Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 92290 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Please help me! [Solved]

Virus!

  • This topic is locked This topic is locked
17 replies to this topic

#1 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 12 June 2019 - 06:46 AM

Hi! I'm wolf, and (you knew it) I've got a virus in my PC. I just know it's a malware.

It came along with koplayer android emulator. I am not sure that it came with koplayer or not, but I saw one of my antivirus program classifying it as a virus. 

 

***INFO***

 

File name: adb.exe

Risk: Severe

Comments: Please reply. I am not telling a joke.

 

 

***END***

 

I'm a software engineer, and all my files are in this pc. Please respond fast.

 

***EXTRA ISSUES***

I am pretty much sure that this virus was injected in my pc through that fake URL that was faking the original koplayer website.

One issue is this that my antivirus is good enough but the code is undetectable by them. The antivirus which caught this virus was ByteFence. By the way, if you think it a joke, then don't. And soon after this virus came, my second email id got hacked. So... please help me.

 

***END***

 

Yup, and my last word is it that it is stopping some of the services mid-process. Like cmd.exe , tskmgr.exe and Windows Explorer is also getting stopped by it.


    Advertisements

Register to Remove


#2 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 12 June 2019 - 09:41 AM

Hello The_Lone_Wolf and welcome to the WTT forum.

adb.exe is not a virus. See here.

Do you have any other problems?

Satchfan


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#3 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 12 June 2019 - 09:51 PM

I am a software engineer. I know it is not a virus. But it may be a virus in disguise.

(Yup, I know it is an android bridge used in android simulators)


Edited by The_Lone_Wolf, 12 June 2019 - 09:52 PM.


#4 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 13 June 2019 - 02:58 AM

ByteFence is not an antivirus but a potentially unwanted program and it is certainly not a reliable source of malware detection. I suggest you uninstall it.

Submit a file to VirusTotal

Go to VirusTotal and submit the file for analysis:

  • locate adb.exe, click on it and then on Open
  • click on Send File
  • if you get a message saying File has already been analyzed, click Reanalyze file now.

You will get a report back; post the report into this thread for me to see or copy and paste the link to the results page.

===================================================

Note: Please complete the following tasks in the order given in the instructions.

===================================================

Download and run AdwCleaner

Download AdwCleaner from here and save it to your desktop.

  • run AdwCleaner by clicking on Scan Now
  • when it has finished, leave everything that was found checked, (ticked), then click on Clean and Repair
  • if it asks to reboot, allow the reboot
  • on reboot a log will be produced; please attach the content of the log to your next reply.

===================================================

Run Malwarebytes Anti-Malware

You may have Malwarebytes Anti-Malware installed but if not, you can download it from here.

  • run the program
  • click on the ‘Dashboard’ to make sure everything is up to date, (it is not necessary to upgrade to the premium version of MBAM)
  • click on the ‘Scan’ tab, (directly below the Dashboard tab)
  • select the Threat Scan option
  • slick the Scan Now button
  • Threat Scan will begin
  • when the scan has completed and if malware was found, click the Quarantine Selected button to allow MBAM to quarantine what was found
  • if prompted to restart the computer, close all other programs and click Yes to restart your computer
  • once you are back at your desktop, open MBAM once more
  • click on the ‘Reports’ tab
  • double-click on the most recent Scan Report
  • click on Export, then Copy to Clipboard

Please paste the contents of the clipboard into your next reply to me.

===================================================

Run Farbar Recovery Scan Tool

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • press Scan button
  • it will produce a log called Frst.txt in the same directory the tool is run from
  • please copy and paste log back here.
  • the first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the Frst.txt into your reply.

Include with next post:

VirusTotal result

AdwCleaner log
Mbam.txt
Frst.txt
Addition.txt


Satchfan

 


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#5 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 14 June 2019 - 12:33 AM

EXTRA: I am not able to delete koplayer. The file is also not getting deleted. By the commands also.

 

 

VirusTotal result:

 

 

 Ad-Aware                         Undetected

AegisLab                      Undetected

AhnLab-V3          Undetected

ALYac                           Undetected

Antiy-AVL            Undetected

Arcabit                         Undetected

Avast                   Undetected

Avast-Mobile              Undetected

AVG                    Undetected

Avira (no cloud)         Undetected

AVware                 Undetected

Babable                          Undetected

Baidu                       Undetected

BitDefender                             Undetected

Bkav                   Undetected

CAT-QuickHeal          Undetected

ClamAV            Undetected

CMC                       Undetected

Comodo         Undetected

CrowdStrike Falcon    Undetected

Cybereason        Undetected

Cylance               Undetected

Cyren Undetected

DrWeb                 Undetected

eGambit       Undetected

Emsisoft                Undetected

Endgame         Undetected

eScan                   Undetected

ESET-NOD32             Undetected

F-Prot                       Undetected

F-Secure         Undetected

Fortinet                 Undetected

GData          Undetected

Ikarus                    Undetected

Jiangmin        Undetected

K7AntiVirus         Undetected

K7GW           Undetected

Kaspersky            Undetected

Kingsoft            Undetected

Malwarebytes          Undetected

MAX              Undetected

McAfee                  Undetected

McAfee-GW-Edition   Undetected

Microsoft               Undetected

NANO-Antivirus    Undetected

Palo Alto Networks         Undetected

Panda             Undetected

Qihoo-360             Undetected

Rising            Undetected

SentinelOne (Static ML)           Undetected

Sophos AV      Undetected

Sophos ML            Undetected

SUPERAntiSpyware                Undetected

Symantec               Undetected

TACHYON   Undetected

Tencent                Undetected

TheHacker    Undetected

TrendMicro      Undetected

TrendMicro-HouseCall          Undetected

VBA32                 Undetected

VIPRE         Undetected

ViRobot               Undetected

Webroot    Undetected

Yandex              Undetected

Zillya          Undetected

ZoneAlarm by Check Point   Undetected

Zoner                    Undetected

Symantec Mobile Insight             Unable to process file type

Trustlook                      Unable to process file type

 

 

:EOF

 

 

 

ADW *something* report:

 

# -------------------------------

# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build:    04-04-2019
# Database: 2019-05-27.1 (Cloud)
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    06-14-2019
# Duration: 00:00:06
# OS:       Windows 7 Ultimate
# Cleaned:  6
# Failed:   0
 
 
***** [ Services ] *****
 
No malicious services cleaned.
 
***** [ Folders ] *****
 
Deleted       C:\ProgramData\ByteFence
 
***** [ Files ] *****
 
No malicious files cleaned.
 
***** [ DLL ] *****
 
No malicious DLLs cleaned.
 
***** [ WMI ] *****
 
No malicious WMI cleaned.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts cleaned.
 
***** [ Tasks ] *****
 
No malicious tasks cleaned.
 
***** [ Registry ] *****
 
Deleted       HKCU\Software\PRODUCTSETUP
Deleted       HKCU\Software\ProductSetup\Uninstall\0B2U2Z1P0F1P1G1R1P1V0A1Q1Q0O1G
Deleted       HKCU\Software\ProductSetup\Uninstall\0S1P1T1C1R1MtT0P1C1F2X1L1Q1P1QtT1S2UtT0Y1T1M1F1F
Deleted       HKCU\Software\csastats
Deleted       HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\ByteFence.exe
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries cleaned.
 
***** [ Chromium URLs ] *****
 
No malicious Chromium URLs cleaned.
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries cleaned.
 
***** [ Firefox URLs ] *****
 
No malicious Firefox URLs cleaned.
 
 
*************************
 
[+] Delete Tracing Keys
[+] Reset Winsock
 
*************************
 
AdwCleaner[S00].txt - [1697 octets] - [14/06/2019 11:37:19]
 
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
 
 
:EOF
 
 
 
Malwarebytes report:
 
Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 6/14/19
Scan Time: 12:05 PM
Log File: 98c32438-8e6e-11e9-ac3d-c03fd540a21d.json
 
-Software Information-
Version: 3.7.1.2839
Components Version: 1.0.586
Update Package Version: 1.0.11046
License: Trial
 
-System Information-
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: User-PC\Tejas Joshi
 
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 193714
Threats Detected: 0
Threats Quarantined: 0
Time Elapsed: 6 min, 3 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 0
(No malicious items detected)
 
Registry Value: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 0
(No malicious items detected)
 
File: 0
(No malicious items detected)
 
Physical Sector: 0
(No malicious items detected)
 
WMI: 0
(No malicious items detected)
 
 
(end)
 
 
:EOF
 
 
 
FRST.txt:
 
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-06-2019 01
Ran by Tejas Joshi (administrator) on USER-PC (ECS H61H2-M4) (14-06-2019 11:47:52)
Running from C:\Users\Tejas Joshi\Downloads
Loaded Profiles: Tejas Joshi (Available Profiles: User & Tejas Joshi)
Platform: Microsoft Windows 7 Ultimate  Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: "C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe" -- "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(AVAST Software s.r.o. -> ) C:\Program Files\AVAST Software\Avast\AvastNM.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine\Vpn.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine\VpnNM.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe
(Bluestack Systems, Inc. -> BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-Agent.exe
(Bluestack Systems, Inc. -> BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(Bluestack Systems, Inc. -> BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(Google Inc -> Google LLC) C:\Program Files\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(北京海誉动想科技股份有限公司 -> ) C:\Program Files\Droid4X\Droid4XService.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [226184 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [BlueStacks Agent] => C:\Program Files\BlueStacks\HD-Agent.exe [896608 2015-12-01] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\...\Run: [Chromium] => c:\users\tejas joshi\appdata\local\chromium\application\chrome.exe [4195328 2017-10-07] (The Chromium Authors) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\75.0.3770.90\Installer\chrmstp.exe [2019-06-14] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files\AVAST Software\Browser\Application\74.0.1376.132\Installer\chrmstp.exe [2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2019-06-13]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software s.r.o. -> AVAST Software)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {02523C61-CD51-46AC-8EF1-2E20E18E31E7} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3159712163-3974166340-3820129496-1003 => {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} C:\Windows\System32\gameux.dll [2576384 2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Task: {104E1D68-B3CE-4285-953D-519AEA7ADBC4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {135C8D58-8FBA-4762-84FA-5B7376089980} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [1951280 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
Task: {13CE38A5-1387-4576-B838-11C062A9BBC5} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [1951280 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
Task: {1CC80590-A0A6-41D4-A8C7-BBCFA862EEB5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [154920 2019-06-01] (Google Inc -> Google LLC)
Task: {3AB5C5B4-1E3E-432D-8EA1-80616043FEEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [154920 2019-06-01] (Google Inc -> Google LLC)
Task: {4B7CA459-9EC0-4DE9-B9F1-B3D09C80FC1C} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\AVAST Software\SecureLine\VpnUpdate.exe [1398208 2019-06-12] (AVAST Software s.r.o. -> AVAST Software)
Task: {4C55B747-BFD5-4041-BF75-C4853414859D} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3159712163-3974166340-3820129496-1000 => {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} C:\Windows\System32\gameux.dll [2576384 2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Task: {6978755A-3EB3-4584-99BD-D49B8F7D5CE4} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
Task: {9054F950-A6D3-464F-9CD0-D8E33650298A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1913648 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
Task: {CA484A99-C47E-4C76-80E3-2A837385E11C} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2394504 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
Task: {CCDEDD2A-EC2D-4E45-B8A5-587AB91A4BA7} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 172.16.174.151 192.168.0.1
Tcpip\..\Interfaces\{0DBE127C-217F-4029-B2DB-3FC473A72572}: [DhcpNameServer] 172.16.174.151 192.168.0.1
Tcpip\..\Interfaces\{6C96C915-31CB-4650-952D-BCB7F96D6E08}: [NameServer] 100.120.165.1
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://in.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_fjnhltxzm_19_24_ssg00&param1=1&param2=f%3D1%26b%3DIE%26cc%3Din%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0CtDtA0F0DyDyEtD0AtBtC0DyB0FyB0CtN0D0Tzu0StByBtCzztN1L2XzuyEtFyDtCtFtDtFtCzyyEtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCzzyE0D0Bzz0DtCtGyEtB0DyDtG0C0A0D0AtGtD0A0E0BtGzzzzyC0FyCzzyC0FtBzztB0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytByE1T1RtCtA1OtGtBzz1OyCtGyEtB1R1QtG1StDyEtBtGtByDyEyCtDzy1R1S1TyByE1Q2QtN0A0LzuyEtN1B2Z1V1T1S1NzutBtBtCyEyCtN1Q2Z1B1P1RzutCyDyCtDtByDzztCtByB%26cr%3D1139356847%26a%3Dwcg_fjnhltxzm_19_24_ssg00%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
 
FireFox:
========
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-01] (Google Inc -> Google LLC)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-01] (Google Inc -> Google LLC)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
 
Chrome: 
=======
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default [2019-06-14]
CHR Extension: (Slides) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-06-01]
CHR Extension: (Docs) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-06-01]
CHR Extension: (Google Drive) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-06-01]
CHR Extension: (YouTube) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-06-01]
CHR Extension: (Sheets) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-06-01]
CHR Extension: (Google Docs Offline) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-06-01]
CHR Extension: (AdBlock) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-06-12]
CHR Extension: (Grammarly for Chrome) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2019-06-01]
CHR Extension: (Text Tools) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lakdnoglfanckmlikpkheinpijlmidan [2019-06-01]
CHR Extension: (Google Input Tools) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2019-06-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-06-01]
CHR Extension: (Gmail) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-06-01]
CHR Extension: (Chrome Media Router) - C:\Users\Tejas Joshi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-11]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5584416 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [359864 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\74.0.1376.132\elevation_service.exe [1079424 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [433760 2015-12-01] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [413280 2015-12-01] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [855648 2015-12-01] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.)
S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [276288 2012-08-25] (Intel Corporation -> Intel Corporation)
R2 Droid4XService; C:\Program Files\Droid4X\Droid4XService.exe [285616 2017-08-14] (北京海誉动想科技股份有限公司 -> )
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [7038904 2019-06-12] (AVAST Software s.r.o. -> AVAST Software)
S3 uSHAREitSvc; C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.Service.exe [33224 2017-09-11] (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [34488 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [173232 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225608 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [171520 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [56296 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [214736 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40688 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [139352 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [100984 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72800 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [783024 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [403680 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [167568 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [48152 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [312248 2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [132192 2015-12-01] (Bluestack Systems, Inc. -> BlueStack Systems)
R3 igfx; C:\Windows\System32\DRIVERS\igdkmd32.sys [7408128 2012-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R1 TTDrv; C:\Program Files\KOPLAYER\vbox\TTDrv.sys [241448 2017-04-01] (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
R1 YSDrv; C:\Program Files\Bignox\BigNoxVM\RT\YSDrv.sys [261384 2019-06-12] (Beijing Duodian Online Science and Technology Co.,Ltd -> BigNox Corporation)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-06-14 11:47 - 2019-06-14 11:48 - 000018869 _____ C:\Users\Tejas Joshi\Downloads\FRST.txt
2019-06-14 11:46 - 2019-06-14 11:47 - 000000000 ____D C:\FRST
2019-06-14 11:46 - 2019-06-14 11:46 - 001770496 _____ (Farbar) C:\Users\Tejas Joshi\Downloads\FRST.exe
2019-06-14 11:45 - 2019-06-14 11:48 - 064309056 _____ (Malwarebytes ) C:\Users\Tejas Joshi\Downloads\mb3-setup-1878.1878-3.7.1.2839.exe
2019-06-14 11:36 - 2019-06-14 11:37 - 000000000 ____D C:\AdwCleaner
2019-06-14 11:34 - 2019-06-14 11:35 - 007025360 _____ (Malwarebytes) C:\Users\Tejas Joshi\Downloads\adwcleaner_7.3.exe
2019-06-14 11:12 - 2019-06-14 11:12 - 000037435 _____ C:\Users\Tejas Joshi\Downloads\1560492728113NrecnxEG1pi3pYy7.pdf
2019-06-14 11:08 - 2019-06-14 11:08 - 000002112 _____ C:\Users\Tejas Joshi\Downloads\1560492528971IK0ABYJZK4.pdf
2019-06-14 11:06 - 2019-06-14 11:06 - 000002117 _____ C:\Users\Tejas Joshi\Downloads\1560492415538IK0ABYJWT8.pdf
2019-06-14 11:04 - 2019-06-14 11:04 - 000002128 _____ C:\Users\Tejas Joshi\Downloads\1560492277001IK0ABYJTV5.pdf
2019-06-14 11:02 - 2019-06-14 11:02 - 000002117 _____ C:\Users\Tejas Joshi\Downloads\1560492128817IK0ABYJPJ0.pdf
2019-06-14 10:58 - 2019-06-14 10:58 - 000002119 _____ C:\Users\Tejas Joshi\Downloads\1560491923008IK0ABYJIS1.pdf
2019-06-13 15:55 - 2019-06-13 16:06 - 066899505 _____ C:\Users\Tejas Joshi\Downloads\LONEWOLF 17_v1.2.90_apkpure.com.apk
2019-06-13 09:38 - 2019-06-13 09:38 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Macromedia
2019-06-13 09:37 - 2019-06-13 09:39 - 000000730 _____ C:\Users\Tejas Joshi\Desktop\KOPLAYERBOX.lnk
2019-06-13 09:37 - 2019-06-13 09:38 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\KOPLAYERBOX
2019-06-13 09:37 - 2019-06-13 09:37 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KOPLAYERBOX
2019-06-13 09:35 - 2019-06-13 09:39 - 000000000 ____D C:\koplayerbox
2019-06-13 09:17 - 2019-06-13 09:17 - 000000000 ___HD C:\$AV_ASW
2019-06-13 09:16 - 2019-06-13 09:16 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\NoxSrv
2019-06-13 09:16 - 2019-06-13 09:16 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\NoxPopup
2019-06-13 09:04 - 2019-06-13 09:04 - 000001049 _____ C:\Users\Public\Desktop\Avast SecureLine VPN.lnk
2019-06-12 19:59 - 2019-06-12 19:59 - 000000000 ____D C:\Users\User\AppData\Roaming\AVAST Software
2019-06-12 19:59 - 2019-06-12 19:59 - 000000000 ____D C:\Users\User\AppData\Local\CEF
2019-06-12 19:47 - 2019-06-12 19:47 - 000000000 ____D C:\Users\User\AppData\Local\mbamtray
2019-06-12 19:47 - 2019-06-12 19:47 - 000000000 ____D C:\Users\User\AppData\Local\mbam
2019-06-12 19:47 - 2019-06-12 19:47 - 000000000 ____D C:\Users\User\AppData\Local\AVAST Software
2019-06-12 18:49 - 2019-06-12 18:49 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\mbam
2019-06-12 18:44 - 2019-06-12 18:44 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\mbamtray
2019-06-12 18:35 - 2019-06-12 18:42 - 063182216 _____ (Malwarebytes ) C:\Users\Tejas Joshi\Downloads\mb3-setup-43841.43841-3.7.1.2839-1.0.586-1.0.10430.exe
2019-06-12 17:49 - 2018-09-05 21:01 - 000048152 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\aswTap.sys
2019-06-12 16:11 - 2019-06-12 16:11 - 000000066 _____ C:\Users\Tejas Joshi\inittk.ini
2019-06-12 16:05 - 2019-06-12 16:05 - 000000053 _____ C:\Users\Tejas Joshi\useruid.ini
2019-06-12 16:05 - 2019-06-12 16:05 - 000000045 _____ C:\Users\Tejas Joshi\nuuid.ini
2019-06-12 16:05 - 2019-06-12 16:05 - 000000041 _____ C:\Users\Tejas Joshi\inst.ini
2019-06-12 16:05 - 2019-06-12 16:05 - 000000000 ____D C:\Users\Tejas Joshi\Nox_share
2019-06-12 15:19 - 2019-06-13 09:17 - 000000000 ____D C:\Users\Tejas Joshi\vmlogs
2019-06-12 15:19 - 2019-06-13 09:17 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\NoxSrv
2019-06-12 15:19 - 2019-06-12 15:19 - 000001018 _____ C:\Users\Tejas Joshi\Desktop\Multi-Drive.lnk
2019-06-12 15:19 - 2019-06-12 15:19 - 000000937 _____ C:\Users\Tejas Joshi\Desktop\Nox.lnk
2019-06-12 15:19 - 2019-06-12 15:19 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Nox
2019-06-12 15:18 - 2019-06-13 09:17 - 000000000 ____D C:\Users\Tejas Joshi\.BigNox
2019-06-12 15:16 - 2019-06-12 15:17 - 000000000 ____D C:\Program Files\Bignox
2019-06-12 15:11 - 2019-06-12 15:13 - 000000000 ____D C:\Program Files\Nox
2019-06-12 15:10 - 2019-06-13 09:17 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Nox
2019-06-12 14:48 - 2019-06-04 04:40 - 000751104 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2019-06-12 14:48 - 2019-06-04 04:40 - 000304640 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2019-06-12 14:48 - 2019-05-27 11:59 - 000348984 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-06-12 14:48 - 2019-05-25 06:37 - 020275712 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-06-12 14:48 - 2019-05-25 06:25 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-06-12 14:48 - 2019-05-25 06:25 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-06-12 14:48 - 2019-05-25 06:15 - 000499200 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-06-12 14:48 - 2019-05-25 06:15 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-06-12 14:48 - 2019-05-25 06:14 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-06-12 14:48 - 2019-05-25 06:14 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-06-12 14:48 - 2019-05-25 06:13 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-06-12 14:48 - 2019-05-25 06:12 - 002297344 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-06-12 14:48 - 2019-05-25 06:10 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-06-12 14:48 - 2019-05-25 06:09 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-06-12 14:48 - 2019-05-25 06:08 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-06-12 14:48 - 2019-05-25 06:07 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-06-12 14:48 - 2019-05-25 06:07 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-06-12 14:48 - 2019-05-25 06:07 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-06-12 14:48 - 2019-05-25 06:06 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-06-12 14:48 - 2019-05-25 06:03 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-06-12 14:48 - 2019-05-25 06:00 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-06-12 14:48 - 2019-05-25 05:57 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-06-12 14:48 - 2019-05-25 05:56 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-06-12 14:48 - 2019-05-25 05:56 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-06-12 14:48 - 2019-05-25 05:54 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-06-12 14:48 - 2019-05-25 05:53 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-06-12 14:48 - 2019-05-25 05:53 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-06-12 14:48 - 2019-05-25 05:52 - 004492800 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-06-12 14:48 - 2019-05-25 05:52 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-06-12 14:48 - 2019-05-25 05:47 - 013706240 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-06-12 14:48 - 2019-05-25 05:47 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-06-12 14:48 - 2019-05-25 05:45 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-06-12 14:48 - 2019-05-25 05:45 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-06-12 14:48 - 2019-05-25 05:45 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-06-12 14:48 - 2019-05-25 05:45 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-06-12 14:48 - 2019-05-25 05:32 - 004386304 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-06-12 14:48 - 2019-05-25 05:29 - 012880384 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-06-12 14:48 - 2019-05-25 05:29 - 001323008 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-06-12 14:48 - 2019-05-25 05:28 - 001499648 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-06-12 14:48 - 2019-05-25 05:26 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-06-12 14:48 - 2019-05-23 07:28 - 000628224 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2019-06-12 14:48 - 2019-05-23 07:28 - 000307200 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2019-06-12 14:48 - 2019-05-23 07:28 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-06-12 14:48 - 2019-05-23 07:28 - 000004608 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2019-06-12 14:48 - 2019-05-23 06:01 - 001251840 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-06-12 14:48 - 2019-05-23 06:01 - 000910336 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2019-06-12 14:48 - 2019-05-17 23:44 - 000251112 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2019-06-12 14:48 - 2019-05-16 20:52 - 004057312 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2019-06-12 14:48 - 2019-05-16 20:52 - 003963624 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-06-12 14:48 - 2019-05-16 20:51 - 001310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-06-12 14:48 - 2019-05-16 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2019-06-12 14:48 - 2019-05-16 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-06-12 14:48 - 2019-05-16 20:51 - 000136424 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2019-06-12 14:48 - 2019-05-16 20:51 - 000135912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-06-12 14:48 - 2019-05-16 20:51 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-06-12 14:48 - 2019-05-16 20:49 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-06-12 14:48 - 2019-05-16 20:49 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 001072640 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000555520 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000442368 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000276480 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-06-12 14:48 - 2019-05-16 20:48 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000474624 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000373248 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:32 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-06-12 14:48 - 2019-05-16 20:23 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-06-12 14:48 - 2019-05-16 20:23 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-06-12 14:48 - 2019-05-16 20:23 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-06-12 14:48 - 2019-05-16 20:23 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-06-12 14:48 - 2019-05-16 20:23 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-06-12 14:48 - 2019-05-16 20:23 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-06-12 14:48 - 2019-05-16 20:20 - 002406400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-06-12 14:48 - 2019-05-16 20:20 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-06-12 14:48 - 2019-05-16 20:20 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-06-12 14:48 - 2019-05-16 20:19 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-06-12 14:48 - 2019-05-16 20:17 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-06-12 14:48 - 2019-05-16 20:16 - 000314880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-06-12 14:48 - 2019-05-16 20:16 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-06-12 14:48 - 2019-05-16 20:16 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-06-12 14:48 - 2019-05-16 20:16 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-06-12 14:48 - 2019-05-16 20:16 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-06-12 14:48 - 2019-05-16 20:15 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\viac7.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-06-12 14:48 - 2019-05-16 20:15 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-06-12 14:48 - 2019-05-16 20:15 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-06-12 14:48 - 2019-05-16 20:15 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-06-12 14:48 - 2019-05-16 20:15 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:15 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:15 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-06-12 14:48 - 2019-05-16 20:15 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-06-12 14:48 - 2019-05-13 20:14 - 001311744 _____ (Microsoft Corporation) C:\Windows\system32\msjet40.dll
2019-06-12 14:48 - 2019-05-13 20:14 - 000353280 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll
2019-06-12 14:48 - 2019-05-13 20:14 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll
2019-06-12 14:48 - 2019-05-13 20:14 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\msltus40.dll
2019-06-12 14:48 - 2019-05-09 20:50 - 000105192 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-06-12 14:48 - 2019-05-09 20:50 - 000078568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2019-06-12 14:48 - 2019-05-09 20:48 - 012574208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2019-06-12 14:48 - 2019-05-09 20:48 - 011411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 002368000 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-06-12 14:48 - 2019-05-09 20:48 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 003207168 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 001806848 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 001177088 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-06-12 14:48 - 2019-05-09 20:47 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2019-06-12 14:48 - 2019-05-09 20:43 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-06-12 14:48 - 2019-05-09 20:33 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2019-06-12 14:48 - 2019-05-09 20:33 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2019-06-12 14:48 - 2019-05-09 20:33 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2019-06-12 14:48 - 2019-05-09 20:32 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2019-06-12 14:48 - 2019-05-09 20:32 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2019-06-12 14:48 - 2019-05-09 20:26 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2019-06-12 14:48 - 2019-05-09 20:21 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-06-12 14:48 - 2019-05-09 20:18 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-06-12 14:48 - 2019-05-09 20:18 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2019-06-12 14:48 - 2019-05-09 20:18 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-06-12 14:48 - 2019-04-30 07:26 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-06-12 14:48 - 2019-04-25 20:48 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2019-06-12 14:48 - 2019-04-24 20:50 - 001311464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-06-12 14:48 - 2019-04-24 20:50 - 000240864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-06-12 14:48 - 2019-04-24 20:49 - 000187624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-06-12 14:48 - 2019-04-12 18:34 - 000914584 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000065784 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000021752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000018680 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000017352 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000017144 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000015608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000015096 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000013560 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000013560 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000013048 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011000 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011000 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011000 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-06-12 14:48 - 2019-04-12 18:34 - 000011000 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-06-12 14:48 - 2019-04-09 20:47 - 002953216 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2019-06-12 14:48 - 2019-04-09 20:47 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2019-06-12 14:48 - 2019-04-09 20:44 - 000073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 002092032 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 000573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-06-12 14:48 - 2019-04-09 20:35 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2019-06-12 14:48 - 2019-04-09 20:35 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2019-06-12 14:48 - 2019-04-09 20:35 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2019-06-12 13:47 - 2019-06-12 14:22 - 602580304 _____ (Duodian Technology Co. Ltd.) C:\Users\Tejas Joshi\Downloads\nox_setup_v6.2.8.5_full_intl.exe
2019-06-12 13:17 - 2019-06-14 11:39 - 000000000 _____ C:\hsrv.txt
2019-06-12 13:16 - 2019-06-13 17:46 - 000000000 ____D C:\Users\Tejas Joshi\.VirtualBox
2019-06-11 21:31 - 2019-06-11 21:31 - 000000000 ____D C:\Program Files\Oracle
2019-06-11 21:31 - 2014-05-16 15:25 - 000204064 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2019-06-11 21:30 - 2019-06-12 13:17 - 000000000 ____D C:\Program Files\Droid4Xext
2019-06-11 21:29 - 2019-06-12 13:27 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Droid4X
2019-06-11 21:26 - 2019-06-11 21:26 - 000000953 _____ C:\Users\Public\Desktop\Droid4X.lnk
2019-06-11 21:26 - 2019-06-11 21:26 - 000000744 _____ C:\Users\Public\Desktop\Droid4X Multi Manager.lnk
2019-06-11 21:25 - 2019-06-11 21:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Droid4X
2019-06-11 21:24 - 2019-06-13 17:47 - 000000000 ____D C:\Program Files\Droid4X
2019-06-11 21:06 - 2019-06-11 21:06 - 000000000 ____D C:\Users\Tejas Joshi\Documents\KOPLAYER
2019-06-11 21:04 - 2019-06-12 13:42 - 000000000 ____D C:\Users\Tejas Joshi\.TianTianVM
2019-06-11 21:02 - 2019-06-11 21:02 - 000001861 _____ C:\Users\Tejas Joshi\Desktop\KOPLAYER Multi Manager.lnk
2019-06-11 21:02 - 2019-06-11 21:02 - 000000969 _____ C:\Users\Tejas Joshi\Desktop\KOPLAYER.lnk
2019-06-11 21:02 - 2019-06-11 21:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KOPLAYER
2019-06-11 20:59 - 2019-06-11 21:16 - 000000000 ____D C:\Program Files\KOPLAYER
2019-06-11 20:59 - 2019-06-11 21:03 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\KOPLAYERData
2019-06-11 20:55 - 2019-06-11 21:39 - 000000000 ____D C:\Users\Tejas Joshi\Documents\PPSSPP
2019-06-11 20:55 - 2019-06-11 20:55 - 000000990 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPSSPP.lnk
2019-06-11 20:55 - 2019-06-11 20:55 - 000000000 ____D C:\Program Files\PPSSPP
2019-06-11 20:05 - 2019-06-11 20:39 - 632751817 _____ ( ) C:\Users\Tejas Joshi\Downloads\koplayer-2.0.0.exe
2019-06-11 19:53 - 2019-06-13 12:39 - 000000000 ____D C:\Users\Tejas Joshi\.android
2019-06-11 18:56 - 2019-06-11 18:56 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\HaiYuInst
2019-06-11 18:56 - 2019-06-11 18:56 - 000000000 ____D C:\Users\Public\Thunder Network
2019-06-11 18:56 - 2019-06-11 18:56 - 000000000 ____D C:\ProgramData\Thunder Network
2019-06-11 18:55 - 2019-06-11 18:56 - 009720704 _____ C:\Users\Tejas Joshi\Downloads\Droid4XInstaller.exe
2019-06-11 18:40 - 2019-06-11 18:41 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\{CBA8FDF4-EF00-914C-8298-B4A4A6F0483C}
2019-06-11 18:25 - 2019-06-11 18:25 - 000000000 ____D C:\ProgramData\BlueStacksGameManager
2019-06-11 18:22 - 2019-06-11 18:24 - 000000000 ____D C:\Program Files\BlueStacks
2019-06-11 18:22 - 2019-06-11 18:23 - 000000000 ____D C:\ProgramData\BlueStacks
2019-06-11 18:20 - 2019-06-14 11:44 - 000000000 ____D C:\ProgramData\BlueStacksSetup
2019-06-11 18:20 - 2019-06-11 18:20 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Bluestacks
2019-06-11 17:58 - 2019-06-11 18:03 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\chromium
2019-06-11 15:28 - 2019-06-11 15:29 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\blockkeeper
2019-06-11 15:28 - 2019-06-11 15:28 - 000002336 _____ C:\Users\Tejas Joshi\Desktop\Block Keeper.lnk
2019-06-11 15:28 - 2019-06-11 15:28 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dallas McNeil
2019-06-11 14:10 - 2019-06-11 14:23 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Block Keeper
2019-06-11 14:09 - 2019-06-11 15:29 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\SquirrelTemp
2019-06-11 13:57 - 2019-06-11 13:57 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2019-06-11 13:57 - 2019-06-11 13:57 - 000002408 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2019-06-11 13:41 - 2019-06-11 13:52 - 068859904 _____ (Dallas McNeil) C:\Users\Tejas Joshi\Downloads\Block-Keeper-Setup.exe
2019-06-11 13:39 - 2019-06-13 09:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2019-06-11 13:39 - 2019-06-11 13:52 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\AVAST Software
2019-06-11 13:39 - 2019-06-11 13:39 - 000002079 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2019-06-11 13:39 - 2019-06-11 13:39 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\AVAST Software
2019-06-11 13:39 - 2019-06-11 13:39 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\CEF
2019-06-11 13:34 - 2019-06-11 13:35 - 000167568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-06-11 13:34 - 2019-06-11 13:35 - 000139352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-06-11 13:34 - 2019-06-11 13:34 - 000312248 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000403680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000214736 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000173232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000100984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000072800 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000040688 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-06-11 13:34 - 2019-06-11 13:33 - 000034488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-06-11 13:33 - 2019-06-11 13:33 - 000783024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-06-11 13:33 - 2019-06-11 13:33 - 000311176 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-06-11 13:33 - 2019-06-11 13:33 - 000225608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-06-11 13:33 - 2019-06-11 13:33 - 000171520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-06-11 13:33 - 2019-06-11 13:33 - 000056296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-06-11 13:33 - 2019-06-11 13:33 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-06-11 13:28 - 2019-06-12 17:49 - 000000000 ____D C:\Program Files\AVAST Software
2019-06-11 13:27 - 2019-06-12 17:49 - 000000000 ____D C:\ProgramData\AVAST Software
2019-06-11 13:27 - 2019-06-11 13:27 - 000228544 _____ (AVAST Software) C:\Users\Tejas Joshi\Downloads\avast_free_antivirus_setup_online.exe
2019-06-11 13:17 - 2019-06-11 14:12 - 518991872 _____ C:\Users\Tejas Joshi\Downloads\Hit2k - Tekken 6 ISO.iso
2019-06-11 13:17 - 2019-06-11 13:20 - 017591887 _____ (PPSSPP Team ) C:\Users\Tejas Joshi\Downloads\PPSSPPSetup.exe
2019-06-11 13:17 - 2019-06-11 13:17 - 000001099 _____ C:\Users\Public\Desktop\Angry Birds Space.lnk
2019-06-11 13:17 - 2019-06-11 13:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rovio
2019-06-11 13:17 - 2019-06-11 13:17 - 000000000 ____D C:\Program Files\Rovio
2019-06-11 13:13 - 2019-06-11 13:15 - 030950544 _____ (Rovio) C:\Users\Tejas Joshi\Downloads\AngryBirdsSpaceInstaller_1.1.0.exe
2019-06-11 10:29 - 2019-06-11 10:29 - 000000000 ____D C:\Users\User\AppData\Roaming\Google
2019-06-11 10:13 - 2019-06-11 10:13 - 000000000 ____D C:\Users\User\AppData\Roaming\Umeng
2019-06-11 09:52 - 2019-06-11 09:52 - 000000000 ____D C:\Users\User\Downloads\SHAREit
2019-06-11 09:52 - 2019-06-11 09:52 - 000000000 ____D C:\Users\User\AppData\Local\SHAREit Technologies
2019-06-11 09:51 - 2019-06-11 09:52 - 000281958 _____ C:\Users\User\Downloads\speedcubing_timer.zip
2019-06-11 09:51 - 2019-06-11 09:51 - 000001168 _____ C:\Users\Public\Desktop\SHAREit.lnk
2019-06-11 09:51 - 2019-06-11 09:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHAREit
2019-06-11 09:51 - 2019-06-11 09:51 - 000000000 ____D C:\Program Files\SHAREit Technologies
2019-06-11 09:50 - 2019-06-11 09:50 - 006449464 _____ (SHAREit Technologies Co.Ltd ) C:\Users\User\Downloads\SHAREit-KCWEB.exe
2019-06-09 17:15 - 2019-06-09 21:11 - 000000000 ____D C:\Users\User\AppData\Local\Microsoft Games
2019-06-07 16:59 - 2019-06-11 13:17 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Rovio
2019-06-07 16:29 - 2019-06-07 16:29 - 000000000 ____D C:\Users\Tejas Joshi\Documents\Scratch Projects
2019-06-05 17:00 - 2019-06-05 17:00 - 000000000 ____D C:\Users\Tejas Joshi\Documents\ROBLOX
2019-06-05 16:17 - 2019-06-11 14:00 - 000001176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2019-06-05 16:17 - 2019-06-11 14:00 - 000001112 _____ C:\Users\Public\Desktop\WinRAR.lnk
2019-06-05 16:17 - 2019-06-11 14:00 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-05 16:11 - 2019-06-05 16:11 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\WinRAR
2019-06-05 16:06 - 2019-06-05 16:06 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\vlc
2019-06-05 16:03 - 2019-06-05 16:03 - 000000000 ___RD C:\Users\Tejas Joshi\Desktop\My folder
2019-06-05 14:34 - 2019-06-05 14:34 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\ElevatedDiagnostics
2019-06-05 14:05 - 2019-06-05 14:05 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2019-06-05 14:03 - 2019-06-05 14:03 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Microsoft Help
2019-06-04 19:06 - 2019-06-04 19:06 - 127229528 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2019-06-04 19:00 - 2019-06-12 22:34 - 000000000 ____D C:\Windows\system32\MRT
2019-06-04 19:00 - 2019-06-12 22:29 - 132265168 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-06-04 18:40 - 2013-11-26 13:46 - 003419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2019-06-04 18:28 - 2019-06-04 18:28 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Adobe
2019-06-02 13:16 - 2019-06-02 13:16 - 000000000 ___SD C:\Windows\system32\CompatTel
2019-06-02 13:16 - 2019-06-02 13:16 - 000000000 ____D C:\Windows\system32\appraiser
2019-06-02 13:06 - 2019-06-02 13:06 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2019-06-02 13:06 - 2019-06-02 13:06 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2019-06-02 12:46 - 2019-06-02 12:46 - 000001357 _____ C:\Users\Tejas Joshi\Desktop\Roblox Player.lnk
2019-06-02 12:44 - 2019-06-02 12:44 - 001258072 _____ (Roblox Corporation) C:\Users\Tejas Joshi\Downloads\RobloxPlayerLauncher.exe
2019-06-02 11:22 - 2019-04-16 20:47 - 000583680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-06-02 11:22 - 2019-04-07 20:22 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-06-02 11:22 - 2019-03-21 07:06 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 001391616 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 001241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 000527872 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2019-06-02 11:22 - 2019-03-12 03:03 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2019-06-02 11:22 - 2019-03-12 02:49 - 000920576 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-06-02 11:22 - 2019-03-12 02:49 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2019-06-02 11:22 - 2019-03-12 02:49 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2019-06-02 11:22 - 2019-02-21 21:13 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2019-06-02 11:22 - 2019-02-21 21:06 - 000188928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2019-06-02 11:22 - 2019-02-16 11:20 - 000781824 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2019-06-02 11:22 - 2019-02-16 11:20 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-06-02 11:22 - 2019-02-10 22:13 - 001214176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-06-02 11:22 - 2019-02-10 21:48 - 000247296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-06-02 11:22 - 2019-02-07 21:27 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\bridgeres.dll
2019-06-02 11:22 - 2019-02-07 21:23 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2019-06-02 11:22 - 2019-02-07 21:12 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll
2019-06-02 11:22 - 2019-02-07 21:12 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
2019-06-02 11:22 - 2019-02-03 21:04 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2019-06-02 11:22 - 2018-12-08 08:26 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2019-06-02 11:22 - 2018-12-08 08:26 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2019-06-02 11:22 - 2018-12-08 08:26 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2019-06-02 11:22 - 2018-12-08 08:11 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-06-02 11:22 - 2018-12-08 08:11 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-06-02 11:22 - 2018-12-08 08:11 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2019-06-02 11:22 - 2018-12-08 08:11 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2019-06-02 11:22 - 2018-12-08 08:11 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2019-06-02 11:22 - 2018-12-08 08:11 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-06-02 11:22 - 2018-11-11 22:19 - 000162536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2019-06-02 11:22 - 2018-10-27 08:57 - 000173568 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
2019-06-02 11:22 - 2018-10-27 08:57 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2019-06-02 11:22 - 2018-10-27 08:57 - 000121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2019-06-02 11:22 - 2018-10-27 08:34 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2019-06-02 11:22 - 2018-10-27 08:34 - 000126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2019-06-02 11:22 - 2018-10-27 08:34 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
2019-06-02 11:22 - 2018-10-27 08:34 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll
2019-06-02 11:22 - 2018-10-06 19:12 - 001988096 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 001549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 001400320 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-06-02 11:22 - 2018-09-23 08:07 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-06-02 11:22 - 2018-09-23 07:52 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-06-02 11:22 - 2018-09-23 07:52 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-06-02 11:22 - 2018-09-23 07:51 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-06-02 11:22 - 2018-09-23 07:51 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2019-06-02 11:22 - 2018-09-09 06:14 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2019-06-02 11:22 - 2018-08-30 07:17 - 001230848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2019-06-02 11:22 - 2018-08-16 07:44 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2019-06-02 11:22 - 2018-08-14 03:18 - 000940784 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-06-02 11:22 - 2018-08-13 01:44 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2019-06-02 11:22 - 2018-08-10 21:11 - 000564736 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-06-02 11:22 - 2018-08-10 21:10 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-06-02 11:22 - 2018-08-10 21:10 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2019-06-02 11:22 - 2018-08-10 20:50 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2019-06-02 11:22 - 2018-08-10 20:50 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2019-06-02 11:22 - 2018-07-06 21:24 - 000713408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-06-02 11:22 - 2018-06-29 21:10 - 000549376 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2019-06-02 11:22 - 2018-06-29 21:10 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2019-06-02 11:22 - 2018-06-29 21:10 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2019-06-02 11:22 - 2018-06-29 20:40 - 000389632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2019-06-02 11:22 - 2018-06-29 20:39 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2019-06-02 11:22 - 2018-06-27 21:13 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2019-06-02 11:22 - 2018-06-08 21:25 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2019-06-02 11:22 - 2018-05-15 08:43 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2019-06-02 11:22 - 2018-05-11 06:10 - 000741888 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2019-06-02 11:22 - 2018-05-11 06:10 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2019-06-02 11:22 - 2018-05-02 21:00 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2019-06-02 11:22 - 2018-05-02 21:00 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2019-06-02 11:22 - 2018-05-02 21:00 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2019-06-02 11:22 - 2018-05-02 21:00 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2019-06-02 11:22 - 2018-04-25 21:24 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2019-06-02 11:22 - 2018-03-06 23:43 - 000148160 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2019-06-02 11:22 - 2018-03-06 23:41 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2019-06-02 11:22 - 2018-03-06 23:41 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2019-06-02 11:22 - 2018-02-22 08:36 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2019-06-02 11:22 - 2018-02-10 23:53 - 002292224 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2019-06-02 11:22 - 2018-02-10 23:53 - 000111616 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
2019-06-02 11:22 - 2018-02-10 23:53 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2019-06-02 11:22 - 2018-02-10 23:06 - 000537600 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2019-06-02 11:22 - 2018-02-10 23:06 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
2019-06-02 11:22 - 2018-02-10 23:06 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
2019-06-02 11:22 - 2018-01-12 21:56 - 000308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2019-06-02 11:22 - 2018-01-12 21:46 - 003405824 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2019-06-02 11:22 - 2018-01-01 07:30 - 001155584 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 001004032 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000269824 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2019-06-02 11:22 - 2018-01-01 07:30 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2019-06-02 11:22 - 2018-01-01 07:24 - 000173288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2019-06-02 11:22 - 2018-01-01 07:20 - 000317952 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2019-06-02 11:22 - 2018-01-01 07:14 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2019-06-02 11:22 - 2018-01-01 07:13 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2019-06-02 11:22 - 2018-01-01 07:13 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2019-06-02 11:22 - 2018-01-01 07:13 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2019-06-02 11:22 - 2018-01-01 07:08 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2019-06-02 11:22 - 2018-01-01 07:08 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2019-06-02 11:22 - 2018-01-01 07:08 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2019-06-02 11:22 - 2017-12-05 22:38 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2019-06-02 11:22 - 2017-12-05 21:24 - 000334848 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2019-06-02 11:22 - 2017-11-02 20:41 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2019-06-02 11:22 - 2017-11-02 20:41 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2019-06-02 11:22 - 2017-11-02 20:41 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2019-06-02 11:22 - 2017-11-02 20:26 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2019-06-02 11:22 - 2017-10-12 05:44 - 000247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-06-02 11:22 - 2017-09-13 20:39 - 000830464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-06-02 11:22 - 2017-09-13 20:39 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2019-06-02 11:22 - 2017-09-13 20:39 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2019-06-02 11:22 - 2017-09-13 20:39 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2019-06-02 11:22 - 2017-09-13 20:39 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2019-06-02 11:22 - 2017-09-13 20:39 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2019-06-02 11:22 - 2017-09-13 20:23 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-06-02 11:22 - 2017-08-19 20:40 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2019-06-02 11:22 - 2017-08-14 23:05 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2019-06-02 11:22 - 2017-08-14 03:05 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2019-06-02 11:22 - 2017-08-11 11:49 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2019-06-02 11:22 - 2017-08-11 11:49 - 000299008 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2019-06-02 11:22 - 2017-08-11 11:49 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2019-06-02 11:22 - 2017-08-11 11:49 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2019-06-02 11:22 - 2017-08-11 11:49 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2019-06-02 11:22 - 2017-08-11 11:49 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2019-06-02 11:22 - 2017-08-11 11:40 - 000066048 _____ C:\Windows\system32\PrintBrmUi.exe
2019-06-02 11:22 - 2017-08-11 11:39 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2019-06-02 11:22 - 2017-08-11 11:39 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2019-06-02 11:22 - 2017-08-11 11:39 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2019-06-02 11:22 - 2017-08-11 11:25 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2019-06-02 11:22 - 2017-07-29 20:20 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2019-06-02 11:22 - 2017-07-21 19:56 - 000290816 _____ (Microsoft Corporation) C:\Windows\system32\msjtes40.dll
2019-06-02 11:22 - 2017-06-13 03:59 - 001227264 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2019-06-02 11:22 - 2017-06-13 03:59 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2019-06-02 11:22 - 2017-06-13 03:59 - 000390144 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2019-06-02 11:22 - 2017-06-13 03:58 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2019-06-02 11:22 - 2017-06-13 03:36 - 000303616 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2019-06-02 11:22 - 2017-06-13 03:36 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2019-06-02 11:22 - 2017-06-13 03:36 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
2019-06-02 11:22 - 2017-04-04 20:22 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2019-06-02 11:22 - 2017-03-30 20:28 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2019-06-02 11:22 - 2017-03-10 21:50 - 001508352 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2019-06-02 11:22 - 2017-03-10 21:50 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2019-06-02 11:22 - 2017-03-10 21:22 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2019-06-02 11:22 - 2017-03-07 21:47 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2019-06-02 11:22 - 2017-03-04 06:44 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2019-06-02 11:22 - 2016-11-10 21:49 - 000811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-06-02 11:22 - 2016-10-11 20:48 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2019-06-02 11:22 - 2016-10-11 19:03 - 000187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2019-06-02 11:22 - 2016-10-07 20:42 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2019-06-02 11:22 - 2016-09-09 02:04 - 000208896 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2019-06-02 11:22 - 2016-09-09 02:04 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2019-06-02 11:22 - 2016-09-08 20:19 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2019-06-02 11:22 - 2016-08-12 21:51 - 000437248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2019-06-02 11:22 - 2016-08-06 20:45 - 001178112 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2019-06-02 11:22 - 2016-08-06 20:45 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2019-06-02 11:22 - 2016-08-06 20:45 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2019-06-02 11:22 - 2016-08-06 20:45 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2019-06-02 11:22 - 2016-08-06 20:45 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2019-06-02 11:22 - 2016-08-06 20:23 - 000199168 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2019-06-02 11:22 - 2016-08-06 20:23 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2019-06-02 11:22 - 2016-08-06 20:23 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2019-06-02 11:21 - 2019-04-19 08:25 - 000053992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000154344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000104680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS
2019-06-02 11:21 - 2019-04-19 08:24 - 000057064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
2019-06-02 11:21 - 2019-04-19 08:24 - 000052968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000052968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VIAAGP.SYS
2019-06-02 11:21 - 2019-04-19 08:24 - 000052968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000051944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SISAGP.SYS
2019-06-02 11:21 - 2019-04-19 08:24 - 000046312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000032488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000027880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000021736 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2019-06-02 11:21 - 2019-04-19 08:24 - 000013544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2019-06-02 11:21 - 2019-04-19 08:24 - 000011880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
2019-06-02 11:21 - 2019-04-19 08:23 - 000052968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AMDAGP.SYS
2019-06-02 11:21 - 2019-04-16 20:47 - 001425920 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-06-02 11:21 - 2019-04-16 20:47 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-06-02 11:21 - 2019-04-16 20:47 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2019-06-02 11:21 - 2019-04-16 20:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2019-06-02 11:21 - 2019-04-16 18:45 - 000419648 _____ C:\Windows\system32\locale.nls
2019-06-02 11:21 - 2019-04-14 11:12 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2019-06-02 11:21 - 2019-04-14 11:10 - 000111616 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-06-02 11:21 - 2019-04-14 11:09 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-06-02 11:21 - 2019-04-14 11:09 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-06-02 11:21 - 2019-04-14 11:09 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-06-02 11:21 - 2019-04-14 10:42 - 000034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2019-06-02 11:21 - 2019-04-07 20:47 - 001064448 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-06-02 11:21 - 2019-04-07 20:47 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-06-02 11:21 - 2019-04-07 20:47 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-06-02 11:21 - 2019-04-07 20:19 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-06-02 11:21 - 2019-04-07 20:19 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-06-02 11:21 - 2019-04-07 20:18 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2019-06-02 11:21 - 2019-04-07 20:12 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\msxbde40.dll
2019-06-02 11:21 - 2019-04-07 20:12 - 000409600 _____ (Microsoft Corporation) C:\Windows\system32\msexch40.dll
2019-06-02 11:21 - 2019-04-07 20:12 - 000376320 _____ (Microsoft Corporation) C:\Windows\system32\mspbde40.dll
2019-06-02 11:21 - 2019-04-07 20:12 - 000313344 _____ (Microsoft Corporation) C:\Windows\system32\msrd2x40.dll
2019-06-02 11:21 - 2019-04-07 18:34 - 000535656 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-06-02 11:21 - 2019-04-05 05:53 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2019-06-02 11:21 - 2019-03-29 07:05 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2019-06-02 11:21 - 2019-03-05 08:10 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2019-06-02 11:21 - 2019-03-05 08:10 - 000026368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-06-02 11:21 - 2019-03-05 08:10 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2019-06-02 11:21 - 2019-02-15 21:28 - 000320512 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-06-02 11:21 - 2019-02-15 21:08 - 000360960 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-06-02 11:21 - 2019-02-15 21:08 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-06-02 11:21 - 2019-02-10 21:48 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-06-02 11:21 - 2019-02-10 21:48 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-06-02 11:21 - 2019-02-10 21:48 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-06-02 11:21 - 2019-01-04 21:30 - 000122600 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2019-06-02 11:21 - 2019-01-04 21:26 - 000593408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 002703872 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-06-02 11:21 - 2019-01-04 19:34 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000524800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000377856 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-06-02 11:21 - 2019-01-04 19:34 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2019-06-02 11:21 - 2018-12-04 21:25 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2019-06-02 11:21 - 2018-12-04 21:25 - 000142848 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-06-02 11:21 - 2018-09-09 06:16 - 000730824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-06-02 11:21 - 2018-09-09 06:16 - 000219336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-06-02 11:21 - 2018-09-09 06:12 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2019-06-02 11:21 - 2018-08-28 11:11 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2019-06-02 11:21 - 2018-08-03 21:09 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2019-06-02 11:21 - 2018-07-18 20:44 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2019-06-02 11:21 - 2018-06-08 21:24 - 000269824 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-06-02 11:21 - 2018-06-08 21:24 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-06-02 11:21 - 2018-06-08 20:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2019-06-02 11:21 - 2018-04-25 20:47 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2019-06-02 11:21 - 2018-04-18 21:21 - 000523776 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2019-06-02 11:21 - 2018-04-18 21:21 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
2019-06-02 11:21 - 2018-04-18 21:05 - 000015360 _____ (Microsoft Corporation) C:\Windows\hh.exe
2019-06-02 11:21 - 2018-04-10 22:03 - 001241600 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2019-06-02 11:21 - 2018-04-10 22:02 - 000487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2019-06-02 11:21 - 2018-02-11 00:18 - 000274624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2019-06-02 11:21 - 2018-02-10 23:06 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
2019-06-02 11:21 - 2018-02-10 23:06 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
2019-06-02 11:21 - 2018-01-01 07:24 - 000201960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2019-06-02 11:21 - 2018-01-01 07:05 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-06-02 11:21 - 2017-12-05 22:38 - 000481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2019-06-02 11:21 - 2017-12-05 22:38 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2019-06-02 11:21 - 2017-12-05 21:19 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2019-06-02 11:21 - 2017-10-17 04:16 - 000953344 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2019-06-02 11:21 - 2017-10-12 06:07 - 001363968 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2019-06-02 11:21 - 2017-09-08 19:50 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll
2019-06-02 11:21 - 2017-09-08 19:50 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll
2019-06-02 11:21 - 2017-08-14 23:05 - 002150912 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2019-06-02 11:21 - 2017-08-14 23:05 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2019-06-02 11:21 - 2017-08-14 23:05 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2019-06-02 11:21 - 2017-08-14 23:05 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2019-06-02 11:21 - 2017-08-14 03:00 - 001401344 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2019-06-02 11:21 - 2017-08-11 11:49 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2019-06-02 11:21 - 2017-07-21 19:56 - 000518144 _____ C:\Windows\system32\msjetoledb40.dll
2019-06-02 11:21 - 2017-07-21 19:56 - 000282624 _____ (Microsoft Corporation) C:\Windows\system32\mstext40.dll
2019-06-02 11:21 - 2017-07-07 20:45 - 000296680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2019-06-02 11:21 - 2017-07-07 20:40 - 000973312 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2019-06-02 11:21 - 2017-07-01 18:35 - 000866816 _____ (Microsoft Corporation) C:\Windows\system32\mswdat10.dll
2019-06-02 11:21 - 2017-07-01 18:35 - 000616448 _____ (Microsoft Corporation) C:\Windows\system32\msrepl40.dll
2019-06-02 11:21 - 2017-07-01 18:35 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\msjter40.dll
2019-06-02 11:21 - 2017-06-02 13:27 - 000497152 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-06-02 11:21 - 2017-05-10 20:46 - 000091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
2019-06-02 11:21 - 2017-02-09 21:44 - 000575488 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2019-06-02 11:21 - 2017-02-09 21:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2019-06-02 11:21 - 2016-10-11 20:48 - 001027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2019-06-02 11:21 - 2016-10-11 20:48 - 000701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2019-06-02 11:21 - 2016-10-11 20:48 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000126976 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
2019-06-02 11:21 - 2016-10-11 20:48 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2019-06-02 11:21 - 2016-10-11 20:21 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-06-02 11:21 - 2016-09-13 02:19 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2019-06-02 11:21 - 2016-04-14 19:19 - 000603648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2019-06-02 11:12 - 2015-12-09 03:24 - 002285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-06-02 11:07 - 2015-02-04 08:24 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2019-06-02 10:54 - 2019-06-10 11:08 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Microsoft Games
2019-06-02 10:32 - 2019-06-02 10:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2019-06-02 10:19 - 2019-06-02 10:19 - 000645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2019-06-02 10:19 - 2019-06-02 10:19 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2019-06-02 10:19 - 2019-06-02 10:19 - 000139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2019-06-02 10:19 - 2019-06-02 10:19 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2019-06-02 10:19 - 2019-06-02 10:19 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2019-06-02 10:19 - 2019-06-02 10:19 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2019-06-02 10:19 - 2019-06-02 10:19 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2019-06-02 10:19 - 2019-06-02 10:19 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2019-06-02 10:17 - 2019-06-02 10:17 - 000619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 001158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 001080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2019-06-02 10:14 - 2019-06-02 10:14 - 000002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2019-06-02 10:12 - 2019-06-02 10:12 - 001505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2019-06-01 22:21 - 2014-07-01 03:44 - 000008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2019-06-01 22:21 - 2014-06-06 11:46 - 000035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2019-06-01 22:21 - 2014-03-10 03:17 - 000619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2019-06-01 22:21 - 2014-03-10 03:17 - 000099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2019-06-01 22:20 - 2012-03-01 11:16 - 000019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2019-06-01 22:20 - 2012-03-01 10:59 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2019-06-01 22:16 - 2016-02-03 23:29 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2019-06-01 22:16 - 2015-07-10 23:04 - 003221504 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-06-01 22:16 - 2015-07-10 23:04 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-06-01 22:16 - 2015-07-10 23:03 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2019-06-01 22:15 - 2016-02-09 15:20 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2019-06-01 22:15 - 2015-07-09 23:12 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2019-06-01 22:15 - 2015-07-09 23:12 - 000179712 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2019-06-01 22:15 - 2013-02-12 09:02 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2019-06-01 22:15 - 2012-11-02 10:41 - 000376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2019-06-01 22:14 - 2016-04-06 16:06 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2019-06-01 22:14 - 2016-02-05 00:11 - 000296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2019-06-01 22:14 - 2016-01-07 00:11 - 000216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2019-06-01 22:14 - 2014-11-11 08:14 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2019-06-01 22:12 - 2015-07-30 18:43 - 000103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000606720 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000351744 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2019-06-01 22:11 - 2016-05-12 20:48 - 000274944 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2019-06-01 22:11 - 2016-05-12 20:48 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2019-06-01 22:11 - 2016-05-12 20:27 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2019-06-01 22:11 - 2016-05-12 20:27 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2019-06-01 22:11 - 2014-03-04 14:47 - 000538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2019-06-01 22:11 - 2014-03-04 14:47 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2019-06-01 22:11 - 2013-10-19 07:06 - 000159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2019-06-01 22:10 - 2017-04-28 04:20 - 003550208 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2019-06-01 22:10 - 2011-08-17 09:54 - 000465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2019-06-01 22:10 - 2011-08-17 09:49 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2019-06-01 22:10 - 2011-05-24 16:14 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2019-06-01 22:09 - 2015-11-04 00:25 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2019-06-01 22:09 - 2014-09-04 10:34 - 000372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2019-06-01 22:09 - 2011-08-27 09:56 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2019-06-01 21:58 - 2019-06-10 12:22 - 000002449 _____ C:\Users\Tejas Joshi\Documents\SCSoft.py
2019-06-01 21:58 - 2015-03-04 09:40 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2019-06-01 21:58 - 2013-05-13 08:38 - 000903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2019-06-01 21:58 - 2013-05-13 08:38 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2019-06-01 21:57 - 2016-01-22 11:34 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2019-06-01 21:57 - 2016-01-22 11:34 - 000535040 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2019-06-01 21:57 - 2016-01-22 11:32 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll
2019-06-01 21:57 - 2016-01-22 11:32 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2019-06-01 21:57 - 2015-12-09 03:23 - 000509952 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2019-06-01 21:57 - 2015-04-18 08:26 - 000342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-06-01 21:57 - 2015-04-13 08:49 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-06-01 21:57 - 2014-06-18 07:21 - 000646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2019-06-01 21:57 - 2012-07-05 02:46 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2019-06-01 21:57 - 2012-07-05 02:44 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2019-06-01 21:57 - 2012-07-05 02:44 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2019-06-01 21:57 - 2011-02-12 11:05 - 000191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2019-06-01 21:57 - 2010-12-23 11:24 - 000850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2019-06-01 21:57 - 2010-12-23 11:20 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2019-06-01 21:56 - 2019-02-16 11:00 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2019-06-01 21:56 - 2015-11-14 04:20 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2019-06-01 21:56 - 2015-11-14 04:20 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2019-06-01 21:56 - 2015-11-14 04:19 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2019-06-01 21:56 - 2015-11-06 00:32 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2019-06-01 21:56 - 2015-11-05 15:18 - 000117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2019-06-01 21:56 - 2015-02-03 08:42 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2019-06-01 21:56 - 2014-12-19 08:13 - 000164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2019-06-01 21:56 - 2014-12-11 23:17 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2019-06-01 21:56 - 2014-10-25 07:02 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2019-06-01 21:56 - 2014-07-17 07:10 - 000157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2019-06-01 21:56 - 2014-07-17 07:09 - 001051136 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2019-06-01 21:56 - 2014-07-17 07:09 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2019-06-01 21:56 - 2014-07-17 07:09 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2019-06-01 21:56 - 2014-07-17 06:33 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2019-06-01 21:56 - 2014-06-19 03:53 - 001131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2019-06-01 21:56 - 2014-06-19 03:53 - 000156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2019-06-01 21:56 - 2014-06-19 03:53 - 000081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2019-06-01 21:56 - 2013-10-12 07:33 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2019-06-01 21:56 - 2013-10-12 07:31 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2019-06-01 21:56 - 2013-10-12 07:31 - 000216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2019-06-01 21:56 - 2012-11-23 08:18 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2019-06-01 21:56 - 2012-09-26 04:17 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2019-06-01 21:56 - 2012-04-26 10:15 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2019-06-01 21:56 - 2012-04-26 10:11 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2019-06-01 21:56 - 2012-03-17 12:57 - 000056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2019-06-01 21:56 - 2011-12-16 13:22 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2019-06-01 21:56 - 2011-11-17 11:05 - 000314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2019-06-01 21:56 - 2011-06-15 14:25 - 000319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2019-06-01 21:56 - 2011-06-15 14:25 - 000163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2019-06-01 21:56 - 2011-06-15 14:25 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2019-06-01 21:56 - 2011-06-15 14:25 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2019-06-01 21:56 - 2011-06-15 14:25 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2019-06-01 21:55 - 2018-11-18 08:29 - 000410080 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-06-01 21:55 - 2018-11-18 08:14 - 000470704 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-06-01 21:55 - 2018-11-18 08:13 - 000374872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-06-01 21:55 - 2018-11-18 08:13 - 000249352 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-06-01 21:54 - 2016-05-11 20:49 - 000351744 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-06-01 21:54 - 2016-05-11 20:49 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2019-06-01 21:54 - 2016-05-11 20:49 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2019-06-01 21:54 - 2015-12-09 03:24 - 001620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 001568768 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 001325056 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 001202688 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2019-06-01 21:54 - 2015-12-09 03:24 - 000902144 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000815616 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000740352 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2019-06-01 21:54 - 2015-12-09 03:24 - 000739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000665088 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000358400 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2019-06-01 21:54 - 2015-12-09 03:24 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000970240 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000829952 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000728576 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000609280 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2019-06-01 21:54 - 2015-12-09 03:23 - 000153600 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000079872 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2019-06-01 21:54 - 2015-12-09 03:23 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2019-06-01 21:54 - 2015-12-09 03:23 - 000004608 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2019-06-01 21:54 - 2015-12-09 03:13 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2019-06-01 21:54 - 2015-12-09 02:41 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2019-06-01 21:54 - 2015-12-09 02:41 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2019-06-01 21:54 - 2015-07-15 08:25 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2019-06-01 21:54 - 2015-06-02 05:17 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2019-06-01 21:54 - 2015-04-24 23:26 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2019-06-01 21:54 - 2014-12-06 09:20 - 000242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-06-01 21:54 - 2013-11-27 06:43 - 000006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2019-06-01 21:54 - 2013-07-12 15:37 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2019-06-01 21:54 - 2013-06-26 04:26 - 000527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2019-06-01 21:54 - 2012-11-29 04:27 - 000047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2019-06-01 21:54 - 2012-11-29 04:27 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2019-06-01 21:54 - 2012-11-29 04:27 - 000000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2019-06-01 21:54 - 2012-10-03 22:12 - 000156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-06-01 21:54 - 2012-10-03 22:12 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2019-06-01 21:54 - 2011-03-11 11:03 - 001164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2019-06-01 21:54 - 2011-03-11 11:03 - 001137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2019-06-01 21:46 - 2018-12-11 03:34 - 000499424 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2019-06-01 21:42 - 2019-06-05 16:15 - 000225936 _____ C:\Users\Tejas Joshi\AppData\Local\GDIPFONTCACHEV1.DAT
2019-06-01 21:13 - 2012-02-17 09:43 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2019-06-01 21:06 - 2019-06-01 21:58 - 000000000 ____D C:\Users\Tejas Joshi\.idlerc
2019-06-01 21:05 - 2019-06-01 21:05 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.7
2019-06-01 21:05 - 2019-06-01 21:05 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-01 21:04 - 2019-06-01 21:05 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Package Cache
2019-06-01 20:39 - 2019-06-01 20:47 - 025424128 _____ (Python Software Foundation) C:\Users\Tejas Joshi\Downloads\python-3.7.3.exe
2019-06-01 20:15 - 2019-06-05 15:56 - 000001369 _____ C:\Users\Tejas Joshi\Desktop\Roblox Studio.lnk
2019-06-01 20:15 - 2019-06-05 15:56 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2019-06-01 20:08 - 2019-06-05 16:55 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Roblox
2019-06-01 20:08 - 2019-06-05 15:56 - 000000252 _____ C:\Users\Tejas Joshi\AppData\LocalLow\rbxcsettings.rbx
2019-06-01 20:06 - 2019-06-01 20:07 - 001249472 _____ (Roblox Corporation) C:\Users\Tejas Joshi\Downloads\RobloxStudioLauncherBeta.exe
2019-06-01 19:55 - 2019-06-01 19:55 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Google
2019-06-01 19:52 - 2019-06-12 16:49 - 000000000 ____D C:\Users\Tejas Joshi
2019-06-01 19:52 - 2019-06-11 15:33 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\Google
2019-06-01 19:52 - 2019-06-01 19:52 - 000001417 _____ C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2019-06-01 19:52 - 2019-06-01 19:52 - 000000020 ___SH C:\Users\Tejas Joshi\ntuser.ini
2019-06-01 19:52 - 2019-06-01 19:52 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Local\VirtualStore
2019-06-01 19:52 - 2010-11-21 06:16 - 000000000 ____D C:\Users\Tejas Joshi\AppData\Roaming\Media Center Programs
2019-06-01 19:51 - 2019-06-14 10:37 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-01 19:51 - 2019-06-14 10:37 - 000002129 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-06-01 07:19 - 2019-06-11 10:24 - 000000000 ____D C:\Users\User\AppData\Local\Google
2019-06-01 07:19 - 2019-06-01 19:51 - 000000000 ____D C:\Program Files\Google
2019-06-01 07:18 - 2019-06-09 17:49 - 000225936 _____ C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT
2019-06-01 07:18 - 2019-06-01 07:19 - 000000000 ____D C:\Users\User\AppData\Local\Deployment
2019-06-01 07:18 - 2019-06-01 07:18 - 000000000 ____D C:\Users\User\AppData\Local\Apps\2.0
2019-05-27 04:24 - 2019-06-11 13:53 - 000001028 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-05-27 04:24 - 2019-05-27 04:24 - 000000000 ____D C:\Users\User\AppData\Roaming\vlc
2019-05-27 04:24 - 2019-05-27 04:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-05-27 04:24 - 2019-05-27 04:24 - 000000000 ____D C:\Program Files\VideoLAN
2019-05-27 04:19 - 2019-06-12 19:55 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2019-05-27 04:19 - 2019-06-12 19:55 - 000000000 ____D C:\Program Files\Common Files\Adobe
2019-05-27 04:19 - 2019-05-27 04:19 - 000001989 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2019-05-27 04:19 - 2019-05-27 04:19 - 000000000 ____D C:\Users\User\AppData\Roaming\Adobe
2019-05-27 04:19 - 2019-05-27 04:19 - 000000000 ____D C:\Users\User\AppData\LocalLow\Adobe
2019-05-27 04:19 - 2019-05-27 04:19 - 000000000 ____D C:\Users\User\AppData\Local\Adobe
2019-05-27 04:19 - 2019-05-27 04:19 - 000000000 ____D C:\Program Files\Adobe
2019-05-27 04:18 - 2019-06-01 07:10 - 000000000 ____D C:\ProgramData\Adobe
2019-05-27 04:17 - 2019-06-04 19:04 - 000000000 ____D C:\Program Files\Microsoft Works
2019-05-27 04:17 - 2019-05-27 04:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2019-05-27 04:17 - 2009-02-27 03:42 - 000031640 _____ (Microsoft Corporation) C:\Windows\system32\msonpmon.dll
2019-05-27 04:16 - 2019-05-27 04:16 - 000000000 ____D C:\Windows\PCHEALTH
2019-05-27 04:16 - 2019-05-27 04:16 - 000000000 ____D C:\Program Files\Microsoft Visual Studio
2019-05-27 04:15 - 2019-06-05 14:05 - 000000000 ____D C:\Program Files\Microsoft Office
2019-05-27 04:15 - 2019-05-27 04:15 - 000000000 ____D C:\Users\User\AppData\Local\Microsoft Help
2019-05-27 04:15 - 2019-05-27 04:15 - 000000000 ____D C:\Program Files\Microsoft Visual Studio 8
2019-05-27 04:14 - 2019-05-27 04:14 - 000000000 __RHD C:\MSOCache
2019-05-27 04:14 - 2019-05-27 04:14 - 000000000 ____D C:\Users\User\AppData\Roaming\WinRAR
2019-05-27 04:13 - 2019-06-11 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-05-27 04:13 - 2019-06-11 14:00 - 000000000 ____D C:\Program Files\WinRAR
2019-05-27 04:13 - 2019-05-27 04:13 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-05-27 03:58 - 2019-05-27 03:58 - 000015268 _____ C:\Windows\system32\results.xml
2019-05-27 03:57 - 2012-07-04 08:25 - 000053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll
2019-05-27 03:56 - 2012-07-19 14:52 - 000099992 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C62x86.sys
2019-05-27 03:53 - 2019-05-27 03:57 - 000000000 ____D C:\Program Files\Intel
2019-05-27 03:53 - 2019-05-27 03:53 - 000000000 ____D C:\ProgramData\Intel
2019-05-27 03:53 - 2019-05-27 03:53 - 000000000 ____D C:\Program Files\Common Files\Intel
2019-05-27 03:53 - 2012-08-25 06:40 - 000276288 _____ (Intel Corporation) C:\Windows\system32\IntelCpHeciSvc.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 006225216 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 000269120 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 000196928 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 000188736 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 000180032 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2019-05-27 03:53 - 2012-08-25 06:39 - 000144704 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2019-05-27 03:53 - 2012-08-24 04:37 - 027641856 _____ (Intel Corporation) C:\Windows\system32\igdrcl32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 021816320 _____ (Intel Corporation) C:\Windows\system32\igdfcl32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 011155968 _____ (Intel Corporation) C:\Windows\system32\igd10umd32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 011038208 _____ (Intel Corporation) C:\Windows\system32\igdumd32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 009023488 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 008576000 _____ (Intel Corporation) C:\Windows\system32\ig7icd32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 007408128 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd32.sys
2019-05-27 03:53 - 2012-08-24 04:37 - 003776512 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 002899968 _____ (Intel Corporation) C:\Windows\system32\igdbcl32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 001921265 _____ C:\Windows\system32\iglhxa32.cpa
2019-05-27 03:53 - 2012-08-24 04:37 - 000755048 _____ C:\Windows\system32\igcodeckrng700.bin
2019-05-27 03:53 - 2012-08-24 04:37 - 000604160 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000598780 _____ C:\Windows\system32\igvpkrng700.bin
2019-05-27 03:53 - 2012-08-24 04:37 - 000519680 _____ (Intel Corporation) C:\Windows\system32\iglhsip32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000448512 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000438272 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000437760 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000437760 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000437248 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000437248 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436736 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436224 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436224 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000436224 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435712 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435712 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435712 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435712 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435712 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435200 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000435200 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000433664 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000433664 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000430080 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000429056 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000427008 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000426496 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000330240 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000313856 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000286208 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000284160 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2019-05-27 03:53 - 2012-08-24 04:37 - 000223233 _____ C:\Windows\system32\Gfxres.th-TH.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000209727 _____ C:\Windows\system32\Gfxres.el-GR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000195584 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000193862 _____ C:\Windows\system32\Gfxres.ru-RU.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000180224 _____ (Intel Corporation) C:\Windows\system32\iglhcp32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000174080 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000165865 _____ C:\Windows\system32\Gfxres.ar-SA.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000163120 _____ C:\Windows\system32\Gfxres.ja-JP.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000158727 _____ C:\Windows\system32\Gfxres.he-IL.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000149390 _____ C:\Windows\system32\Gfxres.it-IT.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000147759 _____ C:\Windows\system32\Gfxres.ko-KR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000147101 _____ C:\Windows\system32\Gfxres.de-DE.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000147010 _____ C:\Windows\system32\Gfxres.es-ES.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000145715 _____ C:\Windows\system32\Gfxres.ro-RO.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000145211 _____ C:\Windows\system32\Gfxres.fr-FR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000144378 _____ C:\Windows\system32\Gfxres.tr-TR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000143976 _____ C:\Windows\system32\Gfxres.pt-BR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000143730 _____ C:\Windows\system32\Gfxres.nl-NL.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000143657 _____ C:\Windows\system32\Gfxres.hu-HU.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000142990 _____ C:\Windows\system32\Gfxres.pt-PT.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000142617 _____ C:\Windows\system32\Gfxres.sv-SE.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000142423 _____ C:\Windows\system32\Gfxres.pl-PL.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000142008 _____ C:\Windows\system32\Gfxres.cs-CZ.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000141739 _____ C:\Windows\system32\Gfxres.fi-FI.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000141574 _____ C:\Windows\system32\Gfxres.sk-SK.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000140779 _____ C:\Windows\system32\Gfxres.hr-HR.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000137621 _____ C:\Windows\system32\Gfxres.sl-SI.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000137534 _____ C:\Windows\system32\Gfxres.nb-NO.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000136873 _____ C:\Windows\system32\Gfxres.da-DK.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000132360 _____ C:\Windows\system32\Gfxres.en-US.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000130048 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000126035 _____ C:\Windows\system32\Gfxres.zh-TW.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000124403 _____ C:\Windows\system32\Gfxres.zh-CN.resources
2019-05-27 03:53 - 2012-08-24 04:37 - 000120320 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2019-05-27 03:53 - 2012-08-24 04:37 - 000102400 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2843.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000096256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000094208 _____ C:\Windows\system32\IccLibDll.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000067580 _____ C:\Windows\system32\iglhxs32.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000064512 _____ C:\Windows\system32\igdde32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000059594 _____ C:\Windows\system32\iglhxc32.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000059392 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000059384 _____ C:\Windows\system32\iglhxc32_dev.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000059328 _____ C:\Windows\system32\iglhxg32_dev.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000059215 _____ C:\Windows\system32\iglhxo32_dev.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000058781 _____ C:\Windows\system32\iglhxo32.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000056320 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2019-05-27 03:53 - 2012-08-24 04:37 - 000056320 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD32.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000025088 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2019-05-27 03:53 - 2012-08-24 04:37 - 000001074 _____ C:\Windows\system32\iglhxa32.vp
2019-05-27 03:53 - 2012-08-24 04:37 - 000000255 _____ C:\Windows\system32\GfxUI.exe.config
2019-05-27 03:44 - 2019-05-27 03:52 - 000000000 ____D C:\Intel
2019-05-24 19:46 - 2019-05-24 19:46 - 000008192 __RSH C:\BOOTSECT.BAK
2019-05-24 19:46 - 2019-05-24 07:51 - 000000000 ____D C:\Windows\Panther
2019-05-24 19:46 - 2018-11-14 00:55 - 000399860 __RSH C:\bootmgr
2019-05-24 18:50 - 2019-05-24 18:50 - 000001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2019-05-24 18:49 - 2019-05-24 18:49 - 000001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2019-05-24 18:48 - 2019-05-24 18:48 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2019-05-24 07:51 - 2019-05-24 07:51 - 000343423 __RSH C:\IBYGL
2019-05-24 07:51 - 2019-05-24 07:51 - 000001417 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2019-05-24 07:51 - 2019-05-24 07:51 - 000000020 __RSH C:\win7.ld
2019-05-24 07:51 - 2019-05-24 07:51 - 000000020 ___SH C:\Users\User\ntuser.ini
2019-05-24 07:51 - 2019-05-24 07:51 - 000000000 ____D C:\Users\User\AppData\Local\VirtualStore
2019-05-24 07:51 - 2010-11-21 06:16 - 000000000 ____D C:\Users\User\AppData\Roaming\Media Center Programs
 
==================== One month (modified) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-06-14 11:47 - 2009-07-14 10:04 - 000021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-06-14 11:47 - 2009-07-14 10:04 - 000021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-06-14 11:39 - 2009-07-14 10:23 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-06-14 11:18 - 2010-11-21 02:31 - 000781298 _____ C:\Windows\system32\PerfStringBackup.INI
2019-06-14 11:18 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\inf
2019-06-13 17:58 - 2009-07-14 08:07 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-06-13 09:09 - 2009-07-14 10:03 - 000626800 _____ C:\Windows\system32\FNTCACHE.DAT
2019-06-13 09:06 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\Dism
2019-06-12 15:17 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\Registration
2019-06-11 18:24 - 2009-07-14 08:07 - 000000000 __RHD C:\Users\Public\Libraries
2019-06-11 13:17 - 2009-07-14 10:22 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-06-07 16:03 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\NDF
2019-06-05 18:01 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\LiveKernelReports
2019-06-05 13:15 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\AppCompat
2019-06-04 19:00 - 2009-07-14 08:07 - 000000000 ____D C:\Program Files\Common Files\System
2019-06-04 19:00 - 2009-07-14 07:34 - 000000478 _____ C:\Windows\win.ini
2019-06-02 13:16 - 2010-11-21 06:16 - 000000000 ____D C:\Program Files\Windows Journal
2019-06-02 13:16 - 2009-07-14 10:22 - 000000000 ____D C:\Program Files\DVD Maker
2019-06-02 13:16 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\Setup
2019-06-02 13:16 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\migwiz
2019-06-02 13:16 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-06-02 10:15 - 2018-07-18 14:48 - 000000000 ____D C:\Sound
2019-06-02 10:04 - 2009-07-14 10:22 - 000000000 ____D C:\Program Files\Windows Defender
2019-06-01 07:13 - 2010-11-21 06:16 - 000000000 ___RD C:\Users\Public\Recorded TV
2019-05-27 04:17 - 2009-07-14 10:22 - 000000000 ____D C:\Program Files\MSBuild
2019-05-27 04:16 - 2010-11-21 06:16 - 000000000 ____D C:\Windows\ShellNew
2019-05-24 20:20 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\rescache
2019-05-24 19:46 - 2009-07-14 10:22 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2019-05-24 19:46 - 2009-07-14 10:04 - 000000000 ____D C:\Windows\Setup
2019-05-24 18:50 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\oobe
2019-05-24 18:49 - 2009-07-14 08:07 - 000000000 ____D C:\Windows\system32\sysprep
2019-05-24 18:48 - 2010-11-21 06:16 - 000000000 ____D C:\Windows\CSC
 
==================== Files in the root of some directories ================
 
2019-06-11 18:56 - 2019-06-11 21:33 - 000002132 _____ () C:\Users\Tejas Joshi\AppData\Roaming\droid4xinstaller.log
 
==================== FLock ================
 
2019-06-14 11:00 C:\System Volume Information
 
==================== SigCheck ===============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ============================
 
 
:EOF
 
 
 
Addition.txt:
 
 
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 12-06-2019 01
Ran by Tejas Joshi (14-06-2019 11:49:27)
Running from C:\Users\Tejas Joshi\Downloads
Microsoft Windows 7 Ultimate  Service Pack 1 (X86) (2019-05-24 02:21:04)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3159712163-3974166340-3820129496-500 - Administrator - Disabled)
Guest (S-1-5-21-3159712163-3974166340-3820129496-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3159712163-3974166340-3820129496-1002 - Limited - Enabled)
Tejas Joshi (S-1-5-21-3159712163-3974166340-3820129496-1003 - Administrator - Enabled) => C:\Users\Tejas Joshi
User (S-1-5-21-3159712163-3974166340-3820129496-1000 - Administrator - Enabled) => C:\Users\User
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Reader XI (11.0.23) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Angry Birds Space (HKLM\...\{40044440-4ED4-4792-8417-5EE6374F001C}) (Version: 1.1.0 - Rovio)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 19.5.2378 - AVAST Software)
Avast Secure Browser (HKLM\...\Avast Secure Browser) (Version: 74.0.1376.132 - AVAST Software)
Avast SecureLine (HKLM\...\{2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5}_is1) (Version: 5.2.438 - AVAST Software)
Avast Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.154.333 - AVAST Software) Hidden
Block Keeper (HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\...\blockkeeper) (Version: 2.2.0 - Dallas McNeil)
BlueStacks App Player (HKLM\...\{D080F290-4B2A-4C67-9757-63DA0C6E8855}) (Version: 2.0.0.1011 - BlueStack Systems, Inc.)
Droid4X (HKLM\...\Droid4X) (Version: 0.10.7 - Haiyu Dongxiang Co.,Ltd.)
Google Chrome (HKLM\...\Google Chrome) (Version: 75.0.3770.90 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Intel® Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2843 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
KOPLAYER Pro version: 2.0.0 (HKLM\...\KOPLAYER_is1) (Version:  - KOPLAYER Team)
KOPLAYERBOX (HKLM\...\KOPLAYERBOX) (Version: 1.0.0.1005 - Fuzhou KaoPu NetWork Co.,Ltd.)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Nox APP Player (HKLM\...\Nox) (Version: 6.2.8.5 - Duodian Technology Co. Ltd.)
Oracle VM VirtualBox 4.3.12_ZZZZ (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation)
PPSSPP (HKLM\...\PPSSPP_is1) (Version: 1.7.4.0 - PPSSPP Team)
Python 3.7.3 (32-bit) (HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\...\{24ac8299-2abd-4ddd-8be3-031debb6093c}) (Version: 3.7.3150.0 - Python Software Foundation)
Python 3.7.3 C Runtime Library (32-bit) (HKLM\...\{3518E76D-1BC1-4540-9EB7-2B699EF97463}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Core Interpreter (32-bit) (HKLM\...\{33AB9CEA-621E-4064-9FB0-7048E79DB5B5}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Development Libraries (32-bit) (HKLM\...\{52DDE5D8-B45C-4C1D-81DD-D72317DE8B08}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Documentation (32-bit) (HKLM\...\{2BC067C0-B392-49C0-988B-C839C62D8B65}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Executables (32-bit) (HKLM\...\{E3E61712-C062-45E7-8348-D7DBF66FACFD}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 pip Bootstrap (32-bit) (HKLM\...\{9846DC93-4A39-496F-8AE3-0E3AB4EF4385}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Standard Library (32-bit) (HKLM\...\{DC6190E7-D05E-465A-9FB6-7418BC901991}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Tcl/Tk Support (32-bit) (HKLM\...\{1341418F-C713-4943-ACB2-9F4D4743D193}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Test Suite (32-bit) (HKLM\...\{FE5E4BF9-7487-4CE8-A2AC-F78C6B4BE487}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Utility Scripts (32-bit) (HKLM\...\{AE9303AD-EBD0-4C85-A9D0-55B1BA972D11}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM\...\{A28C27E4-A725-482A-9C65-61EDC0E4D583}) (Version: 3.7.6657.0 - Python Software Foundation)
Roblox Player for Tejas Joshi (HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\...\roblox-player) (Version:  - Roblox Corporation)
Roblox Studio for Tejas Joshi (HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\...\roblox-studio) (Version:  - Roblox Corporation)
SHAREit (HKLM\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN)
WinRAR 5.71 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3159712163-3974166340-3820129496-1003_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2012-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-11] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
 
==================== Loaded Modules (Whitelisted) ==============
 
2019-06-13 10:08 - 2019-06-13 10:08 - 001528832 _____ (BlueStack Systems, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\HD-Agent\4ee017414f854d37eac8b34f84999974\HD-Agent.ni.exe
2019-06-13 10:08 - 2019-06-13 10:08 - 000077312 _____ (BlueStack Systems, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\HD-LogRotatorService\a317ce74e7cf786b74d85136ae172104\HD-LogRotatorService.ni.exe
2019-06-13 10:08 - 2019-06-13 10:08 - 001443840 _____ (BlueStack Systems, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\HD-UpdaterService\4552124db1d1e44ce439e3e247940e59\HD-UpdaterService.ni.exe
2019-06-13 10:08 - 2019-06-13 10:08 - 000166400 _____ (CodeTitans) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\JSON\fbd901ed59ead5cc2fa36d3e67151533\JSON.ni.dll
2019-06-04 19:05 - 2019-06-04 19:05 - 000096256 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.762_none_11ecb0ab9b2caf3c\ATL80.DLL
2019-06-12 17:49 - 2018-09-05 21:32 - 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\AVAST Software\SecureLine\libcrypto-1_1.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 07:34 - 2019-06-14 11:20 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3159712163-3974166340-3820129496-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Tejas Joshi\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 172.16.174.151 - 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [TCP Query User{BF11D215-AEC8-492C-A2AD-4BC7EDF3F353}C:\program files\microsoft office\office12\groove.exe] => (Block) C:\program files\microsoft office\office12\groove.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{434B70A8-5447-4944-94E3-520AFADCCB72}C:\program files\microsoft office\office12\groove.exe] => (Block) C:\program files\microsoft office\office12\groove.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{79D5C66A-58A2-45E1-A38D-1729F2B863F0}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{6859B419-6ABF-4BCC-AC57-030D11B50A8A}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{87B2BF79-BC7E-40BB-989E-045EA15B2C9E}] => (Allow) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{C8F11909-3F28-4419-98FD-86222CA5EF2C}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{1CED0BE3-D9C5-44A6-B4E5-A405EC99917F}C:\users\tejas joshi\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe] => (Allow) C:\users\tejas joshi\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe (ShenZhen Thunder Networking Technologies Ltd. -> 深圳市迅雷网络技术有限公司)
FirewallRules: [{FE91E59F-B682-4309-99E6-3C906AC1039A}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxHeadless.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{2751E3C8-2BBF-4E12-B454-7B1C95110594}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxManage.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{2FE8B982-9768-4644-8A89-9F0F0D43C8EF}] => (Allow) C:\Program Files\KOPLAYER\download\MiniThunderPlatform.exe (ShenZhen Thunder Networking Technologies Ltd. -> 深圳市迅雷网络技术有限公司)
FirewallRules: [{2610E090-A293-4F3B-AAFB-D56EB81917E7}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxHeadless.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{BA74E9B0-7DB7-42F5-83EF-4A4D5BA49E2E}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxManage.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{0FCD9E14-1E04-4138-9101-0B9F5A11F77B}] => (Allow) C:\Program Files\KOPLAYER\download\MiniThunderPlatform.exe (ShenZhen Thunder Networking Technologies Ltd. -> 深圳市迅雷网络技术有限公司)
FirewallRules: [{E9C8ADA7-3414-4811-8C3F-93AE168976A2}] => (Allow) C:\Program Files\KOPLAYER\KOPLAYER.exe (Fuzhou kaopu Network Co.,Ltd -> Kaopu Co., Ltd.)
FirewallRules: [{1E4D5571-CB1B-4FD0-A735-4897700C1B3B}] => (Allow) C:\Program Files\KOPLAYER\KOPLAYER.exe (Fuzhou kaopu Network Co.,Ltd -> Kaopu Co., Ltd.)
FirewallRules: [{9EC3E3DB-DF6D-43EE-953C-E61340C5652B}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxHeadless.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{12B36C47-E360-44EB-A858-A2C398C7D3B2}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxHeadless.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{5571B2D3-2475-49E2-92D6-487318CEFE02}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxManage.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{392EDD11-AA6A-4427-B3C6-3AC175A7CCB0}] => (Allow) C:\Program Files\KOPLAYER\vbox\VBoxManage.exe (Fuzhou kaopu Network Co.,Ltd -> Oracle Corporation)
FirewallRules: [{85B73FE8-2A78-48AC-84FE-9E09667D6B7A}] => (Allow) C:\Program Files\KOPLAYER\KOPLAYER.exe (Fuzhou kaopu Network Co.,Ltd -> Kaopu Co., Ltd.)
FirewallRules: [{CDDECCEE-8347-4319-8D54-89B525F28306}] => (Allow) C:\Program Files\KOPLAYER\KOPLAYER.exe (Fuzhou kaopu Network Co.,Ltd -> Kaopu Co., Ltd.)
FirewallRules: [{0A8A9A3C-5425-4307-98CF-14D8BE9DEE19}] => (Allow) C:\Program Files\Droid4X\Droid4X.exe () [File not signed]
FirewallRules: [{3DE38C70-FAE5-48F7-B4A8-7D81D4E4B442}] => (Allow) C:\Program Files\Droid4X\download\MiniThunderPlatform.exe (北京海誉动想科技股份有限公司 -> 深圳市迅雷网络技术有限公司)
FirewallRules: [{ACDEDEAE-693E-4001-B6F8-5B1F9CFEA3BA}] => (Allow) C:\Program Files\Droid4X\download\MiniThunderPlatform.exe (北京海誉动想科技股份有限公司 -> 深圳市迅雷网络技术有限公司)
FirewallRules: [{DC778C3A-D864-4B47-BE90-A3E801CDE130}] => (Allow) C:\Program Files\Oracle\VirtualBox\vboxheadless.exe (Oracle Corporation -> )
FirewallRules: [{D31C8E98-44A1-4AE5-89F8-662EFFDCDC0B}] => (Allow) C:\Program Files\Nox\bin\Nox.exe (Nox Limited -> Duodian Technology Co. Ltd.)
FirewallRules: [{C4EEA390-7425-47ED-AA05-834345A4422A}] => (Allow) C:\Program Files\\Bignox\\BigNoxVM\\RT\NoxVMHandle.exe (Nox Limited -> BigNox Corporation)
FirewallRules: [{0CFC3E7A-DBD3-4BE6-B292-0AEBBDEE6D21}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
 
==================== Restore Points =========================
 
11-06-2019 21:03:48 Installed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
12-06-2019 13:20:56 Removed BlueStacks App Player
12-06-2019 13:44:15 Windows Backup
12-06-2019 22:23:22 Windows Update
13-06-2019 10:41:11 Device Driver Package Install: TAP-Windows Provider V9 Network adapters
13-06-2019 11:00:22 Windows Backup
13-06-2019 17:57:21 Windows Update
14-06-2019 11:00:18 Windows Backup
 
==================== Faulty Device Manager Devices =============
 
Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (06/14/2019 11:39:59 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (06/14/2019 11:39:44 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Service cannot be started. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   at BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
 
Error: (06/14/2019 11:39:39 AM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
 
Error: (06/14/2019 11:39:32 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tejas Joshi\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="&#x2a;",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (06/14/2019 10:21:02 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (06/14/2019 10:20:29 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tejas Joshi\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="&#x2a;",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (06/13/2019 06:53:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (06/13/2019 06:53:16 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
 
 
System errors:
=============
Error: (06/14/2019 11:39:44 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The BlueStacks Android Service service terminated with the following error: 
An exception occurred in the service when handling the control request.
 
Error: (06/14/2019 11:37:51 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {3EB3C877-1F16-487C-9050-104DBCD66683} did not register with DCOM within the required timeout.
 
Error: (06/14/2019 11:37:44 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The BlueStacks Android Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/14/2019 11:37:42 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
 
Error: (06/14/2019 11:37:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The BlueStacks Updater Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/14/2019 11:37:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The BlueStacks Log Rotator Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/14/2019 11:37:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Droid4XService service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/14/2019 11:37:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Adobe Acrobat Update Service service terminated unexpectedly.  It has done this 1 time(s).
 
 
Windows Defender:
===================================
Date: 2019-06-11 13:36:13.358
Description: 
Windows Defender scan has been stopped before completion.
Scan ID:{A90774D1-0937-4994-8C08-B72BE6159547}
Scan Type:AntiSpyware
Scan Parameters:Quick Scan
 
==================== Memory info =========================== 
 
BIOS: American Megatrends Inc. 4.6.5 09/13/2013
Motherboard: ECS H61H2-M4
Processor: Intel® Celeron® CPU G1610 @ 2.60GHz
Percentage of memory in use: 88%
Total physical RAM: 1925.14 MB
Available physical RAM: 227.88 MB
Total Virtual: 3850.28 MB
Available Virtual: 1229.73 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:172.45 GB) (Free:124.64 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:146.48 GB) (Free:143.82 GB) NTFS
Drive e: () (Fixed) (Total:146.48 GB) (Free:73.11 GB) NTFS
 
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 002E002E)
Partition 1: (Active) - (Size=172.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=146.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=146.5 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================
 
 
:EOF
 
 
 

Edited by The_Lone_Wolf, 14 June 2019 - 01:18 AM.


#6 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 14 June 2019 - 05:25 AM

Your logs are clean.

We’ll run one more diagnostic scan and then an online scan to be sure.


Run RogueKiller

IMPORTANT: Please remove any usb or external drives from the computer before you run this scan!

Close all running programs.


Download RogueKiller to your desktop

  • close all running programs
  • for Windows Vista/7/8/10, right click -> run as administrator, for XP simply double-click on RogueKiller.exe
  • click on Start Scan
  • when it has finished, click on Open Report
  • click on Export Txt and save the file on your Desktop as RKreport.txt
  • copy/paste the content in your next post
  • NOTE: DO NOT attempt to remove anything that the scan detects –everything that is reported is not necessarily bad

===================================================

Download ESET Online Scanner and save it to your desktop.

  • right-click on esetonlinescanner_enu.exe and select Run as Administrator.
  • when the tool opens, click Get Started.
  • read and accept the license agreement.
  • at the Welcome to ESET Online Scanner window, click Get Started.
  • select whether you would like to send anonymous data to ESET.
  • Note: if you see the "Welcome Back to ESET Online Scanner" screen, click Computer Scan > Full Scan.
  • click on the Full Scan option.
  • select Enable ESET to detect and remove potentially unwanted applications, then click Start scan.
  • ESET will now begin scanning your computer. This may take some time.
  • when the scan is finished and if threats have been detected, select Save scan log. Save it to your desktop as eset.txt. Click on Continue.
  • ESET Online Scanner may ask if you'd like to turn on the Periodic Scan feature: click on Continue.
  • on the next screen, you can leave feedback about the program if you wish. Check the box for Delete application data on closing. If you left feedback, click Submit and continue. If not, Close without feedback.
  • open the scan log on your desktop (eset.txt) and copy and paste its contents into your next reply.

Satchfan

 


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#7 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 17 June 2019 - 03:06 AM

Hello The_Lone_Wolf

It has been several days since I sent my last set of instructions to help with your computer problem.

Please let me know if you still need help. If I don't get a reply within 24 hours I'll assume all is well and close this topic.

Satchfan


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#8 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 19 June 2019 - 01:00 AM

Sorry, I was sick I couldn't reply.

 

And I cannot download ESET. It's not getting downloaded.

 

RK.txt:

 

RogueKiller Anti-Malware V13.2.2.0 [Jun 10 2019] (Free) by Adlice Software
Operating System : Windows 7 (6.1.7601 Service Pack 1) 32 bits
Started in : Normal mode
User : Tejas Joshi [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller.exe
Signatures : 20190615_070412, Driver : Loaded
Mode : Quick Scan, Scan -- Date : 2019/06/17 11:51:47 (Duration : 00:01:13)
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
:EOF
 
And one more problem. Avast detected an IDP.generic malware also.
 
INFO:
 
Fl. name: noxsrv.exe
Threat: IDP.generic
Comments: It is nox android emulator's internal file.
 
:EOF
 
 
Please reply soon.
 
~Wolf


#9 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 19 June 2019 - 11:09 AM

Apologies for the delay but I had no notification of your reply.

 

Sorry, I was sick I couldn't reply

Hope you are feeling better now.

I would say that's another false-positive regarding emulators.

 

=================

 

Let’s run a different scan.

Please be patient as scanning may take some time. If you have problem running the scan, you might want to disable any real time protection that you have.

  • click here to go to BitDefender QuickScan page.

For Firefox and Chrome users:


o    Click on Scan Now. You will be prompted to install a plug-in: allow it. (In case you get stuck, refresh the page to try again).
o    A Software Installation window will appear. Click Install Now and the plugin will be installed as an Add-on.
o    Restart Firefox when done. Go back to the BitDefender QuickScan page again and click on Free Scan Now and proceed accordingly.
 

For Internet Explorer users:


o    Click on Scan Now. You will be prompted to install an ActiveX control. Please install.
o    The page will refresh. Click on Scan Now again and proceed accordingly.

  • when the scan has completed, click on View report and a Notepad log will open.
  • if there are any infections found, you will get a warning and the link to the report will be displayed as the number of infections. Click on it.

Post back the contents of this report. It can also be found at C:\Documents and Settings\<username>\Application Data\QuickScan, (“username” is the Windows log-in name).

Satchfan

 


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#10 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 20 June 2019 - 02:19 AM

Uhh... The link you sent is directing me to www.bitdefender.com/toolbox/  .

P.S. fix the link you sent.

 

And I trust nox, it's the first time in years that it is being detected as a virus.

 

~Wolf


Edited by The_Lone_Wolf, 20 June 2019 - 02:20 AM.

    Advertisements

Register to Remove


#11 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 20 June 2019 - 05:09 AM

Hm. Even BitDefender's own website give the link to the 'toolbox'!!

 

Let's see if this works :) :

 

F-Secure Online Scan

  • please run F-Secure Online Scan
  • follow the Instruction here for installation
  • accept the License Agreement
  • once the ActiveX installs, click Full System Scan
  • once the download completes, the scan will begin automatically
  • the scan will take some time to finish, so please be patient
  • when the scan completes, click the 'Automatic cleaning (recommended)' button
  • click the ‘Show Report’ button and copy/paste the entire report in your next reply.

Satchan

 


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#12 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 23 June 2019 - 03:55 AM

Hi Wolf

 

It has again been 3 days since I replied to your request for help with your computer problems.

Please let me know if you are having problems and still need help.

If I do not hear from you within 24 hours I'll assume that all is now OK and close this topic.

Satchfan


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#13 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 24 June 2019 - 12:23 AM

Uh... There's a problem. There isn't any such option to 'see the report'. I may have been in older versions but it isn't there currently.



#14 Satchfan

Satchfan

    SuperHelper

  • Malware Team
  • 6,453 posts
  • Interests:LFC, music, more LFC, more music

Posted 24 June 2019 - 07:28 AM

F-Secure's own website says there should be an option to Open last scanning report.

Did it show that anything was found?


NINA - Proud graduate of the WTT Classroom

Member of UNITE

The help you receive here is free but if you feel I have helped, you may consider making a Donation.

#15 The_Lone_Wolf

The_Lone_Wolf

    New Member

  • Authentic Member
  • Pip
  • 8 posts

Posted 26 June 2019 - 02:45 AM

I'm sending a screenshot. Link below:

 

https://1drv.ms/u/s!...CigcLf2_QAfij4a


Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users