-22 00:33 - 000135800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2019-08-20 18:12 - 2017-06-15 21:32 - 000541984 _____ C:\Windows\system32\vulkan-1.dll
2019-08-20 18:12 - 2017-06-15 21:32 - 000525088 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-08-20 18:12 - 2017-06-15 21:32 - 000254240 _____ C:\Windows\system32\vulkaninfo.exe
2019-08-20 18:12 - 2017-06-15 21:32 - 000233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-08-20 18:07 - 2017-10-11 03:05 - 000057792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2019-08-20 18:07 - 2017-10-11 03:05 - 000050624 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2019-08-20 18:07 - 2017-08-22 03:01 - 040240248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 035924600 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 035314112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 029019072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 023132184 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 018849456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 013782904 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 012225984 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 011692344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 010072768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 004162496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 003712024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 003590592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001988216 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438541.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001597888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438541.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001292096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001068152 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001008816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001004992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000972736 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000924280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000781544 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000725112 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000690320 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000609728 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000584312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000578056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000499320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000045976 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2019-08-20 18:07 - 2017-08-22 03:01 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2019-08-20 18:03 - 2019-08-20 18:03 - 000007599 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
2019-08-20 18:02 - 2019-08-20 19:32 - 000000000 ____D C:\Users\Admin\AppData\Roaming\discord
2019-08-20 18:02 - 2019-08-20 18:02 - 000002237 _____ C:\Users\Admin\Desktop\Discord.lnk
2019-08-20 18:02 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2019-08-20 18:02 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-08-20 18:01 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Local\SquirrelTemp
2019-08-20 18:01 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord
2019-08-20 17:26 - 2019-08-20 17:26 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-20 17:25 - 2019-08-20 17:26 - 000000000 ____D C:\SteamLibrary2
2019-08-20 17:21 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Steam
2019-08-20 17:21 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\CEF
2019-08-20 17:20 - 2019-08-20 17:20 - 000000653 _____ C:\Users\Public\Desktop\Steam.lnk
2019-08-20 17:20 - 2019-08-20 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-20 17:03 - 2019-08-20 17:03 - 000000000 ____D C:\Users\Admin\AppData\Local\Avira
2019-08-20 17:01 - 2019-08-20 17:01 - 000000000 ____D C:\ProgramData\Creative
2019-08-20 17:00 - 2019-08-20 17:00 - 000000000 ____D C:\Windows\System32\Tasks\Avira
2019-08-20 16:55 - 2019-08-20 16:55 - 025901056 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 022625280 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 019849216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 018017792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 008012288 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007753728 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007174656 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007008768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 006218752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 005916160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 004481024 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 004129616 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-08-20 16:55 - 2019-08-20 16:55 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-08-20 16:55 - 2019-08-20 16:55 - 002494440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002398720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002175288 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002132520 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001788944 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001608192 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001510952 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001505080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001493392 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001391416 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 001343488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001301504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001297720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001244728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001234944 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001124864 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001106288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001072144 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001059840 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000996352 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000829776 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000800568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000782120 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000774664 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000740352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000684544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000664576 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000633344 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000541696 _____ (Microsoft Corporation) C:\Windows\system32\ResourceMapper.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000521728 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000437760 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000428544 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\system32\curl.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\DispBroker.Desktop.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\SysWOW64\curl.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000353280 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000316432 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000300176 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000210448 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000163328 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000145936 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\WinHvPlatform.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000110080 _____ C:\Windows\system32\ResBParser.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000093104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000084488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000021544 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 017785856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 014814208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 009926672 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 007890256 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007832896 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007600448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007277568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007251808 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006518184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006403072 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006226864 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006071432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006059520 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005941760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005753944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005087744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004562904 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 004552376 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 004537344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004470784 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004012032 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003915536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 003750912 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003735264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003724800 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 003698176 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003590672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 003550720 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003372744 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003141120 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003104768 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003084288 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002990096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002798080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002771752 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002764040 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002724352 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002586608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002550792 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002449432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002448384 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002306048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002282496 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002258640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002249216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002120488 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002113536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002094592 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002081976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002032640 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001999648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001954960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001912576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001884200 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001840968 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001822720 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001754240 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-08-20 16:54 - 2019-08-20 16:54 - 001748480 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001724928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001717776 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001697280 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001661544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001657856 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001654520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001647280 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001633864 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001616824 _____ (Microsoft Corporation) C:\Windows\system32\ttdrecordcpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001611416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001562112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001535288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001531992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001509936 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001505808 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001497088 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001488384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001458176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001437184 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 001423872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001413904 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001413328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001408000 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001393960 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-08-20 16:54 - 2019-08-20 16:54 - 001364480 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001337872 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001334064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdrecordcpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001332736 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001301008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 001262016 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001259008 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001249920 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001244672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001213240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001182240 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001178608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001171968 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001154960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001146880 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001098240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Signals.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001084728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001079296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001065984 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001056704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001037312 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001020768 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001007120 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000977688 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000975360 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000957952 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000947200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000940736 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000913408 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000913168 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000910848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000893440 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000892488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000889664 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000876560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000875008 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000864768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000864256 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000844800 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000842552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000830976 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000821904 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000818688 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000818656 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000817152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000811160 _____ C:\Windows\SysWOW64\locale.nls
2019-08-20 16:54 - 2019-08-20 16:54 - 000811160 _____ C:\Windows\system32\locale.nls
2019-08-20 16:54 - 2019-08-20 16:54 - 000810496 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000804880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000800048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000796088 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000777528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000773680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000771584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000752792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000748032 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000731448 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000730112 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000729088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000728576 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000706760 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000691712 _____ (Microsoft Corporation) C:\Windows\system32\LockController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000680760 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000674816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000672944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000652288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000642208 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000639608 _____ (Microsoft Corporation) C:\Windows\system32\msvcp_win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000634880 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000613392 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000610816 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000606112 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000602224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000598016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000590336 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000589592 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000588256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000587776 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000586760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000574976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000562176 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000551736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000551424 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000544576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000539648 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-08-20 16:54 - 2019-08-20 16:54 - 000531456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000524216 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000518144 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000515448 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000511008 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000509440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000500992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp_win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000481592 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000478800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000477712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\webauthn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000450400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000441584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000441360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000437776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000416008 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000415232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2019-08-20 16:54 - 2019-08-20 16:54 - 000406528 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000395776 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000388096 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000386320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\AppLockerCSP.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webauthn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000375512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000373248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000350208 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000343104 _____ (Microsoft Corporation) C:\Windows\system32\ttdwriter.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000336960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000334728 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WiFiDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000310072 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000292352 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdwriter.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283144 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\directxdatabaseupdater.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000258048 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000255488 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ManagePhone.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000249656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000248320 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000244736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\VideoHandlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Gpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000225320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000218624 _____ (Microsoft Corporation) C:\Windows\system32\dxgiadaptercache.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000210400 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000208400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000207872 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000202256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000201232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000199688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000180240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000162384 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000161632 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000159232 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000157752 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000144376 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000135480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000135000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000132912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000127280 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000123920 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000106536 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000098592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000089328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000088560 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000088488 _____ (Microsoft Corporation) C:\Windows\system32\coloradapterclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000087048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000072816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzautoupdate.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\coloradapterclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000063504 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidspi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000047200 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\devauthe.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000046632 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\appidtel.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000023352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000020728 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnlsres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\winnlsres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\applockerfltr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2019-08-20 16:47 - 2019-08-20 16:47 - 000000000 ___HD C:\Program Files (x86)\Creative Installation Information
2019-08-20 16:47 - 2014-04-17 20:06 - 000175104 ____N (Creative Technology Ltd) C:\Windows\system32\CtUsAs64.DLL
2019-08-20 16:47 - 2014-04-17 20:06 - 000163840 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CtUsAsio.DLL
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\Program Files\Creative
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\Program Files (x86)\Creative
2019-08-20 16:46 - 2019-08-20 16:46 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Creative
2019-08-20 16:46 - 2018-10-31 00:26 - 001905768 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSAPO32.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000740224 _____ (Creative Technology Ltd) C:\Windows\KSAIM64.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000496648 _____ (Creative Technology Ltd.) C:\Windows\system32\JDetect.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000465928 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000434192 _____ (Creative Technology Ltd.) C:\Windows\system32\KSDGFX64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000397320 _____ (Creative Technology Ltd.) C:\Windows\system32\KSWrap64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000342536 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000296456 _____ (Creative Technology Ltd.) C:\Windows\system32\KSPPLD64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000292872 _____ (Creative Technology Ltd.) C:\Windows\system32\KSPPCn64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000124936 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000068104 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMonL.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000051720 _____ (Creative Technology Ltd.) C:\Windows\AddCat.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000040663 _____ C:\Windows\system32\ksaud.ini
2019-08-20 16:46 - 2018-10-31 00:26 - 000033378 _____ C:\Windows\system32\MixerDefault.reg
2019-08-20 16:46 - 2018-10-31 00:26 - 000018927 _____ C:\Windows\KSAPO64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000017391 _____ C:\Windows\KSAPO32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008895 _____ C:\Windows\KSDGFX64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008727 _____ C:\Windows\KSWrap64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008463 _____ C:\Windows\KSDGFX32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008319 _____ C:\Windows\KSWrap32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000001772 _____ C:\ProgramData\cfSB1095B.ini
2019-08-20 16:46 - 2018-10-17 22:50 - 000088576 ____N (Creative Technology Ltd) C:\Windows\system32\CTOPT399.dll
2019-08-20 16:46 - 2018-10-17 22:50 - 000079360 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CTOPT399.dll
2019-08-20 16:46 - 2018-10-17 22:50 - 000006951 ____N C:\Windows\system32\CTOPT399.cat
2019-08-20 16:46 - 2018-10-17 22:50 - 000006855 ____N C:\Windows\SysWOW64\CTOPT399.cat
2019-08-20 16:46 - 2018-10-04 23:30 - 000053952 _____ C:\Windows\system32\kschimp.ini
2019-08-20 16:46 - 2016-04-04 19:30 - 000053216 _____ C:\Windows\ksaudENG.reg
2019-08-20 16:46 - 2008-12-23 05:13 - 000061440 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CTChkAud.dll
2019-08-20 16:46 - 2008-12-23 05:13 - 000049664 ____N (Creative Technology Ltd) C:\Windows\system32\CTChkAud.dll
2019-08-20 16:46 - 2006-10-06 22:17 - 000053248 ____N (Creative Technology Ltd ) C:\Windows\Ctregrun.exe
2019-08-20 16:46 - 2003-06-13 08:25 - 000007062 _____ C:\Windows\SysWOW64\audiopid.vxd
2019-08-20 16:46 - 2000-05-23 00:58 - 000647872 ____N (Microsoft Corporation) C:\Windows\SysWOW64\Mscomct2.ocx
2019-08-20 16:44 - 2019-08-20 16:47 - 000000258 ___RH C:\Windows\ctfile.rfc
2019-08-20 16:44 - 2019-08-20 16:47 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-08-20 16:44 - 2018-06-20 23:17 - 000089600 _____ C:\Windows\system32\CmdRtr64.DLL
2019-08-20 16:44 - 2018-06-20 23:16 - 000364032 _____ C:\Windows\system32\APOMgr64.DLL
2019-08-20 16:44 - 2018-06-20 23:16 - 000074240 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2019-08-20 16:44 - 2018-06-20 23:15 - 000273920 _____ C:\Windows\SysWOW64\APOMngr.DLL
2019-08-20 16:37 - 2019-08-21 22:21 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Spotify
2019-08-20 16:37 - 2019-08-21 22:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Spotify
2019-08-20 16:37 - 2019-08-20 16:37 - 000001836 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2019-08-20 16:36 - 2019-08-21 22:21 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Twitch
2019-08-20 16:36 - 2019-08-20 16:36 - 000000958 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2019-08-20 16:36 - 2019-08-20 16:36 - 000000000 ____D C:\ProgramData\Twitch
2019-08-20 16:35 - 2019-08-20 16:35 - 000004206 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1566311716
2019-08-20 16:35 - 2019-08-20 16:35 - 000001381 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2019-08-20 16:35 - 2019-08-20 16:35 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Opera Software
2019-08-20 16:35 - 2019-08-20 16:35 - 000000000 ____D C:\Users\Admin\AppData\Local\Opera Software
2019-08-20 16:34 - 2019-08-20 16:34 - 000003374 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2019-08-20 16:34 - 2019-08-20 16:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2019-08-20 16:34 - 2019-08-20 16:34 - 000000000 ____D C:\Users\Public\PrivacyPal Sessions
2019-08-20 16:34 - 2019-07-22 17:26 - 000199008 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2019-08-20 16:34 - 2019-07-16 01:31 - 000196328 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2019-08-20 16:34 - 2019-06-08 00:09 - 000078936 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avdevprot.sys
2019-08-20 16:34 - 2019-03-21 03:50 - 000089736 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2019-08-20 16:34 - 2019-03-21 03:50 - 000046704 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2019-08-20 16:34 - 2019-03-21 03:50 - 000045472 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys
2019-08-20 16:34 - 2019-03-21 03:50 - 000022336 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avelam.sys
2019-08-20 16:33 - 2019-08-21 20:21 - 000000000 ____D C:\Users\Public\Speedup Sessions
2019-08-20 16:33 - 2019-08-20 16:33 - 000003788 _____ C:\Windows\System32\Tasks\AviraSystemSpeedupUpdate
2019-08-20 16:32 - 2019-08-20 16:32 - 000000000 ____D C:\Users\Admin\AppData\Local\Comms
2019-08-20 16:32 - 2019-08-20 16:32 - 000000000 ____D C:\ProgramData\Packages
2019-08-20 16:29 - 2019-08-21 22:57 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Users\Admin\AppData\Local\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\ProgramData\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-20 16:28 - 2019-08-20 16:28 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2019-08-20 16:24 - 2019-08-20 19:25 - 000000000 ____D C:\ProgramData\Package Cache
2019-08-20 16:24 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder
2019-08-20 16:24 - 2019-08-20 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2019-08-20 16:24 - 2019-08-20 16:34 - 000000000 ____D C:\ProgramData\Avira
2019-08-20 16:24 - 2019-08-20 16:34 - 000000000 ____D C:\Program Files (x86)\Avira
2019-08-20 16:18 - 2019-08-20 16:18 - 000003380 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3732841643-3434763762-1894371783-1001
2019-08-20 16:18 - 2019-08-20 16:18 - 000000000 ___RD C:\Users\Admin\OneDrive

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-22 00:20 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-08-21 23:20 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2019-08-21 22:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-08-21 22:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Macromed
2019-08-21 20:24 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\appcompat
2019-08-21 10:39 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-08-21 10:39 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\AppReadiness
2019-08-21 02:05 - 2019-03-19 06:49 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2019-08-21 01:15 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\Help
2019-08-21 01:14 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2019-08-21 01:13 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-08-21 01:11 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\spool
2019-08-21 01:11 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\FxsTmp
2019-08-21 01:06 - 2019-03-19 06:37 - 000032768 _____ C:\Windows\system32\config\ELAM
2019-08-20 22:20 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\CbsTemp
2019-08-20 19:17 - 2019-03-19 06:37 - 000524288 _____ C:\Windows\system32\config\BBI
2019-08-20 18:23 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\servicing
2019-08-20 16:58 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\TextInput
2019-08-20 16:58 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SystemResources
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\PrintDialog
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\oobe
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ShellExperiences
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\bcastdvr
2019-08-20 16:34 - 2019-03-19 06:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-08-20 16:32 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ServiceState

==================== Files in the root of some directories ================

2019-08-20 18:03 - 2019-08-20 18:03 - 000007599 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================


NotADutchGuy 21.08.2019 23:53

Windows 10 | Hartnäckiger Schädling trotz Win-neuinstallation | Streaming-Anwendungen betroffen 3/3
 
Dritter und letzter Teil meiner Logs
Ich hoffe ich habe mit dieser Aufteilung das richtige gemacht :confused:


Addition
Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-08-2019
Ran by Admin (22-08-2019 00:22:53)
Running from C:\Users\Admin\Desktop
Windows 10 Home Version 1903 18362.295 (X64) (2019-08-20 23:09:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-3732841643-3434763762-1894371783-1001 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-3732841643-3434763762-1894371783-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3732841643-3434763762-1894371783-503 - Limited - Disabled)
Guest (S-1-5-21-3732841643-3434763762-1894371783-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3732841643-3434763762-1894371783-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.238 - Adobe)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 385.41 - NVIDIA Corporation) Hidden
Avira (HKLM-x32\...\{21a0516b-5dd7-4dee-9d36-85ebdc37aa45}) (Version: 1.2.135.51949 - Avira Operations GmbH & Co. KG)
Avira (HKLM-x32\...\{42F08141-3F60-46FF-A5B4-08C4783DACFE}) (Version: 1.2.135.51949 - Avira Operations GmbH & Co. KG) Hidden
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.1908.1548 - Avira Operations GmbH & Co. KG)
Avira Phantom VPN (HKLM-x32\...\Avira Phantom VPN) (Version: 2.28.3.20557 - Avira Operations GmbH & Co. KG)
Avira Privacy Pal (HKLM-x32\...\{F2BC8305-DFBE-4C02-A906-9BBD8EE299A3}_is1) (Version: 2.0.1.1909 - Avira Operations GmbH & Co. KG)
Avira Software Updater (HKLM-x32\...\{9A748448-7435-49AD-B175-087292C52A2E}) (Version: 2.0.6.17105 - Avira Operations GmbH & Co. KG)
Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 6.2.0.10728 - Avira Operations GmbH & Co. KG)
Creative ASIO (USB) (HKLM-x32\...\Creative_ASIO(USB)) (Version: 1.00 - Creative Technology Limited)
Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
Discord (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.05 - Creative Technology Limited)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.100 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Helm (HKLM\...\{971514BD-7CC3-414F-9258-B79E6D53EC46}) (Version: 0.9.0.0 - Matt Tytel)
Microsoft OneDrive (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\OneDriveSetup.exe) (Version: 19.123.0624.0005 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Mozilla Firefox 68.0.2 (x64 de) (HKLM\...\Mozilla Firefox 68.0.2 (x64 de)) (Version: 68.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.2 - Mozilla)
MTG Arena (HKLM-x32\...\{72DBDCDA-AFF1-4F79-A64B-1DCB92FA00BE}) (Version: 0.1.1622 - Wizards of the Coast)
NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 385.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 385.41 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation)
NVIDIA Graphics Driver 385.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 385.41 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Opera Stable 63.0.3368.35 (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Opera 63.0.3368.35) (Version: 63.0.3368.35 - Opera Software)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.24.1 - Razer Inc.)
Sound Blaster X-Fi Surround 5.1 Pro (HKLM-x32\...\{05627579-2BA6-4DA2-8243-0EEF752EF14B}) (Version: 1.0 - Creative Technology Limited)
Spotify (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Spotify) (Version: 1.1.12.451.gdb77255f - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Twitch (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)

Packages:
=========
Farm Heroes Saga -> C:\Program Files\WindowsApps\king.com.FarmHeroesSaga_5.21.5.0_x86__kgqvnymyfvs32 [2019-08-20] (king.com)
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11029.20108.0_x64__8wekyb3d8bbwe [2019-08-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2019-08-21] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.2.11280.0_x86__8wekyb3d8bbwe [2019-08-21] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2019-08-21] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2019-08-05] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [SystemSpeedupFilesMenu] -> {14cb2bd0-2375-3d10-9b5d-5e18865c8959} => C:/Program Files (x86)/Avira/System Speedup/Avira.SystemSpeedup.UI.ShellExtension.DLL [2019-08-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers4: [SystemSpeedupFoldersMenu] -> {700866bb-c8e9-3e71-b359-abb28baed0e8} => C:/Program Files (x86)/Avira/System Speedup/Avira.SystemSpeedup.UI.ShellExtension.DLL [2019-08-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-08-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [SystemSpeedupDesktopMenu] -> {0cab5786-30e8-3185-9b3b-ccefbf1b8afe} => C:/Program Files (x86)/Avira/System Speedup/Avira.SystemSpeedup.UI.ShellExtension.DLL [2019-08-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2019-08-05] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-08-20 16:44 - 2018-06-20 23:16 - 000364032 _____ () [File not signed] C:\Windows\SYSTEM32\APOMgr64.DLL
2019-08-20 16:44 - 2018-06-20 23:17 - 000089600 _____ () [File not signed] C:\Windows\SYSTEM32\CmdRtr64.DLL
2019-08-20 16:46 - 2004-11-17 02:06 - 000065536 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\CTAudSeu.dll
2019-08-20 16:46 - 2006-06-08 01:23 - 000126976 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCHIDUSB.dll
2019-08-20 16:46 - 2009-10-22 02:36 - 000163840 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\ctcadi.dll
2019-08-20 16:46 - 2009-03-19 01:00 - 000151552 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTCadiEP.dll
2019-08-20 16:46 - 2013-05-06 23:47 - 000573440 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTRice.dll
2019-08-20 16:46 - 2011-08-11 00:00 - 000249856 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\DBACSU.dll
2019-08-20 16:46 - 2007-02-01 20:13 - 000061440 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.dll
2019-08-20 16:46 - 2009-02-23 20:41 - 000413696 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTAudEp.dll
2019-08-20 16:46 - 2008-01-11 19:10 - 000065536 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTAudSeu.dll
2019-08-20 16:46 - 2005-01-07 02:26 - 000053248 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTIniFu.dll
2019-08-20 16:46 - 2007-03-07 23:07 - 000176128 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTThemeU.dll
2019-08-20 16:46 - 2006-04-01 02:26 - 000335872 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl.sku
2019-08-20 16:46 - 2007-03-07 23:56 - 000151552 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl2.sku
2019-08-20 16:46 - 2006-05-05 02:11 - 000110592 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl3.sku
2019-08-20 16:46 - 2006-03-29 01:21 - 000114757 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\RtxCtrl.sku
2019-08-20 16:46 - 2008-12-29 20:25 - 000077824 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\VolPanel.crl
2019-08-20 16:46 - 2007-12-14 02:36 - 000077824 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll
2019-08-20 16:46 - 2007-05-05 00:27 - 000233472 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\OSD\PanelSvc.dll
2019-08-20 16:46 - 2009-03-16 23:55 - 000020480 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\AudSet.crl
2019-08-20 16:46 - 2009-12-22 00:14 - 000065536 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXCADI.DLL
2019-08-20 16:46 - 2009-04-03 23:50 - 000036963 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXMod.dll
2019-08-20 16:46 - 2010-02-04 19:35 - 000241664 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCCADIIR.dll
2019-08-20 16:46 - 2009-09-17 02:59 - 000009728 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.CRL
2019-08-20 16:46 - 2009-12-16 19:24 - 000323584 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.dll
2019-08-20 16:46 - 2012-10-16 22:47 - 000417792 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTPresetW.dll
2019-08-20 16:46 - 2005-11-23 19:28 - 000040960 ____N (Creative Technology Ltd.) [File not signed] E:\Use\creative\Volume Panel\CtrlSrcU.dll
2019-08-21 22:31 - 2019-08-21 23:37 - 001195008 _____ (ESET) [File not signed] C:\Users\Admin\AppData\Local\ESET\ESETOnlineScanner\esets_apiW_a.DLL
2019-08-20 18:12 - 2017-08-22 00:33 - 000758472 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI.dll
2019-08-20 18:12 - 2017-08-22 00:33 - 000873136 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll
2019-08-20 18:13 - 2017-08-22 00:33 - 000339256 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\_nvstapisvr64.dll
2019-08-20 16:34 - 2019-08-20 16:34 - 000913920 _____ (ServiceStack) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\ServiceStack.Text\5ad58918918fd4354f732fe85db9287b\ServiceStack.Text.ni.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Admin\Application Data:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\Control Panel\Desktop\\Wallpaper -> D:\DownloadsII\nasa-Q1p7bh3SHj8-unsplash.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{83B2FE38-1C6C-4137-8FB1-CAFC0A932EBE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{65F5610D-9A89-48AD-9217-6BACF96FD59D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{35036508-18BB-4E6C-A5EE-A19D764D5AE9}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{404B5C2F-1561-4A1E-BF44-B96D86DD835C}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A1488A3E-2600-427A-B2BD-FF12A7AAB461}] => (Allow) E:\Games\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{F1A98407-D8AC-410F-9741-D8A972A47D50}] => (Allow) E:\Games\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{89CECA15-8FC9-4C47-8059-C4E6C9EC524E}] => (Allow) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{1D0C752E-8151-45AD-ABDA-7B60D6B0C29A}] => (Allow) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B7889AA4-B3D4-4690-ACDC-35BF0B3E73BE}] => (Allow) C:\SteamLibrary2\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{CC346B2B-ADA5-4546-9249-F8C9E46A225E}] => (Allow) C:\SteamLibrary2\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{95006BDC-3A1E-4F06-A10C-2499A0816468}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
FirewallRules: [{08005EB6-1C22-42D5-B3C2-ED9CE75A478F}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
FirewallRules: [{84C5F245-254D-4142-BF89-1F998FB1032B}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
FirewallRules: [TCP Query User{C90DF290-CED8-48AA-8570-1F284BFA2FC9}C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [UDP Query User{D1950129-56A1-4819-85B2-C8874F5C9357}C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [TCP Query User{EDEF2D72-6EB4-473B-BF83-FE9FCB82C2CC}E:\games\magic\mtga\mtga.exe] => (Allow) E:\games\magic\mtga\mtga.exe (Wizards of the Coast, LLC -> )
FirewallRules: [UDP Query User{DFFFBBA7-EBE2-4F42-8610-215DC4C2CBF9}E:\games\magic\mtga\mtga.exe] => (Allow) E:\games\magic\mtga\mtga.exe (Wizards of the Coast, LLC -> )
FirewallRules: [{34940C52-8FAD-49DD-AB44-018AD6E21F03}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:111.22 GB) (Free:47.85 GB) (43%)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/21/2019 08:35:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Avira.SystemSpeedup.Maintenance.exe, version: 6.2.0.10728, time stamp: 0x5d5519ea
Faulting module name: clr.dll, version: 4.8.3815.0, time stamp: 0x5cdb7147
Exception code: 0xc0000409
Fault offset: 0x0060c428
Faulting process id: 0x3d94
Faulting application start time: 0x01d5584f3721bff9
Faulting application path: C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Maintenance.exe
Faulting module path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
Report Id: 7b7cdad8-fe93-4de7-a208-17084dbfd600
Faulting package full name:
Faulting package-relative application ID:

Error: (08/21/2019 12:19:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TwitchUI.exe, version: 3.0.16.0, time stamp: 0x5c82efc5
Faulting module name: TwitchUI.exe, version: 3.0.16.0, time stamp: 0x5c82efc5
Exception code: 0xc0000005
Fault offset: 0x011540e9
Faulting process id: 0x2868
Faulting application start time: 0x01d5577b5175fbb2
Faulting application path: C:\Users\Admin\AppData\Roaming\Twitch\Bin\Electron\TwitchUI.exe
Faulting module path: C:\Users\Admin\AppData\Roaming\Twitch\Bin\Electron\TwitchUI.exe
Report Id: fc2e3211-42ed-476a-8429-7998e7c0f54a
Faulting package full name:
Faulting package-relative application ID:

Error: (08/20/2019 05:00:33 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: User hive is loaded by another process (Registry Lock) Process name: C:\Windows\System32\svchost.exe, PID: 2028, ProfSvc PID: 2000.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.


System errors:
=============
Error: (08/21/2019 11:38:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (08/21/2019 11:38:14 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys

Error: (08/21/2019 11:38:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (08/21/2019 11:38:13 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys

Error: (08/21/2019 11:38:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (08/21/2019 11:38:13 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys

Error: (08/21/2019 11:38:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (08/21/2019 11:38:13 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys


==================== Memory info ===========================

BIOS: American Megatrends Inc. 3509 08/22/2012
Motherboard: ASUSTeK Computer INC. P8P67 DELUXE
Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz
Percentage of memory in use: 45%
Total physical RAM: 12255.13 MB
Available physical RAM: 6688.81 MB
Total Virtual: 14687.13 MB
Available Virtual: 7951.36 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.22 GB) (Free:47.85 GB) NTFS
Drive d: (Data) (Fixed) (Total:464.06 GB) (Free:462.53 GB) NTFS
Drive e: (System) (Fixed) (Total:467.45 GB) (Free:460.28 GB) NTFS

\\?\Volume{e1bd966a-0000-0000-0000-100000000000}\ (System Reserved) (Fixed) (Total:0.57 GB) (Free:0.14 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: E1BD966A)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================


cosinus 22.08.2019 00:33

Alles gut. Hab die Beiträge wieder zusammengefasst, aber oh gott...:eek:...erstmal muss dieses Schlangenöl von Avira runter. Das ist einfach nur kontraproduktives Zeugs was dir und deinem Rechner schadet.

NotADutchGuy 22.08.2019 19:17

Danke erst mal für das Zusammenfügen.

Ich habe Avira gleich mal entfernt. Die normal Windows deinstallations sollte da hoffentlich genug sein. Nun teste ich ob sich das Problem noch zeigt. Ich melde mich, sobald ich neus weiß und füge dann auch gleich die neuen FRST logs ein

cosinus 23.08.2019 07:57

Ich brauche neue FRST-Logs . Haken setzen bei addition.txt dann auf Untersuchen klicken.

http://www.trojaner-board.de/picture...&pictureid=611

NotADutchGuy 25.08.2019 00:38

Hi,

so da ist sie dahin, meine glückseeligkeit ohne Störungen.

Hier meine neuen logs:

FRST 1/2
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-08-2019
Ran by Admin (administrator) on DESKTOP-LKF0I57 (25-08-2019 01:31:05)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 10 Home Version 1903 18362.295 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\VolPanlu.exe
(Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe
(Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19051.16210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11906.1001.24.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.1003.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.1003.0_x64__8wekyb3d8bbwe\GameBarFT.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Games\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Creative SB Monitoring Utility Launcher] => C:\Windows\system32\SBAVMonL.dll [68104 2018-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
HKLM-x32\...\Run: [VolPanel] => E:\Use\creative\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd) [File not signed]
HKLM-x32\...\Run: [Module Loader] => C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-24] (Creative Technology Ltd.) [File not signed]
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [601784 2019-07-17] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Spotify] => C:\Users\Admin\AppData\Roaming\Spotify\Spotify.exe [25932192 2019-08-20] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Steam] => E:\Games\Steam\steam.exe [3210528 2019-08-13] (Valve -> Valve Corporation)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-08] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\Mozilla Firefox\firefox.exe [583200 2019-08-13] (Mozilla Corporation -> Mozilla Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.100\Installer\chrmstp.exe [2019-08-21] (Google LLC -> Google LLC)
Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-08-20]
ShortcutTarget: Twitch.lnk -> C:\Users\Admin\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {03B18AC2-7A95-4318-ADED-339249595498} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {285D4D97-E1C8-4489-80DB-4AF5C8ABFB18} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {30149628-8FFC-415B-B262-75CB6AD206D6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4300A120-1955-425D-B2E8-D5E3FD858FED} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {45BBB28A-8E3E-4D02-8EA7-B9A105078BB8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {507D8577-C77E-479E-8C91-B5990A0A391D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_238_Plugin.exe [1457208 2019-08-21] (Adobe Inc. -> Adobe)
Task: {58BEFD65-5E96-4CFB-B2EA-D114105E5172} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {62AD70E2-9F84-44CC-825D-7412B478F992} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6FE6541C-2F66-49CD-8FE2-5D04F883A2B5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {79626262-C4D0-4433-9F25-694EAC08ED05} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {855D0230-50D2-458B-8267-AEC114C91B0B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8A448A44-C950-427F-AB1F-3F9B71DABD8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {912FF747-015B-40AA-88B0-344A999FD003} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {92B65946-0A33-4BEE-8A98-2331E3808D0E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9CD84509-ECB0-4172-BE3B-23ED027CF124} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-08-21] (Adobe Inc. -> Adobe)
Task: {B6934253-6321-4662-8A5F-672B50511B2F} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent => {61f77d5e-afe9-400b-a5e6-e9e80fc8e601} C:\Windows\System32\RDXTaskFactory.dll [415744 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {BE908194-F114-4DD4-A6A3-3FC4CC9DB0E3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F45D87CF-4E54-4CCE-A6A1-6410CF1C5791} - System32\Tasks\Opera scheduled Autoupdate 1566311716 => C:\Users\Admin\AppData\Local\Programs\Opera\launcher.exe [1348632 2019-08-16] (Opera Software AS -> Opera Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{d7e09eb4-7029-4455-bd3b-69ea158b61fb}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================

FireFox:
========
FF DefaultProfile: 8m8buwld.default
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\8m8buwld.default [2019-08-20]
FF Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\8m8buwld.default\Extensions\passwordmanager@avira.com [2019-08-20]
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\k2mkt33j.default-release [2019-08-25]
FF DownloadDir: D:\DownloadsII
FF Session Restore: Mozilla\Firefox\Profiles\k2mkt33j.default-release -> is enabled.
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\k2mkt33j.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-08-23]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll [2019-08-21] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll [2019-08-21] (Adobe Inc. -> )
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-08-22] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-08-22] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)

Chrome:
=======
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2019-08-21]
CHR Extension: (Präsentationen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-21]
CHR Extension: (Docs) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-21]
CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-21]
CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-21]
CHR Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2019-08-21]
CHR Extension: (Tabellen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-21]
CHR Extension: (Google Docs Offline) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-21]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-08-21]
CHR Extension: (Google Mail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-21]
CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-21]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx

Opera:
=======
OPR Extension: (Avira Browser Safety) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-08-20]
OPR Extension: (Avira Password Manager) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg [2019-08-20]
OPR Extension: (Free Avira Phantom VPN – Unblock Websites) - C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcgkmkjdikhiodinhloioejnpjgmfigd [2019-08-20]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8577760 2019-08-20] (BattlEye Innovations e.K. -> )
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2019-08-20] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-08-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AthDfu; C:\Windows\System32\Drivers\AthDfu.sys [55336 2012-08-22] (Atheros Communications Inc. -> Windows (R) Win 7 DDK provider)
R3 BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [610336 2016-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros)
R3 ksaud; C:\Windows\system32\drivers\ksaud.sys [2116616 2018-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ce1961376673184c\nvlddmkm.sys [15600248 2017-08-22] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Ph3xIB64; C:\Windows\system32\DRIVERS\Ph3xIB64.sys [1418112 2007-04-03] (Microsoft Windows Hardware Compatibility Publisher -> Philips Semiconductors GmbH)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc. -> Razer Inc)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [47496 2019-08-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [344288 2019-08-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-22] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


NotADutchGuy 25.08.2019 00:39

FRST 2/2
Code:

==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-25 01:31 - 2019-08-25 01:31 - 000000000 ____D C:\Users\Admin\Desktop\FRST-OlderVersion
2019-08-22 18:21 - 2019-08-22 18:20 - 000741432 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2019-08-22 00:21 - 2019-08-22 00:21 - 000000306 _____ C:\Users\Admin\Desktop\ESETscan.txt
2019-08-21 23:21 - 2019-08-22 00:23 - 000025327 _____ C:\Users\Admin\Desktop\Addition.txt
2019-08-21 23:20 - 2019-08-25 01:31 - 000020126 _____ C:\Users\Admin\Desktop\FRST.txt
2019-08-21 23:19 - 2019-08-25 01:31 - 001612800 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2019-08-21 23:19 - 2019-08-25 01:31 - 000000000 ____D C:\FRST
2019-08-21 22:59 - 2019-08-21 23:06 - 000000000 ____D C:\Users\Admin\AppData\Local\Google
2019-08-21 22:59 - 2019-08-21 22:59 - 000003630 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-21 22:59 - 2019-08-21 22:59 - 000003506 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-21 22:59 - 2019-08-21 22:59 - 000002369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-08-21 22:59 - 2019-08-21 22:59 - 000002328 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-08-21 22:59 - 2019-08-21 22:59 - 000000000 ____D C:\Program Files (x86)\Google
2019-08-21 22:57 - 2019-08-21 22:57 - 000004536 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-08-21 22:57 - 2019-08-21 22:57 - 000004370 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-08-21 22:57 - 2019-08-21 22:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Macromedia
2019-08-21 22:57 - 2019-08-21 22:57 - 000000000 ____D C:\Users\Admin\AppData\Local\Adobe
2019-08-21 22:30 - 2019-08-21 23:37 - 000000649 _____ C:\Users\Admin\Desktop\ESET Online Scanner.lnk
2019-08-21 22:30 - 2019-08-21 22:30 - 000000718 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-08-21 22:30 - 2019-08-21 22:30 - 000000000 ____D C:\Users\Admin\AppData\Local\ESET
2019-08-21 10:38 - 2019-08-21 10:46 - 000000000 ____D C:\Windows\system32\MRT
2019-08-21 10:38 - 2019-08-21 10:38 - 134272480 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-08-21 02:05 - 2019-08-23 02:23 - 000000000 ____D C:\Windows\Panther
2019-08-21 01:17 - 2019-08-21 01:17 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ___HD C:\Users\Admin\MicrosoftEdgeBackups
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ____D C:\Users\Admin\AppData\Local\MicrosoftEdge
2019-08-21 01:16 - 2019-08-21 01:16 - 000000000 ____D C:\Program Files\Common Files\Atheros
2019-08-21 01:16 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Publishers
2019-08-21 01:16 - 2019-08-20 17:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-08-21 01:16 - 2019-08-20 17:00 - 000000000 ___RD C:\Users\Admin\3D Objects
2019-08-21 01:15 - 2019-08-24 21:16 - 000000000 ____D C:\ProgramData\NVIDIA
2019-08-21 01:15 - 2019-08-22 23:46 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2019-08-21 01:15 - 2019-08-21 01:16 - 000000000 ____D C:\Users\Admin\AppData\Local\ConnectedDevicesPlatform
2019-08-21 01:15 - 2019-08-21 01:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2019-08-21 01:15 - 2019-08-21 01:15 - 000000000 ____D C:\Users\Admin\AppData\Local\VirtualStore
2019-08-21 01:15 - 2019-08-20 19:17 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-21 01:15 - 2019-08-20 18:28 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-08-21 01:15 - 2019-08-20 18:27 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-21 01:15 - 2017-11-09 13:43 - 000540784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-08-21 01:15 - 2017-11-09 13:43 - 000446392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-08-21 01:15 - 2017-09-18 08:55 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2019-08-21 01:15 - 2017-08-22 01:10 - 006463424 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 002479224 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000549312 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000082040 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2019-08-21 01:15 - 2017-08-22 01:10 - 000069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2019-08-21 01:15 - 2017-08-19 09:10 - 008142301 _____ C:\Windows\system32\nvcoproc.bin
2019-08-21 01:14 - 2019-08-21 01:14 - 000000020 ___SH C:\Users\Admin\ntuser.ini
2019-08-21 01:14 - 2019-08-20 16:18 - 000002367 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-08-21 01:14 - 2019-08-20 16:18 - 000000000 ____D C:\Users\Admin
2019-08-21 01:14 - 2017-11-09 13:38 - 001997752 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438813.dll
2019-08-21 01:14 - 2017-11-09 13:38 - 001682544 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438813.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 004210360 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 001615448 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 000617232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2019-08-21 01:14 - 2017-08-22 03:01 - 000218712 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2019-08-21 01:14 - 2017-08-22 03:01 - 000046453 _____ C:\Windows\system32\nvinfo.pb
2019-08-21 01:13 - 2019-08-24 21:19 - 000840848 _____ C:\Windows\system32\PerfStringBackup.INI
2019-08-21 01:12 - 2007-04-03 19:30 - 001418112 _____ (Philips Semiconductors GmbH) C:\Windows\system32\Drivers\Ph3xIB64.sys
2019-08-21 01:12 - 2007-04-03 19:27 - 000015872 _____ (Philips Semiconductors GmbH) C:\Windows\system32\Ph3xIB64MV.dll
2019-08-21 01:11 - 2019-08-21 01:11 - 000000000 ____D C:\ProgramData\USOShared
2019-08-21 01:11 - 2019-07-09 03:48 - 002874368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2019-08-21 01:09 - 2019-08-21 01:09 - 000000000 _SHDL C:\Documents and Settings
2019-08-21 01:09 - 2019-08-21 01:09 - 000000000 ____D C:\Windows\minidump
2019-08-21 01:06 - 2019-08-24 22:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-08-21 01:06 - 2019-08-24 10:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-08-21 01:06 - 2019-08-22 18:33 - 000000000 ____D C:\Windows\system32\Drivers\wd
2019-08-21 01:06 - 2019-08-21 01:06 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2019-08-21 01:06 - 2019-08-21 01:06 - 000000000 ____D C:\Windows\ServiceProfiles
2019-08-21 01:06 - 2019-08-20 16:58 - 000257904 _____ C:\Windows\system32\FNTCACHE.DAT
2019-08-21 00:19 - 2019-08-21 00:19 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2019-08-20 22:58 - 2019-08-20 22:58 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Wizards Of The Coast
2019-08-20 22:56 - 2019-08-20 22:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTG Arena
2019-08-20 22:55 - 2019-08-20 22:56 - 000000749 _____ C:\Users\Admin\Desktop\MTG Arena.lnk
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Public\Documents\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\Documents\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\AppData\Roaming\NVIDIA
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Users\Admin\AppData\Roaming\helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Helm
2019-08-20 22:23 - 2019-08-20 22:23 - 000000000 ____D C:\Program Files\Common Files\VST3
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files\MSBuild
2019-08-20 22:19 - 2019-08-20 22:19 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-08-20 22:19 - 2019-03-02 02:31 - 001166488 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2019-08-20 22:19 - 2019-03-02 02:31 - 000124568 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2019-08-20 22:19 - 2019-03-02 02:31 - 000035592 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2019-08-20 22:19 - 2019-02-06 03:41 - 000778912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2019-08-20 22:19 - 2019-02-06 03:41 - 000103072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-08-20 22:19 - 2019-02-06 03:41 - 000035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2019-08-20 19:30 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\UnrealEngine
2019-08-20 19:30 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\TslGame
2019-08-20 19:29 - 2019-08-20 19:29 - 000000000 ____D C:\Users\Admin\AppData\Local\BattlEye
2019-08-20 19:25 - 2010-06-02 13:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2019-08-20 19:25 - 2010-06-02 13:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 002526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2019-08-20 19:25 - 2010-05-26 20:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2019-08-20 19:25 - 2010-02-04 19:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2019-08-20 19:25 - 2009-09-05 02:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2019-08-20 19:25 - 2009-09-05 02:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2019-08-20 19:25 - 2009-03-16 23:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2019-08-20 19:25 - 2009-03-10 00:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2019-08-20 19:25 - 2008-10-27 19:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2019-08-20 19:25 - 2008-10-15 15:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2019-08-20 19:25 - 2008-07-31 19:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2019-08-20 19:25 - 2008-07-31 19:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2019-08-20 19:25 - 2008-07-31 19:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2019-08-20 19:25 - 2008-07-10 20:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2019-08-20 19:25 - 2008-07-10 20:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2019-08-20 19:25 - 2008-05-30 23:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2019-08-20 19:25 - 2008-05-30 23:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2019-08-20 19:25 - 2008-05-30 23:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2019-08-20 19:25 - 2008-05-30 23:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2019-08-20 19:25 - 2008-05-30 23:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2019-08-20 19:25 - 2008-05-30 23:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2019-08-20 19:25 - 2008-05-30 23:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2019-08-20 19:25 - 2008-03-06 01:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2019-08-20 19:25 - 2008-03-06 01:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2019-08-20 19:25 - 2008-03-06 01:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2019-08-20 19:25 - 2008-03-06 01:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2019-08-20 19:25 - 2008-03-06 00:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2019-08-20 19:25 - 2008-02-06 08:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2019-08-20 19:25 - 2008-02-06 08:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2019-08-20 19:25 - 2007-10-22 12:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2019-08-20 19:25 - 2007-10-22 12:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2019-08-20 19:25 - 2007-10-22 12:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2019-08-20 19:25 - 2007-10-22 12:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2019-08-20 19:25 - 2007-10-13 00:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2019-08-20 19:25 - 2007-10-02 18:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2019-08-20 19:25 - 2007-10-02 18:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2019-08-20 19:25 - 2007-07-20 09:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2019-08-20 19:25 - 2007-07-20 09:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2019-08-20 19:25 - 2007-07-20 03:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2019-08-20 19:25 - 2007-06-21 05:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2019-08-20 19:25 - 2007-06-21 05:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2019-08-20 19:25 - 2007-05-17 01:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2019-08-20 19:25 - 2007-04-05 03:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2019-08-20 19:25 - 2007-04-05 03:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2019-08-20 19:25 - 2007-04-05 03:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2019-08-20 19:25 - 2007-04-05 03:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2019-08-20 19:25 - 2007-03-16 01:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2019-08-20 19:25 - 2007-03-16 01:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2019-08-20 19:25 - 2007-03-13 01:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2019-08-20 19:25 - 2007-03-05 21:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2019-08-20 19:25 - 2007-03-05 21:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2019-08-20 19:25 - 2007-01-25 00:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2019-08-20 19:25 - 2007-01-25 00:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2019-08-20 19:25 - 2006-12-08 21:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2019-08-20 19:25 - 2006-12-08 21:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2019-08-20 19:25 - 2006-11-29 22:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2019-08-20 19:25 - 2006-09-29 01:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2019-08-20 19:25 - 2006-09-29 01:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2019-08-20 19:25 - 2006-07-28 18:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2019-08-20 19:25 - 2006-07-28 18:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2019-08-20 19:25 - 2006-05-31 16:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2019-08-20 19:25 - 2006-05-31 16:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2019-08-20 19:25 - 2006-03-31 21:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2019-08-20 19:25 - 2006-03-31 21:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2019-08-20 19:25 - 2006-03-31 21:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2019-08-20 19:25 - 2006-03-31 21:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2019-08-20 19:25 - 2006-02-03 17:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2019-08-20 19:25 - 2006-02-03 17:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2019-08-20 19:25 - 2006-02-03 17:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2019-08-20 19:25 - 2006-02-03 17:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2019-08-20 19:25 - 2006-02-03 17:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2019-08-20 19:25 - 2006-02-03 17:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2019-08-20 19:25 - 2005-12-06 03:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2019-08-20 19:25 - 2005-12-06 03:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2019-08-20 19:25 - 2005-07-23 04:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2019-08-20 19:25 - 2005-07-23 04:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2019-08-20 19:25 - 2005-05-27 00:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2019-08-20 19:25 - 2005-05-27 00:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2019-08-20 19:25 - 2005-03-19 02:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2019-08-20 19:25 - 2005-03-19 02:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2019-08-20 19:25 - 2005-02-06 04:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2019-08-20 19:25 - 2005-02-06 04:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2019-08-20 19:24 - 2019-08-20 19:24 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2019-08-20 19:15 - 2019-08-20 19:17 - 000000000 ____D C:\ProgramData\Razer
2019-08-20 19:15 - 2019-08-20 19:16 - 000000000 ____D C:\Program Files (x86)\Razer
2019-08-20 19:15 - 2019-08-20 19:15 - 000000000 ____D C:\Users\Admin\AppData\Local\Razer
2019-08-20 19:15 - 2019-08-20 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2019-08-20 18:20 - 2019-08-20 19:30 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA Corporation
2019-08-20 18:20 - 2019-08-20 18:20 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2019-08-20 18:14 - 2019-08-20 18:27 - 000004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2019-08-20 18:27 - 000004000 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2019-08-20 18:27 - 000003940 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:14 - 2017-10-11 03:05 - 001796032 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2019-08-20 18:14 - 2017-10-11 03:05 - 001577920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2019-08-20 18:14 - 2017-10-11 03:05 - 000918976 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2019-08-20 18:14 - 2017-08-22 03:01 - 001755256 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2019-08-20 18:14 - 2017-08-22 03:01 - 001317496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2019-08-20 18:14 - 2010-05-26 20:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2019-08-20 18:13 - 2019-08-20 18:27 - 000003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003696 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:27 - 000003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-20 18:13 - 2019-08-20 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-08-20 18:13 - 2017-10-11 03:05 - 000186304 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2019-08-20 18:13 - 2017-10-11 03:05 - 000152512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2019-08-20 18:13 - 2017-10-11 01:26 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2019-08-20 18:12 - 2019-08-20 18:12 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2019-08-20 18:12 - 2017-08-22 00:33 - 000135800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2019-08-20 18:12 - 2017-06-15 21:32 - 000541984 _____ C:\Windows\system32\vulkan-1.dll
2019-08-20 18:12 - 2017-06-15 21:32 - 000525088 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-08-20 18:12 - 2017-06-15 21:32 - 000254240 _____ C:\Windows\system32\vulkaninfo.exe
2019-08-20 18:12 - 2017-06-15 21:32 - 000233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-08-20 18:07 - 2017-10-11 03:05 - 000057792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2019-08-20 18:07 - 2017-10-11 03:05 - 000050624 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2019-08-20 18:07 - 2017-08-22 03:01 - 040240248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 035924600 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 035314112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 029019072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 023132184 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 018849456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 013782904 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 012225984 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 011692344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 010072768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 004162496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 003712024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 003590592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001988216 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438541.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001597888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438541.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001292096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001068152 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001008816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 001004992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000972736 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000924280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000781544 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000725112 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000690320 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000609728 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000584312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000578056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000499320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000045976 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2019-08-20 18:07 - 2017-08-22 03:01 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2019-08-20 18:07 - 2017-08-22 03:01 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2019-08-20 18:03 - 2019-08-20 18:03 - 000007599 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
2019-08-20 18:02 - 2019-08-24 12:00 - 000000000 ____D C:\Users\Admin\AppData\Roaming\discord
2019-08-20 18:02 - 2019-08-20 18:02 - 000002237 _____ C:\Users\Admin\Desktop\Discord.lnk
2019-08-20 18:02 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2019-08-20 18:02 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-08-20 18:01 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Local\SquirrelTemp
2019-08-20 18:01 - 2019-08-20 18:02 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord
2019-08-20 17:26 - 2019-08-20 17:26 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-20 17:25 - 2019-08-20 17:26 - 000000000 ____D C:\SteamLibrary2
2019-08-20 17:21 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Steam
2019-08-20 17:21 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\CEF
2019-08-20 17:20 - 2019-08-20 17:20 - 000000653 _____ C:\Users\Public\Desktop\Steam.lnk
2019-08-20 17:20 - 2019-08-20 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-20 17:03 - 2019-08-20 17:03 - 000000000 ____D C:\Users\Admin\AppData\Local\Avira
2019-08-20 17:01 - 2019-08-20 17:01 - 000000000 ____D C:\ProgramData\Creative
2019-08-20 17:00 - 2019-08-20 17:00 - 000000000 ____D C:\Windows\System32\Tasks\Avira
2019-08-20 16:55 - 2019-08-20 16:55 - 025901056 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 022625280 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 019849216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 018017792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 008012288 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007753728 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007174656 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 007008768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 006218752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 005916160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 004481024 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 004129616 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-08-20 16:55 - 2019-08-20 16:55 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-08-20 16:55 - 2019-08-20 16:55 - 002494440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002398720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002175288 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002132520 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001788944 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001608192 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001510952 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001505080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001493392 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001391416 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 001343488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001301504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001297720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001244728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001234944 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001124864 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001106288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001072144 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 001059840 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000996352 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000829776 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000800568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000782120 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000774664 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000740352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000684544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000664576 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000633344 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000541696 _____ (Microsoft Corporation) C:\Windows\system32\ResourceMapper.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000521728 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000437760 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000428544 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\system32\curl.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\DispBroker.Desktop.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\SysWOW64\curl.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000353280 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000316432 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000300176 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000210448 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000163328 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000145936 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\WinHvPlatform.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000110080 _____ C:\Windows\system32\ResBParser.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000093104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000084488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-08-20 16:55 - 2019-08-20 16:55 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2019-08-20 16:55 - 2019-08-20 16:55 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2019-08-20 16:55 - 2019-08-20 16:55 - 000021544 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 017785856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 014814208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 009926672 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 007890256 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007832896 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007600448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007277568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 007251808 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006518184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006403072 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006226864 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006071432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 006059520 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005941760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005753944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005087744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004562904 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 004552376 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 004537344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004470784 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 004012032 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003915536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 003750912 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003735264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003724800 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 003698176 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003590672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 003550720 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003372744 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003141120 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003104768 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 003084288 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002990096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002798080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002771752 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002764040 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002724352 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 002586608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002550792 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002449432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002448384 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002306048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002282496 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002258640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002249216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002120488 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002113536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002094592 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002081976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 002032640 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001999648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001954960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001912576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001884200 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001840968 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001822720 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001754240 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-08-20 16:54 - 2019-08-20 16:54 - 001748480 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001724928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001717776 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001697280 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001661544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001657856 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001654520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001647280 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001633864 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001616824 _____ (Microsoft Corporation) C:\Windows\system32\ttdrecordcpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001611416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001562112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001535288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001531992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001509936 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001505808 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001497088 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001488384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001458176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001437184 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 001423872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001413904 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001413328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001408000 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001393960 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-08-20 16:54 - 2019-08-20 16:54 - 001364480 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001337872 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001334064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdrecordcpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001332736 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001301008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 001262016 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001259008 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001249920 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001244672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001213240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001182240 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001178608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001171968 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001154960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 001146880 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001098240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Signals.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001084728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001079296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001065984 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001056704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001037312 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001020768 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 001007120 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000977688 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000975360 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000957952 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000947200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000940736 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000913408 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000913168 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000910848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000893440 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000892488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000889664 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000876560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000875008 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000864768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000864256 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000844800 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000842552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000830976 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000821904 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000818688 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000818656 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000817152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000811160 _____ C:\Windows\SysWOW64\locale.nls
2019-08-20 16:54 - 2019-08-20 16:54 - 000811160 _____ C:\Windows\system32\locale.nls
2019-08-20 16:54 - 2019-08-20 16:54 - 000810496 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000804880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000800048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000796088 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000777528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000773680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000771584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000752792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000748032 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000731448 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000730112 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000729088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000728576 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000706760 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000691712 _____ (Microsoft Corporation) C:\Windows\system32\LockController.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000680760 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000674816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000672944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000652288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000642208 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000639608 _____ (Microsoft Corporation) C:\Windows\system32\msvcp_win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000634880 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000613392 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000610816 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000606112 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000602224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000598016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000590336 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000589592 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000588256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000587776 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000586760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000574976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_9.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000562176 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000551736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000551424 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000544576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000539648 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-08-20 16:54 - 2019-08-20 16:54 - 000531456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000524216 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000518144 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000515448 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000511008 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000509440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000500992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp_win.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000481592 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000478800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000477712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\webauthn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000450400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000441584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000441360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000437776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000416008 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000415232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2019-08-20 16:54 - 2019-08-20 16:54 - 000406528 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000395776 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000388096 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000386320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\AppLockerCSP.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webauthn.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000375512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000373248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000350208 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000343104 _____ (Microsoft Corporation) C:\Windows\system32\ttdwriter.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000336960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000334728 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WiFiDisplay.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000310072 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000292352 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdwriter.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283144 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\directxdatabaseupdater.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000258048 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000255488 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ManagePhone.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000249656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000248320 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000244736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\VideoHandlers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Gpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000225320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000218624 _____ (Microsoft Corporation) C:\Windows\system32\dxgiadaptercache.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000210400 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000208400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000207872 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000202256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000201232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000199688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000180240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000162384 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000161632 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000159232 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000157752 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000144376 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000135480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000135000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000132912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Storage.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000127280 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000123920 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000106536 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000098592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000089328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000088560 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000088488 _____ (Microsoft Corporation) C:\Windows\system32\coloradapterclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000087048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000072816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzautoupdate.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\coloradapterclient.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000063504 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidspi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000047200 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\devauthe.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000046632 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2019-08-20 16:54 - 2019-08-20 16:54 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\appidtel.exe
2019-08-20 16:54 - 2019-08-20 16:54 - 000023352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000020728 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnlsres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\winnlsres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000019256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\applockerfltr.sys
2019-08-20 16:54 - 2019-08-20 16:54 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-08-20 16:54 - 2019-08-20 16:54 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2019-08-20 16:47 - 2019-08-20 16:47 - 000000000 ___HD C:\Program Files (x86)\Creative Installation Information
2019-08-20 16:47 - 2014-04-17 20:06 - 000175104 ____N (Creative Technology Ltd) C:\Windows\system32\CtUsAs64.DLL
2019-08-20 16:47 - 2014-04-17 20:06 - 000163840 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CtUsAsio.DLL
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\Program Files\Creative
2019-08-20 16:46 - 2019-08-20 16:47 - 000000000 ____D C:\Program Files (x86)\Creative
2019-08-20 16:46 - 2019-08-20 16:46 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Creative
2019-08-20 16:46 - 2018-10-31 00:26 - 001905768 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSAPO32.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000740224 _____ (Creative Technology Ltd) C:\Windows\KSAIM64.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000496648 _____ (Creative Technology Ltd.) C:\Windows\system32\JDetect.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000465928 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000434192 _____ (Creative Technology Ltd.) C:\Windows\system32\KSDGFX64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000397320 _____ (Creative Technology Ltd.) C:\Windows\system32\KSWrap64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000342536 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000296456 _____ (Creative Technology Ltd.) C:\Windows\system32\KSPPLD64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000292872 _____ (Creative Technology Ltd.) C:\Windows\system32\KSPPCn64.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000124936 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000068104 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMonL.dll
2019-08-20 16:46 - 2018-10-31 00:26 - 000051720 _____ (Creative Technology Ltd.) C:\Windows\AddCat.exe
2019-08-20 16:46 - 2018-10-31 00:26 - 000040663 _____ C:\Windows\system32\ksaud.ini
2019-08-20 16:46 - 2018-10-31 00:26 - 000033378 _____ C:\Windows\system32\MixerDefault.reg
2019-08-20 16:46 - 2018-10-31 00:26 - 000018927 _____ C:\Windows\KSAPO64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000017391 _____ C:\Windows\KSAPO32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008895 _____ C:\Windows\KSDGFX64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008727 _____ C:\Windows\KSWrap64.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008463 _____ C:\Windows\KSDGFX32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000008319 _____ C:\Windows\KSWrap32.hda
2019-08-20 16:46 - 2018-10-31 00:26 - 000001772 _____ C:\ProgramData\cfSB1095B.ini
2019-08-20 16:46 - 2018-10-17 22:50 - 000088576 ____N (Creative Technology Ltd) C:\Windows\system32\CTOPT399.dll
2019-08-20 16:46 - 2018-10-17 22:50 - 000079360 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CTOPT399.dll
2019-08-20 16:46 - 2018-10-17 22:50 - 000006951 ____N C:\Windows\system32\CTOPT399.cat
2019-08-20 16:46 - 2018-10-17 22:50 - 000006855 ____N C:\Windows\SysWOW64\CTOPT399.cat
2019-08-20 16:46 - 2018-10-04 23:30 - 000053952 _____ C:\Windows\system32\kschimp.ini
2019-08-20 16:46 - 2016-04-04 19:30 - 000053216 _____ C:\Windows\ksaudENG.reg
2019-08-20 16:46 - 2008-12-23 05:13 - 000061440 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CTChkAud.dll
2019-08-20 16:46 - 2008-12-23 05:13 - 000049664 ____N (Creative Technology Ltd) C:\Windows\system32\CTChkAud.dll
2019-08-20 16:46 - 2006-10-06 22:17 - 000053248 ____N (Creative Technology Ltd ) C:\Windows\Ctregrun.exe
2019-08-20 16:46 - 2003-06-13 08:25 - 000007062 _____ C:\Windows\SysWOW64\audiopid.vxd
2019-08-20 16:46 - 2000-05-23 00:58 - 000647872 ____N (Microsoft Corporation) C:\Windows\SysWOW64\Mscomct2.ocx
2019-08-20 16:44 - 2019-08-20 16:47 - 000000258 ___RH C:\Windows\ctfile.rfc
2019-08-20 16:44 - 2019-08-20 16:47 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-08-20 16:44 - 2018-06-20 23:17 - 000089600 _____ C:\Windows\system32\CmdRtr64.DLL
2019-08-20 16:44 - 2018-06-20 23:16 - 000364032 _____ C:\Windows\system32\APOMgr64.DLL
2019-08-20 16:44 - 2018-06-20 23:16 - 000074240 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2019-08-20 16:44 - 2018-06-20 23:15 - 000273920 _____ C:\Windows\SysWOW64\APOMngr.DLL
2019-08-20 16:37 - 2019-08-24 21:20 - 000000000 ____D C:\Users\Admin\AppData\Local\Spotify
2019-08-20 16:37 - 2019-08-24 21:16 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Spotify
2019-08-20 16:37 - 2019-08-20 16:37 - 000001836 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2019-08-20 16:36 - 2019-08-24 21:19 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Twitch
2019-08-20 16:36 - 2019-08-20 16:36 - 000000958 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2019-08-20 16:36 - 2019-08-20 16:36 - 000000000 ____D C:\ProgramData\Twitch
2019-08-20 16:35 - 2019-08-20 16:35 - 000004206 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1566311716
2019-08-20 16:35 - 2019-08-20 16:35 - 000001381 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2019-08-20 16:35 - 2019-08-20 16:35 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Opera Software
2019-08-20 16:35 - 2019-08-20 16:35 - 000000000 ____D C:\Users\Admin\AppData\Local\Opera Software
2019-08-20 16:34 - 2019-08-20 16:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2019-08-20 16:34 - 2019-08-20 16:34 - 000000000 ____D C:\Users\Public\PrivacyPal Sessions
2019-08-20 16:32 - 2019-08-22 23:47 - 000000000 ____D C:\ProgramData\Packages
2019-08-20 16:32 - 2019-08-20 16:32 - 000000000 ____D C:\Users\Admin\AppData\Local\Comms
2019-08-20 16:29 - 2019-08-25 01:30 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Users\Admin\AppData\Local\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\ProgramData\Mozilla
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-08-20 16:29 - 2019-08-20 16:29 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-20 16:28 - 2019-08-20 16:28 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2019-08-20 16:24 - 2019-08-22 18:23 - 000000000 ____D C:\Program Files (x86)\Avira
2019-08-20 16:24 - 2019-08-22 18:21 - 000000000 ____D C:\ProgramData\Package Cache
2019-08-20 16:24 - 2019-08-20 17:21 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder
2019-08-20 16:18 - 2019-08-20 16:18 - 000003380 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3732841643-3434763762-1894371783-1001
2019-08-20 16:18 - 2019-08-20 16:18 - 000000000 ___RD C:\Users\Admin\OneDrive

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-24 23:50 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-08-24 23:50 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\AppReadiness
2019-08-24 23:50 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-08-24 21:19 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2019-08-23 23:02 - 2019-03-19 06:37 - 000524288 _____ C:\Windows\system32\config\BBI
2019-08-23 20:23 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\CbsTemp
2019-08-22 18:33 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-08-22 18:20 - 2019-03-19 06:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-08-21 22:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-08-21 22:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Macromed
2019-08-21 20:24 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\appcompat
2019-08-21 02:05 - 2019-03-19 06:49 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2019-08-21 01:15 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\Help
2019-08-21 01:14 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2019-08-21 01:13 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-08-21 01:11 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\spool
2019-08-21 01:11 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\FxsTmp
2019-08-21 01:06 - 2019-03-19 06:37 - 000032768 _____ C:\Windows\system32\config\ELAM
2019-08-20 18:23 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\servicing
2019-08-20 16:58 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\TextInput
2019-08-20 16:58 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SystemResources
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\PrintDialog
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\oobe
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ShellExperiences
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-08-20 16:57 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\bcastdvr
2019-08-20 16:32 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ServiceState

==================== Files in the root of some directories ================

2019-08-20 18:03 - 2019-08-20 18:03 - 000007599 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================


NotADutchGuy 25.08.2019 00:39

Addition
Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-08-2019
Ran by Admin (25-08-2019 01:32:11)
Running from C:\Users\Admin\Desktop
Windows 10 Home Version 1903 18362.295 (X64) (2019-08-20 23:09:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-3732841643-3434763762-1894371783-1001 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-3732841643-3434763762-1894371783-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3732841643-3434763762-1894371783-503 - Limited - Disabled)
Guest (S-1-5-21-3732841643-3434763762-1894371783-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3732841643-3434763762-1894371783-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.238 - Adobe)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 385.41 - NVIDIA Corporation) Hidden
Creative ASIO (USB) (HKLM-x32\...\Creative_ASIO(USB)) (Version: 1.00 - Creative Technology Limited)
Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
Discord (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.05 - Creative Technology Limited)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.100 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Helm (HKLM\...\{971514BD-7CC3-414F-9258-B79E6D53EC46}) (Version: 0.9.0.0 - Matt Tytel)
Microsoft OneDrive (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\OneDriveSetup.exe) (Version: 19.123.0624.0005 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Mozilla Firefox 68.0.2 (x64 de) (HKLM\...\Mozilla Firefox 68.0.2 (x64 de)) (Version: 68.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.2 - Mozilla)
MTG Arena (HKLM-x32\...\{72DBDCDA-AFF1-4F79-A64B-1DCB92FA00BE}) (Version: 0.1.1622 - Wizards of the Coast)
NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 385.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 385.41 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation)
NVIDIA Graphics Driver 385.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 385.41 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Opera Stable 63.0.3368.35 (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Opera 63.0.3368.35) (Version: 63.0.3368.35 - Opera Software)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.24.1 - Razer Inc.)
Sound Blaster X-Fi Surround 5.1 Pro (HKLM-x32\...\{05627579-2BA6-4DA2-8243-0EEF752EF14B}) (Version: 1.0 - Creative Technology Limited)
Spotify (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\Spotify) (Version: 1.1.12.451.gdb77255f - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Twitch (HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)

Packages:
=========
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe [2019-08-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-08-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-08-22] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-08-22] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.31.11905.0_x64__8wekyb3d8bbwe [2019-08-22] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-08-22] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-08-20 16:44 - 2018-06-20 23:16 - 000364032 _____ () [File not signed] C:\Windows\SYSTEM32\APOMgr64.DLL
2019-08-20 16:44 - 2018-06-20 23:17 - 000089600 _____ () [File not signed] C:\Windows\SYSTEM32\CmdRtr64.DLL
2019-08-20 16:46 - 2004-11-17 02:06 - 000065536 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\CTAudSeu.dll
2019-08-20 16:46 - 2006-06-08 01:23 - 000126976 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCHIDUSB.dll
2019-08-20 16:46 - 2009-10-22 02:36 - 000163840 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\ctcadi.dll
2019-08-20 16:46 - 2009-03-19 01:00 - 000151552 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTCadiEP.dll
2019-08-20 16:46 - 2013-05-06 23:47 - 000573440 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTRice.dll
2019-08-20 16:46 - 2011-08-11 00:00 - 000249856 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\DBACSU.dll
2019-08-20 16:46 - 2007-02-01 20:13 - 000061440 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.dll
2019-08-20 16:46 - 2009-02-23 20:41 - 000413696 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTAudEp.dll
2019-08-20 16:46 - 2008-01-11 19:10 - 000065536 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTAudSeu.dll
2019-08-20 16:46 - 2005-01-07 02:26 - 000053248 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTIniFu.dll
2019-08-20 16:46 - 2007-03-07 23:07 - 000176128 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\CTThemeU.dll
2019-08-20 16:46 - 2006-04-01 02:26 - 000335872 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl.sku
2019-08-20 16:46 - 2007-03-07 23:56 - 000151552 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl2.sku
2019-08-20 16:46 - 2006-05-05 02:11 - 000110592 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\GDICtrl3.sku
2019-08-20 16:46 - 2006-03-29 01:21 - 000114757 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\RtxCtrl.sku
2019-08-20 16:46 - 2008-12-29 20:25 - 000077824 ____N (Creative Technology Ltd) [File not signed] E:\Use\creative\Volume Panel\VolPanel.crl
2019-08-20 16:46 - 2007-12-14 02:36 - 000077824 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll
2019-08-20 16:46 - 2007-05-05 00:27 - 000233472 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\OSD\PanelSvc.dll
2019-08-20 16:46 - 2009-03-16 23:55 - 000020480 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\AudSet.crl
2019-08-20 16:46 - 2009-12-22 00:14 - 000065536 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXCADI.DLL
2019-08-20 16:46 - 2009-04-03 23:50 - 000036963 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXMod.dll
2019-08-20 16:46 - 2010-02-04 19:35 - 000241664 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCCADIIR.dll
2019-08-20 16:46 - 2009-09-17 02:59 - 000009728 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.CRL
2019-08-20 16:46 - 2009-12-16 19:24 - 000323584 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.dll
2019-08-20 16:46 - 2012-10-16 22:47 - 000417792 ____N (Creative Technology Ltd.) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTPresetW.dll
2019-08-20 16:46 - 2005-11-23 19:28 - 000040960 ____N (Creative Technology Ltd.) [File not signed] E:\Use\creative\Volume Panel\CtrlSrcU.dll
2019-08-20 18:12 - 2017-08-22 00:33 - 000758472 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI.dll
2019-08-20 18:12 - 2017-08-22 00:33 - 000873136 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll
2019-08-20 18:13 - 2017-08-22 00:33 - 000339256 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\_nvstapisvr64.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Admin\Application Data:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3732841643-3434763762-1894371783-1001\Control Panel\Desktop\\Wallpaper -> D:\DownloadsII\nasa-Q1p7bh3SHj8-unsplash.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{83B2FE38-1C6C-4137-8FB1-CAFC0A932EBE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{65F5610D-9A89-48AD-9217-6BACF96FD59D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{35036508-18BB-4E6C-A5EE-A19D764D5AE9}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{404B5C2F-1561-4A1E-BF44-B96D86DD835C}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A1488A3E-2600-427A-B2BD-FF12A7AAB461}] => (Allow) E:\Games\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{F1A98407-D8AC-410F-9741-D8A972A47D50}] => (Allow) E:\Games\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{89CECA15-8FC9-4C47-8059-C4E6C9EC524E}] => (Allow) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{1D0C752E-8151-45AD-ABDA-7B60D6B0C29A}] => (Allow) E:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B7889AA4-B3D4-4690-ACDC-35BF0B3E73BE}] => (Allow) C:\SteamLibrary2\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{CC346B2B-ADA5-4546-9249-F8C9E46A225E}] => (Allow) C:\SteamLibrary2\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{95006BDC-3A1E-4F06-A10C-2499A0816468}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File
FirewallRules: [{08005EB6-1C22-42D5-B3C2-ED9CE75A478F}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File
FirewallRules: [{84C5F245-254D-4142-BF89-1F998FB1032B}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File
FirewallRules: [TCP Query User{C90DF290-CED8-48AA-8570-1F284BFA2FC9}C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [UDP Query User{D1950129-56A1-4819-85B2-C8874F5C9357}C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamlibrary2\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [TCP Query User{EDEF2D72-6EB4-473B-BF83-FE9FCB82C2CC}E:\games\magic\mtga\mtga.exe] => (Allow) E:\games\magic\mtga\mtga.exe (Wizards of the Coast, LLC -> )
FirewallRules: [UDP Query User{DFFFBBA7-EBE2-4F42-8610-215DC4C2CBF9}E:\games\magic\mtga\mtga.exe] => (Allow) E:\games\magic\mtga\mtga.exe (Wizards of the Coast, LLC -> )
FirewallRules: [{34940C52-8FAD-49DD-AB44-018AD6E21F03}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:111.22 GB) (Free:48.57 GB) (44%)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/21/2019 08:35:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Avira.SystemSpeedup.Maintenance.exe, version: 6.2.0.10728, time stamp: 0x5d5519ea
Faulting module name: clr.dll, version: 4.8.3815.0, time stamp: 0x5cdb7147
Exception code: 0xc0000409
Fault offset: 0x0060c428
Faulting process id: 0x3d94
Faulting application start time: 0x01d5584f3721bff9
Faulting application path: C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Maintenance.exe
Faulting module path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
Report Id: 7b7cdad8-fe93-4de7-a208-17084dbfd600
Faulting package full name:
Faulting package-relative application ID:

Error: (08/21/2019 12:19:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TwitchUI.exe, version: 3.0.16.0, time stamp: 0x5c82efc5
Faulting module name: TwitchUI.exe, version: 3.0.16.0, time stamp: 0x5c82efc5
Exception code: 0xc0000005
Fault offset: 0x011540e9
Faulting process id: 0x2868
Faulting application start time: 0x01d5577b5175fbb2
Faulting application path: C:\Users\Admin\AppData\Roaming\Twitch\Bin\Electron\TwitchUI.exe
Faulting module path: C:\Users\Admin\AppData\Roaming\Twitch\Bin\Electron\TwitchUI.exe
Report Id: fc2e3211-42ed-476a-8429-7998e7c0f54a
Faulting package full name:
Faulting package-relative application ID:

Error: (08/20/2019 05:00:33 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: User hive is loaded by another process (Registry Lock) Process name: C:\Windows\System32\svchost.exe, PID: 2028, ProfSvc PID: 2000.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (08/20/2019 04:58:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.


System errors:
=============
Error: (08/24/2019 09:16:24 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (08/23/2019 11:02:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LKF0I57)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.


Windows Defender:
===================================
Date: 2019-08-25 01:17:03.978
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {D39A9904-368E-46DC-9681-C986E67573E2}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-08-24 11:07:47.879
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {C30FDBBD-43AF-4B9D-89E2-4B563E4C10FC}
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===================================

Date: 2019-08-22 18:20:38.443
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Avira\Antivirus\avirasecuritycenteragent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 3509 08/22/2012
Motherboard: ASUSTeK Computer INC. P8P67 DELUXE
Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz
Percentage of memory in use: 30%
Total physical RAM: 12255.13 MB
Available physical RAM: 8547.18 MB
Total Virtual: 14687.13 MB
Available Virtual: 10228.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.22 GB) (Free:48.57 GB) NTFS
Drive d: (Data) (Fixed) (Total:464.06 GB) (Free:462.52 GB) NTFS
Drive e: (System) (Fixed) (Total:467.45 GB) (Free:460.25 GB) NTFS

\\?\Volume{e1bd966a-0000-0000-0000-100000000000}\ (System Reserved) (Fixed) (Total:0.57 GB) (Free:0.14 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: E1BD966A)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================


cosinus 25.08.2019 10:56

adwCleaner v7.4

Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei in CODE-Tags.

NotADutchGuy 25.08.2019 22:47

Hier der Log von Malewarebites

Code:

# -------------------------------
# Malwarebytes AdwCleaner 7.4.0.0
# -------------------------------
# Build:    07-23-2019
# Database: 2019-08-21.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    08-25-2019
# Duration: 00:00:00
# OS:      Windows 10 Home
# Cleaned:  1
# Failed:  0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

Deleted      Preinstalled.HPJumpStartApps


*************************

[+] Delete Prefetch
[+] Delete Tracing Keys
[+] Reset Chromium Policies
[+] Reset IE Policies
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1327 octets] - [25/08/2019 23:42:34]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########


cosinus 25.08.2019 23:18

Kontrollscans mit Malwarebytes + ESET Online Scanner bitte.

NotADutchGuy 26.08.2019 10:04

Maleware bytes

Code:

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 8/26/19
Scan Time: 10:03 AM
Log File: 0089a1e4-c7d8-11e9-8ce5-f46d04967491.json

-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.12183
License: Trial

-System Information-
OS: Windows 10 (Build 18362.295)
CPU: x64
File System: NTFS
User: DESKTOP-LKF0I57\Admin

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 273560
Threats Detected: 0
Threats Quarantined: 0
Time Elapsed: 0 min, 54 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 0
(No malicious items detected)

File: 0
(No malicious items detected)

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)


ESET
Code:

22:30:39 # product=EOS
# version=8
# ESETOnlineScanner_DEU.exe=3.1.10.0
# country="United States"
# lang=1031
22:31:29 Updating
22:31:29 Update Init
22:31:31 Update Download
22:33:38 esets_scanner_reload returned 0
22:33:38 g_uiModuleBuild: 42500
22:33:38 Update Finalize
22:33:38 Call m_esets_charon_send
22:33:38 Call m_esets_charon_destroy
22:33:38 Updated modules version: 42500
22:33:48 Call m_esets_charon_setup_create
22:33:48 Call m_esets_charon_create
22:33:48 m_esets_charon_create OK
22:33:48 Call m_esets_charon_start_send_thread
22:33:49 Call m_esets_charon_setup_set
22:33:49 m_esets_charon_setup_set OK
22:33:49 Scanner engine: 42500
23:03:19 # product=EOS
# version=8
# flags=0
# av=0
# fw=7
# admin=1
# ESETOnlineScanner_DEU.exe=3.1.10.0
# EOSSerial=500a8a4059b8a746a1c976b7d795a1e3
# engine=42500
# end=finished
# bannerClicked=0
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# sfx_checked=true
# utc_time=2019-08-21 21:03:18
# local_time=2019-08-21 23:03:18 (+0100, W. Europe Daylight Time)
# country="United States"
# lang=1031
# osver=10.0.18362 NT
# compatibility_mode_1='Avira Antivirus'
# compatibility_mode=1815 16777213 100 94 9108 13151702 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 88 13448699 13454361 0 0
# scanned=169364
# found=0
# cleaned=0
# scan_time=1716
# scan_type=2
# flow=2019-08-21 22:30:45|scr|eula|2019-08-21 22:30:46|promo|essp|2019-08-21 22:30:47|scr|welcome|2019-08-21 22:30:56|scr|consents|2019-08-21 22:31:14|scr|scan_type|2019-08-21 22:31:19|scr|pua|2019-08-21 22:31:29|scr|updating|2019-08-21 22:33:39|scr|scanning|2019-08-21 23:02:15|scr|no_threats|2019-08-21 23:02:56|scr|periodic_offer|2019-08-21 23:03:00|scr|upsell|2019-08-21 23:03:05|scr|thanks
# periodic=0,0
# stats_enabled=1
# rating=4
# feedback=
23:03:19 Call m_esets_charon_send
23:03:19 Call m_esets_charon_destroy
23:21:03 # product=EOS
# version=8
# ESETOnlineScanner_DEU.exe=3.1.10.0
# country="United States"
# lang=1031
23:21:14 # product=EOS
# version=8
# flags=0
# av=0
# fw=7
# admin=0
# ESETOnlineScanner_DEU.exe=3.1.10.0
# EOSSerial=500a8a4059b8a746a1c976b7d795a1e3
# engine=0
# end=finished
# bannerClicked=0
# remove_checked=false
# archives_checked=false
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=false
# sfx_checked=false
# utc_time=2019-08-21 21:21:13
# local_time=2019-08-21 23:21:13 (+0100, W. Europe Daylight Time)
# country="United States"
# lang=1031
# osver=10.0.18362 NT
# compatibility_mode_1='Avira Antivirus'
# compatibility_mode=1815 16777213 100 94 2984 13156377 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 88 13449774 13455436 0 0
# scanned=0
# found=0
# cleaned=0
# scan_time=0
# scan_type=16104528
# flow=2019-08-21 23:21:02|scr|home|2019-08-21 23:21:03|promo|ems
# periodic=0,0
# stats_enabled=1
23:21:14 Call m_esets_charon_send
23:21:14 Call m_esets_charon_destroy
23:37:45 # product=EOS
# version=8
# ESETOnlineScanner_DEU.exe=3.1.10.0
# country="United States"
# lang=1031
23:38:01 Updating
23:38:01 Update Init
23:38:11 Update Download
23:38:12 g_uiModuleBuild: 42500
23:38:12 Update Finalize
23:38:12 Call m_esets_charon_send
23:38:12 Call m_esets_charon_destroy
23:38:12 Updated modules version: 42500
23:38:22 Call m_esets_charon_setup_create
23:38:22 Call m_esets_charon_create
23:38:22 m_esets_charon_create OK
23:38:22 Call m_esets_charon_start_send_thread
23:38:22 Call m_esets_charon_setup_set
23:38:22 m_esets_charon_setup_set OK
23:38:22 Scanner engine: 42500
01:00:04 # product=EOS
# version=8
# flags=0
# av=0
# fw=7
# admin=1
# ESETOnlineScanner_DEU.exe=3.1.10.0
# EOSSerial=500a8a4059b8a746a1c976b7d795a1e3
# engine=42500
# end=finished
# bannerClicked=0
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# sfx_checked=true
# utc_time=2019-08-21 23:00:03
# local_time=2019-08-22 01:00:03 (+0100, W. Europe Daylight Time)
# country="United States"
# lang=1031
# osver=10.0.18362 NT
# compatibility_mode_1='Avira Antivirus'
# compatibility_mode=1815 16777213 100 94 8914 13162307 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 88 13455704 13461366 0 0
# scanned=172646
# found=0
# cleaned=0
# scan_time=1612
# scan_type=2
# flow=2019-08-21 23:37:47|scr|scan_type|2019-08-21 23:37:49|promo|essp|2019-08-21 23:37:49|scr|pua|2019-08-21 23:37:51|scr|updating|2019-08-21 23:38:12|scr|scanning|2019-08-22 00:05:06|scr|no_threats|2019-08-22 00:21:12|click|save_report
# periodic=0,0
# stats_enabled=1
01:00:04 Call m_esets_charon_send
01:00:04 Call m_esets_charon_destroy
10:04:51 # product=EOS
# version=8
# ESETOnlineScanner_DEU.exe=3.1.10.0
# country="United States"
# lang=1031
10:06:37 Updating
10:06:37 Update Init
10:06:47 Update Download
10:07:57 esets_scanner_reload returned 0
10:07:57 g_uiModuleBuild: 42544
10:07:57 Update Finalize
10:07:57 Call m_esets_charon_send
10:07:57 Call m_esets_charon_destroy
10:07:57 Updated modules version: 42544
10:08:07 Call m_esets_charon_setup_create
10:08:07 Call m_esets_charon_create
10:08:07 m_esets_charon_create OK
10:08:07 Call m_esets_charon_start_send_thread
10:08:07 Call m_esets_charon_setup_set
10:08:07 m_esets_charon_setup_set OK
10:08:07 Scanner engine: 42544


cosinus 26.08.2019 10:21

Also ich seh da nix. Und Funde gab es auch keine. Ich verschiebe nach Windows.

stefanbecker 26.08.2019 16:13

Hast du Windows 10 wirklich komplett mit Formatierung der Festplatte neu installiert? Oder als Inplace Upgrade drüber installiert?


Alle Zeitangaben in WEZ +1. Es ist jetzt 09:48 Uhr.

Copyright ©2000-2024, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129