Resultado do exame da Farbar Recovery Scan Tool (FRST) (x86) Versão: 13-05-2020 01
Executado por Rafaela Andrade (administrador) em CHRYSALIS (Desenvolvida para Positivo Informatica SA POS-MIG31AE) (14-05-2020 14:38:56)
Executando a partir de C:\Users\Rafaela Andrade\Desktop
Perfis Carregados: Rafaela Andrade
Platform: Microsoft Windows 10 Home Versão 1803 17134.1246 (X86) Idioma: Português (Brasil)
Navegador padrão: Opera
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processos (Whitelisted) =================
(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)
(Adobe Inc. -> Adobe Systems) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
(Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
(Gas Informatica Ltda -> GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\CompatTelRunner.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe <2>
(Opera Software AS -> Opera Software) C:\Program Files\Opera\68.0.3618.104\opera.exe <20>
(Opera Software AS -> Opera Software) C:\Program Files\Opera\68.0.3618.104\opera_crashreporter.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe <2>
(QIHU 360 SOFTWARE CO. LIMITED -> Qihu 360 Software Co., Ltd.) C:\Program Files\360\Total Security\safemon\chrome\360webshield.exe
(Trend Micro Inc.) [Arquivo não assinado] C:\Users\Rafaela Andrade\Downloads\HijackThis.exe
==================== Registro (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [486816 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [jswtrayutil] => C:\Program Files\INTELBRAS\WBN 240\WPS\jswtrayutil.exe [32859 2010-04-05] (Intelbras SA) [Arquivo não assinado]
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap.dll [1278920 2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Arquivo não assinado]
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM\...\Run: [QHSafeTray] => C:\Program Files\360\Total Security\safemon\360Tray.exe [413000 2019-07-10] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\...\Run: [Xvid] => C:\Program Files\XviD\CheckUpdate.exe [8192 2011-01-17] () [Arquivo não assinado]
HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\...\Run: [Spotify] => C:\Users\Rafaela Andrade\AppData\Roaming\Spotify\Spotify.exe [22151072 2019-12-18] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\...\Run: [Opera Browser Assistant] => C:\Program Files\Opera\assistant\browser_assistant.exe [3004440 2020-05-13] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-14] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
AppInit_DLLs: c:\progra~2\fastsys\fastsys.dll => Nenhum Arquivo
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Monitor.lnk [2010-04-09]
ShortcutTarget: Monitor.lnk -> C:\Program Files\Positivo Informática\SW_Cadastro\Monitor.exe (Positivo Informática ) [Arquivo não assinado]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PCTV Quick.lnk [2010-04-09]
ShortcutTarget: PCTV Quick.lnk -> C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe (AVerMedia TECHNOLOGIES, Inc.) [Arquivo não assinado]
CHR HKLM\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO
CHR HKU\S-1-5-21-3389360482-2779716845-3774890508-1000\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO
==================== Tarefas Agendadas (Whitelisted) ============
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
Task: {0BF62151-3CCF-488A-B058-9B141B192786} - System32\Tasks\{D046E424-84D8-4B0D-A9DC-B62E10A83C4A} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Dilysadenpt\Dilysadenpt\Delicious Emily´s Tea Garden Em Português\DeliciousEmilyTea.exe" -d "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Dilysadenpt\Dilysadenpt\Delicious Emily´s Tea Garden Em Português"
Task: {24FA84A0-E087-48EC-BC51-2B9C4C815D78} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {26DB0125-04D5-4298-B16E-41036C7F4987} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [646160 2019-12-11] (Oracle America, Inc. -> Oracle Corporation)
Task: {2932A3B6-C7F5-470E-933B-EBF36744D8A5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [155432 2019-10-26] (Google Inc -> Google LLC)
Task: {2A42E1F6-5104-4269-8002-6FFF6B661858} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Nenhum Arquivo <==== ATENÇÃO
Task: {331A90C4-8EA2-4247-8A37-1978EBCFEC00} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1441928 2020-03-19] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {367F930A-A3DB-4112-B1F1-50E92A171C88} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {39736567-3DA6-4CF6-AF0B-9E61349D3B8B} - System32\Tasks\HPCustParticipation HP DeskJet 3630 series => C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPCustPartic.exe [4140552 2014-12-16] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
Task: {3BEA6019-A3C6-4FDF-A6FF-16A532CF8BA1} - System32\Tasks\{FE863ED5-77CC-4E44-BBC8-6B2B160508D3} => C:\WINDOWS\system32\pcalua.exe -a C:\ProgramData\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Nokia_PC_Suite_ALL.exe
Task: {3EDB5124-8120-4D24-8487-E0571DAD7E76} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {435F1D57-1856-4467-9992-3178AFB9A74C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Nenhum Arquivo <==== ATENÇÃO
Task: {49C303C3-D68E-423C-A79E-49872CB716B7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Nenhum Arquivo <==== ATENÇÃO
Task: {51204563-234D-4F0E-99B9-F735D6CF539C} - System32\Tasks\1215avUpdateInfo => C:\ProgramData\Avg_Update_1215av\1215av_AVG-Secure-Search-Update.exe [2784656 2015-11-22] (AVG Technologies CZ, s.r.o. -> )
Task: {5309C5CA-D179-40F0-BD7A-F03EB3AC10F1} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Nenhum Arquivo <==== ATENÇÃO
Task: {5B1E034F-4470-4DBA-9588-5DC45662838B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Nenhum Arquivo <==== ATENÇÃO
Task: {6483A0ED-038E-4156-9065-9EE2482DD57C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Nenhum Arquivo <==== ATENÇÃO
Task: {659D3593-BD34-40C9-B401-CB901E626DC5} - System32\Tasks\{B2013B37-DA7F-4D3C-A8BF-AAA9D674C8F0} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\WeatherBar2\WeatherBar2.exe" -d "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\WeatherBar2"
Task: {65C0A36F-F52D-4074-B5B7-7B13E70C8BBF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} C:\Program Files\Windows Live\SOXE\wlsoxe.dll [179584 2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {65ECFACB-3BC4-446F-8256-3C471E15F8AB} - System32\Tasks\{4D54B4FF-3963-4B6E-9347-ECFF47B10714} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Chocolatier 3 - Decadence\Uninstall.exe" -d "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Chocolatier 3 - Decadence"
Task: {714EA2EB-039D-4DAF-B53E-4C1BF93DA1EA} - \Microsoft\Windows\UNP\RunCampaignManager -> Nenhum Arquivo <==== ATENÇÃO
Task: {726ABE61-82BF-4A52-B644-19189E134B31} - System32\Tasks\{8A3E3963-A3EF-455A-BE8B-2347F4DFB521} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\AppData\Local\Temp\FooPlugin0.9.4Setup_2.3.1.2.exe" -d "C:\Program Files\Last.fm" -c /SILENT /DIR="C:\PROGRA~1\FOOBAR~1\COMPON~1\" <==== ATENÇÃO
Task: {7D509755-E0AE-45E3-A0F6-56C075C24C1C} - System32\Tasks\{C9CB0632-9E6F-4D88-AEA7-324FC6296E30} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Chocolatier 3 - Decadence\Chocolatier 3 - Decadence by Design\Uninstall.exe" -d "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\Chocolatier 3 - Decadence\Chocolatier 3 - Decadence by Design"
Task: {7F72E354-2062-4C4B-9E5C-6A060342B070} - System32\Tasks\RunAsStdUser Task => C:\Program Files\Moo0\VoiceRecorder 1.43\VoiceRecorder.exe [2674688 2013-10-19] (Moo0) [Arquivo não assinado]
Task: {9072BACB-28D9-4107-BB34-F153033E57A4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-10-01] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {92B3E1FD-9A75-4198-8BB5-EAE3325141F1} - System32\Tasks\{998A7754-2DC4-4C99-97C9-F6133526EF49} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\HijackThis.exe" -d "C:\Users\Rafaela Andrade\Downloads"
Task: {968FD0EC-7CC4-4C69-869C-1C27D1AC7DCE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Nenhum Arquivo <==== ATENÇÃO
Task: {96A4AD5A-8A37-4D90-864D-7337F3514973} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2018-01-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {9E5B4F52-ACBB-4232-B9B7-CFB38A5C7453} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd -> Piriform Ltd)
Task: {A9F28C9B-6CA9-4C33-BC61-D33ED05010A0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {AC1748CE-FF34-42CF-9C5C-78EFABB9DA1F} - System32\Tasks\Opera scheduled assistant Autoupdate 1589475919 => C:\Program Files\Opera\launcher.exe [1333784 2020-05-13] (Opera Software AS -> Opera Software)
Task: {B962100A-AFEC-4F48-8038-274C1CD58410} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Nenhum Arquivo <==== ATENÇÃO
Task: {BA23E4D3-D87F-429D-907C-4AC6BD29F8F6} - System32\Tasks\Opera scheduled Autoupdate 1589475907 => C:\Program Files\Opera\launcher.exe [1333784 2020-05-13] (Opera Software AS -> Opera Software)
Task: {C6926A8E-72F7-433B-BE15-EEA9E2EC5244} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Nenhum Arquivo <==== ATENÇÃO
Task: {C9DE25CD-2537-4772-AB01-3595952DEEC7} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Nenhum Arquivo <==== ATENÇÃO
Task: {CDFD7BB8-2ED2-41A1-BEB3-411F1321DC0F} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_28_0_0_137_pepper.exe [1332736 2018-01-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {D18919A0-D08C-4F3C-9FFC-32924AE882D2} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Nenhum Arquivo <==== ATENÇÃO
Task: {D64D9D59-7782-4DC4-AFE1-DC36A273E4EE} - System32\Tasks\{8C5FFBA1-ADA7-47F3-A309-41C076994EEF} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Nokia\Nokia PC Suite 7\ApplicationInstaller.exe" -d "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS" -c "C:\Users\Rafaela Andrade\Downloads\APLICATIVOS\gravity 6757.ALL.sisx"
Task: {D96A3B0C-61DD-47B1-A533-1D70BE96C433} - System32\Tasks\Microsoft\Office Genuine Advantage\OGALogon => C:\Windows\system32\OGAExec.exe
Task: {DBCA01B1-7E58-4E4D-8C5C-87998B695172} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Nenhum Arquivo <==== ATENÇÃO
Task: {DDF8DB64-6CA0-429A-B571-094310B037C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [155432 2019-10-26] (Google Inc -> Google LLC)
Task: {DF3B5BF0-0B8E-4705-BF01-4F49D331C7F5} - System32\Tasks\Programa de atualização online Adobe => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {E6025C84-9795-4F0B-B697-9E89E7B350AA} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Nenhum Arquivo <==== ATENÇÃO
Task: {E79B2998-8F63-451A-A56D-26EDC0A5098A} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {EB5A9F88-E5EE-49F9-9396-93AAEC4C17E3} - System32\Tasks\{845D889A-B594-4340-AAED-CB7EAB139117} => C:\Program Files\Skype\Phone\Skype.exe
Task: {F3585B17-D751-40BF-8569-81DB5FEAA435} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Nenhum Arquivo <==== ATENÇÃO
Task: {FB536972-4082-464B-B1D0-09B8104DD653} - System32\Tasks\{1A945735-CEF0-4513-B174-D09665428007} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\Downloads\mortal_kombat\mortal kombat\setup.exe" -d "C:\Users\Rafaela Andrade\Downloads\mortal_kombat\mortal kombat"
Task: {FD343C3A-E61F-4296-91C8-A542931C2860} - System32\Tasks\{6B913705-9A68-42B3-A6A1-EA28AFED50CB} => C:\Windows\system32\pcalua.exe -a "C:\Users\Rafaela Andrade\AppData\Local\Temp\WmpPluginSetup_2.1.0.6.exe" -d "C:\Program Files\Last.fm" -c /SILENT /DIR="C:\PROGRA~1\WI54FB~1\Plugins\" <==== ATENÇÃO
Task: {FF66D331-6720-416F-944D-21AC5F75829B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Nenhum Arquivo <==== ATENÇÃO
(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)
Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 181.213.132.4 181.213.132.5
Tcpip\..\Interfaces\{72bed299-b5d2-46fe-a94f-af825117032e}: [DhcpNameServer] 181.213.132.4 181.213.132.5
Tcpip\..\Interfaces\{e377087f-706d-49db-91ed-33a77182d4d5}: [DhcpNameServer] 181.213.132.4 181.213.132.5
Tcpip\..\Interfaces\{edfc4b6f-4a6a-4077-86b1-5aa20dd2663f}: [DhcpNameServer] 181.213.132.3 181.213.132.2
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.google.com
DownloadDir: C:\Users\Rafaela Andrade\Downloads\FILMES
SearchScopes: HKLM -> DefaultScope {B61D60A5-6348-4B1E-B91A-0DBF582585A3} URL = hxxp://
www.google.com/search?hl=en&q={searchTerms}&rlz=1I7VASJ_pt-BRBR510
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://
www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM -> {A6F5DBED-FBDB-419C-89DF-0454617C216A} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=POSTDF&pc=MAPT&src=IE-SearchBox
SearchScopes: HKLM -> {B61D60A5-6348-4B1E-B91A-0DBF582585A3} URL = hxxp://
www.google.com/search?hl=en&q={searchTerms}&rlz=1I7VASJ_pt-BRBR510
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> DefaultScope {B61D60A5-6348-4B1E-B91A-0DBF582585A3} URL = hxxp://
www.google.com/search?hl=en&q={searchTerms}&rlz=1I7VASJ_pt-BRBR510
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://
www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {69ABAE4C-47BC-4EAD-A2B3-ED08ED617830} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=ct3135048
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={3CD1749B-7F7F-4967-B2FC-2275E3EA4373}&mid=d350524e8d6e47cc9aa641affc47d788-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pt-br&ds=AVG&coid=avgtbavg&cmpid=0916tb&pr=fr&d=2016-06-10 07:56:17&v=4.3.5.160&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {A6F5DBED-FBDB-419C-89DF-0454617C216A} URL =
SearchScopes: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> {B61D60A5-6348-4B1E-B91A-0DBF582585A3} URL = hxxp://
www.google.com/search?hl=en&q={searchTerms}&rlz=1I7VASJ_pt-BRBR510
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll [2020-03-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-03-21] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - Nenhum Arquivo
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {09EC805C-CB2E-4D53-B0D3-A75A428B81C7} - Nenhum Arquivo
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {F999A48B-1950-4D81-9971-79018F807B4B} - Nenhum Arquivo
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Nenhum Arquivo
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {4D594333-2D56-3700-76A7-7A786E7484D7} - Nenhum Arquivo
Toolbar: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> Sem Nome - {41545534-2D56-3700-76A7-7A786E7484D7} - Nenhum Arquivo
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-06-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-03-02] (Skype Technologies SA -> Skype Technologies S.A.)
Edge:
======
Edge Notifications: HKU\S-1-5-21-3389360482-2779716845-3774890508-1000 -> hxxps://
www.facebook.com; hxxps://web.whatsapp.com
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-01-09] (Adobe Systems Incorporated -> )
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Nenhum Arquivo]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Nenhum Arquivo]
FF Plugin:
@google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google Inc -> Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-03-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-03-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [Nenhum Arquivo]
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [Nenhum Arquivo]
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-03] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3389360482-2779716845-3774890508-1000: @octoshape.com/Octoshape Streaming Services,version=1.0 -> C:\Users\Rafaela Andrade\AppData\Roaming\Octoshape\Octoshape Streaming Services\sua-1702150-0-npoctoshape.dll [2017-02-15] (Octoshape -> Octoshape ApS)
FF Plugin HKU\S-1-5-21-3389360482-2779716845-3774890508-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Rafaela Andrade\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-05-07] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Rafaela Andrade\AppData\Roaming\mozilla\plugins\npoctoshape.dll [2014-08-14]
FF ExtraCheck: C:\Program Files\mozilla firefox\warsaw.cfg [2019-02-18] <==== ATENÇÃO
Chrome:
=======
CHR Profile: C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default [2020-05-14]
CHR Extension: (Apresentações) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-10-26]
CHR Extension: (Documentos) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-10-26]
CHR Extension: (Google Drive) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-10-26]
CHR Extension: (YouTube) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-10-26]
CHR Extension: (Planilhas) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-10-26]
CHR Extension: (Documentos Google off-line) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-14]
CHR Extension: (AVG SafePrice | Comparação, ofertas, cupons) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-05-14]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-26]
CHR Extension: (Gmail) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-10-26]
CHR Extension: (Chrome Media Router) - C:\Users\Rafaela Andrade\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-14]
CHR HKLM\...\Chrome\Extension: [amhlacfinnaffmhfohbpecabbjfhkdji] - C:\Users\Rafaela Andrade\AppData\Local\Temp\ccex.crx
CHR HKLM\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx
Opera:
=======
OPR Notifications: hxxp://meu.zapzap.gratis; hxxps://br-mg6.mail.yahoo.com; hxxps://canaltech.com.br; hxxps://carnaval.uol.com.br; hxxps://cinema.uol.com.br; hxxps://gauchazh.clicrbs.com.br; hxxps://lojaonline.claro.com.br; hxxps://nilsonxavier.blogosfera.uol.com.br; hxxps://oload.download; hxxps://oload.fun; hxxps://pt.ontests.me; hxxps://stfly.io; hxxps://tvefamosos.uol.com.br; hxxps://veja.abril.com.br; hxxps://web.whatsapp.com; hxxps://
www.belezanaweb.com.br; hxxps://
www.claro.com.br; hxxps://
www.decorfacil.com; hxxps://
www.deliveryhabibs.com.br; hxxps://
www.enjoei.com.br; hxxps://
www.katy.com.br; hxxps://
www.quintoandar.com.br; hxxps://
www.semanadoalemao.com; hxxps://
www.thehollywoodgossip.com; hxxps://
www.uol.com.br; hxxps://
www.youtube.com
OPR StartupUrls: "hxxp://oglobo.globo.com/","hxxps://twitter.com/jornaloglobo"
OPR Session Restore: -> está habilitado.
OPR Extension: (360 Internet Protection) - C:\Users\Rafaela Andrade\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnpeghmjdfdmneiljeibjnemfdkojdhl [2019-03-02]
OPR Extension: (Bookmarks Import & Export) - C:\Users\Rafaela Andrade\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2016-10-29]
==================== Serviços (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
R2 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [88648 2020-02-25] (Adobe Inc. -> Adobe Systems)
S4 AVerRemote; C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe [348160 2009-10-30] (AVerMedia) [Arquivo não assinado]
S4 AVerScheduleService; C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe [397312 2009-12-06] () [Arquivo não assinado]
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
S4 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Arquivo não assinado]
S4 jswpbapi; C:\Program Files\INTELBRAS\WBN 240\WPS\jswpbapi.exe [188416 2010-04-05] (Wireless) [Arquivo não assinado]
S4 jswpsapi; C:\Program Files\INTELBRAS\WBN 240\WPS\jswpsapi.exe [954368 2010-04-05] (Wireless) [Arquivo não assinado]
S4 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775632 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
R2 QHActiveDefense; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [961888 2019-09-20] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S3 QHProtected; C:\Program Files\360\Total Security\safemon\WscReg.exe [3147048 2019-02-27] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [883544 2018-10-18] (Gas Informatica Ltda -> GAS Tecnologia LTDA)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe [2303144 2020-05-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe [85760 2020-05-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 Stereo Service; "C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" [X]
===================== Drivers (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
R1 360AntiHacker; C:\WINDOWS\System32\Drivers\360AntiHacker.sys [173400 2019-06-12] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S3 360AvFlt; C:\WINDOWS\System32\DRIVERS\360AvFlt.sys [83456 2019-02-28] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 360Box; C:\WINDOWS\System32\DRIVERS\360Box.sys [224816 2019-06-27] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Camera; C:\WINDOWS\System32\Drivers\360Camera.sys [52216 2019-02-28] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
S0 360elam; C:\WINDOWS\System32\DRIVERS\360elam.sys [16680 2019-02-28] (Microsoft Windows Early Launch Anti-malware Publisher -> 360.cn)
R1 360FileOem; C:\Windows\system32\drivers\360FileOem.sys [146304 2012-05-31] (360.cn) [Arquivo não assinado]
R1 360netmon; C:\WINDOWS\System32\DRIVERS\360netmon.sys [88744 2019-02-28] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 360SelfProtection; C:\WINDOWS\System32\drivers\360SelfProtection.sys [210200 2019-02-28] (Qihoo 360 Software (Beijing) Company Limited -> 360安全中心)
S3 AtcL001; C:\WINDOWS\System32\drivers\l160x86.sys [46592 2008-11-12] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
R3 athur; C:\WINDOWS\System32\drivers\athur.sys [1500160 2010-01-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
R3 AVerBDA6x; C:\WINDOWS\system32\DRIVERS\AVerBDA716x.sys [1151104 2009-06-05] (Microsoft Windows Hardware Compatibility Publisher -> AVerMedia TECHNOLOGIES, Inc.)
R1 BAPIDRV; C:\WINDOWS\System32\DRIVERS\BAPIDRV.sys [206688 2019-06-05] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [26168 2017-10-15] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [40504 2017-10-15] (Disc Soft Ltd -> Disc Soft Ltd)
R1 EfiMon; C:\WINDOWS\System32\Drivers\Efimon.sys [41056 2019-06-05] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R0 HookPort; C:\WINDOWS\System32\Drivers\Hookport.sys [83688 2019-02-28] (Beijing Qihu Technology Co., Ltd. -> 360安全中心)
R1 jswpslwf; C:\WINDOWS\system32\DRIVERS\jswpslwf.sys [20384 2010-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S3 ManyCam; C:\WINDOWS\System32\DRIVERS\mcvidrv.sys [34432 2012-10-11] (Microsoft Windows Hardware Compatibility Publisher -> ManyCam LLC)
S3 mcaudrv_simple; C:\WINDOWS\System32\drivers\mcaudrv.sys [22656 2013-01-31] (Microsoft Windows Hardware Compatibility Publisher -> ManyCam LLC)
R2 mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [12672 2006-06-19] (Conexant) [Arquivo não assinado]
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [50704 2010-01-26] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [32912 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
R1 qutmdserv; C:\WINDOWS\System32\DRIVERS\qutmdrv.sys [368864 2019-06-10] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 qutmipc; C:\WINDOWS\system32\drivers\qutmipc.sys [75000 2019-02-28] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [504832 2018-04-11] (Microsoft Windows -> Realtek )
S3 UrsSynopsys; C:\WINDOWS\System32\drivers\urssynopsys.sys [21920 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [31232 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [37984 2020-05-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [305592 2020-05-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [46000 2020-05-14] (Microsoft Windows -> Microsoft Corporation)
S3 WsAudio_DeviceS(1); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(1).sys [25704 2010-04-13] (Wondershare Software Co., Ltd. -> Wondershare)
S3 WsAudio_DeviceS(2); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(2).sys [25704 2010-04-13] (Wondershare Software Co., Ltd. -> Wondershare)
S3 WsAudio_DeviceS(3); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(3).sys [25704 2010-04-13] (Wondershare Software Co., Ltd. -> Wondershare)
S3 WsAudio_DeviceS(4); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(4).sys [25704 2010-04-13] (Wondershare Software Co., Ltd. -> Wondershare)
S3 WsAudio_DeviceS(5); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(5).sys [25704 2010-04-13] (Wondershare Software Co., Ltd. -> Wondershare)
S1 wsddfac; C:\WINDOWS\System32\drivers\wsddfac.sys [22744 2019-08-01] (GAS INFORMATICA LTDA -> GAS Tecnologia)
R1 wsddntf; C:\WINDOWS\system32\DRIVERS\wsddntf.sys [51680 2019-01-02] (Gas Informatica Ltda -> GAS Tecnologia)
S1 wsddpp; C:\WINDOWS\system32\drivers\wsddpp.sys [42576 2017-11-29] (Gas Informatica Ltda -> GAS Tecnologia)
S3 wsddprm; C:\WINDOWS\system32\drivers\wsddprm.sys [41000 2018-01-09] (Gas Informatica Ltda -> GAS Tecnologia)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; não ImagePath
==================== NetSvcs (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
==================== Três meses (criados) ===================
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
2020-05-14 14:38 - 2020-05-14 14:41 - 000036139 _____ C:\Users\Rafaela Andrade\Desktop\FRST.txt
2020-05-14 14:36 - 2020-05-14 14:40 - 000000000 ____D C:\FRST
2020-05-14 14:36 - 2020-05-14 14:36 - 002012160 _____ (Farbar) C:\Users\Rafaela Andrade\Desktop\FRST.exe
2020-05-14 14:27 - 2020-05-14 14:27 - 000000000 ____D C:\Users\Rafaela Andrade\Downloads\opera autoupdate
2020-05-14 14:05 - 2020-05-14 14:05 - 000004404 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1589475919
2020-05-14 14:05 - 2020-05-14 14:05 - 000004198 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1589475907
2020-05-14 14:05 - 2020-05-14 14:05 - 000001195 _____ C:\Users\Rafaela Andrade\Desktop\Navegador Opera.lnk
2020-05-14 14:05 - 2020-05-14 14:05 - 000001195 _____ C:\Users\Rafaela Andrade\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk
2020-05-14 14:02 - 2020-05-14 14:02 - 002464856 _____ (Opera Software) C:\Users\Rafaela Andrade\Downloads\OperaSetup.exe
2020-05-14 13:08 - 2020-05-14 13:08 - 088787562 _____ C:\Users\Rafaela Andrade\Downloads\1903d89c-e505-425d-bfce-18000dfacef6.tmp
2020-03-23 23:28 - 2020-03-23 23:28 - 000000000 ____D C:\Users\Rafaela Andrade\Desktop\S12E04 - UNTUCKED - The Ball Ball
2020-03-23 23:27 - 2020-03-23 23:28 - 000000000 ____D C:\Users\Rafaela Andrade\Desktop\S12E04 - The Ball Ball
2020-03-21 21:13 - 2020-03-21 21:13 - 000035946 _____ C:\Users\Rafaela Andrade\Documents\Recibo Imposto de Renda 2020.pdf
2020-03-21 20:25 - 2020-03-21 20:25 - 000000000 ____D C:\Users\Rafaela Andrade\.irpf
2020-03-21 20:22 - 2020-03-21 20:22 - 000001765 _____ C:\Users\Todos os Usuários\Desktop\IRPF2020 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk
2020-03-21 20:22 - 2020-03-21 20:22 - 000001765 _____ C:\Users\Public\Desktop\IRPF2020 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk
2020-03-21 20:22 - 2020-03-21 20:22 - 000001765 _____ C:\ProgramData\Desktop\IRPF2020 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk
2020-03-21 20:21 - 2020-03-21 20:21 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2020
2020-03-21 20:21 - 2020-03-21 20:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB2020
2020-03-21 20:16 - 2020-03-21 20:12 - 000112696 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2020-03-21 20:14 - 2020-03-21 20:14 - 000000000 ____D C:\Program Files\Common Files\Java
2020-03-21 20:13 - 2020-03-21 20:13 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Roaming\Sun
2020-03-21 20:12 - 2020-03-21 20:12 - 000000000 ____D C:\Program Files\Common Files\Oracle
2020-03-21 20:04 - 2019-03-28 06:11 - 000029232 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2020-03-21 20:04 - 2019-03-28 03:35 - 000083768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_clr0400.dll
2020-03-21 20:03 - 2019-03-28 06:11 - 000017968 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll
2020-03-21 20:03 - 2019-03-28 03:35 - 000702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_clr0400.dll
2020-03-21 20:03 - 2019-03-28 03:35 - 000433448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_clr0400.dll
2020-03-21 19:56 - 2020-03-21 19:56 - 002066976 ____N (Oracle Corporation) C:\Users\Rafaela Andrade\Desktop\JavaSetup8u241.exe
2020-03-21 19:52 - 2020-03-21 19:55 - 048191480 _____ (Receita Federal do Brasil) C:\Users\Rafaela Andrade\Desktop\IRPF2020Win32v1.5.exe
2020-03-20 16:59 - 2020-03-20 16:59 - 000106705 _____ C:\Users\Rafaela Andrade\Documents\J-0087-19 Casa Firjan – Aquários Março - 24 Stories Instagram 1080x1920.pdf
2020-03-20 16:54 - 2020-03-20 16:54 - 000009556 _____ C:\Users\Rafaela Andrade\Documents\J-0087-19 Casa Firjan – Aquários Março - 24 Email.html
2020-03-20 00:54 - 2020-03-20 00:54 - 000066413 _____ C:\Users\Rafaela Andrade\Documents\Anderson Castro.jpeg
2020-03-20 00:54 - 2020-03-20 00:54 - 000041675 _____ C:\Users\Rafaela Andrade\Documents\Marcelo Mello.jpeg
2020-03-20 00:54 - 2020-03-20 00:54 - 000011518 _____ C:\Users\Rafaela Andrade\Documents\Ivani Silveira.jpeg
2020-03-20 00:53 - 2020-03-20 00:53 - 000056268 _____ C:\Users\Rafaela Andrade\Documents\Daniele Salomão.jpeg
2020-03-19 18:18 - 2020-03-19 18:18 - 000001348 _____ C:\Users\Rafaela Andrade\Documents\Compradores 0704.csv
2020-03-19 18:18 - 2020-03-19 18:18 - 000001080 _____ C:\Users\Rafaela Andrade\Documents\Compradores 1404.csv
2020-03-19 18:17 - 2020-03-19 18:17 - 000001290 _____ C:\Users\Rafaela Andrade\Documents\Compradores 3103.csv
2020-03-19 16:02 - 2020-03-19 16:02 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 004789944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 003397120 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2020-03-19 16:02 - 2020-03-19 16:02 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001559272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001380312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001130568 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 001020280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000581808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-03-19 16:02 - 2020-03-19 16:02 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\system32\gnsdk_fp.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2020-03-19 16:02 - 2020-03-19 16:02 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2020-03-19 16:02 - 2020-03-19 16:02 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2020-03-19 16:02 - 2020-03-19 16:02 - 000074120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-03-19 16:02 - 2020-03-19 16:02 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 022016000 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 020402960 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 019386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 012036096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 007991808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 006682936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 006566448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 005769728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 005662720 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 004939424 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 004517376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 004175360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 004056064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 003885568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 003751824 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 003687424 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 003257856 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 003253760 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002899456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002882048 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 002813952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002796032 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002711864 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 002478152 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002367488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002356224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002206424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-03-19 16:01 - 2020-03-19 16:01 - 002201088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002142520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 002094080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 002031416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 002017280 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2020-03-19 16:01 - 2020-03-19 16:01 - 001987464 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001923896 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001757696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001665536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001659944 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001617160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001586688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001544704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001531408 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001474064 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001472000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001463760 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001362440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001347584 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001320640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msjet40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001300992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001300480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001191016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-19 16:01 - 2020-03-19 16:01 - 001184768 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001171568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001167872 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001094672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001051248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001026280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 001015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000998400 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000994272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000979456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000973824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000970480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000953344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000949856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-19 16:01 - 2020-03-19 16:01 - 000917816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000901120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000890880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000887808 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2020-03-19 16:01 - 2020-03-19 16:01 - 000855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000835872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000832016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000816232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000812440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000806712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000806328 _____ C:\WINDOWS\system32\locale.nls
2020-03-19 16:01 - 2020-03-19 16:01 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000707584 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000700928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000686592 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-03-19 16:01 - 2020-03-19 16:01 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000665432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000665400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000662840 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000659456 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000636904 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000627000 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000625248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000622592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000607544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000607248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000603792 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000576528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000573808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000548664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000540456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000526512 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000525496 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000519544 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000512312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000504072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxbde40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000470512 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000465832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000450872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpx.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000449336 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000447288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000437048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000435216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-19 16:01 - 2020-03-19 16:01 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000412696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000391480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000385272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000379432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspbde40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000374584 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000372024 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000372024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000358712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000358128 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000357336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd3x40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msexcl40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000328696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000322360 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd2x40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000303120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000297688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000287032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000286280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000276792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000265528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msltus40.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000222736 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000221016 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000196920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000196624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000192608 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000191800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-03-19 16:01 - 2020-03-19 16:01 - 000175928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000161080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000146920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000142136 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000141448 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000141112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000138552 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000129360 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000119328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000108560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000108088 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000106560 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000103736 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000098616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000098312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000090360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000085008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000081040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000074552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000071752 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000061456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000058882 _____ C:\WINDOWS\system32\srms.dat
2020-03-19 16:01 - 2020-03-19 16:01 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000056288 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\werkernel.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000038912 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000031248 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-03-19 16:01 - 2020-03-19 16:01 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2020-03-19 16:01 - 2020-03-19 16:01 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2020-03-19 16:01 - 2020-03-19 16:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 013878784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 006053808 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 005821448 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 004173256 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 003554304 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 003330880 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002969600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002603008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002419200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002417744 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002344976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 002281984 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001990056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 001805872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001720320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 001692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001651040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001588736 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001585304 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001462272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001462192 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001427768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001418752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001299472 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001254712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001224192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001082880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001076224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001050624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001020088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000829752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000782136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000746504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-03-19 16:00 - 2020-03-19 16:00 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000734408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000700928 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000632848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-03-19 16:00 - 2020-03-19 16:00 - 000582144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000560600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000550512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000538912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000535864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000502616 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000480272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000424208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000343056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000317112 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000307000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000289800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000286616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000261864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000259088 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000241160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000226104 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000187432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000170952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000159208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viac7.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000140832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000125504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000101400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000089400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000082232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000078648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2020-03-19 16:00 - 2020-03-19 16:00 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000026640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uefi.sys
2020-03-19 16:00 - 2020-03-19 16:00 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2020-03-19 16:00 - 2020-03-19 16:00 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-03-19 14:25 - 2020-03-19 14:26 - 000140683 _____ C:\Users\Rafaela Andrade\Documents\[HASHTAG]#Aquário[/HASHTAG] Controle Geral.xlsx
==================== Três meses (modificados) ==================
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
2020-05-14 14:42 - 2018-04-11 17:36 - 000000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2020-05-14 14:42 - 2018-04-11 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-05-14 14:28 - 2018-05-26 18:26 - 001965150 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-05-14 14:28 - 2018-04-12 02:19 - 000836684 _____ C:\WINDOWS\system32\prfh0416.dat
2020-05-14 14:28 - 2018-04-12 02:19 - 000179966 _____ C:\WINDOWS\system32\prfc0416.dat
2020-05-14 14:28 - 2018-04-11 17:31 - 000000000 ____D C:\WINDOWS\INF
2020-05-14 14:23 - 2018-04-11 17:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-05-14 14:21 - 2018-05-26 19:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-05-14 14:21 - 2018-05-23 15:19 - 000000000 ___DC C:\WINDOWS\Panther
2020-05-14 14:10 - 2018-04-11 09:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-05-14 14:06 - 2010-09-05 23:30 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Local\CrashDumps
2020-05-14 14:06 - 2010-09-04 00:56 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Local\Last.fm
2020-05-14 14:05 - 2014-07-06 00:13 - 000001451 _____ C:\Users\Rafaela Andrade\Desktop\HijackThis.lnk
2020-05-14 14:05 - 2010-09-04 03:48 - 000000000 ____D C:\Program Files\Opera
2020-05-14 13:35 - 2010-09-04 18:32 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Roaming\uTorrent
2020-05-14 13:26 - 2014-01-31 00:39 - 000000286 __RSH C:\Users\Todos os Usuários\ntuser.pol
2020-05-14 13:26 - 2014-01-31 00:39 - 000000286 __RSH C:\ProgramData\ntuser.pol
2020-05-14 13:24 - 2019-03-02 15:18 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\LocalLow\360WD
2020-05-14 13:22 - 2019-09-30 21:25 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Local\Spotify
2020-05-14 13:21 - 2019-09-30 21:21 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Roaming\Spotify
2020-05-14 13:09 - 2012-02-28 15:33 - 000000000 ____D C:\Users\Rafaela Andrade\Downloads\FILMES
2020-05-14 13:04 - 2017-05-14 02:22 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\LocalLow\uTorrent
2020-05-14 12:47 - 2019-09-14 18:13 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Local\BitTorrentHelper
2020-05-14 12:06 - 2019-10-26 22:16 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-14 12:06 - 2019-10-26 22:16 - 000002204 _____ C:\Users\Todos os Usuários\Desktop\Google Chrome.lnk
2020-05-14 12:06 - 2019-10-26 22:16 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-05-14 12:06 - 2019-10-26 22:16 - 000002204 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-05-14 11:34 - 2018-04-11 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2020-05-14 11:20 - 2014-05-02 00:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-05-14 11:13 - 2017-12-12 23:56 - 000000000 ____D C:\Users\Rafaela Andrade\AppData\Local\Packages
2020-05-14 10:35 - 2018-04-11 17:25 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-05-14 10:35 - 2010-09-16 01:34 - 117472672 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-05-14 10:19 - 2018-05-26 19:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-05-14 09:32 - 2015-09-24 16:18 - 000002106 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-05-14 09:26 - 2010-11-28 19:34 - 000609128 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-05-14 09:21 - 2018-05-26 19:12 - 000004192 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{F2622469-7474-42F4-BAFB-99DDBC0C3E4F}
==================== Arquivos na raiz de alguns diretórios ========
2011-03-02 04:17 - 2011-03-02 04:17 - 000000005 _____ () C:\Program Files\thumb_files80.dat
2014-09-07 01:34 - 2014-09-17 21:01 - 000000004 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\appdataFr2.bin
2013-01-26 20:14 - 2015-09-26 01:13 - 000000612 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\AutoGK.ini
2010-09-07 01:53 - 2011-11-06 10:33 - 000000640 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\burnaware.ini
2011-06-30 17:21 - 2012-11-16 16:21 - 000000212 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\default.rss
2015-09-26 01:09 - 2015-09-26 01:09 - 000087608 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\inst.exe
2015-09-26 01:09 - 2015-09-26 01:09 - 000007887 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\pcouffin.cat
2015-09-26 01:09 - 2015-09-26 01:09 - 000001144 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\pcouffin.inf
2015-09-26 01:09 - 2015-09-26 01:09 - 000000055 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\pcouffin.log
2015-09-26 01:09 - 2015-09-26 01:09 - 000047360 _____ (VSO Software) C:\Users\Rafaela Andrade\AppData\Roaming\pcouffin.sys
2010-10-25 20:56 - 2010-10-25 20:56 - 000027337 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\UserTile.png
2011-06-21 17:15 - 2013-11-22 17:59 - 000001181 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\vso_ts_preview.xml
2010-12-03 14:17 - 2017-12-18 23:17 - 000008236 _____ () C:\Users\Rafaela Andrade\AppData\Roaming\wklnhst.dat
2011-01-14 02:04 - 2015-11-17 00:50 - 000125440 _____ () C:\Users\Rafaela Andrade\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-02-06 03:22 - 2016-02-06 03:22 - 000000017 _____ () C:\Users\Rafaela Andrade\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(Não há correção automática para arquivos que não passaram na verificação.)
==================== Fim de FRST.txt ========================