Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-02-2019
Ran by Samrat (administrator) on SAMRAT-VAIO (14-02-2019 15:40:21)
Running from C:\Users\Samrat\Downloads\Programs
Loaded Profiles: Samrat (Available Profiles: Samrat)
Platform: Microsoft Windows 10 Pro Version 1809 17763.316 (X86) Language: English (United States)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Systems, Incorporated) C:\Program Files\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems, Incorporated) C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Windows ® Win 7 DDK provider) C:\Program Files\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Atheros) C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
() C:\Program Files\WinZip\WinZip Smart Monitor\WinZip Compression Smart Monitor Service.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Nero AG) C:\Program Files\Nero\Nero 2018\Nero BackItUp\NBService.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1901.7-0\MsMpEng.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(eVenture Limited) C:\Program Files\hide.me VPN\hidemesvc.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1901.7-0\NisSrv.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(eVenture Limited) C:\Program Files\hide.me VPN\Hide.me.exe
(Corel Corporation) C:\Program Files\WinZip\WinZip Smart Monitor\WinZipCompressionSmartMonitor.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.38.138.0_x86__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.38.138.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Tweaking.com) C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
() C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20388.0_x86__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Qualcomm®Atheros®) C:\Program Files\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Citrix Systems, Inc.) C:\Program Files\Citrix\ICA Client\redirector.exe
(Citrix Systems, Inc.) C:\Program Files\Citrix\ICA Client\Receiver\Receiver.exe
() C:\Program Files\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe
(WinZip Computing, S.L.) C:\Program Files\WinZip\WzPreloader.exe
(Nero AG) C:\Program Files\Nero\Nero 2018\Nero BackItUp\BackItUp.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Advanced Audio v2\pcee4.exe
(BitTorrent Inc.) C:\Users\Samrat\AppData\Roaming\uTorrent\uTorrent.exe
(© 2015 Microsoft Corporation) C:\Users\Samrat\AppData\Local\Microsoft\BingSvc\BingSvc.exe
( ) C:\Program Files\VJoy\VJoy.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-Agent.exe
(Citrix Systems, Inc.) C:\Program Files\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
(BitTorrent Inc.) C:\Users\Samrat\AppData\Roaming\uTorrent\updates\3.5.5_44994\utorrentie.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
(BitTorrent Inc.) C:\Users\Samrat\AppData\Roaming\uTorrent\updates\3.5.5_44994\utorrentie.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IDMan.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IEMonitor.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Users\Samrat\AppData\Local\Microsoft\OneDrive\19.002.0107.0008\FileCoAuth.exe
() C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18114.17710.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ConnectionCenter] => C:\Program Files\Citrix\ICA Client\concentr.exe [526648 2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM\...\Run: [Redirector] => C:\Program Files\Citrix\ICA Client\redirector.exe [231736 2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [4810224 2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [1709312 2017-10-23] (Corel Corporation -> WinZip)
HKLM\...\Run: [WinZip PreLoader] => C:\Program Files\WinZip\WzPreloader.exe [117760 2017-10-23] (WinZip Computing, S.L.) [File not signed]
HKLM\...\Run: [Nero BackItUp] => C:\Program Files\Nero\Nero 2018\Nero BackItup\BackItUp.exe [1162104 2017-12-15] (Nero AG -> Nero AG)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3531952 2015-09-03] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [Dolby Advanced Audio v2] => C:\Program Files\Dolby Advanced Audio v2\pcee4.exe [506712 2011-02-03] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [126592 2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [uTorrent] => C:\Users\Samrat\AppData\Roaming\uTorrent\uTorrent.exe [1908920 2019-01-16] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [BingSvc] => C:\Users\Samrat\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-15] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [VJoy] => C:\Program Files\VJoy\VJoy.exe [122880 2012-10-15] ( )
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [BlueStacks Agent] => C:\Program Files\Bluestacks\HD-Agent.exe [171576 2017-11-29] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5933552 2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [IDMan] => C:\Program Files\Internet Download Manager\IDMan.exe [4113520 2018-03-30] (Tonec Inc. -> Tonec Inc.)
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [14679256 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\...\AppCompatFlags\Custom\iisexpress.exe: [{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb] -> IIS Express Application Compatibility Database for x86
HKLM\Software\...\AppCompatFlags\InstalledSDB\{ad846bae-d44b-4722-abad-f7420e08bcd9}: [DatabasePath] -> C:\WINDOWS\AppPatch\Custom\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-27] (Google Inc -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor (1).lnk [2015-08-24]
ShortcutTarget: HP Digital Imaging Monitor (1).lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2015-08-24]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> X:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes (1).lnk [2017-09-14]
ShortcutTarget: RealTimes (1).lnk -> C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2017-09-14]
ShortcutTarget: RealTimes.lnk -> X:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe (No File)
Startup: C:\Users\Samrat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hide.me VPN.lnk [2019-02-14]
ShortcutTarget: hide.me VPN.lnk -> C:\Program Files\hide.me VPN\Hide.me.exe (eVenture Limited)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{23BAAE18-83C7-4897-8C60-E5265461F646}: [DhcpNameServer] 46.166.179.49 46.166.179.51
Tcpip\..\Interfaces\{30a954a8-dd89-4144-9adf-b72466ce5f0c}: [DhcpNameServer] 123.176.37.37 202.53.8.9
Tcpip\..\Interfaces\{4EDF9EDD-C3A4-4A2A-80C2-DA793530E2AE}: [DhcpNameServer] 109.201.137.40 109.201.137.42
Tcpip\..\Interfaces\{62eb4a9e-0e81-4bcb-8cc7-3cf3df8f503d}: [NameServer] 1.1.1.1 1.0.0.1
Tcpip\..\Interfaces\{62eb4a9e-0e81-4bcb-8cc7-3cf3df8f503d}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{6f622276-a9a8-4ebb-b4f7-1c3eb8d50739}: [DhcpNameServer] 192.168.31.1
Internet Explorer:
==================
HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://in.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180525__yaie
SearchScopes: HKU\S-1-5-21-3818488324-2291645803-3957952478-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://in.search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10440__180525__yaie&p={searchTerms}
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2017-12-14] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2018-12-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-05-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-05-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-05-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-02-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-02-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-02-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-02-04] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll [2016-11-07] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
FireFox:
========
FF DefaultProfile: smsg44jf.default
FF ProfilePath: C:\Users\Samrat\AppData\Roaming\Mozilla\Firefox\Profiles\smsg44jf.default [2019-02-14]
FF NewTab: Mozilla\Firefox\Profiles\smsg44jf.default -> hxxps://in.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180525__yaff
FF Session Restore: Mozilla\Firefox\Profiles\smsg44jf.default -> is enabled.
FF SearchPlugin: C:\Users\Samrat\AppData\Roaming\Mozilla\Firefox\Profiles\smsg44jf.default\searchplugins\yahoo-lavasoft-ff59.xml [2018-05-25]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-09-20]
FF HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\Firefox\Extensions: [mozilla_cc3@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc3.xpi
FF Extension: (IDM Integration Module) - C:\Program Files\Internet Download Manager\idmmzcc3.xpi [2018-02-28]
FF HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Samrat\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Samrat\AppData\Roaming\IDM\idmmzcc5 [2018-04-26] [Legacy] [not signed]
FF HKU\S-1-5-21-3818488324-2291645803-3957952478-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_32_0_0_142.dll [2019-02-12] ()
FF Plugin: @Citrix.com/npican -> C:\Program Files\Citrix\ICA Client\npicaN.dll [2016-11-07] (Citrix Systems, Inc.)
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-01-14] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-10-30] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-27] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-27] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-02-01] (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default [2019-02-11]
CHR Extension: (Slides) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-23]
CHR Extension: (Docs) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-23]
CHR Extension: (Google Drive) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-01]
CHR Extension: (YouTube) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-27]
CHR Extension: (MySmartPrice) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\bofbpdmkbmlancfihdncikcigpokmdda [2018-03-04]
CHR Extension: (DownAlbum) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2019-02-10]
CHR Extension: (Google Search) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-01]
CHR Extension: (Adobe Acrobat) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-04-17]
CHR Extension: (Sheets) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-23]
CHR Extension: (Google Docs Offline) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-25]
CHR Extension: (Price Tracker - Auto Buy, Price History) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\hegbjcdehgihjohghnmdpebepnoalode [2019-02-10]
CHR Extension: (IDM Integration Module) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2019-02-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-05]
CHR Extension: (Gmail) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-04]
CHR Extension: (Chrome Media Router) - C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-10]
CHR Profile: C:\Users\Samrat\AppData\Local\Google\Chrome\User Data\System Profile [2019-02-09]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2018-03-30]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 AtherosSvc; C:\Program Files\Bluetooth Suite\AdminService.exe [275072 2013-11-28] (Qualcomm Atheros -> Windows ® Win 7 DDK provider) [File not signed]
S2 avgsvc; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [935184 2016-12-06] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe [7010976 2019-01-28] (Microsoft Corporation -> Microsoft Corporation)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [300120 2017-03-10] (Intel® pGFX -> Intel Corporation)
R2 hmevpnsvc; C:\Program Files\hide.me VPN\hidemesvc.exe [136864 2019-01-03] (eVenture Limited -> eVenture Limited)
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2016-09-20] (Nero AG -> Nero AG)
S3 Lenovo EasyPlus Hotspot; C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe [509424 2015-06-08] (LENOVO -> Lenovo)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [5073376 2018-09-19] (Malwarebytes Corporation -> Malwarebytes)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [795000 2017-11-27] (Nero AG -> Nero AG)
R2 NeroBackItUpBackgroundService2018; C:\Program Files\Nero\Nero 2018\Nero BackItUp\NBService.exe [287096 2017-12-15] (Nero AG -> Nero AG)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed]
S2 RealPlayerUpdateSvc; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [37104 2017-08-17] (RealNetworks, Inc. -> RealNetworks, Inc.)
R2 RealTimes Desktop Service; C:\Program Files\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [989912 2017-09-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3593264 2019-01-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ShareItSvc; C:\Program Files\Lenovo\SHAREit\SHAREit.Service.exe [33224 2016-04-15] (LENOVO -> SHAREit Technologies Co.Ltd)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [218784 2015-09-03] (Synaptics Incorporated -> Synaptics Incorporated)
S2 TuneUp.UtilitiesSvc; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [4677904 2017-02-21] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
S3 uSHAREitSvc; C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.Service.exe [33224 2017-09-11] (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
S3 VCService; C:\Program Files\Sony\VAIO Care\VCService.exe [57944 2013-08-09] (Sony Corporation -> Sony Corporation)
S2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [869464 2013-07-03] (Sony Corporation -> Sony Corporation)
S3 VSStandardCollectorService140; C:\Program Files\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [48872 2016-03-22] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\NisSrv.exe [3378760 2019-01-25] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\MsMpEng.exe [91760 2019-01-25] (Microsoft Corporation -> Microsoft Corporation)
R2 WinZip Compression Smart Monitor Service; C:\Program Files\WinZip\WinZip Smart Monitor\WinZip Compression Smart Monitor Service.exe [448256 2017-09-01] (Corel Corporation -> )
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-11-28] (Atheros) [File not signed]
R2 SampleCollector; "C:\Program Files\Sony\VAIO Care\VCPerfService.exe" "/service" "/sstates" "/sampleinterval=10000" "/procinterval=5" "/dllinterval=120" "/counter=\Processor(_Total)\% Processor Time:1" "/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1" "/counter=\Network Interface(*)\Bytes Total/sec:1" "/expandcounter=\Processor Information(*)\Processor Frequency:1" "" "/expandcounter=\Processor(*)\% Idle Time:1" "/expandcounter=\Processor(*)\% C1 Time:1" "/expandcounter=\Processor(*)\% C2 Time:1" "/expandcounter=\Processor(*)\%C3 Time:1" "/expandcounter=\Processor(*)\% Processor Time:1" "/directory=C:\ProgramData\Sony Corporation\VAIO Care\inteldata" <==== ATTENTION
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AthBTPort; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [80680 2013-11-28] (Qualcomm Atheros -> Qualcomm Atheros)
R3 athr; C:\WINDOWS\System32\drivers\athw8.sys [3228672 2018-09-15] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
S3 BstkDrv; C:\Program Files\BlueStacks\BstkDrv.sys [218720 2017-11-29] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R3 BTATH_A2DP; C:\WINDOWS\system32\drivers\btath_a2dp.sys [295208 2013-11-28] (Qualcomm Atheros -> Qualcomm Atheros)
R3 btath_avdt; C:\WINDOWS\system32\drivers\btath_avdt.sys [102184 2013-11-28] (Qualcomm Atheros -> Qualcomm Atheros)
R3 BTATH_RCP; C:\WINDOWS\System32\drivers\btath_rcp.sys [120616 2013-11-28] (Qualcomm Atheros -> Qualcomm Atheros)
S3 BTATH_VDP; C:\WINDOWS\system32\drivers\btath_vdp.sys [417576 2013-11-28] (Qualcomm Atheros -> Qualcomm Atheros)
R3 BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [521248 2016-06-26] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [109184 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [30616 2014-12-21] (Elaborate Bytes AG -> Elaborate Bytes AG)
R1 hideFirewall; C:\WINDOWS\System32\drivers\hideFirewall.sys [69064 2018-08-29] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
S3 htcnprot; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [23040 2013-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
R3 igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [3787392 2017-03-10] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 IntcDAud; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [364504 2014-02-20] (Intel Corporation - Software and Firmware Products -> Intel® Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [230120 2019-02-13] (Malwarebytes Corporation -> Malwarebytes)
R3 MEI; C:\WINDOWS\System32\drivers\HECI.sys [55104 2012-07-18] (Intel Corporation -> Intel Corporation)
R3 netr28u; C:\WINDOWS\System32\drivers\netr28u.sys [1824256 2018-09-15] (Microsoft Windows -> MediaTek Inc.)
S3 RSPCIESTOR; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [298736 2015-10-02] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [754456 2015-05-04] (Realtek Semiconductor Corp -> Realtek )
R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [192512 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [37024 2015-12-09] (Synaptics Incorporated -> Synaptics Incorporated)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [147072 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [22728 2017-10-29] (AVG Technologies CZ, s.r.o. -> SlimWare Utilities, Inc.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [35288 2013-08-22] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 TuneUpUtilitiesDrv; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [31792 2017-02-21] (AVG Technologies CZ, s.r.o. -> AVG Netherlands B.V.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [38504 2019-01-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [268792 2019-01-25] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [47608 2019-01-25] (Microsoft Windows -> Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [192512 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-02-14 15:39 - 2019-02-14 15:40 - 000000000 ____D C:\FRST
2019-02-13 18:19 - 2019-02-02 04:01 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2019-02-13 18:19 - 2019-02-02 04:01 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2019-02-13 18:17 - 2019-02-13 18:17 - 000230120 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-02-13 17:23 - 2019-02-13 17:23 - 020812288 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 019023872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 007897088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 006070272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 005112792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 004627456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 003922944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 003743744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 002449920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 002392576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 002323904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 002275888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001463424 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msjet40.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001289192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 001105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000830976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000762272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000451896 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-02-13 17:23 - 2019-02-13 17:23 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd3x40.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd2x40.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-02-13 17:23 - 2019-02-13 17:23 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2019-02-13 17:23 - 2019-02-13 17:23 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nslookup.exe
2019-02-13 17:23 - 2019-02-13 17:23 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-02-13 17:23 - 2019-02-13 17:23 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlahc.dll
2019-02-13 17:23 - 2019-02-13 17:23 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 020655544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 006901048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 004006912 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 003500544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 002782208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 002701312 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 002174264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 002137912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 002038608 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 001725440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 001653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 001357528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-02-13 17:22 - 2019-02-13 17:22 - 001344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 001290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 001219424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 001094440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-02-13 17:22 - 2019-02-13 17:22 - 001012224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000994272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000981304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000841528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000806560 _____ C:\WINDOWS\system32\locale.nls
2019-02-13 17:22 - 2019-02-13 17:22 - 000765960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000762368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000667856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000442384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000394552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000393064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000387384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000365368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000348632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000331592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000331576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-02-13 17:22 - 2019-02-13 17:22 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000199696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000106512 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000101944 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2019-02-13 17:22 - 2019-02-13 17:22 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-02-13 17:22 - 2019-02-13 17:22 - 000038712 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2019-02-13 17:22 - 2019-02-13 17:22 - 000033056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 015224832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 006540424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 005205464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 004762600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 004526080 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 004016128 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 003279360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 002843648 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 002721280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 002053944 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 002021584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001871872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 001720936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001573888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001271608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001254912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001225728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001168384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000970256 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000929280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000701376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-02-13 17:21 - 2019-02-13 17:21 - 000652320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000636696 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000629576 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000539664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000520200 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-02-13 17:21 - 2019-02-13 17:21 - 000513064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000497680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000277536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000237072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000157496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000156680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2019-02-13 17:21 - 2019-02-13 17:21 - 000124432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000096776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000091424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000054248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WindowsTrustedRT.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-02-13 17:21 - 2019-02-13 17:21 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2019-02-13 17:21 - 2019-02-13 17:21 - 000000072 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2019-02-05 21:58 - 2019-02-05 21:58 - 000000000 ____D C:\Users\Samrat\AppData\Local\OneDrive
2019-02-04 10:30 - 2019-02-04 10:30 - 000000954 _____ C:\Users\Samrat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2019-02-04 10:30 - 2019-02-04 10:30 - 000000906 _____ C:\Users\Samrat\Desktop\Start Tor Browser.lnk
2019-02-04 10:28 - 2019-02-04 10:29 - 000000000 ____D C:\Users\Samrat\Desktop\Tor Browser
2019-01-31 11:04 - 2019-01-31 11:04 - 000000000 ___HD C:\OneDriveTemp
2019-01-30 09:30 - 2019-01-30 09:30 - 000000000 ____D C:\ProgramData\Mozilla
2019-01-30 09:00 - 2019-02-14 09:18 - 000000000 ____D C:\Users\Samrat\AppData\LocalLow\uTorrent
2019-01-21 23:12 - 2019-01-21 23:12 - 000001890 _____ C:\Users\Public\Desktop\WinZip.lnk
2019-01-21 19:02 - 2018-12-21 07:46 - 000527681 _____ C:\Users\Samrat\Downloads\VRO-Result-Notification-for-Certificate-Verification20122018.pdf
2019-01-16 10:59 - 2019-01-16 10:59 - 012151808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-01-16 10:59 - 2019-01-16 10:59 - 002986352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2019-01-16 10:59 - 2019-01-16 10:59 - 002594872 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-01-16 10:59 - 2019-01-16 10:59 - 001206784 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-01-16 10:59 - 2019-01-16 10:59 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-01-16 10:59 - 2019-01-16 10:59 - 000142648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-01-16 10:59 - 2019-01-16 10:59 - 000098616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-01-16 10:58 - 2019-01-16 10:58 - 002929152 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-01-16 10:58 - 2019-01-16 10:58 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-02-14 15:44 - 2015-08-22 23:05 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\uTorrent
2019-02-14 15:41 - 2018-09-15 10:40 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-02-14 15:40 - 2016-11-19 10:20 - 000000000 ____D C:\Users\Samrat\AppData\LocalLow\Mozilla
2019-02-14 14:09 - 2015-08-23 22:51 - 000000000 ____D C:\Users\Samrat\Downloads\Compressed
2019-02-14 14:01 - 2015-08-23 22:51 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\DMCache
2019-02-14 10:46 - 2015-08-23 22:51 - 000000000 ____D C:\Users\Samrat\Downloads\Video
2019-02-14 09:54 - 2016-11-25 18:24 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\Hide.me
2019-02-14 09:23 - 2015-08-23 21:09 - 000000000 ___RD C:\Users\Samrat\OneDrive
2019-02-14 09:18 - 2018-10-03 17:07 - 000912284 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-02-14 09:18 - 2018-09-15 10:39 - 000000000 ____D C:\WINDOWS\INF
2019-02-13 23:19 - 2018-06-24 20:19 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2019-02-13 23:19 - 2018-06-24 20:19 - 000002084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2019-02-13 20:43 - 2016-11-18 22:53 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-02-13 20:43 - 2015-08-23 21:28 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2019-02-13 19:23 - 2018-10-03 16:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-02-13 18:20 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-02-13 18:20 - 2018-05-03 21:19 - 000000000 ____D C:\Users\Samrat\AppData\Local\HTC MediaHub
2019-02-13 18:20 - 2015-09-22 20:05 - 000000000 ___RD C:\Users\Samrat\3D Objects
2019-02-13 18:20 - 2015-08-22 22:21 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-02-13 18:18 - 2018-10-03 16:40 - 000446864 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-02-13 18:16 - 2018-10-03 17:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-02-13 18:15 - 2018-09-15 09:38 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2019-02-13 18:13 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\TextInput
2019-02-13 18:13 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-02-13 18:13 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-02-13 18:13 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-02-13 18:13 - 2018-09-15 09:38 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-02-13 18:12 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-02-13 18:12 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-02-13 18:12 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-02-13 17:26 - 2018-09-15 10:32 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-02-13 17:22 - 2013-08-22 13:52 - 000408344 __RSH C:\bootmgr
2019-02-13 17:15 - 2015-08-23 06:54 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-02-13 17:00 - 2015-08-23 06:54 - 126228304 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-02-13 10:26 - 2018-09-15 10:40 - 000000000 ___HD C:\Program Files\WindowsApps
2019-02-12 20:42 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-02-11 18:50 - 2018-10-03 16:47 - 000000000 ____D C:\Users\Samrat
2019-02-11 18:46 - 2015-08-23 21:47 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\vlc
2019-02-11 17:13 - 2016-05-01 14:27 - 000000000 ____D C:\Users\Samrat\OneDrive\Documents\NFS Most Wanted
2019-02-10 08:41 - 2018-11-29 18:13 - 000000000 ____D C:\Program Files\hide.me VPN
2019-02-10 08:29 - 2017-06-15 09:59 - 000000000 ____D C:\Program Files\CCleaner
2019-02-09 19:57 - 2015-08-23 22:51 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\IDM
2019-02-09 12:37 - 2018-07-11 14:19 - 000000000 ____D C:\ProgramData\Packages
2019-02-09 08:50 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-02-08 09:49 - 2018-10-03 16:47 - 000002411 _____ C:\Users\Samrat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-02-04 18:18 - 2018-09-15 10:40 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-02-04 16:06 - 2015-08-24 09:19 - 000000000 ____D C:\Program Files\Microsoft Office
2019-01-30 10:46 - 2018-05-25 16:30 - 000000000 ____D C:\Users\Samrat\AppData\Local\D3DSCache
2019-01-28 17:37 - 2016-11-25 18:24 - 000001056 _____ C:\Users\Public\Desktop\hide.me VPN.lnk
2019-01-28 17:37 - 2016-11-25 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hide.me VPN
2019-01-27 21:49 - 2017-08-22 17:56 - 000012650 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2019-01-25 17:04 - 2017-10-29 15:41 - 000000000 ____D C:\Users\Samrat\AppData\Local\Packages
2019-01-25 13:20 - 2018-11-25 14:59 - 000000000 ____D C:\Users\Samrat\Downloads\New folder
2019-01-25 12:41 - 2018-02-25 16:30 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-01-22 21:49 - 2018-10-02 13:54 - 000129248 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae.sys
2019-01-22 12:14 - 2018-07-11 09:37 - 000002297 _____ C:\Users\Samrat\Desktop\Duplicate File Remover.lnk
2019-01-22 11:09 - 2015-08-22 22:19 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\Adobe
2019-01-22 10:58 - 2015-08-24 09:52 - 000000000 ____D C:\Users\Samrat\AppData\Local\Adobe
2019-01-22 08:48 - 2018-03-12 23:03 - 000000000 ____D C:\Users\Samrat\AppData\Roaming\Umeng
2019-01-21 23:13 - 2015-08-23 22:06 - 000000000 ____D C:\ProgramData\WinZip
2019-01-21 23:12 - 2018-07-11 18:25 - 000001990 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip.lnk
2019-01-21 23:12 - 2018-07-11 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\W