Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Request Assistance - Infection where I can't open folders

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 2:06 am

Dear pgmidd,

Thank you again for your assistance and your follow-up. I will now post each of the 3 logs in separate posts. But I wanted to ask you for a favor and to make you aware of some changes I made to the FRST.txt log and why. I am embarrassed but I must admit that I have paid for and downloaded some adult-related content which is legal in my country, but is embarrassing to reveal. Thus, I went ahead and made the following changes to the FRST log: where the title was explicit and adult in nature, I merely deleted the title and replaced it with "censored." I hope this is OK with you and that it won't affect your review of the scan. If you would like to see any of the rows of the log without my edits, just let me know. I hope this doesn't discourage you from continuing to assist me.

Below are the answers to the 5 questions you asked in your previous post.

A. I did not have any problems executing the instructions.

B. Below please find the contents of the Fixlog.txt log file:

Fix result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by Al (04-02-2020 20:14:57) Run:2
Running from C:\Users\Al\Desktop
Loaded Profiles: Al (Available Profiles: Al)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:

C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip

EmptyTemp:
*****************

Restore point was successfully created.
"C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 11296768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18036204 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 46987 B
Edge => 122132103 B
Chrome => 298130391 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 154022 B
systemprofile32 => 154022 B
LocalService => 163064 B
NetworkService => 163064 B
Al => 7941216 B

RecycleBin => 0 B
EmptyTemp: => 437 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 20:17:02 ====
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am
Advertisement
Register to Remove

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 2:13 am

C. Below please find the contents of the FRST.txt log file after the fresh FRST scan (but please remember that I changed some adult-related titles due to my embarrassment which I am hoping will not hinder your review of the scan):

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-02-2020 02
Ran by Al (administrator) on DESKTOP-CC6KRI6 (Dell Inc. Vostro 3470) (04-02-2020 20:30:03)
Running from C:\Users\Al\Desktop
Loaded Profiles: Al (Available Profiles: Al)
Platform: Windows 10 Pro Version 1909 18363.592 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc -> Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_3a8cbc27c6d7029f\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_3a8cbc27c6d7029f\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, LLC -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, LLC -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, LLC. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ActWiz\mcautoreg.exe
(McAfee, LLC. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_19_7\mcapexe.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\CSP\3.2.117.0\McCSPServiceHost.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Al\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12001.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1357\DSAPI.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(VideoLAN -> VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSysSvc64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSvc64.exe [1222536 2018-12-04] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [DellMobileConnectWelcome] => C:\Program Files\Dell\DellMobileConnectDrivers\DellMobileConnectWelcome.exe [127480 2017-11-06] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [669128 2018-03-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.130\Installer\chrmstp.exe [2020-01-21] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {42FAC576-6845-4BC3-AEE4-52ADA1A795E0} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [759752 2019-08-14] (McAfee, LLC. -> McAfee, LLC.)
Task: {59573812-1E78-4E93-A5AA-70A6E9B8FFDD} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Al\Desktop\esetonlinescanner_enu.exe [14562400 2020-02-03] (ESET, spol. s r.o. -> ESET spol. s r.o.)
"C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" was unlocked. <==== ATTENTION
Task: {59722E8A-AF2D-419B-AB12-C889609C7A16} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1040832 2019-11-14] (McAfee, LLC. -> McAfee, LLC.)
Task: {5C95E4D1-2BE6-4D13-9E34-3855050DE3BE} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Al\Desktop\esetonlinescanner_enu.exe [14562400 2020-02-03] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {AD592622-0403-4160-8769-AA5A629065A4} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1040832 2019-11-14] (McAfee, LLC. -> McAfee, LLC.)
Task: {B2F2D43B-5027-46F6-9785-E3429A63B60C} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4548368 2019-12-04] (McAfee, LLC -> McAfee, LLC.)
Task: {BD22BB8F-8135-476E-B0EC-A074DCA01088} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1519064 2020-01-14] (Dell Inc. -> Dell Inc.)
Task: {CB1A18A4-9D61-4EC9-A589-AB8FBCD0CF9F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-15] (Google Inc -> Google Inc.)
Task: {CE314CBD-0E31-496D-8CDC-7C8FE619EBC7} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.4.122\DADUpdater.exe [4144776 2020-01-26] (McAfee, Inc. -> McAfee, LLC.)
Task: {F6E82B33-33A8-420C-B9A7-DBD017736865} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-15] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{938e3470-e767-4089-8b41-734027809a1d}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fa770cb6-56b1-4f5a-99d6-a27a1bda7fcd}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-2755259552-3065841404-3207337303-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-2755259552-3065841404-3207337303-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
SearchScopes: HKU\S-1-5-21-2755259552-3065841404-3207337303-1001 -> DefaultScope {D4EB326C-2EA2-4AC2-8F0F-395CC6C0EAB3} URL =
SearchScopes: HKU\S-1-5-21-2755259552-3065841404-3207337303-1001 -> {D4EB326C-2EA2-4AC2-8F0F-395CC6C0EAB3} URL =
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll [2019-09-17] (McAfee, LLC. -> McAfee, LLC.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2019-09-17] (McAfee, LLC. -> McAfee, LLC.)

FireFox:
========
FF DefaultProfile: t3cbnkhl.default
FF ProfilePath: C:\Users\Al\AppData\Roaming\Mozilla\Firefox\Profiles\t3cbnkhl.default [2020-02-04]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-01-24]
FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => not found
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2019-11-20] [Legacy] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2019-09-17] (McAfee, LLC. -> )
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2019-09-17] (McAfee, LLC. -> )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)

Chrome:
=======
CHR Profile: C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default [2020-02-04]
CHR Extension: (Slides) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-02-03]
CHR Extension: (Docs) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-02-03]
CHR Extension: (Google Drive) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-02-03]
CHR Extension: (Sheets) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-02-03]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2020-02-03]
CHR Extension: (Google Docs Offline) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-03]
CHR Extension: (Gmail) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\Al\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-03]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [416064 2018-04-23] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [244280 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3339824 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [271416 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1357\DSAPI.exe [964592 2020-01-19] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [124568 2018-04-20] (Dell Inc -> Dell Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [36032 2019-11-08] (Dell Inc -> )
S3 iaStorAfsService; C:\WINDOWS\IAStorAfsService\iaStorAfsService.exe [2593848 2018-02-22] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [743728 2017-11-16] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [720184 2017-11-16] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [214672 2018-01-31] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905336 2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_19_7\McApExe.exe [747896 2019-09-17] (McAfee, LLC. -> McAfee, LLC)
S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [352104 2015-09-29] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.2.117.0\\McCSPServiceHost.exe [2226608 2019-10-22] (McAfee, LLC. -> McAfee, LLC.)
S2 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [708112 2019-09-17] (McAfee, LLC. -> McAfee, LLC.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [630160 2019-08-19] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [630160 2019-08-19] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [630160 2019-08-19] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1731480 2019-10-21] (McAfee, LLC -> McAfee, LLC.)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [1366672 2019-11-19] (McAfee, LLC. -> McAfee, LLC.)
R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [669128 2018-03-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [50648 2020-01-14] (Dell Inc. -> Dell Inc.)
R2 WavesSysSvc; C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSysSvc64.exe [884616 2018-12-04] (Waves Inc -> Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-18] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-18] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4322768 2018-11-15] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [75696 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R4 DBUtil_2_3; C:\WINDOWS\TEMP\DBUtil_2_3.Sys [14840 2020-02-04] (Dell Inc. -> )
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [35704 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dvdfab; C:\Windows\system32\drivers\dvdfab.sys [91992 2019-03-13] (Fengtao Software Inc. -> Windows (R) Win 7 DDK provider)
R3 HfAudio; C:\WINDOWS\System32\drivers\HfAudio.sys [65008 2018-09-08] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [217912 2019-06-04] (McAfee, LLC -> McAfee, Inc.)
R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [942128 2018-02-22] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [72248 2018-02-22] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [521648 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [379824 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85928 2019-08-22] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [517040 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [993712 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [563640 2019-08-31] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [107448 2019-08-31] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [116656 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [252336 2019-08-22] (McAfee, Inc. -> McAfee, LLC)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1026896 2018-02-26] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [424384 2018-02-27] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 ScrHIDDriver; C:\WINDOWS\System32\drivers\ScrHIDDriver.sys [58864 2018-09-08] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-18] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Three months (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-04 20:30 - 2020-02-04 20:31 - 000022169 _____ C:\Users\Al\Desktop\FRST.txt
2020-02-04 20:22 - 2020-02-04 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2020-02-04 20:14 - 2020-02-04 20:17 - 000001325 _____ C:\Users\Al\Desktop\Fixlog.txt
2020-02-04 01:28 - 2020-02-04 14:42 - 000003796 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2020-02-04 01:28 - 2020-02-04 14:42 - 000003354 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2020-02-04 01:28 - 2020-02-04 01:28 - 000000662 _____ C:\Users\Al\Downloads\ESET.txt
2020-02-03 22:38 - 2020-02-03 22:38 - 000000762 _____ C:\Users\Al\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-02-03 22:38 - 2020-02-03 22:38 - 000000645 _____ C:\Users\Al\Desktop\ESET Online Scanner.lnk
2020-02-03 22:38 - 2020-02-03 22:38 - 000000000 ____D C:\Users\Al\AppData\Local\ESET
2020-02-03 22:15 - 2020-02-03 22:15 - 014562400 _____ (ESET spol. s r.o.) C:\Users\Al\Desktop\esetonlinescanner_enu.exe
2020-02-03 20:26 - 2020-02-03 20:44 - 000002289 _____ C:\Users\Al\Downloads\Fixlog.txt
2020-02-03 20:17 - 2020-02-03 20:17 - 002279424 _____ (Farbar) C:\Users\Al\Downloads\FRST64 (1).exe
2020-02-03 20:17 - 2020-02-03 20:17 - 002279424 _____ (Farbar) C:\Users\Al\Desktop\FRST64.exe
2020-02-03 01:20 - 2020-02-03 01:24 - 000000000 ____D C:\AdwCleaner
2020-02-03 01:19 - 2020-02-03 01:19 - 008356016 _____ (Malwarebytes) C:\Users\Al\Downloads\AdwCleaner.exe
2020-02-03 01:19 - 2020-02-03 01:19 - 008356016 _____ (Malwarebytes) C:\Users\Al\Desktop\AdwCleaner.exe
2020-02-03 01:01 - 2020-02-03 01:01 - 000000207 _____ C:\WINDOWS\tweaking.com-regbackup-DESKTOP-CC6KRI6-Windows-10-Pro-(64-bit).dat
2020-02-03 01:01 - 2020-02-03 01:01 - 000000000 ____D C:\RegBackup
2020-02-03 01:00 - 2020-02-03 01:00 - 000017969 _____ C:\WINDOWS\Tweaking.com - Registry Backup Setup Log.txt
2020-02-03 01:00 - 2020-02-03 01:00 - 000002314 _____ C:\Users\Public\Desktop\Tweaking.com - Registry Backup.lnk
2020-02-03 01:00 - 2020-02-03 01:00 - 000002314 _____ C:\ProgramData\Desktop\Tweaking.com - Registry Backup.lnk
2020-02-03 01:00 - 2020-02-03 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2020-02-03 01:00 - 2020-02-03 01:00 - 000000000 ____D C:\Program Files (x86)\Tweaking.com
2020-02-03 00:58 - 2020-02-03 00:58 - 005766144 _____ (Tweaking.com) C:\Users\Al\Downloads\tweaking.com_registry_backup_setup.exe
2020-02-02 17:39 - 2020-02-02 17:39 - 000000033 _____ C:\Users\Al\Downloads\codecheck.txt
2020-02-02 17:31 - 2020-02-02 17:31 - 000000445 _____ C:\Users\Al\Downloads\ckfiles.txt
2020-02-02 17:26 - 2020-02-02 17:26 - 000025088 _____ C:\Users\Al\Desktop\codecheck.exe
2020-02-02 17:25 - 2020-02-02 17:25 - 002270936 _____ (Cermak Technologies, Inc.) C:\Users\Al\Desktop\SysInfo.exe
2020-02-02 17:24 - 2020-02-02 17:24 - 000468480 _____ () C:\Users\Al\Desktop\CKScanner.exe
2020-02-02 17:23 - 2020-02-02 17:23 - 000468480 _____ () C:\Users\Al\Downloads\CKScanner.exe
2020-02-01 22:45 - 2020-02-01 22:57 - 000068936 _____ C:\Users\Al\Downloads\FRST 2-1.txt
2020-02-01 22:45 - 2020-02-01 22:45 - 000043636 _____ C:\Users\Al\Downloads\Addition 2-1.txt
2020-02-01 22:39 - 2020-02-01 22:43 - 000043636 _____ C:\Users\Al\Downloads\Addition.txt
2020-02-01 22:36 - 2020-02-01 22:43 - 000080202 _____ C:\Users\Al\Downloads\FRST.txt
2020-02-01 22:32 - 2020-02-04 20:31 - 000000000 ____D C:\FRST
2020-02-01 22:23 - 2020-02-01 22:24 - 002581504 _____ (Farbar) C:\Users\Al\Downloads\FRST64.exe
2020-02-01 21:37 - 2020-02-01 21:37 - 000001776 _____ C:\Users\Public\Desktop\Reset Browser Settings.lnk
2020-02-01 21:37 - 2020-02-01 21:37 - 000001776 _____ C:\ProgramData\Desktop\Reset Browser Settings.lnk
2020-02-01 21:37 - 2020-02-01 21:37 - 000000902 _____ C:\Users\Public\Desktop\Trojan Killer.lnk
2020-02-01 21:37 - 2020-02-01 21:37 - 000000902 _____ C:\ProgramData\Desktop\Trojan Killer.lnk
2020-02-01 21:37 - 2020-02-01 21:37 - 000000000 ____D C:\Program Files\Trojan Killer
2020-02-01 21:35 - 2020-02-01 21:35 - 001786768 _____ (GridinSoft LLC) C:\Users\Al\Downloads\TrojanKiller-Setup.exe
2020-02-01 19:41 - 2020-02-01 19:41 - 026479748 _____ C:\Users\Al\Downloads\censored1.zip
2020-02-01 19:40 - 2020-02-01 19:40 - 016169085 _____ C:\Users\Al\Downloads\censored2.zip
2020-02-01 11:32 - 2020-02-01 11:35 - 131066760 _____ C:\Users\Al\Downloads\censored3.rar
2020-02-01 11:31 - 2020-02-01 11:44 - 1079855347 _____ C:\Users\Al\Downloads\censored4.rar
2020-02-01 11:31 - 2020-02-01 11:32 - 126848240 _____ C:\Users\Al\Downloads\censored5.rar
2020-02-01 01:23 - 2020-02-01 01:23 - 000000000 ____D C:\Users\Al\Downloads\1975.02.07 NYC
2020-02-01 00:27 - 2020-02-01 00:27 - 000000000 ____D C:\Users\Al\Downloads\Aretha Franklin & King Curtis-Dont Fight The Feeling Fillmore West (1971)-2005
2020-02-01 00:26 - 2020-02-01 00:26 - 000000000 ____D C:\Users\Al\Downloads\Stevie Wonder-Mono Singles-2019
2020-02-01 00:26 - 2020-02-01 00:26 - 000000000 ____D C:\Users\Al\Downloads\Otis Rush-All Your Love I Miss Loving-Live At The Wise Fools Pub Chicago (1976)-2005
2020-02-01 00:25 - 2020-02-01 00:25 - 000000000 ____D C:\Users\Al\Downloads\2007 - Van Morrison - The Best Of Van Morrison Volume 3
2020-02-01 00:25 - 2020-02-01 00:25 - 000000000 ____D C:\Users\Al\Downloads\1993 - Van Morrison - The Best of Van Morrison Volume 2
2020-02-01 00:24 - 2020-02-01 00:24 - 000000000 ____D C:\Users\Al\Downloads\2003 - Van Morrison - I Wanna Know Did You Get The Feeling
2020-01-31 23:51 - 2020-01-31 23:57 - 000000000 ____D C:\Users\Al\Downloads\Watch Overtime_ January 31, 2020 (HBO)
2020-01-31 23:49 - 2020-01-31 23:59 - 000000000 ____D C:\Users\Al\Downloads\Full Real Time With Bill Maher HBO 1_31_20 _ Real Time With Bill Maher January 31, 2020
2020-01-31 18:51 - 2020-01-31 18:54 - 132129405 _____ C:\Users\Al\Downloads\censored6.zip
2020-01-31 18:47 - 2020-01-31 18:48 - 107522591 _____ C:\Users\Al\Downloads\censored7.zip
2020-01-31 18:46 - 2020-01-31 18:46 - 059435953 _____ C:\Users\Al\Downloads\censored8.zip
2020-01-31 18:41 - 2020-01-31 18:42 - 131066760 _____ C:\Users\Al\Downloads\censored9.rar
2020-01-31 17:15 - 2020-01-31 17:15 - 008584613 _____ C:\Users\Al\Downloads\censored10.zip
2020-01-31 16:24 - 2020-01-31 16:25 - 000000000 ____D C:\Users\Al\Desktop\Taylor Hayes
2020-01-31 16:02 - 2020-01-31 16:02 - 000000000 ____D C:\Users\Al\Downloads\1999 - Van Morrison - Brown Eyed Girl
2020-01-31 16:02 - 2020-01-31 16:02 - 000000000 ____D C:\Users\Al\Downloads\1998 - Van Morrison - The Best Of Van Morrison
2020-01-31 16:01 - 2020-01-31 16:01 - 000000000 ____D C:\Users\Al\Downloads\Nancy Sinatra & Lee Hazlewood-Nancy & Lee 3-2004
2020-01-31 16:01 - 2020-01-31 16:01 - 000000000 ____D C:\Users\Al\Downloads\Augie Meyers And The Western Head Band-Live At The Longneck-1975
2020-01-31 16:01 - 2020-01-31 16:01 - 000000000 ____D C:\Users\Al\Downloads\2015 - Van Morrison - Live at Cyprus Avenue
2020-01-31 16:00 - 2020-01-31 16:00 - 000000000 ____D C:\Users\Al\Downloads\Art Blakey & The Afro-Drum Ensemble-The African Beat-1962
2020-01-31 15:58 - 2020-01-31 15:58 - 000000000 ____D C:\Users\Al\Downloads\Various Artists - A Tribute to Spacemen 3 (1998) [flac]
2020-01-31 15:58 - 2020-01-31 15:58 - 000000000 ____D C:\Users\Al\Downloads\Testimony by Robbie Robertson
2020-01-31 15:57 - 2020-01-31 15:57 - 000000000 ____D C:\Users\Al\Downloads\Jesus & Mary Chain - Reverence EP (Blanco Y Negro, 1992) flac
2020-01-31 15:57 - 2020-01-31 15:57 - 000000000 ____D C:\Users\Al\Downloads\Goldmine -March 2020
2020-01-31 15:56 - 2020-01-31 15:56 - 000000000 ____D C:\Users\Al\Downloads\RecordCollector Issue 502 February 2020
2020-01-31 15:56 - 2020-01-31 15:56 - 000000000 ____D C:\Users\Al\Downloads\Jesus_And_Mary_Chain_-_2000_-_The_Complete_John_Peel_Sessions_[FLAC]_(Strange_Fruit__-_SFRSCD092)
2020-01-31 15:34 - 2020-01-31 15:34 - 000000000 ____D C:\Users\Al\Downloads\Paul Weller - In Another Room (2020)
2020-01-31 15:34 - 2020-01-31 15:34 - 000000000 ____D C:\Users\Al\Downloads\1978 - Brian Eno - Ambient 1 Music For Airports (Rem.)
2020-01-31 12:53 - 2020-01-31 12:53 - 000000000 ____D C:\Users\Al\AppData\Roaming\3674
2020-01-31 03:55 - 2020-01-31 03:55 - 000000000 ____D C:\Users\Al\Downloads\MeetMadden Next Year 1-27-20
2020-01-31 03:55 - 2020-01-31 03:55 - 000000000 ____D C:\Users\Al\Downloads\MeetMadden Mens Shirt 1-24-20
2020-01-31 03:55 - 2020-01-31 03:55 - 000000000 ____D C:\Users\Al\Downloads\B0b Dy1an & Band - The Basement Tapes (1975) [2012 mfsl udsacd 2082]
2020-01-31 03:47 - 2020-01-31 03:49 - 000000000 ____D C:\Users\Al\Desktop\Miela - HollyRandall - Light My Fire Pic Set 2-1-14 (87 pics)
2020-01-31 03:39 - 2020-01-31 03:41 - 000000000 ____D C:\Users\Al\Desktop\Julia Hayes - Suze - Set #1409 (31 pics - 2400px) (2014, 1-16-2020)
2020-01-31 03:39 - 2020-01-31 03:39 - 000000000 ____D C:\Users\Al\Downloads\workin-out
2020-01-31 03:25 - 2020-01-31 03:30 - 000000000 ____D C:\Users\Al\Desktop\Nikki Tyler - Suze - Set #1535 (45 pics - 2400px) (2014, 1-20-2020)
2020-01-31 02:46 - 2020-01-31 03:01 - 000000000 ____D C:\Users\Al\Desktop\Sandra Scream - Suze - Set #1118 (36 pics 2400px) (2014, 1-21-2020)
2020-01-31 02:04 - 2020-01-31 02:04 - 021593106 _____ C:\Users\Al\Downloads\247405_full Kadie.zip
2020-01-31 02:04 - 2020-01-31 02:04 - 019505197 _____ C:\Users\Al\Downloads\247406_full Kadie.zip
2020-01-31 02:04 - 2020-01-31 02:04 - 011268425 _____ C:\Users\Al\Downloads\250369_full Kadie.zip
2020-01-31 02:03 - 2020-01-31 02:04 - 010296420 _____ C:\Users\Al\Downloads\250368_full Kadie.zip
2020-01-31 02:03 - 2020-01-31 02:03 - 015117670 _____ C:\Users\Al\Downloads\247407_full Kadie.zip
2020-01-31 02:02 - 2020-01-31 02:02 - 011286231 _____ C:\Users\Al\Downloads\250367_full Kadie.zip
2020-01-31 01:57 - 2020-01-31 01:57 - 014945231 _____ C:\Users\Al\Downloads\censored11.zip
2020-01-31 01:57 - 2020-01-31 01:57 - 013043699 _____ C:\Users\Al\Downloads\censored12.zip
2020-01-31 01:55 - 2020-01-31 01:55 - 022209681 _____ C:\Users\Al\Downloads\censored13.zip
2020-01-31 01:54 - 2020-01-31 01:55 - 017016140 _____ C:\Users\Al\Downloads\censored14.zip
2020-01-31 01:51 - 2020-01-31 01:51 - 000888313 _____ C:\Users\Al\Downloads\censored15.zip
2020-01-31 01:50 - 2020-01-31 01:50 - 014453895 _____ C:\Users\Al\Downloads\censored16.zip
2020-01-31 01:49 - 2020-01-31 01:49 - 010280982 _____ C:\Users\Al\Downloads\censored17.zip
2020-01-31 01:36 - 2020-01-31 01:36 - 019011051 _____ C:\Users\Al\Downloads\censored18.zip
2020-01-30 21:41 - 2020-01-30 21:42 - 108654905 _____ C:\Users\Al\Downloads\censored19.zip
2020-01-30 21:39 - 2020-01-30 21:39 - 125345388 _____ C:\Users\Al\Downloads\censored20.rar
2020-01-30 20:20 - 2020-01-30 20:20 - 000425863 _____ C:\Users\Al\Downloads\Threats against the author of ‘American Dirt’ threaten us all - The Washington Post.html
2020-01-30 20:20 - 2020-01-30 20:20 - 000000000 ____D C:\Users\Al\Downloads\Threats against the author of ‘American Dirt’ threaten us all - The Washington Post_files
2020-01-30 18:32 - 2020-01-30 18:33 - 065719012 _____ C:\Users\Al\Downloads\censored21.rar
2020-01-30 18:27 - 2020-01-30 18:27 - 030856147 _____ C:\Users\Al\Downloads\censored22.zip
2020-01-30 18:27 - 2020-01-30 18:27 - 022962093 _____ C:\Users\Al\Downloads\censored23.rar
2020-01-30 18:25 - 2020-01-30 18:26 - 200834806 _____ C:\Users\Al\Downloads\censored24.zip
2020-01-30 12:58 - 2020-01-30 12:58 - 000000000 ____D C:\Users\Al\Downloads\Beck_-_Odelay_2_x_CD_flac
2020-01-30 12:56 - 2020-01-30 12:56 - 000000000 ____D C:\Users\Al\Downloads\Siouxsie_&_the_Banshees_-_Juju_-_2006_flac
2020-01-30 03:16 - 2020-01-30 03:16 - 000000000 ____D C:\Users\Al\Downloads\Jessi Colter-Thats The Way A Cowboy Rocks And Rolls-1978
2020-01-30 03:15 - 2020-01-30 03:15 - 000000000 ____D C:\Users\Al\Downloads\VA-Peter And The Wolf-1975
2020-01-30 03:15 - 2020-01-30 03:15 - 000000000 ____D C:\Users\Al\Downloads\PJStories
2020-01-30 03:15 - 2020-01-30 03:15 - 000000000 ____D C:\Users\Al\Downloads\PJDesire
2020-01-30 03:12 - 2020-01-30 03:12 - 000000000 ____D C:\Users\Al\Downloads\VEiiLA - The Nation Of One
2020-01-30 03:12 - 2020-01-30 03:12 - 000000000 ____D C:\Users\Al\Downloads\Ascenseur Pour L'Échafaud
2020-01-30 03:11 - 2020-01-30 03:11 - 000000000 ____D C:\Users\Al\Downloads\Badlands, A Tribute
2020-01-30 03:07 - 2020-01-30 03:07 - 000000000 ____D C:\Users\Al\Downloads\The Peel Session [EP]
2020-01-30 03:07 - 2020-01-30 03:07 - 000000000 ____D C:\Users\Al\Downloads\CSAR
2020-01-30 03:05 - 2020-01-30 03:05 - 000000000 ____D C:\Users\Al\Downloads\Siouxsie & The Banshees - Peepshow (1988) Exp V0
2020-01-30 03:05 - 2020-01-30 03:05 - 000000000 ____D C:\Users\Al\Downloads\John Grant BBC Radio 6 Full Show
2020-01-30 03:05 - 2020-01-30 03:05 - 000000000 ____D C:\Users\Al\Downloads\John Grant BBC Radio 6 Edited Version
2020-01-30 02:53 - 2020-01-30 02:53 - 000000000 ____D C:\Users\Al\Downloads\Siouxsie and the Banshees Live Germany 1981
2020-01-30 02:50 - 2020-01-30 02:50 - 000000000 ____D C:\Users\Al\Downloads\2018 - Van Morrison - In Concert
2020-01-30 02:50 - 2020-01-30 02:50 - 000000000 ____D C:\Users\Al\Downloads\1986 - Van Morrison - No Guru, No Method, No Teacher (2008 remaster)
2020-01-30 02:50 - 2020-01-30 02:50 - 000000000 ____D C:\Users\Al\Downloads\1985 - Van Morrison - A Sense of Wonder (2008 remaster)
2020-01-30 02:47 - 2020-01-30 02:47 - 000000000 ____D C:\Users\Al\Downloads\2000 - Van Morrison, Lonnie Donegan & Chris Barber - The Skiffle Sessions Live in Belfast
2020-01-30 02:47 - 2020-01-30 02:47 - 000000000 ____D C:\Users\Al\Downloads\1989 - Van Morrison - The Concert (Remastered 2004)
2020-01-30 02:45 - 2020-01-30 02:45 - 000000000 ____D C:\Users\Al\Downloads\Bongwater - The Big Sell-Out (1992)
2020-01-30 02:43 - 2020-01-30 02:43 - 000000000 ____D C:\Users\Al\Downloads\Bongwater - The Power of Kitty (1990)
2020-01-30 02:42 - 2020-01-30 02:42 - 000000000 ____D C:\Users\Al\Downloads\Bongwater - Too Much Sleep (1989)
2020-01-30 02:35 - 2020-01-30 02:35 - 000000000 ____D C:\Users\Al\Downloads\Bongwater - Double Bummer (1988)
2020-01-30 02:34 - 2020-01-30 02:34 - 000000000 ____D C:\Users\Al\Downloads\RHR RedfernHotel Toledo
2020-01-30 02:32 - 2020-01-30 02:32 - 000000000 ____D C:\Users\Al\Downloads\Roseanne Cash-Grand Theatre Kingston ON-2-20-18
2020-01-30 02:25 - 2020-01-30 02:25 - 000000000 ____D C:\Users\Al\Downloads\Nigel Mullaney
2020-01-30 02:21 - 2020-01-30 02:21 - 000000000 ____D C:\Users\Al\Downloads\Miles in Antibes
2020-01-30 02:16 - 2020-01-30 02:16 - 000000000 ____D C:\Users\Al\Downloads\Jimi.Hendrix.The.Road.to.Woodstock.2014.WEBRip.x264
2020-01-30 00:37 - 2020-01-30 00:37 - 039168046 _____ C:\Users\Al\Downloads\flipbook.pdf
2020-01-29 13:56 - 2020-01-29 13:57 - 024300364 _____ C:\Users\Al\Downloads\censored25.avi
2020-01-28 19:44 - 2020-01-28 19:45 - 129699737 _____ C:\Users\Al\Downloads\censored26.rar
2020-01-28 19:43 - 2020-01-28 19:44 - 126392628 _____ C:\Users\Al\Downloads\censored27.rar
2020-01-28 10:12 - 2020-01-28 10:12 - 000000000 ____D C:\Users\Al\Downloads\Kristin Hersh-Hips And Makers (1994)
2020-01-28 04:20 - 2020-01-28 04:20 - 000000000 ____D C:\Users\Al\Downloads\The_Coal_Porters_-_The_Gram_Parsons_Tribute_Concert
2020-01-28 04:20 - 2020-01-28 04:20 - 000000000 ____D C:\Users\Al\Downloads\Dogs in Florence
2020-01-27 21:09 - 2020-01-27 21:09 - 133088648 _____ C:\Users\Al\Downloads\censored28.rar
2020-01-27 21:08 - 2020-01-27 21:08 - 138735313 _____ C:\Users\Al\Downloads\censored29.zip
2020-01-27 21:07 - 2020-01-27 21:07 - 121629299 _____ C:\Users\Al\Downloads\censored30.zip
2020-01-27 21:06 - 2020-01-27 21:07 - 098770207 _____ C:\Users\Al\Downloads\censored31.zip
2020-01-27 21:05 - 2020-01-27 21:06 - 130540588 _____ C:\Users\Al\Downloads\censored32.rar
2020-01-27 21:04 - 2020-01-27 21:05 - 121573884 _____ C:\Users\Al\Downloads\censored33.rar
2020-01-27 21:03 - 2020-01-27 21:04 - 138768582 _____ C:\Users\Al\Downloads\censored34.rar
2020-01-27 21:03 - 2020-01-27 21:03 - 136140231 _____ C:\Users\Al\Downloads\censored35.rar
2020-01-27 21:00 - 2020-01-27 21:01 - 085019165 _____ C:\Users\Al\Downloads\censored36.zip
2020-01-27 20:59 - 2020-01-27 21:00 - 073629414 _____ C:\Users\Al\Downloads\censored37.zip
2020-01-27 20:56 - 2020-01-27 20:56 - 056376409 _____ C:\Users\Al\Downloads\censored38.zip
2020-01-27 20:55 - 2020-01-27 20:56 - 106140151 _____ C:\Users\Al\Downloads\censored39.zip
2020-01-27 20:54 - 2020-01-27 20:55 - 193362579 _____ C:\Users\Al\Downloads\censored40.rar
2020-01-27 20:53 - 2020-01-27 20:53 - 107289697 _____ C:\Users\Al\Downloads\censored41.rar
2020-01-27 20:05 - 2020-01-27 20:05 - 000000000 ____D C:\Users\Al\Downloads\Doug Sahm And The Sir Douglas Quintet-The Complete Mercury Recordings-2005
2020-01-27 18:58 - 2020-01-27 19:03 - 129072458 _____ C:\Users\Al\Downloads\censored42.rar
2020-01-27 17:57 - 2020-01-27 17:58 - 002794956 _____ C:\WINDOWS\Minidump\012720-45234-01.dmp
2020-01-27 03:56 - 2020-01-27 03:56 - 000000000 ____D C:\Users\Al\Downloads\2017 - Van Morrison - The Authorized Bang Collection
2020-01-27 03:55 - 2020-01-27 03:55 - 000000000 ____D C:\Users\Al\Downloads\2016 - Van Morrison - Keep Me Singing
2020-01-27 03:55 - 2020-01-27 03:55 - 000000000 ____D C:\Users\Al\Downloads\2012 - Van Morrison - Born To Sing - No Plan B
2020-01-27 03:54 - 2020-01-27 03:54 - 000000000 ____D C:\Users\Al\Downloads\1974 - Van Morrison - T. B. Sheets
2020-01-27 03:52 - 2020-01-27 03:52 - 000000000 ____D C:\Users\Al\Downloads\2006 - Van Morrison - The Genuine Philosopher's Stone
2020-01-27 03:52 - 2020-01-27 03:52 - 000000000 ____D C:\Users\Al\Downloads\1998 - Van Morrison - The Philosopher's Stone
2020-01-27 03:51 - 2020-01-27 03:51 - 000000000 ____D C:\Users\Al\Downloads\2009 A Woman A Man Walked By
2020-01-27 03:51 - 2020-01-27 03:51 - 000000000 ____D C:\Users\Al\Downloads\1996 Dance Hall At Louse Point
2020-01-27 03:50 - 2020-01-27 03:50 - 000000000 ____D C:\Users\Al\Downloads\2015 - Van Morrison - The Essential
2020-01-27 03:50 - 2020-01-27 03:50 - 000000000 ____D C:\Users\Al\Downloads\1996 - Van Morrison - Spanish Rose
2020-01-27 03:49 - 2020-01-27 03:49 - 000000000 ____D C:\Users\Al\Downloads\2011 - Van Morrison - The Van Morrison Christmas Album
2020-01-27 03:49 - 2020-01-27 03:49 - 000000000 ____D C:\Users\Al\Downloads\2009 - Van Morrison - Astral Weeks Live at the Hollywood Bowl
2020-01-27 03:48 - 2020-01-27 03:48 - 000000000 ____D C:\Users\Al\Downloads\Hynde, Chrissie - Reckless
2020-01-27 03:48 - 2020-01-27 03:48 - 000000000 ____D C:\Users\Al\Downloads\2008 - Van Morrison - Keep It Simple
2020-01-27 03:48 - 2020-01-27 03:48 - 000000000 ____D C:\Users\Al\Downloads\2007 - Van Morrison - At The Movies
2020-01-27 03:47 - 2020-01-27 03:47 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 6)-2007
2020-01-27 03:46 - 2020-01-27 03:46 - 000000000 ____D C:\Users\Al\Downloads\Devo-Austin City Limits Live-Moody Theater Austin TX-7-2-14
2020-01-27 03:45 - 2020-01-27 03:45 - 000000000 ____D C:\Users\Al\Downloads\R0k C@nady 2018 vol.06 to 11
2020-01-27 03:45 - 2020-01-27 03:45 - 000000000 ____D C:\Users\Al\Downloads\R0k C@nady 2017 vol.01 to 05
2020-01-27 03:44 - 2020-01-27 03:44 - 000000000 ____D C:\Users\Al\Downloads\Shadows Of Knight - Gloria (1966)(1998 CD - SC 6155) [FLAC]
2020-01-27 03:44 - 2020-01-27 03:44 - 000000000 ____D C:\Users\Al\Downloads\Judee Sill - Live In London (The BBC Recordings 1972-1973) (2007)
2020-01-27 03:43 - 2020-01-27 03:43 - 000000000 ____D C:\Users\Al\Downloads\Substance - Peter Hook
2020-01-27 03:43 - 2020-01-27 03:43 - 000000000 ____D C:\Users\Al\Downloads\John Stewart-Live Ebbets Field Denver CO-4-23-76
2020-01-27 03:42 - 2020-01-27 03:42 - 000000000 ____D C:\Users\Al\Downloads\Jackson Browne-The Criterion Demos Hollywood CA-4-6-70
2020-01-27 03:42 - 2020-01-27 03:42 - 000000000 ____D C:\Users\Al\Downloads\Bonnie Raitt - The Lost Broadcast Philadelphia 1972 (2010)
2020-01-27 03:41 - 2020-01-27 03:41 - 000000000 ____D C:\Users\Al\Downloads\Jefferson Airplane,Jefferson Starship,Starship-The Essential Jefferson Airplane-Jefferson Starship-Starship-1998
2020-01-27 03:41 - 2020-01-27 03:41 - 000000000 ____D C:\Users\Al\Downloads\ByrdsTurn!
2020-01-27 03:40 - 2020-01-27 03:40 - 000000000 ____D C:\Users\Al\Downloads\Shirley&Dolly
2020-01-27 03:39 - 2020-01-27 03:39 - 000000000 ____D C:\Users\Al\Downloads\Patty Larkin-Live At The Natick Center For The Arts-Natick MA-4-19-14
2020-01-27 03:38 - 2020-01-27 03:38 - 000000000 ____D C:\Users\Al\Downloads\The Derailers - Under The Influence Of Buck @320
2020-01-27 03:38 - 2020-01-27 03:38 - 000000000 ____D C:\Users\Al\Downloads\Nils_Lofgren_-_1971_-_grin_-_bonus_tracks_(flac)
2020-01-27 03:37 - 2020-01-27 03:37 - 000000000 ____D C:\Users\Al\Downloads\Tom_Petty_&_The_Heartbreakers__-_Hard_Promises_(1981)__mfsl_gold_udcd_(flac)
2020-01-27 03:37 - 2020-01-27 03:37 - 000000000 ____D C:\Users\Al\Downloads\Andy Shauf The Party
2020-01-27 03:36 - 2020-01-27 03:36 - 000000000 ____D C:\Users\Al\Downloads\AndyShauf B-sides
2020-01-27 03:19 - 2020-01-27 03:19 - 000000000 ____D C:\Users\Al\Downloads\B.B. King_ The Life of Riley-2012
2020-01-27 03:15 - 2020-01-27 03:15 - 000000000 ____D C:\Users\Al\Downloads\Night Music-David Sanborn & Jools Holland (Show 117)
2020-01-27 03:13 - 2020-01-27 03:13 - 000000000 ____D C:\Users\Al\Downloads\Silversun_Pickups_-_Demo_(2004)_[FLAC]
2020-01-27 03:13 - 2020-01-27 03:13 - 000000000 ____D C:\Users\Al\Downloads\Art_Pepper_-_Art_Pepper__Eleven_(modern_jazz_classics)_(1959_[1991_mobile_fidelity_sound_lab_MFCD_805])[flac]
2020-01-27 03:12 - 2020-01-27 03:12 - 000000000 ____D C:\Users\Al\Downloads\Moody Blues - A Question Of Balance (1969) (MFSL) (FLAC)
2020-01-27 03:10 - 2020-01-27 03:10 - 000000000 ____D C:\Users\Al\Downloads\The Kinks - Face to Face (2011 Deluxe Edition) [FLAC]
2020-01-27 03:09 - 2020-01-27 03:09 - 000000000 ____D C:\Users\Al\Downloads\The_Guess_Who_-_This_Long_Time_Ago_2_x_CD_flac
2020-01-27 03:08 - 2020-01-27 03:08 - 000000000 ____D C:\Users\Al\Downloads\Grateful Dead 1977_ The Rise of Terrapin Nation by Howard Weiner
2020-01-26 22:21 - 2020-01-26 23:50 - 000000000 ____D C:\Users\Al\Downloads\A MusiCares' Tribute to Paul McCartney (2012)
2020-01-26 21:56 - 2020-01-26 23:08 - 000000000 ____D C:\Users\Al\Downloads\Monarchy BBC Docu 03 Conquest
2020-01-26 21:32 - 2020-01-26 22:44 - 000000000 ____D C:\Users\Al\Downloads\Monarchy BBC Docu 02 Aengla Land
2020-01-26 21:32 - 2020-01-26 22:21 - 000000000 ____D C:\Users\Al\Downloads\Monarchy BBC Docu 01 A Nation State
2020-01-26 19:42 - 2020-01-26 19:45 - 000000000 ____D C:\Users\Al\Desktop\Real Time With Bill Maher 1-24-20 (400)
2020-01-26 14:11 - 2020-01-26 14:11 - 000000000 ____D C:\Users\Al\Downloads\Vudu - Free_ Last Chance_ Leaving 1_31_2020_files
2020-01-26 14:10 - 2020-01-26 14:11 - 000144497 _____ C:\Users\Al\Downloads\Vudu - Free_ Last Chance_ Leaving 1_31_2020.html
2020-01-26 12:45 - 2020-01-26 21:09 - 000000000 ____D C:\Hitchcock
2020-01-26 12:06 - 2020-01-26 12:06 - 000000000 ____D C:\Users\Al\Downloads\Roxy_Music_-_Oakland,_CA_04-20-1979_SBD-flac
2020-01-26 12:03 - 2020-01-26 12:03 - 000000000 ____D C:\Users\Al\Desktop\VERYHappyEnding720
2020-01-25 16:55 - 2020-01-25 16:55 - 000000000 ____D C:\Users\Al\Downloads\Jessi Colter - Mirriam (1977) [Flac]
2020-01-25 16:13 - 2020-01-25 16:13 - 000000000 ____D C:\Users\Al\Downloads\Jessi Colter-Diamond In The Rough-1976
2020-01-25 16:10 - 2020-01-25 16:10 - 000000000 ____D C:\Users\Al\Downloads\The_Legendary_Arms_Concert_Royal_Albert_Hall_(1983)
2020-01-25 16:09 - 2020-01-25 16:09 - 000000000 ____D C:\Users\Al\Downloads\BBCovers
2020-01-25 16:08 - 2020-01-25 16:08 - 000000000 ____D C:\Users\Al\Downloads\Jessi Colter-Jessie-1976
2020-01-25 16:08 - 2020-01-25 16:08 - 000000000 ____D C:\Users\Al\Downloads\BBBallads
2020-01-25 15:56 - 2020-01-25 15:56 - 000000000 ____D C:\Users\Al\Downloads\Cream_-_Wheels_Of_Fire_dlx_2_x_CD_flac
2020-01-23 15:38 - 2020-01-23 15:38 - 000000000 ____D C:\Users\Al\Downloads\Bonnie Raitt - Takin' My Time (1973) flac
2020-01-23 15:37 - 2020-01-23 15:37 - 000000000 ____D C:\Users\Al\Downloads\VABeachStars
2020-01-23 15:37 - 2020-01-23 15:37 - 000000000 ____D C:\Users\Al\Downloads\Robert Plant The Voice That Sailed the Zeppelin
2020-01-23 15:37 - 2020-01-23 15:37 - 000000000 ____D C:\Users\Al\Downloads\DanArBraz
2020-01-23 15:36 - 2020-01-23 15:36 - 000000000 ____D C:\Users\Al\Downloads\Robert Plant - The Principle Of Moments (1983) flac
2020-01-23 15:35 - 2020-01-23 15:35 - 000000000 ____D C:\Users\Al\Downloads\JuniorCook
2020-01-23 15:21 - 2020-01-23 15:21 - 000000000 ____D C:\Users\Al\Downloads\No_Quarter;_Jimmy_Page_&_Robert_Plant_Unledded_(1994)_flac
2020-01-23 14:52 - 2020-01-23 14:52 - 000000000 ____D C:\Users\Al\Downloads\Sneaker Pimps-Becoming X (1997)
2020-01-23 14:00 - 2020-01-23 14:00 - 077668574 _____ C:\Users\Al\Downloads\eternaldesire_2020-01-22_keira_b_-_open_x43_2883x4324.zip
2020-01-23 12:49 - 2020-01-23 12:49 - 000000000 ____D C:\Users\Al\Downloads\KFC's Zinger Popcorn Box
2020-01-23 12:46 - 2020-02-01 02:08 - 000105499 _____ C:\Users\Al\Desktop\Exystence – 1-23-20.odt
2020-01-23 11:52 - 2020-01-23 11:52 - 000000000 ____D C:\Users\Al\Downloads\Worlds_of_Sound__The_Story_of_Smithsonian_Folkways_by_Carlin_Richard
2020-01-22 17:23 - 2020-01-22 17:24 - 137054125 _____ C:\Users\Al\Downloads\Holly Brooks - Hot For Holly 2020-01-20.zip
2020-01-22 12:03 - 2020-01-22 12:03 - 000000000 ____D C:\Users\Al\Downloads\Blondie - Autoamerican (1980) expanded flac
2020-01-21 14:08 - 2020-01-21 14:09 - 117195138 _____ C:\Users\Al\Downloads\censored43.zip
2020-01-21 14:06 - 2020-01-21 14:08 - 356623462 _____ C:\Users\Al\Downloads\alsscan_2020-01-21_megan_marx_-_golden_triangle_x224_3057x4586.zip
2020-01-21 03:00 - 2020-01-21 03:01 - 153034361 _____ C:\Users\Al\Downloads\censored44.zip
2020-01-21 02:55 - 2020-01-21 02:55 - 119649195 _____ C:\Users\Al\Downloads\censored45.zip
2020-01-21 01:49 - 2020-01-28 17:25 - 000000000 ____D C:\Users\Al\Desktop\desk
2020-01-21 00:04 - 2020-01-21 00:04 - 000000000 ____D C:\Users\Al\Downloads\Velvet_Underground_-_1967-04-30_Psychedelic_Sounds_From_The_Gymnasium_flac
2020-01-20 19:54 - 2020-01-20 19:54 - 000000000 ____D C:\Users\Al\Downloads\1997 - Them - The Story Of Them
2020-01-20 19:54 - 2020-01-20 19:54 - 000000000 ____D C:\Users\Al\Downloads\1992 - Van Morrison - This Is Van Morrison
2020-01-20 19:53 - 2020-01-20 19:53 - 000000000 ____D C:\Users\Al\Downloads\2006 - Van Morrison - Live At Austin City Limits Festival
2020-01-20 19:52 - 2020-01-20 19:52 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 5)-2007
2020-01-20 19:51 - 2020-01-20 19:51 - 000000000 ____D C:\Users\Al\Downloads\wetransfer-52dc6a
2020-01-20 18:55 - 2020-01-20 18:55 - 020188945 _____ C:\Users\Al\Downloads\censored46.zip
2020-01-20 18:53 - 2020-01-20 18:54 - 066214650 _____ C:\Users\Al\Downloads\censored47.zip
2020-01-20 18:49 - 2020-01-20 18:52 - 239408104 _____ C:\Users\Al\Downloads\censored48.zip
2020-01-20 18:47 - 2020-01-20 18:48 - 123821893 _____ C:\Users\Al\Downloads\censored49.zip
2020-01-20 17:03 - 2020-01-20 17:03 - 000000000 ____D C:\Users\Al\Downloads\Barracudas
2020-01-20 17:01 - 2020-01-20 17:01 - 000000000 ____D C:\Users\Al\Downloads\Bronco
2020-01-20 17:00 - 2020-01-20 17:00 - 000000000 ____D C:\Users\Al\Downloads\VANuggets
2020-01-20 16:59 - 2020-01-20 16:59 - 000000000 ____D C:\Users\Al\Downloads\QueenVision
2020-01-20 16:58 - 2020-01-20 16:58 - 000000000 ____D C:\Users\Al\Downloads\Futurebirds
2020-01-20 16:57 - 2020-01-20 16:57 - 000000000 ____D C:\Users\Al\Downloads\Mojo
2020-01-20 16:57 - 2020-01-20 16:57 - 000000000 ____D C:\Users\Al\Downloads\JojaBand
2020-01-20 16:56 - 2020-01-20 16:56 - 000000000 ____D C:\Users\Al\Downloads\CannedHeat
2020-01-20 11:40 - 2020-01-20 11:40 - 000000000 ____D C:\Users\Al\Downloads\RT 15-20
2020-01-20 11:40 - 2020-01-20 11:40 - 000000000 ____D C:\Users\Al\Downloads\MB 19 - M
2020-01-20 11:39 - 2020-01-20 11:39 - 000000000 ____D C:\Users\Al\Downloads\CV 20 - CV-IS
2020-01-20 04:32 - 2020-01-20 04:32 - 000000000 ____D C:\Users\Al\Downloads\The Kinks - Sleepwalker (February 12, 1977) FLAC
2020-01-20 04:27 - 2020-01-20 04:27 - 000000000 ____D C:\Users\Al\Downloads\The Kinks - Misfits (May 19, 1978) FLAC
2020-01-20 04:21 - 2020-01-20 04:21 - 000000000 ____D C:\Users\Al\Downloads\R.Stevie_Moore_-_What's_The_Point_(1984)
2020-01-20 04:20 - 2020-01-20 04:20 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 4)-2007
2020-01-20 04:19 - 2020-01-20 04:19 - 000000000 ____D C:\Users\Al\Downloads\Rs 9599
2020-01-20 04:18 - 2020-01-20 04:18 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 3)-2007
2020-01-20 04:18 - 2020-01-20 04:18 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 2)-2007
2020-01-20 04:18 - 2020-01-20 04:18 - 000000000 ____D C:\Users\Al\Downloads\Richard Thompson-Gathered Tracks (Vol 1)-2007
2020-01-20 01:17 - 2020-01-20 01:17 - 000000000 ____D C:\Users\Al\Downloads\Chris Isaak - Wicked Game (1991) FLAC
2020-01-20 00:22 - 2020-01-20 00:22 - 000000000 ____D C:\Users\Al\Downloads\wstbnt
2020-01-19 22:13 - 2020-01-19 22:13 - 000000000 ____D C:\Users\Al\Downloads\Dala_-Girls_From_The_North_Country;_Dala_Live_In_Concert_FLAC
2020-01-19 17:23 - 2020-01-19 17:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2020-01-19 16:43 - 2020-01-19 16:43 - 000000000 ____D C:\Users\Al\AppData\Roaming\5401
2020-01-19 16:41 - 2020-01-19 16:41 - 000000000 ____D C:\Users\Al\Downloads\Creedence_Clearwater_Revival_-_Green_River_(1969)_(Remaster_2008_SHM-CD___bonus)_flac
2020-01-19 14:15 - 2020-01-19 14:15 - 000000000 ____D C:\Users\Al\Downloads\Revolution in the Head- The Be@t1es' Records and the Sixties by Ian MacDonald
2020-01-19 14:15 - 2020-01-19 14:15 - 000000000 ____D C:\Users\Al\Downloads\George Harrison - Beware Of Abkco (1994) [FLAC] (STR001)
2020-01-19 10:33 - 2020-01-19 10:33 - 000000000 ____D C:\Users\Al\Downloads\the_kinks_-_the_great_lost_kinks_album_flac
2020-01-18 22:19 - 2020-01-18 22:21 - 000000000 ____D C:\Users\Al\Desktop\Proclaimers - This Is The Story (1987) [Flac]
2020-01-18 19:49 - 2020-02-01 02:16 - 000000000 ____D C:\Users\Al\Desktop\music 21
2020-01-18 18:50 - 2020-01-18 18:50 - 145513141 _____ C:\Users\Al\Downloads\censored50.zip
2020-01-18 18:49 - 2020-01-18 18:50 - 021370600 _____ C:\Users\Al\Downloads\censored51.zip
2020-01-18 18:47 - 2020-01-18 18:47 - 119898476 _____ C:\Users\Al\Downloads\2020-01-17.zip
2020-01-18 18:40 - 2020-01-18 18:42 - 158743498 _____ C:\Users\Al\Downloads\2020-01-16.zip
2020-01-18 11:04 - 2020-01-18 11:04 - 000000000 ____D C:\Users\Al\Desktop\Set (12-24-19)
2020-01-18 10:57 - 2020-01-18 11:41 - 000000000 ____D C:\Users\Al\Desktop\5-27-14 (540)
2020-01-18 10:27 - 2020-01-18 11:35 - 000000000 ____D C:\Users\Al\Desktop\1-2-20 (720)
2020-01-18 10:18 - 2020-01-18 11:40 - 000000000 ____D C:\Users\Al\Desktop\1-10-20 (720)
2020-01-17 18:41 - 2020-01-17 18:43 - 142668913 _____ C:\Users\Al\Downloads\censored52.zip
2020-01-17 18:41 - 2020-01-17 18:41 - 035547682 _____ C:\Users\Al\Downloads\censored53.zip
2020-01-17 18:40 - 2020-01-17 18:40 - 109513733 _____ C:\Users\Al\Downloads\censored54.zip
2020-01-17 18:39 - 2020-01-17 18:40 - 127395084 _____ C:\Users\Al\Downloads\censored55.zip
2020-01-17 18:36 - 2020-01-17 18:38 - 203509210 _____ C:\Users\Al\Downloads\censored56.zip
2020-01-17 18:32 - 2020-01-17 18:32 - 074514746 _____ C:\Users\Al\Downloads\censored57.zip
2020-01-17 18:31 - 2020-01-17 18:32 - 137827291 _____ C:\Users\Al\Downloads\censored58.zip
2020-01-17 10:02 - 2020-01-17 10:04 - 002982532 _____ C:\WINDOWS\Minidump\011720-38468-01.dmp
2020-01-16 18:54 - 2020-01-16 18:54 - 088248729 _____ C:\Users\Al\Downloads\censored59.zip
2020-01-16 18:54 - 2020-01-16 18:54 - 034792969 _____ C:\Users\Al\Downloads\censored60.zip
2020-01-16 18:53 - 2020-01-16 18:53 - 048654117 _____ C:\Users\Al\Downloads\censored61.zip
2020-01-16 18:51 - 2020-01-16 18:53 - 209974612 _____ C:\Users\Al\Downloads\censored62.zip
2020-01-16 18:50 - 2020-01-16 18:51 - 116793042 _____ C:\Users\Al\Downloads\censored63.zip
2020-01-16 05:01 - 2020-01-16 05:01 - 000000000 ____D C:\WINDOWS\Panther
2020-01-15 18:46 - 2020-01-15 18:46 - 053322161 _____ C:\Users\Al\Downloads\censored64.rar
2020-01-15 18:46 - 2020-01-15 18:46 - 029013524 _____ C:\Users\Al\Downloads\censored65.zip
2020-01-15 18:45 - 2020-01-15 18:45 - 134738769 _____ C:\Users\Al\Downloads\censored66.rar
2020-01-15 18:45 - 2020-01-15 18:45 - 090257329 _____ C:\Users\Al\Downloads\censored67.rar
2020-01-15 18:45 - 2020-01-15 18:45 - 055613972 _____ C:\Users\Al\Downloads\censored68.rar
2020-01-15 06:34 - 2020-01-15 06:34 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 005913600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 002494464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-01-15 06:34 - 2020-01-15 06:34 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 007754752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 006520480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 001051664 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2020-01-15 06:33 - 2020-01-15 06:33 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-01-15 06:33 - 2020-01-15 06:33 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-01-15 06:33 - 2020-01-15 06:33 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-01-15 05:11 - 2020-01-15 05:11 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-01-15 05:11 - 2020-01-15 05:11 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-01-13 18:40 - 2020-01-13 18:40 - 016329044 _____ C:\Users\Al\Downloads\censored69.zip
2020-01-13 18:39 - 2020-01-13 18:40 - 336030993 _____ C:\Users\Al\Downloads\censored70.zip
2020-01-13 18:38 - 2020-01-13 18:38 - 025682594 _____ C:\Users\Al\Downloads\Set 1306 2013-12-17.zip
2020-01-13 13:33 - 2020-01-13 13:34 - 206666311 _____ C:\Users\Al\Downloads\Set 2 2015-12-28 (1).zip
2020-01-05 01:28 - 2020-01-05 01:28 - 028235535 _____ C:\Users\Al\Downloads\ScreenGrabs 2019-12-30.zip
2020-01-03 00:16 - 2020-01-03 00:16 - 000270093 _____ C:\Users\Al\Downloads\The Two-Party System Broke the Constitution - The Atlantic.html
2020-01-03 00:16 - 2020-01-03 00:16 - 000000000 ____D C:\Users\Al\Downloads\The Two-Party System Broke the Constitution - The Atlantic_files
2020-01-02 23:51 - 2020-01-02 23:51 - 000322509 _____ C:\Users\Al\Downloads\'The Witcher' Is Absurd. That’s Why It’s Brilliant. - The Atlantic.html
2020-01-02 23:51 - 2020-01-02 23:51 - 000000000 ____D C:\Users\Al\Downloads\'The Witcher' Is Absurd. That’s Why It’s Brilliant. - The Atlantic_files
2019-12-31 01:36 - 2019-12-31 01:36 - 189824975 _____ C:\Users\Al\Downloads\censored71.zip
2019-12-30 01:14 - 2019-12-30 01:15 - 185783809 _____ C:\Users\Al\Downloads\censored72.zip
2019-12-27 23:47 - 2019-12-27 23:47 - 015681030 _____ C:\Users\Al\Downloads\censored73.zip
2019-12-27 23:47 - 2019-12-27 23:47 - 015437101 _____ C:\Users\Al\Downloads\censored74.rar
2019-12-26 02:02 - 2019-12-26 02:02 - 206666311 _____ C:\Users\Al\Downloads\Set 2 2015-12-28.zip
2019-12-26 01:27 - 2019-12-26 01:28 - 077815587 _____ C:\Users\Al\Downloads\censored75.rar
2019-12-25 18:44 - 2019-12-25 18:45 - 040021393 _____ C:\Users\Al\Downloads\censored76.rar
2019-12-25 18:36 - 2019-12-25 18:37 - 531451229 _____ C:\Users\Al\Downloads\censored77.zip
2019-12-25 00:20 - 2019-12-25 00:20 - 000139181 _____ C:\Users\Al\Downloads\Vudu - Last Chance_ 007.html
2019-12-25 00:20 - 2019-12-25 00:20 - 000000000 ____D C:\Users\Al\Downloads\Vudu - Last Chance_ 007_files
2019-12-24 18:57 - 2019-12-24 18:57 - 134248452 _____ C:\Users\Al\Downloads\censored78.zip
2019-12-24 18:56 - 2019-12-24 18:56 - 149994389 _____ C:\Users\Al\Downloads\censored79.zip
2019-12-24 01:01 - 2020-01-24 13:14 - 000000000 ____D C:\Users\Al\Desktop\Marvel & Avengers
2019-12-23 18:55 - 2019-12-23 18:55 - 055986880 _____ C:\Users\Al\Downloads\Mari Mars - Mari Stairs.zip
2019-12-22 18:15 - 2019-12-22 18:15 - 000002037 _____ C:\Users\Al\Desktop\DVDFab 11 Mini.lnk
2019-12-22 18:12 - 2019-12-22 18:12 - 000000000 ____D C:\Users\Al\AppData\Roaming\19746
2019-12-22 16:09 - 2019-12-22 16:09 - 076890228 _____ C:\Users\Al\Downloads\censored80.rar
2019-12-21 05:35 - 2019-12-21 05:35 - 000000000 ____D C:\Users\Al\Downloads\TMEP_PDF-201810
2019-12-21 03:12 - 2019-12-21 16:24 - 000033829 _____ C:\Users\Al\Desktop\Trademarks 12-21-19.odt
2019-12-20 21:13 - 2019-12-20 21:13 - 000035704 _____ (Dell Inc.) C:\WINDOWS\system32\Drivers\dddriver64Dcsa.sys
2019-12-20 12:37 - 2019-12-20 12:37 - 000000000 ____D C:\WINDOWS\{D7BFF4AE-10EB-46B8-9A9A-5E8FEE1EFB86}
2019-12-19 23:02 - 2019-12-20 03:53 - 000000000 ____D C:\Star Wars pics

(second part in next post)
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 2:15 am

C. (second part continued from earlier post)

2019-12-19 03:23 - 2019-12-19 03:24 - 000000000 ____D C:\Users\Al\Desktop\2016-09-11 Meet the Press 8 Days a Week (128)
2019-12-19 02:53 - 2019-12-19 02:54 - 000000000 ____D C:\Users\Al\Desktop\2016-07-10 Pet Sounds @ 50 (128)
2019-12-18 18:55 - 2019-12-18 18:56 - 070286856 _____ C:\Users\Al\Downloads\censored81.rar
2019-12-18 18:55 - 2019-12-18 18:55 - 171610461 _____ C:\Users\Al\Downloads\Set #8779 OO 2019-12-17.zip
2019-12-17 18:38 - 2019-12-17 18:38 - 037155301 _____ C:\Users\Al\Downloads\censored82.rar
2019-12-17 18:38 - 2019-12-17 18:38 - 028043058 _____ C:\Users\Al\Downloads\censored83.rar
2019-12-17 18:38 - 2019-12-17 18:38 - 010558433 _____ C:\Users\Al\Downloads\censored84.zip
2019-12-17 18:37 - 2019-12-17 18:37 - 094861415 _____ C:\Users\Al\Downloads\censored85.zip
2019-12-17 18:36 - 2019-12-17 18:37 - 038891167 _____ C:\Users\Al\Downloads\DDF51349 2014-09-05.rar
2019-12-17 18:36 - 2019-12-17 18:36 - 055613972 _____ C:\Users\Al\Downloads\censored86.rar
2019-12-17 18:35 - 2019-12-17 18:36 - 155965942 _____ C:\Users\Al\Downloads\Set _7693 OSW 2019-11-27.zip
2019-12-17 18:34 - 2019-12-17 18:34 - 053322161 _____ C:\Users\Al\Downloads\censored87.rar
2019-12-16 23:30 - 2019-12-16 23:30 - 000000000 ____D C:\Users\Al\AppData\Roaming\27594
2019-12-16 22:43 - 2019-12-17 23:46 - 000000000 ____D C:\Users\Al\Desktop\Screenplays
2019-12-16 20:34 - 2019-12-16 20:35 - 057724078 _____ C:\Users\Al\Downloads\censored88.zip
2019-12-16 20:34 - 2019-12-16 20:34 - 060639082 _____ C:\Users\Al\Downloads\censored89.zip
2019-12-16 20:31 - 2019-12-16 20:31 - 034472580 _____ C:\Users\Al\Downloads\censored90.zip
2019-12-16 20:31 - 2019-12-16 20:31 - 030208074 _____ C:\Users\Al\Downloads\censored91.rar
2019-12-16 20:30 - 2019-12-16 20:30 - 018810126 _____ C:\Users\Al\Downloads\DDF6408.rar
2019-12-16 20:29 - 2019-12-16 20:29 - 018698859 _____ C:\Users\Al\Downloads\4th of July - Set 1 2015-06-29.zip
2019-12-16 20:28 - 2019-12-16 20:28 - 039190385 _____ C:\Users\Al\Downloads\censored92.rar
2019-12-16 18:51 - 2019-12-16 18:51 - 027590071 _____ C:\Users\Al\Downloads\DDF51354 2014-09-01.zip
2019-12-16 18:50 - 2019-12-16 18:50 - 037819896 _____ C:\Users\Al\Downloads\censored93.rar
2019-12-16 18:49 - 2019-12-16 18:49 - 296176252 _____ C:\Users\Al\Downloads\Set #20588 OT 2019-11-26.zip
2019-12-16 04:34 - 2019-12-16 04:34 - 000002183 _____ C:\Users\Al\Downloads\censored94.htm
2019-12-16 01:04 - 2019-12-16 01:04 - 003848858 _____ C:\Users\Al\Downloads\censored95.mpg
2019-12-16 01:03 - 2019-12-16 01:03 - 000079540 _____ C:\Users\Al\Downloads\Manual v1.pdf
2019-12-16 01:02 - 2019-12-16 01:02 - 001325824 _____ C:\Users\Al\Downloads\censored96.wmv
2019-12-16 01:02 - 2019-12-16 01:02 - 001254421 _____ C:\Users\Al\Downloads\censored97.pdf
2019-12-16 01:02 - 2019-12-16 01:02 - 000020091 _____ C:\Users\Al\Downloads\censored98.htm
2019-12-16 01:02 - 2019-12-16 01:02 - 000002090 _____ C:\Users\Al\Downloads\censored99.htm
2019-12-16 01:01 - 2019-12-16 01:01 - 001499220 _____ C:\Users\Al\Downloads\censored100.wmv
2019-12-16 01:01 - 2019-12-16 01:01 - 001347190 _____ C:\Users\Al\Downloads\censored101.wmv
2019-12-16 01:01 - 2019-12-16 01:01 - 000384056 _____ C:\Users\Al\Downloads\censored102.htm
2019-12-16 00:57 - 2019-12-16 00:57 - 002185680 _____ C:\Users\Al\Downloads\censored103.wmv
2019-12-15 23:47 - 2019-12-15 23:47 - 000000342 _____ C:\Users\Al\Downloads\How To Watch The Clip
2019-12-15 23:46 - 2019-12-15 23:46 - 000137728 _____ C:\Users\Al\Downloads\hjsplit.exe
2019-12-15 23:45 - 2019-12-15 23:45 - 000000132 _____ C:\Users\Al\Downloads\_00000000000000000000000000000000000001.txt
2019-12-15 18:43 - 2019-12-15 18:43 - 056568832 _____ C:\Users\Al\Downloads\censored104.rar
2019-12-14 18:50 - 2019-12-14 18:50 - 019337058 _____ C:\Users\Al\Downloads\censored105.zip
2019-12-14 18:49 - 2019-12-14 18:49 - 239467282 _____ C:\Users\Al\Downloads\Set #18206 OO 2019-12-09.rar
2019-12-13 11:59 - 2019-12-13 11:59 - 007119150 _____ C:\Users\Al\Downloads\censored106.zip
2019-12-12 20:41 - 2019-12-12 20:42 - 034966312 _____ C:\Users\Al\Downloads\censored107.zip
2019-12-12 20:36 - 2019-12-12 20:37 - 032289964 _____ C:\Users\Al\Downloads\censored108.zip
2019-12-12 13:28 - 2020-02-01 23:52 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-12-11 17:45 - 2019-12-11 17:45 - 021378859 _____ C:\Users\Al\Downloads\censored109.zip
2019-12-11 07:09 - 2019-12-11 07:09 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 002188816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 002082208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-12-11 07:09 - 2019-12-11 07:09 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001512528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 001496080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-12-11 07:09 - 2019-12-11 07:09 - 001261464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001054864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000593128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-12-11 07:09 - 2019-12-11 07:09 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2019-12-11 07:09 - 2019-12-11 07:09 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-12-11 07:09 - 2019-12-11 07:09 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-12-10 18:47 - 2019-12-10 18:47 - 151344954 _____ C:\Users\Al\Downloads\censored110.zip
2019-12-10 18:47 - 2019-12-10 18:47 - 028566953 _____ C:\Users\Al\Downloads\Classic Sunset - Set 2 2015-07-06.zip
2019-12-09 09:38 - 2019-06-05 10:24 - 026417551 _____ C:\Users\Al\Desktop\12 - All Apologies.flac
2019-12-09 09:37 - 2019-06-05 10:11 - 032092654 _____ C:\Users\Al\Desktop\03 - Heart-Shaped Box.flac
2019-12-08 18:39 - 2019-12-08 18:39 - 148738865 _____ C:\Users\Al\Downloads\Set #9173 OS 2019-11-25.zip
2019-12-08 18:39 - 2019-12-08 18:39 - 087828768 _____ C:\Users\Al\Downloads\censored111.rar
2019-12-08 18:38 - 2019-12-08 18:38 - 009829223 _____ C:\Users\Al\Downloads\censored112.zip
2019-12-08 18:15 - 2019-12-18 02:25 - 000000000 ____D C:\Users\Al\Desktop\ALB
2019-12-08 01:43 - 2019-12-08 01:43 - 035476252 _____ C:\Users\Al\Downloads\USA05.1988.pdf
2019-12-07 22:59 - 2019-12-07 23:00 - 035427921 _____ C:\Users\Al\Downloads\censored113.pdf
2019-12-07 21:28 - 2019-12-07 21:28 - 041913969 _____ C:\Users\Al\Downloads\censored114.zip
2019-12-07 21:27 - 2019-12-07 21:27 - 042174133 _____ C:\Users\Al\Downloads\censored115.zip
2019-12-07 21:27 - 2019-12-07 21:27 - 039258815 _____ C:\Users\Al\Downloads\censored116.zip
2019-12-07 21:27 - 2019-12-07 21:27 - 032062411 _____ C:\Users\Al\Downloads\censored117.zip
2019-12-07 21:27 - 2019-12-07 21:27 - 031620909 _____ C:\Users\Al\Downloads\censored118.zip
2019-12-07 21:26 - 2019-12-07 21:26 - 038325665 _____ C:\Users\Al\Downloads\censored119.zip
2019-12-07 21:26 - 2019-12-07 21:26 - 033967297 _____ C:\Users\Al\Downloads\censored120.zip
2019-12-07 21:26 - 2019-12-07 21:26 - 031379430 _____ C:\Users\Al\Downloads\censored121.zip
2019-12-07 21:25 - 2019-12-07 21:25 - 035712227 _____ C:\Users\Al\Downloads\censored122.zip
2019-12-07 21:25 - 2019-12-07 21:25 - 030289435 _____ C:\Users\Al\Downloads\censored123.zip
2019-12-07 21:22 - 2019-12-07 21:23 - 039927821 _____ C:\Users\Al\Downloads\censored124.zip
2019-12-07 21:22 - 2019-12-07 21:23 - 029200724 _____ C:\Users\Al\Downloads\censored125.zip
2019-12-07 21:22 - 2019-12-07 21:22 - 036127229 _____ C:\Users\Al\Downloads\censored126.zip
2019-12-07 21:21 - 2019-12-07 21:22 - 022635464 _____ C:\Users\Al\Downloads\censored127.zip
2019-12-07 21:21 - 2019-12-07 21:21 - 037435555 _____ C:\Users\Al\Downloads\censored128.zip
2019-12-07 21:21 - 2019-12-07 21:21 - 029577618 _____ C:\Users\Al\Downloads\censored129.zip
2019-12-07 21:20 - 2019-12-07 21:21 - 031238795 _____ C:\Users\Al\Downloads\censored130.zip
2019-12-07 21:20 - 2019-12-07 21:20 - 041751155 _____ C:\Users\Al\Downloads\censored131.zip
2019-12-07 21:20 - 2019-12-07 21:20 - 032274203 _____ C:\Users\Al\Downloads\censored132.zip
2019-12-07 21:20 - 2019-12-07 21:20 - 023167460 _____ C:\Users\Al\Downloads\censored133.zip
2019-12-07 21:19 - 2019-12-07 21:20 - 033135170 _____ C:\Users\Al\Downloads\censored134.zip
2019-12-07 21:18 - 2019-12-07 21:19 - 031102690 _____ C:\Users\Al\Downloads\censored135.zip
2019-12-07 21:18 - 2019-12-07 21:19 - 030835416 _____ C:\Users\Al\Downloads\censored136.zip
2019-12-07 21:17 - 2019-12-07 21:17 - 029200724 _____ C:\Users\Al\Downloads\censored137.zip
2019-12-07 21:16 - 2019-12-07 21:16 - 036127229 _____ C:\Users\Al\Downloads\censored138.zip
2019-12-07 21:15 - 2019-12-07 21:15 - 045976634 _____ C:\Users\Al\Downloads\censored139.zip
2019-12-07 21:15 - 2019-12-07 21:15 - 039773847 _____ C:\Users\Al\Downloads\censored140.zip
2019-12-07 21:15 - 2019-12-07 21:15 - 037494295 _____ C:\Users\Al\Downloads\censored141.zip
2019-12-07 21:14 - 2019-12-07 21:14 - 032283137 _____ C:\Users\Al\Downloads\censored142.zip
2019-12-07 19:21 - 2019-12-07 19:21 - 037155301 _____ C:\Users\Al\Downloads\censored143.rar
2019-12-07 19:19 - 2019-12-07 19:20 - 037819896 _____ C:\Users\Al\Downloads\censored144.rar
2019-12-07 19:08 - 2020-02-04 09:07 - 000028550 _____ C:\Users\Al\Desktop\pass 12-2019.txt
2019-12-07 18:50 - 2019-12-07 18:50 - 064839140 _____ C:\Users\Al\Downloads\censored145.zip
2019-12-07 18:48 - 2019-12-07 18:48 - 218242081 _____ C:\Users\Al\Downloads\censored146.zip
2019-12-07 16:54 - 2019-12-07 16:54 - 047151118 _____ C:\Users\Al\Downloads\censored147.rar
2019-11-26 18:59 - 2019-11-26 18:59 - 034946466 _____ C:\Users\Al\Downloads\DDF50444.rar
2019-11-26 18:59 - 2019-11-26 18:59 - 030772603 _____ C:\Users\Al\Downloads\censored148.zip
2019-11-26 18:59 - 2019-11-26 18:59 - 021568311 _____ C:\Users\Al\Downloads\censored149.zip
2019-11-26 18:58 - 2019-11-26 18:58 - 234353258 _____ C:\Users\Al\Downloads\censored150.zip
2019-11-26 18:58 - 2019-11-26 18:58 - 062969930 _____ C:\Users\Al\Downloads\censored151.rar
2019-11-25 23:15 - 2019-11-25 23:15 - 000000000 ____D C:\Users\Al\AppData\Roaming\30677
2019-11-25 18:32 - 2019-11-25 18:33 - 046196122 _____ C:\Users\Al\Downloads\censored152.rar
2019-11-25 18:32 - 2019-11-25 18:32 - 277261811 _____ C:\Users\Al\Downloads\censored153.zip
2019-11-25 18:32 - 2019-11-25 18:32 - 220330567 _____ C:\Users\Al\Downloads\Set #9121 OO 2019-11-20.zip
2019-11-25 18:31 - 2019-11-25 18:31 - 202709683 _____ C:\Users\Al\Downloads\Set #20554 OT 2019-11-15.zip
2019-11-25 18:30 - 2019-11-25 18:30 - 013910148 _____ C:\Users\Al\Downloads\censored154.rar
2019-11-25 18:29 - 2019-11-25 18:30 - 077320673 _____ C:\Users\Al\Downloads\censored155.zip
2019-11-25 18:29 - 2019-11-25 18:29 - 045633236 _____ C:\Users\Al\Downloads\censored156.rar
2019-11-24 18:56 - 2019-11-24 18:58 - 024034487 _____ C:\Users\Al\Downloads\censored157.rar
2019-11-23 18:08 - 2019-11-23 18:08 - 021568311 _____ C:\Users\Al\Downloads\censored158.zip
2019-11-22 18:42 - 2019-11-22 18:42 - 142606137 _____ C:\Users\Al\Downloads\censored159.zip
2019-11-22 17:37 - 2019-11-22 17:37 - 000000000 ____D C:\Users\Al\Downloads\Knit 2019-11-08
2019-11-21 22:31 - 2019-12-10 09:51 - 000000000 ____D C:\Users\Al\AppData\Roaming\AccurateRip
2019-11-21 22:31 - 2019-11-21 22:31 - 000000000 ____D C:\Users\Al\AppData\Roaming\EAC
2019-11-21 22:30 - 2019-11-21 22:31 - 000000000 ____D C:\Program Files (x86)\Exact Audio Copy
2019-11-21 22:30 - 2019-11-21 22:30 - 000001145 _____ C:\Users\Public\Desktop\Exact Audio Copy.lnk
2019-11-21 22:30 - 2019-11-21 22:30 - 000001145 _____ C:\ProgramData\Desktop\Exact Audio Copy.lnk
2019-11-21 22:30 - 2019-11-21 22:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy
2019-11-21 18:50 - 2019-11-21 18:50 - 005074288 _____ C:\Users\Al\Downloads\eac-1.3.exe
2019-11-21 18:46 - 2019-11-21 18:46 - 019726564 _____ C:\Users\Al\Downloads\.censored160rar
2019-11-21 18:46 - 2019-11-21 18:46 - 011776588 _____ C:\Users\Al\Downloads\censored161.rar
2019-11-21 18:45 - 2019-11-21 18:46 - 080695998 _____ C:\Users\Al\Downloads\censored162.rar
2019-11-21 18:44 - 2019-11-21 18:44 - 165468303 _____ C:\Users\Al\Downloads\censored163.zip
2019-11-21 18:43 - 2019-11-21 18:43 - 045253234 _____ C:\Users\Al\Downloads\censored164.rar
2019-11-21 18:43 - 2019-11-21 18:43 - 017545473 _____ C:\Users\Al\Downloads\censored165.zip
2019-11-21 18:42 - 2019-11-21 18:43 - 074239050 _____ C:\Users\Al\Downloads\censored166.zip
2019-11-21 18:42 - 2019-11-21 18:42 - 031018018 _____ C:\Users\Al\Downloads\censored167.zip
2019-11-21 08:30 - 2019-11-21 08:30 - 001539744 _____ C:\Users\Al\Downloads\V446783899.mp4
2019-11-21 03:00 - 2019-11-21 03:00 - 057981293 _____ C:\Users\Al\Downloads\censored168.rar
2019-11-21 02:59 - 2019-11-21 03:00 - 199709867 _____ C:\Users\Al\Downloads\censored169.zip
2019-11-21 02:58 - 2019-11-21 02:58 - 123830283 _____ C:\Users\Al\Downloads\censored170.zip
2019-11-21 02:57 - 2019-11-21 02:57 - 169268029 _____ C:\Users\Al\Downloads\censored171.zip
2019-11-21 00:58 - 2019-11-21 00:58 - 020650286 _____ C:\Users\Al\Downloads\censored172.rar
2019-11-21 00:57 - 2019-11-21 00:58 - 031479364 _____ C:\Users\Al\Downloads\censored173.zip
2019-11-21 00:57 - 2019-11-21 00:57 - 083218305 _____ C:\Users\Al\Downloads\censored174.zip
2019-11-21 00:45 - 2019-11-21 07:15 - 000000000 ____D C:\Users\Al\Downloads\Hustle Series 1 - Extras
2019-11-20 17:22 - 2019-11-20 17:22 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2019-11-20 17:21 - 2019-11-20 17:22 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 002369552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 002158080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001718584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001659192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001616696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001387024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001185792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 001126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 001047352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000960040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000816952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000666640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ManagedEventLogging.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000259384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000230200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CmUtil.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-20 17:21 - 2019-11-20 17:21 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2019-11-20 17:21 - 2019-11-20 17:21 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncController.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2019-11-20 17:21 - 2019-11-20 17:21 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppCore.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CabUtil.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.EventLogMessages.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAgentPolicyGenerator.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.WmiAccess.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppData.WinRT.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncCommon.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.WinRT.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.LocalSyncProvider.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernSync.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateBaselineGenerator.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateConfigItemGenerator.exe
2019-11-20 17:21 - 2019-11-20 17:21 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SmbSyncProvider.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.MonitorSyncProvider.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncConditions.dll
2019-11-20 17:21 - 2019-11-20 17:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2019-11-20 17:20 - 2019-11-20 17:20 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-20 17:20 - 2019-11-20 17:20 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-20 17:20 - 2019-11-20 17:20 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-20 17:20 - 2019-11-20 17:20 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2019-11-20 17:20 - 2019-11-20 17:20 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-11-20 17:20 - 2019-11-20 17:20 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-11-20 17:20 - 2019-11-20 17:20 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-20 17:19 - 2019-11-20 17:19 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2019-11-20 17:19 - 2019-11-20 17:19 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-11-20 17:19 - 2019-11-20 17:19 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-20 17:19 - 2019-11-20 17:19 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-20 17:18 - 2019-11-20 17:18 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-20 17:18 - 2019-11-20 17:18 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-11-20 17:18 - 2019-11-20 17:18 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-11-20 17:18 - 2019-11-20 17:18 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2019-11-20 17:18 - 2019-11-20 17:18 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-11-20 17:18 - 2019-11-20 17:18 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe
2019-11-20 17:17 - 2019-11-20 17:17 - 003968512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-11-20 17:17 - 2019-11-20 17:17 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-11-20 17:17 - 2019-11-20 17:17 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-11-20 17:17 - 2019-11-20 17:17 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-11-20 17:17 - 2019-11-20 17:17 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-11-20 17:17 - 2019-11-20 17:17 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2019-11-13 06:33 - 2019-11-13 06:34 - 040174424 _____ C:\Users\Al\Downloads\censored175.rar
2019-11-11 21:05 - 2019-11-11 21:05 - 000000000 ____D C:\Users\Al\AppData\Roaming\20037
2019-11-11 18:29 - 2019-11-11 18:29 - 212156336 _____ C:\Users\Al\Downloads\censored176.zip
2019-11-11 18:28 - 2019-11-11 18:28 - 030249654 _____ C:\Users\Al\Downloads\censored177.zip
2019-11-11 18:21 - 2019-11-11 18:21 - 103678834 _____ C:\Users\Al\Downloads\censored178.zip
2019-11-11 18:20 - 2019-11-11 18:21 - 223836830 _____ C:\Users\Al\Downloads\censored179.zip
2019-11-11 02:46 - 2019-11-11 02:46 - 023875725 _____ C:\Users\Al\Downloads\NMBBM.rar
2019-11-10 18:56 - 2019-11-10 18:56 - 032395345 _____ C:\Users\Al\Downloads\censored180.zip
2019-11-10 18:55 - 2019-11-10 18:56 - 148964812 _____ C:\Users\Al\Downloads\censored181.zip
2019-11-10 15:55 - 2019-11-10 15:56 - 026067920 _____ C:\Users\Al\Downloads\censored182.zip
2019-11-09 18:46 - 2019-11-09 18:47 - 041181800 _____ C:\Users\Al\Downloads\censored183.zip
2019-11-09 18:46 - 2019-11-09 18:46 - 018193918 _____ C:\Users\Al\Downloads\censored184.zip
2019-11-09 18:45 - 2019-11-09 18:46 - 099828421 _____ C:\Users\Al\Downloads\censored185.zip
2019-11-08 12:09 - 2019-11-08 12:09 - 035717164 _____ C:\Users\Al\Downloads\Overtime 2019-11-03.zip
2019-11-08 12:08 - 2019-11-08 12:09 - 055362249 _____ C:\Users\Al\Downloads\censored186.zip
2019-11-08 12:07 - 2019-11-08 12:08 - 131056477 _____ C:\Users\Al\Downloads\censored187.zip
2019-11-08 01:50 - 2019-11-08 01:51 - 091199870 _____ C:\Users\Al\Downloads\censored188.rar
2019-11-07 13:39 - 2019-11-07 13:39 - 033239032 _____ C:\Users\Al\Downloads\censored189.zip
2019-11-07 13:38 - 2019-11-07 13:39 - 136794077 _____ C:\Users\Al\Downloads\censored190.zip
2019-11-07 13:38 - 2019-11-07 13:39 - 073514750 _____ C:\Users\Al\Downloads\censored191.rar
2019-11-06 18:15 - 2019-11-06 18:15 - 224833500 _____ C:\Users\Al\Downloads\censored192.rar
2019-11-06 00:19 - 2019-11-06 00:19 - 001341436 _____ C:\Users\Al\Downloads\censored193.pdf
2019-11-06 00:16 - 2019-11-06 00:16 - 001824980 _____ C:\Users\Al\Downloads\The-Invisible-Drone.pdf
2019-11-06 00:14 - 2019-11-06 00:14 - 000896892 _____ C:\Users\Al\Downloads\Ivory-Towers.pdf

==================== Three months (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-04 20:24 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\Registration
2020-02-04 20:24 - 2019-03-18 23:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-02-04 20:24 - 2019-03-18 23:50 - 000000000 ____D C:\WINDOWS\INF
2020-02-04 20:19 - 2018-12-15 16:14 - 000000000 __SHD C:\Users\Al\IntelGraphicsProfiles
2020-02-04 20:18 - 2019-09-11 14:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-02-04 20:17 - 2019-03-18 23:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-02-04 20:17 - 2018-12-15 17:22 - 000000000 ____D C:\Users\Al\AppData\Roaming\vlc
2020-02-04 20:02 - 2018-12-15 17:23 - 000000000 ____D C:\Users\Al\AppData\Roaming\dvdcss
2020-02-04 20:00 - 2018-12-19 14:41 - 000470344 _____ C:\Users\Al\Desktop\Daily.txt
2020-02-04 19:29 - 2019-09-11 14:13 - 000000000 ____D C:\Users\Al
2020-02-04 19:27 - 2019-09-11 14:06 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-02-04 19:27 - 2018-12-17 11:15 - 000000000 ____D C:\Program Files (x86)\McAfee
2020-02-04 15:54 - 2018-12-19 14:41 - 001374575 _____ C:\Users\Al\Desktop\New Text Document.txt
2020-02-04 11:25 - 2019-09-11 14:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2020-02-04 09:18 - 2019-06-07 23:21 - 000001928 _____ C:\Users\Al\Desktop\pass.txt
2020-02-04 07:35 - 2019-09-11 14:36 - 000003710 _____ C:\WINDOWS\system32\Tasks\McAfee Remediation (Prepare)
2020-02-04 04:03 - 2019-03-18 23:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-02-04 04:03 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-02-03 21:53 - 2019-03-18 23:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-02-03 21:53 - 2019-02-17 20:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-02-03 21:53 - 2018-12-17 14:32 - 000000000 ____D C:\Program Files\7-Zip
2020-02-03 20:43 - 2019-01-15 19:22 - 000000000 ____D C:\Users\Al\AppData\LocalLow\Temp
2020-02-02 12:30 - 2018-12-22 17:59 - 000000000 ____D C:\Users\Al\Desktop\Comic Pics
2020-02-01 23:52 - 2019-02-17 20:01 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-02-01 23:52 - 2019-02-17 20:01 - 000000995 _____ C:\Users\Public\Desktop\Firefox.lnk
2020-02-01 23:52 - 2019-02-17 20:01 - 000000995 _____ C:\ProgramData\Desktop\Firefox.lnk
2020-01-31 15:23 - 2019-01-16 14:27 - 000000000 ____D C:\Users\Al\AppData\Roaming\DVDFab11
2020-01-31 15:10 - 2019-01-16 14:27 - 000000000 ____D C:\Users\Al\Documents\DVDFabCommon
2020-01-31 10:26 - 2019-01-16 14:27 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-01-30 02:43 - 2019-02-17 20:01 - 000000000 ____D C:\Users\Al\AppData\LocalLow\Mozilla
2020-01-27 17:57 - 2019-09-20 09:21 - 000000000 ____D C:\WINDOWS\Minidump
2020-01-22 17:31 - 2019-10-15 16:05 - 000745778 _____ C:\Users\Al\Desktop\Exystence - 10-15-2019.odt
2020-01-22 12:55 - 2018-12-16 10:17 - 000000000 ____D C:\Users\Al\Desktop\Beatles Pics
2020-01-22 12:54 - 2018-12-16 10:17 - 000000000 ____D C:\Users\Al\Desktop\Beatle Brunch Club
2020-01-21 16:29 - 2018-12-15 16:20 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-01-21 16:29 - 2018-12-15 16:20 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-01-21 16:29 - 2018-12-15 16:20 - 000002262 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-01-21 02:11 - 2018-12-31 18:39 - 000000000 ____D C:\Art
2020-01-21 00:35 - 2018-09-08 02:50 - 000000000 ____D C:\ProgramData\PCDr
2020-01-21 00:30 - 2019-09-11 14:06 - 000296344 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-01-19 17:32 - 2018-12-15 16:14 - 000000000 ____D C:\Users\Al\AppData\Local\Packages
2020-01-19 17:22 - 2018-09-08 02:49 - 000000000 ____D C:\ProgramData\SupportAssist
2020-01-19 16:46 - 2019-01-16 14:26 - 000001826 _____ C:\Users\Al\Desktop\DVDFab 11 Mini (x64).lnk
2020-01-19 16:46 - 2019-01-16 14:26 - 000001784 _____ C:\Users\Al\Desktop\DVDFab 11 (x64).lnk
2020-01-19 16:46 - 2019-01-16 14:26 - 000000000 ____D C:\Program Files\DVDFab 11
2020-01-18 00:24 - 2019-09-13 22:22 - 000000000 ____D C:\Users\Al\Desktop\Beatles Books & Mags
2020-01-17 00:03 - 2019-09-11 14:36 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2755259552-3065841404-3207337303-1001
2020-01-17 00:03 - 2019-09-11 14:13 - 000002360 _____ C:\Users\Al\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-01-17 00:03 - 2018-12-15 16:17 - 000000000 ___RD C:\Users\Al\OneDrive
2020-01-16 04:59 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-01-16 04:59 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-01-16 04:59 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-01-16 04:59 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-01-16 01:17 - 2018-12-15 18:58 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-01-16 01:11 - 2018-12-15 18:58 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-01-16 00:02 - 2018-12-21 19:14 - 000000000 ____D C:\Users\Al\Desktop\Score Pic Sets
2020-01-15 06:40 - 2019-03-18 23:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-01-15 05:23 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-01-15 03:14 - 2018-12-17 11:14 - 000000000 ____D C:\Users\Al\AppData\Local\D3DSCache

==================== Files in the root of some directories ========

2019-01-16 14:27 - 2019-01-16 14:27 - 000000171 _____ () C:\Users\Al\AppData\Roaming\822f02e4-9e9a-4077-a765-71edfca16ad0
2018-12-15 17:11 - 2018-12-15 17:11 - 000000017 _____ () C:\Users\Al\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 2:17 am

D. Below please find the contents of the Addition.txt log file after fresh FRST scan:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by Al (04-02-2020 20:33:30)
Running from C:\Users\Al\Desktop
Windows 10 Pro Version 1909 18363.592 (X64) (2019-09-11 19:37:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2755259552-3065841404-3207337303-500 - Administrator - Disabled)
Al (S-1-5-21-2755259552-3065841404-3207337303-1001 - Administrator - Enabled) => C:\Users\Al
DefaultAccount (S-1-5-21-2755259552-3065841404-3207337303-503 - Limited - Disabled)
Guest (S-1-5-21-2755259552-3065841404-3207337303-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2755259552-3065841404-3207337303-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
AS: McAfee VirusScan (Enabled - Up to date) {4DE344F8-6897-65B4-CED0-82B3AF2591B4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Dell Digital Delivery Service (HKLM-x32\...\{66E2407E-9001-483E-B2AA-7AEF97567143}) (Version: 3.6.1005.0 - Dell Products, LP)
Dell Mobile Connect Drivers (HKLM\...\{AAB336F0-6FC6-4BFE-AD7E-315FCDF20156}) (Version: 1.1.3750 - Screenovate Technologies Ltd.)
Dell SupportAssist (HKLM\...\{B7682259-63F5-42FA-933B-ACD343CF7049}) (Version: 3.4.1.49 - Dell Inc.)
Dell SupportAssist Remediation (HKLM\...\{2B2C47D2-F037-4C03-B599-07D7AFE8DD54}) (Version: 3.3.0.4943 - Dell Inc.) Hidden
Dell SupportAssist Remediation (HKLM-x32\...\{8ce1a5ae-856e-4b8e-a0e8-27dd7a209276}) (Version: 3.3.0.4943 - Dell Inc.)
Dell Update - SupportAssist Update Plugin (HKLM\...\{7994281D-063E-4A04-9F18-76732CF6765F}) (Version: 3.3.0.4943 - Dell Inc.) Hidden
Dell Update - SupportAssist Update Plugin (HKLM-x32\...\{2cabaef5-a71d-4331-8ba5-16ab64ffc2bb}) (Version: 3.3.0.4943 - Dell Inc.)
Dell Update for Windows 10 (HKLM\...\{70E9F8CC-A23E-4C25-B292-C86C1821587C}) (Version: 3.1.0 - Dell, Inc.)
DVDFab (x64) 11.0.6.9 (19/01/2020) (HKLM-x32\...\DVDFab 11(x64)) (Version: 11.0.6.9 - DVDFab Software Inc.)
DVDFab 11.0.6.5 (13/12/2019) (HKLM-x32\...\DVDFab 11) (Version: 11.0.6.5 - DVDFab Software Inc.)
Exact Audio Copy 1.3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.3 - Andre Wiethoff)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.130 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1805.12.0.1097 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.5017 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.0.2.1086 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden
McAfee SecurityCenter (HKLM-x32\...\MSC) (Version: 16.0 R22 - McAfee, LLC.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.14 - McAfee, Inc.)
Microsoft OneDrive (HKU\S-1-5-21-2755259552-3065841404-3207337303-1001\...\OneDriveSetup.exe) (Version: 19.222.1110.0006 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 72.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 72.0.2 (x64 en-US)) (Version: 72.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.2 - Mozilla)
OpenOffice 4.1.7 (HKLM-x32\...\{A09D951F-4BA3-4383-97B3-D1B91835E779}) (Version: 4.17.9800 - Apache Software Foundation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 10.0.3.14 - Qualcomm Atheros)
Qualcomm WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8409 - Realtek Semiconductor Corp.)
Trojan Killer (HKLM\...\GridinSoft Trojan Killer) (Version: 2.1.9 - Gridinsoft LLC)
Tweaking.com - Registry Backup (HKLM-x32\...\Tweaking.com - Registry Backup) (Version: 3.5.3 - Tweaking.com)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
ViperRipper 2.1.2 (HKLM-x32\...\ViperRipper_0) (Version: - ViperGirls)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden

Packages:
=========
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1691.1.0_x86__kgqvnymyfvs32 [2020-02-04] (king.com)
Dell Digital Delivery -> C:\Program Files\WindowsApps\DellInc.DellDigitalDelivery_4.0.50.0_x64__htrsf667h5kn2 [2019-12-19] (Dell Inc)
Dell Mobile Connect -> C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_2.0.8168.0_x64__0vhbc3ng4wbp0 [2019-05-01] (Screenovate Technologies) [Startup Task]
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.4.8.0_x64__htrsf667h5kn2 [2020-01-19] (Dell Inc)
Dell SupportAssist for PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.3.8.0_x64__htrsf667h5kn2 [2019-12-08] (0)
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_3.1.54.0_x64__htrsf667h5kn2 [2019-12-20] (Dell Inc)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2018-12-15] (Fitbit)
freda epub ebook reader -> C:\Program Files\WindowsApps\5957Turnipsoft.freda_4.32.2.0_x64__ypmq2qh89vmny [2019-12-31] (Turnipsoft) [MS Ad]
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.2.0.0_x64__8j3eq9eme6ctt [2019-09-11] (INTEL CORP)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2018-12-15] (LinkedIn)
Media Suite Essentials for Dell -> C:\Program Files\WindowsApps\DB6EA5DB.MediaSuiteEssentialsforDell_2.4.2725.0_x86__mcezb6ze687jp [2018-12-15] (CYBERLINK CORPORATION.)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.35.20273.0_x64__8wekyb3d8bbwe [2020-02-04] (Microsoft Corporation) [MS Ad]
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
Microsoft Remote Desktop -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.1.1107.0_x86__8wekyb3d8bbwe [2019-09-05] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-11] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.12325.20344.0_x86__8wekyb3d8bbwe [2020-01-28] (Microsoft Corporation)
MPEG-2 Video Extension -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-09-24] (Microsoft Corporation)
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-18] (Microsoft Corporation) [MS Ad]
My Dell -> C:\Program Files\WindowsApps\DellInc.MyDell_1.2.46.0_x64__htrsf667h5kn2 [2019-12-19] (Dell Inc)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-25] (Netflix, Inc.)
Power Media Player for Dell -> C:\Program Files\WindowsApps\DB6EA5DB.PowerMediaPlayerforDell_14.1.9506.0_x86__mcezb6ze687jp [2018-12-15] (CYBERLINK CORPORATION.)
Power2Go for Dell -> C:\Program Files\WindowsApps\DB6EA5DB.Power2GoforDell_8.0.8908.0_x86__mcezb6ze687jp [2018-12-15] (CYBERLINK CORPORATION.) [Startup Task]
PowerDirector for Dell -> C:\Program Files\WindowsApps\DB6EA5DB.PowerDirectorforDell_15.0.4409.0_x64__mcezb6ze687jp [2018-12-15] (CYBERLINK CORPORATION.)
Waves MaxxAudio Pro for Dell -> C:\Program Files\WindowsApps\WavesAudio.WavesMaxxAudioProforDell_1.1.131.0_x64__fh4rh281wavaa [2018-12-15] (Waves Audio)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2019-09-17] (McAfee, LLC. -> McAfee, LLC.)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> No File
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2019-09-17] (McAfee, LLC. -> McAfee, LLC.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Al\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVDFab 11 (x64)\DVDFab Online.lnk -> hxxp://www.dvdfab.cn/?s=dvdfab11&p=x64&v=11.0.6.
Shortcut: C:\Users\Al\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVDFab 11\DVDFab Online.lnk -> hxxp://www.dvdfab.cn/?s=dvdfab11&v=11.0.6.
ShortcutWithArgument: C:\Users\Al\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2020-02-01 23:52 - 2019-02-21 11:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2020-01-13 07:04 - 2020-01-13 07:04 - 001899008 _____ (SQLite Development Team) [File not signed] C:\Program Files\Dell\SupportAssistAgent\bin\x64\sqlite3.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-11 18:38 - 2018-04-11 18:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-2755259552-3065841404-3207337303-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win LTBLUE 1920x1200.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{6D5E23B7-24B6-4C73-B422-9FE88A2E9F4A}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_2.0.8168.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{BEC29316-9C03-432A-BB38-904CB5339E1B}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_2.0.8168.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{F7F74135-2E16-4290-BE98-FF761E520120}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1DE6B511-436F-499E-9CAA-E83370A9A09E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{82FD9300-DA53-42FD-9364-61C8551C2345}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC. -> McAfee, LLC.)
FirewallRules: [{AB749FF3-9E12-4E8E-934F-73D0648632CA}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe (McAfee, LLC. -> McAfee, LLC.)
FirewallRules: [{136E5FE2-367E-4069-A7FB-6A1A5156BBE5}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, LLC. -> McAfee, LLC.)
FirewallRules: [{EDC195BC-1F07-44FF-8752-01576EBFD690}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7EE16644-DB10-4798-8AC4-80C916E65AC1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12325.20344.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/04/2020 08:35:12 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5284,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (02/04/2020 08:17:30 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.

Error: (02/04/2020 08:17:30 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (02/04/2020 08:17:30 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.

Error: (02/04/2020 08:17:30 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (02/04/2020 08:16:53 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW. hr = 0x80070006, The handle is invalid.
.


Operation:
Executing Asynchronous Operation

Context:
Current State: DoSnapshotSet

Error: (02/04/2020 08:14:57 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {b3e406b5-02d3-447d-946b-3fae91cd4148}

Error: (02/04/2020 08:06:22 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5160,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


System errors:
=============
Error: (02/04/2020 08:18:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The McOobeSv2 service failed to start due to the following error:
The executable program that this service is configured to run in does not implement the service.

Error: (02/04/2020 07:27:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The McOobeSv2 service failed to start due to the following error:
The executable program that this service is configured to run in does not implement the service.

Error: (02/04/2020 07:27:12 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 7:13:31 PM on ‎2/‎4/‎2020 was unexpected.

Error: (02/03/2020 11:09:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (02/03/2020 11:09:58 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Al\AppData\Local\Temp\ehdrv.sys

Error: (02/03/2020 11:09:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (02/03/2020 11:09:57 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Al\AppData\Local\Temp\ehdrv.sys

Error: (02/03/2020 11:09:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading


CodeIntegrity:
===================================

Date: 2020-02-04 20:28:04.149
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2020-02-04 20:28:04.141
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2020-02-04 20:28:04.132
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2020-02-04 20:24:14.141
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-04 20:24:14.137
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-04 20:24:14.132
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-04 20:24:14.127
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-04 20:24:14.121
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Dell Inc. 1.5.9 10/09/2018
Motherboard: Dell Inc. 03NJH0
Processor: Intel(R) Core(TM) i7-8700 CPU @ 3.20GHz
Percentage of memory in use: 48%
Total physical RAM: 8021.25 MB
Available physical RAM: 4093.27 MB
Total Virtual: 12629.25 MB
Available Virtual: 8350.19 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:918.3 GB) (Free:6.73 GB) NTFS
Drive e: (<Endeavour S5 Disc 2>) (CDROM) (Total:7.7 GB) (Free:0 GB) UDF

\\?\Volume{479371b0-63c6-488e-a02c-9bf99d472cf1}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.54 GB) NTFS
\\?\Volume{0af6b70e-55a4-4268-814d-7fd14545e377}\ (Image) (Fixed) (Total:10.41 GB) (Free:0.23 GB) NTFS
\\?\Volume{b83fa2c5-a58a-4935-bdcf-c98a8edc7b75}\ (DELLSUPPORT) (Fixed) (Total:1.07 GB) (Free:0.48 GB) NTFS
\\?\Volume{c3dcacca-ceb0-4de1-91e7-dfc3447ecb32}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.57 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 365CAB40)

Partition: GPT.

==================== End of Addition.txt =======================

E. Do you see any changes in computer behavior?

No changes from before - everything continues to work as normal.

Thank you again for your assistance. Please let me know if you have any questions or if there is anything I can do to assist your review. Thanks.
Al
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 5th, 2020, 12:43 pm

Hi Al,

Step 1.
SFC - System File Checker
  1. Hit the Windows Start button
  2. In the search box, type "cmd" but DO NOT PRESS "ENTER".
  3. Press and hold "CTRL-Shift" on your keyboard while pressing "ENTER" - you will be prompted with a permission dialog box. In the box, click "YES".
  4. You should have a black screen with a blinking cursor after C:\WINDOWS\system32> prompt.
  5. In that black screen, type "sfc /scannow" and hit "ENTER".
  6. Please be patient - the SFC will begin scanning for any system file problems and this process will take a while...
  7. After the message "Verification 100% complete", you will see one of the two possible situations:
    • Windows Resource Protection (WRP) did not find any integrity violations.
    • Windows Resource Protection found corrupt file[s]...
      In this case WRP can repair some problems automatically or refuse to do it, placing information to the log file.

Please post content of such file (see SFC's on screen instructions where to find it) in your next reply or note me that problems with system files were not found.

Thank you,
pgmigg
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 1:41 pm

Dear pgmigg,

I wish to thank you for continuing to assist me in this process. I appreciate your time, patience, and expertise. I did the SFC scan as instructed and below is the message that was displayed:

"Windows Resource Protection found corrupt files and successfully repaired them.
For online repairs, details are included in the CBS log file located at
windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log. For offline
repairs, details are included in the log file provided by the /OFFLOGFILE flag."

Because the log file is quite long and extensive (it contains roughly 1,067,000 characters), I thought it would be better to attach it to this post so please find the complete CBS log as an attachment to this post. I tried to post the original log file, but this site wouldn't let me so I copied the complete contents of the log into a Open Office text document which should open in Word. (If it doesn't open or you can't read the contents, please let me know and I'll copy the contents into a Word document for you and resubmit it as an attachment). If you would like me to post the entire log in separate sections in this thread, please let me know and I will do so (but it will take me some time since I think that each post is limited to 10,000 characters). I apologize for the size of this log.

Please let me know if you have any questions and what the next step is. Thank you again.
Al
You do not have the required permissions to view the files attached to this post.
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 5th, 2020, 3:21 pm

Hi Al,

Every instruction you got from us should be executed exactly as it was written!

You don’t need to care about possibility to open a log by your helper...

If you see that requested log has a huge size and it’s content cannot be placed to your post, you need to attach it as is!

Could you please do it for me?

Just attached as is...

Thank you,
pgmigg
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 5th, 2020, 3:46 pm

Dear pgmigg,

I have tried several times to upload the actual CRS log prepared by my computer but there is a problem. Whenever I try to "Upload attachment" using your site, it refuses to load this log file. Specifically, the error message I get is: "The extension log is not allowed." When I examined the CRS log file using the Properties feature, it verified that this file ends in .log: "Text Document (.log)" This may be why your site is not allowing me to upload it.

I was able to copy and paste the entire contents of this CRS log file onto a new text file and I uploaded that as an attachment to this post. I hope this is helpful. Please let me know if you have any questions or need any more information. Thank you again.
Al
You do not have the required permissions to view the files attached to this post.
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 6th, 2020, 1:09 am

Thank you Al,

I got the log and found inside exactly what I expected to see.

Step 1.
Upload Files to VirusTotal
  1. Please go to VirusTotlal.
  2. Click the Choose file button and navigate to first of the following files:
    C:\WINDOWS\explorer.exe
    C:\WINDOWS\system32\UIRibbon.dll
  3. You might see a message saying File already analysed, if you do click Reanalyse icon - the first one at the right upper corner (looks like an arrow in the cut circle).
  4. Wait for all the scans to finish, then copy and paste the web address from your broswer's address bar.
  5. Navigate to the next file in the list and repeat procedure for every file until the list ends.
  6. Include all web links in your next reply.
    Note: if you cannot find one or both of the files please do not worry - just let me know in your reply which file(s) you could not find.

Please post each log separately to prevent it being cut off by the forum post size limiter.
Check each after you've posted it to make sure it's all present, if any log is cut off you'll have to post it in sections....

Please include in your next reply:
  1. Do you have any problems executing the instructions?
  2. The resulting web links after online file scans by Virus Total
  3. Do you see any changes in computer behavior?

Thanks,
pgmigg

Failure to post replies within 72 hours will result in this thread being closed
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 6th, 2020, 1:53 am

Dear pgmigg,
Thank you for continuing to assist me. I have followed the instructions you provided above about using VirusTotal for the 2 files you specified.

A. I did not have any trouble executing your instructions.

B. The resulting web link for C:\WINDOWS\explorer.exe (which after scanning VirusTotal said "No engines detected this file") is: https://www.virustotal.com/gui/file/ed5 ... /detection

The resulting web link for C:\WINDOWS\system32\UIRibbon.dll (which after scanning VirusTotal said "No engines detected this file") is: https://www.virustotal.com/gui/file/c60 ... /detection

C. At this time, I don't see any changes in my computer's behavior. Everything seems to be working well.

Please let me know if you have any questions and what the next step is. Thank you again for your time and assistance.
Al
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 6th, 2020, 10:33 pm

Hi Al,

Sorry for the delay - I had a very busy day today.

Step 1.
KpRm Cleanup
  1. Please download KpRm by kernel-panik and save it to your Desktop
  2. Right-click kprm_(version).exe and select Run as Administrator
  3. When the tool opens, ensure all boxes are checked, and select Run
  4. Once complete, click OK.
  5. A log will open in Notepad titled kprm-(date).txt.
  6. Please copy and paste its contents into your next reply

Please post each log separately to prevent it being cut off by the forum post size limiter.
Check each after you've posted it to make sure it's all present, if any log is cut off you'll have to post it in sections....

Please include in your next reply:
  1. Do you have any problems executing the instructions?
  2. Contents of the kprm-(date).txt log file
  3. Do you see any changes in computer behavior?

Thanks,
pgmigg

Failure to post replies within 72 hours will result in this thread being closed
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 7th, 2020, 11:20 am

Dear pgmigg,
Thank you for your email and for your continuing efforts to assist me. I understand you are busy with other things and I appreciate the time you have spent with me.

A. I had no problems executing the instructions.

B. Below is the content of the kprm-(date).txt log file:

# Run at 2/7/2020 3:55:12 AM
# KpRm (Kernel-panik) version 2.6
# Website https://kernel-panik.me/tool/kprm/
# Run by Al from C:\Users\Al\Desktop
# Computer Name: DESKTOP-CC6KRI6
# OS: Windows 10 X64 (18363)
# Number of passes: 1

- Checked options -

~ Registry Backup
~ Delete Tools
~ Restore System Settings
~ UAC Restore
~ Delete Restore Points
~ Create Restore Point
~ Delete Quarantines

- Create Registry Backup -

~ [OK] Hive C:\WINDOWS\System32\config\SOFTWARE backed up
~ [OK] Hive C:\Users\Al\NTUSER.dat backed up

[OK] Registry Backup: C:\KPRM\backup\2020-02-07-03-55-11

- Delete Tools -


## AdwCleaner
[OK] C:\Users\Al\Desktop\AdwCleaner.exe deleted (1)
[OK] C:\Users\Al\Downloads\AdwCleaner.exe deleted (1)
[OK] C:\AdwCleaner deleted (1)

## CKScanner
[OK] C:\Users\Al\Desktop\CKScanner.exe deleted (1)
[OK] C:\Users\Al\Downloads\ckfiles.txt deleted (1)
[OK] C:\Users\Al\Downloads\CKScanner.exe deleted (1)

## ESET Online Scanner
[OK] C:\Users\Al\Desktop\ESET Online Scanner.lnk deleted (1)
[OK] C:\Users\Al\Desktop\esetonlinescanner_enu.exe deleted (1)
[OK] C:\Users\Al\AppData\Local\ESET\ESETOnlineScanner deleted (1)

## FRST
[OK] C:\Users\Al\Desktop\Addition.txt deleted (1)
[OK] C:\Users\Al\Desktop\Fixlog.txt deleted (1)
[OK] C:\Users\Al\Desktop\FRST.txt deleted (1)
[OK] C:\Users\Al\Desktop\FRST64.exe deleted (1)
[OK] C:\Users\Al\Downloads\Addition 2-1.txt deleted (1)
[OK] C:\Users\Al\Downloads\Addition.txt deleted (1)
[OK] C:\Users\Al\Downloads\Fixlog.txt deleted (1)
[OK] C:\Users\Al\Downloads\FRST 2-1.txt deleted (1)
[OK] C:\Users\Al\Downloads\FRST.txt deleted (1)
[OK] C:\Users\Al\Downloads\FRST64 (1).exe deleted (1)
[OK] C:\Users\Al\Downloads\FRST64.exe deleted (1)
[OK] C:\FRST deleted (1)

- Restore System Settings -

[OK] Reset WinSock
[OK] FLUSHDNS
[OK] Hide Hidden file.
[OK] Show Extensions for known file types
[OK] Hide protected operating system files

- Restore UAC -

[OK] Set EnableLUA with default (1) value
[OK] Set ConsentPromptBehaviorAdmin with default (5) value
[OK] Set ConsentPromptBehaviorUser with default (3) value
[OK] Set EnableInstallerDetection with default (0) value
[OK] Set EnableSecureUIAPaths with default (1) value
[OK] Set EnableUIADesktopToggle with default (0) value
[OK] Set EnableVirtualization with default (1) value
[OK] Set FilterAdministratorToken with default (0) value
[OK] Set PromptOnSecureDesktop with default (1) value
[OK] Set ValidateAdminCodeSignatures with default (0) value

- Clear Restore Points -

[I] No system recovery points were found

- Create Restore Point -

[OK] System Restore Point created

- Display System Restore Point -

~ [I] RP named KpRm created at 02/07/2020 10:08:43

-- KPRM finished in 4555.21s --

C. I have not seen any changes in the computer's behavior (except for the files on my desktop that KpRm deleted re: our malware search). Everything continues to work normally as it should.

Please let me know what the next instructions are and thank you for your help.
Al
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 7th, 2020, 5:50 pm

Hi Al,

Your latest set of logs appear to be clean! :cheers:
This is my general post for when your logs show no more signs of malware.
Before I give you instructions how to keep your computer clean and secure, I would like to say that it is a time to answer your questions as well as give you some notes and suggestion.

  1. Disk space
    Percentage of memory in use: 48%
    Total physical RAM: 8021.25 MB
    Available physical RAM: 4093.27 MB
    Total Virtual: 12629.25 MB
    Available Virtual: 8350.19 MB
    The operating system requires a certain amount of free space on the hard drive and this amount depends on many factors, including the amount of RAM. To optimize the system, it has to use a hard drive as a temporary storage of the information that was recorded in memory (RAM) along the way and is not currently used, but may be needed in the future - this process is called swapping. The system constantly writes there and reads from there. The size of this space, also called virtual memory, is calculated according to the mnemonic formula "RAM size multiplied by one and a half", that is, in your case it will be 12 GB since you have 8 GB RAM size.
    Drive c: (OS) (Fixed) (Total:918.3 GB) (Free:6.73 GB) NTFS
    In other words, the system should find 12 GB of free space on your hard drive and still leave room for storing temporary files from using the Internet and user programs. As we can see, at the time the FRST scanner was launched, the disk had less than 7 GB of free space, which is unacceptable!

    This situation forces the system to use a smaller amount of virtual memory (4 GB, as can be seen from the log) and a larger percentage of RAM (48%), which disproportionately and naturally slows down a machine that has to access the hard drive more often (slow operation) for smaller portions data that is needed at the moment and more often written down (also a slow operation) there are those that are no longer needed.

    An analysis of the logs shows that the largest load space is occupied by the C:\Users\Al\Downloads directory, the contents of which, in principle, should be constantly monitored by the user. I strongly recommend that you use an external hard drive and store there what you do not use daily from this directory. Free up at least 100 GB of space! The best more than 150 GB!
    .
  2. AntiVirus software
    AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
    AS: McAfee VirusScan (Enabled - Up to date) {4DE344F8-6897-65B4-CED0-82B3AF2591B4}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

    Firstly, there is a simple rule that an antivirus program should be one and only one!
    Two or more are recipe for disaster. More programs does not mean more security, in fact it means the very opposite. Running - more than one - antivirus program is not recommended because:
    1. They can conflict with each other.
    2. Report the other antivirus software as malicious.
    3. Antivirus programs use an enormous amount of computer's resources... actively scanning your computer.
    4. Can cause your computer to run slowly, become unstable and crash.

    The modern Windows 10 contains its own antivirus software Windows Defender which is not so bad and even smart enough to automatically disable itself when it detects the third party program - as you can see above AV: Windows Defender (Disabled - Up to date) which was done upon detection of McAfee VirusScan (Enabled - Up to date).

    There are a large number of antivirus programs on the market that differ in capabilities, statistics of results, and technical features, including the share of consumption of the computer’s system resources. The last position takes McAfee to one of the last places, since it requires too many resources from the computer, leaving miserable crumbs to the user's share.

    Personally, after long comparisons and analysis, for myself, I personally chose Malwarebytes (MBAM) Premium (paid version), which is not only compact in terms of installation size, but also extremely effective in work - several years ago it saved me from a ransom virus - no, it didn’t cure it, but MBAM warned of the appearance and gave me the opportunity to disconnect the computer from the Internet when the file encryption process had just begun, to save the remainder and reformat the hard drive.

    Thus, if you decide to change the anti-virus program, you will have to download a new one, uninstall the old one, restart the computer, and install the new one - in that order. For that short time that passes between you will be automatically protected by Windows Defender.
    .
  3. Additional defense software
    giffordal wrote:I have another question I would like to ask you. I just finished the ESET scan and the program is presenting me with a choice. "Scan your computer every month - With Periodic Scan activated, ESET Online Scanner can automatically run a scan and clean threats from your computer once a month for FREE. You can activate it even if you are currently using another antivirus provider - just as a backup." The default setting is set to Green with the next scan to automatically start on Feb. 23 at 18:00. Should I leave this auto scan function enabled and active or should I disable this feature?
    The fewer programs that do similar things at once, the better. Each scanner is designed for a specific search, takes up a lot of system resources and is used only when it is really necessary. The anti-virus programs make periodic scans also (usually daily, but the periodicity can be controlled) and in this sense MBAM is ideal. It monitors the hard drive, external drives, RAM, workflows, Internet browsers, much more, and almost invisible to the owner of the computer.

I hope I answered most of your questions. ;)

Then:
  • Please don't forget to enable and update all your defense software!

Finally:
Please click HERE
to find a short guide to staying safer online.


Please don't hesitate to ask any additional questions.

Stay Safe! ;)
pgmigg
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00

Re: Request Assistance - Infection where I can't open folder

Unread postby giffordal » February 7th, 2020, 6:49 pm

pgmigg,

I wish to thank you again for all of the time and effort you spent over the past 5 days assisting me with my computer problem. You and your co-workers on this site are generous, considerate, and kind and you truly helped me out of a stressful situation. I hope you are able to keep this forum running to serve future users. Also, I understand your message about disc space and I will try to move some files to an external hard drive very soon. Thanks again for everything and best wishes.

Al
giffordal
Regular Member
 
Posts: 17
Joined: February 2nd, 2020, 12:03 am

Re: Request Assistance - Infection where I can't open folder

Unread postby pgmigg » February 8th, 2020, 12:41 am

As the problems seem to be resolved, this topic is now closed.

We are pleased we could help you resolve your computer's malware issues.

If you would like to make a comment or leave a compliment regarding the help you have received, please see
Feedback for Our Helpers - Say "Thanks" Here.
User avatar
pgmigg
Admin/Teacher
Admin/Teacher
 
Posts: 4743
Joined: July 8th, 2008, 1:25 pm
Location: GMT-05:00
Advertisement
Register to Remove

Previous

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 82 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware