DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.15063.608 BrowserJavaVersion: 11.141.2
Run by User at 7:12:33 on 2017-12-16
Microsoft Windows 10 Pro 10.0.15063.0.1252.1.1033.18.4016.1451 [GMT 0:00]
.
AV: BullGuard Antivirus *Enabled/Updated* {13E9CAA5-762A-794E-2DA9-245D5622A105}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: BullGuard Antispyware *Enabled/Updated* {A8882B41-5010-76C0-1719-1F2F2DA5EBB8}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: BullGuard Firewall *Enabled* {2BD24B80-3C45-7816-06F6-8D68A8F1E67E}
.
============== Running Processes ===============
.
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\fontdrvhost.exe
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
C:\WINDOWS\system32\dwm.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s lmhosts
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k localservice -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\WUDFHost.exe
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localservice -s netprofm
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s CscService
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
c:\windows\system32\svchost.exe -k bullguard_proxy -s BsMailProxy
c:\windows\system32\svchost.exe -k bullguard_main -s BsMain
c:\windows\system32\svchost.exe -k bullguard_cache -s BsCache
c:\windows\system32\svchost.exe -k apphost -s AppHostSvc
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s FDResPub
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe
C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
C:\Program Files\BullGuard Ltd\BullGuard\BsSentry.exe
c:\windows\system32\svchost.exe -k iissvcs
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\system32\mqsvc.exe
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
c:\windows\system32\svchost.exe -k bullguard -s BsNet
c:\windows\system32\svchost.exe -k bullguard -s BsFileScan
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
c:\windows\system32\svchost.exe -k netsvcs -s IKEEXT
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k LocalService
c:\windows\system32\svchost.exe -k localservicenonetwork -s NcdAutoSetup
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s HomeGroupProvider
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
c:\windows\system32\svchost.exe -k netsvcs -s BITS
c:\windows\system32\sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
c:\windows\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\System32\RuntimeBroker.exe
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
C:\Windows\System32\smartscreen.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\BullGuard Ltd\BullGuard\BullGuardTray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\CCleaner\CCleaner64.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.724_none_9e8a868b2d8a538d\TiWorker.exe
C:\Windows\System32\InstallAgent.exe
C:\Windows\System32\InstallAgentUserBroker.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -s wlidsvc
C:\WINDOWS\system32\AUDIODG.EXE
c:\windows\system32\taskhostw.exe
C:\WINDOWS\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_141\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_141\bin\jp2ssv.dll
uRun: [OneDrive] "C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
uRun: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mPolicies-System: DSCAutomationHostEnabled = dword:2
IE: {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Files32\Antiphishing\IE\BGAntiphishingIE.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{c95cc5a9-4145-442d-b1c4-e1f8cd6b85ed} : DHCPNameServer = 192.168.2.1
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
SSODL: WebCheck - <orphaned>
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
x64-Run: [SecurityHealth] C:\Program Files (x86)\Windows Defender\MSASCuiL.exe
x64-Run: [BullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\BullGuardTray.exe" -boot
x64-Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
x64-mPolicies-System: DSCAutomationHostEnabled = dword:2
x64-IE: {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIE.dll
x64-Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\WINDOWS\System32\tbauth.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\windows.storage.dll
.
============= SERVICES / DRIVERS ===============
.
R0 BdNet;BullGuard Network Filter;C:\WINDOWS\System32\drivers\BdNet.sys [2015-11-25 155568]
R1 ahcache;Application Compatibility Cache;C:\WINDOWS\System32\drivers\ahcache.sys [2017-3-18 239616]
R1 BdAgent;BullGuard Security Agent;C:\WINDOWS\System32\drivers\BdAgent.sys [2015-11-25 174744]
R1 BdSentry;BullGuard Security Engine;C:\WINDOWS\System32\drivers\BdSentry.sys [2017-9-11 84376]
R1 BdSpy;BdSpy;C:\WINDOWS\System32\drivers\BdSpy.sys [2015-11-25 94952]
R1 FileCrypt;FileCrypt;C:\WINDOWS\System32\drivers\filecrypt.sys [2017-3-18 54272]
R1 GpuEnergyDrv;GPU Energy Driver;C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2017-3-18 8192]
R2 clreg;Virtual Registry for Containers;C:\WINDOWS\System32\drivers\registry.sys [2017-3-18 14336]
S2 CldFlt;Windows Cloud Files Filter Driver;C:\WINDOWS\System32\drivers\cldflt.sys [2017-3-18 12288]
S3 AcpiDev;ACPI Devices driver;C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-3-18 20480]
S3 ADP80XX;ADP80XX;C:\WINDOWS\System32\drivers\adp80xx.sys [2017-3-18 1135512]
S3 applockerfltr;Smartlocker Filter Driver;C:\WINDOWS\System32\drivers\applockerfltr.sys [2017-3-18 17920]
S3 AppvStrm;AppvStrm;C:\WINDOWS\System32\drivers\AppVStrm.sys [2017-3-18 127904]
S3 AppvVemgr;AppvVemgr;C:\WINDOWS\System32\drivers\AppvVemgr.sys [2017-3-18 161696]
S3 AppvVfs;AppvVfs;C:\WINDOWS\System32\drivers\AppvVfs.sys [2017-3-18 143776]
S3 bcmfn2;bcmfn2 Service;C:\WINDOWS\System32\drivers\bcmfn2.sys [2017-3-18 9728]
S3 buttonconverter;Service for Portable Device Control devices;C:\WINDOWS\System32\drivers\buttonconverter.sys [2017-9-13 39424]
S3 CAD;Charge Arbitration Driver;C:\WINDOWS\System32\drivers\CAD.sys [2017-3-18 53664]
S3 CapImg;HID driver for CapImg touch screen;C:\WINDOWS\System32\drivers\capimg.sys [2017-3-18 122880]
S3 cht4iscsi;cht4iscsi;C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-3-18 347032]
S3 cht4vbd;Chelsio Virtual Bus Driver;C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-3-18 2104224]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\WINDOWS\System32\drivers\ssudbus.sys [2016-9-5 131712]
S3 genericusbfn;Generic USB Function Class;C:\WINDOWS\System32\drivers\genericusbfn.sys [2017-3-18 21504]
S3 hidinterrupt;Common Driver for HID Buttons implemented with interrupts;C:\WINDOWS\System32\drivers\hidinterrupt.sys [2017-3-18 51104]
S3 iagpio;Intel Serial IO GPIO Controller Driver;C:\WINDOWS\System32\drivers\iagpio.sys [2017-3-18 33280]
S3 iai2c;Intel(R) Serial IO I2C Host Controller;C:\WINDOWS\System32\drivers\iai2c.sys [2017-3-18 81408]
S3 iaLPSS2i_GPIO2;Intel(R) Serial IO GPIO Driver v2;C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-3-18 70656]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\WINDOWS\System32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2017-12-13 16:33:33 171272 ----a-w- C:\WINDOWS\System32\BgGamingMonitor.dll
2017-12-13 16:33:33 152208 ----a-w- C:\WINDOWS\SysWow64\BgGamingMonitor.dll
2017-12-08 17:04:04 -------- d--h--w- C:\$WINDOWS.~BT
2017-12-04 16:53:40 76568 ----a-w- C:\WINDOWS\System32\BGLsp.dll
2017-12-04 16:53:39 61720 ----a-w- C:\WINDOWS\SysWow64\BGLsp.dll
2017-11-24 15:48:20 252232 ----a-w- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
2017-11-24 11:28:25 136312 ----a-w- C:\WINDOWS\SysWow64\nvStreaming.exe
2017-11-24 11:28:22 927544 ----a-w- C:\WINDOWS\System32\vulkan-1.dll
2017-11-24 11:28:22 798008 ----a-w- C:\WINDOWS\SysWow64\vulkan-1.dll
2017-11-24 11:28:22 591160 ----a-w- C:\WINDOWS\System32\vulkaninfo.exe
2017-11-24 11:28:22 490296 ----a-w- C:\WINDOWS\SysWow64\vulkaninfo.exe
2017-11-24 11:28:21 -------- d-----w- C:\Program Files (x86)\VulkanRT
2017-11-24 11:27:50 81856 ----a-w- C:\WINDOWS\System32\nv3dappshextr.dll
2017-11-24 11:27:49 607168 ----a-w- C:\WINDOWS\System32\nv3dappshext.dll
2017-11-24 11:27:04 540784 ----a-w- C:\WINDOWS\System32\OpenCL.dll
.
==================== Find3M ====================
.
2017-12-13 07:09:14 133326408 -c--a-w- C:\WINDOWS\System32\MRT-KB890830.exe
2017-12-02 02:25:51 835576 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
2017-12-02 02:25:51 177656 ----a-w- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
2017-11-16 01:41:18 2404800 ----a-w- C:\WINDOWS\System32\nvspcap64.dll
2017-11-16 01:41:18 2070976 ----a-w- C:\WINDOWS\SysWow64\nvspcap.dll
2017-11-16 01:41:17 1309120 ----a-w- C:\WINDOWS\System32\NvRtmpStreamer64.dll
2017-11-16 01:41:13 57792 ----a-w- C:\WINDOWS\System32\drivers\nvvhci.sys
2017-11-16 01:41:12 186304 ----a-w- C:\WINDOWS\System32\nvaudcap64v.dll
2017-11-16 01:41:12 152512 ----a-w- C:\WINDOWS\SysWow64\nvaudcap32v.dll
2017-11-16 00:53:22 1951 ----a-w- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-11-15 15:23:05 77440 ----a-w- C:\WINDOWS\System32\drivers\mbae64.sys
2017-11-09 16:47:35 1951 ----a-w- C:\WINDOWS\NvContainerRecovery.bat
2017-11-09 04:43:28 446392 ----a-w- C:\WINDOWS\SysWow64\opencl.dll
2017-11-09 04:40:56 36248176 ----a-w- C:\WINDOWS\System32\nvoglv64.dll
2017-11-09 04:40:48 29279672 ----a-w- C:\WINDOWS\SysWow64\nvoglv32.dll
2017-11-09 04:40:00 624240 ----a-w- C:\WINDOWS\System32\NvIFROpenGL.dll
2017-11-09 04:39:56 514672 ----a-w- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
2017-11-09 04:39:52 989808 ----a-w- C:\WINDOWS\System32\NvIFR64.dll
2017-11-09 04:39:48 940984 ----a-w- C:\WINDOWS\SysWow64\NvIFR.dll
2017-11-09 04:39:04 54192 ----a-w- C:\WINDOWS\System32\nvhdap64.dll
2017-11-09 04:38:58 1624168 ----a-w- C:\WINDOWS\System32\nvhdagenco6420103.dll
2017-11-09 04:38:54 233904 ----a-w- C:\WINDOWS\System32\drivers\nvhda64v.sys
2017-11-09 04:38:30 1108408 ----a-w- C:\WINDOWS\System32\NvFBC64.dll
2017-11-09 04:38:26 1039800 ----a-w- C:\WINDOWS\SysWow64\NvFBC.dll
2017-11-09 04:38:16 1997752 ----a-w- C:\WINDOWS\System32\nvdispco6438813.dll
2017-11-09 04:38:16 1682544 ----a-w- C:\WINDOWS\System32\nvdispgenco6438813.dll
2017-11-09 04:38:08 748144 ----a-w- C:\WINDOWS\System32\nvDecMFTMjpeg.dll
2017-11-09 04:38:02 607160 ----a-w- C:\WINDOWS\SysWow64\nvDecMFTMjpeg.dll
2017-11-09 04:37:48 4210288 ----a-w- C:\WINDOWS\System32\nvcuvid.dll
2017-11-09 04:37:44 3623024 ----a-w- C:\WINDOWS\SysWow64\nvcuvid.dll
2017-11-09 04:37:32 40246384 ----a-w- C:\WINDOWS\System32\nvcompiler.dll
2017-11-09 04:37:26 35165624 ----a-w- C:\WINDOWS\SysWow64\nvcompiler.dll
2017-11-09 04:30:56 13379352 ----a-w- C:\WINDOWS\System32\nvptxJitCompiler.dll
2017-11-09 04:30:54 10986768 ----a-w- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
2017-11-09 04:30:48 23474480 ----a-w- C:\WINDOWS\System32\nvopencl.dll
2017-11-09 04:30:44 19212720 ----a-w- C:\WINDOWS\SysWow64\nvopencl.dll
2017-11-09 04:26:12 1154296 ----a-w- C:\WINDOWS\System32\nvfatbinaryLoader.dll
2017-11-09 04:26:08 902312 ----a-w- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
2017-11-09 04:26:02 810304 ----a-w- C:\WINDOWS\System32\nvEncodeAPI64.dll
2017-11-09 04:25:58 648728 ----a-w- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
2017-11-09 04:25:50 1342008 ----a-w- C:\WINDOWS\System32\nvEncMFTH264.dll
2017-11-09 04:25:48 1056720 ----a-w- C:\WINDOWS\SysWow64\nvEncMFTH264.dll
2017-11-09 04:25:28 13994136 ----a-w- C:\WINDOWS\System32\nvcuda.dll
2017-11-09 04:25:26 11891200 ----a-w- C:\WINDOWS\SysWow64\nvcuda.dll
2017-11-09 04:25:22 4533184 ----a-w- C:\WINDOWS\System32\nvapi64.dll
2017-11-09 04:25:16 3859848 ----a-w- C:\WINDOWS\SysWow64\nvapi.dll
2017-11-02 05:21:18 612248 ----a-w- C:\WINDOWS\System32\devinv.dll
2017-11-02 05:21:18 1578904 ----a-w- C:\WINDOWS\System32\appraiser.dll
2017-11-02 05:21:15 136088 ----a-w- C:\WINDOWS\System32\CompatTelRunner.exe
2017-11-02 05:21:12 678808 ----a-w- C:\WINDOWS\System32\generaltel.dll
2017-11-02 05:21:12 190360 ----a-w- C:\WINDOWS\System32\acmigration.dll
2017-11-02 05:21:08 379288 ----a-w- C:\WINDOWS\System32\invagent.dll
2017-11-02 05:20:59 2032536 ----a-w- C:\WINDOWS\System32\aitstatic.exe
2017-11-02 05:20:54 613784 ----a-w- C:\WINDOWS\System32\aeinv.dll
2017-11-02 05:20:36 543640 ----a-w- C:\WINDOWS\System32\securekernel.exe
2017-11-02 05:20:32 34712 ----a-w- C:\WINDOWS\System32\DeviceCensus.exe
2017-11-02 05:20:30 259992 ----a-w- C:\WINDOWS\System32\aepic.dll
2017-11-02 05:20:27 965016 ----a-w- C:\WINDOWS\System32\hvloader.efi
2017-11-02 05:20:23 484248 ----a-w- C:\WINDOWS\System32\dcntel.dll
2017-11-02 05:20:21 469568 ----a-w- C:\WINDOWS\System32\wow64win.dll
2017-11-02 05:20:21 1144728 ----a-w- C:\WINDOWS\System32\hvix64.exe
2017-11-02 05:20:17 1015704 ----a-w- C:\WINDOWS\System32\hvax64.exe
2017-11-02 05:20:11 821656 ----a-w- C:\WINDOWS\System32\hvloader.exe
2017-11-02 05:16:53 2398696 ----a-w- C:\WINDOWS\System32\KernelBase.dll
2017-11-02 05:16:48 8319384 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe
2017-11-02 05:16:26 2327448 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys
2017-11-02 05:15:10 1239448 ----a-w- C:\WINDOWS\System32\drivers\ndis.sys
2017-11-02 05:15:06 503704 ----a-w- C:\WINDOWS\System32\pcasvc.dll
2017-11-02 05:14:58 667040 ----a-w- C:\WINDOWS\System32\ci.dll
2017-11-02 05:14:24 67992 ----a-w- C:\WINDOWS\System32\win32appinventorycsp.dll
2017-11-02 05:13:39 1345600 ----a-w- C:\WINDOWS\System32\user32.dll
2017-11-02 05:13:36 2443672 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys
2017-11-02 05:13:22 95640 ----a-w- C:\WINDOWS\System32\drivers\stornvme.sys
2017-11-02 05:13:17 5477088 ----a-w- C:\WINDOWS\System32\OneCoreUAPCommonProxyStub.dll
2017-11-02 05:13:10 212888 ----a-w- C:\WINDOWS\System32\browserbroker.dll
2017-11-02 05:13:01 546712 ----a-w- C:\WINDOWS\System32\drivers\storport.sys
2017-11-02 05:12:58 727336 ----a-w- C:\WINDOWS\System32\wer.dll
2017-11-02 05:12:55 430848 ----a-w- C:\WINDOWS\System32\bcryptprimitives.dll
2017-11-02 05:12:55 412752 ----a-w- C:\WINDOWS\System32\Faultrep.dll
2017-11-02 05:12:46 643192 ----a-w- C:\WINDOWS\System32\drivers\cng.sys
2017-11-02 05:12:39 144248 ----a-w- C:\WINDOWS\System32\WerFaultSecure.exe
2017-11-02 05:12:38 319384 ----a-w- C:\WINDOWS\System32\WerFault.exe
2017-11-02 05:12:35 714648 ----a-w- C:\WINDOWS\System32\drivers\fvevol.sys
2017-11-02 05:12:04 38808 ----a-w- C:\WINDOWS\System32\drivers\Diskdump.sys
2017-11-02 05:12:03 654976 ----a-w- C:\WINDOWS\System32\AppXDeploymentClient.dll
2017-11-02 05:10:59 6557520 ----a-w- C:\WINDOWS\System32\Windows.Media.dll
2017-11-02 05:05:48 187800 ----a-w- C:\WINDOWS\System32\wermgr.exe
2017-11-02 05:05:23 871408 ----a-w- C:\WINDOWS\System32\winhttp.dll
2017-11-02 05:04:20 1292360 ----a-w- C:\WINDOWS\SysWow64\user32.dll
2017-11-02 05:03:58 223640 ----a-w- C:\WINDOWS\SysWow64\aepic.dll
2017-11-02 04:49:55 1838848 ----a-w- C:\WINDOWS\SysWow64\KernelBase.dll
2017-11-02 04:45:57 283544 ----a-w- C:\WINDOWS\SysWow64\WerFault.exe
2017-11-02 04:45:41 133896 ----a-w- C:\WINDOWS\SysWow64\WerFaultSecure.exe
2017-11-02 04:45:36 362144 ----a-w- C:\WINDOWS\SysWow64\Faultrep.dll
2017-11-02 04:45:25 613136 ----a-w- C:\WINDOWS\SysWow64\wer.dll
2017-11-02 04:45:18 172952 ----a-w- C:\WINDOWS\SysWow64\wermgr.exe
2017-11-02 04:45:17 354360 ----a-w- C:\WINDOWS\SysWow64\bcryptprimitives.dll
2017-11-02 04:45:00 703056 ----a-w- C:\WINDOWS\SysWow64\winhttp.dll
2017-11-02 04:44:52 519680 ----a-w- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
2017-11-02 04:44:46 23680000 ----a-w- C:\WINDOWS\System32\edgehtml.dll
.
============= FINISH: 7:15:40.20 ===============
just my missing log file