EvgenKamensky
Well-known member
Hello
have some issues with windows. already posted DISM and sfc /scannow issues (both not working) after latest update but was advised to start New Topic here
tried to use KVRT tool and it detected active malware/virus in system memory then cured it. but still have the same issues
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2019
Ran by homepc (administrator) on SIMPC (Gigabyte Technology Co., Ltd. G1.Guerrilla) (07-10-2019 18:42:58)
Running from C:\Users\homepc\Desktop\Tor Browser
Loaded Profiles: homepc (Available Profiles: homepc & test & newuser & .NET v4.5 & DefaultAppPool & .NET v4.5 Classic)
Platform: Windows 10 Pro Version 1809 17763.775 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Alcohol Soft -> Alcohol Soft Development Team) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe
(ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Bitsum LLC -> Bitsum LLC) [File not signed] C:\Program Files\Process Lasso\ProcessGovernor.exe
(Bitsum LLC -> Bitsum LLC) [File not signed] C:\Program Files\Process Lasso\ProcessLasso.exe
(Bitsum LLC -> Bitsum LLC) C:\Program Files\ParkControl\ParkControl.exe
(CA -> CA) H:\CA_LIC\lic98Service.exe
(CA -> CA) H:\CA_LIC\LogWatNT.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwantispam.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwarkdaemon.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwwatcher.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\dwnetfilter.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\dwservice.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\frwl_svc.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent_adm.exe
(Flexera Software LLC -> Flexera Software LLC) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(Flight Sim Labs, Ltd. -> Flight Sim Labs Ltd.) C:\Program Files (x86)\FlightSimLabs\FSLSpotLights\FSLService\FSLService.exe
(FxSound, LLC -> ) [File not signed] C:\Program Files (x86)\DFX\DFX.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe
(Janos Mathe -> H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
(Jeppesen Sanderson, Inc -> ) C:\Program Files (x86)\Jeppesen\CDA\cda.exe
(Jeppesen Sanderson, Inc -> Jeppesen) C:\Program Files (x86)\Jeppesen\JWC\JWC.exe
(Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Reg Organizer\StartupCheckingService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\snmp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(SelfSigned -> ) [File not signed] C:\Program Files (x86)\Dating\Dating.exe
(StarWind Software) [File not signed] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(SurfRight B.V. -> SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(SurfRight B.V. Dickmaster -> SurfRight B.V.) [File not signed] C:\Program Files\HitmanPro\HitmanPro.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(The OpenVPN Project) [File not signed] C:\Program Files\OpenVPN\bin\openvpnserv.exe
(TOSHIBA CORPORATION -> Toshiba Client Solutions Co., Ltd.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe
(Viber Media S.à r.l. -> Viber Media S.Ã r.l.) C:\Users\homepc\AppData\Local\Viber\Viber.exe
(VMware, Inc. -> ) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
(VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [SpIDerAgent] => C:\Program Files\DrWeb\spideragent.exe [22147976 2019-10-02] (Doctor Web Ltd. -> Doctor Web, Ltd.)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391120 2019-03-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Process Killer] => C:\Program Files (x86)\Process Killer\prkiller.exe [38400 2005-07-30] () [File not signed]
HKLM-x32\...\Run: [QW787_v1.1.2a_update] => F:\Симуляторы\P3DV4\Самолеты\QW_787_P3DV4\QW787_v1.1.2a_update.exe [17147444 2018-11-21] () [File not signed]
HKLM-x32\...\Run: [FxSound Enhancer] => C:\Program Files (x86)\DFX\dfx.exe [1780728 2019-07-26] (FxSound, LLC -> ) [File not signed]
HKLM-x32\...\Run: [RzWizard] => C:\Program Files (x86)\Razer\RzWizard\RzWizard.exe [263112 2016-03-23] (Razer USA Ltd. -> Razer Inc.)
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [125872 2019-02-20] (VMware, Inc. -> VMware, Inc.)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION -> TOSHIBA CORPORATION)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [FlightPlan] => e:\симуляторы\FlightPlan_3_7\FlightPlan.exe [835584 2012-05-05] (Umberto Degli Esposti) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [HP Deskjet 5520 series (NET)] => C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [TeamSpeak 3 Client] => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [14941336 2018-06-04] (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Task Killer] => E:\Task.Killer.Portable\TaskKiller.exe [221696 2015-12-19] () [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [AutoHideMouseCursor] => E:\FSL_A320X\P3Dv4.1\FSLabs_A320X_P3D_v2.0.1.237\AutoHideMouseCursor_x64\AutoHideMouseCursor_x64.exe [152576 2018-03-23] (Nenad Hrg (SoftwareOK.com)) [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Speech Recognition] => C:\WINDOWS\Speech\Common\sapisvr.exe [45056 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [636416 2017-09-15] () [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Viber] => C:\Users\homepc\AppData\Local\Viber\Viber.exe [41029704 2019-09-25] (Viber Media S.à r.l. -> Viber Media S.Ã r.l.)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [ECMHelper] => C:\Program Files (x86)\Экранная Камера\Agent.exe [847600 2018-12-26] (AMS Software) [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe [16443120 2018-10-05] (A FOUR TECH CO., LTD. -> )
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [GameCenter] => C:\Users\homepc\AppData\Local\GameCenter\GameCenter.exe [9983616 2019-08-08] (Mail.Ru, LLC -> )
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [SimBrief Downloader] => C:\Users\homepc\AppData\Local\Programs\SimBrief Downloader\SimBrief Downloader.exe [81042864 2018-11-27] (Derek Mayer -> Derek Mayer)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23912440 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: L - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {0dd97860-05ce-11e9-82b3-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {94b459e9-074c-11e9-82bb-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {a16e49be-19a4-11e9-833c-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {acbb8ff6-100a-11e9-8305-001fc6276e5b} - "L:\dvdcheck.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {d8fd3f33-0891-11e9-82be-001fc6276e5b} - "L:\setup.exe"
HKLM\Software\...\AppCompatFlags\Custom\S4Editor.exe: [{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb] -> GOG.com The Settlers 4 GOLD
HKLM\Software\...\AppCompatFlags\Custom\S4_Main.exe: [{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb] -> GOG.com The Settlers 4 GOLD
HKLM\Software\...\AppCompatFlags\InstalledSDB\{ff2cad6c-eb68-4e98-88d7-49887440affb}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb [2013-07-16]
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-25] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{3AFF1C30-4959-4c2f-8BED-E6E81E39F57A}] -> C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtCp.dll [2012-02-01] (TOSHIBA CORPORATION -> TOSHIBA CORPORATION)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bigfoot Killer Network Manager.lnk [2019-09-15]
ShortcutTarget: Bigfoot Killer Network Manager.lnk -> C:\Program Files\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk [2019-05-15]
ShortcutTarget: Bluetooth Manager.lnk -> C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION -> Toshiba Client Solutions Co., Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CDA Monitor.lnk [2018-12-24]
ShortcutTarget: CDA Monitor.lnk -> C:\Program Files (x86)\Jeppesen\CDA\CDAMonitor.exe (Jeppesen Sanderson, Inc -> )
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dating.lnk [2019-07-28]
ShortcutTarget: Dating.lnk -> C:\Program Files (x86)\Dating\Dating.exe (SelfSigned -> ) [File not signed]
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Disk-O.lnk [2018-12-10]
ShortcutTarget: Disk-O.lnk -> C:\Users\homepc\AppData\Local\Mail.Ru\Disk-O\DiskO.exe (LLC Mail.Ru -> Mail.Ru)
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Letasoft Sound Booster.lnk [2019-01-08]
ShortcutTarget: Letasoft Sound Booster.lnk -> C:\Program Files (x86)\Letasoft Sound Booster\SoundBooster.exe (Letasoft LLC -> Letasoft)
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 5520 series (Network).lnk [2018-05-22]
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2D63D986-6751-4C26-908A-260F5ADD4292} - System32\Tasks\bandicam_start => C:\Program Files (x86)\Bandicam\bdcam.exe [6287776 2019-02-19] (Bandicam Company -> Bandicam Company)
Task: {32566FC1-6EE8-417C-B89F-C1B871382D6B} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {3B483FCD-B42F-4CBE-96E6-15CEE4158812} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_homepc => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [5458008 2018-07-17] (Janos Mathe -> H.D.S. Hungary)
Task: {3E531F2C-FC20-4030-9AD8-58A7330BE779} - System32\Tasks\RegOrganizerQuickLaunch => C:\Program Files (x86)\Reg Organizer\RegOrganizer.exe -RegistryEditor -ForceForeground -NoSplash
Task: {48669851-E43F-4749-86DF-BC580859156F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1430160 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {4BB42F87-709C-4EA8-9AA8-43DB55C04928} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [6982216 2019-09-26] (Lespeed Technology Ltd. -> WiseCleaner.com)
Task: {4F71DDFA-CEB3-46C5-B103-0CC0B3BD3FED} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27290216 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {577622A0-4C43-496D-85A2-924AC1336ADD} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_Plugin.exe [1457720 2019-09-14] (Adobe Inc. -> Adobe)
Task: {66669C3C-4730-45E9-9C0C-98B790D86110} - System32\Tasks\Core Temp Autostart homepc => C:\Program Files\Core Temp\Core Temp.exe [1011592 2019-08-24] (ALCPU -> ALCPU)
Task: {6F3C805A-1DD5-4554-8B51-D1E29E54E471} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1430160 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {88F6EC18-D85C-48C2-9AE3-B0D27DEDAB6F} - System32\Tasks\Process Lasso Core Engine Only => C:\Program Files\Process Lasso\processgovernor.exe [1029512 2019-09-18] (Bitsum LLC -> Bitsum LLC) [File not signed]
Task: {8A7573F9-A3B1-4BB5-862D-EF7D294221F3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27290216 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B25905B-ED6B-4E17-8FA2-A86E1473AEC9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [121904 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {9302A8F4-8FD2-453C-9B6C-AA8A44265007} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2357164880-557895980-647672482-1001 => C:\Users\homepc\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-09-16] (Mega Limited -> Mega Limited)
Task: {95F74322-C145-432A-B5DC-5A00537981D5} - System32\Tasks\ParkControl => C:\Program Files\ParkControl\parkcontrol.exe [709512 2019-08-15] (Bitsum LLC -> Bitsum LLC) <==== ATTENTION
Task: {987F598E-0428-4639-8259-2820430D78D4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [121904 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C6F6EEC-7E5B-47DD-909B-47537097061D} - System32\Tasks\HPCustParticipation HP Deskjet 5520 series => C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {B425F0F0-DE66-4D15-AF02-AEDBE66B23D6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-17] (Google Inc -> Google Inc.)
Task: {B58A9E73-4B07-44D6-BF0F-C16A3B42C820} - System32\Tasks\Process Lasso Management Console (GUI) => C:\Program Files\Process Lasso\processlasso.exe [1541520 2019-09-18] (Bitsum LLC -> Bitsum LLC) [File not signed]
Task: {C75E651E-8A3B-4A70-B2F8-705E6390EEC8} - System32\Tasks\BlueStacksHelper => E:\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {DE55D662-192E-44AD-A44C-92D7366BE150} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4469920 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {DFAA9ABF-7272-4539-A3FA-4FE093594CE5} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [770344 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {E44CA61A-0EB9-44E0-B78C-2BB962CB3CDE} - System32\Tasks\FRAPS => C:\Fraps\fraps.exe [2550968 2012-08-30] (Beepa Pty Ltd -> Beepa P/L) [File not signed]
Task: {E769C0E3-71CF-445A-B5C7-EA3170B56DC9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-17] (Google Inc -> Google Inc.)
Task: {E80A2128-822A-4712-A4B1-82EFDAE09546} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {ED970E6A-70A3-4E19-9243-A8AD38614FC6} - System32\Tasks\FPSMonitor => C:\Program Files (x86)\FPS Monitor\FPSMonitor.exe [7098592 2019-04-25] (Kozadaev Eduard Vladimirovich -> )
Task: {F6DA550E-A9CA-4E3C-84DE-900736C61C68} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4469920 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {F95AE5D8-379F-4656-BED6-12A6D5A2C054} - System32\Tasks\Doctor Web\Dr.Web Daily scan => C:\Program Files\DrWeb\dwscanner.exe [11517320 2019-08-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
Task: {FFB35F64-23CA-42B2-BD87-CC98E4B0A343} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_pepper.exe [1453112 2019-09-14] (Adobe Inc. -> Adobe)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog9 01 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 02 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 03 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 04 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 22 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 01 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 02 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 03 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 04 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 22 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{31232c54-0567-44c1-af24-8ca68e6dc70f}: [DhcpNameServer] 192.168.44.1
Tcpip\..\Interfaces\{b922b671-da25-45bc-bcb6-227098c215e7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{cf995ab7-e2fd-4b7e-9aeb-1c520e5945dc}: [NameServer] 8.8.4.4,8.8.8.8
Tcpip\..\Interfaces\{cf995ab7-e2fd-4b7e-9aeb-1c520e5945dc}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2357164880-557895980-647672482-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://mail.ru/cnt/10445?gp=812208
SearchScopes: HKU\S-1-5-21-2357164880-557895980-647672482-1001 -> {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxp://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7BACD27B3D-C9E4-4CD8-9795-15E79965F9DD%7D&gp=812209
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: YoutubeAdBlock -> {C0D38E5A-7CF8-4105-8FE8-31B81443A114} -> No File
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Search@Mail.Ru -> {8E8F97CD-60B5-456F-A201-73065652D099} -> No File
BHO-x32: IE 4.x-6.x BHO for Download Master -> {9961627E-4059-41B4-8E0E-A7D6B3854ADF} -> C:\Program Files (x86)\Download Master\dmiehlp.dll [2017-06-23] (Download Master -> WestByte) [File not signed]
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: pze24zhj.NESTOR
FF DefaultProfile: lh2u6es8.default
FF ProfilePath: C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR [2019-10-07]
FF Homepage: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> hxxps://yandex.ru/?clid=2224022
FF NetworkProxy: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> type", 0
FF HomepageOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: homeutil@yandex.ru
FF NewTabOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: vb@yandex.ru
FF NewTabOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: {a38384b3-2d1d-4f36-bc22-0f7ae402bcd7}
FF Extension: (Hoxx VPN Proxy) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@hoxx-vpn.xpi [2019-10-07]
FF Extension: (SetupVPN - Lifetime Free VPN) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@setupvpncom.xpi [2019-10-07]
FF Extension: (WebRTC Leak Shield) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@webrtc-leak-shield.xpi [2018-02-24]
FF Extension: (anonymoX) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\client@anonymox.net.xpi [2018-12-14]
FF Extension: (FireX Proxy) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\divanproger@gmail.com.xpi [2019-08-19]
FF Extension: (Free Download Manager) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\fdm_ffext2@freedownloadmanager.org.xpi [2019-09-25]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@ghostery.com.xpi [2019-08-29]
FF Extension: (MEGA) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@mega.co.nz.xpi [2019-10-03] [UpdateUrl:hxxps://mega.nz/firefox-web-extension-updates.json]
FF Extension: (Tampermonkey) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@tampermonkey.net.xpi [2019-05-30]
FF Extension: (Start Page — Yandex) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\homeutil@yandex.ru.xpi [2019-09-09]
FF Extension: (Pinterest Save Button) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2019-09-25]
FF Extension: (Доступ к Рутрекеру) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\public.proartex@gmail.com.xpi [2018-05-08]
FF Extension: (S3.Translator) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\s3google@translator.xpi [2018-10-10]
FF Extension: (uBlock Origin) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\uBlock0@raymondhill.net.xpi [2019-09-27]
FF Extension: (Visual Bookmarks) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\vb@yandex.ru.xpi [2019-04-24]
FF Extension: (minerBlock) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\xd4rker@gmail.com.xpi [2019-02-04]
FF Extension: (Zoom Page WE) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\zoompage-we@DW-dev.xpi [2019-09-23]
FF Extension: (First Mountain Snow by M♥Donna) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{58ed0b89-8436-4436-be1c-0f56273f1adf}.xpi [2019-05-14]
FF Extension: (Web of Trust) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2019-09-02]
FF Extension: (Video DownloadHelper) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-07-08]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-08-22]
FF Extension: (Greasemonkey) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2019-06-13]
FF SearchPlugin: C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\searchplugins\mailru.xml [2015-11-21]
FF ProfilePath: C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default [2019-02-27]
FF Homepage: 8pecxstudios\Cyberfox\Profiles\lh2u6es8.default -> hxxp://mail.ru/cnt/10445?gp=812204
FF Extension: (Hoxx VPN Proxy) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@hoxx-vpn.xpi [2018-10-19]
FF Extension: (SetupVPN - Lifetime Free VPN) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@setupvpncom.xpi [2018-02-06]
FF Extension: (WebRTC Leak Shield) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@webrtc-leak-shield.xpi [2018-03-28]
FF Extension: (anonymoX) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\client@anonymox.net.xpi [2017-06-24] [Legacy]
FF Extension: (FireX Proxy) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\divanproger@gmail.com.xpi [2018-12-16]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\firefox@ghostery.com.xpi [2019-01-31]
FF Extension: (Tampermonkey) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\firefox@tampermonkey.net.xpi [2018-10-06]
FF Extension: (Доступ к Рутрекеру) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\public.proartex@gmail.com.xpi [2017-06-24] [Legacy]
FF Extension: (S3.Translator) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\s3google@translator.xpi [2018-10-20]
FF Extension: (Visual Bookmarks) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\vb@yandex.ru.xpi [2017-08-01] [Legacy]
FF Extension: (minerBlock) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\xd4rker@gmail.com.xpi [2018-11-21]
FF Extension: (Zoom Page WE) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\zoompage-we@DW-dev.xpi [2018-12-16]
FF Extension: (Web of Trust) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2018-06-26]
FF Extension: (Video DownloadHelper) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-08-01]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-01-31]
FF Extension: (Greasemonkey) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-10-06]
FF Extension: (CyberCTR) - C:\Program Files\Cyberfox\browser\features\CTR@8pecxstudios.com.xpi [2018-06-29] [Legacy] [not signed]
FF Extension: (No Name) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-02-02] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_255.dll [2019-09-14] (Adobe Inc. -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_255.dll [2019-09-14] (Adobe Inc. -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\homepc\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2017-11-18] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\homepc\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2017-11-18] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\The Settlers 7\Data\Base\_Dbg\Bin\Release\orbit\npuplaypc.dll [2017-12-24] (Ubisoft Massive -> Ubisoft)
Chrome:
=======
CHR HomePage: Default -> inline.go.mail.ru
CHR StartupUrls: Default -> "hxxp://www.mail.ru/cnt/9516","hxxp://mail.ru/cnt/10445?gp=812208"
CHR DefaultSearchURL: Default -> hxxp://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B792CA924-60DD-4AE5-BF89-099626812133%7D&gp=812209
CHR DefaultSearchKeyword: Default -> go.mail.ru
CHR DefaultSuggestURL: Default -> hxxp://suggests.go.mail.ru/chrome?q={searchTerms}
CHR Profile: C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default [2019-10-07]
CHR Extension: (Allavsoft video downloader converter) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhancbnhabhandieicagelcddkdfgoif [2019-01-01]
CHR Extension: (Download Master) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dljdacfojgikogldjffnkdcielnklkce [2019-09-25]
CHR Extension: (Direct.Fastix ) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lknnjfgcgglncamgpbbdfkianokjohlh [2019-02-03]
CHR Extension: (Платежная система Интернет-магазина Chrome) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Adblocker for Youtube™) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohajmcdpjokbdoihfhkpbmlmknejmoec [2018-02-02]
CHR Extension: (Chrome Media Router) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-26]
CHR Profile: C:\Users\homepc\AppData\Local\Google\Chrome\User Data\System Profile [2019-10-07]
CHR HKLM-x32\...\Chrome\Extension: [dhancbnhabhandieicagelcddkdfgoif] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.16.4.6852\BVDChromeExt.crx [2018-12-29]
CHR HKLM-x32\...\Chrome\Extension: [dljdacfojgikogldjffnkdcielnklkce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fppjhfcgnalgfiimdflmikpifodndljf] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gbnhehnpnbiioheicppmmmjaekcdfigc] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ikpcpgklmefncbfgbdifkaphbaapgafh] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
R2 AxVirtualAHCISrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe [99712 2015-12-04] (Alcohol Soft -> Alcohol Soft Development Team)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7212480 2018-09-16] (BattlEye Innovations e.K. -> )
R2 Bigfoot Networks Killer Service; C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe [494080 2013-10-09] () [File not signed]
S4 BLMS; C:\Program Files (x86)\BASTION\BLMS.exe [33280 2015-04-29] () [File not signed]
R2 CDA; C:\Program Files (x86)\Jeppesen\CDA\CDA.exe [134088 2016-04-01] (Jeppesen Sanderson, Inc -> )
R2 Chemtable Startup Checking; C:\Program Files (x86)\Reg Organizer\StartupCheckingService.exe [ ]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11634696 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
R2 DrWebAVService; C:\Program Files\DrWeb\dwservice.exe [14703064 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebEngine; C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe [2226136 2019-10-03] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebFwSvc; C:\Program Files\DrWeb\frwl_svc.exe [5388856 2019-08-28] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebNetFilter; C:\Program Files\DrWeb\dwnetfilter.exe [7136488 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R2 FSLabs Service; C:\Program Files (x86)\FlightSimLabs\FSLSpotLights\FSLService\FSLService.exe [92304 2018-11-08] (Flight Sim Labs, Ltd. -> Flight Sim Labs Ltd.)
R2 ftpsvc; C:\WINDOWS\system32\inetsrv\ftpsvc.dll [439296 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2018-10-25] (FUTUREMARK INC -> Futuremark)
S4 hasplms; C:\WINDOWS\system32\hasplms.exe [4319776 2017-11-29] (SafeNet Canada, Inc. -> SafeNet, Inc.)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [135488 2018-02-02] (SurfRight B.V. -> SurfRight B.V.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 JWC; C:\Program Files (x86)\Jeppesen\JWC\JWC.exe [658016 2014-10-06] (Jeppesen Sanderson, Inc -> Jeppesen)
R2 LogWatch; H:\CA_LIC\LogWatNT.exe [75016 2008-05-20] (CA -> CA)
S2 MySQL; C:\Program Files (x86)\BASTION\mysql\bin\mysqld.exe [11074560 2016-01-15] () [File not signed]
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [15872 2016-11-25] ( ) [File not signed]
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [65536 2017-09-15] (The OpenVPN Project) [File not signed]
S3 OpenVPNServiceLegacy; C:\Program Files\OpenVPN\bin\openvpnserv.exe [65536 2017-09-15] (The OpenVPN Project) [File not signed]
R2 RzWizardService; C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe [376272 2016-03-23] (Razer USA Ltd. -> Razer Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5378320 2019-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SNMP; C:\WINDOWS\System32\snmp.exe [53248 2018-12-17] (Microsoft Windows -> Microsoft Corporation)
S3 SoundBoosterService; C:\Program Files (x86)\Letasoft Sound Booster\SoundBoosterService.exe [153272 2018-06-01] (Letasoft LLC -> Letasoft)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-24] (StarWind Software) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11665136 2019-01-16] (TeamViewer GmbH -> TeamViewer GmbH)
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15446960 2019-02-20] (VMware, Inc. -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3831576 2019-05-23] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)
S2 1C:Enterprise 8.3 Server Agent (x86-64); "D:\Program Files\1cv8\8.3.13.1690\bin\ragent.exe" -srvc -agent -regport 1541 -port 1540 -range 1560:1591 -d "C:\Program Files\1cv8\srvinfo" <==== ATTENTION
S2 CG6Service; no ImagePath
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 46e606d6959f0108; no ImagePath
S3 46e606d75d018d08; no ImagePath
S3 46e7aa83afb3d388; no ImagePath
S3 46e7aa850abbf508; no ImagePath
S3 46e7aa858013c708; no ImagePath
S3 46e7aba68c1ae788; no ImagePath
S3 46e7ba7f9f485208; no ImagePath
S3 46e7bd52beaedc08; no ImagePath
S3 46e7bd52fc933808; no ImagePath
S3 46e7ee3041330c88; no ImagePath
S3 46e7f3720b979388; no ImagePath
S3 46e7f3725915b688; no ImagePath
S3 46e7f372e8a50488; no ImagePath
S3 46e7f37367e55988; no ImagePath
S3 46e7f3747ea1a308; no ImagePath
R3 ALSysIO; C:\Users\homepc\AppData\Local\Temp\ALSysIO64.sys [47240 2019-10-07] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
S3 Arctosa; C:\WINDOWS\system32\drivers\Arctosa.sys [26624 2012-11-28] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 BfEdge7x64; C:\WINDOWS\System32\drivers\Edge7x64.sys [31336 2013-10-09] (Bigfoot Networks, Inc. -> Bigfoot Networks, Inc.)
R3 BFN7x64; C:\WINDOWS\System32\drivers\Xeno7x64.sys [157288 2013-10-09] (Bigfoot Networks, Inc. -> Bigfoot Networks, Inc.)
S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [303712 2018-12-13] (Bluestack Systems, Inc. -> Bluestack System Inc. )
S3 cpuz140; no ImagePath
S3 Denuvo Kuser Data Driver 1.0.0.7; no ImagePath
R3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [39048 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
S3 DIRECTIO37; C:\Program Files\BurnInTest\DirectIo64.sys [31376 2015-02-16] (PassMark Software Pty Ltd -> )
R0 DrWebLwf; C:\WINDOWS\System32\drivers\DrWebLwf.sys [505592 2019-10-07] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [271424 2019-09-08] (DT Soft Ltd -> DT Soft Ltd)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
R0 DwDevGuard; C:\WINDOWS\System32\drivers\dwdg.sys [241264 2019-03-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S0 DwELAM; C:\WINDOWS\System32\drivers\dwelam.sys [31984 2019-03-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Doctor Web, Ltd.)
R0 DwProt; C:\WINDOWS\System32\drivers\dwprot.sys [860240 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S0 FlashBoot; C:\WINDOWS\System32\drivers\FlashBoot.sys [17616 2014-04-03] (Challenger Backup Solutions, LLC -> Challenger Backup Solutions, LLC)
S3 gdrv; C:\WINDOWS\gdrv.sys [25640 2019-01-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [1304840 2017-11-29] (SafeNet, Inc. -> SafeNet, Inc.)
R3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2019-10-07] (SurfRight B.V. -> )
S3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [34064 2017-05-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R3 ip100Avista; C:\WINDOWS\System32\drivers\ipfnd51.sys [36864 2007-09-28] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-08-18] (Logitech Inc -> Logitech Inc.)
R0 mvs91xx; C:\WINDOWS\System32\drivers\mvs91xx.sys [342760 2016-04-11] (Marvell Semiconductor, Inc. -> Marvell Semiconductor, Inc.)
S3 Neo_VPN; C:\WINDOWS\System32\drivers\neo_vpn.sys [22784 2018-03-02] (Extra Solutions Ltd -> Trust.Zone VPN Project)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830a0263f2ee97ce\nvlddmkm.sys [22370696 2019-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OSFMount; C:\Program Files\OSFMount\x64\OSFMount.sys [1038416 2018-03-22] (PassMark Software Pty Ltd -> PassMark Software)
R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2017-04-07] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
S3 PORTMON; C:\SysinternalsSuite\PORTMSYS.SYS [28656 2018-12-11] (Systems Internals) [File not signed]
S3 REN2CAP_DRIVER; C:\WINDOWS\system32\drivers\ren2cap.sys [39568 2016-06-14] (Prosoft Engineering, Inc. -> )
S3 rspSanity; C:\WINDOWS\System32\DRIVERS\rspSanity64.sys [31328 2012-10-29] (Daniel Terhell -> Resplendence Software Projects Sp.)
S3 rspWhySoSlow; C:\WINDOWS\System32\DRIVERS\rspWhy64.sys [28928 2016-12-17] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R3 rzp1endpt; C:\WINDOWS\System32\drivers\rzp1endpt.sys [52424 2015-08-13] (Razer Inc. -> Razer Inc)
S3 rzvmouse; C:\WINDOWS\System32\drivers\rzvmouse.sys [42712 2015-08-13] (Razer Inc. -> Razer Inc)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R0 SpiderG3; C:\WINDOWS\System32\drivers\spiderg3.sys [390248 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203296 2019-09-21] (Disc Soft Ltd -> Duplex Secure Ltd)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [52288 2018-11-21] (VMware, Inc. -> VMware, Inc.)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [92040 2018-06-22] (VMware, Inc. -> VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [52576 2018-02-28] (VMware, Inc. -> VMware, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WinFsp; C:\WINDOWS\system32\disko\winfsp-x64.sys [144848 2018-01-25] (Navimatics Corporation -> Navimatics Corporation)
S3 LVPr2M64; \SystemRoot\system32\DRIVERS\LVPr2M64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 18:42 - 2019-10-07 18:43 - 000000000 ____D C:\FRST
2019-10-07 18:14 - 2019-10-07 18:14 - 000000218 _____ C:\Users\homepc\AppData\Local\recently-used.xbel
2019-10-07 16:39 - 2019-10-07 16:39 - 000000000 ____D C:\WINDOWS\Panther
2019-10-07 16:03 - 2019-10-07 16:03 - 000001558 _____ C:\Users\homepc\Desktop\SFCFix.txt
2019-10-07 16:00 - 2019-10-07 16:00 - 000000000 _____ C:\WINDOWS\system32\sfc
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Mozilla
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\LocalLow\Mozilla
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\OneDrive
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\Mozilla
2019-10-07 15:51 - 2019-10-07 15:51 - 000000000 ____D C:\Users\newuser\AppData\Local\Comms
2019-10-07 15:26 - 2019-10-07 15:26 - 000000000 ____D C:\Users\newuser\AppData\Local\ChemTable Software
2019-10-07 15:24 - 2019-10-07 15:26 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1010
2019-10-07 15:24 - 2019-10-07 15:26 - 000000000 ___RD C:\Users\newuser\OneDrive
2019-10-07 15:24 - 2019-10-07 15:24 - 000001450 _____ C:\Users\newuser\Desktop\Microsoft Edge.lnk
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\OpenVPN
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\Toshiba
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\PlaceholderTileLogoFolder
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\DFX
2019-10-07 15:23 - 2019-10-07 16:18 - 000011114 _____ C:\Users\newuser\Documents\FPSMonitor.txt
2019-10-07 15:23 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\Packages
2019-10-07 15:23 - 2019-10-07 15:26 - 000002369 _____ C:\Users\newuser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 15:23 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser
2019-10-07 15:23 - 2019-10-07 15:23 - 000000258 __RSH C:\Users\newuser\ntuser.pol
2019-10-07 15:23 - 2019-10-07 15:23 - 000000020 ___SH C:\Users\newuser\ntuser.ini
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ___RD C:\Users\newuser\3D Objects
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ___HD C:\Users\newuser\MicrosoftEdgeBackups
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Roaming\ProcessLasso
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Adobe
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\VirtualStore
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\Publishers
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\MicrosoftEdge
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\Google
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\ConnectedDevicesPlatform
2019-10-07 15:23 - 2017-06-25 00:42 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Macromedia
2019-10-07 15:07 - 2019-10-07 15:07 - 000000000 ____D C:\Users\test\AppData\Local\Toshiba
2019-10-07 14:19 - 2019-10-07 14:19 - 000001831 _____ C:\Users\Public\Desktop\Prepar3D v4.lnk
2019-10-07 14:19 - 2019-10-07 14:19 - 000001831 _____ C:\ProgramData\Desktop\Prepar3D v4.lnk
2019-10-07 14:19 - 2019-10-07 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin
2019-10-06 06:39 - 2019-10-06 06:39 - 000000983 _____ C:\Users\Public\Desktop\Load Manager.lnk
2019-10-06 06:39 - 2019-10-06 06:39 - 000000983 _____ C:\ProgramData\Desktop\Load Manager.lnk
2019-10-06 06:39 - 2019-10-06 06:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fly the Maddog X
2019-10-06 06:38 - 2019-10-06 06:40 - 000000000 ___DC C:\Users\homepc\Documents\Maddog X Files
2019-10-06 00:10 - 2019-10-06 00:10 - 000000649 _____ C:\Users\Public\Desktop\AirHauler 2.lnk
2019-10-06 00:10 - 2019-10-06 00:10 - 000000649 _____ C:\ProgramData\Desktop\AirHauler 2.lnk
2019-10-05 23:50 - 2019-10-05 23:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FS2Crew2012
2019-10-05 23:43 - 2019-10-05 23:43 - 000000000 ____D C:\Program Files\AI Lights Reborn Free Edition
2019-10-05 22:54 - 2019-10-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NMG OR Tambo Internationall (FSX)
2019-10-05 22:54 - 2019-10-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NMG OR Tambo International (FSX)
2019-10-05 22:36 - 2019-10-05 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSDG - Cape Town FSX
2019-10-05 17:55 - 2019-10-05 17:55 - 020815872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 019013632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 012259840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 003614720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002323696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002278240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002018304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-05 17:55 - 2019-10-05 17:55 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001289192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shellstyle.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shellstyle.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000901632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-10-05 17:55 - 2019-10-05 17:55 - 000482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000241976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSTheme.exe
2019-10-05 17:55 - 2019-10-05 17:55 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 026806272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 023454720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 022135584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 017485312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 012960256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 009680184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 007886848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 007698432 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006928384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006542464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006444544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006316792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005767168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005605560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005573016 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005299712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004737536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004588536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 004352472 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004057088 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003978240 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003820976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 003634688 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 003567104 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003428864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003385856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003198976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003000832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002924344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002839040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002779784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002699768 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002421760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002415928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002349056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002279304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002200376 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002192384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002118656 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002109960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-05 17:54 - 2019-10-05 17:54 - 002072176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001966392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001924976 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001918792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001864704 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001751424 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001720120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001701880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-05 17:54 - 2019-10-05 17:54 - 001701176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001522488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001484896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001399608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-05 17:54 - 2019-10-05 17:54 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001294272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001272120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001247344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001170432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001098056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001052984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 001048888 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001006392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000980992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000888120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000863544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000817464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000775216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000770096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000767800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000661096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000613176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000605368 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000598328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000588600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000506192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000505640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000452992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000434952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000384272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000375544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000341392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000290616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000278416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000256704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000193704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000156512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000155968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000138552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000135816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcl.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000094008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000086840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000079032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Synth3dVsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000065608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000057656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dmvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000052536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSTheme.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000044912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000038184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PasswordOnWakeSettingFlyout.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\shunimpl.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shunimpl.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000018744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-05 14:38 - 2019-10-05 14:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Flight1
2019-10-05 14:37 - 2019-10-05 14:37 - 000001862 _____ C:\Users\homepc\Desktop\AFX.lnk
2019-10-05 14:37 - 2019-10-05 14:37 - 000000000 ____D C:\Program Files (x86)\AFX
2019-10-04 15:01 - 2019-10-04 15:01 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2019-10-03 18:31 - 2019-10-03 18:31 - 000003518 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-10-03 18:31 - 2019-10-03 18:31 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-10-03 18:31 - 2019-10-03 18:31 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2019-09-30 23:12 - 2019-09-30 23:12 - 000034030 _____ C:\Users\homepc\Desktop\ChasePlane_Report_gtafivehater_gmail_com.txt
2019-09-30 15:53 - 2019-09-30 15:53 - 000000000 ____D C:\Users\homepc\AppData\Local\Viber
2019-09-29 17:26 - 2019-10-05 17:58 - 000519104 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-29 02:03 - 2019-09-29 02:03 - 000000000 ____D C:\Users\homepc\AppData\Local\gtk-3.0
2019-09-29 01:11 - 2019-10-07 18:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\gsmartcontrol
2019-09-28 23:14 - 2019-10-07 16:03 - 000000000 ____D C:\SFCFix
2019-09-28 23:13 - 2019-10-07 16:03 - 000000000 ____D C:\Users\homepc\AppData\Local\niemiro
2019-09-28 22:46 - 2019-09-28 22:46 - 000000000 ___HD C:\$Windows.~WS
2019-09-28 22:38 - 2019-09-28 22:39 - 000000000 ____D C:\Program Files\NTLite
2019-09-28 22:38 - 2019-09-28 22:38 - 000000825 _____ C:\Users\homepc\Desktop\NTLite.lnk
2019-09-28 22:38 - 2019-09-28 22:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTLite
2019-09-28 19:19 - 2019-09-28 23:06 - 000000000 ____D C:\ESD
2019-09-28 13:43 - 2019-09-28 13:43 - 000001098 _____ C:\Users\homepc\Desktop\Экипаж 4.0 FSX (P3D).lnk
2019-09-28 13:43 - 2019-09-28 13:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RD-soft
2019-09-28 13:43 - 2019-09-28 13:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RD-soft
2019-09-28 13:38 - 2019-09-28 13:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\THROTTLEINDICATOR
2019-09-28 13:27 - 2019-09-28 13:27 - 000000000 ____D C:\Users\homepc\AppData\Roaming\fscabincrew
2019-09-28 13:25 - 2019-09-28 13:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\FS Cabin Crew
2019-09-28 13:25 - 2019-09-28 13:25 - 000000000 ____D C:\Program Files (x86)\drubware.net
2019-09-27 21:21 - 2019-09-27 21:21 - 000000152 _____ C:\Users\Public\Desktop\FSLA320-X Refuel Panel.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000152 _____ C:\ProgramData\Desktop\FSLA320-X Refuel Panel.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000141 _____ C:\Users\Public\Desktop\FSLA320-X MCDU.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000141 _____ C:\ProgramData\Desktop\FSLA320-X MCDU.url
2019-09-27 03:53 - 2019-09-27 03:53 - 000087794 _____ C:\Program Files (x86)\unEZCA2.exe
2019-09-27 03:53 - 2019-09-27 03:53 - 000001039 _____ C:\Users\Public\Desktop\EZCA 2 Config Tool.lnk
2019-09-27 03:53 - 2019-09-27 03:53 - 000001039 _____ C:\ProgramData\Desktop\EZCA 2 Config Tool.lnk
2019-09-27 03:53 - 2019-09-27 03:53 - 000000000 ____D C:\Users\homepc\AppData\Roaming\EZCA
2019-09-27 03:53 - 2019-09-27 03:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA2
2019-09-27 01:49 - 2019-09-27 03:53 - 000002048 _____ C:\WINDOWS\ezcamera2.lic
2019-09-27 00:18 - 2019-09-27 00:20 - 000000000 ____D C:\OpusFSX
2019-09-27 00:17 - 2019-09-27 00:18 - 000000000 ____D C:\Opus Software
2019-09-26 04:23 - 2019-09-26 04:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2019-09-26 04:23 - 2019-09-26 04:23 - 000000000 ____D C:\Program Files (x86)\Garmin
2019-09-25 02:53 - 2019-09-25 02:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Majestic Software
2019-09-25 01:51 - 2019-09-28 18:57 - 000000000 ____D C:\1909_f1_rxp
2019-09-25 01:22 - 2019-09-25 01:22 - 000000000 ____D C:\ProgramData\Garmin
2019-09-25 01:11 - 2019-09-28 20:37 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Download Master
2019-09-25 01:11 - 2019-09-25 01:11 - 000001170 _____ C:\Users\Public\Desktop\Download Master.lnk
2019-09-25 01:11 - 2019-09-25 01:11 - 000001170 _____ C:\ProgramData\Desktop\Download Master.lnk
2019-09-25 01:11 - 2019-09-25 01:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Master
2019-09-25 01:11 - 2019-09-25 01:11 - 000000000 ____D C:\Program Files (x86)\Download Master
2019-09-24 18:44 - 2019-09-30 23:12 - 000000000 ____D C:\Program Files (x86)\ChasePlane (XEdition)
2019-09-24 18:44 - 2019-09-24 21:36 - 000000000 ___DC C:\Users\homepc\Documents\ChasePlane Presets
2019-09-24 18:44 - 2019-09-24 18:44 - 000001177 _____ C:\Users\Public\Desktop\ChasePlane (XEdition).lnk
2019-09-24 18:44 - 2019-09-24 18:44 - 000001177 _____ C:\ProgramData\Desktop\ChasePlane (XEdition).lnk
2019-09-24 18:44 - 2019-09-24 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChasePlane (XEdition)
2019-09-24 17:28 - 2019-09-26 17:12 - 000000895 _____ C:\Users\homepc\Desktop\F1UpdateTool.lnk
2019-09-24 17:28 - 2019-09-24 17:28 - 000000935 _____ C:\Users\homepc\Desktop\f1update_tool_readme.lnk
2019-09-22 02:29 - 2019-09-22 02:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hoppie
2019-09-22 02:29 - 2019-09-22 02:31 - 000000000 ____D C:\Program Files (x86)\Hoppie
2019-09-22 00:38 - 2019-09-23 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simware - Valencia X - FSX
2019-09-21 22:49 - 2019-09-21 23:21 - 000001116 _____ C:\Users\homepc\Desktop\767-300 FSX Configuration Manager.lnk
2019-09-21 21:08 - 2019-09-21 21:18 - 000203296 _____ (Duplex Secure Ltd) C:\WINDOWS\system32\Drivers\sptd2.sys
2019-09-21 14:13 - 2019-09-21 14:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ARMI Project - Muscat OOMS FSX
2019-09-21 13:32 - 2019-09-29 21:13 - 000000984 _____ C:\Users\Public\Desktop\UGCX Configuration Manager.lnk
2019-09-21 13:32 - 2019-09-29 21:13 - 000000984 _____ C:\ProgramData\Desktop\UGCX Configuration Manager.lnk
2019-09-21 13:32 - 2019-09-21 13:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Ground Crew X
2019-09-21 13:31 - 2019-09-29 21:13 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Ultimate Ground Crew X
2019-09-17 00:14 - 2019-09-17 00:27 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3res
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3weatherfiles
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3Charts
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3aircraftfiles
2019-09-16 23:49 - 2019-09-16 23:49 - 000000000 ____D C:\Users\homepc\zygrib
2019-09-16 23:34 - 2019-09-27 00:34 - 000000000 ____D C:\OpusFSI_v5
2019-09-16 21:39 - 2019-09-16 21:39 - 000001181 _____ C:\Users\homepc\Desktop\Active Sky Next for FSX SP5.lnk
2019-09-16 21:32 - 2019-09-16 21:32 - 000002021 _____ C:\Users\homepc\Desktop\FS Global Real Weather.lnk
2019-09-16 21:32 - 2019-09-16 21:32 - 000000000 ____D C:\Program Files (x86)\FSGRW
2019-09-16 19:53 - 2019-09-16 19:53 - 000001020 _____ C:\Users\Public\Desktop\FSDT GSX Control Panel.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000001020 _____ C:\ProgramData\Desktop\FSDT GSX Control Panel.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000796 _____ C:\Users\Public\Desktop\FSDT Live Update.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000796 _____ C:\ProgramData\Desktop\FSDT Live Update.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSDreamTeam
2019-09-15 14:00 - 2019-10-07 15:51 - 000000000 ____D C:\ProgramData\Bigfoot Networks
2019-09-15 13:41 - 2019-09-15 13:42 - 000082268 _____ C:\ProgramData\dxdiag.txt
2019-09-14 23:40 - 2019-09-15 01:43 - 000000000 ____D C:\Program Files\MFSClientV5
2019-09-14 12:27 - 2019-09-14 12:27 - 000000000 ____D C:\Users\homepc\AppData\Local\NVIDIA
2019-09-14 11:15 - 2019-09-14 11:15 - 000000000 ____D C:\Users\homepc\AppData\Roaming\NVIDIA
2019-09-14 11:13 - 2019-10-07 18:38 - 000000000 ____D C:\ProgramData\NVIDIA
2019-09-14 11:13 - 2019-09-14 13:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-14 11:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-14 11:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-05 22:49 - 005468144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 002634608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000654320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000450600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000125240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-09-14 11:13 - 2019-09-05 04:04 - 008709382 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-09-14 11:13 - 2019-08-01 16:07 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-09-14 11:12 - 2019-09-06 21:29 - 001012432 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 001012432 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000876240 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000876240 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000447368 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000351944 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000301264 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000301264 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000273104 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000273104 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-09-14 11:12 - 2019-09-06 21:28 - 011562376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-09-14 11:12 - 2019-09-06 21:28 - 009937104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 002051008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001550080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001477512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001247432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001140616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000959424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000676096 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000658880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000632768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000544648 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000524168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 040444856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 035334536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 017300360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 014921096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 005358472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 004696968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 001726400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443630.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 001491336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443630.dll
2019-09-14 11:12 - 2019-09-06 18:24 - 005002192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-09-14 11:12 - 2019-09-06 18:24 - 004263840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-09-14 11:12 - 2019-09-06 00:19 - 001683032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-09-14 11:12 - 2019-09-06 00:19 - 000228792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-09-14 11:12 - 2019-09-06 00:19 - 000054700 _____ C:\WINDOWS\system32\nvinfo.pb
2019-09-14 11:12 - 2019-09-06 00:19 - 000047272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-09-14 11:07 - 2019-09-14 11:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-09-14 11:06 - 2019-09-14 11:06 - 000000000 ____D C:\ShadersHLSL
2019-09-13 21:28 - 2019-09-13 21:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BSS FSL A320 IAE V2.1
2019-09-13 20:53 - 2019-09-13 20:53 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PILOT'S Software
2019-09-13 19:06 - 2019-09-27 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlightSimLabs, Ltd
2019-09-13 19:05 - 2019-09-13 19:30 - 000000000 ____D C:\Program Files (x86)\FlightSimLabs
2019-09-13 14:08 - 2019-09-13 14:08 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-09-13 14:08 - 2019-09-13 14:08 - 000000000 ____D C:\Program Files\MSBuild
2019-09-13 13:25 - 2019-09-13 13:25 - 017761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 013942784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 008903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 007921664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 007871488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 006065664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 004874752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 004850688 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003702784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 003631616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003096576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002099752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002086400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001782272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001655976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001604760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001573240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001465472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001419776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001272560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001176064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 001075832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000883200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000798736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-09-13 13:25 - 2019-09-13 13:25 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000660544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000652832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000622392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000540240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000450872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000409256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000349144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000195224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBroker.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000144080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000140088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000106048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000098080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 005569024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003490816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003333984 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002879488 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002593032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002233688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002148864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001904128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001743168 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001721360 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001563880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001191512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 001183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001128448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001022824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000865576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000851272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000811024 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000807760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000806568 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-09-13 13:24 - 2019-09-13 13:24 - 000806568 _____ C:\WINDOWS\system32\locale.nls
2019-09-13 13:24 - 2019-09-13 13:24 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000793824 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000791352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000751928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000740904 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000736056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000652600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000652304 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000603784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000591160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000554000 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000535056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000532192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000520208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000515152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000464912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000402368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000351432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000347576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000330672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000330592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000294728 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpprov.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000177176 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000168248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000164504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000140600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000120344 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiCx.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000090632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000087056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiAcpiClient.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-09-13 02:09 - 2019-10-07 00:09 - 000000000 ____D C:\TCPU71
2019-09-13 02:09 - 2019-09-13 02:09 - 000001635 _____ C:\Users\Public\Desktop\Total Commander HomeUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000001635 _____ C:\ProgramData\Desktop\Total Commander HomeUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000000777 _____ C:\Users\Public\Desktop\Total Commander PowerUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000000777 _____ C:\ProgramData\Desktop\Total Commander PowerUser v71.lnk
2019-09-13 00:00 - 2019-09-13 00:00 - 000002150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PMDG Operations Center.lnk
2019-09-12 18:53 - 2019-09-12 19:00 - 000000000 ____D C:\BLOCKCHECKDPI
2019-09-11 01:12 - 2019-09-11 01:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ParkControl
2019-09-11 00:42 - 2019-09-11 00:43 - 000000000 ___DC C:\Users\homepc\Documents\Flight Simulator X - Steam Edition Files
2019-09-10 23:57 - 2019-09-10 23:57 - 000000208 _____ C:\Captain.ini
2019-09-10 19:27 - 2019-09-28 13:43 - 000000000 ____D C:\Program Files (x86)\RD-soft
2019-09-10 19:27 - 2019-09-10 19:34 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RDSetInstaller
2019-09-10 19:27 - 2019-09-10 19:27 - 000002781 _____ C:\Users\Public\Desktop\SetInstaller.lnk
2019-09-10 19:27 - 2019-09-10 19:27 - 000002781 _____ C:\ProgramData\Desktop\SetInstaller.lnk
2019-09-10 19:27 - 2019-09-10 19:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RD-soft
2019-09-10 19:19 - 2019-09-10 19:19 - 000000000 ____D C:\Users\homepc\AppData\Local\kACARS_-LR
2019-09-10 19:18 - 2019-09-10 19:18 - 000003113 _____ C:\Users\homepc\Desktop\kACARS - Landing Rate.lnk
2019-09-10 19:18 - 2019-09-10 19:18 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\kACARS_Free
2019-09-10 19:18 - 2019-09-10 19:18 - 000000000 ____D C:\Program Files (x86)\FS-Products
2019-09-08 02:22 - 2019-09-08 02:22 - 000000975 _____ C:\Users\Public\Desktop\FSX B747 Configuration Tool.lnk
2019-09-08 02:22 - 2019-09-08 02:22 - 000000975 _____ C:\ProgramData\Desktop\FSX B747 Configuration Tool.lnk
2019-09-08 02:22 - 2019-09-08 02:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IFly Jets - The 747-400 V2 for FSX
2019-09-08 00:49 - 2019-09-11 00:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2019-09-08 00:19 - 2019-09-08 00:19 - 000271424 _____ (DT Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2019-09-08 00:14 - 2019-09-08 00:14 - 000178800 _____ (Sony DADC Austria AG.) C:\WINDOWS\SysWOW64\CmdLineExt_x64.dll
2019-09-07 14:22 - 2019-09-07 14:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft - Airbus A318-A319 - FSX
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 18:42 - 2017-06-24 23:54 - 000000000 ____D C:\Users\homepc\Desktop\Tor Browser
2019-10-07 18:39 - 2017-06-24 11:27 - 000000000 ____D C:\Users\homepc\AppData\LocalLow\Mozilla
2019-10-07 18:38 - 2018-12-26 16:25 - 000000000 ____D C:\ProgramData\VMware
2019-10-07 18:38 - 2018-12-16 22:38 - 000003180 _____ C:\WINDOWS\system32\Tasks\FRAPS
2019-10-07 18:38 - 2018-12-16 22:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-07 18:38 - 2018-12-16 22:28 - 000000000 ____D C:\Users\homepc
2019-10-07 18:38 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-07 18:38 - 2018-09-15 10:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-07 18:38 - 2018-08-13 17:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-10-07 18:38 - 2018-05-10 21:23 - 000012792 ____C C:\Users\homepc\Documents\FPSMonitor.txt
2019-10-07 18:38 - 2018-04-27 21:38 - 000000000 ____D C:\Fraps
2019-10-07 18:38 - 2018-04-09 23:54 - 000000000 ____D C:\ProgramData\Jeppesen
2019-10-07 18:38 - 2018-04-05 15:40 - 000000000 ___DC C:\Users\homepc\AppData\Local\Apps\2.0
2019-10-07 18:38 - 2017-08-04 23:22 - 000000000 ____D C:\Program Files\Core Temp
2019-10-07 18:38 - 2017-06-24 12:57 - 000000000 ____D C:\ProgramData\Doctor Web
2019-10-07 18:36 - 2018-12-16 22:38 - 000002430 _____ C:\WINDOWS\system32\Tasks\MSIAfterburner
2019-10-07 18:36 - 2018-09-15 09:09 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-10-07 18:30 - 2019-02-03 16:47 - 000000000 ____D C:\WX Advantage Radar
2019-10-07 18:22 - 2017-06-25 12:42 - 000000000 ___DC C:\Users\homepc\AppData\Local\CrashDumps
2019-10-07 18:07 - 2018-12-16 22:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-07 17:44 - 2018-10-18 13:18 - 000505592 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\drweblwf.sys
2019-10-07 17:10 - 2018-12-21 21:57 - 000000000 ___DC C:\Users\homepc\Documents\ViberDownloads
2019-10-07 16:56 - 2017-12-10 18:46 - 000000000 ___DC C:\Users\homepc\AppData\Local\Packages
2019-10-07 16:43 - 2018-12-16 22:37 - 000977104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-07 16:43 - 2018-09-15 10:31 - 000000000 ____D C:\WINDOWS\INF
2019-10-07 16:39 - 2017-09-22 17:08 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2019-10-07 16:39 - 2017-06-24 12:05 - 000000000 ____D C:\Users\homepc\AppData\Roaming\ViberPC
2019-10-07 16:19 - 2018-12-16 22:38 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1001
2019-10-07 16:19 - 2018-12-16 22:28 - 000002366 _____ C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 16:19 - 2017-06-24 10:46 - 000000000 ___RD C:\Users\homepc\OneDrive
2019-10-07 16:02 - 2018-09-15 10:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 15:41 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-10-07 15:26 - 2018-12-16 22:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\DelayedItemsByChemtableSoftware
2019-10-07 15:26 - 2018-07-18 16:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Telegram Desktop
2019-10-07 15:25 - 2017-06-24 10:45 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-07 15:23 - 2018-11-25 16:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Clipdiary
2019-10-07 15:08 - 2018-12-16 22:38 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1002
2019-10-07 15:08 - 2018-12-16 22:28 - 000002360 _____ C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 15:08 - 2018-09-15 10:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-07 15:08 - 2017-12-10 18:46 - 000000000 ____D C:\Users\test\AppData\Local\Packages
2019-10-07 15:08 - 2017-09-21 18:36 - 000000000 ___RD C:\Users\test\OneDrive
2019-10-07 15:07 - 2017-12-28 23:39 - 000000000 ___RD C:\Users\test\3D Objects
2019-10-07 14:52 - 2017-06-24 13:17 - 000000000 ____D C:\Users\homepc\AppData\Roaming\WhatsApp
2019-10-07 14:18 - 2017-06-24 11:15 - 000000000 ____D C:\ProgramData\Package Cache
2019-10-07 14:11 - 2017-07-25 00:28 - 000000000 ___DC C:\Users\homepc\Documents\AivlaSoft
2019-10-07 13:25 - 2019-05-31 19:10 - 000000000 ____D C:\Users\homepc\AppData\Local\BitTorrentHelper
2019-10-07 02:07 - 2019-08-29 01:11 - 000000000 ____D C:\Users\homepc\AppData\Roaming\vlc
2019-10-06 19:02 - 2019-03-13 13:04 - 000000000 ____D C:\Users\homepc\AppData\Roaming\SimBrief Downloader
2019-10-06 17:35 - 2019-01-28 21:30 - 000000000 ___DC C:\Users\homepc\Documents\Flight Simulator X Files
2019-10-06 17:01 - 2019-01-29 17:38 - 000001155 _____ C:\Users\homepc\Desktop\Active Sky 2016 for FSX.lnk
2019-10-06 15:52 - 2017-09-12 12:56 - 000000000 ____D C:\SoyzClient
2019-10-06 15:34 - 2017-12-29 00:30 - 000000000 ____D C:\ProgramData\Virtuali
2019-10-06 15:28 - 2018-01-28 03:06 - 000000000 ____D C:\Users\Public\Documents\DX10SceneryFixer
2019-10-06 15:28 - 2018-01-28 03:06 - 000000000 ____D C:\ProgramData\Documents\DX10SceneryFixer
2019-10-06 15:26 - 2017-07-24 00:00 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Virtuali
2019-10-06 06:45 - 2017-07-28 03:00 - 000000808 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall .lnk
2019-10-06 06:18 - 2018-07-13 18:04 - 000000000 ____D C:\ProgramData\eSellerate
2019-10-06 05:12 - 2017-12-29 00:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flight One Software
2019-10-06 04:06 - 2019-05-13 01:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drzewiecki Design
2019-10-06 00:37 - 2017-09-16 19:24 - 000000000 ___DC C:\Users\homepc\Documents\vPilot Files
2019-10-06 00:25 - 2018-08-11 14:49 - 000000000 ___DC C:\Users\homepc\AppData\Local\V1_Software
2019-10-06 00:10 - 2019-06-28 19:37 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-10-06 00:10 - 2018-07-27 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Flight
2019-10-06 00:10 - 2017-06-24 10:55 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-10-05 23:50 - 2018-07-13 23:12 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RAASPRO
2019-10-05 23:43 - 2019-05-12 21:02 - 000000000 ___DC C:\Users\homepc\Documents\Prepar3D v4 Add-ons
2019-10-05 17:58 - 2019-03-28 00:56 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-10-05 17:58 - 2017-12-10 19:59 - 000000000 ___RD C:\Users\homepc\3D Objects
2019-10-05 17:58 - 2017-06-24 11:27 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-10-05 17:56 - 2018-09-15 12:11 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-10-05 17:56 - 2018-09-15 12:11 - 000018002 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-10-05 17:56 - 2018-09-15 12:11 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-05 17:56 - 2018-09-15 09:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-05 17:54 - 2017-06-24 11:38 - 000408644 __RSH C:\bootmgr
2019-10-05 14:37 - 2017-07-26 03:41 - 000737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe
2019-10-05 13:31 - 2017-08-06 18:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimMarket
2019-10-05 12:01 - 2019-02-25 20:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Discord
2019-10-05 11:57 - 2017-06-24 11:27 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-10-03 16:00 - 2017-06-24 12:59 - 000000000 ____D C:\Program Files\DrWeb
2019-10-03 12:34 - 2019-03-26 16:25 - 000000000 ____D C:\Users\homepc\AppData\Local\WhatsApp
2019-10-02 21:52 - 2018-12-16 22:38 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-02 21:52 - 2018-12-16 22:38 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-02 21:52 - 2017-11-17 13:13 - 000000000 ____D C:\Program Files (x86)\Google
2019-09-30 20:21 - 2017-09-21 18:40 - 000000000 ____D C:\Temp
2019-09-30 19:49 - 2019-04-10 18:17 - 000001048 _____ C:\Users\Public\Desktop\AIDA64.lnk
2019-09-30 19:49 - 2019-04-10 18:17 - 000001048 _____ C:\ProgramData\Desktop\AIDA64.lnk
2019-09-30 19:49 - 2019-04-10 18:17 - 000000000 ____D C:\Program Files (x86)\AIDA64
2019-09-30 14:10 - 2018-10-18 13:19 - 000860240 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\dwprot.sys
2019-09-30 14:10 - 2018-10-18 13:18 - 000390248 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\spiderg3.sys
2019-09-29 21:14 - 2018-12-25 18:07 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2019-09-29 17:25 - 2018-02-07 01:32 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Wise Disk Cleaner
2019-09-29 17:24 - 2018-12-16 22:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\WiseCleaner
2019-09-29 17:24 - 2018-02-07 01:32 - 000001277 _____ C:\Users\Public\Desktop\Wise Disk Cleaner.lnk
2019-09-29 17:24 - 2018-02-07 01:32 - 000001277 _____ C:\ProgramData\Desktop\Wise Disk Cleaner.lnk
2019-09-29 17:24 - 2018-02-07 01:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner
2019-09-28 20:38 - 2018-03-28 13:04 - 000000000 ____D C:\Boson
2019-09-28 13:25 - 2017-07-24 01:47 - 000000000 ___DC C:\Users\homepc\AppData\Local\Downloaded Installations
2019-09-27 03:54 - 2017-07-23 16:57 - 000000000 ____D C:\Program Files (x86)\EZCA2
2019-09-27 03:53 - 2017-07-23 16:56 - 000000000 ____D C:\EZdok Software
2019-09-27 03:38 - 2019-02-26 02:50 - 000000000 ____D C:\Program Files\EZCA3
2019-09-27 03:36 - 2019-02-25 22:23 - 000000000 ____D C:\Program Files (x86)\Flight1 Purchase Agent
2019-09-27 02:56 - 2019-01-22 23:20 - 000000000 __SHD C:\Users\Public\DRM
2019-09-27 00:17 - 2017-12-28 01:37 - 000002048 _____ C:\WINDOWS\OpusFSX.lic
2019-09-27 00:13 - 2018-01-28 13:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Navdata
2019-09-27 00:13 - 2018-01-28 13:29 - 000002048 _____ C:\WINDOWS\CX750X.lic
2019-09-27 00:12 - 2019-02-25 22:23 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Flight1Purchase
2019-09-27 00:08 - 2019-02-26 02:50 - 000002048 _____ C:\WINDOWS\ezcapro3.lic
2019-09-27 00:02 - 2019-02-25 22:23 - 000083295 _____ C:\Program Files (x86)\F1Uninstall.exe
2019-09-27 00:02 - 2019-02-25 22:23 - 000001194 _____ C:\Users\Public\Desktop\Flight1 Purchase Agent.lnk
2019-09-27 00:02 - 2019-02-25 22:23 - 000001194 _____ C:\ProgramData\Desktop\Flight1 Purchase Agent.lnk
2019-09-26 19:39 - 2018-12-16 22:28 - 000000000 ____D C:\Users\DefaultAppPool
2019-09-26 17:12 - 2017-08-23 12:55 - 000000000 ____D C:\ProgramData\Flight One Software
2019-09-26 04:18 - 2019-02-02 02:16 - 000000109 _____ C:\WINDOWS\GARMINWT.INI
2019-09-26 02:06 - 2018-04-23 00:26 - 000000221 ____C C:\Users\homepc\Documents\ax_files.xml
2019-09-25 20:45 - 2019-05-05 17:20 - 000000000 ____D C:\Program Files (x86)\FSrealWX 3.0
2019-09-25 12:15 - 2017-11-17 13:14 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-25 12:15 - 2017-11-17 13:14 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-09-25 12:15 - 2017-11-17 13:14 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2019-09-25 02:46 - 2017-12-30 20:32 - 000000000 ____D C:\Program Files (x86)\FSBuild
2019-09-25 01:29 - 2019-09-06 19:11 - 000000000 ____D C:\Program Files\Process Lasso
2019-09-25 01:29 - 2019-03-14 16:56 - 000000908 _____ C:\Users\Public\Desktop\Process Lasso Pro.lnk
2019-09-25 01:29 - 2019-03-14 16:56 - 000000908 _____ C:\ProgramData\Desktop\Process Lasso Pro.lnk
2019-09-25 01:29 - 2019-03-14 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso Pro
2019-09-25 01:29 - 2018-12-16 22:38 - 000003106 _____ C:\WINDOWS\system32\Tasks\Process Lasso Management Console (GUI)
2019-09-25 01:29 - 2018-12-16 22:38 - 000003096 _____ C:\WINDOWS\system32\Tasks\Process Lasso Core Engine Only
2019-09-25 01:22 - 2019-02-04 22:22 - 000001970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin Aviation Trainers.lnk
2019-09-24 17:28 - 2019-02-01 14:39 - 000000890 _____ C:\Users\homepc\Desktop\F1GTNConfig.lnk
2019-09-23 23:23 - 2017-06-24 13:17 - 000000000 ___DC C:\Users\homepc\AppData\Local\SquirrelTemp
2019-09-23 22:32 - 2018-05-18 11:38 - 000000000 ___DC C:\Users\homepc\AppData\Local\D3DSCache
2019-09-23 15:09 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-09-23 15:09 - 2017-12-28 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSrealWX
2019-09-23 15:07 - 2018-12-17 14:49 - 000000000 ____D C:\WINDOWS\Minidump
2019-09-23 15:07 - 2018-10-10 18:37 - 000000000 ___RD C:\Users\homepc\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2019-09-22 02:52 - 2019-04-19 00:34 - 000000000 ____D C:\Program Files\WhoCrashed
2019-09-22 00:53 - 2019-05-12 21:02 - 000000000 ___DC C:\Users\homepc\Documents\Prepar3D v4 Files
2019-09-21 22:49 - 2018-04-28 14:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flight One Software
2019-09-21 21:37 - 2018-04-30 15:02 - 000000000 ____D C:\Program Files (x86)\PMDG Operations Center
2019-09-21 16:49 - 2017-07-27 15:29 - 000000000 ____D C:\ProgramData\firebird
2019-09-21 15:11 - 2017-07-27 15:27 - 000000000 ____D C:\PRO-ATC-X
2019-09-19 13:15 - 2017-09-14 15:00 - 000000000 ____D C:\DrWebkeys
2019-09-19 13:13 - 2017-07-23 21:34 - 000000000 ____D C:\aerosoft
2019-09-17 11:44 - 2019-02-26 02:03 - 000000035 _____ C:\general.INI
2019-09-17 01:02 - 2017-08-31 16:42 - 000041800 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2019-09-17 00:14 - 2019-05-05 16:34 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3
2019-09-17 00:13 - 2017-12-28 20:14 - 000000000 ____D C:\Program Files (x86)\FSrealWX_Pro
2019-09-17 00:00 - 2017-12-28 20:14 - 000001124 _____ C:\Users\Public\Desktop\FSrealWX Pro.lnk
2019-09-17 00:00 - 2017-12-28 20:14 - 000001124 _____ C:\ProgramData\Desktop\FSrealWX Pro.lnk
2019-09-16 21:39 - 2019-01-29 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
2019-09-16 21:39 - 2019-01-29 17:37 - 000000000 ____D C:\Program Files (x86)\HiFi
2019-09-16 21:39 - 2018-01-28 03:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\HiFi
2019-09-16 20:41 - 2018-05-27 13:10 - 000001095 _____ C:\Users\homepc\Desktop\MFSClient.lnk
2019-09-16 19:50 - 2018-02-03 17:52 - 000000000 ____D C:\Program Files (x86)\Addon Manager
2019-09-16 19:30 - 2018-02-03 18:04 - 000000179 _____ C:\Users\homepc\FSDreamTeam_GSX.reg
2019-09-16 15:57 - 2018-02-06 19:31 - 000000000 ___HD C:\3gzV5dAb7FiiwFEW
2019-09-16 11:29 - 2018-01-11 19:31 - 000000000 ___DC C:\Users\homepc\AppData\Local\MEGAsync
2019-09-15 14:00 - 2017-07-02 00:23 - 000002311 _____ C:\Users\Public\Desktop\Bigfoot Networks Killer Network Manager.lnk
2019-09-15 14:00 - 2017-07-02 00:23 - 000002311 _____ C:\ProgramData\Desktop\Bigfoot Networks Killer Network Manager.lnk
2019-09-15 01:27 - 2018-05-12 00:31 - 000000000 ____D C:\AFSD
2019-09-15 00:40 - 2017-12-30 15:36 - 000000000 ___DC C:\Users\homepc\AppData\Local\QSimPlanner
2019-09-15 00:38 - 2017-12-30 15:36 - 000001149 _____ C:\Users\homepc\Desktop\QSimPlanner.lnk
2019-09-15 00:38 - 2017-12-30 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QSimPlanner
2019-09-14 17:33 - 2019-03-13 13:04 - 000002514 _____ C:\Users\homepc\Desktop\SimBrief Downloader.lnk
2019-09-14 11:13 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\Help
2019-09-14 11:08 - 2017-12-27 16:14 - 000000000 ____D C:\[Guru3D.com]-DDU
2019-09-14 11:03 - 2018-12-16 22:38 - 000004570 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2019-09-14 11:03 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-09-14 11:03 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-09-14 11:03 - 2017-06-25 00:42 - 000000000 ___DC C:\Users\homepc\AppData\Local\Adobe
2019-09-14 11:00 - 2019-04-07 00:43 - 000000000 ____D C:\ProgramData\DisplayDriverUninstaller
2019-09-14 11:00 - 2018-07-22 12:22 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-09-14 10:48 - 2018-12-16 22:38 - 000004582 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-09-13 20:15 - 2018-03-04 13:56 - 000000000 ____D C:\ProgramData\FSTramp
2019-09-13 20:07 - 2018-12-08 12:25 - 000000000 ____D C:\Users\Public\Documents\PFPX Data
2019-09-13 20:07 - 2018-12-08 12:25 - 000000000 ____D C:\ProgramData\Documents\PFPX Data
2019-09-13 18:40 - 2019-02-28 01:02 - 000000000 ____D C:\Users\homepc\AppData\Local\ElevatedDiagnostics
2019-09-13 18:35 - 2019-02-03 04:55 - 000001159 _____ C:\Users\homepc\Desktop\Reg Organizer.lnk
2019-09-13 14:20 - 2017-06-24 10:59 - 000000000 ____D C:\Program Files (x86)\Razer
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-09-13 13:27 - 2018-09-15 10:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-13 13:26 - 2018-09-15 10:36 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-09-13 13:26 - 2018-09-15 10:36 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-09-13 11:47 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-09-13 02:09 - 2017-06-24 11:42 - 000000000 ____D C:\Users\Public\Desktop\TC PU Programs
2019-09-13 02:09 - 2017-06-24 11:42 - 000000000 ____D C:\ProgramData\Desktop\TC PU Programs
2019-09-12 23:43 - 2018-02-24 00:15 - 000000000 ____D C:\Users\homepc\AppData\Roaming\uTorrent
2019-09-12 20:36 - 2017-09-01 19:04 - 000001857 _____ C:\Users\homepc\Desktop\FSFX_Tools.lnk
2019-09-11 18:57 - 2017-09-10 16:37 - 000000000 ____D C:\Users\homepc\AppData\Roaming\TS3Client
2019-09-11 01:12 - 2018-04-27 23:56 - 000000000 ____D C:\Program Files\ParkControl
2019-09-10 09:54 - 2018-07-26 13:21 - 000001323 _____ C:\Users\homepc\Desktop\AivlaSoft EFB2 Server.lnk
2019-09-10 09:49 - 2018-07-26 13:21 - 000001338 _____ C:\Users\homepc\Desktop\AivlaSoft EFB2 DbBuilder.lnk
2019-09-08 21:59 - 2019-06-29 00:06 - 000000000 ____D C:\Temp torrents
2019-09-08 19:32 - 2018-08-31 18:23 - 000000000 ___DC C:\Users\homepc\AppData\Local\Ubisoft Game Launcher
2019-09-08 16:41 - 2017-10-15 15:29 - 000002004 _____ C:\Users\homepc\Desktop\FS Real Time.lnk
2019-09-07 22:23 - 2017-07-26 03:41 - 000000000 ____D C:\Program Files (x86)\FS Real Time
2019-09-07 12:48 - 2018-03-04 13:59 - 000001097 _____ C:\Users\Public\Desktop\FSTramp Scenery Assembler.lnk
2019-09-07 12:48 - 2018-03-04 13:59 - 000001097 _____ C:\ProgramData\Desktop\FSTramp Scenery Assembler.lnk
2019-09-07 12:48 - 2018-03-04 13:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSTramp
2019-09-07 12:48 - 2018-03-04 13:56 - 000000000 ____D C:\Program Files (x86)\FSTramp
==================== Files in the root of some directories ================
2018-02-03 18:04 - 2019-09-16 19:30 - 000000179 _____ () C:\Users\homepc\FSDreamTeam_GSX.reg
2017-12-30 20:37 - 2019-09-01 22:20 - 000002065 _____ () C:\Program Files (x86)\3187c76b-7ef1-4f48-bb5e-e5da055a81d9.index
2019-02-25 22:23 - 2019-09-27 00:02 - 000083295 _____ () C:\Program Files (x86)\F1Uninstall.exe
2011-12-03 16:23 - 2008-02-21 21:45 - 000070416 _____ () C:\Program Files (x86)\post-2-12035868936904.jpg
2019-09-27 03:53 - 2019-09-27 03:53 - 000087794 _____ () C:\Program Files (x86)\unEZCA2.exe
2019-01-31 15:53 - 2019-01-24 18:11 - 000000858 _____ () C:\Users\homepc\AppData\Roaming\8f2626ec-b19e-4dc5-9f23-cdc84f045b52.index
2018-06-20 11:47 - 2018-05-20 18:10 - 000000855 _____ () C:\Users\homepc\AppData\Roaming\eb9f97a6-d1cb-4c34-a3de-57fdf241b871.index
2018-11-04 22:39 - 2018-10-04 09:37 - 002385178 _____ () C:\Users\homepc\AppData\Roaming\ec317386-e87d-48c7-ade1-34457a87d179.index
2017-12-20 01:48 - 2017-12-20 01:48 - 000000128 ____H () C:\Users\homepc\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6
2018-12-30 23:40 - 2018-12-30 23:40 - 000212879 _____ () C:\Users\homepc\AppData\Roaming\Lockheed Martin.rar
2017-09-03 12:43 - 2019-05-10 00:22 - 000000369 _____ () C:\Users\homepc\AppData\Roaming\OpenSceneryX Installer.plist
2018-10-27 22:23 - 2018-10-27 22:23 - 000000000 _____ () C:\Users\homepc\AppData\Roaming\Program.cfg
2018-10-25 01:07 - 2019-04-27 14:57 - 000000080 _____ () C:\Users\homepc\AppData\Roaming\WED.prefs
2019-05-10 01:34 - 2019-06-15 22:29 - 000008176 _____ () C:\Users\homepc\AppData\Roaming\XAddonManager.plist
2019-03-18 15:50 - 2019-03-18 15:50 - 000000000 _____ () C:\Users\homepc\AppData\Local\oobelibMkey.log
2019-10-07 18:14 - 2019-10-07 18:14 - 000000218 _____ () C:\Users\homepc\AppData\Local\recently-used.xbel
2019-04-16 15:23 - 2019-05-16 14:14 - 000007653 _____ () C:\Users\homepc\AppData\Local\Resmon.ResmonCfg
2019-04-19 00:39 - 2019-05-09 02:11 - 000001293 _____ () C:\Users\homepc\AppData\Local\Temp1.html
2019-04-19 00:40 - 2019-04-19 00:40 - 000013510 _____ () C:\Users\homepc\AppData\Local\Temp38.html
2019-05-09 02:11 - 2019-05-09 02:11 - 000003111 _____ () C:\Users\homepc\AppData\Local\Temp6.html
2019-08-12 23:06 - 2019-08-12 23:06 - 000017408 _____ () C:\Users\homepc\AppData\Local\WebpageIcons.db
2019-04-05 15:31 - 2019-05-03 12:37 - 000000093 _____ () C:\Users\homepc\AppData\Local\X-Plane 11 Preferences.prf
2019-04-05 15:31 - 2019-08-13 11:02 - 000000037 _____ () C:\Users\homepc\AppData\Local\X-Plane Installer.prf
2019-04-05 15:31 - 2019-05-25 17:50 - 000000075 _____ () C:\Users\homepc\AppData\Local\X-Plane_drm_11.prf
2019-04-05 15:32 - 2019-08-13 10:39 - 000000032 _____ () C:\Users\homepc\AppData\Local\x-plane_install_11.txt
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================
have some issues with windows. already posted DISM and sfc /scannow issues (both not working) after latest update but was advised to start New Topic here
tried to use KVRT tool and it detected active malware/virus in system memory then cured it. but still have the same issues
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2019
Ran by homepc (administrator) on SIMPC (Gigabyte Technology Co., Ltd. G1.Guerrilla) (07-10-2019 18:42:58)
Running from C:\Users\homepc\Desktop\Tor Browser
Loaded Profiles: homepc (Available Profiles: homepc & test & newuser & .NET v4.5 & DefaultAppPool & .NET v4.5 Classic)
Platform: Windows 10 Pro Version 1809 17763.775 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Alcohol Soft -> Alcohol Soft Development Team) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe
(ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Bitsum LLC -> Bitsum LLC) [File not signed] C:\Program Files\Process Lasso\ProcessGovernor.exe
(Bitsum LLC -> Bitsum LLC) [File not signed] C:\Program Files\Process Lasso\ProcessLasso.exe
(Bitsum LLC -> Bitsum LLC) C:\Program Files\ParkControl\ParkControl.exe
(CA -> CA) H:\CA_LIC\lic98Service.exe
(CA -> CA) H:\CA_LIC\LogWatNT.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwantispam.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwarkdaemon.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwwatcher.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\dwnetfilter.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\dwservice.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\frwl_svc.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent.exe
(Doctor Web Ltd. -> Doctor Web, Ltd.) C:\Program Files\DrWeb\spideragent_adm.exe
(Flexera Software LLC -> Flexera Software LLC) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(Flight Sim Labs, Ltd. -> Flight Sim Labs Ltd.) C:\Program Files (x86)\FlightSimLabs\FSLSpotLights\FSLService\FSLService.exe
(FxSound, LLC -> ) [File not signed] C:\Program Files (x86)\DFX\DFX.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe
(Janos Mathe -> H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
(Jeppesen Sanderson, Inc -> ) C:\Program Files (x86)\Jeppesen\CDA\cda.exe
(Jeppesen Sanderson, Inc -> Jeppesen) C:\Program Files (x86)\Jeppesen\JWC\JWC.exe
(Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Reg Organizer\StartupCheckingService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\snmp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(SelfSigned -> ) [File not signed] C:\Program Files (x86)\Dating\Dating.exe
(StarWind Software) [File not signed] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(SurfRight B.V. -> SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(SurfRight B.V. Dickmaster -> SurfRight B.V.) [File not signed] C:\Program Files\HitmanPro\HitmanPro.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(The OpenVPN Project) [File not signed] C:\Program Files\OpenVPN\bin\openvpnserv.exe
(TOSHIBA CORPORATION -> Toshiba Client Solutions Co., Ltd.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
(TOSHIBA CORPORATION -> TOSHIBA CORPORATION.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe
(Viber Media S.à r.l. -> Viber Media S.Ã r.l.) C:\Users\homepc\AppData\Local\Viber\Viber.exe
(VMware, Inc. -> ) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
(VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [SpIDerAgent] => C:\Program Files\DrWeb\spideragent.exe [22147976 2019-10-02] (Doctor Web Ltd. -> Doctor Web, Ltd.)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391120 2019-03-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Process Killer] => C:\Program Files (x86)\Process Killer\prkiller.exe [38400 2005-07-30] () [File not signed]
HKLM-x32\...\Run: [QW787_v1.1.2a_update] => F:\Симуляторы\P3DV4\Самолеты\QW_787_P3DV4\QW787_v1.1.2a_update.exe [17147444 2018-11-21] () [File not signed]
HKLM-x32\...\Run: [FxSound Enhancer] => C:\Program Files (x86)\DFX\dfx.exe [1780728 2019-07-26] (FxSound, LLC -> ) [File not signed]
HKLM-x32\...\Run: [RzWizard] => C:\Program Files (x86)\Razer\RzWizard\RzWizard.exe [263112 2016-03-23] (Razer USA Ltd. -> Razer Inc.)
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [125872 2019-02-20] (VMware, Inc. -> VMware, Inc.)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION -> TOSHIBA CORPORATION)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [FlightPlan] => e:\симуляторы\FlightPlan_3_7\FlightPlan.exe [835584 2012-05-05] (Umberto Degli Esposti) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [HP Deskjet 5520 series (NET)] => C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [TeamSpeak 3 Client] => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [14941336 2018-06-04] (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Task Killer] => E:\Task.Killer.Portable\TaskKiller.exe [221696 2015-12-19] () [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [AutoHideMouseCursor] => E:\FSL_A320X\P3Dv4.1\FSLabs_A320X_P3D_v2.0.1.237\AutoHideMouseCursor_x64\AutoHideMouseCursor_x64.exe [152576 2018-03-23] (Nenad Hrg (SoftwareOK.com)) [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Speech Recognition] => C:\WINDOWS\Speech\Common\sapisvr.exe [45056 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [636416 2017-09-15] () [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Viber] => C:\Users\homepc\AppData\Local\Viber\Viber.exe [41029704 2019-09-25] (Viber Media S.à r.l. -> Viber Media S.Ã r.l.)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [ECMHelper] => C:\Program Files (x86)\Экранная Камера\Agent.exe [847600 2018-12-26] (AMS Software) [File not signed]
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe [16443120 2018-10-05] (A FOUR TECH CO., LTD. -> )
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [GameCenter] => C:\Users\homepc\AppData\Local\GameCenter\GameCenter.exe [9983616 2019-08-08] (Mail.Ru, LLC -> )
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [SimBrief Downloader] => C:\Users\homepc\AppData\Local\Programs\SimBrief Downloader\SimBrief Downloader.exe [81042864 2018-11-27] (Derek Mayer -> Derek Mayer)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23912440 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: L - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {0dd97860-05ce-11e9-82b3-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {94b459e9-074c-11e9-82bb-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {a16e49be-19a4-11e9-833c-001fc6276e5b} - "L:\setup.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {acbb8ff6-100a-11e9-8305-001fc6276e5b} - "L:\dvdcheck.exe"
HKU\S-1-5-21-2357164880-557895980-647672482-1001\...\MountPoints2: {d8fd3f33-0891-11e9-82be-001fc6276e5b} - "L:\setup.exe"
HKLM\Software\...\AppCompatFlags\Custom\S4Editor.exe: [{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb] -> GOG.com The Settlers 4 GOLD
HKLM\Software\...\AppCompatFlags\Custom\S4_Main.exe: [{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb] -> GOG.com The Settlers 4 GOLD
HKLM\Software\...\AppCompatFlags\InstalledSDB\{ff2cad6c-eb68-4e98-88d7-49887440affb}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{ff2cad6c-eb68-4e98-88d7-49887440affb}.sdb [2013-07-16]
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-25] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{3AFF1C30-4959-4c2f-8BED-E6E81E39F57A}] -> C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtCp.dll [2012-02-01] (TOSHIBA CORPORATION -> TOSHIBA CORPORATION)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bigfoot Killer Network Manager.lnk [2019-09-15]
ShortcutTarget: Bigfoot Killer Network Manager.lnk -> C:\Program Files\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk [2019-05-15]
ShortcutTarget: Bluetooth Manager.lnk -> C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION -> Toshiba Client Solutions Co., Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CDA Monitor.lnk [2018-12-24]
ShortcutTarget: CDA Monitor.lnk -> C:\Program Files (x86)\Jeppesen\CDA\CDAMonitor.exe (Jeppesen Sanderson, Inc -> )
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dating.lnk [2019-07-28]
ShortcutTarget: Dating.lnk -> C:\Program Files (x86)\Dating\Dating.exe (SelfSigned -> ) [File not signed]
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Disk-O.lnk [2018-12-10]
ShortcutTarget: Disk-O.lnk -> C:\Users\homepc\AppData\Local\Mail.Ru\Disk-O\DiskO.exe (LLC Mail.Ru -> Mail.Ru)
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Letasoft Sound Booster.lnk [2019-01-08]
ShortcutTarget: Letasoft Sound Booster.lnk -> C:\Program Files (x86)\Letasoft Sound Booster\SoundBooster.exe (Letasoft LLC -> Letasoft)
Startup: C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 5520 series (Network).lnk [2018-05-22]
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2D63D986-6751-4C26-908A-260F5ADD4292} - System32\Tasks\bandicam_start => C:\Program Files (x86)\Bandicam\bdcam.exe [6287776 2019-02-19] (Bandicam Company -> Bandicam Company)
Task: {32566FC1-6EE8-417C-B89F-C1B871382D6B} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {3B483FCD-B42F-4CBE-96E6-15CEE4158812} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_homepc => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [5458008 2018-07-17] (Janos Mathe -> H.D.S. Hungary)
Task: {3E531F2C-FC20-4030-9AD8-58A7330BE779} - System32\Tasks\RegOrganizerQuickLaunch => C:\Program Files (x86)\Reg Organizer\RegOrganizer.exe -RegistryEditor -ForceForeground -NoSplash
Task: {48669851-E43F-4749-86DF-BC580859156F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1430160 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {4BB42F87-709C-4EA8-9AA8-43DB55C04928} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [6982216 2019-09-26] (Lespeed Technology Ltd. -> WiseCleaner.com)
Task: {4F71DDFA-CEB3-46C5-B103-0CC0B3BD3FED} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27290216 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {577622A0-4C43-496D-85A2-924AC1336ADD} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_Plugin.exe [1457720 2019-09-14] (Adobe Inc. -> Adobe)
Task: {66669C3C-4730-45E9-9C0C-98B790D86110} - System32\Tasks\Core Temp Autostart homepc => C:\Program Files\Core Temp\Core Temp.exe [1011592 2019-08-24] (ALCPU -> ALCPU)
Task: {6F3C805A-1DD5-4554-8B51-D1E29E54E471} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1430160 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {88F6EC18-D85C-48C2-9AE3-B0D27DEDAB6F} - System32\Tasks\Process Lasso Core Engine Only => C:\Program Files\Process Lasso\processgovernor.exe [1029512 2019-09-18] (Bitsum LLC -> Bitsum LLC) [File not signed]
Task: {8A7573F9-A3B1-4BB5-862D-EF7D294221F3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27290216 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B25905B-ED6B-4E17-8FA2-A86E1473AEC9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [121904 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {9302A8F4-8FD2-453C-9B6C-AA8A44265007} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2357164880-557895980-647672482-1001 => C:\Users\homepc\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-09-16] (Mega Limited -> Mega Limited)
Task: {95F74322-C145-432A-B5DC-5A00537981D5} - System32\Tasks\ParkControl => C:\Program Files\ParkControl\parkcontrol.exe [709512 2019-08-15] (Bitsum LLC -> Bitsum LLC) <==== ATTENTION
Task: {987F598E-0428-4639-8259-2820430D78D4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [121904 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C6F6EEC-7E5B-47DD-909B-47537097061D} - System32\Tasks\HPCustParticipation HP Deskjet 5520 series => C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {B425F0F0-DE66-4D15-AF02-AEDBE66B23D6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-17] (Google Inc -> Google Inc.)
Task: {B58A9E73-4B07-44D6-BF0F-C16A3B42C820} - System32\Tasks\Process Lasso Management Console (GUI) => C:\Program Files\Process Lasso\processlasso.exe [1541520 2019-09-18] (Bitsum LLC -> Bitsum LLC) [File not signed]
Task: {C75E651E-8A3B-4A70-B2F8-705E6390EEC8} - System32\Tasks\BlueStacksHelper => E:\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {DE55D662-192E-44AD-A44C-92D7366BE150} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4469920 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {DFAA9ABF-7272-4539-A3FA-4FE093594CE5} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [770344 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {E44CA61A-0EB9-44E0-B78C-2BB962CB3CDE} - System32\Tasks\FRAPS => C:\Fraps\fraps.exe [2550968 2012-08-30] (Beepa Pty Ltd -> Beepa P/L) [File not signed]
Task: {E769C0E3-71CF-445A-B5C7-EA3170B56DC9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-17] (Google Inc -> Google Inc.)
Task: {E80A2128-822A-4712-A4B1-82EFDAE09546} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {ED970E6A-70A3-4E19-9243-A8AD38614FC6} - System32\Tasks\FPSMonitor => C:\Program Files (x86)\FPS Monitor\FPSMonitor.exe [7098592 2019-04-25] (Kozadaev Eduard Vladimirovich -> )
Task: {F6DA550E-A9CA-4E3C-84DE-900736C61C68} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4469920 2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {F95AE5D8-379F-4656-BED6-12A6D5A2C054} - System32\Tasks\Doctor Web\Dr.Web Daily scan => C:\Program Files\DrWeb\dwscanner.exe [11517320 2019-08-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
Task: {FFB35F64-23CA-42B2-BD87-CC98E4B0A343} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_pepper.exe [1453112 2019-09-14] (Adobe Inc. -> Adobe)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog9 01 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 02 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 03 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 04 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9 22 C:\WINDOWS\SysWOW64\BfLLR.dll [174592 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 01 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 02 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 03 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 04 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Winsock: Catalog9-x64 22 C:\Windows\system32\BfLLR.dll [189952 2013-10-09] (Bigfoot Networks, Inc.) [File not signed]
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{31232c54-0567-44c1-af24-8ca68e6dc70f}: [DhcpNameServer] 192.168.44.1
Tcpip\..\Interfaces\{b922b671-da25-45bc-bcb6-227098c215e7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{cf995ab7-e2fd-4b7e-9aeb-1c520e5945dc}: [NameServer] 8.8.4.4,8.8.8.8
Tcpip\..\Interfaces\{cf995ab7-e2fd-4b7e-9aeb-1c520e5945dc}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2357164880-557895980-647672482-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://mail.ru/cnt/10445?gp=812208
SearchScopes: HKU\S-1-5-21-2357164880-557895980-647672482-1001 -> {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxp://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7BACD27B3D-C9E4-4CD8-9795-15E79965F9DD%7D&gp=812209
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: YoutubeAdBlock -> {C0D38E5A-7CF8-4105-8FE8-31B81443A114} -> No File
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Search@Mail.Ru -> {8E8F97CD-60B5-456F-A201-73065652D099} -> No File
BHO-x32: IE 4.x-6.x BHO for Download Master -> {9961627E-4059-41B4-8E0E-A7D6B3854ADF} -> C:\Program Files (x86)\Download Master\dmiehlp.dll [2017-06-23] (Download Master -> WestByte) [File not signed]
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: pze24zhj.NESTOR
FF DefaultProfile: lh2u6es8.default
FF ProfilePath: C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR [2019-10-07]
FF Homepage: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> hxxps://yandex.ru/?clid=2224022
FF NetworkProxy: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> type", 0
FF HomepageOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: homeutil@yandex.ru
FF NewTabOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: vb@yandex.ru
FF NewTabOverride: Mozilla\Firefox\Profiles\pze24zhj.NESTOR -> Enabled: {a38384b3-2d1d-4f36-bc22-0f7ae402bcd7}
FF Extension: (Hoxx VPN Proxy) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@hoxx-vpn.xpi [2019-10-07]
FF Extension: (SetupVPN - Lifetime Free VPN) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@setupvpncom.xpi [2019-10-07]
FF Extension: (WebRTC Leak Shield) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\@webrtc-leak-shield.xpi [2018-02-24]
FF Extension: (anonymoX) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\client@anonymox.net.xpi [2018-12-14]
FF Extension: (FireX Proxy) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\divanproger@gmail.com.xpi [2019-08-19]
FF Extension: (Free Download Manager) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\fdm_ffext2@freedownloadmanager.org.xpi [2019-09-25]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@ghostery.com.xpi [2019-08-29]
FF Extension: (MEGA) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@mega.co.nz.xpi [2019-10-03] [UpdateUrl:hxxps://mega.nz/firefox-web-extension-updates.json]
FF Extension: (Tampermonkey) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\firefox@tampermonkey.net.xpi [2019-05-30]
FF Extension: (Start Page — Yandex) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\homeutil@yandex.ru.xpi [2019-09-09]
FF Extension: (Pinterest Save Button) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2019-09-25]
FF Extension: (Доступ к Рутрекеру) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\public.proartex@gmail.com.xpi [2018-05-08]
FF Extension: (S3.Translator) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\s3google@translator.xpi [2018-10-10]
FF Extension: (uBlock Origin) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\uBlock0@raymondhill.net.xpi [2019-09-27]
FF Extension: (Visual Bookmarks) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\vb@yandex.ru.xpi [2019-04-24]
FF Extension: (minerBlock) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\xd4rker@gmail.com.xpi [2019-02-04]
FF Extension: (Zoom Page WE) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\zoompage-we@DW-dev.xpi [2019-09-23]
FF Extension: (First Mountain Snow by M♥Donna) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{58ed0b89-8436-4436-be1c-0f56273f1adf}.xpi [2019-05-14]
FF Extension: (Web of Trust) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2019-09-02]
FF Extension: (Video DownloadHelper) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-07-08]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-08-22]
FF Extension: (Greasemonkey) - C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2019-06-13]
FF SearchPlugin: C:\Users\homepc\AppData\Roaming\Mozilla\Firefox\Profiles\pze24zhj.NESTOR\searchplugins\mailru.xml [2015-11-21]
FF ProfilePath: C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default [2019-02-27]
FF Homepage: 8pecxstudios\Cyberfox\Profiles\lh2u6es8.default -> hxxp://mail.ru/cnt/10445?gp=812204
FF Extension: (Hoxx VPN Proxy) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@hoxx-vpn.xpi [2018-10-19]
FF Extension: (SetupVPN - Lifetime Free VPN) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@setupvpncom.xpi [2018-02-06]
FF Extension: (WebRTC Leak Shield) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\@webrtc-leak-shield.xpi [2018-03-28]
FF Extension: (anonymoX) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\client@anonymox.net.xpi [2017-06-24] [Legacy]
FF Extension: (FireX Proxy) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\divanproger@gmail.com.xpi [2018-12-16]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\firefox@ghostery.com.xpi [2019-01-31]
FF Extension: (Tampermonkey) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\firefox@tampermonkey.net.xpi [2018-10-06]
FF Extension: (Доступ к Рутрекеру) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\public.proartex@gmail.com.xpi [2017-06-24] [Legacy]
FF Extension: (S3.Translator) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\s3google@translator.xpi [2018-10-20]
FF Extension: (Visual Bookmarks) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\vb@yandex.ru.xpi [2017-08-01] [Legacy]
FF Extension: (minerBlock) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\xd4rker@gmail.com.xpi [2018-11-21]
FF Extension: (Zoom Page WE) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\zoompage-we@DW-dev.xpi [2018-12-16]
FF Extension: (Web of Trust) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2018-06-26]
FF Extension: (Video DownloadHelper) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-08-01]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-01-31]
FF Extension: (Greasemonkey) - C:\Users\homepc\AppData\Roaming\8pecxstudios\Cyberfox\Profiles\lh2u6es8.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-10-06]
FF Extension: (CyberCTR) - C:\Program Files\Cyberfox\browser\features\CTR@8pecxstudios.com.xpi [2018-06-29] [Legacy] [not signed]
FF Extension: (No Name) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-02-02] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_255.dll [2019-09-14] (Adobe Inc. -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_255.dll [2019-09-14] (Adobe Inc. -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-06-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\homepc\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2017-11-18] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\homepc\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2017-11-18] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2357164880-557895980-647672482-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\The Settlers 7\Data\Base\_Dbg\Bin\Release\orbit\npuplaypc.dll [2017-12-24] (Ubisoft Massive -> Ubisoft)
Chrome:
=======
CHR HomePage: Default -> inline.go.mail.ru
CHR StartupUrls: Default -> "hxxp://www.mail.ru/cnt/9516","hxxp://mail.ru/cnt/10445?gp=812208"
CHR DefaultSearchURL: Default -> hxxp://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B792CA924-60DD-4AE5-BF89-099626812133%7D&gp=812209
CHR DefaultSearchKeyword: Default -> go.mail.ru
CHR DefaultSuggestURL: Default -> hxxp://suggests.go.mail.ru/chrome?q={searchTerms}
CHR Profile: C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default [2019-10-07]
CHR Extension: (Allavsoft video downloader converter) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhancbnhabhandieicagelcddkdfgoif [2019-01-01]
CHR Extension: (Download Master) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dljdacfojgikogldjffnkdcielnklkce [2019-09-25]
CHR Extension: (Direct.Fastix ) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lknnjfgcgglncamgpbbdfkianokjohlh [2019-02-03]
CHR Extension: (Платежная система Интернет-магазина Chrome) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Adblocker for Youtube™) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohajmcdpjokbdoihfhkpbmlmknejmoec [2018-02-02]
CHR Extension: (Chrome Media Router) - C:\Users\homepc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-26]
CHR Profile: C:\Users\homepc\AppData\Local\Google\Chrome\User Data\System Profile [2019-10-07]
CHR HKLM-x32\...\Chrome\Extension: [dhancbnhabhandieicagelcddkdfgoif] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.16.4.6852\BVDChromeExt.crx [2018-12-29]
CHR HKLM-x32\...\Chrome\Extension: [dljdacfojgikogldjffnkdcielnklkce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fppjhfcgnalgfiimdflmikpifodndljf] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gbnhehnpnbiioheicppmmmjaekcdfigc] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ikpcpgklmefncbfgbdifkaphbaapgafh] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
R2 AxVirtualAHCISrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe [99712 2015-12-04] (Alcohol Soft -> Alcohol Soft Development Team)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7212480 2018-09-16] (BattlEye Innovations e.K. -> )
R2 Bigfoot Networks Killer Service; C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe [494080 2013-10-09] () [File not signed]
S4 BLMS; C:\Program Files (x86)\BASTION\BLMS.exe [33280 2015-04-29] () [File not signed]
R2 CDA; C:\Program Files (x86)\Jeppesen\CDA\CDA.exe [134088 2016-04-01] (Jeppesen Sanderson, Inc -> )
R2 Chemtable Startup Checking; C:\Program Files (x86)\Reg Organizer\StartupCheckingService.exe [ ]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11634696 2019-09-25] (Microsoft Corporation -> Microsoft Corporation)
R2 DrWebAVService; C:\Program Files\DrWeb\dwservice.exe [14703064 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebEngine; C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe [2226136 2019-10-03] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebFwSvc; C:\Program Files\DrWeb\frwl_svc.exe [5388856 2019-08-28] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 DrWebNetFilter; C:\Program Files\DrWeb\dwnetfilter.exe [7136488 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R2 FSLabs Service; C:\Program Files (x86)\FlightSimLabs\FSLSpotLights\FSLService\FSLService.exe [92304 2018-11-08] (Flight Sim Labs, Ltd. -> Flight Sim Labs Ltd.)
R2 ftpsvc; C:\WINDOWS\system32\inetsrv\ftpsvc.dll [439296 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2018-10-25] (FUTUREMARK INC -> Futuremark)
S4 hasplms; C:\WINDOWS\system32\hasplms.exe [4319776 2017-11-29] (SafeNet Canada, Inc. -> SafeNet, Inc.)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [135488 2018-02-02] (SurfRight B.V. -> SurfRight B.V.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 JWC; C:\Program Files (x86)\Jeppesen\JWC\JWC.exe [658016 2014-10-06] (Jeppesen Sanderson, Inc -> Jeppesen)
R2 LogWatch; H:\CA_LIC\LogWatNT.exe [75016 2008-05-20] (CA -> CA)
S2 MySQL; C:\Program Files (x86)\BASTION\mysql\bin\mysqld.exe [11074560 2016-01-15] () [File not signed]
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [15872 2016-11-25] ( ) [File not signed]
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [65536 2017-09-15] (The OpenVPN Project) [File not signed]
S3 OpenVPNServiceLegacy; C:\Program Files\OpenVPN\bin\openvpnserv.exe [65536 2017-09-15] (The OpenVPN Project) [File not signed]
R2 RzWizardService; C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe [376272 2016-03-23] (Razer USA Ltd. -> Razer Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5378320 2019-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SNMP; C:\WINDOWS\System32\snmp.exe [53248 2018-12-17] (Microsoft Windows -> Microsoft Corporation)
S3 SoundBoosterService; C:\Program Files (x86)\Letasoft Sound Booster\SoundBoosterService.exe [153272 2018-06-01] (Letasoft LLC -> Letasoft)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-24] (StarWind Software) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11665136 2019-01-16] (TeamViewer GmbH -> TeamViewer GmbH)
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15446960 2019-02-20] (VMware, Inc. -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3831576 2019-05-23] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)
S2 1C:Enterprise 8.3 Server Agent (x86-64); "D:\Program Files\1cv8\8.3.13.1690\bin\ragent.exe" -srvc -agent -regport 1541 -port 1540 -range 1560:1591 -d "C:\Program Files\1cv8\srvinfo" <==== ATTENTION
S2 CG6Service; no ImagePath
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 46e606d6959f0108; no ImagePath
S3 46e606d75d018d08; no ImagePath
S3 46e7aa83afb3d388; no ImagePath
S3 46e7aa850abbf508; no ImagePath
S3 46e7aa858013c708; no ImagePath
S3 46e7aba68c1ae788; no ImagePath
S3 46e7ba7f9f485208; no ImagePath
S3 46e7bd52beaedc08; no ImagePath
S3 46e7bd52fc933808; no ImagePath
S3 46e7ee3041330c88; no ImagePath
S3 46e7f3720b979388; no ImagePath
S3 46e7f3725915b688; no ImagePath
S3 46e7f372e8a50488; no ImagePath
S3 46e7f37367e55988; no ImagePath
S3 46e7f3747ea1a308; no ImagePath
R3 ALSysIO; C:\Users\homepc\AppData\Local\Temp\ALSysIO64.sys [47240 2019-10-07] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
S3 Arctosa; C:\WINDOWS\system32\drivers\Arctosa.sys [26624 2012-11-28] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 BfEdge7x64; C:\WINDOWS\System32\drivers\Edge7x64.sys [31336 2013-10-09] (Bigfoot Networks, Inc. -> Bigfoot Networks, Inc.)
R3 BFN7x64; C:\WINDOWS\System32\drivers\Xeno7x64.sys [157288 2013-10-09] (Bigfoot Networks, Inc. -> Bigfoot Networks, Inc.)
S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [303712 2018-12-13] (Bluestack Systems, Inc. -> Bluestack System Inc. )
S3 cpuz140; no ImagePath
S3 Denuvo Kuser Data Driver 1.0.0.7; no ImagePath
R3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [39048 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
S3 DIRECTIO37; C:\Program Files\BurnInTest\DirectIo64.sys [31376 2015-02-16] (PassMark Software Pty Ltd -> )
R0 DrWebLwf; C:\WINDOWS\System32\drivers\DrWebLwf.sys [505592 2019-10-07] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [271424 2019-09-08] (DT Soft Ltd -> DT Soft Ltd)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2018-04-22] (Disc Soft Ltd -> Disc Soft Ltd)
R0 DwDevGuard; C:\WINDOWS\System32\drivers\dwdg.sys [241264 2019-03-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S0 DwELAM; C:\WINDOWS\System32\drivers\dwelam.sys [31984 2019-03-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Doctor Web, Ltd.)
R0 DwProt; C:\WINDOWS\System32\drivers\dwprot.sys [860240 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S0 FlashBoot; C:\WINDOWS\System32\drivers\FlashBoot.sys [17616 2014-04-03] (Challenger Backup Solutions, LLC -> Challenger Backup Solutions, LLC)
S3 gdrv; C:\WINDOWS\gdrv.sys [25640 2019-01-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [1304840 2017-11-29] (SafeNet, Inc. -> SafeNet, Inc.)
R3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2019-10-07] (SurfRight B.V. -> )
S3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [34064 2017-05-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R3 ip100Avista; C:\WINDOWS\System32\drivers\ipfnd51.sys [36864 2007-09-28] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-08-18] (Logitech Inc -> Logitech Inc.)
R0 mvs91xx; C:\WINDOWS\System32\drivers\mvs91xx.sys [342760 2016-04-11] (Marvell Semiconductor, Inc. -> Marvell Semiconductor, Inc.)
S3 Neo_VPN; C:\WINDOWS\System32\drivers\neo_vpn.sys [22784 2018-03-02] (Extra Solutions Ltd -> Trust.Zone VPN Project)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830a0263f2ee97ce\nvlddmkm.sys [22370696 2019-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OSFMount; C:\Program Files\OSFMount\x64\OSFMount.sys [1038416 2018-03-22] (PassMark Software Pty Ltd -> PassMark Software)
R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2017-04-07] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
S3 PORTMON; C:\SysinternalsSuite\PORTMSYS.SYS [28656 2018-12-11] (Systems Internals) [File not signed]
S3 REN2CAP_DRIVER; C:\WINDOWS\system32\drivers\ren2cap.sys [39568 2016-06-14] (Prosoft Engineering, Inc. -> )
S3 rspSanity; C:\WINDOWS\System32\DRIVERS\rspSanity64.sys [31328 2012-10-29] (Daniel Terhell -> Resplendence Software Projects Sp.)
S3 rspWhySoSlow; C:\WINDOWS\System32\DRIVERS\rspWhy64.sys [28928 2016-12-17] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R3 rzp1endpt; C:\WINDOWS\System32\drivers\rzp1endpt.sys [52424 2015-08-13] (Razer Inc. -> Razer Inc)
S3 rzvmouse; C:\WINDOWS\System32\drivers\rzvmouse.sys [42712 2015-08-13] (Razer Inc. -> Razer Inc)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R0 SpiderG3; C:\WINDOWS\System32\drivers\spiderg3.sys [390248 2019-09-30] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203296 2019-09-21] (Disc Soft Ltd -> Duplex Secure Ltd)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [52288 2018-11-21] (VMware, Inc. -> VMware, Inc.)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [92040 2018-06-22] (VMware, Inc. -> VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [52576 2018-02-28] (VMware, Inc. -> VMware, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WinFsp; C:\WINDOWS\system32\disko\winfsp-x64.sys [144848 2018-01-25] (Navimatics Corporation -> Navimatics Corporation)
S3 LVPr2M64; \SystemRoot\system32\DRIVERS\LVPr2M64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 18:42 - 2019-10-07 18:43 - 000000000 ____D C:\FRST
2019-10-07 18:14 - 2019-10-07 18:14 - 000000218 _____ C:\Users\homepc\AppData\Local\recently-used.xbel
2019-10-07 16:39 - 2019-10-07 16:39 - 000000000 ____D C:\WINDOWS\Panther
2019-10-07 16:03 - 2019-10-07 16:03 - 000001558 _____ C:\Users\homepc\Desktop\SFCFix.txt
2019-10-07 16:00 - 2019-10-07 16:00 - 000000000 _____ C:\WINDOWS\system32\sfc
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Mozilla
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\LocalLow\Mozilla
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\OneDrive
2019-10-07 15:52 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\Mozilla
2019-10-07 15:51 - 2019-10-07 15:51 - 000000000 ____D C:\Users\newuser\AppData\Local\Comms
2019-10-07 15:26 - 2019-10-07 15:26 - 000000000 ____D C:\Users\newuser\AppData\Local\ChemTable Software
2019-10-07 15:24 - 2019-10-07 15:26 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1010
2019-10-07 15:24 - 2019-10-07 15:26 - 000000000 ___RD C:\Users\newuser\OneDrive
2019-10-07 15:24 - 2019-10-07 15:24 - 000001450 _____ C:\Users\newuser\Desktop\Microsoft Edge.lnk
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\OpenVPN
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\Toshiba
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\PlaceholderTileLogoFolder
2019-10-07 15:24 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser\AppData\Local\DFX
2019-10-07 15:23 - 2019-10-07 16:18 - 000011114 _____ C:\Users\newuser\Documents\FPSMonitor.txt
2019-10-07 15:23 - 2019-10-07 15:52 - 000000000 ____D C:\Users\newuser\AppData\Local\Packages
2019-10-07 15:23 - 2019-10-07 15:26 - 000002369 _____ C:\Users\newuser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 15:23 - 2019-10-07 15:24 - 000000000 ____D C:\Users\newuser
2019-10-07 15:23 - 2019-10-07 15:23 - 000000258 __RSH C:\Users\newuser\ntuser.pol
2019-10-07 15:23 - 2019-10-07 15:23 - 000000020 ___SH C:\Users\newuser\ntuser.ini
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ___RD C:\Users\newuser\3D Objects
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ___HD C:\Users\newuser\MicrosoftEdgeBackups
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Roaming\ProcessLasso
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Adobe
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\VirtualStore
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\Publishers
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\MicrosoftEdge
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\Google
2019-10-07 15:23 - 2019-10-07 15:23 - 000000000 ____D C:\Users\newuser\AppData\Local\ConnectedDevicesPlatform
2019-10-07 15:23 - 2017-06-25 00:42 - 000000000 ____D C:\Users\newuser\AppData\Roaming\Macromedia
2019-10-07 15:07 - 2019-10-07 15:07 - 000000000 ____D C:\Users\test\AppData\Local\Toshiba
2019-10-07 14:19 - 2019-10-07 14:19 - 000001831 _____ C:\Users\Public\Desktop\Prepar3D v4.lnk
2019-10-07 14:19 - 2019-10-07 14:19 - 000001831 _____ C:\ProgramData\Desktop\Prepar3D v4.lnk
2019-10-07 14:19 - 2019-10-07 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin
2019-10-06 06:39 - 2019-10-06 06:39 - 000000983 _____ C:\Users\Public\Desktop\Load Manager.lnk
2019-10-06 06:39 - 2019-10-06 06:39 - 000000983 _____ C:\ProgramData\Desktop\Load Manager.lnk
2019-10-06 06:39 - 2019-10-06 06:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fly the Maddog X
2019-10-06 06:38 - 2019-10-06 06:40 - 000000000 ___DC C:\Users\homepc\Documents\Maddog X Files
2019-10-06 00:10 - 2019-10-06 00:10 - 000000649 _____ C:\Users\Public\Desktop\AirHauler 2.lnk
2019-10-06 00:10 - 2019-10-06 00:10 - 000000649 _____ C:\ProgramData\Desktop\AirHauler 2.lnk
2019-10-05 23:50 - 2019-10-05 23:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FS2Crew2012
2019-10-05 23:43 - 2019-10-05 23:43 - 000000000 ____D C:\Program Files\AI Lights Reborn Free Edition
2019-10-05 22:54 - 2019-10-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NMG OR Tambo Internationall (FSX)
2019-10-05 22:54 - 2019-10-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NMG OR Tambo International (FSX)
2019-10-05 22:36 - 2019-10-05 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSDG - Cape Town FSX
2019-10-05 17:55 - 2019-10-05 17:55 - 020815872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 019013632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 012259840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 003614720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002323696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002278240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 002018304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-05 17:55 - 2019-10-05 17:55 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001289192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shellstyle.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shellstyle.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000901632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-10-05 17:55 - 2019-10-05 17:55 - 000482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000241976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-05 17:55 - 2019-10-05 17:55 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-10-05 17:55 - 2019-10-05 17:55 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSTheme.exe
2019-10-05 17:55 - 2019-10-05 17:55 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 026806272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 023454720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 022135584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 017485312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 012960256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 009680184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 007886848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 007698432 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006928384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006542464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006444544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006316792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005767168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005605560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005573016 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 005299712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004737536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004588536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 004352472 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 004057088 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003978240 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003820976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 003634688 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 003567104 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003428864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003385856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003198976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 003000832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002924344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002839040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002779784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002699768 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002421760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 002415928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002349056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002279304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002200376 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002192384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002118656 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002109960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 002096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-05 17:54 - 2019-10-05 17:54 - 002072176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001966392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001924976 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001918792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001864704 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001751424 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001720120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001701880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-05 17:54 - 2019-10-05 17:54 - 001701176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001522488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001484896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001399608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-05 17:54 - 2019-10-05 17:54 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001294272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001272120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001247344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001170432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001098056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001052984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 001048888 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 001006392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000980992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000888120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000863544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000817464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000775216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000770096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000767800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000661096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000613176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000605368 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000598328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000588600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000506192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000505640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000452992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000434952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000384272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000375544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000341392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-10-05 17:54 - 2019-10-05 17:54 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000290616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000278416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000256704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000193704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000156512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000155968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000138552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000135816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcl.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000094008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000086840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000079032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Synth3dVsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000065608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000057656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dmvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000052536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSTheme.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000044912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000038184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PasswordOnWakeSettingFlyout.exe
2019-10-05 17:54 - 2019-10-05 17:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\shunimpl.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shunimpl.dll
2019-10-05 17:54 - 2019-10-05 17:54 - 000018744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-05 17:54 - 2019-10-05 17:54 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-05 14:38 - 2019-10-05 14:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Flight1
2019-10-05 14:37 - 2019-10-05 14:37 - 000001862 _____ C:\Users\homepc\Desktop\AFX.lnk
2019-10-05 14:37 - 2019-10-05 14:37 - 000000000 ____D C:\Program Files (x86)\AFX
2019-10-04 15:01 - 2019-10-04 15:01 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-10-04 15:01 - 2019-10-04 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2019-10-03 18:31 - 2019-10-03 18:31 - 000003518 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-10-03 18:31 - 2019-10-03 18:31 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-10-03 18:31 - 2019-10-03 18:31 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2019-09-30 23:12 - 2019-09-30 23:12 - 000034030 _____ C:\Users\homepc\Desktop\ChasePlane_Report_gtafivehater_gmail_com.txt
2019-09-30 15:53 - 2019-09-30 15:53 - 000000000 ____D C:\Users\homepc\AppData\Local\Viber
2019-09-29 17:26 - 2019-10-05 17:58 - 000519104 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-29 02:03 - 2019-09-29 02:03 - 000000000 ____D C:\Users\homepc\AppData\Local\gtk-3.0
2019-09-29 01:11 - 2019-10-07 18:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\gsmartcontrol
2019-09-28 23:14 - 2019-10-07 16:03 - 000000000 ____D C:\SFCFix
2019-09-28 23:13 - 2019-10-07 16:03 - 000000000 ____D C:\Users\homepc\AppData\Local\niemiro
2019-09-28 22:46 - 2019-09-28 22:46 - 000000000 ___HD C:\$Windows.~WS
2019-09-28 22:38 - 2019-09-28 22:39 - 000000000 ____D C:\Program Files\NTLite
2019-09-28 22:38 - 2019-09-28 22:38 - 000000825 _____ C:\Users\homepc\Desktop\NTLite.lnk
2019-09-28 22:38 - 2019-09-28 22:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTLite
2019-09-28 19:19 - 2019-09-28 23:06 - 000000000 ____D C:\ESD
2019-09-28 13:43 - 2019-09-28 13:43 - 000001098 _____ C:\Users\homepc\Desktop\Экипаж 4.0 FSX (P3D).lnk
2019-09-28 13:43 - 2019-09-28 13:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RD-soft
2019-09-28 13:43 - 2019-09-28 13:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RD-soft
2019-09-28 13:38 - 2019-09-28 13:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\THROTTLEINDICATOR
2019-09-28 13:27 - 2019-09-28 13:27 - 000000000 ____D C:\Users\homepc\AppData\Roaming\fscabincrew
2019-09-28 13:25 - 2019-09-28 13:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\FS Cabin Crew
2019-09-28 13:25 - 2019-09-28 13:25 - 000000000 ____D C:\Program Files (x86)\drubware.net
2019-09-27 21:21 - 2019-09-27 21:21 - 000000152 _____ C:\Users\Public\Desktop\FSLA320-X Refuel Panel.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000152 _____ C:\ProgramData\Desktop\FSLA320-X Refuel Panel.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000141 _____ C:\Users\Public\Desktop\FSLA320-X MCDU.url
2019-09-27 21:21 - 2019-09-27 21:21 - 000000141 _____ C:\ProgramData\Desktop\FSLA320-X MCDU.url
2019-09-27 03:53 - 2019-09-27 03:53 - 000087794 _____ C:\Program Files (x86)\unEZCA2.exe
2019-09-27 03:53 - 2019-09-27 03:53 - 000001039 _____ C:\Users\Public\Desktop\EZCA 2 Config Tool.lnk
2019-09-27 03:53 - 2019-09-27 03:53 - 000001039 _____ C:\ProgramData\Desktop\EZCA 2 Config Tool.lnk
2019-09-27 03:53 - 2019-09-27 03:53 - 000000000 ____D C:\Users\homepc\AppData\Roaming\EZCA
2019-09-27 03:53 - 2019-09-27 03:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA2
2019-09-27 01:49 - 2019-09-27 03:53 - 000002048 _____ C:\WINDOWS\ezcamera2.lic
2019-09-27 00:18 - 2019-09-27 00:20 - 000000000 ____D C:\OpusFSX
2019-09-27 00:17 - 2019-09-27 00:18 - 000000000 ____D C:\Opus Software
2019-09-26 04:23 - 2019-09-26 04:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2019-09-26 04:23 - 2019-09-26 04:23 - 000000000 ____D C:\Program Files (x86)\Garmin
2019-09-25 02:53 - 2019-09-25 02:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Majestic Software
2019-09-25 01:51 - 2019-09-28 18:57 - 000000000 ____D C:\1909_f1_rxp
2019-09-25 01:22 - 2019-09-25 01:22 - 000000000 ____D C:\ProgramData\Garmin
2019-09-25 01:11 - 2019-09-28 20:37 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Download Master
2019-09-25 01:11 - 2019-09-25 01:11 - 000001170 _____ C:\Users\Public\Desktop\Download Master.lnk
2019-09-25 01:11 - 2019-09-25 01:11 - 000001170 _____ C:\ProgramData\Desktop\Download Master.lnk
2019-09-25 01:11 - 2019-09-25 01:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Master
2019-09-25 01:11 - 2019-09-25 01:11 - 000000000 ____D C:\Program Files (x86)\Download Master
2019-09-24 18:44 - 2019-09-30 23:12 - 000000000 ____D C:\Program Files (x86)\ChasePlane (XEdition)
2019-09-24 18:44 - 2019-09-24 21:36 - 000000000 ___DC C:\Users\homepc\Documents\ChasePlane Presets
2019-09-24 18:44 - 2019-09-24 18:44 - 000001177 _____ C:\Users\Public\Desktop\ChasePlane (XEdition).lnk
2019-09-24 18:44 - 2019-09-24 18:44 - 000001177 _____ C:\ProgramData\Desktop\ChasePlane (XEdition).lnk
2019-09-24 18:44 - 2019-09-24 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChasePlane (XEdition)
2019-09-24 17:28 - 2019-09-26 17:12 - 000000895 _____ C:\Users\homepc\Desktop\F1UpdateTool.lnk
2019-09-24 17:28 - 2019-09-24 17:28 - 000000935 _____ C:\Users\homepc\Desktop\f1update_tool_readme.lnk
2019-09-22 02:29 - 2019-09-22 02:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hoppie
2019-09-22 02:29 - 2019-09-22 02:31 - 000000000 ____D C:\Program Files (x86)\Hoppie
2019-09-22 00:38 - 2019-09-23 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simware - Valencia X - FSX
2019-09-21 22:49 - 2019-09-21 23:21 - 000001116 _____ C:\Users\homepc\Desktop\767-300 FSX Configuration Manager.lnk
2019-09-21 21:08 - 2019-09-21 21:18 - 000203296 _____ (Duplex Secure Ltd) C:\WINDOWS\system32\Drivers\sptd2.sys
2019-09-21 14:13 - 2019-09-21 14:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ARMI Project - Muscat OOMS FSX
2019-09-21 13:32 - 2019-09-29 21:13 - 000000984 _____ C:\Users\Public\Desktop\UGCX Configuration Manager.lnk
2019-09-21 13:32 - 2019-09-29 21:13 - 000000984 _____ C:\ProgramData\Desktop\UGCX Configuration Manager.lnk
2019-09-21 13:32 - 2019-09-21 13:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Ground Crew X
2019-09-21 13:31 - 2019-09-29 21:13 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Ultimate Ground Crew X
2019-09-17 00:14 - 2019-09-17 00:27 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3res
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3weatherfiles
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3Charts
2019-09-17 00:14 - 2019-09-17 00:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3aircraftfiles
2019-09-16 23:49 - 2019-09-16 23:49 - 000000000 ____D C:\Users\homepc\zygrib
2019-09-16 23:34 - 2019-09-27 00:34 - 000000000 ____D C:\OpusFSI_v5
2019-09-16 21:39 - 2019-09-16 21:39 - 000001181 _____ C:\Users\homepc\Desktop\Active Sky Next for FSX SP5.lnk
2019-09-16 21:32 - 2019-09-16 21:32 - 000002021 _____ C:\Users\homepc\Desktop\FS Global Real Weather.lnk
2019-09-16 21:32 - 2019-09-16 21:32 - 000000000 ____D C:\Program Files (x86)\FSGRW
2019-09-16 19:53 - 2019-09-16 19:53 - 000001020 _____ C:\Users\Public\Desktop\FSDT GSX Control Panel.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000001020 _____ C:\ProgramData\Desktop\FSDT GSX Control Panel.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000796 _____ C:\Users\Public\Desktop\FSDT Live Update.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000796 _____ C:\ProgramData\Desktop\FSDT Live Update.lnk
2019-09-16 19:53 - 2019-09-16 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSDreamTeam
2019-09-15 14:00 - 2019-10-07 15:51 - 000000000 ____D C:\ProgramData\Bigfoot Networks
2019-09-15 13:41 - 2019-09-15 13:42 - 000082268 _____ C:\ProgramData\dxdiag.txt
2019-09-14 23:40 - 2019-09-15 01:43 - 000000000 ____D C:\Program Files\MFSClientV5
2019-09-14 12:27 - 2019-09-14 12:27 - 000000000 ____D C:\Users\homepc\AppData\Local\NVIDIA
2019-09-14 11:15 - 2019-09-14 11:15 - 000000000 ____D C:\Users\homepc\AppData\Roaming\NVIDIA
2019-09-14 11:13 - 2019-10-07 18:38 - 000000000 ____D C:\ProgramData\NVIDIA
2019-09-14 11:13 - 2019-09-14 13:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-14 11:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-14 11:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-09-14 11:13 - 2019-09-05 22:49 - 005468144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 002634608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000654320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000450600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000125240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-09-14 11:13 - 2019-09-05 22:49 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-09-14 11:13 - 2019-09-05 04:04 - 008709382 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-09-14 11:13 - 2019-08-01 16:07 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-09-14 11:12 - 2019-09-06 21:29 - 001012432 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 001012432 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000876240 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000876240 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000447368 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000351944 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-09-14 11:12 - 2019-09-06 21:29 - 000301264 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000301264 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000273104 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-09-14 11:12 - 2019-09-06 21:29 - 000273104 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-09-14 11:12 - 2019-09-06 21:28 - 011562376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-09-14 11:12 - 2019-09-06 21:28 - 009937104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 002051008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001550080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001477512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001247432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 001140616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000959424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000676096 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000658880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000632768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000544648 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-09-14 11:12 - 2019-09-06 21:27 - 000524168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 040444856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 035334536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 017300360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 014921096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 005358472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 004696968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 001726400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443630.dll
2019-09-14 11:12 - 2019-09-06 21:26 - 001491336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443630.dll
2019-09-14 11:12 - 2019-09-06 18:24 - 005002192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-09-14 11:12 - 2019-09-06 18:24 - 004263840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-09-14 11:12 - 2019-09-06 00:19 - 001683032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-09-14 11:12 - 2019-09-06 00:19 - 000228792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-09-14 11:12 - 2019-09-06 00:19 - 000054700 _____ C:\WINDOWS\system32\nvinfo.pb
2019-09-14 11:12 - 2019-09-06 00:19 - 000047272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-09-14 11:07 - 2019-09-14 11:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-09-14 11:06 - 2019-09-14 11:06 - 000000000 ____D C:\ShadersHLSL
2019-09-13 21:28 - 2019-09-13 21:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BSS FSL A320 IAE V2.1
2019-09-13 20:53 - 2019-09-13 20:53 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PILOT'S Software
2019-09-13 19:06 - 2019-09-27 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlightSimLabs, Ltd
2019-09-13 19:05 - 2019-09-13 19:30 - 000000000 ____D C:\Program Files (x86)\FlightSimLabs
2019-09-13 14:08 - 2019-09-13 14:08 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-09-13 14:08 - 2019-09-13 14:08 - 000000000 ____D C:\Program Files\MSBuild
2019-09-13 13:25 - 2019-09-13 13:25 - 017761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 013942784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 008903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 007921664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 007871488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 006065664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 004874752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 004850688 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003702784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 003631616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 003096576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002099752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002086400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 002006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001782272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001655976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001604760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001573240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001465472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001419776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001272560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001176064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 001075832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000883200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000798736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-09-13 13:25 - 2019-09-13 13:25 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000660544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000652832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000622392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000540240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000450872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000409256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000349144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000195224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBroker.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000144080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000140088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000106048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000098080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-13 13:25 - 2019-09-13 13:25 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2019-09-13 13:25 - 2019-09-13 13:25 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 005569024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003490816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003333984 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002879488 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002593032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002233688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 002148864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001904128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001743168 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001721360 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001563880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001191512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 001183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001128448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 001022824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000865576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000851272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000811024 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000807760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000806568 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-09-13 13:24 - 2019-09-13 13:24 - 000806568 _____ C:\WINDOWS\system32\locale.nls
2019-09-13 13:24 - 2019-09-13 13:24 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000793824 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000791352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000751928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000740904 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000736056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000652600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000652304 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000603784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000591160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000554000 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000535056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000532192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000520208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000515152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000464912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000402368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000351432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000347576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000330672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000330592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000294728 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpprov.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000177176 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000168248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000164504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000140600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000120344 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiCx.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000090632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000087056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-09-13 13:24 - 2019-09-13 13:24 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-09-13 13:24 - 2019-09-13 13:24 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiAcpiClient.sys
2019-09-13 13:24 - 2019-09-13 13:24 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-09-13 02:09 - 2019-10-07 00:09 - 000000000 ____D C:\TCPU71
2019-09-13 02:09 - 2019-09-13 02:09 - 000001635 _____ C:\Users\Public\Desktop\Total Commander HomeUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000001635 _____ C:\ProgramData\Desktop\Total Commander HomeUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000000777 _____ C:\Users\Public\Desktop\Total Commander PowerUser v71.lnk
2019-09-13 02:09 - 2019-09-13 02:09 - 000000777 _____ C:\ProgramData\Desktop\Total Commander PowerUser v71.lnk
2019-09-13 00:00 - 2019-09-13 00:00 - 000002150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PMDG Operations Center.lnk
2019-09-12 18:53 - 2019-09-12 19:00 - 000000000 ____D C:\BLOCKCHECKDPI
2019-09-11 01:12 - 2019-09-11 01:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ParkControl
2019-09-11 00:42 - 2019-09-11 00:43 - 000000000 ___DC C:\Users\homepc\Documents\Flight Simulator X - Steam Edition Files
2019-09-10 23:57 - 2019-09-10 23:57 - 000000208 _____ C:\Captain.ini
2019-09-10 19:27 - 2019-09-28 13:43 - 000000000 ____D C:\Program Files (x86)\RD-soft
2019-09-10 19:27 - 2019-09-10 19:34 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RDSetInstaller
2019-09-10 19:27 - 2019-09-10 19:27 - 000002781 _____ C:\Users\Public\Desktop\SetInstaller.lnk
2019-09-10 19:27 - 2019-09-10 19:27 - 000002781 _____ C:\ProgramData\Desktop\SetInstaller.lnk
2019-09-10 19:27 - 2019-09-10 19:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RD-soft
2019-09-10 19:19 - 2019-09-10 19:19 - 000000000 ____D C:\Users\homepc\AppData\Local\kACARS_-LR
2019-09-10 19:18 - 2019-09-10 19:18 - 000003113 _____ C:\Users\homepc\Desktop\kACARS - Landing Rate.lnk
2019-09-10 19:18 - 2019-09-10 19:18 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\kACARS_Free
2019-09-10 19:18 - 2019-09-10 19:18 - 000000000 ____D C:\Program Files (x86)\FS-Products
2019-09-08 02:22 - 2019-09-08 02:22 - 000000975 _____ C:\Users\Public\Desktop\FSX B747 Configuration Tool.lnk
2019-09-08 02:22 - 2019-09-08 02:22 - 000000975 _____ C:\ProgramData\Desktop\FSX B747 Configuration Tool.lnk
2019-09-08 02:22 - 2019-09-08 02:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IFly Jets - The 747-400 V2 for FSX
2019-09-08 00:49 - 2019-09-11 00:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2019-09-08 00:19 - 2019-09-08 00:19 - 000271424 _____ (DT Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2019-09-08 00:14 - 2019-09-08 00:14 - 000178800 _____ (Sony DADC Austria AG.) C:\WINDOWS\SysWOW64\CmdLineExt_x64.dll
2019-09-07 14:22 - 2019-09-07 14:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft - Airbus A318-A319 - FSX
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 18:42 - 2017-06-24 23:54 - 000000000 ____D C:\Users\homepc\Desktop\Tor Browser
2019-10-07 18:39 - 2017-06-24 11:27 - 000000000 ____D C:\Users\homepc\AppData\LocalLow\Mozilla
2019-10-07 18:38 - 2018-12-26 16:25 - 000000000 ____D C:\ProgramData\VMware
2019-10-07 18:38 - 2018-12-16 22:38 - 000003180 _____ C:\WINDOWS\system32\Tasks\FRAPS
2019-10-07 18:38 - 2018-12-16 22:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-07 18:38 - 2018-12-16 22:28 - 000000000 ____D C:\Users\homepc
2019-10-07 18:38 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-07 18:38 - 2018-09-15 10:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-07 18:38 - 2018-08-13 17:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-10-07 18:38 - 2018-05-10 21:23 - 000012792 ____C C:\Users\homepc\Documents\FPSMonitor.txt
2019-10-07 18:38 - 2018-04-27 21:38 - 000000000 ____D C:\Fraps
2019-10-07 18:38 - 2018-04-09 23:54 - 000000000 ____D C:\ProgramData\Jeppesen
2019-10-07 18:38 - 2018-04-05 15:40 - 000000000 ___DC C:\Users\homepc\AppData\Local\Apps\2.0
2019-10-07 18:38 - 2017-08-04 23:22 - 000000000 ____D C:\Program Files\Core Temp
2019-10-07 18:38 - 2017-06-24 12:57 - 000000000 ____D C:\ProgramData\Doctor Web
2019-10-07 18:36 - 2018-12-16 22:38 - 000002430 _____ C:\WINDOWS\system32\Tasks\MSIAfterburner
2019-10-07 18:36 - 2018-09-15 09:09 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-10-07 18:30 - 2019-02-03 16:47 - 000000000 ____D C:\WX Advantage Radar
2019-10-07 18:22 - 2017-06-25 12:42 - 000000000 ___DC C:\Users\homepc\AppData\Local\CrashDumps
2019-10-07 18:07 - 2018-12-16 22:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-07 17:44 - 2018-10-18 13:18 - 000505592 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\drweblwf.sys
2019-10-07 17:10 - 2018-12-21 21:57 - 000000000 ___DC C:\Users\homepc\Documents\ViberDownloads
2019-10-07 16:56 - 2017-12-10 18:46 - 000000000 ___DC C:\Users\homepc\AppData\Local\Packages
2019-10-07 16:43 - 2018-12-16 22:37 - 000977104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-07 16:43 - 2018-09-15 10:31 - 000000000 ____D C:\WINDOWS\INF
2019-10-07 16:39 - 2017-09-22 17:08 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2019-10-07 16:39 - 2017-06-24 12:05 - 000000000 ____D C:\Users\homepc\AppData\Roaming\ViberPC
2019-10-07 16:19 - 2018-12-16 22:38 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1001
2019-10-07 16:19 - 2018-12-16 22:28 - 000002366 _____ C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 16:19 - 2017-06-24 10:46 - 000000000 ___RD C:\Users\homepc\OneDrive
2019-10-07 16:02 - 2018-09-15 10:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 15:41 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-10-07 15:26 - 2018-12-16 22:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\DelayedItemsByChemtableSoftware
2019-10-07 15:26 - 2018-07-18 16:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Telegram Desktop
2019-10-07 15:25 - 2017-06-24 10:45 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-07 15:23 - 2018-11-25 16:43 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Clipdiary
2019-10-07 15:08 - 2018-12-16 22:38 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2357164880-557895980-647672482-1002
2019-10-07 15:08 - 2018-12-16 22:28 - 000002360 _____ C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 15:08 - 2018-09-15 10:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-07 15:08 - 2017-12-10 18:46 - 000000000 ____D C:\Users\test\AppData\Local\Packages
2019-10-07 15:08 - 2017-09-21 18:36 - 000000000 ___RD C:\Users\test\OneDrive
2019-10-07 15:07 - 2017-12-28 23:39 - 000000000 ___RD C:\Users\test\3D Objects
2019-10-07 14:52 - 2017-06-24 13:17 - 000000000 ____D C:\Users\homepc\AppData\Roaming\WhatsApp
2019-10-07 14:18 - 2017-06-24 11:15 - 000000000 ____D C:\ProgramData\Package Cache
2019-10-07 14:11 - 2017-07-25 00:28 - 000000000 ___DC C:\Users\homepc\Documents\AivlaSoft
2019-10-07 13:25 - 2019-05-31 19:10 - 000000000 ____D C:\Users\homepc\AppData\Local\BitTorrentHelper
2019-10-07 02:07 - 2019-08-29 01:11 - 000000000 ____D C:\Users\homepc\AppData\Roaming\vlc
2019-10-06 19:02 - 2019-03-13 13:04 - 000000000 ____D C:\Users\homepc\AppData\Roaming\SimBrief Downloader
2019-10-06 17:35 - 2019-01-28 21:30 - 000000000 ___DC C:\Users\homepc\Documents\Flight Simulator X Files
2019-10-06 17:01 - 2019-01-29 17:38 - 000001155 _____ C:\Users\homepc\Desktop\Active Sky 2016 for FSX.lnk
2019-10-06 15:52 - 2017-09-12 12:56 - 000000000 ____D C:\SoyzClient
2019-10-06 15:34 - 2017-12-29 00:30 - 000000000 ____D C:\ProgramData\Virtuali
2019-10-06 15:28 - 2018-01-28 03:06 - 000000000 ____D C:\Users\Public\Documents\DX10SceneryFixer
2019-10-06 15:28 - 2018-01-28 03:06 - 000000000 ____D C:\ProgramData\Documents\DX10SceneryFixer
2019-10-06 15:26 - 2017-07-24 00:00 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Virtuali
2019-10-06 06:45 - 2017-07-28 03:00 - 000000808 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall .lnk
2019-10-06 06:18 - 2018-07-13 18:04 - 000000000 ____D C:\ProgramData\eSellerate
2019-10-06 05:12 - 2017-12-29 00:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flight One Software
2019-10-06 04:06 - 2019-05-13 01:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drzewiecki Design
2019-10-06 00:37 - 2017-09-16 19:24 - 000000000 ___DC C:\Users\homepc\Documents\vPilot Files
2019-10-06 00:25 - 2018-08-11 14:49 - 000000000 ___DC C:\Users\homepc\AppData\Local\V1_Software
2019-10-06 00:10 - 2019-06-28 19:37 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-10-06 00:10 - 2018-07-27 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Flight
2019-10-06 00:10 - 2017-06-24 10:55 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-10-05 23:50 - 2018-07-13 23:12 - 000000000 ____D C:\Users\homepc\AppData\Roaming\RAASPRO
2019-10-05 23:43 - 2019-05-12 21:02 - 000000000 ___DC C:\Users\homepc\Documents\Prepar3D v4 Add-ons
2019-10-05 17:58 - 2019-03-28 00:56 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-10-05 17:58 - 2017-12-10 19:59 - 000000000 ___RD C:\Users\homepc\3D Objects
2019-10-05 17:58 - 2017-06-24 11:27 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-10-05 17:56 - 2018-09-15 12:11 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-10-05 17:56 - 2018-09-15 12:11 - 000018002 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-10-05 17:56 - 2018-09-15 12:11 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-10-05 17:56 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-05 17:56 - 2018-09-15 09:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-05 17:54 - 2017-06-24 11:38 - 000408644 __RSH C:\bootmgr
2019-10-05 14:37 - 2017-07-26 03:41 - 000737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe
2019-10-05 13:31 - 2017-08-06 18:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimMarket
2019-10-05 12:01 - 2019-02-25 20:38 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Discord
2019-10-05 11:57 - 2017-06-24 11:27 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-10-03 16:00 - 2017-06-24 12:59 - 000000000 ____D C:\Program Files\DrWeb
2019-10-03 12:34 - 2019-03-26 16:25 - 000000000 ____D C:\Users\homepc\AppData\Local\WhatsApp
2019-10-02 21:52 - 2018-12-16 22:38 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-02 21:52 - 2018-12-16 22:38 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-02 21:52 - 2017-11-17 13:13 - 000000000 ____D C:\Program Files (x86)\Google
2019-09-30 20:21 - 2017-09-21 18:40 - 000000000 ____D C:\Temp
2019-09-30 19:49 - 2019-04-10 18:17 - 000001048 _____ C:\Users\Public\Desktop\AIDA64.lnk
2019-09-30 19:49 - 2019-04-10 18:17 - 000001048 _____ C:\ProgramData\Desktop\AIDA64.lnk
2019-09-30 19:49 - 2019-04-10 18:17 - 000000000 ____D C:\Program Files (x86)\AIDA64
2019-09-30 14:10 - 2018-10-18 13:19 - 000860240 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\dwprot.sys
2019-09-30 14:10 - 2018-10-18 13:18 - 000390248 _____ (Doctor Web, Ltd.) C:\WINDOWS\system32\Drivers\spiderg3.sys
2019-09-29 21:14 - 2018-12-25 18:07 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2019-09-29 17:25 - 2018-02-07 01:32 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Wise Disk Cleaner
2019-09-29 17:24 - 2018-12-16 22:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\WiseCleaner
2019-09-29 17:24 - 2018-02-07 01:32 - 000001277 _____ C:\Users\Public\Desktop\Wise Disk Cleaner.lnk
2019-09-29 17:24 - 2018-02-07 01:32 - 000001277 _____ C:\ProgramData\Desktop\Wise Disk Cleaner.lnk
2019-09-29 17:24 - 2018-02-07 01:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner
2019-09-28 20:38 - 2018-03-28 13:04 - 000000000 ____D C:\Boson
2019-09-28 13:25 - 2017-07-24 01:47 - 000000000 ___DC C:\Users\homepc\AppData\Local\Downloaded Installations
2019-09-27 03:54 - 2017-07-23 16:57 - 000000000 ____D C:\Program Files (x86)\EZCA2
2019-09-27 03:53 - 2017-07-23 16:56 - 000000000 ____D C:\EZdok Software
2019-09-27 03:38 - 2019-02-26 02:50 - 000000000 ____D C:\Program Files\EZCA3
2019-09-27 03:36 - 2019-02-25 22:23 - 000000000 ____D C:\Program Files (x86)\Flight1 Purchase Agent
2019-09-27 02:56 - 2019-01-22 23:20 - 000000000 __SHD C:\Users\Public\DRM
2019-09-27 00:17 - 2017-12-28 01:37 - 000002048 _____ C:\WINDOWS\OpusFSX.lic
2019-09-27 00:13 - 2018-01-28 13:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Navdata
2019-09-27 00:13 - 2018-01-28 13:29 - 000002048 _____ C:\WINDOWS\CX750X.lic
2019-09-27 00:12 - 2019-02-25 22:23 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Flight1Purchase
2019-09-27 00:08 - 2019-02-26 02:50 - 000002048 _____ C:\WINDOWS\ezcapro3.lic
2019-09-27 00:02 - 2019-02-25 22:23 - 000083295 _____ C:\Program Files (x86)\F1Uninstall.exe
2019-09-27 00:02 - 2019-02-25 22:23 - 000001194 _____ C:\Users\Public\Desktop\Flight1 Purchase Agent.lnk
2019-09-27 00:02 - 2019-02-25 22:23 - 000001194 _____ C:\ProgramData\Desktop\Flight1 Purchase Agent.lnk
2019-09-26 19:39 - 2018-12-16 22:28 - 000000000 ____D C:\Users\DefaultAppPool
2019-09-26 17:12 - 2017-08-23 12:55 - 000000000 ____D C:\ProgramData\Flight One Software
2019-09-26 04:18 - 2019-02-02 02:16 - 000000109 _____ C:\WINDOWS\GARMINWT.INI
2019-09-26 02:06 - 2018-04-23 00:26 - 000000221 ____C C:\Users\homepc\Documents\ax_files.xml
2019-09-25 20:45 - 2019-05-05 17:20 - 000000000 ____D C:\Program Files (x86)\FSrealWX 3.0
2019-09-25 12:15 - 2017-11-17 13:14 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-25 12:15 - 2017-11-17 13:14 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-09-25 12:15 - 2017-11-17 13:14 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2019-09-25 02:46 - 2017-12-30 20:32 - 000000000 ____D C:\Program Files (x86)\FSBuild
2019-09-25 01:29 - 2019-09-06 19:11 - 000000000 ____D C:\Program Files\Process Lasso
2019-09-25 01:29 - 2019-03-14 16:56 - 000000908 _____ C:\Users\Public\Desktop\Process Lasso Pro.lnk
2019-09-25 01:29 - 2019-03-14 16:56 - 000000908 _____ C:\ProgramData\Desktop\Process Lasso Pro.lnk
2019-09-25 01:29 - 2019-03-14 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso Pro
2019-09-25 01:29 - 2018-12-16 22:38 - 000003106 _____ C:\WINDOWS\system32\Tasks\Process Lasso Management Console (GUI)
2019-09-25 01:29 - 2018-12-16 22:38 - 000003096 _____ C:\WINDOWS\system32\Tasks\Process Lasso Core Engine Only
2019-09-25 01:22 - 2019-02-04 22:22 - 000001970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin Aviation Trainers.lnk
2019-09-24 17:28 - 2019-02-01 14:39 - 000000890 _____ C:\Users\homepc\Desktop\F1GTNConfig.lnk
2019-09-23 23:23 - 2017-06-24 13:17 - 000000000 ___DC C:\Users\homepc\AppData\Local\SquirrelTemp
2019-09-23 22:32 - 2018-05-18 11:38 - 000000000 ___DC C:\Users\homepc\AppData\Local\D3DSCache
2019-09-23 15:09 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-09-23 15:09 - 2017-12-28 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSrealWX
2019-09-23 15:07 - 2018-12-17 14:49 - 000000000 ____D C:\WINDOWS\Minidump
2019-09-23 15:07 - 2018-10-10 18:37 - 000000000 ___RD C:\Users\homepc\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2019-09-22 02:52 - 2019-04-19 00:34 - 000000000 ____D C:\Program Files\WhoCrashed
2019-09-22 00:53 - 2019-05-12 21:02 - 000000000 ___DC C:\Users\homepc\Documents\Prepar3D v4 Files
2019-09-21 22:49 - 2018-04-28 14:14 - 000000000 ____D C:\Users\homepc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flight One Software
2019-09-21 21:37 - 2018-04-30 15:02 - 000000000 ____D C:\Program Files (x86)\PMDG Operations Center
2019-09-21 16:49 - 2017-07-27 15:29 - 000000000 ____D C:\ProgramData\firebird
2019-09-21 15:11 - 2017-07-27 15:27 - 000000000 ____D C:\PRO-ATC-X
2019-09-19 13:15 - 2017-09-14 15:00 - 000000000 ____D C:\DrWebkeys
2019-09-19 13:13 - 2017-07-23 21:34 - 000000000 ____D C:\aerosoft
2019-09-17 11:44 - 2019-02-26 02:03 - 000000035 _____ C:\general.INI
2019-09-17 01:02 - 2017-08-31 16:42 - 000041800 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2019-09-17 00:14 - 2019-05-05 16:34 - 000000000 ____D C:\Users\homepc\AppData\Roaming\FSrealWXv3
2019-09-17 00:13 - 2017-12-28 20:14 - 000000000 ____D C:\Program Files (x86)\FSrealWX_Pro
2019-09-17 00:00 - 2017-12-28 20:14 - 000001124 _____ C:\Users\Public\Desktop\FSrealWX Pro.lnk
2019-09-17 00:00 - 2017-12-28 20:14 - 000001124 _____ C:\ProgramData\Desktop\FSrealWX Pro.lnk
2019-09-16 21:39 - 2019-01-29 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
2019-09-16 21:39 - 2019-01-29 17:37 - 000000000 ____D C:\Program Files (x86)\HiFi
2019-09-16 21:39 - 2018-01-28 03:30 - 000000000 ____D C:\Users\homepc\AppData\Roaming\HiFi
2019-09-16 20:41 - 2018-05-27 13:10 - 000001095 _____ C:\Users\homepc\Desktop\MFSClient.lnk
2019-09-16 19:50 - 2018-02-03 17:52 - 000000000 ____D C:\Program Files (x86)\Addon Manager
2019-09-16 19:30 - 2018-02-03 18:04 - 000000179 _____ C:\Users\homepc\FSDreamTeam_GSX.reg
2019-09-16 15:57 - 2018-02-06 19:31 - 000000000 ___HD C:\3gzV5dAb7FiiwFEW
2019-09-16 11:29 - 2018-01-11 19:31 - 000000000 ___DC C:\Users\homepc\AppData\Local\MEGAsync
2019-09-15 14:00 - 2017-07-02 00:23 - 000002311 _____ C:\Users\Public\Desktop\Bigfoot Networks Killer Network Manager.lnk
2019-09-15 14:00 - 2017-07-02 00:23 - 000002311 _____ C:\ProgramData\Desktop\Bigfoot Networks Killer Network Manager.lnk
2019-09-15 01:27 - 2018-05-12 00:31 - 000000000 ____D C:\AFSD
2019-09-15 00:40 - 2017-12-30 15:36 - 000000000 ___DC C:\Users\homepc\AppData\Local\QSimPlanner
2019-09-15 00:38 - 2017-12-30 15:36 - 000001149 _____ C:\Users\homepc\Desktop\QSimPlanner.lnk
2019-09-15 00:38 - 2017-12-30 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QSimPlanner
2019-09-14 17:33 - 2019-03-13 13:04 - 000002514 _____ C:\Users\homepc\Desktop\SimBrief Downloader.lnk
2019-09-14 11:13 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\Help
2019-09-14 11:08 - 2017-12-27 16:14 - 000000000 ____D C:\[Guru3D.com]-DDU
2019-09-14 11:03 - 2018-12-16 22:38 - 000004570 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2019-09-14 11:03 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-09-14 11:03 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-09-14 11:03 - 2017-06-25 00:42 - 000000000 ___DC C:\Users\homepc\AppData\Local\Adobe
2019-09-14 11:00 - 2019-04-07 00:43 - 000000000 ____D C:\ProgramData\DisplayDriverUninstaller
2019-09-14 11:00 - 2018-07-22 12:22 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-09-14 10:48 - 2018-12-16 22:38 - 000004582 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-09-13 20:15 - 2018-03-04 13:56 - 000000000 ____D C:\ProgramData\FSTramp
2019-09-13 20:07 - 2018-12-08 12:25 - 000000000 ____D C:\Users\Public\Documents\PFPX Data
2019-09-13 20:07 - 2018-12-08 12:25 - 000000000 ____D C:\ProgramData\Documents\PFPX Data
2019-09-13 18:40 - 2019-02-28 01:02 - 000000000 ____D C:\Users\homepc\AppData\Local\ElevatedDiagnostics
2019-09-13 18:35 - 2019-02-03 04:55 - 000001159 _____ C:\Users\homepc\Desktop\Reg Organizer.lnk
2019-09-13 14:20 - 2017-06-24 10:59 - 000000000 ____D C:\Program Files (x86)\Razer
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-09-13 13:29 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-09-13 13:27 - 2018-09-15 10:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-13 13:26 - 2018-09-15 10:36 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-09-13 13:26 - 2018-09-15 10:36 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-09-13 11:47 - 2018-09-15 10:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-09-13 02:09 - 2017-06-24 11:42 - 000000000 ____D C:\Users\Public\Desktop\TC PU Programs
2019-09-13 02:09 - 2017-06-24 11:42 - 000000000 ____D C:\ProgramData\Desktop\TC PU Programs
2019-09-12 23:43 - 2018-02-24 00:15 - 000000000 ____D C:\Users\homepc\AppData\Roaming\uTorrent
2019-09-12 20:36 - 2017-09-01 19:04 - 000001857 _____ C:\Users\homepc\Desktop\FSFX_Tools.lnk
2019-09-11 18:57 - 2017-09-10 16:37 - 000000000 ____D C:\Users\homepc\AppData\Roaming\TS3Client
2019-09-11 01:12 - 2018-04-27 23:56 - 000000000 ____D C:\Program Files\ParkControl
2019-09-10 09:54 - 2018-07-26 13:21 - 000001323 _____ C:\Users\homepc\Desktop\AivlaSoft EFB2 Server.lnk
2019-09-10 09:49 - 2018-07-26 13:21 - 000001338 _____ C:\Users\homepc\Desktop\AivlaSoft EFB2 DbBuilder.lnk
2019-09-08 21:59 - 2019-06-29 00:06 - 000000000 ____D C:\Temp torrents
2019-09-08 19:32 - 2018-08-31 18:23 - 000000000 ___DC C:\Users\homepc\AppData\Local\Ubisoft Game Launcher
2019-09-08 16:41 - 2017-10-15 15:29 - 000002004 _____ C:\Users\homepc\Desktop\FS Real Time.lnk
2019-09-07 22:23 - 2017-07-26 03:41 - 000000000 ____D C:\Program Files (x86)\FS Real Time
2019-09-07 12:48 - 2018-03-04 13:59 - 000001097 _____ C:\Users\Public\Desktop\FSTramp Scenery Assembler.lnk
2019-09-07 12:48 - 2018-03-04 13:59 - 000001097 _____ C:\ProgramData\Desktop\FSTramp Scenery Assembler.lnk
2019-09-07 12:48 - 2018-03-04 13:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSTramp
2019-09-07 12:48 - 2018-03-04 13:56 - 000000000 ____D C:\Program Files (x86)\FSTramp
==================== Files in the root of some directories ================
2018-02-03 18:04 - 2019-09-16 19:30 - 000000179 _____ () C:\Users\homepc\FSDreamTeam_GSX.reg
2017-12-30 20:37 - 2019-09-01 22:20 - 000002065 _____ () C:\Program Files (x86)\3187c76b-7ef1-4f48-bb5e-e5da055a81d9.index
2019-02-25 22:23 - 2019-09-27 00:02 - 000083295 _____ () C:\Program Files (x86)\F1Uninstall.exe
2011-12-03 16:23 - 2008-02-21 21:45 - 000070416 _____ () C:\Program Files (x86)\post-2-12035868936904.jpg
2019-09-27 03:53 - 2019-09-27 03:53 - 000087794 _____ () C:\Program Files (x86)\unEZCA2.exe
2019-01-31 15:53 - 2019-01-24 18:11 - 000000858 _____ () C:\Users\homepc\AppData\Roaming\8f2626ec-b19e-4dc5-9f23-cdc84f045b52.index
2018-06-20 11:47 - 2018-05-20 18:10 - 000000855 _____ () C:\Users\homepc\AppData\Roaming\eb9f97a6-d1cb-4c34-a3de-57fdf241b871.index
2018-11-04 22:39 - 2018-10-04 09:37 - 002385178 _____ () C:\Users\homepc\AppData\Roaming\ec317386-e87d-48c7-ade1-34457a87d179.index
2017-12-20 01:48 - 2017-12-20 01:48 - 000000128 ____H () C:\Users\homepc\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6
2018-12-30 23:40 - 2018-12-30 23:40 - 000212879 _____ () C:\Users\homepc\AppData\Roaming\Lockheed Martin.rar
2017-09-03 12:43 - 2019-05-10 00:22 - 000000369 _____ () C:\Users\homepc\AppData\Roaming\OpenSceneryX Installer.plist
2018-10-27 22:23 - 2018-10-27 22:23 - 000000000 _____ () C:\Users\homepc\AppData\Roaming\Program.cfg
2018-10-25 01:07 - 2019-04-27 14:57 - 000000080 _____ () C:\Users\homepc\AppData\Roaming\WED.prefs
2019-05-10 01:34 - 2019-06-15 22:29 - 000008176 _____ () C:\Users\homepc\AppData\Roaming\XAddonManager.plist
2019-03-18 15:50 - 2019-03-18 15:50 - 000000000 _____ () C:\Users\homepc\AppData\Local\oobelibMkey.log
2019-10-07 18:14 - 2019-10-07 18:14 - 000000218 _____ () C:\Users\homepc\AppData\Local\recently-used.xbel
2019-04-16 15:23 - 2019-05-16 14:14 - 000007653 _____ () C:\Users\homepc\AppData\Local\Resmon.ResmonCfg
2019-04-19 00:39 - 2019-05-09 02:11 - 000001293 _____ () C:\Users\homepc\AppData\Local\Temp1.html
2019-04-19 00:40 - 2019-04-19 00:40 - 000013510 _____ () C:\Users\homepc\AppData\Local\Temp38.html
2019-05-09 02:11 - 2019-05-09 02:11 - 000003111 _____ () C:\Users\homepc\AppData\Local\Temp6.html
2019-08-12 23:06 - 2019-08-12 23:06 - 000017408 _____ () C:\Users\homepc\AppData\Local\WebpageIcons.db
2019-04-05 15:31 - 2019-05-03 12:37 - 000000093 _____ () C:\Users\homepc\AppData\Local\X-Plane 11 Preferences.prf
2019-04-05 15:31 - 2019-08-13 11:02 - 000000037 _____ () C:\Users\homepc\AppData\Local\X-Plane Installer.prf
2019-04-05 15:31 - 2019-05-25 17:50 - 000000075 _____ () C:\Users\homepc\AppData\Local\X-Plane_drm_11.prf
2019-04-05 15:32 - 2019-08-13 10:39 - 000000032 _____ () C:\Users\homepc\AppData\Local\x-plane_install_11.txt
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================