(Eure Benachrichtungsmail hat GMX diesmal in den Spam-Ordner gelegt, deshalb erst heute neue Antwort gesehen ...)
Rückmeldung: nach dem Neustart im Anschluss an Schritt 1 (Reparieren) erscheint zunächst nach wie vor die Meldung wegen falschem Passwort und es sind immer noch das neue lokale Adminkonto sowie die zwei temporären Profile auswählbar.
Nun die Log-Dateien: Code:
Entfernungsergebnis von Farbar Recovery Scan Tool (x64) Version: 13-05-2020 01
durchgeführt von Yussuf (20-05-2020 09:11:41) Run:4
Gestartet von C:\Users\Yussuf\Desktop
Geladene Profile: Yussuf
Start-Modus: Normal
==============================================
fixlist Inhalt:
*****************
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4279522277-3291367849-3387810055-1001
StartRegedit:
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4279522277-3291367849-3387810055-1001]
"ProfileImagePath"=hex(2):43,00,3a,00,5c,00,55,00,73,00,65,00,72,00,73,00,5c,\
00,68,00,61,00,6c,00,6c,00,6f,00,00,00
"Flags"=dword:00000000
"FullProfile"=dword:00000001
"State"=dword:00008000
"Sid"=hex:01,05,00,00,00,00,00,05,15,00,00,00,e5,53,14,ff,a9,49,2e,c4,07,e1,ed,\
c9,e9,03,00,00
"LocalProfileLoadTimeLow"=dword:4a503f4b
"LocalProfileLoadTimeHigh"=dword:01d619fa
"ProfileAttemptedProfileDownloadTimeLow"=dword:00000000
"ProfileAttemptedProfileDownloadTimeHigh"=dword:00000000
"ProfileLoadTimeLow"=dword:00000000
"ProfileLoadTimeHigh"=dword:00000000
"LocalProfileUnloadTimeLow"=dword:96931ec1
"LocalProfileUnloadTimeHigh"=dword:01d5e94f
"RunLogonScriptSync"=dword:00000000
EndRegedit:
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4279522277-3291367849-3387810055-1001.bak
Reboot:
*****************
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4279522277-3291367849-3387810055-1001 => erfolgreich entfernt
Registry ====> Der Vorgang wurde erfolgreich beendet.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4279522277-3291367849-3387810055-1001.bak => erfolgreich entfernt
Das System musste neu gestartet werden.
==== Ende von Fixlog 09:11:41 ====
Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 13-05-2020 01
durchgeführt von Yussuf (Administrator) auf LAPTOP-6PAIHVTA (HP HP Laptop 15-da1xxx) (20-05-2020 09:13:35)
Gestartet von C:\Users\Yussuf\Desktop
Geladene Profile: Yussuf
Platform: Windows 10 Home Version 1903 18362.836 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Geek Software GmbH -> Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe <2>
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\AppHelperCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\NetworkCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\SysInfoCap.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.14.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
(Intel(R) pGFX 2020 -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9fec89d504e5bcec\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9fec89d504e5bcec\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_1bbd4ceec44f26c8\RstMwService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Yussuf\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12005.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.6-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8>
(Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(WildTangent Inc -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtkAudUService] => C:\windows\System32\RtkAudUService64.exe [1000736 2019-10-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-04-18] (Realtek Semiconductor Corp. -> Realtek)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [47432 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [31048 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-06-16] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [479368 2020-01-23] (Geek Software GmbH -> Geek Software GmbH)
HKU\S-1-5-21-4279522277-3291367849-3387810055-1003\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [4089896 2020-05-09] (HP Inc. -> HP Inc.)
Startup: C:\Users\hallo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\calcAnt.exe [2009-10-16] (SFR GmbH, Köln, Germany) [Datei ist nicht signiert]
Startup: C:\Users\hallo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ExcMagic.Log [2020-05-08] () [Datei ist nicht signiert]
Startup: C:\Users\hallo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Taskmgr.exe [2020-03-11] (Microsoft Windows -> Microsoft Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {00A0F8AA-A144-4CC2-909E-BFD30A9D8FB8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6122400 2020-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1D9D9F3B-C075-45B1-B5DC-55038594B9BC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [171336 2020-05-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {21F69E42-16EA-4D3D-B9DF-58FFA8F0210B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [171336 2020-05-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {416CE98E-4307-4BA2-A024-E9D926CAA916} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {703AB36B-9997-427A-B664-203382D2D89F} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644984 2018-07-18] (HP Inc. -> HP Inc.)
Task: {7C3C01CB-D7F1-4140-995B-20238F995BAA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {80EDD209-4F7C-487E-BCD0-8553FFF4A27D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1099640 2020-03-07] (HP Inc. -> HP Inc.)
Task: {856B9366-9971-4299-AB2D-656041C655AF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AD3CF4EB-B08D-4C2E-8972-7E3FD24DD57A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B160F0CB-3ABF-4A5B-AEB6-BEDD0AFD58F6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [147320 2020-03-07] (HP Inc. -> HP Inc.)
Task: {B5BA0F0A-1D03-4E32-B5C3-47D2572FDBA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6122400 2020-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAA25507-6816-4429-8441-085858A1DE9F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {BC443C79-02E7-42C2-8BD1-A8750FD4E66F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {C44A5E24-EE46-4811-8353-6B5ECFA5627F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1099640 2020-03-07] (HP Inc. -> HP Inc.)
Task: {C44B62C3-9DC1-4603-9FD2-E4F460F5B96E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [127176 2020-05-10] (Mozilla Corporation -> Mozilla Foundation)
Task: {EA4A9B1B-76CA-4E22-8AB2-FC9228CA88CC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0F74A64-B54F-4273-8C61-B5F816615C07} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{ee98cdc5-7f0a-47fa-9460-4f44808f34c5}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-4279522277-3291367849-3387810055-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-4279522277-3291367849-3387810055-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {980070D2-A56F-45A4-8F2C-D64DE9A3AA0C} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {980070D2-A56F-45A4-8F2C-D64DE9A3AA0C} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-05-04] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2020-03-07] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-02-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation) [Datei ist nicht signiert]
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2020-03-07] (HP Inc. -> HP Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-05-01] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: cgk35u6r.default
FF ProfilePath: C:\Users\Yussuf\AppData\Roaming\Mozilla\Firefox\Profiles\cgk35u6r.default [2020-05-18]
FF ProfilePath: C:\Users\Yussuf\AppData\Roaming\Mozilla\Firefox\Profiles\fquxoh21.default-release [2020-05-20]
FF Homepage: Mozilla\Firefox\Profiles\fquxoh21.default-release -> www.google.de
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-02-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.9.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2020-05-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-02-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.)
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10612592 2020-05-07] (Microsoft Corporation -> Microsoft Corporation)
S4 HfcDisableService; C:\windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_1bbd4ceec44f26c8\HfcDisableService.exe [1859440 2019-04-15] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2019-12-19] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\AppHelperCap.exe [515344 2020-03-27] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\NetworkCap.exe [514320 2020-03-27] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\SysInfoCap.exe [516880 2020-03-27] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe [429008 2019-10-31] (HP Inc. -> HP Inc.)
S3 iaStorAfsService; C:\windows\System32\iaStorAfsService.exe [2832752 2019-04-15] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 igccservice; C:\windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe [36720 2020-03-09] (Intel(R) pGFX 2020 -> )
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\SocketHeciServer.exe [876304 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\TPMProvisioningService.exe [806152 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe [648080 2019-07-18] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-05-17] (Malwarebytes Inc -> Malwarebytes)
S3 MixedRealityOpenXRSvc; C:\windows\System32\MixedRealityRuntime.dll [139952 2020-05-12] (Microsoft Windows -> Microsoft Corporation)
S3 MixedRealityOpenXRSvc; C:\windows\SysWOW64\MixedRealityRuntime.dll [105840 2020-05-12] (Microsoft Windows -> Microsoft Corporation)
R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [479368 2020-01-23] (Geek Software GmbH -> Geek Software GmbH)
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [145736 2013-08-15] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
R2 RstMwService; C:\windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_1bbd4ceec44f26c8\RstMwService.exe [2114416 2019-04-15] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 RtkAudioUniversalService; C:\windows\System32\RtkAudUService64.exe [1000736 2019-10-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\windows\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SECOMNService; C:\windows\System32\SECOMN64.exe [161296 2019-07-31] (Sound Research Corporation -> Sound Research, Corp.)
R2 SynTPEnhService; C:\windows\System32\SynTPEnhService.exe [384264 2020-03-17] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13252624 2020-04-23] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe [3304992 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1642800 2020-04-02] (WildTangent Inc -> )
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe [103376 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 AmUStor; C:\windows\system32\drivers\AmUStorU.sys [127936 2019-03-26] (Alcorlink Corp. -> )
R3 dptf_acpi; C:\windows\System32\drivers\dptf_acpi.sys [78832 2018-12-25] (Intel Corporation -> Intel Corporation)
R3 dptf_cpu; C:\windows\System32\drivers\dptf_cpu.sys [75248 2018-12-25] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\windows\System32\drivers\esif_lf.sys [403440 2018-12-25] (Intel Corporation -> Intel Corporation)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [25024 2019-04-18] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 iaStorAC; C:\windows\System32\drivers\iaStorAC.sys [1017712 2019-04-15] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfs; C:\windows\System32\drivers\iaStorAfs.sys [72560 2019-04-15] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [214496 2020-05-20] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\windows\System32\DRIVERS\MbamElam.sys [20936 2020-05-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [248968 2020-05-20] (Malwarebytes Inc -> Malwarebytes)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1137928 2019-03-29] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\windows\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [11748952 2020-03-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\windows\System32\drivers\Smb_driver_Intel.sys [49416 2020-03-17] (Synaptics Incorporated -> Synaptics Incorporated)
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [45960 2020-05-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [394680 2020-05-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [64944 2020-05-01] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\OpenHardwareMonitorLib.sys [14544 2020-05-20] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R3 WirelessButtonDriver64; C:\windows\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2020-05-20 09:13 - 2020-05-20 09:14 - 000027016 _____ C:\Users\Yussuf\Desktop\FRST.txt
2020-05-20 09:12 - 2020-05-20 09:12 - 000248968 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2020-05-20 09:12 - 2020-05-20 09:12 - 000214496 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2020-05-20 09:11 - 2020-05-20 09:11 - 000001943 _____ C:\Users\Yussuf\Desktop\Fixlog.txt
2020-05-19 11:40 - 2020-05-19 11:39 - 000001187 _____ C:\Users\hallo\Desktop\Profile.zip
2020-05-19 11:39 - 2020-05-19 11:39 - 000001187 _____ C:\Users\Yussuf\Desktop\Profile.zip
2020-05-18 22:01 - 2020-05-18 22:01 - 000009276 _____ C:\Users\Yussuf\Desktop\Profile.reg
2020-05-18 22:01 - 2020-05-18 22:01 - 000000698 _____ C:\Users\Yussuf\Desktop\Fixlog(2).txt
2020-05-18 19:48 - 2020-05-18 19:49 - 000033233 _____ C:\Users\Yussuf\Desktop\Addition.txt
2020-05-18 19:47 - 2020-05-18 19:49 - 000170783 _____ C:\Users\Yussuf\Desktop\FRST(4).txt
2020-05-18 19:46 - 2020-05-18 08:39 - 000170859 _____ C:\Users\Yussuf\Desktop\FRST(3).txt
2020-05-18 19:46 - 2020-05-18 08:39 - 000034270 _____ C:\Users\Yussuf\Desktop\Addition (2).txt
2020-05-18 19:45 - 2020-05-18 19:44 - 000014077 _____ C:\Users\Yussuf\Desktop\Search.txt
2020-05-18 19:04 - 2020-05-18 19:44 - 000014077 _____ C:\Users\hallo\Desktop\Search.txt
2020-05-18 19:02 - 2020-05-18 18:53 - 000005245 _____ C:\Users\Yussuf\Desktop\Fixlog(1).txt
2020-05-18 18:46 - 2020-05-18 18:46 - 000000000 ____D C:\Users\Yussuf\AppData\LocalLow\IGDump
2020-05-18 12:54 - 2020-05-18 12:48 - 000456631 _____ C:\Users\Yussuf\Downloads\Quirin_Arbeitsheft-S.92-93.pdf
2020-05-18 08:40 - 2020-05-18 08:39 - 000170859 _____ C:\Users\hallo\Desktop\FRST(3).txt
2020-05-18 08:40 - 2020-05-18 08:39 - 000034270 _____ C:\Users\hallo\Desktop\Addition (2).txt
2020-05-18 08:37 - 2020-05-17 19:53 - 002286080 _____ (Farbar) C:\Users\Yussuf\Desktop\FRST64.exe
2020-05-18 08:34 - 2020-05-18 08:29 - 000002766 _____ C:\Users\hallo\Desktop\AdwCleaner[C00].txt
2020-05-18 08:33 - 2020-05-18 08:29 - 000002766 _____ C:\Users\Yussuf\Desktop\AdwCleaner[C00].txt
2020-05-18 08:17 - 2020-05-17 19:53 - 002286080 _____ (Farbar) C:\Users\hallo\Desktop\FRST64.exe
2020-05-18 08:10 - 2020-05-18 08:10 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\OpenOffice
2020-05-17 23:01 - 2020-05-18 08:29 - 000000000 ____D C:\AdwCleaner
2020-05-17 23:00 - 2020-05-17 22:59 - 008196784 _____ (Malwarebytes) C:\Users\Yussuf\Desktop\adwcleaner_8.0.4.exe
2020-05-17 23:00 - 2020-05-17 22:59 - 008196784 _____ (Malwarebytes) C:\Users\hallo\Desktop\adwcleaner_8.0.4.exe
2020-05-17 22:59 - 2020-05-17 22:59 - 008196784 _____ (Malwarebytes) C:\Users\Yussuf\Downloads\adwcleaner_8.0.4.exe
2020-05-17 22:58 - 2020-05-17 22:58 - 000010430 _____ C:\Users\Yussuf\Desktop\mbam.txt
2020-05-17 22:58 - 2020-05-17 22:58 - 000010430 _____ C:\Users\hallo\Desktop\mbam.txt
2020-05-17 22:49 - 2020-05-17 22:49 - 000153312 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2020-05-17 22:49 - 2020-05-17 22:49 - 000020936 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamElam.sys
2020-05-17 22:49 - 2020-05-17 22:49 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-05-17 22:49 - 2020-05-17 22:49 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-05-17 22:49 - 2020-05-17 22:49 - 000002028 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-05-17 22:49 - 2020-05-17 22:49 - 000000000 ____D C:\Users\Yussuf\AppData\Local\mbamtray
2020-05-17 22:49 - 2020-05-17 22:49 - 000000000 ____D C:\Users\Yussuf\AppData\Local\mbam
2020-05-17 22:48 - 2020-05-17 22:48 - 000000000 ____D C:\Program Files\Malwarebytes
2020-05-17 22:47 - 2020-05-17 22:47 - 001980016 _____ (Malwarebytes) C:\Users\hallo\Desktop\MBSetup.exe
2020-05-17 22:46 - 2020-05-17 22:47 - 001980016 _____ (Malwarebytes) C:\Users\Yussuf\Desktop\MBSetup.exe
2020-05-17 22:41 - 2020-05-17 22:41 - 000000000 ____D C:\Users\Yussuf\AppData\Local\HP_Inc
2020-05-17 22:16 - 2020-05-17 22:16 - 000000000 ___RD C:\Users\Yussuf\AppData\Roaming\Brother
2020-05-17 22:16 - 2020-05-17 22:16 - 000000000 ____D C:\Users\Yussuf\AppData\LocalLow\Brother
2020-05-17 21:57 - 2020-05-17 21:57 - 001990413 _____ C:\Users\Yussuf\Downloads\Quirin_Südkurier-Arbeitsheft.pdf
2020-05-17 21:56 - 2020-05-17 21:56 - 000000000 ____D C:\Users\Yussuf\AppData\Local\PDF24
2020-05-17 21:51 - 2020-05-17 21:51 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\Nuance
2020-05-17 19:57 - 2020-05-18 19:49 - 000033233 _____ C:\Users\hallo\Desktop\Addition.txt
2020-05-17 19:57 - 2020-05-17 19:59 - 000038366 _____ C:\Users\hallo\Desktop\Addition(1).txt
2020-05-17 19:55 - 2020-05-17 19:59 - 000183705 _____ C:\Users\hallo\Desktop\FRST(2).txt
2020-05-17 19:53 - 2020-05-17 19:53 - 002286080 _____ (Farbar) C:\Users\Yussuf\Downloads\FRST64.exe
2020-05-17 14:24 - 2020-05-17 22:41 - 000000000 ____D C:\Users\Yussuf\AppData\Local\D3DSCache
2020-05-16 17:05 - 2020-05-16 17:05 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\Hewlett-Packard
2020-05-16 17:05 - 2020-05-16 17:05 - 000000000 ____D C:\Users\Yussuf\AppData\Local\HP
2020-05-16 17:05 - 2020-05-16 17:05 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Comms
2020-05-16 17:02 - 2020-05-16 17:04 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Publishers
2020-05-16 17:00 - 2020-05-16 17:00 - 000000000 ____D C:\Users\Yussuf\AppData\LocalLow\Adobe
2020-05-16 17:00 - 2020-05-16 17:00 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Adobe
2020-05-16 16:51 - 2020-05-20 09:12 - 000000000 ____D C:\Users\Yussuf\AppData\LocalLow\Mozilla
2020-05-16 16:51 - 2020-05-17 16:47 - 000000000 ____D C:\Users\Yussuf\AppData\Local\PlaceholderTileLogoFolder
2020-05-16 16:51 - 2020-05-16 16:51 - 000003382 _____ C:\windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4279522277-3291367849-3387810055-1003
2020-05-16 16:51 - 2020-05-16 16:51 - 000000000 ___RD C:\Users\Yussuf\OneDrive
2020-05-16 16:51 - 2020-05-16 16:51 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\Mozilla
2020-05-16 16:51 - 2020-05-16 16:51 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Mozilla
2020-05-16 16:51 - 2020-05-16 16:51 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Apps\2.0
2020-05-16 16:50 - 2020-05-16 16:50 - 000001450 _____ C:\Users\Yussuf\Desktop\Microsoft Edge.lnk
2020-05-16 16:50 - 2020-05-16 16:50 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\ControlCenter4
2020-05-16 16:49 - 2020-05-16 16:49 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\HP
2020-05-16 16:48 - 2020-05-20 09:12 - 000000000 __SHD C:\Users\Yussuf\IntelGraphicsProfiles
2020-05-16 16:48 - 2020-05-17 21:52 - 000000000 ____D C:\Users\Yussuf
2020-05-16 16:48 - 2020-05-16 21:18 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Packages
2020-05-16 16:48 - 2020-05-16 17:00 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\Adobe
2020-05-16 16:48 - 2020-05-16 16:51 - 000002439 _____ C:\Users\Yussuf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-16 16:48 - 2020-05-16 16:49 - 000000000 ____D C:\Users\Yussuf\AppData\Local\Intel
2020-05-16 16:48 - 2020-05-16 16:48 - 000000020 ___SH C:\Users\Yussuf\ntuser.ini
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ___RD C:\Users\Yussuf\3D Objects
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ___HD C:\Users\Yussuf\MicrosoftEdgeBackups
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\WildTangent
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Roaming\Synaptics
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\LocalLow\Intel
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Local\VirtualStore
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Local\TeamViewer
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Local\MicrosoftEdge
2020-05-16 16:48 - 2020-05-16 16:48 - 000000000 ____D C:\Users\Yussuf\AppData\Local\ConnectedDevicesPlatform
2020-05-16 16:47 - 2020-05-15 21:44 - 000167145 _____ C:\Users\TEMP\Desktop\FRST.txt
2020-05-16 16:44 - 2020-05-16 16:44 - 000000187 _____ C:\Users\TEMP\Desktop\TB-Thema.url
2020-05-16 14:30 - 2020-05-16 14:30 - 000000000 ____D C:\Users\TEMP\AppData\LocalLow\Adobe
2020-05-16 14:30 - 2020-05-16 14:30 - 000000000 ____D C:\Users\TEMP\AppData\Local\Adobe
2020-05-16 14:25 - 2020-05-18 22:01 - 000000698 _____ C:\Users\hallo\Desktop\Fixlog(2).txt
2020-05-16 14:25 - 2020-05-18 18:53 - 000005245 _____ C:\Users\hallo\Desktop\Fixlog(1).txt
2020-05-16 14:25 - 2020-05-16 14:16 - 000007888 _____ C:\Users\TEMP\Desktop\Fixlog.txt
2020-05-16 14:21 - 2020-05-16 14:21 - 000000000 ___HD C:\OneDriveTemp
2020-05-16 14:21 - 2020-05-16 14:21 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\Mozilla
2020-05-16 14:21 - 2020-05-16 14:21 - 000000000 ____D C:\Users\TEMP\AppData\LocalLow\Mozilla
2020-05-16 14:21 - 2020-05-16 14:21 - 000000000 ____D C:\Users\TEMP\AppData\Local\Mozilla
2020-05-16 14:20 - 2020-05-16 14:20 - 000000000 ____D C:\Users\TEMP\AppData\Local\Apps\2.0
2020-05-16 14:19 - 2020-05-16 14:20 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\ControlCenter4
2020-05-16 14:19 - 2020-05-16 14:19 - 000001450 _____ C:\Users\TEMP\Desktop\Microsoft Edge.lnk
2020-05-16 14:19 - 2020-05-16 14:19 - 000000000 ___HD C:\Users\TEMP\MicrosoftEdgeBackups
2020-05-16 14:19 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\HP
2020-05-16 14:19 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP\AppData\LocalLow\Intel
2020-05-16 14:19 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP\AppData\Local\PlaceholderTileLogoFolder
2020-05-16 14:19 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP\AppData\Local\MicrosoftEdge
2020-05-16 14:18 - 2020-05-16 16:58 - 000000000 ____D C:\Users\TEMP\AppData\Local\ConnectedDevicesPlatform
2020-05-16 14:18 - 2020-05-16 14:30 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\Adobe
2020-05-16 14:18 - 2020-05-16 14:21 - 000002433 _____ C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-16 14:18 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP\AppData\Local\Intel
2020-05-16 14:18 - 2020-05-16 14:18 - 000000020 ___SH C:\Users\TEMP\ntuser.ini
2020-05-16 14:18 - 2020-05-16 14:18 - 000000000 ___RD C:\Users\TEMP\3D Objects
2020-05-16 14:18 - 2020-05-16 14:18 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\WildTangent
2020-05-16 14:18 - 2020-05-16 14:18 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\Synaptics
2020-05-16 14:18 - 2020-05-16 14:18 - 000000000 ____D C:\Users\TEMP\AppData\Local\VirtualStore
2020-05-16 14:18 - 2020-05-16 14:18 - 000000000 ____D C:\Users\TEMP\AppData\Local\TeamViewer
2020-05-16 14:07 - 2020-05-16 16:44 - 000000187 _____ C:\Users\hallo\Desktop\TB-Thema.url
2020-05-16 10:44 - 2020-05-17 22:49 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-05-16 10:38 - 2020-05-16 10:38 - 000000000 ____H C:\windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2020-05-16 10:35 - 2020-05-17 22:40 - 000000000 ____D C:\Program Files (x86)\Avira
2020-05-16 10:33 - 2020-05-16 10:33 - 000084409 _____ C:\Users\hallo\Downloads\CB-30-13821515.pdf
2020-05-16 09:03 - 2020-05-18 19:49 - 000170783 _____ C:\Users\hallo\Desktop\FRST(4).txt
2020-05-16 09:03 - 2020-05-15 21:44 - 000167145 _____ C:\Users\hallo\Desktop\FRST(1).txt
2020-05-16 09:02 - 2020-05-15 21:44 - 000167145 _____ C:\Users\hallo\Downloads\FRST.txt
2020-05-16 07:43 - 2020-05-20 09:13 - 000000000 ____D C:\FRST
2020-05-15 16:46 - 2020-05-14 13:32 - 002286080 _____ (Farbar) C:\Users\hallo\Desktop\Yussito-Yussito.exe
2020-05-13 09:43 - 2020-05-13 09:43 - 000000000 ____D C:\Program Files\calcAntDE
2020-05-12 22:53 - 2020-05-16 16:58 - 000000000 ___RD C:\Users\TEMP\OneDrive
2020-05-12 22:52 - 2020-05-12 22:52 - 000000000 ____D C:\windows\system32\Tasks\Mozilla
2020-05-12 22:49 - 2020-05-16 15:11 - 000000000 ____D C:\Users\TEMP\AppData\Local\Packages
2020-05-12 22:49 - 2020-05-16 14:19 - 000000000 ____D C:\Users\TEMP
2020-05-12 22:47 - 2020-05-12 22:47 - 3084316732 _____ C:\windows\MEMORY.DMP
2020-05-12 22:47 - 2020-05-12 22:47 - 002355860 _____ C:\windows\Minidump\051220-14671-01.dmp
2020-05-12 22:32 - 2020-05-12 22:32 - 000001093 _____ C:\Users\Public\Desktop\BeCyPDFMetaEdit.lnk
2020-05-12 22:32 - 2020-05-12 22:32 - 000001093 _____ C:\ProgramData\Desktop\BeCyPDFMetaEdit.lnk
2020-05-12 22:32 - 2020-05-12 22:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BeCyPDFMetaEdit
2020-05-12 22:32 - 2020-05-12 22:32 - 000000000 ____D C:\Program Files (x86)\BeCyPDFMetaEdit
2020-05-12 20:57 - 2020-05-12 20:57 - 025902080 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 025444864 _____ (Microsoft Corporation) C:\windows\system32\Hydrogen.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 022638592 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 019851264 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 019812352 _____ (Microsoft Corporation) C:\windows\system32\HologramWorld.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 018029056 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 014819328 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 009929528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 009339392 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 008013824 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007902912 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007822888 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007756800 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007604584 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007267840 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007257816 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 007011840 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006710272 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006525936 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006435328 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006291456 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006168576 _____ (Microsoft Corporation) C:\windows\system32\twinui.pcshell.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 006082808 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.storage.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005945856 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005911040 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005757872 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005340568 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepository.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005280192 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepository.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005111296 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 005098352 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 004858368 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 004612608 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 004565456 _____ (Microsoft Corporation) C:\windows\system32\sppsvc.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 004129416 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 004012032 _____ (Microsoft Corporation) C:\windows\system32\Microsoft.Bluetooth.Service.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 004005376 _____ (Microsoft Corporation) C:\windows\system32\EdgeContent.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003974376 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 003822080 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003807232 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003747328 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_nt.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003727360 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 003655680 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Logon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003513856 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003371416 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 003084800 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002986808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 002854400 _____ (Microsoft Corporation) C:\windows\system32\MapGeocoder.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002798592 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 002774088 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002769000 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002755584 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2020-05-12 20:57 - 2020-05-12 20:57 - 002755584 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2020-05-12 20:57 - 2020-05-12 20:57 - 002736640 _____ (Microsoft Corporation) C:\windows\system32\WebRuntimeManager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002584008 _____ (Microsoft Corporation) C:\windows\SysWOW64\combase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002576896 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002465792 _____ (Microsoft Corporation) C:\windows\system32\InstallService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002354688 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Perception.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002259664 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002235008 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002157056 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.PointOfService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002147328 _____ (Microsoft Corporation) C:\windows\system32\pnidui.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002087168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002073176 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 002072576 _____ (Microsoft Corporation) C:\windows\system32\ISM.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001999968 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001990576 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.appcore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001975808 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapGeocoder.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001952872 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001945600 _____ (Microsoft Corporation) C:\windows\system32\dcomp.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001934824 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001885184 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001856000 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001835128 _____ (Microsoft Corporation) C:\windows\system32\mfsrcsnk.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001835008 _____ (Microsoft Corporation) C:\windows\system32\enterprisecsps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001825280 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001819648 _____ (Microsoft Corporation) C:\windows\system32\CoreShell.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001737216 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001697792 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001686016 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001665720 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001664896 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001656904 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001654952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001646552 _____ (Microsoft Corporation) C:\windows\system32\gdi32full.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001637376 _____ (Microsoft Corporation) C:\windows\system32\MSPhotography.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001610240 _____ (Microsoft Corporation) C:\windows\system32\HologramCompositor.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001581056 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Perception.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001559040 _____ (Microsoft Corporation) C:\windows\SysWOW64\pla.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001556200 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001549824 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001540096 _____ (Microsoft Corporation) C:\windows\system32\WindowManagement.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001539072 _____ (Microsoft Corporation) C:\windows\system32\wbengine.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 001536512 _____ (Microsoft Corporation) C:\windows\system32\UserDataService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001525760 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001510912 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdprt.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001507328 _____ (Microsoft Corporation) C:\windows\system32\pla.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001505592 _____ (Microsoft Corporation) C:\windows\system32\rdpbase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001492480 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Bluetooth.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001486336 _____ (Microsoft Corporation) C:\windows\system32\usocoreworker.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 001477112 _____ (Microsoft Corporation) C:\windows\SysWOW64\dcomp.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001466368 _____ (Microsoft Corporation) C:\windows\system32\rdpsharercom.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001461760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.PointOfService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001458688 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001428480 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Vpn.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001417760 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsrcsnk.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001414144 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32full.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001406464 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.Handlers.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001397560 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 001393960 _____ (Microsoft Corporation) C:\windows\system32\WinTypes.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001393664 _____ (Microsoft Corporation) C:\windows\system32\bcastdvruserservice.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001382400 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Editing.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001375232 _____ (Microsoft Corporation) C:\windows\system32\APMon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001373184 _____ (Microsoft Corporation) C:\windows\system32\NotificationController.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001370112 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001357312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Globalization.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001344000 _____ (Microsoft Corporation) C:\windows\system32\HoloSI.PCShell.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001343488 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Audio.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001336832 _____ (Microsoft Corporation) C:\windows\system32\wpnapps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001336320 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSPhotography.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001319936 _____ (Microsoft Corporation) C:\windows\system32\webplatstorageserver.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjet40.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001306424 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001306112 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Audio.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001288648 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Sensors.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001284096 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001282560 _____ (Microsoft Corporation) C:\windows\system32\usermgr.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001274128 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryPS.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001270784 _____ (Microsoft Corporation) C:\windows\system32\SEMgrSvc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001264640 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001260032 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001250816 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpsharercom.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001245696 _____ (Microsoft Corporation) C:\windows\SysWOW64\TokenBroker.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001222656 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001218560 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001214264 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpbase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001213440 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001195008 _____ (Microsoft Corporation) C:\windows\system32\sdengin2.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001184256 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.Http.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001178608 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001158144 _____ (Microsoft Corporation) C:\windows\system32\MbaeApiPublic.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001154656 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001151824 _____ (Microsoft Corporation) C:\windows\system32\mfmpeg2srcsnk.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001150784 _____ (Microsoft Corporation) C:\windows\system32\InputHost.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001132544 _____ (Microsoft Corporation) C:\windows\system32\EmailApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001125376 _____ (Microsoft Corporation) C:\windows\system32\CBDHSvc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001121280 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001107456 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Streaming.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001099600 _____ (Microsoft Corporation) C:\windows\system32\mfds.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001098752 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001092096 _____ (Microsoft Corporation) C:\windows\system32\MusUpdateHandlers.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001085752 _____ (Microsoft Corporation) C:\windows\system32\Windows.Services.TargetedContent.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001081856 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.Vpn.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001077048 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 001071616 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpcore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001068032 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncCore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001060352 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001048480 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001034752 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Editing.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001023128 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001011712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wpnapps.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001007104 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 001005056 _____ (Microsoft Corporation) C:\windows\system32\ContactApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000994304 _____ (Microsoft Corporation) C:\windows\system32\EdgeManager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000979264 _____ (Microsoft Corporation) C:\windows\system32\propsys.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000975360 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000945192 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000943640 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Sensors.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000925184 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Management.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000915192 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000911872 _____ (Microsoft Corporation) C:\windows\SysWOW64\MiracastReceiver.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000901120 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000896000 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000895080 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000894016 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinTypes.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000891544 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000891392 _____ (Microsoft Corporation) C:\windows\SysWOW64\MbaeApiPublic.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000888352 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Shell.Broker.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000881664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ShareHost.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000879064 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000866304 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000863232 _____ (Microsoft Corporation) C:\windows\system32\efswrt.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000861696 _____ (Microsoft Corporation) C:\windows\system32\usbmon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000859944 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000858112 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000858112 _____ (Microsoft Corporation) C:\windows\system32\ieproxy.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000854528 _____ (Microsoft Corporation) C:\windows\system32\MrmIndexer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000852992 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Streaming.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000847872 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000847168 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 000843776 _____ (Microsoft Corporation) C:\windows\SysWOW64\webplatstorageserver.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000843576 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostCommon.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000836608 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000822272 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000822208 _____ (Microsoft Corporation) C:\windows\system32\fontdrvhost.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000819200 _____ (Microsoft Corporation) C:\windows\system32\LogonController.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000814080 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncCore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000813568 _____ (Microsoft Corporation) C:\windows\system32\comdlg32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000807936 _____ (Microsoft Corporation) C:\windows\SysWOW64\EmailApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000801832 _____ (Microsoft Corporation) C:\windows\SysWOW64\propsys.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000796904 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000792808 _____ (Microsoft Corporation) C:\windows\SysWOW64\InputHost.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000783480 _____ (Microsoft Corporation) C:\windows\system32\tcblaunch.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000782336 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000781312 _____ (Microsoft Corporation) C:\windows\system32\ChatApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000778552 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Services.TargetedContent.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000777840 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppContracts.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000777216 _____ (Microsoft Corporation) C:\windows\system32\AppointmentApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000776792 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000752584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 000748544 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000747832 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfds.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000742200 _____ (Microsoft Corporation) C:\windows\system32\LicensingWinRT.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000736768 _____ (Microsoft Corporation) C:\windows\system32\RDXService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000732160 _____ (Microsoft Corporation) C:\windows\system32\windows.immersiveshell.serviceprovider.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000729600 _____ (Microsoft Corporation) C:\windows\SysWOW64\FlightSettings.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000716800 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.AccountsControl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000716312 _____ (Microsoft Corporation) C:\windows\system32\StateRepository.Core.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000710656 _____ (Microsoft Corporation) C:\windows\system32\JpMapControl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000706544 _____ (Microsoft Corporation) C:\windows\system32\mscms.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000705536 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000701952 _____ (Microsoft Corporation) C:\windows\SysWOW64\BTAGService.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000701440 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Mirage.Internal.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\dsreg.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000693672 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000691712 _____ (Microsoft Corporation) C:\windows\SysWOW64\comdlg32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\CPFilters.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000687104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Ocr.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000685368 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000683848 _____ (Microsoft Corporation) C:\windows\SysWOW64\PCPKsp.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000683288 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000679424 _____ (Microsoft Corporation) C:\windows\system32\daxexec.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000676072 _____ (Microsoft Corporation) C:\windows\system32\WUDFx02000.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000673456 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontdrvhost.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000673296 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000672944 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000668672 _____ (Microsoft Corporation) C:\windows\SysWOW64\EdgeManager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000666624 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000666624 _____ (Microsoft Corporation) C:\windows\system32\mbsmsapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000663040 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmIndexer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000661816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 000655360 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000652800 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000650240 _____ (Microsoft Corporation) C:\windows\system32\DevicesFlowBroker.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000649728 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000639400 _____ (Microsoft Corporation) C:\windows\system32\msvcp_win.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000638464 _____ (Microsoft Corporation) C:\windows\system32\twinapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000628024 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicensingWinRT.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000622592 _____ (Microsoft Corporation) C:\windows\system32\TileDataRepository.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000621568 _____ (Microsoft Corporation) C:\windows\system32\MusNotification.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000618496 _____ (Microsoft Corporation) C:\windows\system32\CredProvDataModel.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000614400 _____ (Microsoft Corporation) C:\windows\SysWOW64\efswrt.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000613888 _____ (Microsoft Corporation) C:\windows\system32\netprofmsvc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000604160 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SmartCards.Phone.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000602224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscms.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000600064 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActivationManager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000599552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Payments.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000596992 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000594472 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Perception.Stub.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000592944 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000592896 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000584704 _____ (Microsoft Corporation) C:\windows\system32\PlayToManager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000584192 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000581544 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000580608 _____ (Microsoft Corporation) C:\windows\system32\ddraw.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000579072 _____ (Microsoft Corporation) C:\windows\system32\rasdlg.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000578560 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.Connectivity.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000573952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000572200 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepositoryPS.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000569856 _____ (Microsoft Corporation) C:\windows\system32\wpnprv.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000568136 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000566784 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000565248 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Gaming.Input.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000564480 _____ (Microsoft Corporation) C:\windows\SysWOW64\StateRepository.Core.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000562176 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000557056 _____ (Microsoft Corporation) C:\windows\SysWOW64\ChatApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000553664 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreMessaging.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000550400 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 000547992 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.MediaControl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000544256 _____ (Microsoft Corporation) C:\windows\system32\usosvc.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000543824 _____ (Microsoft Corporation) C:\windows\system32\policymanager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000540200 _____ (Microsoft Corporation) C:\windows\system32\DMRServer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000540160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.SmartCards.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000539184 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000535552 _____ (Microsoft Corporation) C:\windows\SysWOW64\JpMapControl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000533504 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000530944 _____ (Microsoft Corporation) C:\windows\SysWOW64\ddraw.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000530432 _____ (Microsoft Corporation) C:\windows\system32\MusNotificationUx.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000526848 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlidprov.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000525824 _____ (Microsoft Corporation) C:\windows\system32\sppcext.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000524208 _____ (Microsoft Corporation) C:\windows\system32\bcryptprimitives.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.System.Launcher.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000519680 _____ (Microsoft Corporation) C:\windows\system32\WinBioDataModel.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000518456 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000513024 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Activities.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000513024 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000512512 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000509952 _____ (Microsoft Corporation) C:\windows\system32\Windows.Cortana.Desktop.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000506368 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.PredictionUnit.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000501248 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000501200 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcp_win.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000500736 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.UserAccountsHandlers.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000500224 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.LockScreen.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000497152 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000494592 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasdlg.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000487424 _____ (Microsoft Corporation) C:\windows\SysWOW64\sppcext.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000486912 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000484352 _____ (Microsoft Corporation) C:\windows\system32\MixedReality.Broker.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000477696 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BlockedShutdown.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000477496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2020-05-12 20:57 - 2020-05-12 20:57 - 000476160 _____ (Microsoft Corporation) C:\windows\system32\CloudDomainJoinDataModelServer.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000474112 _____ (Microsoft Corporation) C:\windows\system32\Geolocation.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000471552 _____ (Microsoft Corporation) C:\windows\SysWOW64\mbsmsapi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000470016 _____ (Microsoft Corporation) C:\windows\SysWOW64\daxexec.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000467952 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000466944 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Picker.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000466344 _____ (Microsoft Corporation) C:\windows\SysWOW64\policymanager.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000465920 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.Workflow.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000460200 _____ (Microsoft Corporation) C:\windows\system32\MusNotifyIcon.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000457216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cldflt.sys
2020-05-12 20:57 - 2020-05-12 20:57 - 000453944 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000453632 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredProvDataModel.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000452608 _____ (Microsoft Corporation) C:\windows\system32\slui.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000451584 _____ (Microsoft Corporation) C:\windows\SysWOW64\TileDataRepository.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000448512 _____ (Microsoft Corporation) C:\windows\system32\UserDataAccountApis.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000443904 _____ (Microsoft Corporation) C:\windows\system32\edgeIso.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000442880 _____ (Microsoft Corporation) C:\windows\system32\PhoneOm.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000442880 _____ (Microsoft Corporation) C:\windows\system32\fhsettingsprovider.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000441856 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.AllJoyn.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000441584 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.MediaControl.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000439296 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000437248 _____ (Microsoft Corporation) C:\windows\system32\rdpclip.exe
2020-05-12 20:57 - 2020-05-12 20:57 - 000435712 _____ (Microsoft Corporation) C:\windows\SysWOW64\WwaApi.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000435200 _____ (Microsoft Corporation) C:\windows\system32\wincorlib.dll
2020-05-12 20:57 - 2020-05-12 20:57 - 000431616 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BioFeedback.dll
|