Anda di halaman 1dari 30

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-07-2017

Ran by Haryo S (administrator) on DESKTOP-FHHLETL (22-07-2017 19:08:15)


Running from d:\Users\Haryo S\Downloads\Programs
Loaded Profiles: defaultuser0 & Haryo S (Available Profiles: defaultuser0 & Haryo
S)
Platform: Windows 10 Enterprise Version 1703 (X64) Language: English (United
States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-
recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will
not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA


Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation)
C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\i
gfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK
Hotkey\AsLdrSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK
Package\ATKGFNEX\GFNEXSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Bentley Systems Inc.) C:\Program Files (x86)\Bentley\Engineering\SPC Server v8i
SS4\Bentley.Structural.PropertyCatalog.Server.exe
() C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter ONLY\BTDevMgr.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA
Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA
Corporation\NvContainer\nvcontainer.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License
Service\PsiService_2.exe
(Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
() C:\Program Files\Chaos Group\V-Ray Swarm\register-service.exe
() C:\Program Files\Chaos Group\VRLService\OLS\startvrolservice.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Chaos Software Ltd.) C:\Program Files\Chaos Group\VRLService\OLS\vrol.exe
(Microsoft Corporation)
C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Chaos Software Ltd.) C:\Program Files\Chaos Group\V-Ray Swarm\swrm.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation)
C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\I
ntelCpHeciSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine
Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine
Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA
Corporation\Display.NvContainer\NVDisplay.Container.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK
Hotkey\HControl.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA
Corporation\NvContainer\nvcontainer.exe
(ASUSTek Computer Inc.) C:\Program Files
(x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Intel Corporation)
C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\i
gfxEM.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK
Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart
Gesture\AsTPCenter\x64\AsusTPLoader.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart
Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(LAN Messenger) C:\Program Files (x86)\LAN Messenger\lmc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA
Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce
Experience\NVIDIA Share.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce
Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program
Files\WindowsApps\Microsoft.WindowsStore_11706.1001.25.0_x64__8wekyb3d8bbwe\WinStor
e.App.exe
() C:\Program
Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Mi
crosoft.Photos.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart
Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to
default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe


[629152 2017-03-19] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe"
C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common
Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe
Systems Incorporated)
HKLM\...\Run: [Fences] => C:\Program Files (x86)\Stardock\Fences\Fences.exe
[3934168 2016-09-17] (Stardock Corporation)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk
Shared\AppManager\R1\AdAppMgr.exe [529480 2016-02-24] (Autodesk Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common
Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat
11.0\Acrobat\Acrotray.exe [3478392 2013-12-21] (Adobe Systems Inc.)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1000\...\RunOnce: [WAB Migrate] =>
C:\Program Files\Windows Mail\wab.exe [517120 2017-03-19] (Microsoft Corporation)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Run: [MySELECT.exe] =>
C:\Program Files\Common Files\Bentley Shared\CONNECTION
client\Bentley.Connect.Client.exe [501752 2015-09-23] (Bentley Systems Inc.)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Run: [Fences] => C:\Program
Files (x86)\Stardock\Fences\Fences.exe [3934168 2016-09-17] (Stardock Corporation)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Run:
[EPLTarget\P0000000000000001] =>
C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIN4E.EXE [298560 2014-03-20] (SEIKO
EPSON CORPORATION)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Run: [LAN Messenger] =>
C:\Program Files (x86)\LAN Messenger\lmc.exe [1721344 2012-07-25] (LAN Messenger)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Run: [CCleaner Monitoring]
=> C:\Program Files\CCleaner\CCleaner64.exe [9803992 2017-06-13] (Piriform Ltd)
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\Policies\Explorer: []
IFEO\SppExtComObj.exe: [Debugger] SppExtComObjPatcher.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed


or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1


Tcpip\..\Interfaces\{6e121fd7-8ebd-460d-a9cc-997444d8c3c6}: [DhcpNameServer]
192.168.1.1
Tcpip\..\Interfaces\{e5bf0e46-c7a5-49dc-8bd7-1a1c090d4bb1}: [DhcpNameServer]
192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\Software\Microsoft\Internet
Explorer\Main,Start Page =
SearchScopes: HKU\S-1-5-21-1977530393-1560855581-2334280851-1001 -> DefaultScope
{FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxp://go.mail.ru/distib/ep/?
q={searchTerms}&fr=ntg&product_id=%7BA976E640-3901-4CD1-B7E0-
DEF3020C06A8%7D&gp=811041
SearchScopes: HKU\S-1-5-21-1977530393-1560855581-2334280851-1001 -> {FFEBBF0A-C22C-
4172-89FF-45215A135AC7} URL = hxxp://go.mail.ru/distib/ep/?
q={searchTerms}&fr=ntg&product_id=%7BA976E640-3901-4CD1-B7E0-
DEF3020C06A8%7D&gp=811041
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8}
-> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2016-12-11]
(Internet Download Manager, Tonec Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} ->
C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft
Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} ->
C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-
ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-
31] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-
665D8EE6A077} -> C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-
17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
[2016-12-11] (Internet Download Manager, Tonec Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-
2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll
[2015-08-01] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910}
-> C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-
A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL
[2015-08-01] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-
665D8EE6A077} -> C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-
0819E2EAAC93} - C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-
0819E2EAAC93} - C:\Program Files (x86)\Common
Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21] (Adobe Systems
Incorporated)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program
Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program
Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-08-01] (Microsoft
Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program
Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files
(x86)\Microsoft Office\Office16\MSOSB.DLL [2015-08-01] (Microsoft Corporation)

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] -
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat
11.0\Acrobat\Browser\WCFirefoxExtn [2017-05-12] [not signed]
FF HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\SeaMonkey\Extensions:
[mozilla_cc@internetdownloadmanager.com] - C:\Users\Haryo
S\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Haryo S\AppData\Roaming\IDM\idmmzcc5 [2017-06-02]
[not signed]
FF HKU\S-1-5-21-1977530393-1560855581-2334280851-1001\...\SeaMonkey\Extensions:
[mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet
Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download
Manager\idmmzcc2.xpi [2017-01-26]
FF Plugin: @microsoft.com/SharePoint,version=14.0 ->
C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program
Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program
Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common
Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe
Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 ->
C:\Program Files (x86)\Intel\Intel(R) Management Engine
Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[2015-08-25] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla
Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 ->
C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-08-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files
(x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files
(x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-17] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat
11.0\Acrobat\Air\nppdf32.dll [2013-12-21] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common
Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe
Systems)
FF Plugin HKU\S-1-5-21-1977530393-1560855581-2334280851-1001:
@unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Haryo
S\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-05-09] (Unity
Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla
firefox\plugins\npMeetingJoinPluginOC.dll [2015-07-31] (Microsoft Corporation)

Chrome:
=======
CHR HomePage: Default -> inline.go.mail.ru
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxps://inline.go.mail.ru/search?
inline_comp=dse&q={searchTerms}&fr=chxtn12.0.23
CHR DefaultSearchKeyword: Default -> inline.go.mail.ru
CHR DefaultSuggestURL: Default -> hxxp://suggests.go.mail.ru/chrome?q={searchTerms}
CHR Profile: C:\Users\Haryo S\AppData\Local\Google\Chrome\User Data\Default [2017-
07-22]
CHR Extension: (Google Slides) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-07-17]
CHR Extension: (Google Docs) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-07-17]
CHR Extension: (Google Drive) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-17]
CHR Extension: (YouTube) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-17]
CHR Extension: (Adobe Acrobat) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-07-17]
CHR Extension: (Google Sheets) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-07-17]
CHR Extension: (Google Docs Offline) - C:\Users\Haryo
S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-17]
CHR Extension: (Gmail) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2017-07-17]
CHR Extension: (IDM Integration Module) - C:\Users\Haryo
S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2017-07-17]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Haryo
S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-17]
CHR Extension: (Gmail) - C:\Users\Haryo S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-17]
CHR Extension: (Chrome Media Router) - C:\Users\Haryo
S\AppData\Local\Google\Chrome\User
Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-17]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program
Files (x86)\Internet Download Manager\IDMGCExt.crx [2017-05-25]
CHR HKLM-x32\...\Chrome\Extension: [bhjhnafpiilpffhglajcaepjbnbjemci] -
hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program
Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2013-
12-21]
CHR HKLM-x32\...\Chrome\Extension: [epgjfmblhacacphaljkdcjllkomdcjpc] -
hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [hcadgijmedbfgciegjomfpjcdchlhnif] -
hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iinglghmhcgdgjjlafobajghjamdchik] -
hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)

S2 Autodesk Content Service; C:\Program Files\Autodesk\Content


Service\Connect.Service.ContentService.exe [31160 2015-02-06] (Autodesk, Inc.)
R2 Bentley Property Catalog Service; C:\Program Files (x86)\Bentley\Engineering\SPC
Server v8i SS4\Bentley.Structural.PropertyCatalog.Server.exe [8704 2015-05-28]
(Bentley Systems Inc.) [File not signed]
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter
ONLY\BTDevMgr.exe [121560 2015-07-21] ()
R3 cphs;
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\I
ntelCpHeciSvc.exe [301536 2016-11-30] (Intel Corporation)
S3 cplspcon;
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\I
ntelCpHDCPSvc.exe [480224 2016-11-30] (Intel Corporation)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1392792 2015-10-30] (Intel
Corporation)
R2 igfxCUIService2.0.0.0;
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\i
gfxCUIService.exe [341984 2016-11-30] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program
Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R)
Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security
Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security
Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine
Components\DAL\jhi_service.exe [207648 2015-10-16] (Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA
Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA
Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA
Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-28] (NVIDIA
Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA
Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA
Corporation)
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License
Service\PsiService_2.exe [337776 2013-09-14] (arvato digital services llc)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [292848 2017-05-18] (Realtek
Semiconductor Corp.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe
[3913064 2017-03-19] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10885360
2017-05-31] (TeamViewer GmbH)
R2 VRLService; C:\Program Files\Chaos Group\VRLService\OLS\startvrolservice.exe
[227328 2017-05-12] () [File not signed]
R2 vrswrm-service; C:\Program Files\Chaos Group\V-Ray Swarm\register-service.exe
[90176 2017-05-12] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-19]
(Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20]
(Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)

R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [98296 2015-12-15] (ASUS


Corporation)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung
Electronics Co., Ltd.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55784 2015-10-30] (Intel
Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [52200 2015-10-30] (Intel
Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [260072 2015-10-30] (Intel
Corporation)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [31120 2016-12-20]
(ASUS)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [27552 2017-06-14]
(REALiX(tm))
R3 igfx;
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\i
gdkmd64.sys [11039712 2016-11-30] (Intel Corporation)
R1 MpKsl8cfabd0d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\
{D57403D3-5409-4AFE-BCF1-49DC55B17DFE}\MpKsl8cfabd0d.sys [44928 2017-07-22]
(Microsoft Corporation)
R3 nvlddmkm;
C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_15b1a77b889ed915\nvl
ddmkm.sys [15625336 2017-06-28] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
[30328 2017-06-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48248 2017-06-
21] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-06-28] (NVIDIA
Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [898296 2016-01-13] (Realtek
)
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [723920 2017-05-18]
(Realtek Semiconductor Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [762112 2015-10-21] (Realsil
Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [6813664 2017-05-19] (Realtek
Semiconductor Corporation )
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-19] ()
S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2016-10-18] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung
Electronics Co., Ltd.)
R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [131144 2017-04-28]
(Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [205952 2017-04-28]
(Oracle Corporation)
S3 VMnetAdapter; no ImagePath
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-19] (Microsoft
Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-19]
(Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-19]
(Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-22 19:08 - 2017-07-22 19:08 - 00000000 ____D C:\FRST


2017-07-20 08:16 - 2017-07-20 08:27 - 00000000 ____D C:\ProgramData\HitmanPro
2017-07-19 08:39 - 2017-07-19 08:39 - 00001257 _____ C:\Users\Haryo
S\Desktop\TweakBit PCRepairKit.lnk
2017-07-19 08:39 - 2017-07-19 08:39 - 00000000 ____D
C:\WINDOWS\System32\Tasks\TweakBit
2017-07-19 08:39 - 2017-07-19 08:39 - 00000000 ____D C:\ProgramData\TweakBit
2017-07-19 08:39 - 2017-07-19 08:39 - 00000000 ____D
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
2017-07-19 08:39 - 2017-07-19 08:39 - 00000000 ____D C:\Program Files
(x86)\TweakBit
2017-07-19 07:07 - 2017-07-19 07:08 - 00285926 _____
C:\TDSSKiller.3.1.0.15_19.07.2017_07.07.59_log.txt
2017-07-19 06:40 - 2017-07-19 07:11 - 00000000 ____D C:\AdwCleaner
2017-07-17 13:26 - 2017-07-17 13:26 - 00002354 _____
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-07-17 12:46 - 2017-07-17 12:46 - 00003416 _____
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-07-17 12:46 - 2017-07-17 12:46 - 00003292 _____
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-07-17 02:18 - 2017-07-17 02:18 - 00000000 ____D C:\Users\Haryo
S\AppData\LocalLow\Unity
2017-07-17 02:18 - 2017-07-17 02:18 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\Unity
2017-07-17 02:16 - 2017-07-17 02:16 - 00003722 _____
C:\WINDOWS\System32\Tasks\jooringcommrtsm
2017-07-16 14:14 - 2017-07-16 14:14 - 00833212 _____ C:\Users\Haryo S\Desktop\_
Otomotif.Grid.pdf
2017-07-16 13:54 - 2017-07-17 02:34 - 00000000 ____D C:\Program Files
(x86)\GeoLogismiki Software
2017-07-15 06:29 - 2017-07-15 06:37 - 00000000 ____D C:\Program Files\Intel Driver
Update Utility
2017-07-15 06:29 - 2016-10-18 17:14 - 00021984 _____
C:\WINDOWS\system32\Drivers\semav6msr64.sys
2017-07-14 19:58 - 2017-07-19 10:33 - 104857600 _____
C:\WINDOWS\system32\config\SOFTWARE
2017-07-14 19:56 - 2017-07-14 19:56 - 00000000 ____D C:\WINDOWS\Microsoft
Antimalware
2017-07-14 04:59 - 2016-11-16 18:14 - 00000000 ____D C:\Users\Haryo S\Desktop\tugas
b ing ipa 2
2017-07-12 11:40 - 2017-07-12 11:40 - 04580601 _____ C:\Users\Haryo
S\Desktop\Struktur Yogya Terminal.pdf
2017-07-12 06:52 - 2017-07-07 21:00 - 00947712 _____ (Microsoft Corporation)
C:\WINDOWS\system32\HoloSI.PCShell.dll
2017-07-12 06:52 - 2017-07-07 14:27 - 01147288 _____ (Microsoft Corporation)
C:\WINDOWS\system32\hvix64.exe
2017-07-12 06:52 - 2017-07-07 14:27 - 01024928 _____ (Microsoft Corporation)
C:\WINDOWS\system32\hvax64.exe
2017-07-12 06:52 - 2017-07-07 14:27 - 00750560 _____ (Microsoft Corporation)
C:\WINDOWS\system32\fontdrvhost.exe
2017-07-12 06:52 - 2017-07-07 14:26 - 01065104 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winresume.efi
2017-07-12 06:52 - 2017-07-07 14:25 - 00899824 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winresume.exe
2017-07-12 06:52 - 2017-07-07 14:24 - 00117664 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\pdc.sys
2017-07-12 06:52 - 2017-07-07 14:23 - 02399728 _____ (Microsoft Corporation)
C:\WINDOWS\system32\KernelBase.dll
2017-07-12 06:52 - 2017-07-07 14:22 - 08318880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ntoskrnl.exe
2017-07-12 06:52 - 2017-07-07 14:22 - 01186464 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winload.exe
2017-07-12 06:52 - 2017-07-07 14:21 - 32688336 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WindowsCodecsRaw.dll
2017-07-12 06:52 - 2017-07-07 14:21 - 02969880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-12 06:52 - 2017-07-07 14:20 - 02021680 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wmpmde.dll
2017-07-12 06:52 - 2017-07-07 14:20 - 00923040 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CoreMessaging.dll
2017-07-12 06:52 - 2017-07-07 14:20 - 00519584 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\netio.sys
2017-07-12 06:52 - 2017-07-07 14:20 - 00382368 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\clfs.sys
2017-07-12 06:52 - 2017-07-07 14:15 - 02444696 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-07-12 06:52 - 2017-07-07 14:14 - 07325584 _____ (Microsoft Corporation)
C:\WINDOWS\system32\windows.storage.dll
2017-07-12 06:52 - 2017-07-07 14:14 - 05477088 _____ (Microsoft Corporation)
C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-07-12 06:52 - 2017-07-07 14:14 - 01760264 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WindowsCodecs.dll
2017-07-12 06:52 - 2017-07-07 14:13 - 00872472 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ClipSVC.dll
2017-07-12 06:52 - 2017-07-07 14:13 - 00554392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2017-07-12 06:52 - 2017-07-07 14:13 - 00336320 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SecurityHealthService.exe
2017-07-12 06:52 - 2017-07-07 14:12 - 00411040 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msv1_0.dll
2017-07-12 06:52 - 2017-07-07 14:12 - 00318232 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wininit.exe
2017-07-12 06:52 - 2017-07-07 14:11 - 07904784 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-07-12 06:52 - 2017-07-07 14:11 - 00094624 _____ (Microsoft Corporation)
C:\WINDOWS\system32\rdpudd.dll
2017-07-12 06:52 - 2017-07-07 14:10 - 21353208 _____ (Microsoft Corporation)
C:\WINDOWS\system32\shell32.dll
2017-07-12 06:52 - 2017-07-07 14:10 - 01670496 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winmde.dll
2017-07-12 06:52 - 2017-07-07 14:10 - 01325968 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ole32.dll
2017-07-12 06:52 - 2017-07-07 14:10 - 00254168 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mfps.dll
2017-07-12 06:52 - 2017-07-07 14:09 - 00041376 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wininitext.dll
2017-07-12 06:52 - 2017-07-07 14:08 - 02229152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-07-12 06:52 - 2017-07-07 14:08 - 00699808 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVCatalog.dll
2017-07-12 06:52 - 2017-07-07 14:07 - 01106848 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\http.sys
2017-07-12 06:52 - 2017-07-07 14:07 - 00058488 _____ (Microsoft Corporation)
C:\WINDOWS\system32\lsass.exe
2017-07-12 06:52 - 2017-07-07 13:57 - 00626528 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-07-12 06:52 - 2017-07-07 13:57 - 00125344 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dwmapi.dll
2017-07-12 06:52 - 2017-07-07 13:40 - 23677440 _____ (Microsoft Corporation)
C:\WINDOWS\system32\edgehtml.dll
2017-07-12 06:52 - 2017-07-07 13:39 - 01839872 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\KernelBase.dll
2017-07-12 06:52 - 2017-07-07 13:39 - 00096128 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dmcmnutils.dll
2017-07-12 06:52 - 2017-07-07 13:37 - 31652264 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2017-07-12 06:52 - 2017-07-07 13:37 - 02259760 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-07-12 06:52 - 2017-07-07 13:37 - 01339352 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wmpmde.dll
2017-07-12 06:52 - 2017-07-07 13:31 - 05820984 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\windows.storage.dll
2017-07-12 06:52 - 2017-07-07 13:31 - 01518088 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2017-07-12 06:52 - 2017-07-07 13:31 - 00129184 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\gdi32.dll
2017-07-12 06:52 - 2017-07-07 13:30 - 02165752 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\iertutil.dll
2017-07-12 06:52 - 2017-07-07 13:30 - 00949920 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dcomp.dll
2017-07-12 06:52 - 2017-07-07 13:30 - 00750496 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WWAHost.exe
2017-07-12 06:52 - 2017-07-07 13:29 - 00349600 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msv1_0.dll
2017-07-12 06:52 - 2017-07-07 13:29 - 00123520 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Clipc.dll
2017-07-12 06:52 - 2017-07-07 13:27 - 06759512 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-07-12 06:52 - 2017-07-07 13:27 - 03670016 _____ (Microsoft Corporation)
C:\WINDOWS\system32\win32kfull.sys
2017-07-12 06:52 - 2017-07-07 13:27 - 01050624 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.UI.dll
2017-07-12 06:52 - 2017-07-07 13:27 - 00557568 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ieui.dll
2017-07-12 06:52 - 2017-07-07 13:27 - 00360960 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ConhostV2.dll
2017-07-12 06:52 - 2017-07-07 13:26 - 20373408 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\shell32.dll
2017-07-12 06:52 - 2017-07-07 13:26 - 17364992 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-07-12 06:52 - 2017-07-07 13:26 - 01529384 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\winmde.dll
2017-07-12 06:52 - 2017-07-07 13:26 - 01195240 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AudioEng.dll
2017-07-12 06:52 - 2017-07-07 13:26 - 00988168 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ole32.dll
2017-07-12 06:52 - 2017-07-07 13:25 - 02199552 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-07-12 06:52 - 2017-07-07 13:25 - 00035232 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wininitext.dll
2017-07-12 06:52 - 2017-07-07 13:24 - 01517472 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-07-12 06:52 - 2017-07-07 13:23 - 00583160 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-07-12 06:52 - 2017-07-07 13:23 - 00110592 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Chakradiag.dll
2017-07-12 06:52 - 2017-07-07 13:23 - 00095232 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wudriver.dll
2017-07-12 06:52 - 2017-07-07 13:22 - 07931392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\twinui.dll
2017-07-12 06:52 - 2017-07-07 13:22 - 00130048 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\bthpan.sys
2017-07-12 06:52 - 2017-07-07 13:21 - 00064512 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winsrv.dll
2017-07-12 06:52 - 2017-07-07 13:20 - 23681536 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mshtml.dll
2017-07-12 06:52 - 2017-07-07 13:20 - 08331264 _____ (Microsoft Corporation)
C:\WINDOWS\system32\BingMaps.dll
2017-07-12 06:52 - 2017-07-07 13:20 - 00175616 _____ (Microsoft Corporation)
C:\WINDOWS\system32\prntvpt.dll
2017-07-12 06:52 - 2017-07-07 13:19 - 07149056 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mos.dll
2017-07-12 06:52 - 2017-07-07 13:19 - 00256000 _____ (Microsoft Corporation)
C:\WINDOWS\system32\domgmt.dll
2017-07-12 06:52 - 2017-07-07 13:19 - 00165888 _____ (Microsoft Corporation)
C:\WINDOWS\system32\storewuauth.dll
2017-07-12 06:52 - 2017-07-07 13:18 - 07336448 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-07-12 06:52 - 2017-07-07 13:18 - 00548864 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SensorService.dll
2017-07-12 06:52 - 2017-07-07 13:18 - 00353280 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Wldap32.dll
2017-07-12 06:52 - 2017-07-07 13:18 - 00274944 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WindowsCodecsExt.dll
2017-07-12 06:52 - 2017-07-07 13:17 - 01878016 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-07-12 06:52 - 2017-07-07 13:17 - 01260544 _____ (Microsoft Corporation)
C:\WINDOWS\system32\GamePanel.exe
2017-07-12 06:52 - 2017-07-07 13:17 - 00692736 _____ (Microsoft Corporation)
C:\WINDOWS\system32\jscript9diag.dll
2017-07-12 06:52 - 2017-07-07 13:17 - 00588800 _____ (Microsoft Corporation)
C:\WINDOWS\system32\vbscript.dll
2017-07-12 06:52 - 2017-07-07 13:17 - 00422400 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WpAXHolder.dll
2017-07-12 06:52 - 2017-07-07 13:16 - 12786176 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ieframe.dll
2017-07-12 06:52 - 2017-07-07 13:16 - 00545792 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winspool.drv
2017-07-12 06:52 - 2017-07-07 13:15 - 08238080 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Chakra.dll
2017-07-12 06:52 - 2017-07-07 13:15 - 00922112 _____ (Microsoft Corporation)
C:\WINDOWS\system32\kerberos.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 08211968 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mstscax.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 03784704 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MapRouter.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 02956800 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\win32kfull.sys
2017-07-12 06:52 - 2017-07-07 13:14 - 01802240 _____ (Microsoft Corporation)
C:\WINDOWS\system32\urlmon.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 01448960 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 00790016 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.UI.dll
2017-07-12 06:52 - 2017-07-07 13:14 - 00570880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\PhotoScreensaver.scr
2017-07-12 06:52 - 2017-07-07 13:13 - 13839872 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-07-12 06:52 - 2017-07-07 13:13 - 05892096 _____ (Microsoft Corporation)
C:\WINDOWS\system32\d2d1.dll
2017-07-12 06:52 - 2017-07-07 13:13 - 00840192 _____ (Microsoft Corporation)
C:\WINDOWS\system32\fveapi.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 04730880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\jscript9.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 03307008 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wininet.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 02499584 _____ (Microsoft Corporation)
C:\WINDOWS\system32\twinui.pcshell.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 02199552 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 02055168 _____ (Microsoft Corporation)
C:\WINDOWS\system32\win32kbase.sys
2017-07-12 06:52 - 2017-07-07 13:12 - 01305088 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dosvc.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 01142272 _____ (Microsoft Corporation)
C:\WINDOWS\system32\localspl.dll
2017-07-12 06:52 - 2017-07-07 13:12 - 00706560 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winlogon.exe
2017-07-12 06:52 - 2017-07-07 13:11 - 02829824 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DWrite.dll
2017-07-12 06:52 - 2017-07-07 13:11 - 02649600 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dwmcore.dll
2017-07-12 06:52 - 2017-07-07 13:11 - 01888256 _____ (Microsoft Corporation)
C:\WINDOWS\system32\FntCache.dll
2017-07-12 06:52 - 2017-07-07 13:11 - 01812480 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msxml3.dll
2017-07-12 06:52 - 2017-07-07 13:10 - 05557760 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dbgeng.dll
2017-07-12 06:52 - 2017-07-07 13:10 - 04707840 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ExplorerFrame.dll
2017-07-12 06:52 - 2017-07-07 13:10 - 02444288 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wuaueng.dll
2017-07-12 06:52 - 2017-07-07 13:10 - 00079872 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wudriver.dll
2017-07-12 06:52 - 2017-07-07 13:10 - 00025088 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\eapprovp.dll
2017-07-12 06:52 - 2017-07-07 13:09 - 20504576 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\edgehtml.dll
2017-07-12 06:52 - 2017-07-07 13:09 - 00365056 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\daxexec.dll
2017-07-12 06:52 - 2017-07-07 13:08 - 00285696 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-07-12 06:52 - 2017-07-07 13:07 - 00272896 _____ (Microsoft Corporation)
C:\WINDOWS\system32\PlayToReceiver.dll
2017-07-12 06:52 - 2017-07-07 13:07 - 00117248 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\raschap.dll
2017-07-12 06:52 - 2017-07-07 13:06 - 00412160 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SensorsApi.dll
2017-07-12 06:52 - 2017-07-07 13:06 - 00241152 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2017-07-12 06:52 - 2017-07-07 13:06 - 00205824 _____ (Microsoft Corporation)
C:\WINDOWS\system32\sensrsvc.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 19335168 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mshtml.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 11870720 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ieframe.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 06728192 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\twinui.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 05719040 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\BingMaps.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 00502784 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\DevicePairing.dll
2017-07-12 06:52 - 2017-07-07 13:05 - 00312320 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Wldap32.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 05961216 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 01248768 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 00754176 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\kerberos.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 00506368 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\vbscript.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 00394240 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2017-07-12 06:52 - 2017-07-07 13:04 - 00058368 _____ (Microsoft Corporation)
C:\WINDOWS\system32\csrsrv.dll
2017-07-12 06:52 - 2017-07-07 13:03 - 06123520 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mos.dll
2017-07-12 06:52 - 2017-07-07 13:03 - 00636416 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-07-12 06:52 - 2017-07-07 13:03 - 00446464 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\rastls.dll
2017-07-12 06:52 - 2017-07-07 13:02 - 00952832 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\comdlg32.dll
2017-07-12 06:52 - 2017-07-07 13:02 - 00508416 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2017-07-12 06:52 - 2017-07-07 13:01 - 06287360 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Chakra.dll
2017-07-12 06:52 - 2017-07-07 13:01 - 02859520 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wininet.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 07596544 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mstscax.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 05225984 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\d2d1.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 02588160 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MapRouter.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 01626624 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\urlmon.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 01565184 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msxml3.dll
2017-07-12 06:52 - 2017-07-07 13:00 - 01019904 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\aadtb.dll
2017-07-12 06:52 - 2017-07-07 12:59 - 04417024 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-07-12 06:52 - 2017-07-07 12:59 - 03656704 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\jscript9.dll
2017-07-12 06:52 - 2017-07-07 12:59 - 01494016 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2017-07-12 06:52 - 2017-07-07 12:59 - 01355264 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\OpcServices.dll
2017-07-12 06:52 - 2017-07-07 12:59 - 00787456 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wuapi.dll
2017-07-12 06:52 - 2017-07-07 12:58 - 04559360 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dbgeng.dll
2017-07-12 06:52 - 2017-07-07 12:58 - 02782720 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msftedit.dll
2017-07-12 06:52 - 2017-07-07 12:58 - 02298368 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dwmcore.dll
2017-07-12 06:52 - 2017-07-07 12:58 - 01237504 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-07-12 06:52 - 2017-07-07 12:55 - 00342528 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\WMPhoto.dll
2017-07-12 06:52 - 2017-07-07 12:55 - 00329216 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\SensorsApi.dll
2017-07-12 06:52 - 2017-07-07 12:53 - 01301504 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wdc.dll
2017-07-12 06:52 - 2017-07-07 12:53 - 00338432 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msinfo32.exe
2017-07-12 06:52 - 2017-07-02 05:52 - 00031932 _____
C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2017-07-12 06:52 - 2017-06-20 13:17 - 00034720 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DeviceCensus.exe
2017-07-12 06:52 - 2017-06-20 13:16 - 00335776 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dcntel.dll
2017-07-12 06:52 - 2017-06-20 13:15 - 00233376 _____ (Microsoft Corporation)
C:\WINDOWS\system32\aepic.dll
2017-07-12 06:52 - 2017-06-20 13:11 - 01395152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\winload.efi
2017-07-12 06:52 - 2017-06-20 13:11 - 00411992 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MSAudDecMFT.dll
2017-07-12 06:52 - 2017-06-20 13:10 - 02327456 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\ntfs.sys
2017-07-12 06:52 - 2017-06-20 13:10 - 01930320 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ntdll.dll
2017-07-12 06:52 - 2017-06-20 13:08 - 01242528 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\ndis.sys
2017-07-12 06:52 - 2017-06-20 13:06 - 00279968 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\msiscsi.sys
2017-07-12 06:52 - 2017-06-20 13:05 - 01057832 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MrmCoreR.dll
2017-07-12 06:52 - 2017-06-20 13:04 - 04847424 _____ (Microsoft Corporation)
C:\WINDOWS\explorer.exe
2017-07-12 06:52 - 2017-06-20 13:03 - 00820128 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WWAHost.exe
2017-07-12 06:52 - 2017-06-20 13:03 - 00102312 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CredentialUIBroker.exe
2017-07-12 06:52 - 2017-06-20 13:02 - 02645688 _____ (Microsoft Corporation)
C:\WINDOWS\system32\iertutil.dll
2017-07-12 06:52 - 2017-06-20 13:02 - 01055648 _____ (Microsoft Corporation)
C:\WINDOWS\system32\LicenseManager.dll
2017-07-12 06:52 - 2017-06-20 13:00 - 00255904 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppxAllUserStore.dll
2017-07-12 06:52 - 2017-06-20 13:00 - 00142752 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\wcifs.sys
2017-07-12 06:52 - 2017-06-20 12:59 - 06554928 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Media.dll
2017-07-12 06:52 - 2017-06-20 12:59 - 01220072 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mfsvr.dll
2017-07-12 06:52 - 2017-06-20 12:59 - 00467504 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MFCaptureEngine.dll
2017-07-12 06:52 - 2017-06-20 12:58 - 00833160 _____ (Microsoft Corporation)
C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2017-07-12 06:52 - 2017-06-20 12:57 - 02681760 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\tcpip.sys
2017-07-12 06:52 - 2017-06-20 12:57 - 00204192 _____ (Microsoft Corporation)
C:\WINDOWS\system32\basecsp.dll
2017-07-12 06:52 - 2017-06-20 12:34 - 00192416 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\aepic.dll
2017-07-12 06:52 - 2017-06-20 12:15 - 01620368 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ntdll.dll
2017-07-12 06:52 - 2017-06-20 12:15 - 00455104 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2017-07-12 06:52 - 2017-06-20 12:14 - 01150784 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-07-12 06:52 - 2017-06-20 12:13 - 00787712 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\rpcrt4.dll
2017-07-12 06:52 - 2017-06-20 12:13 - 00056832 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-07-12 06:52 - 2017-06-20 12:12 - 00293376 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MusNotification.exe
2017-07-12 06:52 - 2017-06-20 12:12 - 00264192 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\usbvideo.sys
2017-07-12 06:52 - 2017-06-20 12:12 - 00115712 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\bridge.sys
2017-07-12 06:52 - 2017-06-20 12:12 - 00086528 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\hdaudbus.sys
2017-07-12 06:52 - 2017-06-20 12:11 - 00200192 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ScDeviceEnum.dll
2017-07-12 06:52 - 2017-06-20 12:11 - 00084992 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MshtmlDac.dll
2017-07-12 06:52 - 2017-06-20 12:10 - 00722432 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-07-12 06:52 - 2017-06-20 12:10 - 00315392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-07-12 06:52 - 2017-06-20 12:10 - 00188928 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wincredui.dll
2017-07-12 06:52 - 2017-06-20 12:10 - 00096256 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mshtmled.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00551424 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Payments.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00406032 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\policymanager.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00357888 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Narrator.exe
2017-07-12 06:52 - 2017-06-20 12:09 - 00250368 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SCardSvr.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00208384 _____ (Microsoft Corporation)
C:\WINDOWS\system32\psmsrv.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00189952 _____ (Microsoft Corporation)
C:\WINDOWS\system32\certprop.dll
2017-07-12 06:52 - 2017-06-20 12:09 - 00140288 _____ (Microsoft Corporation)
C:\WINDOWS\system32\iepeers.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 04469840 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\explorer.exe
2017-07-12 06:52 - 2017-06-20 12:08 - 00646656 _____ (Microsoft Corporation)
C:\WINDOWS\system32\LockHostingFramework.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 00386560 _____ (Microsoft Corporation)
C:\WINDOWS\system32\iedkcs32.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 00328704 _____ (Microsoft Corporation)
C:\WINDOWS\system32\PsmServiceExtHost.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 00327168 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WinBioDataModel.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 00274944 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dxtrans.dll
2017-07-12 06:52 - 2017-06-20 12:08 - 00251392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\scksp.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 02475136 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\d3d10warp.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00982016 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\bthport.sys
2017-07-12 06:52 - 2017-06-20 12:07 - 00823296 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MbaeApi.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00632832 _____ (Microsoft Corporation)
C:\WINDOWS\system32\tileobjserver.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00626176 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00510976 _____ (Microsoft Corporation)
C:\WINDOWS\system32\TDLMigration.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00346016 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-07-12 06:52 - 2017-06-20 12:07 - 00138656 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00942592 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wbiosrvc.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00847872 _____ (Microsoft Corporation)
C:\WINDOWS\system32\bisrv.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00754592 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00751104 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msfeeds.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00411648 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ActivationManager.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00299520 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AboveLockAppHost.dll
2017-07-12 06:52 - 2017-06-20 12:06 - 00278944 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\thumbcache.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 04447744 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 01468416 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 00687616 _____ (Microsoft Corporation)
C:\WINDOWS\system32\LogonController.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 00585216 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppReadiness.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 00438096 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 00417792 _____ (Microsoft Corporation)
C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-07-12 06:52 - 2017-06-20 12:05 - 00406528 _____ (Microsoft Corporation)
C:\WINDOWS\system32\InputSwitch.dll
2017-07-12 06:52 - 2017-06-20 12:05 - 00374784 _____ (Microsoft Corporation)
C:\WINDOWS\system32\InstallAgent.exe
2017-07-12 06:52 - 2017-06-20 12:05 - 00364032 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SearchProtocolHost.exe
2017-07-12 06:52 - 2017-06-20 12:04 - 02330520 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\combase.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 01818624 _____ (Microsoft Corporation)
C:\WINDOWS\system32\UIAutomationCore.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 01425920 _____ (Microsoft Corporation)
C:\WINDOWS\system32\certutil.exe
2017-07-12 06:52 - 2017-06-20 12:04 - 01178528 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AppxPackaging.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 01177600 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Unistore.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 01077496 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\webservices.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 00899072 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 00400896 _____ (Microsoft Corporation)
C:\WINDOWS\system32\RDXTaskFactory.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 00181656 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 00178176 _____ (Microsoft Corporation)
C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-07-12 06:52 - 2017-06-20 12:04 - 00049656 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msasn1.dll
2017-07-12 06:52 - 2017-06-20 12:03 - 05806048 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-07-12 06:52 - 2017-06-20 12:03 - 02077184 _____ (Microsoft Corporation)
C:\WINDOWS\system32\inetcpl.cpl
2017-07-12 06:52 - 2017-06-20 12:03 - 00864240 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AudioSes.dll
2017-07-12 06:52 - 2017-06-20 12:03 - 00443728 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2017-07-12 06:52 - 2017-06-20 12:02 - 03377664 _____ (Microsoft Corporation)
C:\WINDOWS\system32\tquery.dll
2017-07-12 06:52 - 2017-06-20 12:02 - 02804736 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-07-12 06:52 - 2017-06-20 12:02 - 01886208 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-07-12 06:52 - 2017-06-20 12:02 - 01121928 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mfsvr.dll
2017-07-12 06:52 - 2017-06-20 12:02 - 00354400 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MMDevAPI.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 04536320 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MFMediaEngine.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 04396032 _____ (Microsoft Corporation)
C:\WINDOWS\system32\D3DCompiler_47.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 03803136 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 03332096 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SRH.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 01076736 _____ (Microsoft Corporation)
C:\WINDOWS\system32\twinui.appcore.dll
2017-07-12 06:52 - 2017-06-20 12:01 - 00176032 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\basecsp.dll
2017-07-12 06:52 - 2017-06-20 12:00 - 02597888 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mssrch.dll
2017-07-12 06:52 - 2017-06-20 12:00 - 02171392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-07-12 06:52 - 2017-06-20 11:59 - 02938880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\InputService.dll
2017-07-12 06:52 - 2017-06-20 11:59 - 01674240 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wpncore.dll
2017-07-12 06:52 - 2017-06-20 11:59 - 01357824 _____ (Microsoft Corporation)
C:\WINDOWS\system32\audiosrv.dll
2017-07-12 06:52 - 2017-06-20 11:56 - 00985600 _____ (Microsoft Corporation)
C:\WINDOWS\system32\TSWorkspace.dll
2017-07-12 06:52 - 2017-06-20 11:54 - 00059392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll
2017-07-12 06:52 - 2017-06-20 11:49 - 00899072 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msctfuimanager.dll
2017-07-12 06:52 - 2017-06-20 11:49 - 00331776 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\oleacc.dll
2017-07-12 06:52 - 2017-06-20 11:46 - 00132096 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-12 06:52 - 2017-06-20 11:45 - 00111104 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2017-07-12 06:52 - 2017-06-20 11:45 - 00064000 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MshtmlDac.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00329728 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00173568 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ClipboardServer.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00151552 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wincredui.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00139776 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\BluetoothApis.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00124928 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\iepeers.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00080384 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mshtmled.dll
2017-07-12 06:52 - 2017-06-20 11:43 - 00052224 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dataclen.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00641024 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\certca.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00387584 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Payments.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00338432 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\iedkcs32.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00266240 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dxtrans.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00226304 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\scksp.dll
2017-07-12 06:52 - 2017-06-20 11:42 - 00121856 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\sendmail.dll
2017-07-12 06:52 - 2017-06-20 11:41 - 00734208 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\bcastdvr.exe
2017-07-12 06:52 - 2017-06-20 11:41 - 00646656 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MbaeApi.dll
2017-07-12 06:52 - 2017-06-20 11:41 - 00601088 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-07-12 06:52 - 2017-06-20 11:41 - 00433152 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2017-07-12 06:52 - 2017-06-20 11:41 - 00201216 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\credprovhost.dll
2017-07-12 06:52 - 2017-06-20 11:40 - 00368128 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2017-07-12 06:52 - 2017-06-20 11:40 - 00356864 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-07-12 06:52 - 2017-06-20 11:40 - 00342016 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\certcli.dll
2017-07-12 06:52 - 2017-06-20 11:40 - 00247808 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2017-07-12 06:52 - 2017-06-20 11:40 - 00230912 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\edputil.dll
2017-07-12 06:52 - 2017-06-20 11:40 - 00038400 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2017-07-12 06:52 - 2017-06-20 11:39 - 02814464 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\themeui.dll
2017-07-12 06:52 - 2017-06-20 11:39 - 02671616 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\tquery.dll
2017-07-12 06:52 - 2017-06-20 11:39 - 00969728 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Unistore.dll
2017-07-12 06:52 - 2017-06-20 11:39 - 00646144 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mmsys.cpl
2017-07-12 06:52 - 2017-06-20 11:39 - 00471040 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\VAN.dll
2017-07-12 06:52 - 2017-06-20 11:39 - 00312320 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2017-07-12 06:52 - 2017-06-20 11:38 - 01451008 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2017-07-12 06:52 - 2017-06-20 11:38 - 01285120 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\dbghelp.dll
2017-07-12 06:52 - 2017-06-20 11:38 - 01171968 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\certutil.exe
2017-07-12 06:52 - 2017-06-20 11:38 - 00663040 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\msfeeds.dll
2017-07-12 06:52 - 2017-06-20 11:38 - 00648192 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2017-07-12 06:52 - 2017-06-20 11:38 - 00329728 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\InstallAgent.exe
2017-07-12 06:52 - 2017-06-20 11:37 - 02008576 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\inetcpl.cpl
2017-07-12 06:52 - 2017-06-20 11:36 - 03667456 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-07-12 06:52 - 2017-06-20 11:35 - 02679296 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\SRH.dll
2017-07-12 06:52 - 2017-06-20 11:35 - 02132480 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\mssrch.dll
2017-07-12 06:52 - 2017-06-20 11:35 - 00050176 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\cldapi.dll
2017-07-12 06:52 - 2017-06-20 11:34 - 04056576 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-07-12 06:52 - 2017-06-20 11:34 - 02750464 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\CertEnroll.dll
2017-07-12 06:52 - 2017-06-20 11:34 - 02211328 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\InputService.dll
2017-07-12 06:52 - 2017-06-20 11:34 - 01492480 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2017-07-12 06:52 - 2017-06-20 11:34 - 00760832 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\rasapi32.dll
2017-07-12 06:52 - 2017-06-20 11:31 - 00334848 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\PlayToDevice.dll
2017-07-12 06:52 - 2017-06-20 11:30 - 00209920 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\wdmaud.drv
2017-07-12 06:52 - 2017-06-20 11:30 - 00157696 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\rpchttp.dll
2017-07-12 06:52 - 2017-06-20 11:30 - 00089088 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\olepro32.dll
2017-07-12 06:52 - 2017-06-20 11:28 - 00584192 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\apphelp.dll
2017-07-12 06:51 - 2017-07-07 14:27 - 00965024 _____ (Microsoft Corporation)
C:\WINDOWS\system32\hvloader.efi
2017-07-12 06:51 - 2017-07-07 14:27 - 00821664 _____ (Microsoft Corporation)
C:\WINDOWS\system32\hvloader.exe
2017-07-12 06:51 - 2017-07-07 14:22 - 00119384 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dmcmnutils.dll
2017-07-12 06:51 - 2017-07-07 14:17 - 01017760 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SecConfig.efi
2017-07-12 06:51 - 2017-07-07 14:14 - 01171032 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dcomp.dll
2017-07-12 06:51 - 2017-07-07 14:13 - 00147800 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Clipc.dll
2017-07-12 06:51 - 2017-07-07 14:12 - 00228256 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-07-12 06:51 - 2017-07-07 14:10 - 01337848 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AudioEng.dll
2017-07-12 06:51 - 2017-07-07 14:10 - 00372128 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudExperienceHost.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 01854880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 01693600 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVIntegration.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 01458584 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 01100704 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVPolicy.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00992672 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVManifest.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00848280 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVOrchestration.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00846752 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVClient.exe
2017-07-12 06:51 - 2017-07-07 14:08 - 00844704 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00774560 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVReporting.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00672672 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVPublishing.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00506776 _____ (Microsoft Corporation)
C:\WINDOWS\system32\TransportDSA.dll
2017-07-12 06:51 - 2017-07-07 14:08 - 00399264 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AppVScripting.dll
2017-07-12 06:51 - 2017-07-07 13:27 - 01640448 _____ (Microsoft Corporation)
C:\WINDOWS\system32\GdiPlus.dll
2017-07-12 06:51 - 2017-07-07 13:27 - 00859136 _____ (Microsoft Corporation)
C:\WINDOWS\system32\uDWM.dll
2017-07-12 06:51 - 2017-07-07 13:27 - 00577024 _____ (Microsoft Corporation)
C:\WINDOWS\system32\duser.dll
2017-07-12 06:51 - 2017-07-07 13:27 - 00443392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2017-07-12 06:51 - 2017-07-07 13:24 - 00114688 _____ (Microsoft Corporation)
C:\WINDOWS\system32\officecsp.dll
2017-07-12 06:51 - 2017-07-07 13:23 - 00113152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wuuhosdeployment.dll
2017-07-12 06:51 - 2017-07-07 13:23 - 00029696 _____ (Microsoft Corporation)
C:\WINDOWS\system32\eapprovp.dll
2017-07-12 06:51 - 2017-07-07 13:22 - 00520704 _____ (Microsoft Corporation)
C:\WINDOWS\system32\daxexec.dll
2017-07-12 06:51 - 2017-07-07 13:21 - 00096256 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ActiveSyncCsp.dll
2017-07-12 06:51 - 2017-07-07 13:19 - 00527360 _____ (Microsoft Corporation)
C:\WINDOWS\system32\aadcloudap.dll
2017-07-12 06:51 - 2017-07-07 13:19 - 00137216 _____ (Microsoft Corporation)
C:\WINDOWS\system32\raschap.dll
2017-07-12 06:51 - 2017-07-07 13:18 - 00563712 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DevicePairing.dll
2017-07-12 06:51 - 2017-07-07 13:17 - 00536064 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-07-12 06:51 - 2017-07-07 13:17 - 00229888 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SIHClient.exe
2017-07-12 06:51 - 2017-07-07 13:16 - 00925696 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WpcWebFilter.dll
2017-07-12 06:51 - 2017-07-07 13:14 - 00497152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\rastls.dll
2017-07-12 06:51 - 2017-07-07 13:12 - 01713664 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-07-12 06:51 - 2017-07-07 13:12 - 01420800 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-07-12 06:51 - 2017-07-07 13:12 - 01293824 _____ (Microsoft Corporation)
C:\WINDOWS\system32\aadtb.dll
2017-07-12 06:51 - 2017-07-07 13:11 - 03139584 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msftedit.dll
2017-07-12 06:51 - 2017-07-07 13:11 - 02177024 _____ (Microsoft Corporation)
C:\WINDOWS\system32\OpcServices.dll
2017-07-12 06:51 - 2017-07-07 13:11 - 00986112 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wuapi.dll
2017-07-12 06:51 - 2017-07-07 13:11 - 00406528 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wuuhext.dll
2017-07-12 06:51 - 2017-07-07 13:07 - 00430080 _____ (Microsoft Corporation)
C:\WINDOWS\system32\PlayToDevice.dll
2017-07-12 06:51 - 2017-07-07 13:07 - 00391168 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WMPhoto.dll
2017-07-12 06:51 - 2017-07-07 13:05 - 00370176 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msinfo32.exe
2017-07-12 06:51 - 2017-07-07 13:04 - 01703424 _____ (Microsoft Corporation)
C:\WINDOWS\system32\aitstatic.exe
2017-07-12 06:51 - 2017-07-07 13:04 - 01403392 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wdc.dll
2017-07-12 06:51 - 2017-06-20 13:18 - 01564576 _____ (Microsoft Corporation)
C:\WINDOWS\system32\appraiser.dll
2017-07-12 06:51 - 2017-06-20 13:18 - 00096672 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CompatTelRunner.exe
2017-07-12 06:51 - 2017-06-20 13:17 - 00629152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\generaltel.dll
2017-07-12 06:51 - 2017-06-20 13:17 - 00544160 _____ (Microsoft Corporation)
C:\WINDOWS\system32\devinv.dll
2017-07-12 06:51 - 2017-06-20 13:17 - 00334240 _____ (Microsoft Corporation)
C:\WINDOWS\system32\invagent.dll
2017-07-12 06:51 - 2017-06-20 13:17 - 00136096 _____ (Microsoft Corporation)
C:\WINDOWS\system32\acmigration.dll
2017-07-12 06:51 - 2017-06-20 13:16 - 01214880 _____ (Microsoft Corporation)
C:\WINDOWS\system32\aeinv.dll
2017-07-12 06:51 - 2017-06-20 13:04 - 00472728 _____ (Microsoft Corporation)
C:\WINDOWS\system32\policymanager.dll
2017-07-12 06:51 - 2017-06-20 13:03 - 00179608 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-07-12 06:51 - 2017-06-20 13:02 - 00426912 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-07-12 06:51 - 2017-06-20 13:00 - 00558920 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-07-12 06:51 - 2017-06-20 12:59 - 01054280 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AudioSes.dll
2017-07-12 06:51 - 2017-06-20 12:59 - 00583304 _____ (Microsoft Corporation)
C:\WINDOWS\system32\audiodg.exe
2017-07-12 06:51 - 2017-06-20 12:58 - 00406072 _____ (Microsoft Corporation)
C:\WINDOWS\system32\MMDevAPI.dll
2017-07-12 06:51 - 2017-06-20 12:58 - 00203168 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-07-12 06:51 - 2017-06-20 12:16 - 00970752 _____ (Microsoft Corporation)
C:\WINDOWS\system32\msctfuimanager.dll
2017-07-12 06:51 - 2017-06-20 12:16 - 00417280 _____ (Microsoft Corporation)
C:\WINDOWS\system32\oleacc.dll
2017-07-12 06:51 - 2017-06-20 12:14 - 00032768 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\mskssrv.sys
2017-07-12 06:51 - 2017-06-20 12:13 - 00216064 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-12 06:51 - 2017-06-20 12:13 - 00081408 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wwanprotdim.dll
2017-07-12 06:51 - 2017-06-20 12:13 - 00064000 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WFDSConMgr.dll
2017-07-12 06:51 - 2017-06-20 12:12 - 00231936 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DolbyMATEnc.dll
2017-07-12 06:51 - 2017-06-20 12:12 - 00144384 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-07-12 06:51 - 2017-06-20 12:10 - 00778240 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DolbyHrtfEnc.dll
2017-07-12 06:51 - 2017-06-20 12:10 - 00189440 _____ (Microsoft Corporation)
C:\WINDOWS\system32\BluetoothApis.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00555008 _____ (Microsoft Corporation)
C:\WINDOWS\system32\WFDSConMgrSvc.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00497152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00427008 _____ (Microsoft Corporation)
C:\WINDOWS\system32\provengine.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00205312 _____ (Microsoft Corporation)
C:\WINDOWS\system32\ClipboardServer.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00135680 _____ (Microsoft Corporation)
C:\WINDOWS\system32\sendmail.dll
2017-07-12 06:51 - 2017-06-20 12:09 - 00062464 _____ (Microsoft Corporation)
C:\WINDOWS\system32\dataclen.dll
2017-07-12 06:51 - 2017-06-20 12:08 - 00791040 _____ (Microsoft Corporation)
C:\WINDOWS\system32\certca.dll
2017-07-12 06:51 - 2017-06-20 12:08 - 00365056 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2017-07-12 06:51 - 2017-06-20 12:07 - 00916992 _____ (Microsoft Corporation)
C:\WINDOWS\system32\bcastdvr.exe
2017-07-12 06:51 - 2017-06-20 12:07 - 00757248 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-07-12 06:51 - 2017-06-20 12:07 - 00621056 _____ (Microsoft Corporation)
C:\WINDOWS\system32\SndVolSSO.dll
2017-07-12 06:51 - 2017-06-20 12:07 - 00411136 _____ (Microsoft Corporation)
C:\WINDOWS\system32\updatehandlers.dll
2017-07-12 06:51 - 2017-06-20 12:06 - 00455680 _____ (Microsoft Corporation)
C:\WINDOWS\system32\certcli.dll
2017-07-12 06:51 - 2017-06-20 12:06 - 00335872 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2017-07-12 06:51 - 2017-06-20 12:06 - 00253440 _____ (Microsoft Corporation)
C:\WINDOWS\system32\edputil.dll
2017-07-12 06:51 - 2017-06-20 12:06 - 00045056 _____ (Microsoft Corporation)
C:\WINDOWS\system32\TokenBrokerUI.dll
2017-07-12 06:51 - 2017-06-20 12:05 - 02873344 _____ (Microsoft Corporation)
C:\WINDOWS\system32\themeui.dll
2017-07-12 06:51 - 2017-06-20 12:05 - 00873472 _____ (Microsoft Corporation)
C:\WINDOWS\system32\rasmans.dll
2017-07-12 06:51 - 2017-06-20 12:05 - 00696320 _____ (Microsoft Corporation)
C:\WINDOWS\system32\mmsys.cpl
2017-07-12 06:51 - 2017-06-20 12:05 - 00056832 _____ (Microsoft Corporation)
C:\WINDOWS\system32\cldapi.dll
2017-07-12 06:51 - 2017-06-20 12:04 - 00802816 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wcmsvc.dll
2017-07-12 06:51 - 2017-06-20 12:03 - 01396224 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wwansvc.dll
2017-07-12 06:51 - 2017-06-20 12:02 - 03204096 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-07-12 06:51 - 2017-06-20 12:02 - 00681984 _____ (Microsoft Corporation)
C:\WINDOWS\system32\usocore.dll
2017-07-12 06:51 - 2017-06-20 12:02 - 00081920 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2017-07-12 06:51 - 2017-06-20 12:01 - 03059200 _____ (Microsoft Corporation)
C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-07-12 06:51 - 2017-06-20 12:01 - 00809984 _____ (Microsoft Corporation)
C:\WINDOWS\system32\rasapi32.dll
2017-07-12 06:51 - 2017-06-20 12:01 - 00397312 _____ (Microsoft Corporation)
C:\WINDOWS\system32\rascustom.dll
2017-07-12 06:51 - 2017-06-20 12:00 - 03057664 _____ (Microsoft Corporation)
C:\WINDOWS\system32\CertEnroll.dll
2017-07-12 06:51 - 2017-06-20 11:58 - 00625152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-07-12 06:51 - 2017-06-20 11:57 - 00290816 _____ (Microsoft Corporation)
C:\WINDOWS\system32\omadmclient.exe
2017-07-12 06:51 - 2017-06-20 11:57 - 00138752 _____ (Microsoft Corporation)
C:\WINDOWS\system32\DMPushRouterCore.dll
2017-07-12 06:51 - 2017-06-20 11:56 - 00600064 _____ (Microsoft Corporation)
C:\WINDOWS\system32\FrameServer.dll
2017-07-12 06:51 - 2017-06-20 11:56 - 00241152 _____ (Microsoft Corporation)
C:\WINDOWS\system32\wdmaud.drv
2017-07-11 22:56 - 2017-07-11 22:56 - 00092260 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (18).pdf
2017-07-11 22:55 - 2017-07-11 22:55 - 00120779 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (17).pdf
2017-07-11 22:54 - 2017-07-11 22:54 - 00110884 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (15).pdf
2017-07-11 22:54 - 2017-07-11 22:54 - 00110883 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (16).pdf
2017-07-11 22:54 - 2017-07-11 22:54 - 00103104 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (14).pdf
2017-07-11 22:52 - 2017-07-11 22:52 - 00205152 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (13).pdf
2017-07-11 22:52 - 2017-07-11 22:52 - 00103103 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (12).pdf
2017-07-11 22:51 - 2017-07-11 22:51 - 00377871 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (10).pdf
2017-07-11 22:51 - 2017-07-11 22:51 - 00194721 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (11).pdf
2017-07-11 22:50 - 2017-07-11 22:50 - 00321680 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (9).pdf
2017-07-11 22:47 - 2017-07-11 22:47 - 00301089 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (8).pdf
2017-07-11 22:47 - 2017-07-11 22:47 - 00258084 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (7).pdf
2017-07-11 22:35 - 2017-07-11 22:35 - 00482645 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (5).pdf
2017-07-11 22:35 - 2017-07-11 22:35 - 00469910 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (6).pdf
2017-07-11 22:34 - 2017-07-11 22:34 - 00437891 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (3).pdf
2017-07-11 22:34 - 2017-07-11 22:34 - 00437669 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (4).pdf
2017-07-11 22:33 - 2017-07-11 22:33 - 00304607 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (2).pdf
2017-07-11 22:32 - 2017-07-11 22:32 - 00322444 _____ C:\Users\Haryo
S\Desktop\gedung terminal Layout1 (1).pdf
2017-07-11 22:29 - 2017-07-11 22:29 - 01792108 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 (3).eps
2017-07-11 22:29 - 2017-07-11 22:29 - 01142420 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 (1).eps
2017-07-11 22:27 - 2017-07-11 22:27 - 01208086 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 ().eps
2017-07-11 22:25 - 2017-07-11 22:25 - 00126202 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 (3).pdf
2017-07-11 22:24 - 2017-07-11 22:24 - 00116935 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 (1).pdf
2017-07-11 22:24 - 2017-07-11 22:24 - 00111847 _____ C:\Users\Haryo S\Desktop\draft
detail Layout1 ().pdf
2017-07-11 21:41 - 2017-07-11 21:41 - 01761082 _____ C:\Users\Haryo
S\Desktop\Lantai Keberangkatan.wmf
2017-07-11 21:04 - 2017-07-11 21:06 - 02151646 _____ C:\Users\Haryo
S\Desktop\Mezzanine.wmf
2017-07-09 15:21 - 2017-07-09 15:21 - 00002355 _____ C:\Users\Public\Desktop\HP
Deskjet 1000 J110 series.lnk
2017-07-09 15:21 - 2017-07-09 15:21 - 00001277 _____ C:\Users\Public\Desktop\Shop
for Supplies - HP Deskjet 1000 J110 series.lnk
2017-07-09 15:21 - 2017-07-09 15:21 - 00000057 _____ C:\ProgramData\Ament.ini
2017-07-09 15:21 - 2017-07-09 15:21 - 00000000 ____D
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-07-09 15:21 - 2017-07-09 15:21 - 00000000 ____D C:\ProgramData\HP
2017-07-09 15:21 - 2017-07-09 15:21 - 00000000 ____D C:\Program Files\HP
2017-07-09 15:21 - 2017-07-09 15:21 - 00000000 ____D C:\Program Files (x86)\HP
2017-07-09 15:20 - 2017-07-09 15:20 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\HP
2017-07-09 15:16 - 2017-07-09 15:16 - 00315995 _____ C:\Users\Haryo
S\Desktop\Check-In Confirmation Pagesmr.pdf
2017-07-07 19:22 - 2017-07-12 11:35 - 00000000 ____D C:\Users\Haryo S\Desktop\JOGJA
07 JULI 2017
2017-07-05 16:06 - 2017-07-05 18:43 - 11141632 _____ C:\Users\Haryo
S\Desktop\Flyover-KA Sta.11+489(SDH).xls
2017-07-05 15:25 - 2017-07-19 12:35 - 00193820 _____ C:\Users\Haryo
S\Desktop\ELASTOMER_ENG.xlsx
2017-07-05 14:38 - 2017-07-05 15:35 - 00136192 _____ C:\Users\Haryo S\Desktop\Copy
of Bearing Design Method Ad.xls
2017-07-05 14:35 - 2017-07-05 08:48 - 00118784 ____N C:\Users\Haryo
S\Desktop\Bearing Design Method A.xls
2017-07-05 14:35 - 2017-07-05 08:42 - 01953894 ____N C:\Users\Haryo
S\Desktop\10_SE_M_2015 Pedoman Perancangan Bantalan Elastomer untuk Perletakan
Jembatan.pdf
2017-07-03 09:12 - 2017-07-03 09:12 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\TeamViewer
2017-07-03 09:09 - 2017-07-03 09:32 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\TeamViewer
2017-07-03 09:09 - 2017-07-03 09:09 - 00001122 _____
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-07-03 09:09 - 2017-07-03 09:09 - 00001110 _____
C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-07-03 09:09 - 2017-07-03 09:09 - 00000000 ____D C:\Program Files
(x86)\TeamViewer
2017-07-03 09:09 - 2017-04-20 14:27 - 00035112 _____ (TeamViewer GmbH)
C:\WINDOWS\system32\Drivers\teamviewervpn.sys
2017-07-01 13:32 - 2017-07-01 13:32 - 00454991 _____ C:\Users\Haryo
S\Desktop\Authorized Service Center - Yamaha - Indonesia.pdf
2017-07-01 11:35 - 2017-07-01 11:35 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2017-06-30 17:51 - 2017-06-30 17:51 - 00000000 ____D C:\Program Files
(x86)\VulkanRT
2017-06-30 17:51 - 2017-03-11 04:17 - 00536864 _____ C:\WINDOWS\system32\vulkan-
1.dll
2017-06-30 17:51 - 2017-03-11 04:17 - 00525600 _____ C:\WINDOWS\SysWOW64\vulkan-
1.dll
2017-06-30 17:51 - 2017-03-11 04:17 - 00254240 _____
C:\WINDOWS\system32\vulkaninfo.exe
2017-06-30 17:51 - 2017-03-11 04:17 - 00233760 _____
C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-06-30 17:49 - 2017-06-28 05:39 - 40239736 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvcompiler.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 35838912 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvoglv64.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 35314296 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 28953536 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 13559376 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvcuda.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 12337296 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvopencl.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 12132272 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 11501776 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvcuda.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 10381664 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvopencl.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 09982456 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 04163008 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvcuvid.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 03595384 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 01988216 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvdispco6438476.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 01597888 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvdispgenco6438476.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 01278528 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvEncMFTH264.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 01067128 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\NvFBC64.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 01004664 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\NvFBC.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00996760 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00972736 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\NvIFR64.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00924096 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\NvIFR.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00781728 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00689808 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00617416 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00609728 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\NvIFROpenGL.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00578056 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00499320 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-06-30 17:49 - 2017-06-28 05:39 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-
vk32.json
2017-06-30 17:49 - 2017-06-28 05:39 - 00000669 _____ C:\WINDOWS\system32\nv-
vk64.json
2017-06-26 22:29 - 2017-06-26 22:29 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\etcher
2017-06-25 06:15 - 2017-06-25 06:16 - 00000000 ____D C:\Program Files\CCleaner
2017-06-25 06:15 - 2017-06-25 06:15 - 00002874 _____
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2017-06-25 06:15 - 2017-06-25 06:15 - 00000869 _____
C:\Users\Public\Desktop\CCleaner.lnk
2017-06-25 06:15 - 2017-06-25 06:15 - 00000000 ____D
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-06-24 12:00 - 2017-06-21 14:07 - 00179320 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvaudcap64v.dll
2017-06-24 12:00 - 2017-06-21 14:07 - 00146552 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-06-23 12:10 - 2014-09-17 08:45 - 00447752 _____ (On2.com)
C:\WINDOWS\SysWOW64\vp6vfw.dll
2017-06-23 11:55 - 2017-06-23 11:55 - 00000613 _____ C:\Users\Public\Desktop\The
Sims 4.lnk
2017-06-23 11:55 - 2017-06-23 11:55 - 00000613 _____
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4.lnk
2017-06-22 14:52 - 2017-06-22 14:53 - 00000000 ____D C:\Virtual Disk
2017-06-22 14:51 - 2017-06-22 14:51 - 00000000 ____D C:\Users\Haryo S\VirtualBox
VMs
2017-06-22 13:15 - 2017-07-18 12:20 - 00000000 ____D C:\Users\Haryo S\.VirtualBox
2017-06-22 13:15 - 2017-06-22 13:15 - 00000000 ____D
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2017-06-22 13:14 - 2017-06-22 13:14 - 00000000 ____D C:\Program Files\Oracle
2017-06-22 13:14 - 2017-04-28 17:37 - 00961768 _____ (Oracle Corporation)
C:\WINDOWS\system32\Drivers\VBoxDrv.sys
2017-06-22 13:14 - 2017-04-28 17:37 - 00149304 _____ (Oracle Corporation)
C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-22 19:02 - 2017-06-02 00:21 - 00000000 ____D C:\Users\Haryo


S\AppData\Roaming\DMCache
2017-07-22 17:54 - 2017-05-18 11:44 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-07-22 12:46 - 2017-05-18 11:52 - 00003550 _____ C:\WINDOWS\System32\Tasks\ASUS
Live Update1
2017-07-22 12:46 - 2017-05-18 11:52 - 00003540 _____ C:\WINDOWS\System32\Tasks\ASUS
Live Update2
2017-07-22 12:46 - 2017-05-18 11:45 - 00000000 ____D C:\ProgramData\NVIDIA
2017-07-22 12:44 - 2017-05-11 23:44 - 00000000 __SHD C:\Users\Haryo
S\IntelGraphicsProfiles
2017-07-22 12:44 - 2017-05-11 23:26 - 00000000 ____D C:\ProgramData\ASUS Smart
Gesture
2017-07-22 07:47 - 2017-05-12 02:41 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\Computers and Structures
2017-07-22 07:37 - 2017-03-19 04:03 - 00000000 ___HD C:\Program Files\WindowsApps
2017-07-22 07:30 - 2017-05-12 10:56 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\vlc
2017-07-22 07:23 - 2017-05-12 06:33 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\tixati
2017-07-21 20:56 - 2017-05-12 01:27 - 00000218 _____
C:\WINDOWS\SysWOW64\v71f9ko.tgz
2017-07-21 20:56 - 2017-05-12 01:27 - 00000204 _____
C:\WINDOWS\SysWOW64\v71f9ko.dll
2017-07-21 20:56 - 2017-05-12 01:27 - 00000114 _____ C:\WINDOWS\SysWOW64\prsgrc.tgz
2017-07-21 20:56 - 2017-05-12 01:27 - 00000100 _____ C:\WINDOWS\SysWOW64\prsgrc.dll
2017-07-21 20:56 - 2017-05-12 01:27 - 00000086 _____ C:\WINDOWS\SysWOW64\ssprs.tgz
2017-07-20 12:08 - 2017-05-11 23:22 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\Packages
2017-07-19 12:11 - 2017-05-12 00:41 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\Google
2017-07-19 10:41 - 2017-05-18 11:56 - 02244264 _____
C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-19 10:34 - 2017-05-18 11:52 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-19 10:33 - 2017-03-18 18:40 - 01048576 _____ C:\WINDOWS\system32\config\BBI
2017-07-19 07:11 - 2017-05-20 08:12 - 00000008 __RSH C:\ProgramData\ntuser.pol
2017-07-19 07:02 - 2017-05-12 06:21 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\CrashDumps
2017-07-17 20:34 - 2017-05-18 11:45 - 00000000 ____D C:\Users\Haryo S
2017-07-17 13:26 - 2017-05-12 00:41 - 00000000 ____D C:\Program Files (x86)\Google
2017-07-17 12:43 - 2017-05-12 00:48 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\MicrosoftEdge
2017-07-17 11:12 - 2017-05-11 23:22 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\VirtualStore
2017-07-15 06:37 - 2017-05-18 11:44 - 00000000 ____D C:\Program Files\Intel
2017-07-15 06:37 - 2017-05-11 23:34 - 00000000 ____D C:\ProgramData\Package Cache
2017-07-15 06:29 - 2017-05-12 00:02 - 00000000 ____D C:\ProgramData\Intel
2017-07-15 03:51 - 2017-05-12 17:12 - 00000000 ____D C:\Program Files
(x86)\SpeedFan
2017-07-14 18:04 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\rescache
2017-07-13 03:53 - 2017-03-19 04:01 - 00000000 ____D C:\WINDOWS\INF
2017-07-12 14:50 - 2017-05-18 11:44 - 00559480 _____
C:\WINDOWS\system32\FNTCACHE.DAT
2017-07-12 14:50 - 2017-05-11 23:22 - 00000000 __RHD
C:\Users\Public\AccountPictures
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ___RD
C:\WINDOWS\ImmersiveControlPanel
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ___RD C:\Program Files\Windows
Defender
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\Program Files\Windows Photo
Viewer
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\Program Files (x86)\Windows
Photo Viewer
2017-07-12 14:46 - 2017-03-19 04:03 - 00000000 ____D C:\Program Files (x86)\Windows
Defender
2017-07-12 12:21 - 2017-06-02 00:21 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\IDM
2017-07-12 11:35 - 2017-05-24 01:10 - 15242478 _____ C:\Users\Haryo S\Desktop\New
Yogyakarta Int'l Airport 2017 (presentation) struktur progres satu A.pptx
2017-07-12 06:54 - 2017-05-12 00:34 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-07-12 06:53 - 2017-05-12 00:34 - 135225752 ____C (Microsoft Corporation)
C:\WINDOWS\system32\MRT.exe
2017-07-03 08:26 - 2017-05-23 03:13 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\WhatsApp
2017-07-03 08:09 - 2017-05-23 03:13 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2017-07-03 08:09 - 2017-05-23 03:13 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\WhatsApp
2017-07-03 08:09 - 2017-05-23 03:13 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\SquirrelTemp
2017-07-01 11:34 - 2017-06-19 06:33 - 00000000 ____D C:\Program Files
(x86)\Motorola Mobility
2017-07-01 11:34 - 2017-05-12 00:01 - 00000000 ___HD C:\Program Files
(x86)\InstallShield Installation Information
2017-06-30 21:47 - 2017-03-19 04:06 - 00835576 _____ (Adobe Systems Incorporated)
C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-06-30 21:47 - 2017-03-19 04:06 - 00177656 _____ (Adobe Systems Incorporated)
C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-06-30 17:51 - 2017-06-19 06:33 - 00000000 ____D C:\Temp
2017-06-28 05:39 - 2017-05-12 02:01 - 04208984 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvapi64.dll
2017-06-28 05:39 - 2017-05-12 02:01 - 03709952 _____ (NVIDIA Corporation)
C:\WINDOWS\SysWOW64\nvapi.dll
2017-06-28 05:39 - 2017-05-12 02:01 - 00057792 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-06-28 05:39 - 2017-05-12 02:01 - 00046373 _____ C:\WINDOWS\system32\nvinfo.pb
2017-06-28 04:03 - 2017-05-18 11:45 - 06462400 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvcpl.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 02478712 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvsvc64.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 01762936 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvsvcr.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 00549312 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nv3dappshext.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 00392312 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvmctray.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 00082040 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nv3dappshextr.dll
2017-06-28 04:03 - 2017-05-18 11:45 - 00069752 _____ (NVIDIA Corporation)
C:\WINDOWS\system32\nvshext.dll
2017-06-28 03:52 - 2017-05-18 11:45 - 00001951 _____
C:\WINDOWS\NvContainerRecovery.bat
2017-06-25 06:17 - 2017-05-18 00:01 - 00000000 ___DC C:\WINDOWS\Panther
2017-06-24 23:20 - 2017-06-13 12:46 - 00000000 ____D C:\Users\Haryo S\Desktop\New
folder
2017-06-24 12:00 - 2017-05-18 11:52 - 00004308 _____
C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00004000 _____
C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-
BAEC-A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003994 _____
C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003894 _____
C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003866 _____
C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003858 _____
C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003696 _____
C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:52 - 00003654 _____
C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-
A80AA35AC5B8}
2017-06-24 12:00 - 2017-05-18 11:45 - 00000000 ____D C:\ProgramData\NVIDIA
Corporation
2017-06-24 12:00 - 2017-05-18 11:45 - 00000000 ____D C:\Program Files\NVIDIA
Corporation
2017-06-24 12:00 - 2017-05-18 11:45 - 00000000 ____D C:\Program Files (x86)\NVIDIA
Corporation
2017-06-23 16:55 - 2017-03-19 04:03 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-06-23 03:30 - 2017-05-18 11:45 - 08076177 _____
C:\WINDOWS\system32\nvcoproc.bin
2017-06-22 12:22 - 2017-05-12 02:26 - 00000000 ____D C:\ProgramData\VMware
2017-06-22 12:22 - 2017-05-12 02:26 - 00000000 ____D C:\Program Files (x86)\VMware
2017-06-22 12:19 - 2017-05-12 02:27 - 00000000 ____D C:\Users\Haryo
S\AppData\Roaming\VMware
2017-06-22 12:19 - 2017-05-12 02:27 - 00000000 ____D C:\Users\Haryo
S\AppData\Local\VMware
2017-06-22 12:17 - 2016-11-27 22:29 - 00000000 ____D C:\Users\Haryo S\Desktop\Midas
VMWare
2017-06-22 11:17 - 2017-05-18 11:52 - 00003294 _____
C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-22 11:17 - 2017-05-11 23:23 - 00002426 _____ C:\Users\Haryo
S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-06-22 11:17 - 2017-05-11 23:23 - 00000000 ___RD C:\Users\Haryo S\OneDrive
2017-06-22 10:37 - 2017-06-14 04:18 - 00000000 ____D C:\Program Files\HWiNFO64

==================== Files in the root of some directories =======

2017-07-09 15:21 - 2017-07-09 15:21 - 0000057 _____ () C:\ProgramData\Ament.ini


2017-05-18 11:45 - 2017-05-18 11:45 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-05-12 03:13 - 2017-05-12 03:13 - 0000133 _____ ()
C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed


C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-07-18 12:13

==================== End of FRST.txt ============================

Anda mungkin juga menyukai