OTL logfile created on: 5/20/2017 2:48:29 PM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE 64bit-Windows 10 Home (Version = 6.3.14393) - Type = System Internet Explorer (Version = 9.11.14393.0) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 86.00% Memory free 3.00 Gb Paging File | 3.00 Gb Available in Paging File | 93.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = F: | %SystemRoot% = F:\WINDOWS | %ProgramFiles% = F:\Program Files (x86) Drive C: | 100.00 Mb Total Space | 63.53 Mb Free Space | 63.53% Space Free | Partition Type: NTFS Drive F: | 458.87 Gb Total Space | 433.55 Gb Free Space | 94.48% Space Free | Partition Type: NTFS Drive G: | 458.87 Gb Total Space | 440.49 Gb Free Space | 95.99% Space Free | Partition Type: NTFS Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2017/05/15 09:03:59 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\fhsvc.dll -- (fhsvc) SRV:[b]64bit:[/b] - [2017/04/27 20:52:48 | 000,347,320 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc) SRV:[b]64bit:[/b] - [2017/04/27 20:51:49 | 003,318,784 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify) SRV:[b]64bit:[/b] - [2017/04/27 20:49:33 | 000,764,392 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\CoreMessaging.dll -- (CoreMessagingRegistrar) SRV:[b]64bit:[/b] - [2017/04/27 20:38:52 | 000,103,712 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend) SRV:[b]64bit:[/b] - [2017/04/27 19:59:15 | 000,635,904 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\FlightSettings.dll -- (wisvc) SRV:[b]64bit:[/b] - [2017/04/27 19:55:27 | 000,407,552 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\Windows.Internal.Management.dll -- (DmEnrollmentSvc) SRV:[b]64bit:[/b] - [2017/04/27 19:51:08 | 002,104,320 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\wlidsvc.dll -- (wlidsvc) SRV:[b]64bit:[/b] - [2017/04/27 19:48:03 | 000,337,920 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\AudioEndpointBuilder.dll -- (AudioEndpointBuilder) SRV:[b]64bit:[/b] - [2017/04/27 19:44:42 | 000,548,864 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\usocore.dll -- (UsoSvc) SRV:[b]64bit:[/b] - [2017/04/27 19:43:45 | 000,560,128 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\AppReadiness.dll -- (AppReadiness) SRV:[b]64bit:[/b] - [2017/04/27 19:43:34 | 000,331,264 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\NgcCtnrSvc.dll -- (NgcCtnrSvc) SRV:[b]64bit:[/b] - [2017/04/27 19:43:31 | 001,184,256 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\Unistore.dll -- (UnistoreSvc) SRV:[b]64bit:[/b] - [2017/04/27 19:42:01 | 001,021,440 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\usermgr.dll -- (UserManager) SRV:[b]64bit:[/b] - [2017/04/27 19:41:36 | 000,650,752 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\RDXService.dll -- (RetailDemo) SRV:[b]64bit:[/b] - [2017/04/27 19:41:24 | 000,983,040 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\ngcsvc.dll -- (NgcSvc) SRV:[b]64bit:[/b] - [2017/04/27 19:40:14 | 000,770,560 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\bisrv.dll -- (BrokerInfrastructure) SRV:[b]64bit:[/b] - [2017/04/27 19:37:57 | 001,984,000 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\diagtrack.dll -- (DiagTrack) SRV:[b]64bit:[/b] - [2017/03/28 01:10:05 | 001,231,872 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\dosvc.dll -- (DoSvc) SRV:[b]64bit:[/b] - [2017/03/18 12:35:45 | 002,278,400 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\AppXDeploymentServer.dll -- (AppXSvc) SRV:[b]64bit:[/b] - [2017/03/04 02:33:28 | 000,095,232 | ---- | M] (Microsoft Corporation) [Disabled] -- F:\Windows\System32\tzautoupdate.dll -- (tzautoupdate) SRV:[b]64bit:[/b] - [2017/03/04 02:29:39 | 000,082,944 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\moshost.dll -- (MapsBroker) SRV:[b]64bit:[/b] - [2017/03/04 02:29:21 | 000,203,264 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\PimIndexMaintenance.dll -- (PimIndexMaintenanceSvc) SRV:[b]64bit:[/b] - [2017/03/04 02:28:56 | 000,349,696 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvcext.dll -- (vmicvss) SRV:[b]64bit:[/b] - [2017/03/04 02:28:56 | 000,349,696 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvcext.dll -- (vmicrdv) SRV:[b]64bit:[/b] - [2017/03/04 02:25:51 | 001,016,320 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\XblAuthManager.dll -- (XblAuthManager) SRV:[b]64bit:[/b] - [2017/03/04 02:24:38 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\XboxNetApiSvc.dll -- (XboxNetApiSvc) SRV:[b]64bit:[/b] - [2017/03/04 02:23:18 | 000,715,776 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\wcmsvc.dll -- (Wcmsvc) SRV:[b]64bit:[/b] - [2017/03/04 02:15:29 | 001,837,056 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\workfolderssvc.dll -- (workfolderssvc) SRV:[b]64bit:[/b] - [2017/03/04 02:12:58 | 000,805,888 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\FrameServer.dll -- (FrameServer) SRV:[b]64bit:[/b] - [2017/03/04 02:11:22 | 001,312,768 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\SensorDataService.exe -- (SensorDataService) SRV:[b]64bit:[/b] - [2017/03/04 02:07:14 | 001,512,448 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\UserDataService.dll -- (UserDataSvc) SRV:[b]64bit:[/b] - [2016/12/14 00:43:24 | 000,201,728 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\ScDeviceEnum.dll -- (ScDeviceEnum) SRV:[b]64bit:[/b] - [2016/11/11 05:20:50 | 000,339,456 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\cdpusersvc.dll -- (CDPUserSvc) SRV:[b]64bit:[/b] - [2016/11/11 05:19:59 | 000,411,648 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\cdpsvc.dll -- (CDPSvc) SRV:[b]64bit:[/b] - [2016/11/11 05:19:35 | 000,285,696 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\EnterpriseAppMgmtSvc.dll -- (EntAppSvc) SRV:[b]64bit:[/b] - [2016/11/11 05:05:32 | 004,136,448 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\Windows.StateRepository.dll -- (StateRepository) SRV:[b]64bit:[/b] - [2016/11/11 05:04:16 | 000,691,712 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\lsm.dll -- (LSM) SRV:[b]64bit:[/b] - [2016/11/02 06:16:47 | 000,265,728 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\NetSetupSvc.dll -- (NetSetupSvc) SRV:[b]64bit:[/b] - [2016/09/15 12:40:41 | 000,140,800 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\RMapi.dll -- (RmSvc) SRV:[b]64bit:[/b] - [2016/09/15 12:35:45 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\SensorService.dll -- (SensorService) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmicvmsession) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmictimesync) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmicshutdown) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmickvpexchange) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmicheartbeat) SRV:[b]64bit:[/b] - [2016/09/15 12:35:06 | 000,305,152 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\icsvc.dll -- (vmicguestinterface) SRV:[b]64bit:[/b] - [2016/09/07 00:55:30 | 000,781,824 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\PhoneService.dll -- (PhoneSvc) SRV:[b]64bit:[/b] - [2016/08/20 01:17:48 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\LicenseManagerSvc.dll -- (LicenseManager) SRV:[b]64bit:[/b] - [2016/08/05 23:36:20 | 000,447,488 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\das.dll -- (DeviceAssociationService) SRV:[b]64bit:[/b] - [2016/08/05 23:34:01 | 000,023,552 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\smphost.dll -- (smphost) SRV:[b]64bit:[/b] - [2016/07/16 07:43:50 | 000,082,944 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\wiarpc.dll -- (WiaRpc) SRV:[b]64bit:[/b] - [2016/07/16 07:43:47 | 000,436,224 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\WalletService.dll -- (WalletService) SRV:[b]64bit:[/b] - [2016/07/16 07:43:18 | 000,167,936 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\NcaSvc.dll -- (NcaSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:42 | 000,088,576 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\NcdAutoSetup.dll -- (NcdAutoSetup) SRV:[b]64bit:[/b] - [2016/07/16 07:42:39 | 000,161,792 | ---- | M] (Microsoft Corporation) [Disabled] -- F:\Windows\System32\Windows.SharedPC.AccountManager.dll -- (shpamsvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:38 | 000,057,344 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\dmwappushsvc.dll -- (dmwappushservice) SRV:[b]64bit:[/b] - [2016/07/16 07:42:36 | 000,183,808 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\dcpsvc.dll -- (DcpSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,093,184 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -- (diagnosticshub.standardcollector.service) SRV:[b]64bit:[/b] - [2016/07/16 07:42:23 | 000,366,592 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\APHostService.dll -- (OneSyncSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:20 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\wephostsvc.dll -- (WEPHOSTSVC) SRV:[b]64bit:[/b] - [2016/07/16 07:42:16 | 000,287,744 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\TieringEngineService.exe -- (TieringEngineService) SRV:[b]64bit:[/b] - [2016/07/16 07:42:16 | 000,013,824 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\svsvc.dll -- (svsvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:13 | 000,590,848 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\SmsRouterSvc.dll -- (SmsRouter) SRV:[b]64bit:[/b] - [2016/07/16 07:42:12 | 000,519,168 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\netprofmsvc.dll -- (netprofm) SRV:[b]64bit:[/b] - [2016/07/16 07:42:12 | 000,052,224 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\MessagingService.dll -- (MessagingService) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,574,976 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\tileobjserver.dll -- (tiledatamodelsvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,387,072 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\SystemEventsBrokerServer.dll -- (SystemEventsBroker) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,339,968 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\ncbservice.dll -- (NcbService) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,234,496 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\System32\wpnservice.dll -- (WpnService) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\tetheringservice.dll -- (icssvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,177,664 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\TimeBrokerServer.dll -- (TimeBrokerSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,074,240 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\WpnUserService.dll -- (WpnUserService) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\lfsvc.dll -- (lfsvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,034,304 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\DevQueryBroker.dll -- (DevQueryBroker) SRV:[b]64bit:[/b] - [2016/07/16 07:42:07 | 001,159,680 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\XblGameSave.dll -- (XblGameSave) SRV:[b]64bit:[/b] - [2016/07/16 07:42:06 | 000,729,328 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\ClipSVC.dll -- (ClipSVC) SRV:[b]64bit:[/b] - [2016/07/16 07:42:06 | 000,024,576 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\AJRouter.dll -- (AJRouter) SRV:[b]64bit:[/b] - [2016/07/16 07:42:05 | 000,197,632 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\DeviceSetupManager.dll -- (DsmSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:05 | 000,152,576 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\dssvc.dll -- (DsSvc) SRV:[b]64bit:[/b] - [2016/07/16 07:42:05 | 000,140,800 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\embeddedmodesvc.dll -- (embeddedmode) SRV:[b]64bit:[/b] - [2016/07/16 07:42:04 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\hvhostsvc.dll -- (HvHost) SRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,321,536 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\System32\BthHFSrv.dll -- (BthHFSrv) SRV:[b]64bit:[/b] - [2016/05/24 13:37:04 | 000,071,168 | ---- | M] (Stéphane Mitermite) [Auto] -- F:\Program Files\FreeMi UPnP Media Server\FreeMi.WindowsService.exe -- (FreeMiWindowsService) SRV - [2017/05/18 04:37:36 | 000,271,864 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- F:\Windows\syswow64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2017/05/04 21:20:48 | 000,173,512 | ---- | M] (Mozilla Foundation) [On_Demand] -- F:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2017/04/27 20:13:28 | 000,298,496 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\syswow64\Windows.Internal.Management.dll -- (DmEnrollmentSvc) SRV - [2017/04/27 19:30:59 | 000,483,840 | ---- | M] (Microsoft Corporation) [Auto] -- F:\Windows\syswow64\CoreMessaging.dll -- (CoreMessagingRegistrar) SRV - [2017/04/05 10:09:10 | 000,317,400 | R--- | M] (Skype Technologies) [Auto] -- F:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2017/03/04 02:16:20 | 000,968,704 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\syswow64\Unistore.dll -- (UnistoreSvc) SRV - [2016/11/14 05:45:38 | 000,426,040 | ---- | M] (NVIDIA Corporation) [Auto] -- F:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2016/11/11 03:05:12 | 003,370,496 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\syswow64\Windows.StateRepository.dll -- (StateRepository) SRV - [2016/08/05 23:33:24 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand] -- F:\Windows\syswow64\smphost.dll -- (smphost) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2017/04/27 20:55:36 | 000,088,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\scmbus.sys -- (scmbus) DRV:[b]64bit:[/b] - [2017/04/27 20:38:51 | 000,557,408 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\spaceport.sys -- (spaceport) DRV:[b]64bit:[/b] - [2017/03/28 01:37:09 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\WINDOWS\System32\drivers\BasicRender.sys -- (BasicRender) DRV:[b]64bit:[/b] - [2017/03/28 01:36:52 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\WINDOWS\System32\drivers\BasicDisplay.sys -- (BasicDisplay) DRV:[b]64bit:[/b] - [2017/03/04 03:24:27 | 000,108,384 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\pdc.sys -- (pdc) DRV:[b]64bit:[/b] - [2017/03/04 03:15:25 | 000,063,328 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\Windows\System32\drivers\dam.sys -- (dam) DRV:[b]64bit:[/b] - [2017/03/04 03:08:59 | 000,130,912 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\storahci.sys -- (storahci) DRV:[b]64bit:[/b] - [2017/03/04 02:34:51 | 000,258,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\xboxgip.sys -- (xboxgip) DRV:[b]64bit:[/b] - [2017/03/04 02:27:56 | 000,719,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\WdiWiFi.sys -- (wdiwifi) DRV:[b]64bit:[/b] - [2016/12/09 06:30:39 | 000,377,184 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\clfs.sys -- (CLFS) DRV:[b]64bit:[/b] - [2016/12/09 05:39:04 | 000,206,776 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand] -- F:\WINDOWS\system32\drivers\nvhda64v.sys -- (NVHDA) DRV:[b]64bit:[/b] - [2016/11/11 06:00:25 | 000,219,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\tpm.sys -- (TPM) DRV:[b]64bit:[/b] - [2016/11/02 06:55:52 | 000,048,992 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\iorate.sys -- (iorate) DRV:[b]64bit:[/b] - [2016/10/14 23:31:37 | 000,227,328 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\Windows\System32\drivers\ahcache.sys -- (ahcache) DRV:[b]64bit:[/b] - [2016/10/05 06:35:31 | 000,279,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2016/10/05 06:09:07 | 000,064,352 | ---- | M] (Avago Technologies) [Kernel | Boot] -- F:\Windows\System32\drivers\MegaSas2i.sys -- (megasas2i) DRV:[b]64bit:[/b] - [2016/09/15 13:29:54 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\vpci.sys -- (vpci) DRV:[b]64bit:[/b] - [2016/09/15 13:29:03 | 000,081,760 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\stornvme.sys -- (stornvme) DRV:[b]64bit:[/b] - [2016/09/15 13:14:50 | 000,119,648 | ---- | M] (Microsoft Corporation) [File_System | Auto] -- F:\WINDOWS\system32\drivers\wcifs.sys -- (wcifs) DRV:[b]64bit:[/b] - [2016/09/10 09:21:43 | 000,118,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\capimg.sys -- (CapImg) DRV:[b]64bit:[/b] - [2016/09/07 01:29:32 | 000,118,112 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv) DRV:[b]64bit:[/b] - [2016/08/20 01:20:50 | 000,043,520 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\xinputhid.sys -- (xinputhid) DRV:[b]64bit:[/b] - [2016/08/06 00:16:50 | 000,073,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\hvservice.sys -- (hvservice) DRV:[b]64bit:[/b] - [2016/07/16 18:45:31 | 000,038,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\terminpt.sys -- (terminpt) DRV:[b]64bit:[/b] - [2016/07/16 18:45:23 | 000,029,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:[b]64bit:[/b] - [2016/07/16 07:44:01 | 000,030,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\WpdUpFltr.sys -- (WpdUpFltr) DRV:[b]64bit:[/b] - [2016/07/16 07:43:06 | 000,123,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\WdNisDrv.sys -- (WdNisDrv) DRV:[b]64bit:[/b] - [2016/07/16 07:43:04 | 000,290,144 | ---- | M] (Microsoft Corporation) [File_System | Boot] -- F:\Windows\System32\drivers\WdFilter.sys -- (WdFilter) DRV:[b]64bit:[/b] - [2016/07/16 07:43:04 | 000,044,056 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\WdBoot.sys -- (WdBoot) DRV:[b]64bit:[/b] - [2016/07/16 07:42:38 | 000,125,440 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- F:\Windows\System32\drivers\Ndu.sys -- (Ndu) DRV:[b]64bit:[/b] - [2016/07/16 07:42:36 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\NdisImPlatform.sys -- (NdisImPlatform) DRV:[b]64bit:[/b] - [2016/07/16 07:42:36 | 000,078,336 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- F:\Windows\System32\drivers\mslldp.sys -- (MsLldp) DRV:[b]64bit:[/b] - [2016/07/16 07:42:36 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\applockerfltr.sys -- (applockerfltr) DRV:[b]64bit:[/b] - [2016/07/16 07:42:35 | 000,003,009 | ---- | M] () [File_System | On_Demand] -- F:\Windows\System32\wbem\refsv1.mof -- (ReFSv1) DRV:[b]64bit:[/b] - [2016/07/16 07:42:35 | 000,000,308 | ---- | M] () [File_System | On_Demand] -- F:\Windows\System32\wbem\ntfs.mof -- (NTFS) DRV:[b]64bit:[/b] - [2016/07/16 07:42:28 | 000,107,032 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\WindowsTrustedRT.sys -- (WindowsTrustedRT) DRV:[b]64bit:[/b] - [2016/07/16 07:42:28 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\Windows\System32\drivers\gpuenergydrv.sys -- (GpuEnergyDrv) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,263,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\ufx01000.sys -- (Ufx01000) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,201,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\VerifierExt.sys -- (VerifierExt) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,151,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\SerCx2.sys -- (SerCx2) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,108,544 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\UcmTcpciCx.sys -- (UcmTcpciCx0101) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,095,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\UcmCx.sys -- (UcmCx0101) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,079,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\SpbCx.sys -- (SpbCx) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,078,336 | ---- | M] (Microsoft Corporation) [File_System | Auto] -- F:\Windows\System32\drivers\storqosflt.sys -- (storqosflt) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,074,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\SerCx.sys -- (SerCx) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\urscx01000.sys -- (UrsCx01000) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,053,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\condrv.sys -- (condrv) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,035,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\IndirectKmd.sys -- (IndirectKmd) DRV:[b]64bit:[/b] - [2016/07/16 07:42:27 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\mshidumdf.sys -- (mshidumdf) DRV:[b]64bit:[/b] - [2016/07/16 07:42:23 | 000,038,752 | ---- | M] (Microsoft Corporation) [Kernel | Disabled] -- F:\Windows\System32\drivers\cnghwassist.sys -- (cnghwassist) DRV:[b]64bit:[/b] - [2016/07/16 07:42:22 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- F:\WINDOWS\system32\drivers\mmcss.sys -- (MMCSS) DRV:[b]64bit:[/b] - [2016/07/16 07:42:18 | 000,088,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\EhStorClass.sys -- (EhStorClass) DRV:[b]64bit:[/b] - [2016/07/16 07:42:12 | 000,120,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\system32\drivers\irda.sys -- (irda) DRV:[b]64bit:[/b] - [2016/07/16 07:42:11 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\NdisVirtualBus.sys -- (NdisVirtualBus) DRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,168,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\msgpioclx.sys -- (GPIOClx0101) DRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,156,000 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\wfplwfs.sys -- (WFPLWFS) DRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,070,144 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- F:\WINDOWS\System32\drivers\registry.sys -- (clreg) DRV:[b]64bit:[/b] - [2016/07/16 07:42:09 | 000,066,560 | ---- | M] (Microsoft Corporation) [File_System | Auto] -- F:\WINDOWS\system32\drivers\wcnfs.sys -- (wcnfs) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,210,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\Ucx01000.sys -- (Ucx01000) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,126,816 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\acpiex.sys -- (acpiex) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,090,624 | ---- | M] () [Kernel | On_Demand] -- F:\Windows\System32\drivers\NetAdapterCx.sys -- (NetAdapterCx) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,088,576 | ---- | M] (Microsoft Corporation) [File_System | System] -- F:\Windows\System32\drivers\filecrypt.sys -- (FileCrypt) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,045,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\Windows\System32\drivers\Udecx.sys -- (UdeCx) DRV:[b]64bit:[/b] - [2016/07/16 07:42:03 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\vhf.sys -- (vhf) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,535,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\UsbHub3.sys -- (USBHUB3) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,381,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\USBXHCI.SYS -- (USBXHCI) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,137,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\ufxsynopsys.sys -- (ufxsynopsys) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,096,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\UfxChipidea.sys -- (UfxChipidea) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,095,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\sdstor.sys -- (sdstor) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\UcmUcsi.sys -- (UcmUcsi) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\urschipidea.sys -- (UrsChipidea) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,027,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\urssynopsys.sys -- (UrsSynopsys) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\genericusbfn.sys -- (genericusbfn) DRV:[b]64bit:[/b] - [2016/07/16 07:41:55 | 000,017,944 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\WindowsTrustedRTProxy.sys -- (WindowsTrustedRTProxy) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,176,384 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys -- (iaLPSS2i_I2C) @iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,081,408 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iai2c.sys -- (iai2c) @iai2c.inf,%iai2c.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,064,512 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys -- (iaLPSS2i_GPIO2) @iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\hidi2c.sys -- (hidi2c) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,050,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\msgpiowin32.sys -- (msgpiowin32) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,050,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\hidinterrupt.sys -- (hidinterrupt) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\buttonconverter.sys -- (buttonconverter) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,034,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,033,280 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iagpio.sys -- (iagpio) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | System] -- F:\WINDOWS\System32\drivers\npsvctrig.sys -- (npsvctrig) DRV:[b]64bit:[/b] - [2016/07/16 07:41:54 | 000,025,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\kdnic.sys -- (kdnic) @kdnic.inf,%KdNic.Service.DispName%;Microsoft Kernel Debug Network Miniport (NDIS 6.20) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 002,104,160 | ---- | M] (Chelsio Communications) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\cht4vx64.sys -- (cht4vbd) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 001,135,456 | ---- | M] (PMC-Sierra) [Kernel | Boot] -- F:\Windows\System32\drivers\adp80xx.sys -- (ADP80XX) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,842,584 | ---- | M] (Mellanox) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\mlx4_bus.sys -- (mlx4_bus) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,673,120 | ---- | M] (Intel Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\iaStorAV.sys -- (iaStorAV) @iastorav.inf,%iaStorAV.DeviceDesc%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,526,176 | ---- | M] (Mellanox) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\ibbus.sys -- (ibbus) @mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,346,976 | ---- | M] (Chelsio Communications) [Kernel | On_Demand] -- F:\Windows\System32\drivers\cht4sx64.sys -- (cht4iscsi) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\VSTXRAID.SYS -- (VSTXRAID) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,283,136 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\e1y60x64.sys -- (e1yexpress) @net1yx64.inf,%E1YExpress.Service.DispName%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,123,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\scmdisk0101.sys -- (scmdisk0101) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,108,896 | ---- | M] (Mellanox) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\ndfltr.sys -- (ndfltr) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,107,360 | ---- | M] (LSI) [Kernel | Boot] -- F:\Windows\System32\drivers\3ware.sys -- (3ware) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,105,824 | ---- | M] (LSI Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\lsi_sas2i.sys -- (LSI_SAS2i) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,101,216 | ---- | M] (Avago Technologies) [Kernel | Boot] -- F:\Windows\System32\drivers\lsi_sas3i.sys -- (LSI_SAS3i) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,082,776 | ---- | M] (LSI Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\lsi_sss.sys -- (LSI_SSS) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,077,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\uaspstor.sys -- (UASPStor) @uaspstor.inf,%UASPortName%;USB Attached SCSI (UAS) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,069,120 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\usbser.sys -- (usbser) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,064,864 | ---- | M] (Mellanox) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\winverbs.sys -- (WinVerbs) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot] -- F:\Windows\System32\drivers\mvumis.sys -- (mvumis) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,061,792 | ---- | M] (Avago Technologies) [Kernel | Boot] -- F:\Windows\System32\drivers\percsas3i.sys -- (percsas3i) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,058,720 | ---- | M] (Avago Technologies) [Kernel | Boot] -- F:\Windows\System32\drivers\percsas2i.sys -- (percsas2i) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,032,096 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\storufs.sys -- (storufs) @storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,032,096 | ---- | M] (Mellanox) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\winmad.sys -- (WinMad) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\UEFI.sys -- (UEFI) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\AcpiDev.sys -- (AcpiDev) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,016,224 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\volume.sys -- (volume) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\acpitime.sys -- (acpitime) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\acpipagr.sys -- (acpipagr) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\bcmfn2.sys -- (bcmfn2) DRV:[b]64bit:[/b] - [2016/07/16 07:41:53 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\bcmfn.sys -- (bcmfn) DRV:[b]64bit:[/b] - [2016/07/16 07:41:52 | 003,418,976 | ---- | M] (QLogic Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2016/07/16 07:41:52 | 000,533,856 | ---- | M] (QLogic Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2016/07/16 07:41:52 | 000,048,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- F:\Windows\System32\drivers\intelpep.sys -- (intelpep) @intelpep.inf,%INTELPEP.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:52 | 000,038,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO) @ialpssi_gpio.inf,%iaLPSSi_GPIO.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,113,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C) @ialpssi_i2c.inf,%iaLPSSi_I2C.SVCDESC%;Intel(R) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\bthhfenum.sys -- (BthHFEnum) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,064,000 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\Synth3dVsc.sys -- (Synth3dVsc) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\BthAvrcpTg.sys -- (BthAvrcpTg) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_a140581a8f8b58b7\CompositeBus.sys -- (CompositeBus) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,035,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\dmvsc.sys -- (dmvsc) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\BthHFHid.sys -- (bthhfhid) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\hyperkbd.sys -- (hyperkbd) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\vmgencounter.sys -- (gencounter) DRV:[b]64bit:[/b] - [2016/07/16 07:41:50 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\vmgid.sys -- (vmgid) DRV:[b]64bit:[/b] - [2014/07/01 18:37:28 | 000,452,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand] -- F:\WINDOWS\System32\drivers\nvstusb.sys -- (NvStUSB) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\defaultuser0_ON_F\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm IE - HKU\Informatique_ON_F\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm IE - HKU\Informatique_ON_F\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset IE - HKU\Informatique_ON_F\Software\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 5D FC ED 13 D1 CE D2 01 [binary data] IE - HKU\Informatique_ON_F\Software\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = [Binary data over 100 bytes] IE - HKU\Informatique_ON_F\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\LocalService_ON_F\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm IE - HKU\NetworkService_ON_F\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: F:\Windows\System32\Macromed\Flash\NPSWF64_25_0_0_171.dll () FF - HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer: F:\Windows\syswow64\Macromed\Flash\NPSWF32_25_0_0_171.dll () FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.131.2: F:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npdeployJava1.dll (Oracle Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.131.2: F:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision: F:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming: F:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 53.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 53.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 52.1.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 52.1.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2017/05/20 14:42:57 | 000,000,000 | ---D | M] (No name found) -- B:\Documents and Settings\Default User\Application Data\Mozilla\Extensions [2017/05/15 14:37:13 | 000,000,000 | ---D | M] (No name found) -- F:\Program Files (x86)\Mozilla Firefox\browser\extensions O1 HOSTS File: ([2017/05/15 09:08:50 | 000,000,824 | ---- | M]) - F:\Windows\System32\drivers\etc\hosts O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - F:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll (Oracle Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] F:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [WindowsDefender] F:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation) O4 - HKU\defaultuser0_ON_F..\Run: [OneDriveSetup] F:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation) O4 - HKU\LocalService_ON_F..\Run: [OneDriveSetup] F:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation) O4 - HKU\NetworkService_ON_F..\Run: [OneDriveSetup] F:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1 O13:[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O18:[b]64bit:[/b] - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - F:\Windows\System32\tbauth.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - F:\Windows\System32\tbauth.dll (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - F:\WINDOWS\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - F:\WINDOWS\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - F:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - ( ) - (Registry value not found) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O24 - Desktop WallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found [b]64bit:[/b] O35 - HKLM\..comfile [open] -- "%1" %* File not found [b]64bit:[/b] O35 - HKLM\..exefile [open] -- "%1" %* File not found O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs:[b]64bit:[/b] shpamsvc - F:\Windows\System32\Windows.SharedPC.AccountManager.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] DcpSvc - F:\Windows\System32\dcpsvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] NcaSvc - F:\Windows\System32\NcaSvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] DmEnrollmentSvc - F:\Windows\System32\Windows.Internal.Management.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] RetailDemo - F:\Windows\System32\RDXService.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] lfsvc - F:\Windows\System32\lfsvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] dmwappushservice - F:\Windows\System32\dmwappushsvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] WpnService - F:\Windows\System32\wpnservice.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] XboxNetApiSvc - F:\Windows\System32\XboxNetApiSvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] DsmSvc - F:\Windows\System32\DeviceSetupManager.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] dosvc - F:\Windows\System32\dosvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] UsoSvc - F:\Windows\System32\usocore.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] wisvc - F:\Windows\System32\FlightSettings.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] UserManager - F:\Windows\System32\usermgr.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] wlidsvc - F:\Windows\System32\wlidsvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] XblAuthManager - F:\Windows\System32\XblAuthManager.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] XblGameSave - F:\Windows\System32\XblGameSave.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] NetSetupSvc - F:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] Ahcache.sys - F:\Windows\System32\drivers\ahcache.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] AppMgmt - Service SafeBootMin:[b]64bit:[/b] Base - Driver Group SafeBootMin:[b]64bit:[/b] BasicDisplay.sys - F:\WINDOWS\System32\drivers\BasicDisplay.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] BasicRender.sys - F:\WINDOWS\System32\drivers\BasicRender.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group SafeBootMin:[b]64bit:[/b] BrokerInfrastructure - F:\Windows\System32\bisrv.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] CoreMessagingRegistrar - F:\Windows\System32\CoreMessaging.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] File system - Driver Group SafeBootMin:[b]64bit:[/b] Filter - Driver Group SafeBootMin:[b]64bit:[/b] HelpSvc - Service SafeBootMin:[b]64bit:[/b] iai2c.sys - F:\WINDOWS\System32\drivers\iai2c.sys (Intel(R) Corporation) SafeBootMin:[b]64bit:[/b] LSM - F:\Windows\System32\lsm.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group SafeBootMin:[b]64bit:[/b] sacsvr - Service SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group SafeBootMin:[b]64bit:[/b] SpbCx.sys - F:\Windows\System32\drivers\SpbCx.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] StateRepository - F:\Windows\System32\Windows.StateRepository.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] SystemEventsBroker - F:\Windows\System32\SystemEventsBrokerServer.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] TBS - Service SafeBootMin:[b]64bit:[/b] TileDataModelSvc - F:\Windows\System32\tileobjserver.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] uefi.sys - F:\WINDOWS\System32\drivers\UEFI.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] UserManager - F:\Windows\System32\usermgr.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] vmms - Service SafeBootMin:[b]64bit:[/b] WinDefend - F:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin:[b]64bit:[/b] {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootMin:[b]64bit:[/b] {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootMin:[b]64bit:[/b] {F2E7DD72-6468-4E36-B6F1-6488F42C1B52} - Firmware SafeBootMin: AppMgmt - Service SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: CoreMessagingRegistrar - F:\Windows\syswow64\CoreMessaging.dll (Microsoft Corporation) SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: StateRepository - F:\Windows\syswow64\Windows.StateRepository.dll (Microsoft Corporation) SafeBootMin: System Bus Extender - Driver Group SafeBootMin: TBS - Service SafeBootMin: vmms - Service SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootMin: {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootMin: {F2E7DD72-6468-4E36-B6F1-6488F42C1B52} - Firmware SafeBootNet:[b]64bit:[/b] Ahcache.sys - F:\Windows\System32\drivers\ahcache.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] AppMgmt - Service SafeBootNet:[b]64bit:[/b] Base - Driver Group SafeBootNet:[b]64bit:[/b] BasicDisplay.sys - F:\WINDOWS\System32\drivers\BasicDisplay.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] BasicRender.sys - F:\WINDOWS\System32\drivers\BasicRender.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group SafeBootNet:[b]64bit:[/b] BrokerInfrastructure - F:\Windows\System32\bisrv.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] CoreMessagingRegistrar - F:\Windows\System32\CoreMessaging.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] File system - Driver Group SafeBootNet:[b]64bit:[/b] Filter - Driver Group SafeBootNet:[b]64bit:[/b] HelpSvc - Service SafeBootNet:[b]64bit:[/b] LSM - F:\Windows\System32\lsm.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Messenger - Service SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group SafeBootNet:[b]64bit:[/b] netprofm - F:\Windows\System32\netprofmsvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Network - Driver Group SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group SafeBootNet:[b]64bit:[/b] rdpencdd.sys - Driver SafeBootNet:[b]64bit:[/b] rdsessmgr - Service SafeBootNet:[b]64bit:[/b] sacsvr - Service SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group SafeBootNet:[b]64bit:[/b] SmartcardSimulator - Driver SafeBootNet:[b]64bit:[/b] SpbCx.sys - F:\Windows\System32\drivers\SpbCx.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] StateRepository - F:\Windows\System32\Windows.StateRepository.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] SystemEventsBroker - F:\Windows\System32\SystemEventsBrokerServer.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] TBS - Service SafeBootNet:[b]64bit:[/b] TDI - Driver Group SafeBootNet:[b]64bit:[/b] TileDataModelSvc - F:\Windows\System32\tileobjserver.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] uefi.sys - F:\WINDOWS\System32\drivers\UEFI.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] UserManager - F:\Windows\System32\usermgr.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] VirtualSmartcardReader - Driver SafeBootNet:[b]64bit:[/b] vmms - Service SafeBootNet:[b]64bit:[/b] Wcmsvc - F:\Windows\System32\wcmsvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WinDefend - F:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet:[b]64bit:[/b] {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootNet:[b]64bit:[/b] {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet:[b]64bit:[/b] {F2E7DD72-6468-4E36-B6F1-6488F42C1B52} - Firmware SafeBootNet: AppMgmt - Service SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: CoreMessagingRegistrar - F:\Windows\syswow64\CoreMessaging.dll (Microsoft Corporation) SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: rdpencdd.sys - Driver SafeBootNet: rdsessmgr - Service SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: SmartcardSimulator - Driver SafeBootNet: StateRepository - F:\Windows\syswow64\Windows.StateRepository.dll (Microsoft Corporation) SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TBS - Service SafeBootNet: TDI - Driver Group SafeBootNet: VirtualSmartcardReader - Driver SafeBootNet: vmms - Service SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootNet: {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: {F2E7DD72-6468-4E36-B6F1-6488F42C1B52} - Firmware ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall ActiveX:[b]64bit:[/b] {31699572-6286-3C1C-A03C-511D59181038} - .NET Framework ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - U ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall ActiveX: {31699572-6286-3C1C-A03C-511D59181038} - .NET Framework ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - U ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP Drivers32:[b]64bit:[/b] aux - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] aux1 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi1 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi2 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi3 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi4 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi5 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi6 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi7 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi8 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midi9 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] midimapper - F:\WINDOWS\System32\midimap.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer1 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer2 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer3 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer4 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer5 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer6 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer7 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer8 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] mixer9 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] msacm.imaadpcm - F:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation) Drivers32:[b]64bit:[/b] msacm.l3acm - F:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32:[b]64bit:[/b] msacm.msadpcm - F:\WINDOWS\System32\msadp32.acm (Microsoft Corporation) Drivers32:[b]64bit:[/b] msacm.msg711 - F:\WINDOWS\System32\msg711.acm (Microsoft Corporation) Drivers32:[b]64bit:[/b] msacm.msgsm610 - F:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation) Drivers32:[b]64bit:[/b] MSVideo8 - F:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.i420 - F:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.iyuv - F:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.mrle - F:\WINDOWS\System32\msrle32.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.msvc - F:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.uyvy - F:\WINDOWS\System32\msyuv.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.yuy2 - F:\WINDOWS\System32\msyuv.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.yvu9 - F:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] vidc.yvyu - F:\WINDOWS\System32\msyuv.dll (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave1 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave2 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave3 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave4 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave5 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave6 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave7 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave8 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wave9 - F:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation) Drivers32:[b]64bit:[/b] wavemapper - F:\WINDOWS\System32\msacm32.drv (Microsoft Corporation) Drivers32: msacm.l3acm - F:\Windows\syswow64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: MSVideo8 - F:\WINDOWS\SysWow64\vfwwdm32.dll (Microsoft Corporation) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2017/05/20 03:59:34 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\ESET [2017/05/20 03:48:14 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\FSDART [2017/05/20 03:48:00 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\F-Secure [2017/05/20 03:48:00 | 000,000,000 | ---D | C] -- F:\ProgramData\F-Secure [2017/05/20 02:10:09 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\OpenOffice [2017/05/20 02:09:37 | 000,000,000 | --SD | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 [2017/05/20 02:09:08 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\OpenOffice 4 [2017/05/20 02:04:20 | 000,000,000 | ---D | C] -- F:\Users\Informatique\Desktop\OpenOffice 4.1.1 (fr) Installation Files [2017/05/20 01:17:53 | 000,000,000 | ---D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMi UPnP Media Server [2017/05/20 01:17:48 | 000,000,000 | ---D | C] -- F:\Program Files\FreeMi UPnP Media Server [2017/05/18 04:38:52 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Macromedia [2017/05/18 04:34:17 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Adobe [2017/05/18 04:29:46 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\ElevatedDiagnostics [2017/05/18 04:16:19 | 000,000,000 | ---D | C] -- F:\Users\Informatique\Desktop\Anciennes données de Firefox [2017/05/17 01:49:56 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Yahoo [2017/05/17 01:49:13 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\YSearchUtil [2017/05/17 01:47:03 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files\Java [2017/05/17 01:46:58 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Sun [2017/05/17 01:46:54 | 000,097,856 | ---- | C] (Oracle Corporation) -- F:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll [2017/05/17 01:46:54 | 000,000,000 | ---D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [2017/05/17 01:46:38 | 000,000,000 | ---D | C] -- F:\ProgramData\Oracle [2017/05/17 01:46:34 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Java [2017/05/15 22:41:17 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Comms [2017/05/15 22:26:03 | 000,000,000 | ---D | C] -- F:\ProgramData\Microsoft OneDrive [2017/05/15 22:24:24 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Publishers [2017/05/15 22:24:10 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2017/05/15 22:24:10 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2017/05/15 22:24:07 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Adobe [2017/05/15 22:24:06 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\VirtualStore [2017/05/15 22:24:04 | 000,000,000 | -H-D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned [2017/05/15 22:24:04 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\TileDataLayer [2017/05/15 22:24:04 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Packages [2017/05/15 22:24:03 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\ConnectedDevicesPlatform [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\AppData\Local\Temporary Internet Files [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\Documents\Mes vidéos [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\Documents\Mes images [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\Documents\Ma musique [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\AppData\Local\Historique [2017/05/15 22:23:48 | 000,000,000 | -HSD | C] -- F:\Users\Informatique\AppData\Local\Application Data [2017/05/15 22:23:48 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\LocalLow [2017/05/15 22:23:47 | 000,000,000 | --SD | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft [2017/05/15 22:23:47 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell [2017/05/15 22:23:47 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [2017/05/15 22:23:47 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2017/05/15 22:23:47 | 000,000,000 | R--D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [2017/05/15 22:23:47 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Temp [2017/05/15 22:23:47 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming [2017/05/15 22:23:47 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Microsoft [2017/05/15 22:23:47 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2017/05/15 22:23:47 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local [2017/05/15 21:30:59 | 000,000,000 | -HSD | C] -- F:\$RECYCLE.BIN [2017/05/15 19:07:31 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\MRT [2017/05/15 18:26:10 | 002,717,184 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PrintConfig.dll [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\ProgramData\Modèles [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\Users\Public\Documents\Mes vidéos [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\Users\Public\Documents\Mes images [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\ProgramData\Menu Démarrer [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\Users\Public\Documents\Ma musique [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\Program Files\Fichiers communs [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\Documents and Settings [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\ProgramData\Documents [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\ProgramData\Bureau [2017/05/15 18:23:55 | 000,000,000 | -HSD | C] -- F:\ProgramData\Application Data [2017/05/15 18:15:42 | 000,000,000 | ---D | C] -- F:\ProgramData\NVIDIA [2017/05/15 18:15:37 | 006,789,056 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\System32\nvcpl.dll [2017/05/15 18:15:37 | 003,528,128 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\System32\nvsvc64.dll [2017/05/15 18:15:37 | 002,558,512 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\System32\nvsvcr.dll [2017/05/15 18:15:37 | 000,384,888 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\System32\nvmctray.dll [2017/05/15 18:15:37 | 000,062,328 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\System32\nvshext.dll [2017/05/15 18:15:36 | 000,000,000 | ---D | C] -- F:\WINDOWS\SoftwareDistribution [2017/05/15 18:15:17 | 000,000,000 | ---D | C] -- F:\ProgramData\NVIDIA Corporation [2017/05/15 18:15:08 | 000,000,000 | ---D | C] -- F:\Program Files\NVIDIA Corporation [2017/05/15 18:11:32 | 000,000,000 | ---D | C] -- F:\ProgramData\USOShared [2017/05/15 18:10:54 | 000,000,000 | -H-D | C] -- F:\Program Files\Uninstall Information [2017/05/15 18:09:46 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\SleepStudy [2017/05/15 18:09:46 | 000,000,000 | ---D | C] -- F:\WINDOWS\ServiceProfiles [2017/05/15 18:09:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\Microsoft [2017/05/15 15:16:44 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\NVIDIA [2017/05/15 14:52:59 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Skype [2017/05/15 14:52:56 | 000,000,000 | ---D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2017/05/15 14:52:55 | 000,000,000 | R--D | C] -- F:\Program Files (x86)\Skype [2017/05/15 14:52:55 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files\Skype [2017/05/15 14:52:51 | 000,000,000 | ---D | C] -- F:\ProgramData\Skype [2017/05/15 14:52:41 | 000,000,000 | ---D | C] -- F:\ProgramData\Package Cache [2017/05/15 14:51:47 | 000,000,000 | ---D | C] -- F:\ProgramData\Hewlett-Packard [2017/05/15 14:51:43 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Thunderbird [2017/05/15 14:51:43 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Thunderbird [2017/05/15 14:51:19 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Mozilla Thunderbird [2017/05/15 14:49:27 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\NVIDIA Corporation [2017/05/15 14:49:20 | 000,615,992 | ---- | C] (NVIDIA Corporation) -- F:\WINDOWS\SysWow64\nvStreaming.exe [2017/05/15 14:48:28 | 000,091,832 | ---- | C] (Khronos Group) -- F:\WINDOWS\System32\OpenCL.dll [2017/05/15 14:48:28 | 000,076,864 | ---- | C] (Khronos Group) -- F:\WINDOWS\SysWow64\OpenCL.dll [2017/05/15 14:37:19 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Mozilla [2017/05/15 14:37:19 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Mozilla [2017/05/15 14:37:13 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Mozilla Maintenance Service [2017/05/15 14:37:11 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Mozilla Firefox [2017/05/15 14:26:33 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Roaming\Macromedia [2017/05/15 14:24:41 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\MicrosoftEdge [2017/05/15 14:24:38 | 000,000,000 | ---D | C] -- F:\Users\Informatique\AppData\Local\Diagnostics [2017/05/15 09:27:05 | 000,000,000 | ---D | C] -- F:\WINDOWS\InfusedApps [2017/05/15 09:26:39 | 000,000,000 | ---D | C] -- F:\WINDOWS\Panther [2017/05/15 09:26:19 | 000,000,000 | ---D | C] -- F:\Windows.old [2017/05/15 09:25:00 | 000,000,000 | ---D | C] -- F:\WINDOWS\Setup [2017/05/15 09:21:10 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\XPSViewer [2017/05/15 09:21:10 | 000,000,000 | ---D | C] -- F:\WINDOWS\OCR [2017/05/15 09:21:08 | 000,000,000 | ---D | C] -- F:\Program Files\Reference Assemblies [2017/05/15 09:21:08 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Reference Assemblies [2017/05/15 09:21:08 | 000,000,000 | ---D | C] -- F:\Program Files\MSBuild [2017/05/15 09:21:08 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\MSBuild [2017/05/15 09:19:34 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\winrm [2017/05/15 09:19:34 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\WCN [2017/05/15 09:19:34 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sysprep [2017/05/15 09:19:34 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\slmgr [2017/05/15 09:19:34 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Printing_Admin_Scripts [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers\UMDF [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers\UMDF\fr-FR [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers\fr-FR [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\fr [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers\UMDF\en-US [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers\en-US [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\en [2017/05/15 09:19:33 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\0409 [2017/05/15 09:19:32 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\winrm [2017/05/15 09:19:31 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WCN [2017/05/15 09:19:31 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\slmgr [2017/05/15 09:19:31 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Printing_Admin_Scripts [2017/05/15 09:19:29 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\fr [2017/05/15 09:19:29 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\en [2017/05/15 09:19:25 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\UMDF\fr-FR [2017/05/15 09:19:25 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\fr-FR [2017/05/15 09:19:25 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\UMDF\en-US [2017/05/15 09:19:25 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\en-US [2017/05/15 09:19:25 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\0409 [2017/05/15 09:19:24 | 000,000,000 | ---D | C] -- F:\WINDOWS\fr-FR [2017/05/15 09:19:24 | 000,000,000 | ---D | C] -- F:\WINDOWS\en-US [2017/05/15 09:19:24 | 000,000,000 | ---D | C] -- F:\WINDOWS\DigitalLocker [2017/05/15 09:15:18 | 000,835,576 | ---- | C] (Adobe Systems Incorporated) -- F:\WINDOWS\SysWow64\FlashPlayerApp.exe [2017/05/15 09:15:18 | 000,177,656 | ---- | C] (Adobe Systems Incorporated) -- F:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl [2017/05/15 09:13:12 | 000,209,408 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msclmd.dll [2017/05/15 09:12:59 | 000,231,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\msclmd.dll [2017/05/15 09:12:45 | 000,000,000 | --SD | C] -- F:\WINDOWS\SysWow64\Nui [2017/05/15 09:12:45 | 000,000,000 | --SD | C] -- F:\WINDOWS\SysWow64\F12 [2017/05/15 09:12:45 | 000,000,000 | --SD | C] -- F:\WINDOWS\SysWow64\DiagSvcs [2017/05/15 09:12:45 | 000,000,000 | --SD | C] -- F:\WINDOWS\SysWow64\Configuration [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\zh-TW [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\zh-TW [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\zh-HK [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\zh-HK [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\zh-CN [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\zh-CN [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\WinMetadata [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WinMetadata [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\winevt [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\WindowsPowerShell [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\Web [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\wbem [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\Vss [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\uk-UA [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\twain_32 [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\tr-TR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\tracing [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\th-TH [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\Temp [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\Tasks [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Tasks [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\TAPI [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\syswow64 [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SystemResources [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SystemApps [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sv-SE [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sru [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sr-Latn-RS [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sr-Latn-CS [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sppui [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\spp [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Speech_OneCore [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Speech [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\SMI [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sl-SI [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\sk-SK [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\setup [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ru-RU [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ro-RO [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\restore [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Recovery [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\RasToast [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ras [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\pt-PT [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\pt-BR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\pl-PL [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\oobe [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\nl-NL [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\networklist [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\NDF [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\nb-NO [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\MUI [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\MsDtc [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\MSDRM [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\migwiz [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\migration [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\MailContactsCalendarSync [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Macromed [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\lv-LV [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\lt-LT [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\LogFiles [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Licenses [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ko-KR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ja-JP [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\it-IT [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Ipmi [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\InstallShield [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\InputMethod [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\inetsrv [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\IME [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\icsxml [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\hu-HU [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\hr-HR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\he-IL [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\GroupPolicyUsers [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\GroupPolicy [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\FxsTmp [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\fr-FR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\fr-CA [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\fi-FI [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\et-EE [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\es-MX [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\es-ES [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\en-US [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\en-GB [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\el-GR [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\DriverStore [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\drivers [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\downlevel [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Dism [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\de-DE [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\da-DK [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\cs-CZ [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\config [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Com [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\catroot [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\Bthprops [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\bg-BG [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\ar-SA [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\AppLocker [2017/05/15 09:12:45 | 000,000,000 | ---D | C] -- F:\WINDOWS\SysWow64\AdvancedInstallers [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\Nui [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\ProgramData\Microsoft [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\F12 [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\dsc [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\Downloaded Program Files [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\DiagSvcs [2017/05/15 09:12:44 | 000,000,000 | --SD | C] -- F:\WINDOWS\System32\Configuration [2017/05/15 09:12:44 | 000,000,000 | R-SD | C] -- F:\WINDOWS\Media [2017/05/15 09:12:44 | 000,000,000 | R-SD | C] -- F:\WINDOWS\Fonts [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\PrintDialog [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\Offline Web Pages [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\MiracastView [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\Microsoft.NET [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\ImmersiveControlPanel [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\WINDOWS\assembly [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories [2017/05/15 09:12:44 | 000,000,000 | R--D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility [2017/05/15 09:12:44 | 000,000,000 | -HSD | C] -- F:\Program Files\Windows Sidebar [2017/05/15 09:12:44 | 000,000,000 | -HSD | C] -- F:\Program Files (x86)\Windows Sidebar [2017/05/15 09:12:44 | 000,000,000 | -HSD | C] -- F:\WINDOWS\Installer [2017/05/15 09:12:44 | 000,000,000 | -H-D | C] -- F:\Program Files\WindowsApps [2017/05/15 09:12:44 | 000,000,000 | -H-D | C] -- F:\ProgramData [2017/05/15 09:12:44 | 000,000,000 | -H-D | C] -- F:\WINDOWS\ELAMBKUP [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WindowsPowerShell [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\WindowsPowerShell [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\WindowsPowerShell [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Portable Devices [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Portable Devices [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Photo Viewer [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Photo Viewer [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows NT [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows NT [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Multimedia Platform [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Multimedia Platform [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Media Player [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Media Player [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Mail [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Mail [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Windows Defender [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Windows Defender [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WinBioPlugIns [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WinBioDatabase [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\WDI [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\wbem [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\ProgramData\USOPrivate [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\uk-UA [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\tr-TR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\th-TH [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Tasks [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\SystemResetPlatform [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Common Files\System [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files\System [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Sysprep [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sv-SE [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sru [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sr-Latn-RS [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sr-Latn-CS [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sppui [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\spp [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\spool [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Speech_OneCore [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Speech_OneCore [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Speech [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System\Speech [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Speech [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\ProgramData\SoftwareDistribution [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sl-SI [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\sk-SK [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\SKB [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\ShellExperiences [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\setup [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Common Files\Services [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files\Services [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\security [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\SecureBootUpdates [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\schemas [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\SchCache [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ru-RU [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ro-RO [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\restore [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Resources [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\rescache [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Registration [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\ProgramData\regid.1991-06.com.microsoft [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Recovery [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\RasToast [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ras [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\pt-PT [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\pt-BR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ProximityToast [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Provisioning [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\prefetch [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\PolicyDefinitions [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\PointOfService [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\pl-PL [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\PLA [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Performance [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\PerfLogs [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\oobe [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\nl-NL [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\networklist [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\NDF [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\nb-NO [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\MUI [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\MsDtc [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\MSDRM [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\ModemLogs [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\migwiz [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\migration [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Migration [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Microsoft.NET [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Common Files\microsoft shared [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files\Microsoft Shared [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\MailContactsCalendarSync [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Macromed [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\lv-LV [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\lt-LT [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Logs [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\LogFiles [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\LiveKernelReports [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Licenses [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\L2Schemas [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ko-KR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ja-jp [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\it-IT [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Ipmi [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files\Internet Explorer [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Internet Explorer [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\InputMethod [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\InputMethod [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\inetsrv [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\IME [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\IME [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\icsxml [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\hu-HU [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\hr-HR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Help [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\he-IL [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\GroupPolicyUsers [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\GroupPolicy [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Globalization [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\GameBarPresenceWriter [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\FxsTmp [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\fr-FR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\fr-CA [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\fi-FI [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\et-EE [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\etc [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\es-MX [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\es-ES [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\en-US [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\en-GB [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\el-GR [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\downlevel [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Dism [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\diagnostics [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\de-DE [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\debug [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\DDFs [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\da-DK [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Cursors [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\cs-CZ [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\ProgramData\Comms [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Com [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\CodeIntegrity [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\catroot2 [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Bthprops [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Branding [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\Boot [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\Boot [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\bg-BG [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\bcastdvr [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\ar-SA [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\AppReadiness [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\appraiser [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\AppPatch [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\AppLocker [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\appcompat [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\AdvancedInstallers [2017/05/15 09:12:44 | 000,000,000 | ---D | C] -- F:\WINDOWS\addins [2017/05/15 09:12:21 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers\UMDF [2017/05/15 09:12:21 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\drivers [2017/05/15 09:10:52 | 000,000,000 | ---D | C] -- F:\WINDOWS\INF [2017/05/15 08:53:27 | 000,000,000 | ---D | C] -- F:\WINDOWS\CbsTemp [2017/05/15 08:46:18 | 000,000,000 | R--D | C] -- F:\Users [2017/05/15 08:46:18 | 000,000,000 | R--D | C] -- F:\Program Files [2017/05/15 08:46:18 | 000,000,000 | R--D | C] -- F:\Program Files (x86) [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\WinSxS [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\Windows [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32 [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\SMI [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\servicing [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\DriverStore [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\config [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\Program Files\Common Files [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\Program Files (x86)\Common Files [2017/05/15 08:46:18 | 000,000,000 | ---D | C] -- F:\WINDOWS\System32\CatRoot [2017/05/15 07:40:09 | 000,000,000 | -H-D | C] -- F:\$SysReset [2017/05/10 09:41:07 | 005,722,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\windows.storage.dll [2017/05/10 09:41:07 | 000,846,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WinTypes.dll [2017/05/10 09:41:07 | 000,484,584 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AudioSes.dll [2017/05/10 09:41:06 | 003,106,304 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mstsc.exe [2017/05/10 09:41:05 | 006,665,952 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll [2017/05/10 09:41:05 | 000,255,488 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\unimdm.tsp [2017/05/10 09:41:04 | 007,468,544 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mstscax.dll [2017/05/10 09:41:04 | 000,783,360 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\TSWorkspace.dll [2017/05/10 09:41:04 | 000,224,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ExSMime.dll [2017/05/10 09:41:04 | 000,026,112 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\odbcconf.dll [2017/05/10 09:41:03 | 005,685,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Data.Pdf.dll [2017/05/10 09:41:03 | 000,589,312 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll [2017/05/10 09:41:02 | 001,232,384 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Maps.dll [2017/05/10 09:41:02 | 001,221,120 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Audio.dll [2017/05/10 09:41:02 | 000,654,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MbaeApiPublic.dll [2017/05/10 09:41:02 | 000,357,376 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Geolocation.dll [2017/05/10 09:41:02 | 000,218,624 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WwaApi.dll [2017/05/10 09:41:01 | 003,733,504 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\D3DCompiler_47.dll [2017/05/10 09:41:01 | 001,170,944 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll [2017/05/10 09:41:00 | 002,994,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\win32kfull.sys [2017/05/10 09:40:59 | 013,873,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.dll [2017/05/10 09:40:59 | 002,646,528 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CertEnroll.dll [2017/05/10 09:40:58 | 004,023,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfcore.dll [2017/05/10 09:40:58 | 001,851,696 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfmp4srcsnk.dll [2017/05/10 09:40:58 | 001,360,456 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfnetsrc.dll [2017/05/10 09:40:58 | 001,277,856 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfasfsrcsnk.dll [2017/05/10 09:40:58 | 001,202,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfmpeg2srcsnk.dll [2017/05/10 09:40:58 | 000,981,888 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfnetcore.dll [2017/05/10 09:40:58 | 000,641,024 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MCRecvSrc.dll [2017/05/10 09:40:57 | 003,307,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MFMediaEngine.dll [2017/05/10 09:40:57 | 001,077,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Editing.dll [2017/05/10 09:40:57 | 000,675,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Networking.dll [2017/05/10 09:40:57 | 000,598,528 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Web.dll [2017/05/10 09:40:57 | 000,400,384 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToManager.dll [2017/05/10 09:40:57 | 000,141,824 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Radios.dll [2017/05/10 09:40:57 | 000,117,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AuthBroker.dll [2017/05/10 09:40:57 | 000,094,208 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.StateRepositoryClient.dll [2017/05/10 09:40:56 | 001,247,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Globalization.dll [2017/05/10 09:40:56 | 001,013,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Web.Http.dll [2017/05/10 09:40:56 | 000,751,104 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll [2017/05/10 09:40:56 | 000,355,328 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\RTMediaFrame.dll [2017/05/10 09:40:55 | 004,614,656 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.dll [2017/05/10 09:40:55 | 000,621,056 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.dll [2017/05/10 09:40:55 | 000,343,040 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToDevice.dll [2017/05/10 09:40:55 | 000,288,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CryptoWinRT.dll [2017/05/10 09:40:55 | 000,248,832 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dlnashext.dll [2017/05/10 09:40:55 | 000,223,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\InstallAgentUserBroker.exe [2017/05/10 09:40:55 | 000,220,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToReceiver.dll [2017/05/10 09:40:55 | 000,156,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserDeviceRegistration.dll [2017/05/10 09:40:54 | 001,431,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll [2017/05/10 09:40:54 | 001,243,136 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.FaceAnalysis.dll [2017/05/10 09:40:54 | 001,004,544 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll [2017/05/10 09:40:54 | 000,895,488 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Streaming.dll [2017/05/10 09:40:54 | 000,691,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\TokenBroker.dll [2017/05/10 09:40:54 | 000,584,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll [2017/05/10 09:40:54 | 000,562,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.SmartCards.dll [2017/05/10 09:40:54 | 000,374,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.LowLevel.dll [2017/05/10 09:40:54 | 000,314,368 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Usb.dll [2017/05/10 09:40:54 | 000,298,496 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Internal.Management.dll [2017/05/10 09:40:54 | 000,262,144 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Picker.dll [2017/05/10 09:40:54 | 000,237,568 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SyncSettings.dll [2017/05/10 09:40:54 | 000,185,856 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Authentication.Identity.Provider.dll [2017/05/10 09:40:54 | 000,180,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\InstallAgent.exe [2017/05/10 09:40:54 | 000,175,616 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Scanners.dll [2017/05/10 09:40:54 | 000,141,312 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dialclient.dll [2017/05/10 09:40:54 | 000,116,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CloudExperienceHostCommon.dll [2017/05/10 09:40:54 | 000,115,712 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Core.dll [2017/05/10 09:40:54 | 000,103,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Devices.dll [2017/05/10 09:40:53 | 001,656,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Perception.dll [2017/05/10 09:40:53 | 000,795,648 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MiracastReceiver.dll [2017/05/10 09:40:53 | 000,653,312 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.AccountsControl.dll [2017/05/10 09:40:53 | 000,557,568 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\StoreAgent.dll [2017/05/10 09:40:53 | 000,498,688 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mbsmsapi.dll [2017/05/10 09:40:53 | 000,431,616 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\efswrt.dll [2017/05/10 09:40:53 | 000,426,496 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Wallet.dll [2017/05/10 09:40:53 | 000,392,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Gaming.Input.dll [2017/05/10 09:40:53 | 000,332,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Internal.Bluetooth.dll [2017/05/10 09:40:53 | 000,315,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Gaming.XboxLive.Storage.dll [2017/05/10 09:40:53 | 000,202,752 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.HumanInterfaceDevice.dll [2017/05/10 09:40:53 | 000,142,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.WiFi.dll [2017/05/10 09:40:53 | 000,136,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WinRtTracing.dll [2017/05/10 09:40:53 | 000,134,144 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ErrorDetails.dll [2017/05/10 09:40:53 | 000,113,152 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Lights.dll [2017/05/10 09:40:52 | 001,170,944 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Speech.dll [2017/05/10 09:40:52 | 000,901,120 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll [2017/05/10 09:40:52 | 000,747,520 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Ocr.dll [2017/05/10 09:40:52 | 000,670,208 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.PointOfService.dll [2017/05/10 09:40:52 | 000,483,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.AllJoyn.dll [2017/05/10 09:40:52 | 000,483,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CoreMessaging.dll [2017/05/10 09:40:52 | 000,386,048 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.WiFiDirect.dll [2017/05/10 09:40:52 | 000,348,160 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Midi.dll [2017/05/10 09:40:52 | 000,284,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.dll [2017/05/10 09:40:52 | 000,271,360 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\deviceaccess.dll [2017/05/10 09:40:52 | 000,263,472 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Storage.ApplicationData.dll [2017/05/10 09:40:52 | 000,184,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserMgrProxy.dll [2017/05/10 09:40:52 | 000,138,240 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DisplayManager.dll [2017/05/10 09:40:52 | 000,118,272 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AppointmentActivation.dll [2017/05/10 09:40:52 | 000,095,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserDataTimeUtil.dll [2017/05/10 09:40:51 | 001,255,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll [2017/05/10 09:40:51 | 000,861,024 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LicenseManager.dll [2017/05/10 09:40:51 | 000,713,216 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wpnapps.dll [2017/05/10 09:40:51 | 000,238,080 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AboveLockAppHost.dll [2017/05/10 09:40:50 | 001,534,464 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Graphics.Printing.3D.dll [2017/05/10 09:40:50 | 000,975,744 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\twinapi.appcore.dll [2017/05/10 09:40:50 | 000,827,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\twinui.appcore.dll [2017/05/10 09:40:50 | 000,819,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AppContracts.dll [2017/05/10 09:40:50 | 000,566,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ShareHost.dll [2017/05/10 09:40:50 | 000,500,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Graphics.Printing.dll [2017/05/10 09:40:49 | 007,626,752 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\twinui.dll [2017/05/10 09:40:47 | 002,749,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mispace.dll [2017/05/10 09:40:47 | 001,414,208 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\gdi32full.dll [2017/05/10 09:40:46 | 004,312,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\explorer.exe [2017/05/10 09:40:45 | 002,168,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\combase.dll [2017/05/10 09:40:45 | 002,154,496 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\storagewmi.dll [2017/05/10 09:40:45 | 000,886,272 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\aadtb.dll [2017/05/10 09:40:44 | 002,747,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rdpcore.dll [2017/05/10 09:40:44 | 001,993,216 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dwmcore.dll [2017/05/10 09:40:44 | 001,987,584 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mssrch.dll [2017/05/10 09:40:43 | 002,008,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DWrite.dll [2017/05/10 09:40:43 | 001,323,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_fs.dll [2017/05/10 09:40:42 | 001,137,152 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_health.dll [2017/05/10 09:40:42 | 000,601,952 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\NetSetupEngine.dll [2017/05/10 09:40:42 | 000,525,312 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LogonController.dll [2017/05/10 09:40:42 | 000,284,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\apprepsync.dll [2017/05/10 09:40:41 | 000,781,144 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WWAHost.exe [2017/05/10 09:40:41 | 000,719,872 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_sr.dll [2017/05/10 09:40:41 | 000,557,408 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\spaceport.sys [2017/05/10 09:40:41 | 000,299,520 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserDataAccountApis.dll [2017/05/10 09:40:41 | 000,231,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll [2017/05/10 09:40:40 | 000,764,928 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mprddm.dll [2017/05/10 09:40:39 | 000,798,208 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\authui.dll [2017/05/10 09:40:39 | 000,546,304 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\uReFS.dll [2017/05/10 09:40:39 | 000,493,920 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SettingSyncHost.exe [2017/05/10 09:40:39 | 000,352,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MMDevAPI.dll [2017/05/10 09:40:39 | 000,125,952 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\apprepapi.dll [2017/05/10 09:40:38 | 001,413,632 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\OpcServices.dll [2017/05/10 09:40:38 | 000,075,776 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\updatepolicy.dll [2017/05/10 09:40:36 | 001,631,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Resources.dll [2017/05/10 09:40:36 | 001,228,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\usercpl.dll [2017/05/10 09:40:36 | 000,857,600 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\EmailApis.dll [2017/05/10 09:40:36 | 000,361,104 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\tsmf.dll [2017/05/10 09:40:36 | 000,352,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Enumeration.dll [2017/05/10 09:40:35 | 000,965,472 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ReAgent.dll [2017/05/10 09:40:35 | 000,709,120 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CPFilters.dll [2017/05/10 09:40:35 | 000,450,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rastls.dll [2017/05/10 09:40:35 | 000,291,328 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\adsnt.dll [2017/05/10 09:40:35 | 000,276,832 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\input.dll [2017/05/10 09:40:35 | 000,206,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\bthprops.cpl [2017/05/10 09:40:35 | 000,095,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\BluetoothApis.dll [2017/05/10 09:40:35 | 000,088,416 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\scmbus.sys [2017/05/10 09:40:34 | 003,689,984 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msi.dll [2017/05/10 09:40:34 | 000,525,824 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PrintDialogs.dll [2017/05/10 09:40:34 | 000,318,464 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LocationApi.dll [2017/05/10 09:40:34 | 000,203,776 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\credprovhost.dll [2017/05/10 09:40:34 | 000,114,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\setupugc.exe [2017/05/10 09:40:34 | 000,044,032 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\virtdisk.dll [2017/05/10 09:40:33 | 001,755,136 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DeviceFlows.DataModel.dll [2017/05/10 09:40:33 | 000,506,880 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DevicePairing.dll [2017/05/10 09:40:33 | 000,404,992 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dsreg.dll [2017/05/10 09:40:32 | 000,433,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\imapi2.dll [2017/05/10 09:40:32 | 000,368,128 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\puiobj.dll [2017/05/10 09:40:32 | 000,285,184 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.BlockedShutdown.dll [2017/05/10 09:40:32 | 000,165,376 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ReInfo.dll [2017/05/10 09:40:32 | 000,089,600 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CameraCaptureUI.dll [2017/05/10 09:40:31 | 000,334,848 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rastlsext.dll [2017/05/10 09:40:31 | 000,333,312 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SensorsApi.dll [2017/05/10 09:40:31 | 000,328,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\daxexec.dll [2017/05/10 09:40:31 | 000,206,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\vaultcli.dll [2017/05/10 09:40:31 | 000,134,656 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Energy.dll [2017/05/10 09:40:31 | 000,027,648 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\BthTelemetry.dll [2017/05/10 09:40:29 | 004,596,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\xpsrchvw.exe [2017/05/10 09:40:29 | 003,520,512 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\xpsrchvw.exe [2017/05/10 09:40:29 | 000,295,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\unimdm.tsp [2017/05/10 09:40:28 | 002,424,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Perception.dll [2017/05/10 09:40:28 | 001,388,544 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Cred.dll [2017/05/10 09:40:28 | 001,080,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Ocr.dll [2017/05/10 09:40:28 | 000,193,536 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WinRtTracing.dll [2017/05/10 09:40:28 | 000,149,504 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Core.dll [2017/05/10 09:40:27 | 000,963,584 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WebcamUi.dll [2017/05/10 09:40:27 | 000,846,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WebcamUi.dll [2017/05/10 09:40:27 | 000,816,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.dll [2017/05/10 09:40:27 | 000,561,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Wallet.dll [2017/05/10 09:40:27 | 000,467,968 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Gaming.XboxLive.Storage.dll [2017/05/10 09:40:27 | 000,358,912 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.dll [2017/05/10 09:40:27 | 000,245,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WwaApi.dll [2017/05/10 09:40:27 | 000,123,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mssprxy.dll [2017/05/10 09:40:26 | 002,538,496 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mssrch.dll [2017/05/10 09:40:26 | 001,424,896 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.Maps.dll [2017/05/10 09:40:26 | 001,369,088 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.Phone.dll [2017/05/10 09:40:26 | 001,266,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Input.Inking.dll [2017/05/10 09:40:26 | 000,391,168 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wuuhext.dll [2017/05/10 09:40:24 | 000,857,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WWAHost.exe [2017/05/10 09:40:24 | 000,548,864 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\usocore.dll [2017/05/10 09:40:24 | 000,233,472 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MusNotification.exe [2017/05/10 09:40:18 | 000,293,888 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\updatehandlers.dll [2017/05/10 09:40:14 | 001,507,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.FaceAnalysis.dll [2017/05/10 09:40:12 | 000,372,736 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\RDXTaskFactory.dll [2017/05/10 09:40:12 | 000,252,416 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Security.Authentication.Identity.Provider.dll [2017/05/10 09:40:11 | 001,702,392 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfasfsrcsnk.dll [2017/05/10 09:40:11 | 000,671,744 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mbsmsapi.dll [2017/05/10 09:40:11 | 000,590,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\efswrt.dll [2017/05/10 09:40:11 | 000,260,608 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\InstallAgentUserBroker.exe [2017/05/10 09:40:11 | 000,216,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Scanners.dll [2017/05/10 09:40:11 | 000,211,968 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\InstallAgent.exe [2017/05/10 09:40:10 | 001,988,048 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfmp4srcsnk.dll [2017/05/10 09:40:10 | 001,908,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AzureSettingSyncProvider.dll [2017/05/10 09:40:09 | 003,778,048 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MFMediaEngine.dll [2017/05/10 09:40:09 | 001,403,392 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Editing.dll [2017/05/10 09:40:09 | 001,302,136 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfmpeg2srcsnk.dll [2017/05/10 09:40:09 | 001,145,344 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\EmailApis.dll [2017/05/10 09:40:09 | 001,072,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfnetcore.dll [2017/05/10 09:40:09 | 000,748,544 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\StoreAgent.dll [2017/05/10 09:40:08 | 000,864,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wpnapps.dll [2017/05/10 09:40:08 | 000,458,752 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\RTMediaFrame.dll [2017/05/10 09:40:08 | 000,411,648 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SensorsApi.dll [2017/05/10 09:40:07 | 006,288,384 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.dll [2017/05/10 09:40:07 | 004,260,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfcore.dll [2017/05/10 09:40:07 | 001,860,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Store.dll [2017/05/10 09:40:07 | 001,293,152 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\LicenseManager.dll [2017/05/10 09:40:06 | 000,092,512 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpudd.dll [2017/05/10 09:40:05 | 002,213,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\KernelBase.dll [2017/05/10 09:40:05 | 001,131,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\localspl.dll [2017/05/10 09:40:05 | 000,284,160 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AboveLockAppHost.dll [2017/05/10 09:40:04 | 007,220,184 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\windows.storage.dll [2017/05/10 09:40:04 | 001,078,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Streaming.dll [2017/05/10 09:40:04 | 000,774,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\oleaut32.dll [2017/05/10 09:40:04 | 000,611,328 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Graphics.Printing.dll [2017/05/10 09:40:03 | 008,170,600 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll [2017/05/10 09:40:02 | 008,076,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mstscax.dll [2017/05/10 09:40:01 | 004,149,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpcorets.dll [2017/05/10 09:40:01 | 002,390,016 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\smartscreen.exe [2017/05/10 09:40:00 | 012,349,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wmp.dll [2017/05/10 09:40:00 | 001,984,000 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\diagtrack.dll [2017/05/10 09:39:59 | 001,217,024 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Audio.dll [2017/05/10 09:39:59 | 000,846,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MbaeApiPublic.dll [2017/05/10 09:39:59 | 000,765,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Sensors.dll [2017/05/10 09:39:59 | 000,456,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\puiobj.dll [2017/05/10 09:39:58 | 013,441,536 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wmp.dll [2017/05/10 09:39:58 | 000,119,808 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDataTimeUtil.dll [2017/05/10 09:39:57 | 000,999,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\TSWorkspace.dll [2017/05/10 09:39:56 | 001,366,016 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wpncore.dll [2017/05/10 09:39:56 | 000,847,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\NetSetupEngine.dll [2017/05/10 09:39:56 | 000,794,928 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll [2017/05/10 09:39:56 | 000,596,040 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mf.dll [2017/05/10 09:39:56 | 000,453,536 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\services.exe [2017/05/10 09:39:55 | 001,359,360 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\usercpl.dll [2017/05/10 09:39:55 | 000,983,040 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ngcsvc.dll [2017/05/10 09:39:55 | 000,860,160 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mprddm.dll [2017/05/10 09:39:55 | 000,387,864 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wmpps.dll [2017/05/10 09:39:54 | 003,299,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mstsc.exe [2017/05/10 09:39:54 | 003,134,976 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpcore.dll [2017/05/10 09:39:54 | 000,627,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SpaceControl.dll [2017/05/10 09:39:54 | 000,331,264 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\NgcCtnrSvc.dll [2017/05/10 09:39:51 | 000,408,600 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\tsmf.dll [2017/05/10 09:39:51 | 000,244,824 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mfps.dll [2017/05/10 09:39:49 | 003,059,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\msi.dll [2017/05/10 09:39:49 | 000,443,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MMDevAPI.dll [2017/05/10 09:39:47 | 000,526,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\winspool.drv [2017/05/10 09:39:40 | 000,583,680 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintDialogs.dll [2017/05/10 09:39:39 | 000,307,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintDialogs3D.dll [2017/05/10 09:39:37 | 000,579,584 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.UX.EapRequestHandler.dll [2017/05/10 09:39:36 | 001,184,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Unistore.dll [2017/05/10 09:39:36 | 000,796,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\fvewiz.dll [2017/05/10 09:39:36 | 000,502,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rastls.dll [2017/05/10 09:39:36 | 000,439,296 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wksprt.exe [2017/05/10 09:39:36 | 000,394,240 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpclip.exe [2017/05/10 09:39:36 | 000,375,296 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rastlsext.dll [2017/05/10 09:39:36 | 000,329,728 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\fvecpl.dll [2017/05/10 09:39:36 | 000,165,376 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\storewuauth.dll [2017/05/10 09:39:36 | 000,132,096 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintWSDAHost.dll [2017/05/10 09:39:35 | 000,360,448 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpencom.dll [2017/05/10 09:39:34 | 018,365,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\edgehtml.dll [2017/05/10 09:39:34 | 000,691,712 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msfeeds.dll [2017/05/10 09:39:34 | 000,223,744 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ie4uinit.exe [2017/05/10 09:39:32 | 000,081,408 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mshtmled.dll [2017/05/10 09:39:31 | 002,027,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\inetcpl.cpl [2017/05/10 09:39:31 | 000,759,296 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\msfeeds.dll [2017/05/10 09:39:30 | 002,096,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\inetcpl.cpl [2017/05/10 09:39:30 | 000,270,336 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dxtrans.dll [2017/05/10 09:39:29 | 001,509,376 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ieapfltr.dll [2017/05/10 09:39:28 | 008,125,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Chakra.dll [2017/05/10 09:39:28 | 000,276,992 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\dxtrans.dll [2017/05/10 09:39:28 | 000,088,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mshtmled.dll [2017/05/10 09:39:27 | 001,513,472 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\win32kbase.sys [2017/05/10 09:39:27 | 000,402,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\dxgmms1.sys [2017/05/10 09:39:26 | 001,637,888 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ieapfltr.dll [2017/05/10 09:39:26 | 000,467,968 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Geolocation.dll [2017/05/10 09:39:26 | 000,328,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Storage.ApplicationData.dll [2017/05/10 09:39:26 | 000,261,632 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\indexeddbserver.dll [2017/05/10 09:39:26 | 000,030,208 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\odbcconf.dll [2017/05/10 09:39:25 | 000,635,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\FlightSettings.dll [2017/05/10 09:39:23 | 007,784,288 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ntoskrnl.exe [2017/05/10 09:39:23 | 001,589,760 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\msdtctm.dll [2017/05/10 09:39:23 | 001,277,824 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ole32.dll [2017/05/10 09:39:23 | 001,040,896 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\NaturalLanguage6.dll [2017/05/10 09:39:23 | 000,539,136 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToManager.dll [2017/05/10 09:39:22 | 005,611,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\d2d1.dll [2017/05/10 09:39:22 | 001,738,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WindowsCodecs.dll [2017/05/10 09:39:22 | 000,937,984 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MCRecvSrc.dll [2017/05/10 09:39:21 | 004,474,368 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\D3DCompiler_47.dll [2017/05/10 09:39:20 | 001,328,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Web.Http.dll [2017/05/10 09:39:20 | 000,924,672 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.BackgroundTransfer.dll [2017/05/10 09:39:20 | 000,913,920 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.dll [2017/05/10 09:39:20 | 000,774,656 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Web.dll [2017/05/10 09:39:19 | 001,157,000 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\twinapi.appcore.dll [2017/05/10 09:39:19 | 000,875,520 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\TokenBroker.dll [2017/05/10 09:39:19 | 000,431,616 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WpAXHolder.dll [2017/05/10 09:39:19 | 000,425,984 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\aadcloudap.dll [2017/05/10 09:39:17 | 022,569,472 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\edgehtml.dll [2017/05/10 09:39:15 | 006,042,624 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Chakra.dll [2017/05/10 09:39:13 | 000,650,752 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\RDXService.dll [2017/05/10 09:39:13 | 000,311,296 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SyncSettings.dll [2017/05/10 09:39:12 | 001,105,408 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\MiracastReceiver.dll [2017/05/10 09:39:12 | 000,949,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.PointOfService.dll [2017/05/10 09:39:12 | 000,603,488 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ContentDeliveryManager.Utilities.dll [2017/05/10 09:39:12 | 000,568,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.LowLevel.dll [2017/05/10 09:39:12 | 000,472,064 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Bluetooth.dll [2017/05/10 09:39:12 | 000,442,368 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToDevice.dll [2017/05/10 09:39:12 | 000,437,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Usb.dll [2017/05/10 09:39:12 | 000,337,408 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Picker.dll [2017/05/10 09:39:12 | 000,279,552 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.HumanInterfaceDevice.dll [2017/05/10 09:39:12 | 000,279,552 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToReceiver.dll [2017/05/10 09:39:12 | 000,185,344 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DisplayManager.dll [2017/05/10 09:39:12 | 000,144,896 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Lights.dll [2017/05/10 09:39:12 | 000,090,624 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Printers.dll [2017/05/10 09:39:11 | 002,208,768 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Graphics.Printing.3D.dll [2017/05/10 09:39:11 | 001,275,392 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Bluetooth.dll [2017/05/10 09:39:11 | 000,912,384 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.SmartCards.dll [2017/05/10 09:39:11 | 000,800,768 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Security.Authentication.Web.Core.dll [2017/05/10 09:39:11 | 000,505,856 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.WiFiDirect.dll [2017/05/10 09:39:10 | 017,198,592 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.dll [2017/05/10 09:39:09 | 004,744,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\jscript9.dll [2017/05/10 09:39:08 | 003,664,384 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\jscript9.dll [2017/05/10 09:39:08 | 001,121,280 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\aadtb.dll [2017/05/10 09:39:08 | 000,945,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WpcWebFilter.dll [2017/05/10 09:39:08 | 000,661,504 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WpcWebFilter.dll [2017/05/10 09:39:08 | 000,418,304 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.BlockedShutdown.dll [2017/05/10 09:39:07 | 002,478,080 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DWrite.dll [2017/05/10 09:39:06 | 002,286,592 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\dwmcore.dll [2017/05/10 09:39:06 | 002,104,320 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wlidsvc.dll [2017/05/10 09:39:06 | 000,735,744 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\LogonController.dll [2017/05/10 09:39:04 | 002,084,352 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DeviceFlows.DataModel.dll [2017/05/10 09:39:04 | 000,691,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ieproxy.dll [2017/05/10 09:39:04 | 000,306,688 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ieproxy.dll [2017/05/10 09:39:04 | 000,241,504 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CloudExperienceHost.dll [2017/05/10 09:39:03 | 000,458,752 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Enumeration.dll [2017/05/10 09:39:03 | 000,320,512 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\thumbcache.dll [2017/05/10 09:39:02 | 001,631,232 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.Resources.dll [2017/05/10 09:39:02 | 000,099,328 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\browserbroker.dll [2017/05/10 09:39:01 | 000,971,264 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\twinui.appcore.dll [2017/05/10 09:39:01 | 000,591,360 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\vbscript.dll [2017/05/10 09:39:01 | 000,339,456 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ConhostV2.dll [2017/05/10 09:39:01 | 000,026,976 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\browser_broker.exe [2017/05/10 09:39:00 | 000,083,968 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\tdc.ocx [2017/05/10 09:39:00 | 000,073,728 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\tdc.ocx [2017/05/10 09:38:59 | 000,243,712 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\credprovhost.dll [2017/05/10 09:38:59 | 000,112,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CameraCaptureUI.dll [2017/05/10 09:38:58 | 000,634,368 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\StructuredQuery.dll [2017/05/10 09:38:57 | 001,790,464 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\LocationFramework.dll [2017/05/10 09:38:57 | 000,822,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Chakradiag.dll [2017/05/10 09:38:57 | 000,410,112 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DevicesFlowBroker.dll [2017/05/10 09:38:57 | 000,187,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\dialclient.dll [2017/05/10 09:38:57 | 000,139,264 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\iepeers.dll [2017/05/10 09:38:56 | 000,635,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\jscript9diag.dll [2017/05/10 09:38:56 | 000,231,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\shutdownux.dll [2017/05/10 09:38:56 | 000,169,984 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Energy.dll [2017/05/10 09:38:56 | 000,049,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\catsrvps.dll [2017/05/10 09:38:55 | 000,692,224 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CellularAPI.dll [2017/05/10 09:38:55 | 000,126,464 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\iepeers.dll [2017/05/10 09:38:52 | 000,775,168 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\GamePanel.exe [2017/05/10 09:38:52 | 000,379,904 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\apprepsync.dll [2017/05/10 09:38:52 | 000,176,128 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\apprepapi.dll [2017/05/10 09:38:50 | 001,359,872 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SharedStartModel.dll [2017/05/10 09:38:49 | 002,914,816 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CertEnroll.dll [2017/05/10 09:38:49 | 001,586,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Globalization.dll [2017/05/10 09:38:49 | 000,295,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\dlnashext.dll [2017/05/10 09:38:49 | 000,146,432 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AuthBroker.dll [2017/05/10 09:38:48 | 004,749,824 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingsHandlers_nt.dll [2017/05/10 09:38:48 | 000,391,168 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\oleacc.dll [2017/05/10 09:38:47 | 001,692,160 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AppXDeploymentExtensions.onecore.dll [2017/05/10 09:38:47 | 001,600,624 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\sppobjs.dll [2017/05/10 09:38:47 | 000,268,800 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\UserMgrProxy.dll [2017/05/10 09:38:46 | 007,216,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Data.Pdf.dll [2017/05/10 09:38:46 | 003,613,184 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\win32kfull.sys [2017/05/10 09:38:46 | 001,060,352 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AppContracts.dll [2017/05/10 09:38:45 | 009,131,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\twinui.dll [2017/05/10 09:38:45 | 000,716,800 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ShareHost.dll [2017/05/10 09:38:45 | 000,376,832 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CryptoWinRT.dll [2017/05/10 09:38:45 | 000,329,728 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\deviceaccess.dll [2017/05/10 09:38:41 | 001,569,184 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\gdi32full.dll [2017/05/10 09:38:41 | 000,167,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ErrorDetails.dll [2017/05/10 09:38:40 | 001,010,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\enterprisecsps.dll [2017/05/10 09:38:40 | 000,896,512 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.AccountsControl.dll [2017/05/10 09:38:40 | 000,651,264 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.AllJoyn.dll [2017/05/10 09:38:40 | 000,547,840 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Gaming.Input.dll [2017/05/10 09:38:40 | 000,460,800 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Midi.dll [2017/05/10 09:38:40 | 000,407,552 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Management.dll [2017/05/10 09:38:40 | 000,324,608 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.LockScreen.dll [2017/05/10 09:38:40 | 000,259,072 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Family.SyncEngine.dll [2017/05/10 09:38:40 | 000,196,096 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDeviceRegistration.dll [2017/05/10 09:38:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.WiFi.dll [2017/05/10 09:38:40 | 000,186,368 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Radios.dll [2017/05/10 09:38:40 | 000,156,160 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Family.Client.dll [2017/05/10 09:38:40 | 000,139,776 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Devices.dll [2017/05/10 09:38:40 | 000,101,888 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDeviceRegistration.Ngc.dll [2017/05/10 09:38:39 | 003,290,112 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\mispace.dll [2017/05/10 09:38:39 | 002,915,704 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\combase.dll [2017/05/10 09:38:39 | 001,643,008 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Speech.dll [2017/05/10 09:38:39 | 001,267,512 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WinTypes.dll [2017/05/10 09:38:38 | 000,764,392 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CoreMessaging.dll [2017/05/10 09:38:37 | 004,674,360 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\explorer.exe [2017/05/10 09:38:37 | 002,861,056 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\storagewmi.dll [2017/05/10 09:38:37 | 000,584,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UIRibbonRes.dll [2017/05/10 09:38:37 | 000,584,192 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\UIRibbonRes.dll [2017/05/10 09:38:35 | 002,216,960 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\OpcServices.dll [2017/05/10 09:38:35 | 001,913,856 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_fs.dll [2017/05/10 09:38:35 | 001,021,440 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\usermgr.dll [2017/05/10 09:38:35 | 000,368,640 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\OneBackupHandler.dll [2017/05/10 09:38:34 | 002,510,848 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\NetworkMobileSettings.dll [2017/05/10 09:38:34 | 001,852,200 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\crypt32.dll [2017/05/10 09:38:34 | 001,584,128 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_health.dll [2017/05/10 09:38:34 | 001,490,432 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\lsasrv.dll [2017/05/10 09:38:34 | 000,946,688 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_sr.dll [2017/05/10 09:38:34 | 000,289,792 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DeveloperOptionsSettingsHandlers.dll [2017/05/10 09:38:34 | 000,147,456 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\winsrv.dll [2017/05/10 09:38:34 | 000,091,136 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\updatepolicy.dll [2017/05/10 09:38:33 | 000,628,736 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\uReFS.dll [2017/05/10 09:38:33 | 000,410,464 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\WinSetupUI.dll [2017/05/10 09:38:32 | 000,947,712 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SystemSettings.Handlers.dll [2017/05/10 09:38:32 | 000,578,400 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingSyncHost.exe [2017/05/10 09:38:31 | 000,881,664 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\authui.dll [2017/05/10 09:38:31 | 000,146,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CloudExperienceHostCommon.dll [2017/05/10 09:38:31 | 000,122,880 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.StateRepositoryClient.dll [2017/05/10 09:38:30 | 000,828,416 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\appwiz.cpl [2017/05/10 09:38:30 | 000,770,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\bisrv.dll [2017/05/10 09:38:30 | 000,700,936 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\kernel32.dll [2017/05/10 09:38:30 | 000,374,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\resutils.dll [2017/05/10 09:38:30 | 000,241,152 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\dafBth.dll [2017/05/10 09:38:30 | 000,129,536 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingsHandlers_ClosedCaptioning.dll [2017/05/10 09:38:29 | 001,817,088 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ResetEngine.dll [2017/05/10 09:38:29 | 000,455,520 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\securekernel.exe [2017/05/10 09:38:29 | 000,130,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\SpaceAgent.exe [2017/05/10 09:38:28 | 000,567,296 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\DevicePairing.dll [2017/05/10 09:38:28 | 000,560,128 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AppReadiness.dll [2017/05/10 09:38:28 | 000,322,912 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\input.dll [2017/05/10 09:38:27 | 001,117,024 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ReAgent.dll [2017/05/10 09:38:27 | 000,886,784 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\CPFilters.dll [2017/05/10 09:38:27 | 000,699,744 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wimgapi.dll [2017/05/10 09:38:27 | 000,526,176 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\wimserv.exe [2017/05/10 09:38:27 | 000,501,088 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\spwizeng.dll [2017/05/10 09:38:27 | 000,337,920 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\AudioEndpointBuilder.dll [2017/05/10 09:38:27 | 000,051,712 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\virtdisk.dll [2017/05/10 09:38:27 | 000,035,328 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\spaceman.exe [2017/05/10 09:38:26 | 001,476,608 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\RecoveryDrive.exe [2017/05/10 09:38:26 | 000,673,792 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\winlogon.exe [2017/05/10 09:38:26 | 000,600,576 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\cryptui.dll [2017/05/10 09:38:26 | 000,231,424 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\bthprops.cpl [2017/05/10 09:38:26 | 000,120,832 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\BluetoothApis.dll [2017/05/10 09:38:25 | 000,501,248 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\imapi2.dll [2017/05/10 09:38:25 | 000,380,416 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\LocationApi.dll [2017/05/10 09:38:25 | 000,338,944 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\adsnt.dll [2017/05/10 09:38:25 | 000,150,016 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.AppDefaults.dll [2017/05/10 09:38:25 | 000,148,480 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.System.Profile.RetailInfo.dll [2017/05/10 09:38:24 | 000,267,264 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\vaultcli.dll [2017/05/10 09:38:24 | 000,130,560 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\ConsentUX.dll [2017/05/10 09:38:24 | 000,073,216 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.StateRepositoryBroker.dll [2017/05/10 09:38:24 | 000,032,256 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\BthTelemetry.dll [2017/05/10 09:38:24 | 000,019,456 | ---- | C] (Microsoft Corporation) -- F:\WINDOWS\System32\appidcertstorecheck.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2017/05/20 07:24:48 | 000,067,584 | --S- | M] () -- F:\WINDOWS\bootstat.dat [2017/05/20 07:22:23 | 000,994,614 | ---- | M] () -- F:\WINDOWS\System32\perfh00C.dat [2017/05/20 07:22:23 | 000,782,096 | ---- | M] () -- F:\WINDOWS\System32\perfh009.dat [2017/05/20 07:22:23 | 000,206,862 | ---- | M] () -- F:\WINDOWS\System32\perfc00C.dat [2017/05/20 07:22:23 | 000,183,766 | ---- | M] () -- F:\WINDOWS\System32\perfc009.dat [2017/05/20 07:16:35 | 268,435,456 | -HS- | M] () -- F:\swapfile.sys [2017/05/20 07:16:34 | 1717,637,120 | -HS- | M] () -- F:\hiberfil.sys [2017/05/20 07:10:37 | 000,000,214 | ---- | M] () -- F:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job [2017/05/20 02:24:23 | 000,224,368 | ---- | M] () -- F:\WINDOWS\System32\FNTCACHE.DAT [2017/05/20 02:09:49 | 000,000,000 | --SD | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 [2017/05/20 02:09:37 | 000,001,092 | ---- | M] () -- F:\Users\Public\Desktop\OpenOffice 4.1.1.lnk [2017/05/20 01:17:53 | 000,001,049 | ---- | M] () -- F:\Users\Public\Desktop\FreeMi UPnP Media Server.lnk [2017/05/20 01:17:53 | 000,000,000 | ---D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMi UPnP Media Server [2017/05/17 07:17:50 | 000,136,687 | ---- | M] () -- F:\Users\Informatique\Desktop\pantalon-3253_la-halle-9838ba5c9a4def87d2527c33060dba07-a.jpg [2017/05/17 07:13:41 | 000,096,821 | ---- | M] () -- F:\Users\Informatique\Desktop\264891236-zoom_prd_3s.jpg [2017/05/17 01:46:54 | 000,000,000 | ---D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [2017/05/17 01:46:50 | 000,097,856 | ---- | M] (Oracle Corporation) -- F:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll [2017/05/16 02:36:25 | 000,000,000 | R--D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2017/05/16 02:36:25 | 000,000,000 | R--D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories [2017/05/16 02:36:25 | 000,000,000 | R--D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility [2017/05/16 02:33:04 | 000,015,425 | ---- | M] () -- F:\WINDOWS\System32\OEMDefaultAssociations.xml [2017/05/15 18:10:54 | 000,000,000 | -H-- | M] () -- F:\WINDOWS\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf [2017/05/15 14:52:57 | 000,000,000 | ---D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2017/05/15 14:52:56 | 000,002,640 | ---- | M] () -- F:\Users\Public\Desktop\Skype.lnk [2017/05/15 14:51:25 | 000,001,270 | ---- | M] () -- F:\Users\Public\Desktop\Mozilla Thunderbird.lnk [2017/05/15 14:51:24 | 000,001,282 | ---- | M] () -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk [2017/05/15 14:37:15 | 000,001,232 | ---- | M] () -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2017/05/15 14:37:15 | 000,001,220 | ---- | M] () -- F:\Users\Public\Desktop\Mozilla Firefox.lnk [2017/05/15 09:19:02 | 000,350,774 | ---- | M] () -- F:\WINDOWS\System32\perfi00C.dat [2017/05/15 09:19:02 | 000,040,528 | ---- | M] () -- F:\WINDOWS\System32\perfd00C.dat [2017/05/15 09:12:47 | 000,000,000 | R--D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools [2017/05/15 09:12:47 | 000,000,000 | R--D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp [2017/05/15 09:12:47 | 000,000,000 | ---D | M] -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance [2017/05/15 09:09:02 | 000,209,408 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msclmd.dll [2017/05/15 09:09:02 | 000,000,741 | ---- | M] () -- F:\WINDOWS\SysWow64\NOISE.DAT [2017/05/15 09:09:01 | 000,215,943 | ---- | M] () -- F:\WINDOWS\SysWow64\dssec.dat [2017/05/15 09:08:50 | 000,017,463 | ---- | M] () -- F:\WINDOWS\System32\drivers\etc\services [2017/05/15 09:08:50 | 000,003,683 | ---- | M] () -- F:\WINDOWS\System32\drivers\etc\lmhosts.sam [2017/05/15 09:08:50 | 000,001,358 | ---- | M] () -- F:\WINDOWS\System32\drivers\etc\protocol [2017/05/15 09:08:50 | 000,000,824 | ---- | M] () -- F:\WINDOWS\System32\drivers\etc\hosts [2017/05/15 09:08:50 | 000,000,407 | ---- | M] () -- F:\WINDOWS\System32\drivers\etc\networks [2017/05/15 09:08:46 | 000,000,741 | ---- | M] () -- F:\WINDOWS\System32\NOISE.DAT [2017/05/15 09:08:45 | 000,231,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\msclmd.dll [2017/05/15 09:08:43 | 000,215,943 | ---- | M] () -- F:\WINDOWS\System32\dssec.dat [2017/05/15 09:08:43 | 000,000,858 | ---- | M] () -- F:\WINDOWS\System32\DefaultQuestions.json [2017/05/15 09:08:32 | 000,296,742 | ---- | M] () -- F:\WINDOWS\System32\perfi009.dat [2017/05/15 09:08:32 | 000,033,362 | ---- | M] () -- F:\WINDOWS\System32\perfd009.dat [2017/05/15 09:07:29 | 000,065,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\bcastdvr.proxy.dll [2017/05/15 09:07:16 | 000,103,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ncpa.cpl [2017/05/15 09:06:59 | 000,051,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ByteCodeGenerator.exe [2017/05/15 09:06:41 | 000,123,392 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fontsub.dll [2017/05/15 09:06:41 | 000,014,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dciman32.dll [2017/05/15 09:06:39 | 000,159,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\sbeio.dll [2017/05/15 09:06:39 | 000,139,104 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wermgr.exe [2017/05/15 09:06:39 | 000,033,792 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\werdiagcontroller.dll [2017/05/15 09:06:27 | 000,098,304 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Credentials.UI.UserConsentVerifier.dll [2017/05/15 09:06:02 | 000,054,272 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Playback.ProxyStub.dll [2017/05/15 09:06:02 | 000,012,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.BackgroundPlayback.exe [2017/05/15 09:05:19 | 000,501,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\psisdecd.dll [2017/05/15 09:05:19 | 000,216,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MSNP.ax [2017/05/15 09:05:19 | 000,088,064 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\psisrndr.ax [2017/05/15 09:05:19 | 000,082,944 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Mpeg2Data.ax [2017/05/15 09:05:19 | 000,072,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MSDvbNP.ax [2017/05/15 09:05:05 | 000,097,792 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AppxSysprep.dll [2017/05/15 09:04:35 | 000,057,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\win32appinventorycsp.dll [2017/05/15 09:04:26 | 000,577,024 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\qedit.dll [2017/05/15 09:04:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wscisvif.dll [2017/05/15 09:04:23 | 000,016,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wscproxystub.dll [2017/05/15 09:04:16 | 000,067,168 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\iumcrypt.dll [2017/05/15 09:04:11 | 000,062,976 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\xolehlp.dll [2017/05/15 09:03:59 | 000,310,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhcat.dll [2017/05/15 09:03:59 | 000,245,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhengine.dll [2017/05/15 09:03:59 | 000,155,648 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhshl.dll [2017/05/15 09:03:59 | 000,139,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhmanagew.exe [2017/05/15 09:03:59 | 000,122,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhsvc.dll [2017/05/15 09:03:59 | 000,082,944 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhsrchapi.dll [2017/05/15 09:03:59 | 000,074,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhevents.dll [2017/05/15 09:03:59 | 000,070,656 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhsrchph.dll [2017/05/15 09:03:59 | 000,066,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhlisten.dll [2017/05/15 09:03:59 | 000,065,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhautoplay.dll [2017/05/15 09:03:59 | 000,060,416 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhtask.dll [2017/05/15 09:03:59 | 000,055,808 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhcleanup.dll [2017/05/15 09:03:59 | 000,023,040 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fhsvcctl.dll [2017/05/15 09:03:26 | 000,121,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\bcastdvr.proxy.dll [2017/05/15 09:03:21 | 000,029,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\vss_ps.dll [2017/05/15 09:03:09 | 000,144,736 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wermgr.exe [2017/05/15 09:03:09 | 000,038,912 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\werdiagcontroller.dll [2017/05/15 09:03:07 | 000,371,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AccountsRt.dll [2017/05/15 09:02:35 | 000,199,680 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\sbeio.dll [2017/05/15 09:02:00 | 000,104,448 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Playback.ProxyStub.dll [2017/05/15 09:02:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.BackgroundPlayback.exe [2017/05/15 09:01:36 | 000,254,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MSNP.ax [2017/05/15 09:01:35 | 000,590,848 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\psisdecd.dll [2017/05/15 09:01:35 | 000,102,912 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Mpeg2Data.ax [2017/05/15 09:01:35 | 000,101,376 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\psisrndr.ax [2017/05/15 09:01:35 | 000,077,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MSDvbNP.ax [2017/05/15 09:01:26 | 000,120,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\poqexec.exe [2017/05/15 09:00:58 | 000,840,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ipsecsnp.dll [2017/05/15 09:00:58 | 000,534,528 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ipsmsnap.dll [2017/05/15 09:00:47 | 000,016,896 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\iscsilog.dll [2017/05/15 09:00:18 | 000,100,864 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ncpa.cpl [2017/05/15 08:59:59 | 000,023,552 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wups.dll [2017/05/15 08:59:52 | 000,080,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Credentials.UI.CredentialPicker.dll [2017/05/15 08:59:48 | 000,135,168 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mdmmigrator.dll [2017/05/15 08:59:47 | 000,019,456 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SystemEventsBrokerClient.dll [2017/05/15 08:59:38 | 000,042,496 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ByteCodeGenerator.exe [2017/05/15 08:59:29 | 000,097,792 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\fontsub.dll [2017/05/15 08:59:29 | 000,011,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dciman32.dll [2017/05/15 08:59:28 | 000,261,120 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\apds.dll [2017/05/15 08:59:03 | 000,067,112 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wwapi.dll [2017/05/15 08:58:06 | 000,022,016 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wscisvif.dll [2017/05/15 08:58:06 | 000,011,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wscproxystub.dll [2017/05/15 08:57:52 | 000,142,848 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\poqexec.exe [2017/05/10 08:50:32 | 000,158,720 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WsmAuto.dll [2017/05/10 08:50:32 | 000,073,728 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WSManMigrationPlugin.dll [2017/04/28 20:59:38 | 000,177,656 | ---- | M] (Adobe Systems Incorporated) -- F:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl [2017/04/28 20:59:37 | 000,835,576 | ---- | M] (Adobe Systems Incorporated) -- F:\WINDOWS\SysWow64\FlashPlayerApp.exe [2017/04/27 21:28:15 | 000,965,472 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ReAgent.dll [2017/04/27 21:01:16 | 002,717,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PrintConfig.dll [2017/04/27 20:57:25 | 000,603,488 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ContentDeliveryManager.Utilities.dll [2017/04/27 20:57:07 | 000,794,928 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll [2017/04/27 20:56:56 | 002,048,488 | ---- | M] () -- F:\WINDOWS\SysWow64\CoreUIComponents.dll [2017/04/27 20:56:07 | 001,117,024 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ReAgent.dll [2017/04/27 20:55:36 | 000,088,416 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\scmbus.sys [2017/04/27 20:53:45 | 002,213,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\KernelBase.dll [2017/04/27 20:53:16 | 007,784,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ntoskrnl.exe [2017/04/27 20:53:03 | 000,774,224 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\oleaut32.dll [2017/04/27 20:49:56 | 002,681,200 | ---- | M] () -- F:\WINDOWS\System32\CoreUIComponents.dll [2017/04/27 20:49:43 | 000,700,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\kernel32.dll [2017/04/27 20:49:33 | 000,764,392 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CoreMessaging.dll [2017/04/27 20:48:25 | 000,263,472 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Storage.ApplicationData.dll [2017/04/27 20:47:56 | 000,699,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wimgapi.dll [2017/04/27 20:47:53 | 000,501,088 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\spwizeng.dll [2017/04/27 20:46:14 | 000,410,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WinSetupUI.dll [2017/04/27 20:46:06 | 001,431,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll [2017/04/27 20:46:03 | 005,722,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\windows.storage.dll [2017/04/27 20:45:54 | 000,781,144 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WWAHost.exe [2017/04/27 20:45:44 | 000,493,920 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SettingSyncHost.exe [2017/04/27 20:45:44 | 000,116,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CloudExperienceHostCommon.dll [2017/04/27 20:45:33 | 000,861,024 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LicenseManager.dll [2017/04/27 20:45:29 | 000,975,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\twinapi.appcore.dll [2017/04/27 20:43:10 | 000,846,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WinTypes.dll [2017/04/27 20:43:09 | 002,168,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\combase.dll [2017/04/27 20:42:58 | 000,601,952 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\NetSetupEngine.dll [2017/04/27 20:42:53 | 000,328,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Storage.ApplicationData.dll [2017/04/27 20:42:44 | 000,526,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wimserv.exe [2017/04/27 20:41:08 | 000,361,104 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\tsmf.dll [2017/04/27 20:40:50 | 000,402,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\dxgmms1.sys [2017/04/27 20:40:41 | 001,860,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Store.dll [2017/04/27 20:40:39 | 001,738,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WindowsCodecs.dll [2017/04/27 20:40:30 | 006,665,952 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll [2017/04/27 20:40:19 | 004,023,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfcore.dll [2017/04/27 20:40:19 | 000,146,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CloudExperienceHostCommon.dll [2017/04/27 20:40:18 | 007,220,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\windows.storage.dll [2017/04/27 20:40:17 | 001,277,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfasfsrcsnk.dll [2017/04/27 20:40:16 | 000,857,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WWAHost.exe [2017/04/27 20:40:15 | 001,851,696 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfmp4srcsnk.dll [2017/04/27 20:40:15 | 001,360,456 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfnetsrc.dll [2017/04/27 20:40:13 | 000,981,888 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfnetcore.dll [2017/04/27 20:40:10 | 000,578,400 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingSyncHost.exe [2017/04/27 20:40:10 | 000,352,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MMDevAPI.dll [2017/04/27 20:40:09 | 001,202,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mfmpeg2srcsnk.dll [2017/04/27 20:40:04 | 001,157,000 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\twinapi.appcore.dll [2017/04/27 20:40:03 | 000,026,976 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\browser_broker.exe [2017/04/27 20:39:22 | 004,312,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\explorer.exe [2017/04/27 20:38:51 | 000,557,408 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\drivers\spaceport.sys [2017/04/27 20:38:44 | 001,852,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\crypt32.dll [2017/04/27 20:38:20 | 001,267,512 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WinTypes.dll [2017/04/27 20:38:12 | 002,915,704 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\combase.dll [2017/04/27 20:38:08 | 000,847,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\NetSetupEngine.dll [2017/04/27 20:36:34 | 000,092,512 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpudd.dll [2017/04/27 20:36:29 | 000,408,600 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\tsmf.dll [2017/04/27 20:35:22 | 001,414,208 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\gdi32full.dll [2017/04/27 20:35:20 | 000,276,832 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\input.dll [2017/04/27 20:35:14 | 008,170,600 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll [2017/04/27 20:35:06 | 001,988,048 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfmp4srcsnk.dll [2017/04/27 20:35:06 | 001,702,392 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfasfsrcsnk.dll [2017/04/27 20:35:05 | 001,302,136 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfmpeg2srcsnk.dll [2017/04/27 20:35:03 | 004,260,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfcore.dll [2017/04/27 20:35:01 | 000,596,040 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mf.dll [2017/04/27 20:34:58 | 001,072,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfnetcore.dll [2017/04/27 20:34:57 | 000,443,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MMDevAPI.dll [2017/04/27 20:34:56 | 000,244,824 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mfps.dll [2017/04/27 20:34:45 | 001,277,824 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ole32.dll [2017/04/27 20:34:25 | 000,241,504 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CloudExperienceHost.dll [2017/04/27 20:34:21 | 004,674,360 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\explorer.exe [2017/04/27 20:34:09 | 001,600,624 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\sppobjs.dll [2017/04/27 20:30:17 | 001,569,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\gdi32full.dll [2017/04/27 20:30:11 | 000,322,912 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\input.dll [2017/04/27 20:29:28 | 005,685,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Data.Pdf.dll [2017/04/27 20:28:48 | 000,387,864 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wmpps.dll [2017/04/27 20:28:41 | 000,453,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\services.exe [2017/04/27 20:28:39 | 000,455,520 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\securekernel.exe [2017/04/27 20:23:19 | 000,095,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserDataTimeUtil.dll [2017/04/27 20:23:10 | 001,631,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Resources.dll [2017/04/27 20:22:46 | 000,026,112 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\odbcconf.dll [2017/04/27 20:22:16 | 000,165,376 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ReInfo.dll [2017/04/27 20:21:41 | 000,027,648 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\BthTelemetry.dll [2017/04/27 20:21:26 | 000,073,728 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\tdc.ocx [2017/04/27 20:21:14 | 000,224,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ExSMime.dll [2017/04/27 20:20:50 | 000,044,032 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\virtdisk.dll [2017/04/27 20:20:47 | 000,141,824 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Radios.dll [2017/04/27 20:19:44 | 000,081,408 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mshtmled.dll [2017/04/27 20:19:26 | 000,584,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UIRibbonRes.dll [2017/04/27 20:19:15 | 000,156,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserDeviceRegistration.dll [2017/04/27 20:19:05 | 000,138,240 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DisplayManager.dll [2017/04/27 20:18:43 | 000,450,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rastls.dll [2017/04/27 20:18:37 | 000,255,488 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\unimdm.tsp [2017/04/27 20:18:35 | 000,285,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.BlockedShutdown.dll [2017/04/27 20:17:57 | 000,136,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WinRtTracing.dll [2017/04/27 20:17:50 | 000,094,208 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.StateRepositoryClient.dll [2017/04/27 20:17:36 | 000,095,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\BluetoothApis.dll [2017/04/27 20:17:30 | 000,328,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\daxexec.dll [2017/04/27 20:17:01 | 000,142,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.WiFi.dll [2017/04/27 20:16:36 | 000,184,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\UserMgrProxy.dll [2017/04/27 20:16:31 | 000,392,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Gaming.Input.dll [2017/04/27 20:16:31 | 000,203,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\credprovhost.dll [2017/04/27 20:16:24 | 000,118,272 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AppointmentActivation.dll [2017/04/27 20:16:23 | 000,231,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll [2017/04/27 20:16:23 | 000,113,152 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Lights.dll [2017/04/27 20:16:16 | 000,315,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Gaming.XboxLive.Storage.dll [2017/04/27 20:16:09 | 000,180,224 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\InstallAgent.exe [2017/04/27 20:16:07 | 000,374,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.LowLevel.dll [2017/04/27 20:15:44 | 000,334,848 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rastlsext.dll [2017/04/27 20:15:38 | 000,237,568 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SyncSettings.dll [2017/04/27 20:15:35 | 000,206,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\bthprops.cpl [2017/04/27 20:15:33 | 000,117,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AuthBroker.dll [2017/04/27 20:15:29 | 000,404,992 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dsreg.dll [2017/04/27 20:15:22 | 000,126,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\iepeers.dll [2017/04/27 20:15:14 | 000,822,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Chakradiag.dll [2017/04/27 20:15:11 | 000,557,568 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\StoreAgent.dll [2017/04/27 20:15:02 | 000,115,712 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Core.dll [2017/04/27 20:14:55 | 000,270,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dxtrans.dll [2017/04/27 20:14:11 | 000,670,208 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.PointOfService.dll [2017/04/27 20:14:06 | 000,223,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\InstallAgentUserBroker.exe [2017/04/27 20:14:01 | 000,483,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.AllJoyn.dll [2017/04/27 20:14:00 | 000,306,688 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ieproxy.dll [2017/04/27 20:13:57 | 000,202,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.HumanInterfaceDevice.dll [2017/04/27 20:13:55 | 001,243,136 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.FaceAnalysis.dll [2017/04/27 20:13:45 | 000,386,048 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.WiFiDirect.dll [2017/04/27 20:13:43 | 000,185,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Authentication.Identity.Provider.dll [2017/04/27 20:13:35 | 000,114,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\setupugc.exe [2017/04/27 20:13:28 | 000,298,496 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Internal.Management.dll [2017/04/27 20:13:27 | 000,218,624 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WwaApi.dll [2017/04/27 20:13:25 | 000,562,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.SmartCards.dll [2017/04/27 20:13:24 | 000,426,496 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.Wallet.dll [2017/04/27 20:13:23 | 001,755,136 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DeviceFlows.DataModel.dll [2017/04/27 20:13:22 | 000,332,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Internal.Bluetooth.dll [2017/04/27 20:13:21 | 000,271,360 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\deviceaccess.dll [2017/04/27 20:13:17 | 000,506,880 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DevicePairing.dll [2017/04/27 20:13:15 | 000,206,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\vaultcli.dll [2017/04/27 20:13:11 | 000,175,616 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Scanners.dll [2017/04/27 20:13:06 | 000,125,952 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\apprepapi.dll [2017/04/27 20:13:01 | 013,873,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.dll [2017/04/27 20:12:58 | 000,284,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\apprepsync.dll [2017/04/27 20:12:39 | 000,431,616 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\efswrt.dll [2017/04/27 20:12:30 | 000,498,688 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mbsmsapi.dll [2017/04/27 20:12:24 | 000,635,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\jscript9diag.dll [2017/04/27 20:12:08 | 000,262,144 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Picker.dll [2017/04/27 20:11:15 | 000,747,520 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Ocr.dll [2017/04/27 20:11:11 | 000,075,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\updatepolicy.dll [2017/04/27 20:11:09 | 000,846,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WebcamUi.dll [2017/04/27 20:10:54 | 000,819,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AppContracts.dll [2017/04/27 20:10:52 | 000,314,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Usb.dll [2017/04/27 20:10:45 | 000,238,080 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AboveLockAppHost.dll [2017/04/27 20:10:44 | 000,284,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.ApplicationModel.dll [2017/04/27 20:10:36 | 000,764,928 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mprddm.dll [2017/04/27 20:10:34 | 000,857,600 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\EmailApis.dll [2017/04/27 20:10:19 | 000,661,504 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\WpcWebFilter.dll [2017/04/27 20:10:05 | 007,216,640 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Data.Pdf.dll [2017/04/27 20:09:33 | 000,525,824 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PrintDialogs.dll [2017/04/27 20:09:20 | 000,368,128 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\puiobj.dll [2017/04/27 20:09:13 | 000,584,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll [2017/04/27 20:09:13 | 000,352,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Enumeration.dll [2017/04/27 20:08:57 | 000,288,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CryptoWinRT.dll [2017/04/27 20:08:20 | 018,365,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\edgehtml.dll [2017/04/27 20:08:18 | 000,653,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.AccountsControl.dll [2017/04/27 20:08:12 | 007,626,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\twinui.dll [2017/04/27 20:08:12 | 001,534,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Graphics.Printing.3D.dll [2017/04/27 20:08:10 | 001,228,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\usercpl.dll [2017/04/27 20:07:30 | 000,525,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LogonController.dll [2017/04/27 20:07:21 | 003,689,984 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msi.dll [2017/04/27 20:07:14 | 000,372,736 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\RDXTaskFactory.dll [2017/04/27 20:06:49 | 004,614,656 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.dll [2017/04/27 20:06:49 | 000,675,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Networking.dll [2017/04/27 20:06:37 | 000,901,120 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll [2017/04/27 20:06:15 | 022,569,472 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\edgehtml.dll [2017/04/27 20:06:01 | 000,691,712 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\msfeeds.dll [2017/04/27 20:05:51 | 003,733,504 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\D3DCompiler_47.dll [2017/04/27 20:05:44 | 000,709,120 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CPFilters.dll [2017/04/27 20:05:24 | 000,886,272 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\aadtb.dll [2017/04/27 20:05:19 | 001,631,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.Resources.dll [2017/04/27 20:05:17 | 000,589,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll [2017/04/27 20:04:34 | 000,119,808 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDataTimeUtil.dll [2017/04/27 20:04:14 | 001,323,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_fs.dll [2017/04/27 20:03:57 | 001,137,152 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_health.dll [2017/04/27 20:03:57 | 000,355,328 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\RTMediaFrame.dll [2017/04/27 20:03:55 | 000,134,656 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Energy.dll [2017/04/27 20:03:40 | 001,077,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Editing.dll [2017/04/27 20:03:33 | 000,032,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\BthTelemetry.dll [2017/04/27 20:03:23 | 000,083,968 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\tdc.ocx [2017/04/27 20:03:16 | 000,030,208 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\odbcconf.dll [2017/04/27 20:03:14 | 000,291,328 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\adsnt.dll [2017/04/27 20:03:11 | 000,584,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\UIRibbonRes.dll [2017/04/27 20:03:10 | 000,318,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\LocationApi.dll [2017/04/27 20:02:51 | 000,123,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mssprxy.dll [2017/04/27 20:02:13 | 003,307,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MFMediaEngine.dll [2017/04/27 20:02:05 | 000,019,456 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\appidcertstorecheck.exe [2017/04/27 20:01:56 | 000,795,648 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MiracastReceiver.dll [2017/04/27 20:01:56 | 000,233,472 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MusNotification.exe [2017/04/27 20:01:46 | 000,343,040 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToDevice.dll [2017/04/27 20:01:40 | 000,090,624 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Printers.dll [2017/04/27 20:01:39 | 000,713,216 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wpnapps.dll [2017/04/27 20:01:30 | 000,248,832 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dlnashext.dll [2017/04/27 20:01:28 | 000,185,344 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DisplayManager.dll [2017/04/27 20:01:22 | 000,156,160 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Family.Client.dll [2017/04/27 20:01:20 | 000,051,712 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\virtdisk.dll [2017/04/27 20:01:11 | 000,259,072 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Family.SyncEngine.dll [2017/04/27 20:01:09 | 000,141,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dialclient.dll [2017/04/27 20:01:09 | 000,129,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingsHandlers_ClosedCaptioning.dll [2017/04/27 20:01:03 | 000,295,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\unimdm.tsp [2017/04/27 20:00:58 | 000,073,216 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.StateRepositoryBroker.dll [2017/04/27 20:00:30 | 000,148,480 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.System.Profile.RetailInfo.dll [2017/04/27 20:00:26 | 002,749,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mispace.dll [2017/04/27 20:00:25 | 012,349,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wmp.dll [2017/04/27 20:00:25 | 000,193,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.WiFi.dll [2017/04/27 20:00:25 | 000,101,888 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDeviceRegistration.Ngc.dll [2017/04/27 20:00:24 | 000,193,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WinRtTracing.dll [2017/04/27 20:00:21 | 000,196,096 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\UserDeviceRegistration.dll [2017/04/27 20:00:19 | 000,099,328 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\browserbroker.dll [2017/04/27 20:00:14 | 000,165,376 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\storewuauth.dll [2017/04/27 20:00:14 | 000,149,504 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Core.dll [2017/04/27 20:00:12 | 001,255,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll [2017/04/27 20:00:11 | 000,120,832 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\BluetoothApis.dll [2017/04/27 19:59:55 | 000,467,968 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Gaming.XboxLive.Storage.dll [2017/04/27 19:59:48 | 000,122,880 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.StateRepositoryClient.dll [2017/04/27 19:59:35 | 000,895,488 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Streaming.dll [2017/04/27 19:59:32 | 000,567,296 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DevicePairing.dll [2017/04/27 19:59:20 | 002,154,496 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\storagewmi.dll [2017/04/27 19:59:15 | 000,635,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\FlightSettings.dll [2017/04/27 19:59:14 | 000,375,296 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rastlsext.dll [2017/04/27 19:59:14 | 000,186,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Radios.dll [2017/04/27 19:59:03 | 000,220,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToReceiver.dll [2017/04/27 19:58:58 | 000,231,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\shutdownux.dll [2017/04/27 19:58:49 | 000,418,304 | ---- | M] () -- F:\WINDOWS\System32\Windows.Perception.Stub.dll [2017/04/27 19:58:42 | 000,547,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Gaming.Input.dll [2017/04/27 19:58:35 | 000,433,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\imapi2.dll [2017/04/27 19:58:32 | 007,468,544 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mstscax.dll [2017/04/27 19:58:31 | 000,134,144 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ErrorDetails.dll [2017/04/27 19:58:28 | 000,211,968 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\InstallAgent.exe [2017/04/27 19:58:17 | 000,360,448 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpencom.dll [2017/04/27 19:58:14 | 000,150,016 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.AppDefaults.dll [2017/04/27 19:58:14 | 000,130,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ConsentUX.dll [2017/04/27 19:58:11 | 000,289,792 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DeveloperOptionsSettingsHandlers.dll [2017/04/27 19:58:07 | 000,546,304 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\uReFS.dll [2017/04/27 19:58:06 | 000,418,304 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.BlockedShutdown.dll [2017/04/27 19:58:04 | 000,144,896 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Lights.dll [2017/04/27 19:58:02 | 000,276,992 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dxtrans.dll [2017/04/27 19:57:58 | 000,089,600 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CameraCaptureUI.dll [2017/04/27 19:57:55 | 000,243,712 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\credprovhost.dll [2017/04/27 19:57:54 | 001,221,120 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Audio.dll [2017/04/27 19:57:54 | 000,223,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ie4uinit.exe [2017/04/27 19:57:52 | 000,241,152 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dafBth.dll [2017/04/27 19:57:50 | 000,132,096 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintWSDAHost.dll [2017/04/27 19:57:44 | 000,502,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rastls.dll [2017/04/27 19:57:43 | 000,139,264 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\iepeers.dll [2017/04/27 19:57:42 | 000,505,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.WiFiDirect.dll [2017/04/27 19:57:40 | 001,247,232 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Globalization.dll [2017/04/27 19:57:35 | 000,719,872 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\wsp_sr.dll [2017/04/27 19:57:18 | 000,568,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.LowLevel.dll [2017/04/27 19:57:13 | 000,651,264 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.AllJoyn.dll [2017/04/27 19:57:12 | 000,268,800 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\UserMgrProxy.dll [2017/04/27 19:57:05 | 000,279,552 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.HumanInterfaceDevice.dll [2017/04/27 19:57:05 | 000,216,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Scanners.dll [2017/04/27 19:57:04 | 001,507,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.FaceAnalysis.dll [2017/04/27 19:57:03 | 000,641,024 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MCRecvSrc.dll [2017/04/27 19:56:59 | 000,692,224 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CellularAPI.dll [2017/04/27 19:56:57 | 000,748,544 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\StoreAgent.dll [2017/04/27 19:56:57 | 000,333,312 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\SensorsApi.dll [2017/04/27 19:56:53 | 000,912,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.SmartCards.dll [2017/04/27 19:56:43 | 000,947,712 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SystemSettings.Handlers.dll [2017/04/27 19:56:40 | 000,147,456 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\winsrv.dll [2017/04/27 19:56:38 | 000,691,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ieproxy.dll [2017/04/27 19:56:38 | 000,260,608 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\InstallAgentUserBroker.exe [2017/04/27 19:56:35 | 000,293,888 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\updatehandlers.dll [2017/04/27 19:56:35 | 000,103,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Devices.dll [2017/04/27 19:56:33 | 000,324,608 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.LockScreen.dll [2017/04/27 19:56:29 | 000,088,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mshtmled.dll [2017/04/27 19:56:28 | 000,400,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\PlayToManager.dll [2017/04/27 19:56:28 | 000,379,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\apprepsync.dll [2017/04/27 19:56:27 | 000,590,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\efswrt.dll [2017/04/27 19:56:23 | 000,357,376 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Geolocation.dll [2017/04/27 19:56:23 | 000,267,264 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\vaultcli.dll [2017/04/27 19:56:14 | 000,146,432 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AuthBroker.dll [2017/04/27 19:56:13 | 000,311,296 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SyncSettings.dll [2017/04/27 19:56:01 | 000,358,912 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.dll [2017/04/27 19:55:57 | 000,431,616 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WpAXHolder.dll [2017/04/27 19:55:56 | 000,391,168 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\oleacc.dll [2017/04/27 19:55:45 | 000,561,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.ApplicationModel.Wallet.dll [2017/04/27 19:55:41 | 000,252,416 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Security.Authentication.Identity.Provider.dll [2017/04/27 19:55:35 | 000,176,128 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\apprepapi.dll [2017/04/27 19:55:31 | 000,307,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintDialogs3D.dll [2017/04/27 19:55:27 | 000,407,552 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Management.dll [2017/04/27 19:55:18 | 001,656,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Perception.dll [2017/04/27 19:55:18 | 001,232,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Maps.dll [2017/04/27 19:55:18 | 001,170,944 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Media.Speech.dll [2017/04/27 19:55:17 | 001,987,584 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mssrch.dll [2017/04/27 19:55:16 | 000,337,408 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Picker.dll [2017/04/27 19:55:12 | 000,231,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\bthprops.cpl [2017/04/27 19:55:10 | 006,042,624 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Chakra.dll [2017/04/27 19:55:08 | 002,084,352 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DeviceFlows.DataModel.dll [2017/04/27 19:55:06 | 001,413,632 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\OpcServices.dll [2017/04/27 19:55:05 | 001,993,216 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\dwmcore.dll [2017/04/27 19:55:04 | 001,004,544 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll [2017/04/27 19:54:54 | 000,949,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.PointOfService.dll [2017/04/27 19:54:51 | 002,747,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\rdpcore.dll [2017/04/27 19:54:44 | 000,472,064 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Internal.Bluetooth.dll [2017/04/27 19:54:43 | 000,348,160 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Devices.Midi.dll [2017/04/27 19:54:38 | 000,329,728 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\deviceaccess.dll [2017/04/27 19:54:36 | 000,339,456 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ConhostV2.dll [2017/04/27 19:54:35 | 002,027,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\inetcpl.cpl [2017/04/27 19:54:35 | 000,566,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ShareHost.dll [2017/04/27 19:54:34 | 003,664,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\jscript9.dll [2017/04/27 19:54:30 | 000,654,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\MbaeApiPublic.dll [2017/04/27 19:54:27 | 000,091,136 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\updatepolicy.dll [2017/04/27 19:54:24 | 000,425,984 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\aadcloudap.dll [2017/04/27 19:54:21 | 001,013,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Web.Http.dll [2017/04/27 19:54:11 | 001,509,376 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\ieapfltr.dll [2017/04/27 19:54:11 | 000,284,160 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AboveLockAppHost.dll [2017/04/27 19:54:08 | 000,598,528 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Web.dll [2017/04/27 19:54:07 | 002,646,528 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CertEnroll.dll [2017/04/27 19:53:59 | 000,671,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mbsmsapi.dll [2017/04/27 19:53:59 | 000,245,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WwaApi.dll [2017/04/27 19:53:56 | 001,170,944 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll [2017/04/27 19:53:56 | 000,621,056 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.UI.dll [2017/04/27 19:53:56 | 000,437,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Usb.dll [2017/04/27 19:53:52 | 000,458,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Enumeration.dll [2017/04/27 19:53:47 | 000,579,584 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.UX.EapRequestHandler.dll [2017/04/27 19:53:34 | 000,798,208 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\authui.dll [2017/04/27 19:53:29 | 006,288,384 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.dll [2017/04/27 19:53:18 | 000,751,104 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll [2017/04/27 19:53:11 | 003,059,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\msi.dll [2017/04/27 19:52:44 | 002,008,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\DWrite.dll [2017/04/27 19:52:28 | 002,994,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\win32kfull.sys [2017/04/27 19:52:02 | 003,106,304 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\mstsc.exe [2017/04/27 19:51:44 | 001,913,856 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_fs.dll [2017/04/27 19:51:18 | 001,584,128 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_health.dll [2017/04/27 19:51:08 | 002,104,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wlidsvc.dll [2017/04/27 19:51:07 | 000,458,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\RTMediaFrame.dll [2017/04/27 19:51:05 | 001,589,760 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\msdtctm.dll [2017/04/27 19:51:00 | 000,169,984 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Energy.dll [2017/04/27 19:50:45 | 000,783,360 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\TSWorkspace.dll [2017/04/27 19:50:26 | 003,778,048 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MFMediaEngine.dll [2017/04/27 19:50:21 | 000,338,944 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\adsnt.dll [2017/04/27 19:50:19 | 001,476,608 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\RecoveryDrive.exe [2017/04/27 19:50:13 | 000,329,728 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fvecpl.dll [2017/04/27 19:50:12 | 000,380,416 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\LocationApi.dll [2017/04/27 19:49:22 | 001,105,408 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MiracastReceiver.dll [2017/04/27 19:49:09 | 017,198,592 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.dll [2017/04/27 19:49:04 | 000,442,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToDevice.dll [2017/04/27 19:49:01 | 000,864,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wpnapps.dll [2017/04/27 19:48:49 | 000,295,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dlnashext.dll [2017/04/27 19:48:30 | 000,187,904 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dialclient.dll [2017/04/27 19:48:03 | 000,337,920 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AudioEndpointBuilder.dll [2017/04/27 19:47:54 | 001,790,464 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\LocationFramework.dll [2017/04/27 19:47:50 | 000,627,200 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SpaceControl.dll [2017/04/27 19:47:47 | 003,290,112 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mispace.dll [2017/04/27 19:47:43 | 001,908,224 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AzureSettingSyncProvider.dll [2017/04/27 19:47:20 | 000,796,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\fvewiz.dll [2017/04/27 19:47:15 | 009,131,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\twinui.dll [2017/04/27 19:47:09 | 001,078,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Streaming.dll [2017/04/27 19:46:49 | 002,861,056 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\storagewmi.dll [2017/04/27 19:46:28 | 000,279,552 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToReceiver.dll [2017/04/27 19:46:17 | 000,374,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\resutils.dll [2017/04/27 19:46:03 | 000,501,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\imapi2.dll [2017/04/27 19:46:01 | 000,049,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\catsrvps.dll [2017/04/27 19:45:57 | 000,167,936 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ErrorDetails.dll [2017/04/27 19:45:45 | 000,130,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SpaceAgent.exe [2017/04/27 19:45:37 | 000,628,736 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\uReFS.dll [2017/04/27 19:45:34 | 001,217,024 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Audio.dll [2017/04/27 19:45:30 | 000,112,640 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CameraCaptureUI.dll [2017/04/27 19:45:20 | 000,946,688 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wsp_sr.dll [2017/04/27 19:45:05 | 000,411,648 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SensorsApi.dll [2017/04/27 19:44:56 | 001,366,016 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wpncore.dll [2017/04/27 19:44:50 | 000,937,984 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MCRecvSrc.dll [2017/04/27 19:44:42 | 000,548,864 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\usocore.dll [2017/04/27 19:44:39 | 000,583,680 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PrintDialogs.dll [2017/04/27 19:44:35 | 001,010,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\enterprisecsps.dll [2017/04/27 19:44:22 | 000,139,776 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Devices.dll [2017/04/27 19:44:14 | 004,749,824 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SettingsHandlers_nt.dll [2017/04/27 19:44:04 | 000,410,112 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DevicesFlowBroker.dll [2017/04/27 19:44:03 | 001,145,344 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\EmailApis.dll [2017/04/27 19:44:03 | 000,775,168 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\GamePanel.exe [2017/04/27 19:44:02 | 000,896,512 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.AccountsControl.dll [2017/04/27 19:43:52 | 000,600,576 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\cryptui.dll [2017/04/27 19:43:46 | 000,963,584 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WebcamUi.dll [2017/04/27 19:43:45 | 000,560,128 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AppReadiness.dll [2017/04/27 19:43:38 | 000,467,968 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Geolocation.dll [2017/04/27 19:43:38 | 000,320,512 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\thumbcache.dll [2017/04/27 19:43:37 | 000,539,136 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\PlayToManager.dll [2017/04/27 19:43:34 | 000,331,264 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\NgcCtnrSvc.dll [2017/04/27 19:43:31 | 001,184,256 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Unistore.dll [2017/04/27 19:43:27 | 000,526,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\winspool.drv [2017/04/27 19:43:23 | 000,634,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\StructuredQuery.dll [2017/04/27 19:43:02 | 000,460,800 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Midi.dll [2017/04/27 19:42:51 | 002,390,016 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\smartscreen.exe [2017/04/27 19:42:39 | 008,076,288 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mstscax.dll [2017/04/27 19:42:34 | 001,692,160 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\AppXDeploymentExtensions.onecore.dll [2017/04/27 19:42:31 | 008,125,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Chakra.dll [2017/04/27 19:42:14 | 000,800,768 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Security.Authentication.Web.Core.dll [2017/04/27 19:42:11 | 013,441,536 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wmp.dll [2017/04/27 19:42:01 | 001,021,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\usermgr.dll [2017/04/27 19:42:00 | 000,945,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\WpcWebFilter.dll [2017/04/27 19:41:52 | 001,359,872 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\SharedStartModel.dll [2017/04/27 19:41:49 | 000,828,416 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\appwiz.cpl [2017/04/27 19:41:49 | 000,591,360 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\vbscript.dll [2017/04/27 19:41:36 | 000,650,752 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\RDXService.dll [2017/04/27 19:41:36 | 000,611,328 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Graphics.Printing.dll [2017/04/27 19:41:32 | 001,080,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Ocr.dll [2017/04/27 19:41:24 | 000,983,040 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ngcsvc.dll [2017/04/27 19:41:21 | 000,759,296 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\msfeeds.dll [2017/04/27 19:41:01 | 000,860,160 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mprddm.dll [2017/04/27 19:41:00 | 000,376,832 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CryptoWinRT.dll [2017/04/27 19:40:59 | 002,208,768 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Graphics.Printing.3D.dll [2017/04/27 19:40:58 | 001,040,896 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\NaturalLanguage6.dll [2017/04/27 19:40:56 | 004,474,368 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\D3DCompiler_47.dll [2017/04/27 19:40:54 | 000,971,264 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\twinui.appcore.dll [2017/04/27 19:40:53 | 002,510,848 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\NetworkMobileSettings.dll [2017/04/27 19:40:50 | 001,643,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Media.Speech.dll [2017/04/27 19:40:43 | 000,913,920 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.dll [2017/04/27 19:40:36 | 000,816,640 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.dll [2017/04/27 19:40:35 | 000,886,784 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CPFilters.dll [2017/04/27 19:40:25 | 002,096,640 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\inetcpl.cpl [2017/04/27 19:40:17 | 001,586,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Globalization.dll [2017/04/27 19:40:14 | 000,770,560 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\bisrv.dll [2017/04/27 19:40:13 | 002,914,816 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\CertEnroll.dll [2017/04/27 19:39:58 | 004,596,224 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\xpsrchvw.exe [2017/04/27 19:39:46 | 000,846,336 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\MbaeApiPublic.dll [2017/04/27 19:39:18 | 000,673,792 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\winlogon.exe [2017/04/27 19:38:42 | 000,765,440 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Sensors.dll [2017/04/27 19:38:37 | 005,611,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\d2d1.dll [2017/04/27 19:38:35 | 001,275,392 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Bluetooth.dll [2017/04/27 19:38:33 | 001,490,432 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\lsasrv.dll [2017/04/27 19:38:15 | 001,359,360 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\usercpl.dll [2017/04/27 19:38:05 | 002,424,320 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Devices.Perception.dll [2017/04/27 19:37:57 | 001,984,000 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\diagtrack.dll [2017/04/27 19:37:55 | 001,637,888 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ieapfltr.dll [2017/04/27 19:37:51 | 002,538,496 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mssrch.dll [2017/04/27 19:37:37 | 000,391,168 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wuuhext.dll [2017/04/27 19:37:35 | 001,424,896 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Xaml.Maps.dll [2017/04/27 19:37:33 | 004,744,192 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\jscript9.dll [2017/04/27 19:37:32 | 002,216,960 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\OpcServices.dll [2017/04/27 19:37:24 | 002,286,592 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\dwmcore.dll [2017/04/27 19:37:23 | 001,266,176 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.UI.Input.Inking.dll [2017/04/27 19:37:21 | 003,134,976 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpcore.dll [2017/04/27 19:37:16 | 000,875,520 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\TokenBroker.dll [2017/04/27 19:37:13 | 000,881,664 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\authui.dll [2017/04/27 19:37:00 | 004,149,248 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpcorets.dll [2017/04/27 19:36:58 | 001,513,472 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\win32kbase.sys [2017/04/27 19:36:55 | 001,131,008 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\localspl.dll [2017/04/27 19:36:53 | 002,478,080 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\DWrite.dll [2017/04/27 19:36:49 | 000,774,656 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Web.dll [2017/04/27 19:36:49 | 000,735,744 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\LogonController.dll [2017/04/27 19:36:44 | 003,613,184 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\win32kfull.sys [2017/04/27 19:36:38 | 000,716,800 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ShareHost.dll [2017/04/27 19:36:36 | 001,328,640 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Web.Http.dll [2017/04/27 19:35:35 | 001,121,280 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\aadtb.dll [2017/04/27 19:35:25 | 000,924,672 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\Windows.Networking.BackgroundTransfer.dll [2017/04/27 19:35:15 | 003,299,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\mstsc.exe [2017/04/27 19:34:43 | 000,999,424 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\TSWorkspace.dll [2017/04/27 19:34:40 | 000,035,328 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\spaceman.exe [2017/04/27 19:34:34 | 000,394,240 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\rdpclip.exe [2017/04/27 19:34:28 | 000,439,296 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\wksprt.exe [2017/04/27 19:33:56 | 001,817,088 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\System32\ResetEngine.dll [2017/04/27 19:30:59 | 000,483,840 | ---- | M] (Microsoft Corporation) -- F:\WINDOWS\SysWow64\CoreMessaging.dll [color=#E56717]========== Files Created - No Company Name ==========[/color] [2017/05/20 07:10:37 | 000,000,214 | ---- | C] () -- F:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job [2017/05/20 02:09:37 | 000,001,092 | ---- | C] () -- F:\Users\Public\Desktop\OpenOffice 4.1.1.lnk [2017/05/20 01:17:53 | 000,001,049 | ---- | C] () -- F:\Users\Public\Desktop\FreeMi UPnP Media Server.lnk [2017/05/17 07:17:49 | 000,136,687 | ---- | C] () -- F:\Users\Informatique\Desktop\pantalon-3253_la-halle-9838ba5c9a4def87d2527c33060dba07-a.jpg [2017/05/17 07:13:40 | 000,096,821 | ---- | C] () -- F:\Users\Informatique\Desktop\264891236-zoom_prd_3s.jpg [2017/05/15 22:23:47 | 000,000,352 | ---- | C] () -- F:\Users\Informatique\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk [2017/05/15 22:23:47 | 000,000,334 | ---- | C] () -- F:\Users\Informatique\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk [2017/05/15 21:30:26 | 000,051,148 | ---- | C] () -- F:\WINDOWS\SysWow64\license.rtf [2017/05/15 21:30:26 | 000,051,148 | ---- | C] () -- F:\WINDOWS\System32\license.rtf [2017/05/15 18:22:58 | 1717,637,120 | -HS- | C] () -- F:\hiberfil.sys [2017/05/15 18:15:37 | 007,513,855 | ---- | C] () -- F:\WINDOWS\System32\nvcoproc.bin [2017/05/15 18:10:55 | 000,067,584 | --S- | C] () -- F:\WINDOWS\bootstat.dat [2017/05/15 18:10:54 | 000,000,000 | -H-- | C] () -- F:\WINDOWS\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf [2017/05/15 18:09:34 | 000,224,368 | ---- | C] () -- F:\WINDOWS\System32\FNTCACHE.DAT [2017/05/15 14:52:56 | 000,002,640 | ---- | C] () -- F:\Users\Public\Desktop\Skype.lnk [2017/05/15 14:51:24 | 000,001,282 | ---- | C] () -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk [2017/05/15 14:51:24 | 000,001,270 | ---- | C] () -- F:\Users\Public\Desktop\Mozilla Thunderbird.lnk [2017/05/15 14:37:15 | 000,001,232 | ---- | C] () -- F:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2017/05/15 14:37:15 | 000,001,220 | ---- | C] () -- F:\Users\Public\Desktop\Mozilla Firefox.lnk [2017/05/15 09:20:02 | 000,994,614 | ---- | C] () -- F:\WINDOWS\System32\perfh00C.dat [2017/05/15 09:20:02 | 000,350,774 | ---- | C] () -- F:\WINDOWS\System32\perfi00C.dat [2017/05/15 09:20:02 | 000,206,862 | ---- | C] () -- F:\WINDOWS\System32\perfc00C.dat [2017/05/15 09:20:02 | 000,040,528 | ---- | C] () -- F:\WINDOWS\System32\perfd00C.dat [2017/05/15 09:15:45 | 000,782,096 | ---- | C] () -- F:\WINDOWS\System32\perfh009.dat [2017/05/15 09:15:45 | 000,296,742 | ---- | C] () -- F:\WINDOWS\System32\perfi009.dat [2017/05/15 09:15:45 | 000,183,766 | ---- | C] () -- F:\WINDOWS\System32\perfc009.dat [2017/05/15 09:15:45 | 000,033,362 | ---- | C] () -- F:\WINDOWS\System32\perfd009.dat [2017/05/15 09:13:12 | 000,215,943 | ---- | C] () -- F:\WINDOWS\SysWow64\dssec.dat [2017/05/15 09:13:12 | 000,000,741 | ---- | C] () -- F:\WINDOWS\SysWow64\NOISE.DAT [2017/05/15 09:13:00 | 000,017,463 | ---- | C] () -- F:\WINDOWS\System32\drivers\etc\services [2017/05/15 09:13:00 | 000,003,683 | ---- | C] () -- F:\WINDOWS\System32\drivers\etc\lmhosts.sam [2017/05/15 09:13:00 | 000,001,358 | ---- | C] () -- F:\WINDOWS\System32\drivers\etc\protocol [2017/05/15 09:13:00 | 000,000,824 | ---- | C] () -- F:\WINDOWS\System32\drivers\etc\hosts [2017/05/15 09:13:00 | 000,000,407 | ---- | C] () -- F:\WINDOWS\System32\drivers\etc\networks [2017/05/15 09:12:59 | 000,015,425 | ---- | C] () -- F:\WINDOWS\System32\OEMDefaultAssociations.xml [2017/05/15 09:12:59 | 000,000,741 | ---- | C] () -- F:\WINDOWS\System32\NOISE.DAT [2017/05/15 09:12:58 | 000,215,943 | ---- | C] () -- F:\WINDOWS\System32\dssec.dat [2017/05/15 09:12:58 | 000,000,858 | ---- | C] () -- F:\WINDOWS\System32\DefaultQuestions.json [2017/05/10 09:40:52 | 000,265,728 | ---- | C] () -- F:\WINDOWS\SysWow64\Windows.Perception.Stub.dll [2017/05/10 09:40:51 | 002,048,488 | ---- | C] () -- F:\WINDOWS\SysWow64\CoreUIComponents.dll [2017/05/10 09:40:11 | 000,418,304 | ---- | C] () -- F:\WINDOWS\System32\Windows.Perception.Stub.dll [2017/05/10 09:39:20 | 002,681,200 | ---- | C] () -- F:\WINDOWS\System32\CoreUIComponents.dll [2017/03/15 02:45:58 | 000,019,968 | ---- | C] () -- F:\WINDOWS\SysWow64\GamePanelExternalHook.dll [2016/07/16 07:43:52 | 000,197,632 | ---- | C] () -- F:\WINDOWS\SysWow64\ir32_32original.dll [2016/07/16 07:43:04 | 000,055,296 | ---- | C] () -- F:\WINDOWS\SysWow64\BWContextHandler.dll [2016/07/16 07:42:55 | 000,167,640 | ---- | C] () -- F:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat [2016/07/16 07:42:53 | 000,673,088 | ---- | C] () -- F:\WINDOWS\SysWow64\mlang.dat [2016/07/16 07:42:49 | 000,304,640 | ---- | C] () -- F:\WINDOWS\SysWow64\HrtfApo.dll [2016/07/16 07:42:48 | 000,364,544 | ---- | C] () -- F:\WINDOWS\SysWow64\msjetoledb40.dll [2016/07/16 07:42:43 | 000,002,307 | ---- | C] () -- F:\WINDOWS\SysWow64\WimBootCompress.ini [2016/07/16 07:42:12 | 000,043,131 | ---- | C] () -- F:\WINDOWS\mib.bin [color=#E56717]========== LOP Check ==========[/color] [2017/05/15 18:23:55 | 000,000,000 | -HSD | M] -- F:\ProgramData\Application Data [2017/05/15 18:23:55 | 000,000,000 | -HSD | M] -- F:\ProgramData\Bureau [2017/05/15 09:12:44 | 000,000,000 | ---D | M] -- F:\ProgramData\Comms [2017/05/15 18:23:55 | 000,000,000 | -HSD | M] -- F:\ProgramData\Documents [2017/05/20 03:52:14 | 000,000,000 | ---D | M] -- F:\ProgramData\F-Secure [2017/05/15 18:23:55 | 000,000,000 | -HSD | M] -- F:\ProgramData\Menu Démarrer [2017/05/15 18:23:55 | 000,000,000 | -HSD | M] -- F:\ProgramData\Modèles [2017/05/17 01:47:27 | 000,000,000 | ---D | M] -- F:\ProgramData\Oracle [2017/05/15 14:52:44 | 000,000,000 | ---D | M] -- F:\ProgramData\Package Cache [2017/05/15 18:25:19 | 000,000,000 | ---D | M] -- F:\ProgramData\regid.1991-06.com.microsoft [2017/05/15 09:12:44 | 000,000,000 | ---D | M] -- F:\ProgramData\SoftwareDistribution [2017/05/15 18:11:32 | 000,000,000 | ---D | M] -- F:\ProgramData\USOPrivate [2017/05/15 18:11:32 | 000,000,000 | ---D | M] -- F:\ProgramData\USOShared [2017/05/20 07:10:37 | 000,000,214 | ---- | M] () -- F:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] Invalid Environment Variable: %ALLUSERSPROFILE%\Application Data\*. Invalid Environment Variable: %ALLUSERSPROFILE%\Application Data\*.exe Invalid Environment Variable: %APPDATA%\*. Invalid Environment Variable: %APPDATA%\*.exe [color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color] [color=#A23BEC]< MD5 for: ALG.EXE >[/color] [2016/07/16 07:42:39 | 000,095,744 | ---- | M] (Microsoft Corporation) MD5=8FD51B3B35707A66080D7C8CB05E792D -- F:\WINDOWS\System32\alg.exe [2016/07/16 07:42:39 | 000,095,744 | ---- | M] (Microsoft Corporation) MD5=8FD51B3B35707A66080D7C8CB05E792D -- F:\Windows\WinSxS\amd64_microsoft-windows-alg_31bf3856ad364e35_10.0.14393.0_none_d65dbd9b71d12da3\alg.exe [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) MD5=A10F989A812B57B9695F6C305907C9C6 -- F:\WINDOWS\System32\drivers\atapi.sys [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) MD5=A10F989A812B57B9695F6C305907C9C6 -- F:\WINDOWS\System32\DriverStore\FileRepository\mshdc.inf_amd64_2e8db38129bb3260\atapi.sys [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) MD5=A10F989A812B57B9695F6C305907C9C6 -- F:\WINDOWS\System32\DriverStore\FileRepository\mshdc.inf_amd64_67bad2c7196330b6\atapi.sys [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) MD5=A10F989A812B57B9695F6C305907C9C6 -- F:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_10.0.14393.0_none_0aac9395383c7303\atapi.sys [2016/07/16 07:41:53 | 000,028,512 | ---- | M] (Microsoft Corporation) MD5=A10F989A812B57B9695F6C305907C9C6 -- F:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_10.0.14393.953_none_170361fcbf7e14a8\atapi.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\Windows.old\WINDOWS\System32\drivers\cdrom.sys [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\Windows.old\WINDOWS\System32\DriverStore\FileRepository\cdrom.inf_amd64_a6b404d9034c85a3\cdrom.sys [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\Windows.old\WINDOWS\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_10.0.14393.0_none_8d1dc75dba7a0eb1\cdrom.sys [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\WINDOWS\System32\drivers\cdrom.sys [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\WINDOWS\System32\DriverStore\FileRepository\cdrom.inf_amd64_a6b404d9034c85a3\cdrom.sys [2016/07/16 07:41:53 | 000,173,056 | ---- | M] (Microsoft Corporation) MD5=613D0137C269187FA298A157E3D14A18 -- F:\Windows\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_10.0.14393.0_none_8d1dc75dba7a0eb1\cdrom.sys [color=#A23BEC]< MD5 for: CSRSS.EXE >[/color] [2016/07/16 08:11:11 | 000,018,144 | ---- | M] (Microsoft Corporation) MD5=77DBC745D957B4F0404ABABC10696784 -- F:\$SysReset\Scratch\csrss.exe [2016/07/16 07:42:27 | 000,018,144 | ---- | M] (Microsoft Corporation) MD5=77DBC745D957B4F0404ABABC10696784 -- F:\Windows.old\WINDOWS\System32\csrss.exe [2016/07/16 07:42:27 | 000,018,144 | ---- | M] (Microsoft Corporation) MD5=77DBC745D957B4F0404ABABC10696784 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-csrss_31bf3856ad364e35_10.0.14393.0_none_86584f52fac852b3\csrss.exe [2016/07/16 07:42:27 | 000,018,144 | ---- | M] (Microsoft Corporation) MD5=77DBC745D957B4F0404ABABC10696784 -- F:\WINDOWS\System32\csrss.exe [2016/07/16 07:42:27 | 000,018,144 | ---- | M] (Microsoft Corporation) MD5=77DBC745D957B4F0404ABABC10696784 -- F:\Windows\WinSxS\amd64_microsoft-windows-csrss_31bf3856ad364e35_10.0.14393.0_none_86584f52fac852b3\csrss.exe [color=#A23BEC]< MD5 for: CTFMON.EXE >[/color] [2016/07/16 07:43:04 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=29656B9E6B04C85E7BF4018B6844BE28 -- F:\Windows.old\WINDOWS\WinSxS\x86_microsoft-windows-t..cesframework-ctfmon_31bf3856ad364e35_10.0.14393.0_none_6e865ccaeee6bd58\ctfmon.exe [2016/07/16 07:43:04 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=29656B9E6B04C85E7BF4018B6844BE28 -- F:\Windows\syswow64\ctfmon.exe [2016/07/16 07:43:04 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=29656B9E6B04C85E7BF4018B6844BE28 -- F:\Windows\WinSxS\x86_microsoft-windows-t..cesframework-ctfmon_31bf3856ad364e35_10.0.14393.0_none_6e865ccaeee6bd58\ctfmon.exe [2016/07/16 07:42:43 | 000,010,752 | ---- | M] (Microsoft Corporation) MD5=BB38581A13B7265CF4E62741955E7457 -- F:\WINDOWS\System32\ctfmon.exe [2016/07/16 07:42:43 | 000,010,752 | ---- | M] (Microsoft Corporation) MD5=BB38581A13B7265CF4E62741955E7457 -- F:\Windows\WinSxS\amd64_microsoft-windows-t..cesframework-ctfmon_31bf3856ad364e35_10.0.14393.0_none_caa4f84ea7442e8e\ctfmon.exe [color=#A23BEC]< MD5 for: DISK.SYS >[/color] [2016/07/16 07:41:53 | 000,101,720 | ---- | M] (Microsoft Corporation) MD5=35B9D46560339A5A7F0CAC6ED702C817 -- F:\WINDOWS\System32\drivers\disk.sys [2016/07/16 07:41:53 | 000,101,720 | ---- | M] (Microsoft Corporation) MD5=35B9D46560339A5A7F0CAC6ED702C817 -- F:\WINDOWS\System32\DriverStore\FileRepository\disk.inf_amd64_879a35d65b2a8a7d\disk.sys [2016/07/16 07:41:53 | 000,101,720 | ---- | M] (Microsoft Corporation) MD5=35B9D46560339A5A7F0CAC6ED702C817 -- F:\Windows\WinSxS\amd64_dual_disk.inf_31bf3856ad364e35_10.0.14393.0_none_daca7f93db83221e\disk.sys [color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color] [2017/05/15 09:03:11 | 004,673,304 | ---- | M] (Microsoft Corporation) MD5=05181A5AC4197D6C5C02ACE6070AF234 -- F:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.0_none_7f29128d906f1326\explorer.exe [2017/05/13 15:17:50 | 000,280,012 | ---- | M] () MD5=3BF9E7164529EF8827B2F9066F0ACE42 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.0_none_897dbcdfc4cfd521\explorer.exe [2017/04/27 20:34:21 | 004,674,360 | ---- | M] (Microsoft Corporation) MD5=679D17F8CDB938C7100D7A647953677E -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.1198_none_c779cf77d4492ac1\explorer.exe [2017/04/27 20:34:21 | 004,674,360 | ---- | M] (Microsoft Corporation) MD5=679D17F8CDB938C7100D7A647953677E -- F:\Windows\explorer.exe [2017/04/27 20:34:21 | 004,674,360 | ---- | M] (Microsoft Corporation) MD5=679D17F8CDB938C7100D7A647953677E -- F:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.1198_none_c779cf77d4492ac1\explorer.exe [2017/04/27 20:39:22 | 004,312,248 | ---- | M] (Microsoft Corporation) MD5=6E46F7CBC16009E381015C69F4FA22B1 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.1198_none_d1ce79ca08a9ecbc\explorer.exe [2017/04/27 20:39:22 | 004,312,248 | ---- | M] (Microsoft Corporation) MD5=6E46F7CBC16009E381015C69F4FA22B1 -- F:\Windows\syswow64\explorer.exe [2017/04/27 20:39:22 | 004,312,248 | ---- | M] (Microsoft Corporation) MD5=6E46F7CBC16009E381015C69F4FA22B1 -- F:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.1198_none_d1ce79ca08a9ecbc\explorer.exe [2017/05/15 09:07:18 | 004,312,248 | ---- | M] (Microsoft Corporation) MD5=8931C71ADDC9B0944332336B9F4A3505 -- F:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_10.0.14393.0_none_897dbcdfc4cfd521\explorer.exe [color=#A23BEC]< MD5 for: I8042PRT.SYS >[/color] [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows.old\WINDOWS\System32\drivers\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows.old\WINDOWS\System32\DriverStore\FileRepository\keyboard.inf_amd64_4598ccf3d42f3525\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows.old\WINDOWS\System32\DriverStore\FileRepository\keyboard.inf_amd64_fde65065f51e7459\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows.old\WINDOWS\WinSxS\amd64_dual_keyboard.inf_31bf3856ad364e35_10.0.14393.0_none_399bf1fd50502494\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows.old\WINDOWS\WinSxS\amd64_dual_keyboard.inf_31bf3856ad364e35_10.0.14393.206_none_462bc394d7669a78\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\WINDOWS\System32\drivers\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\WINDOWS\System32\DriverStore\FileRepository\keyboard.inf_amd64_4598ccf3d42f3525\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\WINDOWS\System32\DriverStore\FileRepository\keyboard.inf_amd64_fde65065f51e7459\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows\WinSxS\amd64_dual_keyboard.inf_31bf3856ad364e35_10.0.14393.0_none_399bf1fd50502494\i8042prt.sys [2016/07/16 07:41:54 | 000,114,176 | ---- | M] (Microsoft Corporation) MD5=B54B30992620C97230013A74461C8517 -- F:\Windows\WinSxS\amd64_dual_keyboard.inf_31bf3856ad364e35_10.0.14393.206_none_462bc394d7669a78\i8042prt.sys [color=#A23BEC]< MD5 for: IASTORV.SYS >[/color] [2016/07/16 07:41:53 | 000,412,000 | ---- | M] (Intel Corporation) MD5=8350FE3BCDE3428BC040877BB7E9EAEB -- F:\WINDOWS\System32\drivers\iaStorV.sys [2016/07/16 07:41:53 | 000,412,000 | ---- | M] (Intel Corporation) MD5=8350FE3BCDE3428BC040877BB7E9EAEB -- F:\WINDOWS\System32\DriverStore\FileRepository\iastorv.inf_amd64_5069105fb236ae4b\iaStorV.sys [2016/07/16 07:41:53 | 000,412,000 | ---- | M] (Intel Corporation) MD5=8350FE3BCDE3428BC040877BB7E9EAEB -- F:\Windows\WinSxS\amd64_iastorv.inf_31bf3856ad364e35_10.0.14393.0_none_dc85bdf39e7a9ef6\iaStorV.sys [color=#A23BEC]< MD5 for: INTELIDE.SYS >[/color] [2016/07/16 07:41:53 | 000,019,296 | ---- | M] (Microsoft Corporation) MD5=9F7E87F6595D065A8A200A291043045E -- F:\WINDOWS\System32\drivers\intelide.sys [2016/07/16 07:41:53 | 000,019,296 | ---- | M] (Microsoft Corporation) MD5=9F7E87F6595D065A8A200A291043045E -- F:\WINDOWS\System32\DriverStore\FileRepository\mshdc.inf_amd64_2e8db38129bb3260\intelide.sys [2016/07/16 07:41:53 | 000,019,296 | ---- | M] (Microsoft Corporation) MD5=9F7E87F6595D065A8A200A291043045E -- F:\WINDOWS\System32\DriverStore\FileRepository\mshdc.inf_amd64_67bad2c7196330b6\intelide.sys [2016/07/16 07:41:53 | 000,019,296 | ---- | M] (Microsoft Corporation) MD5=9F7E87F6595D065A8A200A291043045E -- F:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_10.0.14393.0_none_0aac9395383c7303\intelide.sys [2016/07/16 07:41:53 | 000,019,296 | ---- | M] (Microsoft Corporation) MD5=9F7E87F6595D065A8A200A291043045E -- F:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_10.0.14393.953_none_170361fcbf7e14a8\intelide.sys [color=#A23BEC]< MD5 for: MOUNTMGR.SYS >[/color] [2016/07/16 07:42:27 | 000,104,800 | ---- | M] (Microsoft Corporation) MD5=F5BDAEE4B7D369D4C74668DCFBA3FF10 -- F:\WINDOWS\System32\drivers\mountmgr.sys [2016/07/16 07:42:27 | 000,104,800 | ---- | M] (Microsoft Corporation) MD5=F5BDAEE4B7D369D4C74668DCFBA3FF10 -- F:\Windows\WinSxS\amd64_microsoft-windows-m..pointmanager-minwin_31bf3856ad364e35_10.0.14393.0_none_fdcffc35e3f4bbfe\mountmgr.sys [color=#A23BEC]< MD5 for: MRXSMB.SYS >[/color] [2017/05/15 09:01:11 | 000,449,376 | ---- | M] (Microsoft Corporation) MD5=C9BB4E2FCAB693FEB00CF940060D94F4 -- F:\Windows\WinSxS\amd64_microsoft-windows-smbminirdr_31bf3856ad364e35_10.0.14393.0_none_ad05d8b067d0138a\mrxsmb.sys [2017/03/04 03:08:07 | 000,450,400 | ---- | M] (Microsoft Corporation) MD5=D559FF28B1AD9B1E15A4186E785E61F6 -- F:\Windows.old\WINDOWS\System32\drivers\mrxsmb.sys [2017/03/04 03:08:07 | 000,450,400 | ---- | M] (Microsoft Corporation) MD5=D559FF28B1AD9B1E15A4186E785E61F6 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-smbminirdr_31bf3856ad364e35_10.0.14393.953_none_b95ca717ef11b52f\mrxsmb.sys [2017/03/04 03:08:07 | 000,450,400 | ---- | M] (Microsoft Corporation) MD5=D559FF28B1AD9B1E15A4186E785E61F6 -- F:\WINDOWS\System32\drivers\mrxsmb.sys [2017/03/04 03:08:07 | 000,450,400 | ---- | M] (Microsoft Corporation) MD5=D559FF28B1AD9B1E15A4186E785E61F6 -- F:\Windows\WinSxS\amd64_microsoft-windows-smbminirdr_31bf3856ad364e35_10.0.14393.953_none_b95ca717ef11b52f\mrxsmb.sys [color=#A23BEC]< MD5 for: MRXSMB10.SYS >[/color] [2017/05/15 09:07:51 | 000,282,112 | ---- | M] (Microsoft Corporation) MD5=8F58AEAE00B39AC9AD93755E777B19D8 -- F:\Windows\WinSxS\amd64_microsoft-windows-smb10-minirdr_31bf3856ad364e35_10.0.14393.0_none_b618f704622151ec\mrxsmb10.sys [2016/11/11 05:15:06 | 000,282,624 | ---- | M] (Microsoft Corporation) MD5=D4D12BC29DE0F09280868FDCA65B3474 -- F:\Windows.old\WINDOWS\System32\drivers\mrxsmb10.sys [2016/11/11 05:15:06 | 000,282,624 | ---- | M] (Microsoft Corporation) MD5=D4D12BC29DE0F09280868FDCA65B3474 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-smb10-minirdr_31bf3856ad364e35_10.0.14393.479_none_c2601dd1e96dd1ba\mrxsmb10.sys [2016/11/11 05:15:06 | 000,282,624 | ---- | M] (Microsoft Corporation) MD5=D4D12BC29DE0F09280868FDCA65B3474 -- F:\WINDOWS\System32\drivers\mrxsmb10.sys [2016/11/11 05:15:06 | 000,282,624 | ---- | M] (Microsoft Corporation) MD5=D4D12BC29DE0F09280868FDCA65B3474 -- F:\Windows\WinSxS\amd64_microsoft-windows-smb10-minirdr_31bf3856ad364e35_10.0.14393.479_none_c2601dd1e96dd1ba\mrxsmb10.sys [color=#A23BEC]< MD5 for: MRXSMB20.SYS >[/color] [2017/03/04 03:08:02 | 000,223,584 | ---- | M] (Microsoft Corporation) MD5=0698B15E21EA1B8742F2E7BB3142B754 -- F:\Windows.old\WINDOWS\System32\drivers\mrxsmb20.sys [2017/03/04 03:08:02 | 000,223,584 | ---- | M] (Microsoft Corporation) MD5=0698B15E21EA1B8742F2E7BB3142B754 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-smb20-minirdr_31bf3856ad364e35_10.0.14393.953_none_c4a62f7e27ba2702\mrxsmb20.sys [2017/03/04 03:08:02 | 000,223,584 | ---- | M] (Microsoft Corporation) MD5=0698B15E21EA1B8742F2E7BB3142B754 -- F:\WINDOWS\System32\drivers\mrxsmb20.sys [2017/03/04 03:08:02 | 000,223,584 | ---- | M] (Microsoft Corporation) MD5=0698B15E21EA1B8742F2E7BB3142B754 -- F:\Windows\WinSxS\amd64_microsoft-windows-smb20-minirdr_31bf3856ad364e35_10.0.14393.953_none_c4a62f7e27ba2702\mrxsmb20.sys [2017/05/15 08:59:55 | 000,224,096 | ---- | M] (Microsoft Corporation) MD5=6C83C4A8278E48455DA13E554CEB45F1 -- F:\Windows\WinSxS\amd64_microsoft-windows-smb20-minirdr_31bf3856ad364e35_10.0.14393.0_none_b84f6116a078855d\mrxsmb20.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2017/05/15 09:03:57 | 001,182,048 | ---- | M] (Microsoft Corporation) MD5=36DD2C614720EC2970CB5E870BA69D8D -- F:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_10.0.14393.0_none_86c9e9b03ebeb024\ndis.sys [2017/03/28 02:20:04 | 001,181,024 | ---- | M] (Microsoft Corporation) MD5=63560E6BC9BCA978A6B72DF65F7A8930 -- F:\WINDOWS\System32\drivers\ndis.sys [2017/03/28 02:20:04 | 001,181,024 | ---- | M] (Microsoft Corporation) MD5=63560E6BC9BCA978A6B72DF65F7A8930 -- F:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_10.0.14393.1066_none_cf22a33882932c87\ndis.sys [color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color] [2016/07/16 07:42:27 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=38315FF91B99DCA9468827D8DB22D08B -- F:\Windows.old\WINDOWS\System32\netlogon.dll [2016/07/16 07:42:27 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=38315FF91B99DCA9468827D8DB22D08B -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_10.0.14393.0_none_2b2c22be4eac8cbe\netlogon.dll [2016/07/16 07:42:27 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=38315FF91B99DCA9468827D8DB22D08B -- F:\WINDOWS\System32\netlogon.dll [2016/07/16 07:42:27 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=38315FF91B99DCA9468827D8DB22D08B -- F:\Windows\WinSxS\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_10.0.14393.0_none_2b2c22be4eac8cbe\netlogon.dll [2016/07/16 07:42:55 | 000,670,720 | ---- | M] (Microsoft Corporation) MD5=C4A39409D825D4808832C7B9243FC9B7 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_10.0.14393.0_none_3580cd10830d4eb9\netlogon.dll [2016/07/16 07:42:55 | 000,670,720 | ---- | M] (Microsoft Corporation) MD5=C4A39409D825D4808832C7B9243FC9B7 -- F:\Windows\syswow64\netlogon.dll [2016/07/16 07:42:55 | 000,670,720 | ---- | M] (Microsoft Corporation) MD5=C4A39409D825D4808832C7B9243FC9B7 -- F:\Windows\WinSxS\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_10.0.14393.0_none_3580cd10830d4eb9\netlogon.dll [color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color] [2016/07/16 07:41:53 | 000,166,240 | ---- | M] (NVIDIA Corporation) MD5=23B702B555EB0436B9DAA0BC63DA65CE -- F:\WINDOWS\System32\drivers\nvstor.sys [2016/07/16 07:41:53 | 000,166,240 | ---- | M] (NVIDIA Corporation) MD5=23B702B555EB0436B9DAA0BC63DA65CE -- F:\WINDOWS\System32\DriverStore\FileRepository\nvraid.inf_amd64_3ee6d81b22b3ea66\nvstor.sys [2016/07/16 07:41:53 | 000,166,240 | ---- | M] (NVIDIA Corporation) MD5=23B702B555EB0436B9DAA0BC63DA65CE -- F:\WINDOWS\System32\DriverStore\FileRepository\nvraid.inf_amd64_aba0759e741b93b4\nvstor.sys [2016/07/16 07:41:53 | 000,166,240 | ---- | M] (NVIDIA Corporation) MD5=23B702B555EB0436B9DAA0BC63DA65CE -- F:\Windows\WinSxS\amd64_nvraid.inf_31bf3856ad364e35_10.0.14393.0_none_674f2ea2d5b148ce\nvstor.sys [2016/07/16 07:41:53 | 000,166,240 | ---- | M] (NVIDIA Corporation) MD5=23B702B555EB0436B9DAA0BC63DA65CE -- F:\Windows\WinSxS\amd64_nvraid.inf_31bf3856ad364e35_10.0.14393.1198_none_af9feb8d198b6069\nvstor.sys [color=#A23BEC]< MD5 for: RASACD.SYS >[/color] [2016/07/16 07:42:04 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=CDF47037A0939F56D11F699629C276AD -- F:\WINDOWS\System32\drivers\rasacd.sys [2016/07/16 07:42:04 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=CDF47037A0939F56D11F699629C276AD -- F:\Windows\WinSxS\amd64_microsoft-windows-rasautodial_31bf3856ad364e35_10.0.14393.0_none_3d4e6a317c05c3ca\rasacd.sys [color=#A23BEC]< MD5 for: SCECLI.DLL >[/color] [2016/07/16 07:42:32 | 000,270,336 | ---- | M] (Microsoft Corporation) MD5=7ED53A9C37AE7ADE2A72A1C2EE86879B -- F:\Windows.old\WINDOWS\System32\scecli.dll [2016/07/16 07:42:32 | 000,270,336 | ---- | M] (Microsoft Corporation) MD5=7ED53A9C37AE7ADE2A72A1C2EE86879B -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_10.0.14393.0_none_65824dd6efce1379\scecli.dll [2016/07/16 07:42:32 | 000,270,336 | ---- | M] (Microsoft Corporation) MD5=7ED53A9C37AE7ADE2A72A1C2EE86879B -- F:\WINDOWS\System32\scecli.dll [2016/07/16 07:42:32 | 000,270,336 | ---- | M] (Microsoft Corporation) MD5=7ED53A9C37AE7ADE2A72A1C2EE86879B -- F:\Windows\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_10.0.14393.0_none_65824dd6efce1379\scecli.dll [2016/07/16 07:43:01 | 000,211,968 | ---- | M] (Microsoft Corporation) MD5=C8AEECE11B63D90D4FFE43CFDF1A04A8 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_10.0.14393.0_none_6fd6f829242ed574\scecli.dll [2016/07/16 07:43:01 | 000,211,968 | ---- | M] (Microsoft Corporation) MD5=C8AEECE11B63D90D4FFE43CFDF1A04A8 -- F:\Windows\syswow64\scecli.dll [2016/07/16 07:43:01 | 000,211,968 | ---- | M] (Microsoft Corporation) MD5=C8AEECE11B63D90D4FFE43CFDF1A04A8 -- F:\Windows\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_10.0.14393.0_none_6fd6f829242ed574\scecli.dll [color=#A23BEC]< MD5 for: SERVICES.EXE >[/color] [2017/05/15 08:58:20 | 000,454,600 | ---- | M] (Microsoft Corporation) MD5=133390D061D94917125DC666DA67ECD0 -- F:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_10.0.14393.0_none_6c8d30ea1355e3dc\services.exe [2017/04/27 20:28:41 | 000,453,536 | ---- | M] (Microsoft Corporation) MD5=9A3B47CD17283B299311013AD3D21D26 -- F:\Windows.old\WINDOWS\System32\services.exe [2017/04/27 20:28:41 | 000,453,536 | ---- | M] (Microsoft Corporation) MD5=9A3B47CD17283B299311013AD3D21D26 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_10.0.14393.1198_none_b4ddedd4572ffb77\services.exe [2017/04/27 20:28:41 | 000,453,536 | ---- | M] (Microsoft Corporation) MD5=9A3B47CD17283B299311013AD3D21D26 -- F:\WINDOWS\System32\services.exe [2017/04/27 20:28:41 | 000,453,536 | ---- | M] (Microsoft Corporation) MD5=9A3B47CD17283B299311013AD3D21D26 -- F:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_10.0.14393.1198_none_b4ddedd4572ffb77\services.exe [color=#A23BEC]< MD5 for: SMSS.EXE >[/color] [2016/07/16 07:42:27 | 000,142,584 | ---- | M] (Microsoft Corporation) MD5=55366CB9F41F3112DE634CDB3116E563 -- F:\Windows.old\WINDOWS\System32\smss.exe [2016/07/16 07:42:27 | 000,142,584 | ---- | M] (Microsoft Corporation) MD5=55366CB9F41F3112DE634CDB3116E563 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-smss-minwin_31bf3856ad364e35_10.0.14393.0_none_abd541bdff7e11c6\smss.exe [2016/07/16 07:42:27 | 000,142,584 | ---- | M] (Microsoft Corporation) MD5=55366CB9F41F3112DE634CDB3116E563 -- F:\WINDOWS\System32\smss.exe [2016/07/16 07:42:27 | 000,142,584 | ---- | M] (Microsoft Corporation) MD5=55366CB9F41F3112DE634CDB3116E563 -- F:\Windows\WinSxS\amd64_microsoft-windows-smss-minwin_31bf3856ad364e35_10.0.14393.0_none_abd541bdff7e11c6\smss.exe [color=#A23BEC]< MD5 for: SPOOLSV.EXE >[/color] [2017/03/04 02:08:30 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1DFE222F8D6A422B7ADC909E0C8840DA -- F:\Windows.old\WINDOWS\System32\spoolsv.exe [2017/03/04 02:08:30 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1DFE222F8D6A422B7ADC909E0C8840DA -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_10.0.14393.953_none_1016dd045f7d0b22\spoolsv.exe [2017/03/04 02:08:30 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1DFE222F8D6A422B7ADC909E0C8840DA -- F:\WINDOWS\System32\spoolsv.exe [2017/03/04 02:08:30 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1DFE222F8D6A422B7ADC909E0C8840DA -- F:\Windows\WinSxS\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_10.0.14393.953_none_1016dd045f7d0b22\spoolsv.exe [2017/05/15 09:05:35 | 000,787,968 | ---- | M] (Microsoft Corporation) MD5=DA5A9752A702E86AFC10F06115A8AF4C -- F:\Windows\WinSxS\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_10.0.14393.0_none_03c00e9cd83b697d\spoolsv.exe [color=#A23BEC]< MD5 for: STORPORT.SYS >[/color] [2017/03/04 03:08:17 | 000,509,280 | ---- | M] (Microsoft Corporation) MD5=53B9F3D2D516FEFB4A94432F27CAFC79 -- F:\WINDOWS\System32\drivers\storport.sys [2017/03/04 03:08:17 | 000,509,280 | ---- | M] (Microsoft Corporation) MD5=53B9F3D2D516FEFB4A94432F27CAFC79 -- F:\Windows\WinSxS\amd64_microsoft-windows-storport_31bf3856ad364e35_10.0.14393.953_none_6147888bce232bdf\storport.sys [2017/05/15 09:01:52 | 000,509,280 | ---- | M] (Microsoft Corporation) MD5=84A8C92AFC61F1506F8FBBA5CB5F793B -- F:\Windows\WinSxS\amd64_microsoft-windows-storport_31bf3856ad364e35_10.0.14393.0_none_54f0ba2446e18a3a\storport.sys [color=#A23BEC]< MD5 for: SVCHOST.EXE >[/color] [2016/07/16 07:42:55 | 000,038,792 | ---- | M] (Microsoft Corporation) MD5=1F8434DD4907C832E6E90D6298EAB85B -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-services-svchost_31bf3856ad364e35_10.0.14393.0_none_ed846f6e50612447\svchost.exe [2016/07/16 07:42:55 | 000,038,792 | ---- | M] (Microsoft Corporation) MD5=1F8434DD4907C832E6E90D6298EAB85B -- F:\Windows\syswow64\svchost.exe [2016/07/16 07:42:55 | 000,038,792 | ---- | M] (Microsoft Corporation) MD5=1F8434DD4907C832E6E90D6298EAB85B -- F:\Windows\WinSxS\wow64_microsoft-windows-services-svchost_31bf3856ad364e35_10.0.14393.0_none_ed846f6e50612447\svchost.exe [2016/07/16 07:42:27 | 000,044,496 | ---- | M] (Microsoft Corporation) MD5=36F670D89040709013F6A460176767EC -- F:\Windows.old\WINDOWS\System32\svchost.exe [2016/07/16 07:42:27 | 000,044,496 | ---- | M] (Microsoft Corporation) MD5=36F670D89040709013F6A460176767EC -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_10.0.14393.0_none_e32fc51c1c00624c\svchost.exe [2016/07/16 07:42:27 | 000,044,496 | ---- | M] (Microsoft Corporation) MD5=36F670D89040709013F6A460176767EC -- F:\WINDOWS\System32\svchost.exe [2016/07/16 07:42:27 | 000,044,496 | ---- | M] (Microsoft Corporation) MD5=36F670D89040709013F6A460176767EC -- F:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_10.0.14393.0_none_e32fc51c1c00624c\svchost.exe [color=#A23BEC]< MD5 for: TCPIP.SYS >[/color] [2017/05/15 09:01:10 | 002,538,848 | ---- | M] (Microsoft Corporation) MD5=172B5A199F917B4BACB38F13BCAA11CB -- F:\Windows\WinSxS\amd64_microsoft-windows-tcpip-driver_31bf3856ad364e35_10.0.14393.0_none_056cf12ccde13e7e\tcpip.sys [2017/03/28 01:59:05 | 002,533,728 | ---- | M] (Microsoft Corporation) MD5=F3CFBE74DAF9ABD06F0B2A037DC4C90A -- F:\WINDOWS\System32\drivers\tcpip.sys [2017/03/28 01:59:05 | 002,533,728 | ---- | M] (Microsoft Corporation) MD5=F3CFBE74DAF9ABD06F0B2A037DC4C90A -- F:\Windows\WinSxS\amd64_microsoft-windows-tcpip-driver_31bf3856ad364e35_10.0.14393.1066_none_4dc5aab511b5bae1\tcpip.sys [color=#A23BEC]< MD5 for: USERINIT.EXE >[/color] [2016/07/16 07:42:27 | 000,033,280 | ---- | M] (Microsoft Corporation) MD5=C1B1FFC800BE2F31EB2CF8CB40629C69 -- F:\WINDOWS\System32\userinit.exe [2016/07/16 07:42:27 | 000,033,280 | ---- | M] (Microsoft Corporation) MD5=C1B1FFC800BE2F31EB2CF8CB40629C69 -- F:\Windows\WinSxS\amd64_microsoft-windows-userinit_31bf3856ad364e35_10.0.14393.0_none_099d2590e8629c72\userinit.exe [2016/07/16 07:42:55 | 000,027,648 | ---- | M] (Microsoft Corporation) MD5=FA900E6CCCF0A429D5B720C6F0E2274B -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-userinit_31bf3856ad364e35_10.0.14393.0_none_13f1cfe31cc35e6d\userinit.exe [2016/07/16 07:42:55 | 000,027,648 | ---- | M] (Microsoft Corporation) MD5=FA900E6CCCF0A429D5B720C6F0E2274B -- F:\Windows\syswow64\userinit.exe [2016/07/16 07:42:55 | 000,027,648 | ---- | M] (Microsoft Corporation) MD5=FA900E6CCCF0A429D5B720C6F0E2274B -- F:\Windows\WinSxS\wow64_microsoft-windows-userinit_31bf3856ad364e35_10.0.14393.0_none_13f1cfe31cc35e6d\userinit.exe [color=#A23BEC]< MD5 for: WIN32K.SYS >[/color] [2016/12/14 00:45:35 | 000,147,968 | ---- | M] (Microsoft Corporation) MD5=19F7122EC19F1EDA724D13BF54ABB180 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.1198_none_390d4c72297447bd\win32k.sys [2016/12/14 00:45:35 | 000,147,968 | ---- | M] (Microsoft Corporation) MD5=19F7122EC19F1EDA724D13BF54ABB180 -- F:\Windows\syswow64\win32k.sys [2016/12/14 00:45:35 | 000,147,968 | ---- | M] (Microsoft Corporation) MD5=19F7122EC19F1EDA724D13BF54ABB180 -- F:\Windows\WinSxS\wow64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.1198_none_390d4c72297447bd\win32k.sys [2017/05/15 09:00:15 | 000,150,528 | ---- | M] (Microsoft Corporation) MD5=9B2B5C4CF4EEF6C86ADE51C45FF67455 -- F:\Windows\WinSxS\wow64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.0_none_f0bc8f87e59a3022\win32k.sys [2017/05/13 15:27:48 | 000,005,302 | ---- | M] () MD5=BD6A3671BB9C2D8CD2335F6803AA7AA9 -- F:\Windows.old\WINDOWS\WinSxS\wow64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.0_none_f0bc8f87e59a3022\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows.old\WINDOWS\System32\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.1198_none_2eb8a21ff51385c2\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows.old\WINDOWS\WinSxS\Temp\InFlight\1f49c5ff18ccd2015e0a0000441e4c04\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.1066_none_2ec09ebdf50dea8a\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows.old\WINDOWS\WinSxS\Temp\InFlight\274ba91595b4d201ce090000780dd000\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.953_none_f2beb39d387b0fcc\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows.old\WINDOWS\WinSxS\Temp\InFlight\dbd428604a9fd201cc080000b01e9015\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.594_none_f2946c9f389aa44b\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\WINDOWS\System32\win32k.sys [2016/12/14 00:46:37 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=CB69C94BC348A8435541453D1C1D7F0D -- F:\Windows\WinSxS\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.1198_none_2eb8a21ff51385c2\win32k.sys [2017/05/15 09:07:52 | 000,210,944 | ---- | M] (Microsoft Corporation) MD5=D7938F0B7CF43025AE64BC50DE506D67 -- F:\Windows\WinSxS\amd64_microsoft-windows-win32k_31bf3856ad364e35_10.0.14393.0_none_e667e535b1396e27\win32k.sys [color=#A23BEC]< MD5 for: WININIT.EXE >[/color] [2016/07/16 07:42:27 | 000,304,240 | ---- | M] (Microsoft Corporation) MD5=99A19C9A74E2F9820E501DCE77F84F70 -- F:\Windows.old\WINDOWS\System32\wininit.exe [2016/07/16 07:42:27 | 000,304,240 | ---- | M] (Microsoft Corporation) MD5=99A19C9A74E2F9820E501DCE77F84F70 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-wininit_31bf3856ad364e35_10.0.14393.0_none_5e67244a1b034b09\wininit.exe [2016/07/16 07:42:27 | 000,304,240 | ---- | M] (Microsoft Corporation) MD5=99A19C9A74E2F9820E501DCE77F84F70 -- F:\WINDOWS\System32\wininit.exe [2016/07/16 07:42:27 | 000,304,240 | ---- | M] (Microsoft Corporation) MD5=99A19C9A74E2F9820E501DCE77F84F70 -- F:\Windows\WinSxS\amd64_microsoft-windows-wininit_31bf3856ad364e35_10.0.14393.0_none_5e67244a1b034b09\wininit.exe [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2017/05/15 09:06:33 | 000,674,304 | ---- | M] (Microsoft Corporation) MD5=770DB86BF679CA34FC927F25FBAA350C -- F:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_10.0.14393.0_none_9d376c91eba4205c\winlogon.exe [2017/04/27 19:39:18 | 000,673,792 | ---- | M] (Microsoft Corporation) MD5=B2151FE002A8D3F41E2DF935F260E3A8 -- F:\Windows.old\WINDOWS\System32\winlogon.exe [2017/04/27 19:39:18 | 000,673,792 | ---- | M] (Microsoft Corporation) MD5=B2151FE002A8D3F41E2DF935F260E3A8 -- F:\Windows.old\WINDOWS\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_10.0.14393.1198_none_e588297c2f7e37f7\winlogon.exe [2017/04/27 19:39:18 | 000,673,792 | ---- | M] (Microsoft Corporation) MD5=B2151FE002A8D3F41E2DF935F260E3A8 -- F:\WINDOWS\System32\winlogon.exe [2017/04/27 19:39:18 | 000,673,792 | ---- | M] (Microsoft Corporation) MD5=B2151FE002A8D3F41E2DF935F260E3A8 -- F:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_10.0.14393.1198_none_e588297c2f7e37f7\winlogon.exe [color=#A23BEC]< %systemroot%\*. /mp /s >[/color] [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color] [color=#A23BEC]< CREATERESTOREPOINT >[/color] < End of report >