Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 07-03-2020 Gestart door pc1 (Beheerder) op DESKTOP-PC-A-R (Gigabyte Technology Co., Ltd. B85M-HD3) (08-03-2020 12:18:25) Gestart vanaf C:\Users\Albert\Downloads Geladen Profielen: pc1 & Albert & SQLTELEMETRY$SQLEXPRESS04 & MSSQL$SQLEXPRESS03 & SQLTELEMETRY$SQLEXPRESS03 & SQLTELEMETRY$SQLEXPRESS01 & MSSQL$SQLEXPRESS02 & MSSQL$SQLEXPRESS04 & SQLTELEMETRY$SQLEXPRESS02 & MSSQL$SQLEXPRESS01 (Beschikbare Profielen: pc1 & Regine & Albert & SQLTELEMETRY$SQLEXPRESS04 & MSSQL$SQLEXPRESS03 & SQLTELEMETRY$SQLEXPRESS03 & SQLTELEMETRY$SQLEXPRESS01 & MSSQL$SQLEXPRESS02 & MSSQL$SQLEXPRESS04 & SQLTELEMETRY$SQLEXPRESS02 & MSSQL$SQLEXPRESS01) Platform: Windows 10 Home Versie 1909 18363.693 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Edge Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (Cisco WebEx LLC -> Cisco WebEx LLC) C:\Windows\SysWOW64\atashost.exe (CyberLink -> ) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\92.4.382\QtWebEngineProcess.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\92.4.382\QtWebEngineProcess.exe (Geek Software GmbH -> Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Huawei Technologies Co., Ltd. -> ) [Bestand niet getekend] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation -> ) C:\Windows\System32\igfxTray.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\110\LocalDB\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS01\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS01\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS02\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS02\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS03\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS03\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS04\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS04\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) C:\Windows\SysWOW64\V0230Mon.exe (Paul Woolcock) [Bestand niet getekend] C:\Users\Albert\AppData\Local\OutlookGoogleCalendarSync\app-2.7.0-beta\OutlookGoogleCalendarSync.exe (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 7\updater-ws.exe (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 7\ws.exe (Veeam Software AG -> Veeam Software AG) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe (Veeam Software AG -> Veeam Software AG) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe 0 C:\Program Files\WindowsApps\45479liulios.17062D84F7C46_2.2.8.0_x64__p7pnf6hceqser\Snipaste.exe 0 C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 0 C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381792 2017-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Windows Mobile Device Center] => C:\WINDOWS\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Run: [Veeam.EndPoint.Tray.exe] => C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe [961800 2018-06-15] (Veeam Software AG -> Veeam Software AG) HKLM-x32\...\Run: [V0230Mon.exe] => C:\Windows\System32\V0230Mon.exe [36961 2006-07-19] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-09-16] (Intel Corporation - Software and Firmware Products -> Intel Corporation) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3331264 2020-01-20] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [AVFX Engine] => C:\Program Files (x86)\Creative\Creative Live! Cam\VideoFX\StartFX.exe [24576 2006-06-09] (Creative Technology Ltd.) [Bestand niet getekend] HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [432776 2018-02-27] (Geek Software GmbH -> Geek Software GmbH) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6260736 2020-03-04] (Dropbox, Inc -> Dropbox, Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrictie <==== AANDACHT HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\Run: [Creative Live! Cam Manager] => C:\Program Files (x86)\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe [143360 2006-05-31] (Creative Technology Ltd.) [Bestand niet getekend] HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\Run: [Writefull_3beta] => C:\Program Files (x86)\Writefull_3beta\Writefull_3beta.exe [52894592 2016-09-29] (ThinqLab -> ThinqLab Ltd.) HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22256824 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\Run: [electron.app.Loom] => C:\Users\pc1\AppData\Local\Programs\Loom\Loom.exe [71167808 2019-08-06] (Opentest, Inc. -> Loom, Inc.) HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\MountPoints2: {abe7ed11-6204-11e9-8626-74d435867cde} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3488014683-405627710-955796630-1001\...\MountPoints2: {b25e0d47-d181-11e9-865e-74d435867cde} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [Creative Live! Cam Manager] => C:\Program Files (x86)\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe [143360 2006-05-31] (Creative Technology Ltd.) [Bestand niet getekend] HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [OfficeSyncProcess] => C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [Writefull_3beta] => C:\Program Files (x86)\Writefull_3beta\Writefull_3beta.exe [52894592 2016-09-29] (ThinqLab -> ThinqLab Ltd.) HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22256824 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [electron.app.Loom] => C:\Users\Albert\AppData\Local\Programs\Loom\Loom.exe [71165416 2019-04-18] (Opentest, Inc. -> Loom, Inc.) HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\Run: [Outlook Google Calendar Sync] => C:\Users\Albert\AppData\Local\OutlookGoogleCalendarSync\app-2.7.0-beta\OutlookGoogleCalendarSync.exe [892928 2019-05-13] (Paul Woolcock) [Bestand niet getekend] HKU\S-1-5-21-3488014683-405627710-955796630-1003\...\MountPoints2: {abe7ed11-6204-11e9-8626-74d435867cde} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-80-2509796331-2397896265-2065075190-1053414710-4144350449\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-295201050-1169672620-2428953843-2629232761-3515083445\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-3094134038-1476730666-3650872244-3776492037-339313451\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-3404462892-1987791245-2451609587-3755554482-3689831200\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-3413786976-4113194721-686055268-1558715498-1022534746\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-3983243140-36183512-698590066-3930260783-2539356428\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-622701196-2483247827-344215762-1604999050-1080171184\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-80-684135558-66954648-645343295-865517114-2956913369\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\Installer\chrmstp.exe [2020-03-06] (Google LLC -> Google LLC) Startup: C:\Users\Albert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk [2016-01-28] ShortcutTarget: OneNote 2010 Schermopname en Snel starten.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2014-04-24] ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () [Bestand niet getekend] ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {00326E18-6F1B-4FB0-BE9C-11E8EDC9C9B8} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {0345F483-E8FC-437C-BC1B-3908E4C46F90} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-08-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {093A463C-99C8-4309-8244-D4F3AA8E8455} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> ) Task: {0D98EC46-27EA-4531-B08A-5A4A2365EA21} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {19D92F78-39C1-4F24-8103-235EBFEFDAD9} - System32\Tasks\Driver Booster SkipUAC (pc1) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe Task: {1AB3B53E-326D-4153-904E-975A38F665FF} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {21CF001B-141A-4501-8F9E-B92ACD02A91C} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {254E9B23-303B-4FDF-A722-A1752AB17006} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {255EACA2-B790-4727-8BD3-3D299A5AF5FE} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [488760 2019-07-15] (Bitdefender SRL -> Bitdefender) Task: {2DE15C40-5A35-48A1-8452-77734C3EE84A} - \WPD\SqmUpload_S-1-5-21-3488014683-405627710-955796630-1001 -> Geen bestand <==== AANDACHT Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {3F6476EB-67CD-448E-A652-3AC24337646A} - System32\Tasks\SlimCleaner Run => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [30639192 2018-11-07] (Slimware Utilities Holdings, Inc. -> SlimWare Utilities, Inc.) Task: {4D607A91-E201-4280-BEF6-872581D72F5C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {4E89CEB0-1299-46C9-9279-951184C8EFEA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-08-19] (Google Inc -> Google Inc.) Task: {4FD42F98-1791-4DD0-9040-7DA08CB2A59A} - System32\Tasks\{4EBDC0FD-FF3E-4DE5-8B5F-297FF9FBF509} => C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\ Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) Task: {5D6A5CB7-4ACB-484C-B20E-B7465F120913} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {5F3094AF-F39F-48AC-A65C-083C107039ED} - \WPD\SqmUpload_S-1-5-21-3488014683-405627710-955796630-1002 -> Geen bestand <==== AANDACHT Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {78412283-FC41-4FA8-923C-D09E2CD0D155} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [525632 2020-02-18] (Bitdefender SRL -> Bitdefender) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {A2E5F8B5-42E7-4E88-8592-0D0825E57183} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {A3F9961B-77C0-46BA-A209-47F500DEE0B1} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {AB561FA1-C4CB-440B-B2AE-E9BF8D3DD976} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {AD070E27-B7C2-48D1-8CDE-D5824E3AE905} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Geen bestand <==== AANDACHT Task: {B1C503AE-5DE8-4993-9BD0-48D138D405BC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {B34A9080-03B7-4AC9-9BFC-EC663927B30C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {B5D7C42B-C7A1-4D6D-AECA-9659CD64B222} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18233016 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd) Task: {BE1A2EE5-2CAF-497C-A5C4-2925CB802300} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-08-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {C8E01A91-8CC0-421B-8778-0505507CC9C2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {CA070F93-4170-4606-8161-C680B4826C81} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {DC3B1503-2FDB-4F65-AC60-10C5100EB6CC} - \WPD\SqmUpload_S-1-5-21-3488014683-405627710-955796630-1003 -> Geen bestand <==== AANDACHT Task: {E07332EA-1ACA-468A-A5F1-E7124BFCF57B} - System32\Tasks\Snipaste (Run As Admin) @11A1 => C:\Program Files standalone\Snipaste-1.11.3-x64\Snipaste.exe Task: {E2653CAC-F240-4723-9966-DC4535159C8D} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {E9F2D068-D16A-4963-BDB5-8FD943CC0A9E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {F5698AD0-EFB6-4537-B74F-FBB04A3C8A9F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-08-19] (Google Inc -> Google Inc.) Task: {FE33CF90-E2B7-4FC1-84BE-D2DB3C9D8A46} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 195.130.131.5 195.130.130.5 Tcpip\..\Interfaces\{16aee343-4501-4eae-96ca-a8c4de1e87a0}: [DhcpNameServer] 195.130.131.5 195.130.130.5 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <==== AANDACHT HKU\S-1-5-21-3488014683-405627710-955796630-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrictie <==== AANDACHT HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3488014683-405627710-955796630-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nieuwsblad.be/ HKU\S-1-5-21-3488014683-405627710-955796630-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00 SearchScopes: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 SearchScopes: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) BHO: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2014-01-24] (Canon Inc. -> CANON INC.) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation) BHO: eID Extension -> {89D6D363-6550-47C1-B83F-2433F6844EC6} -> C:\Program Files (x86)\eid-ie\eidie64.dll [2018-03-26] (e-Contract.be BVBA -> ) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) BHO-x32: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24] (Canon Inc. -> CANON INC.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: eID Extension -> {89D6D363-6550-47C1-B83F-2433F6844EC6} -> C:\Program Files (x86)\eid-ie\eidie32.dll [2018-03-26] (e-Contract.be BVBA -> ) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (Canon Inc. -> CANON INC.) Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) Toolbar: HKLM - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) Toolbar: HKLM-x32 - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKU\S-1-5-21-3488014683-405627710-955796630-1001 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-3488014683-405627710-955796630-1001 -> Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) Toolbar: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-02-18] (Bitdefender SRL -> Bitdefender) DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.22.0.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab Edge: ====== DownloadDir: C:\Users\pc1\Downloads Edge HomeButtonPage: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> hxxp://www.nieuwsblad.be/ Edge Notifications: HKU\S-1-5-21-3488014683-405627710-955796630-1003 -> hxxps://www.pdfforge.org; hxxps://www.tui.be; hxxps://computertotaal.nl; hxxps://nl.reimageplus.com; hxxps://www.reimageplus.com; hxxps://www.tomsguide.com; hxxps://whatsabyte.com; hxxps://appuals.com; hxxps://vakantie-tips.be; hxxps://www.take-a-trip.eu; hxxps://www.citytrip.be; hxxps://www.flaironline.nl FireFox: ======== FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2020-03-05] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ] FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-03-05] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2019-04-08] [Verouderd] [niet getekend] FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) [Bestand niet getekend] FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3488014683-405627710-955796630-1003: @zoom.us/ZoomVideoPlugin -> C:\Users\Albert\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-03-17] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FF Plugin HKU\S-1-5-21-3488014683-405627710-955796630-1003: SkypePlugin -> C:\Users\Albert\AppData\Local\SkypePlugin\7.12.0.55\npGatewayNpapi.dll [2015-12-08] (Microsoft Corporation -> Skype Technologies S.A.) FF Plugin HKU\S-1-5-21-3488014683-405627710-955796630-1003: SkypePlugin64 -> C:\Users\Albert\AppData\Local\SkypePlugin\7.12.0.55\npGatewayNpapi-x64.dll [2015-12-08] (Microsoft Corporation -> Skype Technologies S.A.) Chrome: ======= CHR Profile: C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default [2020-02-11] CHR Extension: (Presentaties) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-19] CHR Extension: (Documenten) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-01-21] CHR Extension: (Google Drive) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-01-21] CHR Extension: (YouTube) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-01-21] CHR Extension: (Spreadsheets) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-19] CHR Extension: (Bitdefender Wallet) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2019-01-21] CHR Extension: (Offline Documenten) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-01-21] CHR Extension: (Avast Online Security) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-03-13] CHR Extension: (Skype) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2018-02-19] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-01-21] CHR Extension: (Gmail) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-01-21] CHR Extension: (Chrome Media Router) - C:\Users\pc1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-13] CHR HKU\S-1-5-21-3488014683-405627710-955796630-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cnnbdaahphjgdgfhliignpepgnbnfomp] - c:\program files (x86)\copernic\desktopsearch4\ChromeConnector\ChromeConnector.crx CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [803576 2020-02-18] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [803576 2020-02-18] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2195320 2018-03-22] (Bitdefender SRL -> Bitdefender) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-08-21] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-08-21] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-03-04] (Dropbox, Inc -> Dropbox, Inc.) R2 DevMgmtService; C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe [119368 2019-12-06] (Bitdefender SRL -> Bitdefender) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Bestand niet getekend] R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [353768 2018-03-27] (Intel Corporation -> Intel Corporation) S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Bestand niet getekend] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 MSSQL$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS01\MSSQL\Binn\sqlservr.exe [484944 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$SQLEXPRESS02; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS02\MSSQL\Binn\sqlservr.exe [484944 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$SQLEXPRESS03; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS03\MSSQL\Binn\sqlservr.exe [484944 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$SQLEXPRESS04; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS04\MSSQL\Binn\sqlservr.exe [484944 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R3 PDF Architect 7; C:\Program Files\PDF Architect 7\ws.exe [2579752 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) S3 PDF Architect 7 Creator; C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe [692008 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) R2 PDF Architect 7 Update Service; C:\Program Files\PDF Architect 7\updater-ws.exe [1832232 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [432776 2018-02-27] (Geek Software GmbH -> Geek Software GmbH) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1291888 2019-07-15] (Bitdefender SRL -> Bitdefender) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2010-08-19] (CyberLink -> ) S4 SQLAgent$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS01\MSSQL\Binn\SQLAGENT.EXE [578640 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$SQLEXPRESS02; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS02\MSSQL\Binn\SQLAGENT.EXE [578640 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$SQLEXPRESS03; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS03\MSSQL\Binn\SQLAGENT.EXE [578640 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$SQLEXPRESS04; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS04\MSSQL\Binn\SQLAGENT.EXE [578640 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS01\MSSQL\Binn\sqlceip.exe [252704 2019-07-11] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$SQLEXPRESS02; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS02\MSSQL\Binn\sqlceip.exe [252704 2019-07-11] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$SQLEXPRESS03; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS03\MSSQL\Binn\sqlceip.exe [252704 2019-07-11] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$SQLEXPRESS04; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS04\MSSQL\Binn\sqlceip.exe [252704 2019-07-11] (Microsoft Corporation -> Microsoft Corporation) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [151656 2020-02-18] (Bitdefender SRL -> Bitdefender) R2 VeeamEndpointBackupSvc; C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe [120584 2018-06-15] (Veeam Software AG -> Veeam Software AG) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [803576 2020-02-18] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R3 A38CCID; C:\WINDOWS\system32\DRIVERS\a38ccid.sys [82480 2015-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Card Systems Ltd.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976 2015-06-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [1693368 2019-11-21] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [739264 2019-11-21] (Bitdefender SRL -> Bitdefender) S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22960 2019-03-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [46056 2020-02-18] (Bitdefender SRL -> © Bitdefender SRL) R1 BDVEDISK; C:\WINDOWS\system32\DRIVERS\bdvedisk.sys [96448 2018-04-27] (Bitdefender SRL -> BitDefender) S3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31832 2016-06-13] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [564136 2020-02-18] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA) S3 GeneStor; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [115704 2016-06-13] (GENESYS LOGIC, INC. -> GenesysLogic) R0 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [188384 2019-06-03] (Bitdefender SRL -> BitDefender LLC) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-03-24] (Martin Malik - REALiX -> REALiX(tm)) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R2 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [196392 2019-09-07] (Bitdefender SRL -> Bitdefender) S4 RsFx0501; C:\WINDOWS\System32\DRIVERS\RsFx0501.sys [261784 2019-06-15] (Microsoft Corporation -> Microsoft Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1139424 2018-06-22] (Realtek Semiconductor Corp. -> Realtek ) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-07-23] (Synaptics Incorporated -> Synaptics Incorporated) R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [610640 2019-01-14] (Bitdefender SRL -> Bitdefender) S3 USB28xxBGA; C:\WINDOWS\system32\DRIVERS\emBDA64.sys [683136 2011-03-06] (Microsoft Windows Hardware Compatibility Publisher -> eMPIA Technology, Inc.) S3 USB28xxOEM; C:\WINDOWS\system32\DRIVERS\emOEM64.sys [1189504 2011-03-06] (Microsoft Windows Hardware Compatibility Publisher -> eMPIA Technology, Inc.) S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R3 V0230Vfx; C:\WINDOWS\system32\DRIVERS\V0230Vfx.sys [10752 2006-05-04] (Microsoft Windows Hardware Compatibility Publisher -> EyePower Games Pte. Ltd.) R3 V0230VID; C:\WINDOWS\system32\DRIVERS\V0230VID.sys [584672 2006-07-24] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) S3 VeeamFSR; C:\Program Files\Veeam\Endpoint Backup\VeeamFSR.sys [123336 2018-06-15] (Veeam Software AG -> Veeam Software AG) S3 VirtualDK; C:\Program Files\Veeam\Endpoint Backup\vdk.sys [50632 2018-06-15] (Veeam Software AG -> Ken Kato) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) =================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2020-03-08 12:18 - 2020-03-08 12:20 - 000046268 _____ C:\Users\Albert\Downloads\FRST.txt 2020-03-08 12:17 - 2020-03-08 12:19 - 000000000 ____D C:\FRST 2020-03-08 12:14 - 2020-03-08 12:14 - 002279936 _____ (Farbar) C:\Users\Albert\Downloads\FRST64.exe 2020-03-05 20:49 - 2020-03-05 20:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-03-04 14:21 - 2020-03-04 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2020-03-04 14:21 - 2020-03-04 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2020-03-04 14:21 - 2020-03-04 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2020-03-04 14:21 - 2020-03-04 14:21 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2020-03-02 12:18 - 2020-03-02 12:31 - 000000000 ____D C:\Users\Albert\AppData\Local\babl-0.1 2020-03-02 12:18 - 2020-03-02 12:18 - 000000000 ____D C:\Users\Albert\AppData\Roaming\GIMP 2020-03-02 12:18 - 2020-03-02 12:18 - 000000000 ____D C:\Users\Albert\AppData\Local\GIMP 2020-03-02 12:18 - 2020-03-02 12:18 - 000000000 ____D C:\Users\Albert\AppData\Local\gegl-0.4 2020-03-02 12:18 - 2020-03-02 12:18 - 000000000 ____D C:\Users\Albert\.cache 2020-03-02 12:16 - 2020-03-02 12:16 - 000000906 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.10.18.lnk 2020-03-01 10:11 - 2020-03-01 10:11 - 000000869 _____ C:\Users\Albert\AppData\Local\recently-used.xbel 2020-02-28 12:41 - 2020-02-28 12:41 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 009931064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 007266288 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 006522824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 006436352 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 006085368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 005766192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 005112832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 004563408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 004129648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 003971808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 003552768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 003371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 002957496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 002773568 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002768432 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2020-02-28 12:41 - 2020-02-28 12:41 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-02-28 12:41 - 2020-02-28 12:41 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002494952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002259872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002087376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001985104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001867088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-02-28 12:41 - 2020-02-28 12:41 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 001490848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 001396152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-02-28 12:41 - 2020-02-28 12:41 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2020-02-28 12:41 - 2020-02-28 12:41 - 001273856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001264128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001218632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 001107824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001077264 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 001054376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000983896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000929144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000776488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000769552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000627216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000561680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2020-02-28 12:41 - 2020-02-28 12:41 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2020-02-28 12:41 - 2020-02-28 12:41 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000320312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000089616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys 2020-02-28 12:41 - 2020-02-28 12:41 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe 2020-02-28 12:41 - 2020-02-28 12:41 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin 2020-02-28 12:41 - 2020-02-28 12:41 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2020-02-28 12:40 - 2020-02-28 12:40 - 007907808 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 004622280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 004048896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 003728896 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 003708416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002715648 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 002522112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002474496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002289664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001823232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001762304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001481216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001149200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000945384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000833616 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000642216 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2020-02-28 12:40 - 2020-02-28 12:40 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2020-02-28 12:40 - 2020-02-28 12:40 - 000522384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000250896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000224056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000222520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000183608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000127272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2020-02-28 12:40 - 2020-02-28 12:40 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000056632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS 2020-02-28 12:40 - 2020-02-28 12:40 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000030008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000016912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys 2020-02-28 12:40 - 2020-02-28 12:40 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe 2020-02-28 12:40 - 2020-02-28 12:40 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll 2020-02-28 12:40 - 2020-02-28 12:40 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll 2020-02-26 07:34 - 2020-02-26 07:34 - 000000948 _____ C:\Users\Public\Desktop\PDFCreator.lnk 2020-02-26 07:34 - 2020-02-26 07:34 - 000000948 _____ C:\ProgramData\Desktop\PDFCreator.lnk 2020-02-26 07:34 - 2020-02-26 07:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2020-02-12 10:51 - 2020-02-03 21:56 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2020-02-12 10:51 - 2020-02-03 21:56 - 000179608 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2020-02-12 10:48 - 2020-02-12 10:48 - 000000000 ____D C:\ProgramData\ssh 2020-02-12 10:26 - 2020-02-12 10:26 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 007754752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 005912064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 005502464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 004856832 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 004575232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 004470272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 004308480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 003820032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 003484672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 002230232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 001541632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000486400 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2020-02-12 10:26 - 2020-02-12 10:26 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe 2020-02-12 10:26 - 2020-02-12 10:26 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2020-02-12 10:26 - 2020-02-12 10:26 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 003792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001664696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001664680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001505592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001195008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000904504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000875448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000857088 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2020-02-12 10:25 - 2020-02-12 10:25 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000804872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000774664 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000758800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000679368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000678928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000597816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000542288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000518456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000516648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000405632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000335448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpviewerax.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000274464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpviewerax.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2020-02-12 10:25 - 2020-02-12 10:25 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000220984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000186880 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000186672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000179720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000150536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000133464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000132624 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000037392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2020-02-12 10:25 - 2020-02-12 10:25 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2020-02-12 10:25 - 2020-02-12 10:25 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe 2020-02-12 10:25 - 2020-02-12 10:25 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2020-02-12 10:07 - 2020-02-12 10:07 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-02-12 10:07 - 2020-02-12 10:07 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2020-02-12 09:27 - 2020-02-12 22:53 - 000000000 ____D C:\Users\Albert\AppData\Roaming\PDF Architect 7 2020-02-11 21:08 - 2020-02-11 21:08 - 000000801 _____ C:\Users\Public\Desktop\PDF Architect 7.lnk 2020-02-11 21:08 - 2020-02-11 21:08 - 000000801 _____ C:\ProgramData\Desktop\PDF Architect 7.lnk 2020-02-11 20:24 - 2020-02-11 21:07 - 000000000 ____D C:\Program Files\PDF Architect 7 2020-02-11 20:24 - 2020-02-11 21:07 - 000000000 ____D C:\Program Files (x86)\PDF Architect 7 2020-02-11 20:24 - 2020-02-11 20:24 - 000001096 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 7.lnk 2020-02-11 20:24 - 2020-02-11 20:24 - 000000000 ____D C:\Users\pc1\Documents\PDF Architect 2020-02-11 20:24 - 2020-02-11 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 7 2020-02-11 20:22 - 2020-02-26 07:34 - 000000000 ____D C:\Program Files\PDFCreator 2020-02-11 20:22 - 2020-02-11 20:22 - 000116736 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2020-02-10 15:36 - 2020-02-10 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite 2020-02-10 15:35 - 2020-02-10 15:36 - 000000000 ____D C:\Program Files (x86)\HiSuite 2020-02-10 12:00 - 2020-02-10 12:00 - 000002445 _____ C:\Users\Albert\Desktop\Binck ProRealTime.lnk 2020-02-10 12:00 - 2020-02-10 12:00 - 000000000 ____D C:\Users\Albert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Binck ProRealTime 2020-02-10 12:00 - 2020-02-10 12:00 - 000000000 ____D C:\Users\Albert\AppData\Local\IT-Finance ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2020-03-08 12:19 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-03-08 11:44 - 2014-04-16 19:15 - 000000000 ____D C:\Users\Albert\Documents\Outlook-bestanden 2020-03-08 11:26 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2020-03-08 09:42 - 2019-09-07 13:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-03-08 09:07 - 2019-09-07 14:42 - 000000000 ____D C:\Users\Albert\AppData\Local\Deployment 2020-03-08 09:02 - 2019-05-13 15:30 - 000000000 ____D C:\Users\Albert\AppData\Roaming\Outlook Google Calendar Sync 2020-03-08 09:01 - 2017-08-10 12:01 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2020-03-08 09:01 - 2015-04-28 15:25 - 000000000 __SHD C:\Users\Albert\IntelGraphicsProfiles 2020-03-08 08:59 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-03-07 22:33 - 2018-05-26 20:58 - 000001606 _____ C:\Users\Albert\Desktop\uitslag_winst_lotto.lnk 2020-03-07 19:05 - 2014-04-18 11:32 - 000000000 ____D C:\Users\Albert\AppData\Roaming\KeePass 2020-03-07 15:32 - 2019-09-07 12:44 - 000000000 ____D C:\Users\SQLTELEMETRY$SQLEXPRESS04 2020-03-07 15:32 - 2019-09-07 12:44 - 000000000 ____D C:\Users\SQLTELEMETRY$SQLEXPRESS02 2020-03-07 15:32 - 2019-09-07 12:44 - 000000000 ____D C:\Users\SQLTELEMETRY$SQLEXPRESS01 2020-03-07 15:32 - 2019-09-07 12:44 - 000000000 ____D C:\Users\MSSQL$SQLEXPRESS02 2020-03-07 15:32 - 2019-09-07 12:43 - 000000000 ____D C:\Users\SQLTELEMETRY$SQLEXPRESS03 2020-03-07 15:32 - 2019-09-07 12:43 - 000000000 ____D C:\Users\MSSQL$SQLEXPRESS04 2020-03-07 15:32 - 2019-09-07 12:43 - 000000000 ____D C:\Users\MSSQL$SQLEXPRESS03 2020-03-07 15:32 - 2019-09-07 12:43 - 000000000 ____D C:\Users\MSSQL$SQLEXPRESS01 2020-03-07 15:31 - 2019-09-07 14:35 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-03-07 12:17 - 2017-12-03 21:48 - 000000000 ___RD C:\Users\pc1\3D Objects 2020-03-07 12:17 - 2015-04-28 15:21 - 000000000 __SHD C:\Users\pc1\IntelGraphicsProfiles 2020-03-07 12:17 - 2014-11-03 23:41 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-03-06 23:05 - 2019-03-19 05:37 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2020-03-06 23:03 - 2014-05-27 10:50 - 000000000 ____D C:\Users\Albert\Documents\Backup_CCleaner 2020-03-06 22:55 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-03-06 06:27 - 2016-08-19 19:41 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-03-06 00:02 - 2014-05-27 10:25 - 000000000 ____D C:\Users\pc1\Documents\Backup_CCleaner 2020-03-06 00:00 - 2019-09-11 19:23 - 000000000 ____D C:\WINDOWS\Minidump 2020-03-05 23:56 - 2019-09-07 14:35 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-03-05 23:56 - 2019-06-25 20:26 - 000000823 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-03-05 23:56 - 2019-06-25 20:26 - 000000823 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-03-05 20:49 - 2019-08-21 10:24 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-03-05 11:37 - 2014-04-16 20:19 - 000000000 ____D C:\Users\Regine\Documents\Outlook-bestanden 2020-03-05 11:36 - 2019-03-01 23:00 - 000000000 ____D C:\Users\Regine\AppData\Roaming\vlc 2020-03-05 11:31 - 2019-09-07 18:18 - 000000000 ____D C:\Users\Regine\AppData\Local\Deployment 2020-03-05 09:40 - 2018-06-04 16:48 - 000000000 ___RD C:\Users\Regine\OneDrive 2020-03-05 09:40 - 2015-04-28 15:40 - 000000000 __SHD C:\Users\Regine\IntelGraphicsProfiles 2020-03-02 12:18 - 2019-09-07 12:44 - 000000000 ____D C:\Users\Albert 2020-03-02 12:14 - 2017-02-20 14:14 - 000000000 ____D C:\Program Files\GIMP 2 2020-03-02 11:42 - 2017-02-20 14:17 - 000000000 ____D C:\Users\Albert\.gimp-2.8 2020-03-01 17:40 - 2019-05-13 15:30 - 000002706 _____ C:\Users\Albert\Desktop\Outlook Google Calendar Sync.lnk 2020-03-01 17:09 - 2019-09-07 14:10 - 002441064 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-03-01 17:09 - 2019-03-19 13:33 - 000786140 _____ C:\WINDOWS\system32\perfh013.dat 2020-03-01 17:09 - 2019-03-19 13:33 - 000154170 _____ C:\WINDOWS\system32\perfc013.dat 2020-02-28 20:47 - 2017-12-03 15:12 - 000000000 ___RD C:\Users\Regine\3D Objects 2020-02-28 12:53 - 2015-09-16 13:05 - 000000000 ___RD C:\Users\Albert\3D Objects 2020-02-28 12:51 - 2019-09-07 13:52 - 000498256 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\setup 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-02-28 12:48 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender 2020-02-28 12:46 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-02-27 11:12 - 2014-04-16 19:08 - 000000000 ____D C:\Users\Albert\Documents\docu 2020-02-27 10:53 - 2019-09-07 14:35 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3488014683-405627710-955796630-1003 2020-02-27 10:53 - 2019-09-07 12:44 - 000002412 _____ C:\Users\Albert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-02-27 10:53 - 2018-06-04 16:42 - 000000000 ___RD C:\Users\Albert\OneDrive 2020-02-26 23:23 - 2017-10-10 11:07 - 000000000 ____D C:\VeeamFLR 2020-02-20 16:41 - 2019-09-07 12:43 - 000000000 ____D C:\Users\pc1 2020-02-20 16:39 - 2019-09-07 14:35 - 000004166 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{C3F6C9F1-5B53-4291-AFFC-5F314205A042} 2020-02-20 09:33 - 2019-09-07 14:35 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3488014683-405627710-955796630-1002 2020-02-20 09:33 - 2019-09-07 12:43 - 000002412 _____ C:\Users\Regine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-02-18 12:25 - 2019-04-11 10:16 - 000564136 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys 2020-02-18 12:25 - 2019-04-11 10:16 - 000046056 _____ (© Bitdefender SRL) C:\WINDOWS\system32\Drivers\bdprivmon.sys 2020-02-18 10:16 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2020-02-18 10:01 - 2019-09-07 14:35 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3488014683-405627710-955796630-1001 2020-02-18 10:01 - 2019-09-07 12:43 - 000002403 _____ C:\Users\pc1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-02-18 10:01 - 2014-04-14 10:32 - 000000000 ___RD C:\Users\pc1\OneDrive 2020-02-13 16:24 - 2019-09-07 14:35 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-02-13 16:24 - 2015-05-18 14:45 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-02-12 10:48 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-02-12 10:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2020-02-12 10:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-02-12 10:48 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\servicing 2020-02-12 10:36 - 2014-04-15 15:05 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-02-12 10:31 - 2014-04-15 15:05 - 120407888 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-02-12 09:24 - 2020-01-21 21:21 - 000000000 ____D C:\ProgramData\PDF Architect 7 2020-02-10 16:56 - 2014-10-04 15:50 - 000000000 ____D C:\Users\Regine\Documents\CCleaner_backup 2020-02-10 15:36 - 2019-11-03 11:25 - 000000000 ____D C:\Users\pc1\AppData\Local\HiSuite ==================== Bestanden in de root van sommige mappen ======== 2015-04-27 09:34 - 2015-04-27 09:34 - 000000016 ____H () C:\Users\Regine\SyncToy_00be28f9-a0c2-46f8-b44b-e627ca448b17.dat 2015-04-27 09:27 - 2015-04-27 09:27 - 000000016 ____H () C:\Users\Regine\SyncToy_4c63560f-b480-45b6-894d-3f9a1ba4d1a8.dat 2018-03-01 10:51 - 2018-03-01 10:51 - 000000038 _____ () C:\Users\pc1\AppData\Local\cloudready_installer_uuid 2014-04-18 09:36 - 2014-04-18 09:36 - 000004608 _____ () C:\Users\pc1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-05-27 14:10 - 2017-10-14 09:18 - 000007635 _____ () C:\Users\pc1\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================