• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

I think I might have a virus?

Status
Not open for further replies.

Rebelk955

PCHF Member
Mar 25, 2018
9
0
24
So here's a scan I did on my computer, can you guys locate anything that shouldn't be there?
Thanks!

Microsoft Windows [Version 10.0.16299.248]
(c) 2017 Microsoft Corporation. All rights reserved.

C:\WINDOWS\system32>c:\>
The syntax of the command is incorrect.

C:\WINDOWS\system32>c:

C:\WINDOWS\system32>c:\>attrib -r -a -s -h *.*
'c:\' is not recognized as an internal or external command,
operable program or batch file.

C:\WINDOWS\system32>attrib -r -a -s -h *.*
Access denied - C:\WINDOWS\system32\@AudioToastIcon.png
Access denied - C:\WINDOWS\system32\@BackgroundAccessToastIcon.png
Access denied - C:\WINDOWS\system32\@bitlockertoastimage.png
Access denied - C:\WINDOWS\system32\@edptoastimage.png
Access denied - C:\WINDOWS\system32\@EnrollmentToastIcon.png
Access denied - C:\WINDOWS\system32\@language_notification_icon.png
Access denied - C:\WINDOWS\system32\@optionalfeatures.png
Access denied - C:\WINDOWS\system32\@VpnToastIcon.png
Access denied - C:\WINDOWS\system32\@WiFiNotificationIcon.png
Access denied - C:\WINDOWS\system32\@WindowsHelloFaceToastIcon.png
Access denied - C:\WINDOWS\system32\@WindowsUpdateToastIcon.contrast-black.png
Access denied - C:\WINDOWS\system32\@WindowsUpdateToastIcon.contrast-white.png
Access denied - C:\WINDOWS\system32\@WindowsUpdateToastIcon.png
Access denied - C:\WINDOWS\system32\@WirelessDisplayToast.png
Access denied - C:\WINDOWS\system32\@WwanNotificationIcon.png
Access denied - C:\WINDOWS\system32\@WwanSimLockIcon.png
Access denied - C:\WINDOWS\system32\aadauthhelper.dll
Access denied - C:\WINDOWS\system32\aadcloudap.dll
Access denied - C:\WINDOWS\system32\aadjcsp.dll
Access denied - C:\WINDOWS\system32\aadtb.dll
Access denied - C:\WINDOWS\system32\AboutSettingsHandlers.dll
Access denied - C:\WINDOWS\system32\AboveLockAppHost.dll
Access denied - C:\WINDOWS\system32\accessibilitycpl.dll
Access denied - C:\WINDOWS\system32\accountaccessor.dll
Access denied - C:\WINDOWS\system32\AccountsRt.dll
Access denied - C:\WINDOWS\system32\AcGenral.dll
Access denied - C:\WINDOWS\system32\AcLayers.dll
Access denied - C:\WINDOWS\system32\acledit.dll
Access denied - C:\WINDOWS\system32\aclui.dll
Access denied - C:\WINDOWS\system32\acmigration.dll
Access denied - C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
Access denied - C:\WINDOWS\system32\acppage.dll
Access denied - C:\WINDOWS\system32\acproxy.dll
Access denied - C:\WINDOWS\system32\AcSpecfc.dll
Access denied - C:\WINDOWS\system32\ActionCenter.dll
Access denied - C:\WINDOWS\system32\ActionCenterCPL.dll
Access denied - C:\WINDOWS\system32\ActionQueue.dll
Access denied - C:\WINDOWS\system32\ActivationClient.dll
Access denied - C:\WINDOWS\system32\ActivationManager.dll
Access denied - C:\WINDOWS\system32\activeds.dll
Access denied - C:\WINDOWS\system32\activeds.tlb
Access denied - C:\WINDOWS\system32\ActiveSyncCsp.dll
Access denied - C:\WINDOWS\system32\ActiveSyncProvider.dll
Access denied - C:\WINDOWS\system32\actxprxy.dll
Access denied - C:\WINDOWS\system32\AcWinRT.dll
Access denied - C:\WINDOWS\system32\AcXtrnal.dll
Access denied - C:\WINDOWS\system32\AdaptiveCards.dll
Access denied - C:\WINDOWS\system32\AddressParser.dll
Access denied - C:\WINDOWS\system32\adhapi.dll
Access denied - C:\WINDOWS\system32\adhsvc.dll
Access denied - C:\WINDOWS\system32\adprovider.dll
Access denied - C:\WINDOWS\system32\adsldp.dll
Access denied - C:\WINDOWS\system32\adsldpc.dll
Access denied - C:\WINDOWS\system32\adsmsext.dll
Access denied - C:\WINDOWS\system32\adsnt.dll
Access denied - C:\WINDOWS\system32\adtschema.dll
Access denied - C:\WINDOWS\system32\AdvancedEmojiDS.dll
Access denied - C:\WINDOWS\system32\advapi32.dll
Access denied - C:\WINDOWS\system32\advapi32res.dll
Access denied - C:\WINDOWS\system32\advpack.dll
Access denied - C:\WINDOWS\system32\aeevts.dll
Access denied - C:\WINDOWS\system32\aeinv.dll
Access denied - C:\WINDOWS\system32\aepic.dll
Access denied - C:\WINDOWS\system32\aitstatic.exe
Access denied - C:\WINDOWS\system32\AJRouter.dll
Access denied - C:\WINDOWS\system32\alg.exe
Access denied - C:\WINDOWS\system32\altspace.dll
Access denied - C:\WINDOWS\system32\amcompat.tlb
Access denied - C:\WINDOWS\system32\amsi.dll
Access denied - C:\WINDOWS\system32\amsiproxy.dll
Access denied - C:\WINDOWS\system32\amstream.dll
Access denied - C:\WINDOWS\system32\AnalogCommonProxyStub.dll
Access denied - C:\WINDOWS\system32\apds.dll
Access denied - C:\WINDOWS\system32\APHostClient.dll
Access denied - C:\WINDOWS\system32\APHostRes.dll
Access denied - C:\WINDOWS\system32\APHostService.dll
Access denied - C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
Access denied - C:\WINDOWS\system32\apisetschema.dll
Access denied - C:\WINDOWS\system32\AppCapture.dll
Access denied - C:\WINDOWS\system32\AppContracts.dll
Access denied - C:\WINDOWS\system32\AppExtension.dll
Access denied - C:\WINDOWS\system32\apphelp.dll
Access denied - C:\WINDOWS\system32\Apphlpdm.dll
Access denied - C:\WINDOWS\system32\AppHostRegistrationVerifier.exe
Access denied - C:\WINDOWS\system32\appidapi.dll
Access denied - C:\WINDOWS\system32\appidcertstorecheck.exe
Access denied - C:\WINDOWS\system32\appidpolicyconverter.exe
Access denied - C:\WINDOWS\system32\appidsvc.dll
Access denied - C:\WINDOWS\system32\appidtel.exe
Access denied - C:\WINDOWS\system32\appinfo.dll
Access denied - C:\WINDOWS\system32\appinfoext.dll
Access denied - C:\WINDOWS\system32\ApplicationFrame.dll
Access denied - C:\WINDOWS\system32\ApplicationFrameHost.exe
Access denied - C:\WINDOWS\system32\AppLockerCSP.dll
Access denied - C:\WINDOWS\system32\AppMon.dll
Access denied - C:\WINDOWS\system32\AppointmentActivation.dll
Access denied - C:\WINDOWS\system32\AppointmentApis.dll
Access denied - C:\WINDOWS\system32\appraiser.dll
Access denied - C:\WINDOWS\system32\AppReadiness.dll
Access denied - C:\WINDOWS\system32\apprepapi.dll
Access denied - C:\WINDOWS\system32\AppResolver.dll
Access denied - C:\WINDOWS\system32\ApproveChildRequest.exe
Access denied - C:\WINDOWS\system32\appsruprov.dll
Access denied - C:\WINDOWS\system32\appwiz.cpl
Access denied - C:\WINDOWS\system32\AppxAllUserStore.dll
Access denied - C:\WINDOWS\system32\AppXApplicabilityBlob.dll
Access denied - C:\WINDOWS\system32\AppxApplicabilityEngine.dll
Access denied - C:\WINDOWS\system32\AppXDeploymentClient.dll
Access denied - C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
Access denied - C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
Access denied - C:\WINDOWS\system32\AppXDeploymentServer.dll
Access denied - C:\WINDOWS\system32\AppxPackaging.dll
Access denied - C:\WINDOWS\system32\AppxProvisioning.xml
Access denied - C:\WINDOWS\system32\AppxSip.dll
Access denied - C:\WINDOWS\system32\AppxStreamingDataSourcePS.dll
Access denied - C:\WINDOWS\system32\AppxSysprep.dll
Access denied - C:\WINDOWS\system32\ARP.EXE
Access denied - C:\WINDOWS\system32\asferror.dll
Access denied - C:\WINDOWS\system32\aspnet_counters.dll
Access denied - C:\WINDOWS\system32\asycfilt.dll
Access denied - C:\WINDOWS\system32\at.exe
Access denied - C:\WINDOWS\system32\AtBroker.exe
Access denied - C:\WINDOWS\system32\atl.dll
Access denied - C:\WINDOWS\system32\atlthunk.dll
Access denied - C:\WINDOWS\system32\atmfd.dll
Access denied - C:\WINDOWS\system32\atmlib.dll
Access denied - C:\WINDOWS\system32\attrib.exe
Access denied - C:\WINDOWS\system32\audiodg.exe
Access denied - C:\WINDOWS\system32\AudioEndpointBuilder.dll
Access denied - C:\WINDOWS\system32\AudioEng.dll
Access denied - C:\WINDOWS\system32\AUDIOKSE.dll
Access denied - C:\WINDOWS\system32\AudioSes.dll
Access denied - C:\WINDOWS\system32\audiosrv.dll
Access denied - C:\WINDOWS\system32\AudioSrvPolicyManager.dll
Access denied - C:\WINDOWS\system32\auditcse.dll
Access denied - C:\WINDOWS\system32\auditpol.exe
Access denied - C:\WINDOWS\system32\auditpolcore.dll
Access denied - C:\WINDOWS\system32\AuthBroker.dll
Access denied - C:\WINDOWS\system32\AuthBrokerUI.dll
Access denied - C:\WINDOWS\system32\AuthExt.dll
Access denied - C:\WINDOWS\system32\authfwcfg.dll
Access denied - C:\WINDOWS\system32\AuthFWGP.dll
Access denied - C:\WINDOWS\system32\AuthFWSnapin.dll
Access denied - C:\WINDOWS\system32\AuthFWWizFwk.dll
Access denied - C:\WINDOWS\system32\AuthHost.exe
Access denied - C:\WINDOWS\system32\AuthHostProxy.dll
Access denied - C:\WINDOWS\system32\authui.dll
Access denied - C:\WINDOWS\system32\authz.dll
Access denied - C:\WINDOWS\system32\autochk.exe
Access denied - C:\WINDOWS\system32\autoconv.exe
Access denied - C:\WINDOWS\system32\autofmt.exe
Access denied - C:\WINDOWS\system32\autoplay.dll
Access denied - C:\WINDOWS\system32\AverageRoom.bin
Access denied - C:\WINDOWS\system32\avicap32.dll
Access denied - C:\WINDOWS\system32\avifil32.dll
Access denied - C:\WINDOWS\system32\avrt.dll
Access denied - C:\WINDOWS\system32\AxInstSv.dll
Access denied - C:\WINDOWS\system32\AxInstUI.exe
Access denied - C:\WINDOWS\system32\azman.msc
Access denied - C:\WINDOWS\system32\azroles.dll
Access denied - C:\WINDOWS\system32\azroleui.dll
Access denied - C:\WINDOWS\system32\AzSqlExt.dll
Access denied - C:\WINDOWS\system32\AzureSettingSyncProvider.dll
Access denied - C:\WINDOWS\system32\BackgroundMediaPolicy.dll
Access denied - C:\WINDOWS\system32\backgroundTaskHost.exe
Access denied - C:\WINDOWS\system32\BackgroundTransferHost.exe
Access denied - C:\WINDOWS\system32\BamSettingsClient.dll
Access denied - C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
Access denied - C:\WINDOWS\system32\basecsp.dll
Access denied - C:\WINDOWS\system32\basesrv.dll
Access denied - C:\WINDOWS\system32\batmeter.dll
Access denied - C:\WINDOWS\system32\bcastdvr.exe
Access denied - C:\WINDOWS\system32\bcastdvr.proxy.dll
Access denied - C:\WINDOWS\system32\BcastDVRBroker.dll
Access denied - C:\WINDOWS\system32\BcastDVRClient.dll
Access denied - C:\WINDOWS\system32\BcastDVRCommon.dll
Access denied - C:\WINDOWS\system32\bcd.dll
Access denied - C:\WINDOWS\system32\bcdboot.exe
Access denied - C:\WINDOWS\system32\bcdedit.exe
Access denied - C:\WINDOWS\system32\bcdprov.dll
Access denied - C:\WINDOWS\system32\bcdsrv.dll
Access denied - C:\WINDOWS\system32\BCP47Langs.dll
Access denied - C:\WINDOWS\system32\bcrypt.dll
Access denied - C:\WINDOWS\system32\bcryptprimitives.dll
Access denied - C:\WINDOWS\system32\bdaplgin.ax
Access denied - C:\WINDOWS\system32\BdeHdCfgLib.dll
Access denied - C:\WINDOWS\system32\bderepair.dll
Access denied - C:\WINDOWS\system32\bdesvc.dll
Access denied - C:\WINDOWS\system32\bdeui.dll
Access denied - C:\WINDOWS\system32\BdeUISrv.exe
Access denied - C:\WINDOWS\system32\bdeunlock.exe
Access denied - C:\WINDOWS\system32\BFE.DLL
Access denied - C:\WINDOWS\system32\bi.dll
Access denied - C:\WINDOWS\system32\bidispl.dll
Access denied - C:\WINDOWS\system32\BingASDS.dll
Access denied - C:\WINDOWS\system32\BingFilterDS.dll
Access denied - C:\WINDOWS\system32\BingMaps.dll
Access denied - C:\WINDOWS\system32\BingOnlineServices.dll
Access denied - C:\WINDOWS\system32\BioCredProv.dll
Access denied - C:\WINDOWS\system32\BioIso.exe
Access denied - C:\WINDOWS\system32\bisrv.dll
Access denied - C:\WINDOWS\system32\BitLockerCsp.dll
Access denied - C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
Access denied - C:\WINDOWS\system32\BitLockerWizardElev.exe
Access denied - C:\WINDOWS\system32\bitsadmin.exe
Access denied - C:\WINDOWS\system32\bitsigd.dll
Access denied - C:\WINDOWS\system32\bitsperf.dll
Access denied - C:\WINDOWS\system32\BitsProxy.dll
Access denied - C:\WINDOWS\system32\biwinrt.dll
Access denied - C:\WINDOWS\system32\BlbEvents.dll
Access denied - C:\WINDOWS\system32\blbres.dll
Access denied - C:\WINDOWS\system32\blb_ps.dll
Access denied - C:\WINDOWS\system32\BluetoothApis.dll
Access denied - C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
Access denied - C:\WINDOWS\system32\bnmanager.dll
Access denied - C:\WINDOWS\system32\boot.sdi
Access denied - C:\WINDOWS\system32\bootcfg.exe
Access denied - C:\WINDOWS\system32\bootim.exe
Access denied - C:\WINDOWS\system32\BootMenuUX.dll
Access denied - C:\WINDOWS\system32\bootsect.exe
Access denied - C:\WINDOWS\system32\bootstr.dll
Access denied - C:\WINDOWS\system32\bootux.dll
Access denied - C:\WINDOWS\system32\BOOTVID.DLL
Access denied - C:\WINDOWS\system32\bopomofo.uce
Access denied - C:\WINDOWS\system32\bridgeres.dll
Access denied - C:\WINDOWS\system32\bridgeunattend.exe
Access denied - C:\WINDOWS\system32\BrokerLib.dll
Access denied - C:\WINDOWS\system32\browcli.dll
Access denied - C:\WINDOWS\system32\browser.dll
Access denied - C:\WINDOWS\system32\browserbroker.dll
Access denied - C:\WINDOWS\system32\browserexport.exe
Access denied - C:\WINDOWS\system32\BrowserSettingSync.dll
Access denied - C:\WINDOWS\system32\browser_broker.exe
Access denied - C:\WINDOWS\system32\browseui.dll
Access denied - C:\WINDOWS\system32\bthci.dll
Access denied - C:\WINDOWS\system32\BthHFSrv.dll
Access denied - C:\WINDOWS\system32\BthMtpContextHandler.dll
Access denied - C:\WINDOWS\system32\bthpanapi.dll
Access denied - C:\WINDOWS\system32\BthpanContextHandler.dll
Access denied - C:\WINDOWS\system32\bthprops.cpl
Access denied - C:\WINDOWS\system32\BthRadioMedia.dll
Access denied - C:\WINDOWS\system32\bthserv.dll
Access denied - C:\WINDOWS\system32\BthTelemetry.dll
Access denied - C:\WINDOWS\system32\bthudtask.exe
Access denied - C:\WINDOWS\system32\btpanui.dll
Access denied - C:\WINDOWS\system32\Bubbles.scr
Access denied - C:\WINDOWS\system32\BWContextHandler.dll
Access denied - C:\WINDOWS\system32\ByteCodeGenerator.exe
Access denied - C:\WINDOWS\system32\cabapi.dll
Access denied - C:\WINDOWS\system32\cabinet.dll
Access denied - C:\WINDOWS\system32\cabview.dll
Access denied - C:\WINDOWS\system32\cacls.exe
Access denied - C:\WINDOWS\system32\calc.exe
Access denied - C:\WINDOWS\system32\CallButtons.dll
Access denied - C:\WINDOWS\system32\CallButtons.ProxyStub.dll
Access denied - C:\WINDOWS\system32\CallHistoryClient.dll
Access denied - C:\WINDOWS\system32\CameraCaptureUI.dll
Access denied - C:\WINDOWS\system32\CameraSettingsUIHost.exe
Access denied - C:\WINDOWS\system32\canonurl.dll
Access denied - C:\WINDOWS\system32\CapabilityAccessManager.dll
Access denied - C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
Access denied - C:\WINDOWS\system32\capauthz.dll
Access denied - C:\WINDOWS\system32\capiprovider.dll
Access denied - C:\WINDOWS\system32\capisp.dll
Access denied - C:\WINDOWS\system32\CastingShellExt.dll
Access denied - C:\WINDOWS\system32\CastLaunch.dll
Access denied - C:\WINDOWS\system32\CastSrv.exe
Access denied - C:\WINDOWS\system32\catsrv.dll
Access denied - C:\WINDOWS\system32\catsrvps.dll
Access denied - C:\WINDOWS\system32\catsrvut.dll
Access denied - C:\WINDOWS\system32\cca.dll
Access denied - C:\WINDOWS\system32\cdd.dll
Access denied - C:\WINDOWS\system32\cdosys.dll
Access denied - C:\WINDOWS\system32\cdp.dll
Access denied - C:\WINDOWS\system32\cdprt.dll
Access denied - C:\WINDOWS\system32\cdpsvc.dll
Access denied - C:\WINDOWS\system32\cdpusersvc.dll
Access denied - C:\WINDOWS\system32\CellularAPI.dll
Access denied - C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
Access denied - C:\WINDOWS\system32\cemapi.dll
Access denied - C:\WINDOWS\system32\cero.rs
Access denied - C:\WINDOWS\system32\certca.dll
Access denied - C:\WINDOWS\system32\certcli.dll
Access denied - C:\WINDOWS\system32\certCredProvider.dll
Access denied - C:\WINDOWS\system32\certenc.dll
Access denied - C:\WINDOWS\system32\CertEnroll.dll
Access denied - C:\WINDOWS\system32\CertEnrollCtrl.exe
Access denied - C:\WINDOWS\system32\CertEnrollUI.dll
Access denied - C:\WINDOWS\system32\certlm.msc
Access denied - C:\WINDOWS\system32\certmgr.dll
Access denied - C:\WINDOWS\system32\certmgr.msc
Access denied - C:\WINDOWS\system32\CertPKICmdlet.dll
Access denied - C:\WINDOWS\system32\CertPolEng.dll
Access denied - C:\WINDOWS\system32\certprop.dll
Access denied - C:\WINDOWS\system32\certreq.exe
Access denied - C:\WINDOWS\system32\certutil.exe
Access denied - C:\WINDOWS\system32\cewmdm.dll
Access denied - C:\WINDOWS\system32\cfgbkend.dll
Access denied - C:\WINDOWS\system32\cfgmgr32.dll
Access denied - C:\WINDOWS\system32\CfgSPCellular.dll
Access denied - C:\WINDOWS\system32\CfgSPPolicy.dll
Access denied - C:\WINDOWS\system32\cflapi.dll
Access denied - C:\WINDOWS\system32\cfmifs.dll
Access denied - C:\WINDOWS\system32\cfmifsproxy.dll
Access denied - C:\WINDOWS\system32\Chakra.dll
Access denied - C:\WINDOWS\system32\Chakradiag.dll
Access denied - C:\WINDOWS\system32\Chakrathunk.dll
Access denied - C:\WINDOWS\system32\changepk.exe
Access denied - C:\WINDOWS\system32\charmap.exe
Access denied - C:\WINDOWS\system32\chartv.dll
Access denied - C:\WINDOWS\system32\ChatApis.dll
Access denied - C:\WINDOWS\system32\chcp.com
Access denied - C:\WINDOWS\system32\CheckNetIsolation.exe
Access denied - C:\WINDOWS\system32\chkdsk.exe
Access denied - C:\WINDOWS\system32\chkntfs.exe
Access denied - C:\WINDOWS\system32\chkwudrv.dll
Access denied - C:\WINDOWS\system32\choice.exe
Access denied - C:\WINDOWS\system32\ChsStrokeDS.dll
Access denied - C:\WINDOWS\system32\chs_singlechar_pinyin.dat
Access denied - C:\WINDOWS\system32\ChtBopomofoDS.dll
Access denied - C:\WINDOWS\system32\ChtCangjieDS.dll
Access denied - C:\WINDOWS\system32\ChtHkStrokeDS.dll
Access denied - C:\WINDOWS\system32\ChtQuickDS.dll
Access denied - C:\WINDOWS\system32\ChxAPDS.dll
Access denied - C:\WINDOWS\system32\ChxDecoder.dll
Access denied - C:\WINDOWS\system32\ChxHAPDS.dll
Access denied - C:\WINDOWS\system32\chxinputrouter.dll
Access denied - C:\WINDOWS\system32\chxranker.dll
Access denied - C:\WINDOWS\system32\CHxReadingStringIME.dll
Access denied - C:\WINDOWS\system32\ci.dll
Access denied - C:\WINDOWS\system32\cic.dll
Access denied - C:\WINDOWS\system32\cipher.exe
Access denied - C:\WINDOWS\system32\CIRCoInst.dll
Access denied - C:\WINDOWS\system32\clb.dll
Access denied - C:\WINDOWS\system32\clbcatq.dll
Access denied - C:\WINDOWS\system32\cldapi.dll
Access denied - C:\WINDOWS\system32\cleanmgr.exe
Access denied - C:\WINDOWS\system32\CleanPCCSP.dll
Access denied - C:\WINDOWS\system32\clfsw32.dll
Access denied - C:\WINDOWS\system32\cliconfg.dll
Access denied - C:\WINDOWS\system32\cliconfg.exe
Access denied - C:\WINDOWS\system32\cliconfg.rll
Access denied - C:\WINDOWS\system32\clip.exe
Access denied - C:\WINDOWS\system32\ClipboardServer.dll
Access denied - C:\WINDOWS\system32\Clipc.dll
Access denied - C:\WINDOWS\system32\ClipRenew.exe
Access denied - C:\WINDOWS\system32\ClipSVC.dll
Access denied - C:\WINDOWS\system32\ClipUp.exe
Access denied - C:\WINDOWS\system32\cloudAP.dll
Access denied - C:\WINDOWS\system32\CloudBackupSettings.dll
Access denied - C:\WINDOWS\system32\CloudDomainJoinAUG.dll
Access denied - C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
Access denied - C:\WINDOWS\system32\CloudExperienceHost.dll
Access denied - C:\WINDOWS\system32\CloudExperienceHostBroker.dll
Access denied - C:\WINDOWS\system32\CloudExperienceHostBroker.exe
Access denied - C:\WINDOWS\system32\CloudExperienceHostCommon.dll
Access denied - C:\WINDOWS\system32\CloudExperienceHostUser.dll
Access denied - C:\WINDOWS\system32\CloudNotifications.exe
Access denied - C:\WINDOWS\system32\CloudStorageWizard.exe
Access denied - C:\WINDOWS\system32\clrhost.dll
Access denied - C:\WINDOWS\system32\clusapi.dll
Access denied - C:\WINDOWS\system32\cmcfg32.dll
Access denied - C:\WINDOWS\system32\cmd.exe
Access denied - C:\WINDOWS\system32\cmdext.dll
Access denied - C:\WINDOWS\system32\cmdial32.dll
Access denied - C:\WINDOWS\system32\cmdkey.exe
Access denied - C:\WINDOWS\system32\cmdl32.exe
Access denied - C:\WINDOWS\system32\cmgrcspps.dll
Access denied - C:\WINDOWS\system32\cmifw.dll
Access denied - C:\WINDOWS\system32\cmintegrator.dll
Access denied - C:\WINDOWS\system32\cmlua.dll
Access denied - C:\WINDOWS\system32\cmmon32.exe
Access denied - C:\WINDOWS\system32\cmpbk32.dll
Access denied - C:\WINDOWS\system32\cmstp.exe
Access denied - C:\WINDOWS\system32\cmstplua.dll
Access denied - C:\WINDOWS\system32\cmutil.dll
Access denied - C:\WINDOWS\system32\cngcredui.dll
Access denied - C:\WINDOWS\system32\cngprovider.dll
Access denied - C:\WINDOWS\system32\cnvfat.dll
Access denied - C:\WINDOWS\system32\cob-au.rs
Access denied - C:\WINDOWS\system32\cofire.exe
Access denied - C:\WINDOWS\system32\cofiredm.dll
Access denied - C:\WINDOWS\system32\colbact.dll
Access denied - C:\WINDOWS\system32\COLORCNV.DLL
Access denied - C:\WINDOWS\system32\colorcpl.exe
Access denied - C:\WINDOWS\system32\colorui.dll
Access denied - C:\WINDOWS\system32\combase.dll
Access denied - C:\WINDOWS\system32\comcat.dll
Access denied - C:\WINDOWS\system32\comctl32.dll
Access denied - C:\WINDOWS\system32\comdlg32.dll
Access denied - C:\WINDOWS\system32\comexp.msc
Access denied - C:\WINDOWS\system32\coml2.dll
Access denied - C:\WINDOWS\system32\comp.exe
Access denied - C:\WINDOWS\system32\compact.exe
Access denied - C:\WINDOWS\system32\CompatTelRunner.exe
Access denied - C:\WINDOWS\system32\compmgmt.msc
Access denied - C:\WINDOWS\system32\CompMgmtLauncher.exe
Access denied - C:\WINDOWS\system32\ComposableShellProxyStub.dll
Access denied - C:\WINDOWS\system32\ComposerFramework.dll
Access denied - C:\WINDOWS\system32\CompPkgSup.dll
Access denied - C:\WINDOWS\system32\compstui.dll
Access denied - C:\WINDOWS\system32\ComputerDefaults.exe
Access denied - C:\WINDOWS\system32\comrepl.dll
Access denied - C:\WINDOWS\system32\comres.dll
Access denied - C:\WINDOWS\system32\comsnap.dll
Access denied - C:\WINDOWS\system32\comsvcs.dll
Access denied - C:\WINDOWS\system32\comuid.dll
Access denied - C:\WINDOWS\system32\configmanager2.dll
Access denied - C:\WINDOWS\system32\ConfigureExpandedStorage.dll
Access denied - C:\WINDOWS\system32\conhost.exe
Access denied - C:\WINDOWS\system32\ConhostV1.dll
Access denied - C:\WINDOWS\system32\ConhostV2.dll
Access denied - C:\WINDOWS\system32\connect.dll
Access denied - C:\WINDOWS\system32\ConnectedAccountState.dll
Access denied - C:\WINDOWS\system32\consent.exe
Access denied - C:\WINDOWS\system32\ConsentUX.dll
Access denied - C:\WINDOWS\system32\console.dll
Access denied - C:\WINDOWS\system32\ConsoleLogon.dll
Access denied - C:\WINDOWS\system32\ConstraintIndex.Search.dll
Access denied - C:\WINDOWS\system32\ContactActivation.dll
Access denied - C:\WINDOWS\system32\ContactApis.dll
Access denied - C:\WINDOWS\system32\ContactHarvesterDS.dll
Access denied - C:\WINDOWS\system32\container.dll
Access denied - C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
Access denied - C:\WINDOWS\system32\control.exe
Access denied - C:\WINDOWS\system32\convert.exe
Access denied - C:\WINDOWS\system32\convertvhd.exe
Access denied - C:\WINDOWS\system32\coreaudiopolicymanagerext.dll
Access denied - C:\WINDOWS\system32\coredpus.dll
Access denied - C:\WINDOWS\system32\coredpussvr.exe
Access denied - C:\WINDOWS\system32\CoreMessaging.dll
Access denied - C:\WINDOWS\system32\CoreMmRes.dll
Access denied - C:\WINDOWS\system32\CoreShell.dll
Access denied - C:\WINDOWS\system32\CoreShellAPI.dll
Access denied - C:\WINDOWS\system32\CoreShellExtFramework.dll
Access denied - C:\WINDOWS\system32\CoreUIComponents.dll
Access denied - C:\WINDOWS\system32\correngine.dll
Access denied - C:\WINDOWS\system32\Cortana.Persona.dll
Access denied - C:\WINDOWS\system32\CortanaMapiHelper.dll
Access denied - C:\WINDOWS\system32\CortanaMapiHelper.ProxyStub.dll
Access denied - C:\WINDOWS\system32\CourtesyEngine.dll
Access denied - C:\WINDOWS\system32\CPFilters.dll
Access denied - C:\WINDOWS\system32\CredDialogBroker.dll
Access denied - C:\WINDOWS\system32\CredentialMigrationHandler.dll
Access denied - C:\WINDOWS\system32\CredentialUIBroker.exe
Access denied - C:\WINDOWS\system32\CredProv2faHelper.dll
Access denied - C:\WINDOWS\system32\CredProvDataModel.dll
Access denied - C:\WINDOWS\system32\credprovhost.dll
Access denied - C:\WINDOWS\system32\credprovs.dll
Access denied - C:\WINDOWS\system32\credprovslegacy.dll
Access denied - C:\WINDOWS\system32\credssp.dll
Access denied - C:\WINDOWS\system32\credui.dll
Access denied - C:\WINDOWS\system32\credwiz.exe
Access denied - C:\WINDOWS\system32\crypt32.dll
Access denied - C:\WINDOWS\system32\cryptbase.dll
Access denied - C:\WINDOWS\system32\cryptcatsvc.dll
Access denied - C:\WINDOWS\system32\cryptdlg.dll
Access denied - C:\WINDOWS\system32\cryptdll.dll
Access denied - C:\WINDOWS\system32\cryptext.dll
Access denied - C:\WINDOWS\system32\cryptnet.dll
Access denied - C:\WINDOWS\system32\cryptngc.dll
Access denied - C:\WINDOWS\system32\CryptoWinRT.dll
Access denied - C:\WINDOWS\system32\cryptsp.dll
Access denied - C:\WINDOWS\system32\cryptsvc.dll
Access denied - C:\WINDOWS\system32\crypttpmeksvc.dll
Access denied - C:\WINDOWS\system32\cryptui.dll
Access denied - C:\WINDOWS\system32\cryptuiwizard.dll
Access denied - C:\WINDOWS\system32\cryptxml.dll
Access denied - C:\WINDOWS\system32\cscapi.dll
Access denied - C:\WINDOWS\system32\cscdll.dll
Access denied - C:\WINDOWS\system32\cscript.exe
Access denied - C:\WINDOWS\system32\CspCellularSettings.dll
Access denied - C:\WINDOWS\system32\csplte.dll
Access denied - C:\WINDOWS\system32\CspProxy.dll
Access denied - C:\WINDOWS\system32\csrr.rs
Access denied - C:\WINDOWS\system32\csrsrv.dll
Access denied - C:\WINDOWS\system32\csrss.exe
Access denied - C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
Access denied - C:\WINDOWS\system32\ctfmon.exe
Access denied - C:\WINDOWS\system32\cttune.exe
Access denied - C:\WINDOWS\system32\cttunesvr.exe
Access denied - C:\WINDOWS\system32\CXHProvisioningServer.dll
Access denied - C:\WINDOWS\system32\C_037.NLS
Access denied - C:\WINDOWS\system32\C_10000.NLS
Access denied - C:\WINDOWS\system32\C_10001.NLS
Access denied - C:\WINDOWS\system32\C_10002.NLS
Access denied - C:\WINDOWS\system32\C_10003.NLS
Access denied - C:\WINDOWS\system32\C_10004.NLS
Access denied - C:\WINDOWS\system32\C_10005.NLS
Access denied - C:\WINDOWS\system32\C_10006.NLS
Access denied - C:\WINDOWS\system32\C_10007.NLS
Access denied - C:\WINDOWS\system32\C_10008.NLS
Access denied - C:\WINDOWS\system32\C_10010.NLS
Access denied - C:\WINDOWS\system32\C_10017.NLS
Access denied - C:\WINDOWS\system32\C_10021.NLS
Access denied - C:\WINDOWS\system32\C_10029.NLS
Access denied - C:\WINDOWS\system32\C_10079.NLS
Access denied - C:\WINDOWS\system32\C_10081.NLS
Access denied - C:\WINDOWS\system32\C_10082.NLS
Access denied - C:\WINDOWS\system32\C_1026.NLS
Access denied - C:\WINDOWS\system32\C_1047.NLS
Access denied - C:\WINDOWS\system32\C_1140.NLS
Access denied - C:\WINDOWS\system32\C_1141.NLS
Access denied - C:\WINDOWS\system32\C_1142.NLS
Access denied - C:\WINDOWS\system32\C_1143.NLS
Access denied - C:\WINDOWS\system32\C_1144.NLS
Access denied - C:\WINDOWS\system32\C_1145.NLS
Access denied - C:\WINDOWS\system32\C_1146.NLS
Access denied - C:\WINDOWS\system32\C_1147.NLS
Access denied - C:\WINDOWS\system32\C_1148.NLS
Access denied - C:\WINDOWS\system32\C_1149.NLS
Access denied - C:\WINDOWS\system32\C_1250.NLS
Access denied - C:\WINDOWS\system32\C_1251.NLS
Access denied - C:\WINDOWS\system32\C_1252.NLS
Access denied - C:\WINDOWS\system32\C_1253.NLS
Access denied - C:\WINDOWS\system32\C_1254.NLS
Access denied - C:\WINDOWS\system32\C_1255.NLS
Access denied - C:\WINDOWS\system32\C_1256.NLS
Access denied - C:\WINDOWS\system32\C_1257.NLS
Access denied - C:\WINDOWS\system32\C_1258.NLS
Access denied - C:\WINDOWS\system32\C_1361.NLS
Access denied - C:\WINDOWS\system32\C_20000.NLS
Access denied - C:\WINDOWS\system32\C_20001.NLS
Access denied - C:\WINDOWS\system32\C_20002.NLS
Access denied - C:\WINDOWS\system32\C_20003.NLS
Access denied - C:\WINDOWS\system32\C_20004.NLS
Access denied - C:\WINDOWS\system32\C_20005.NLS
Access denied - C:\WINDOWS\system32\C_20105.NLS
Access denied - C:\WINDOWS\system32\C_20106.NLS
Access denied - C:\WINDOWS\system32\C_20107.NLS
Access denied - C:\WINDOWS\system32\C_20108.NLS
Access denied - C:\WINDOWS\system32\C_20127.NLS
Access denied - C:\WINDOWS\system32\C_20261.NLS
Access denied - C:\WINDOWS\system32\C_20269.NLS
Access denied - C:\WINDOWS\system32\C_20273.NLS
Access denied - C:\WINDOWS\system32\C_20277.NLS
Access denied - C:\WINDOWS\system32\C_20278.NLS
Access denied - C:\WINDOWS\system32\C_20280.NLS
Access denied - C:\WINDOWS\system32\C_20284.NLS
Access denied - C:\WINDOWS\system32\C_20285.NLS
Access denied - C:\WINDOWS\system32\C_20290.NLS
Access denied - C:\WINDOWS\system32\C_20297.NLS
Access denied - C:\WINDOWS\system32\C_20420.NLS
Access denied - C:\WINDOWS\system32\C_20423.NLS
Access denied - C:\WINDOWS\system32\C_20424.NLS
Access denied - C:\WINDOWS\system32\C_20833.NLS
Access denied - C:\WINDOWS\system32\C_20838.NLS
Access denied - C:\WINDOWS\system32\C_20866.NLS
Access denied - C:\WINDOWS\system32\C_20871.NLS
Access denied - C:\WINDOWS\system32\C_20880.NLS
Access denied - C:\WINDOWS\system32\C_20905.NLS
Access denied - C:\WINDOWS\system32\C_20924.NLS
Access denied - C:\WINDOWS\system32\C_20932.NLS
Access denied - C:\WINDOWS\system32\C_20936.NLS
Access denied - C:\WINDOWS\system32\C_20949.NLS
Access denied - C:\WINDOWS\system32\C_21025.NLS
Access denied - C:\WINDOWS\system32\C_21027.NLS
Access denied - C:\WINDOWS\system32\C_21866.NLS
Access denied - C:\WINDOWS\system32\C_28591.NLS
Access denied - C:\WINDOWS\system32\C_28592.NLS
Access denied - C:\WINDOWS\system32\C_28593.NLS
Access denied - C:\WINDOWS\system32\C_28594.NLS
Access denied - C:\WINDOWS\system32\C_28595.NLS
Access denied - C:\WINDOWS\system32\C_28596.NLS
Access denied - C:\WINDOWS\system32\C_28597.NLS
Access denied - C:\WINDOWS\system32\C_28598.NLS
Access denied - C:\WINDOWS\system32\C_28599.NLS
Access denied - C:\WINDOWS\system32\c_28603.nls
Access denied - C:\WINDOWS\system32\C_28605.NLS
Access denied - C:\WINDOWS\system32\C_437.NLS
Access denied - C:\WINDOWS\system32\C_500.NLS
Access denied - C:\WINDOWS\system32\C_65001.NLS
Access denied - C:\WINDOWS\system32\C_708.NLS
Access denied - C:\WINDOWS\system32\C_720.NLS
Access denied - C:\WINDOWS\system32\C_737.NLS
Access denied - C:\WINDOWS\system32\C_775.NLS
Access denied - C:\WINDOWS\system32\C_850.NLS
Access denied - C:\WINDOWS\system32\C_852.NLS
Access denied - C:\WINDOWS\system32\C_855.NLS
Access denied - C:\WINDOWS\system32\C_857.NLS
Access denied - C:\WINDOWS\system32\C_858.NLS
Access denied - C:\WINDOWS\system32\C_860.NLS
Access denied - C:\WINDOWS\system32\C_861.NLS
Access denied - C:\WINDOWS\system32\C_862.NLS
Access denied - C:\WINDOWS\system32\C_863.NLS
Access denied - C:\WINDOWS\system32\C_864.NLS
Access denied - C:\WINDOWS\system32\C_865.NLS
Access denied - C:\WINDOWS\system32\C_866.NLS
Access denied - C:\WINDOWS\system32\C_869.NLS
Access denied - C:\WINDOWS\system32\C_870.NLS
Access denied - C:\WINDOWS\system32\C_874.NLS
Access denied - C:\WINDOWS\system32\C_875.NLS
Access denied - C:\WINDOWS\system32\C_932.NLS
Access denied - C:\WINDOWS\system32\C_936.NLS
Access denied - C:\WINDOWS\system32\C_949.NLS
Access denied - C:\WINDOWS\system32\C_950.NLS
Access denied - C:\WINDOWS\system32\C_G18030.DLL
Access denied - C:\WINDOWS\system32\c_GSM7.DLL
Access denied - C:\WINDOWS\system32\C_IS2022.DLL
Access denied - C:\WINDOWS\system32\C_ISCII.DLL
Access denied - C:\WINDOWS\system32\d2d1.dll
Access denied - C:\WINDOWS\system32\d3d10.dll
Access denied - C:\WINDOWS\system32\d3d10core.dll
Access denied - C:\WINDOWS\system32\d3d10level9.dll
Access denied - C:\WINDOWS\system32\d3d10warp.dll
Access denied - C:\WINDOWS\system32\d3d10_1.dll
Access denied - C:\WINDOWS\system32\d3d10_1core.dll
Access denied - C:\WINDOWS\system32\d3d11.dll
Access denied - C:\WINDOWS\system32\D3D12.dll
Access denied - C:\WINDOWS\system32\d3d8thk.dll
Access denied - C:\WINDOWS\system32\d3d9.dll
Access denied - C:\WINDOWS\system32\d3d9on12.dll
Access denied - C:\WINDOWS\system32\D3DCompiler_47.dll
Access denied - C:\WINDOWS\system32\D3DSCache.dll
Access denied - C:\WINDOWS\system32\dab.dll
Access denied - C:\WINDOWS\system32\dabapi.dll
Access denied - C:\WINDOWS\system32\DAConn.dll
Access denied - C:\WINDOWS\system32\dafAspInfraProvider.dll
Access denied - C:\WINDOWS\system32\dafBth.dll
Access denied - C:\WINDOWS\system32\DafDnsSd.dll
Access denied - C:\WINDOWS\system32\dafDockingProvider.dll
Access denied - C:\WINDOWS\system32\DafGip.dll
Access denied - C:\WINDOWS\system32\DAFIoT.dll
Access denied - C:\WINDOWS\system32\DAFIPP.dll
Access denied - C:\WINDOWS\system32\dafpos.dll
Access denied - C:\WINDOWS\system32\DafPrintProvider.dll
Access denied - C:\WINDOWS\system32\dafupnp.dll
Access denied - C:\WINDOWS\system32\dafWCN.dll
Access denied - C:\WINDOWS\system32\dafWfdProvider.dll
Access denied - C:\WINDOWS\system32\DAFWiProv.dll
Access denied - C:\WINDOWS\system32\DAFWSD.dll
Access denied - C:\WINDOWS\system32\DAMediaManager.dll
Access denied - C:\WINDOWS\system32\DAMM.dll
Access denied - C:\WINDOWS\system32\DaOtpCredentialProvider.dll
Access denied - C:\WINDOWS\system32\das.dll
Access denied - C:\WINDOWS\system32\dasHost.exe
Access denied - C:\WINDOWS\system32\dataclen.dll
Access denied - C:\WINDOWS\system32\DataExchange.dll
Access denied - C:\WINDOWS\system32\DataExchangeHost.exe
Access denied - C:\WINDOWS\system32\datamarketsvc.dll
Access denied - C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
Access denied - C:\WINDOWS\system32\DataUsageHandlers.dll
Access denied - C:\WINDOWS\system32\DataUsageLiveTileTask.exe
Access denied - C:\WINDOWS\system32\datusage.dll
Access denied - C:\WINDOWS\system32\davclnt.dll
Access denied - C:\WINDOWS\system32\davhlpr.dll
Access denied - C:\WINDOWS\system32\DavSyncProvider.dll
Access denied - C:\WINDOWS\system32\daxexec.dll
Access denied - C:\WINDOWS\system32\dbgcore.dll
Access denied - C:\WINDOWS\system32\dbgeng.dll
Access denied - C:\WINDOWS\system32\dbghelp.dll
Access denied - C:\WINDOWS\system32\DbgModel.dll
Access denied - C:\WINDOWS\system32\dbnetlib.dll
Access denied - C:\WINDOWS\system32\dbnmpntw.dll
Access denied - C:\WINDOWS\system32\dccw.exe
Access denied - C:\WINDOWS\system32\dciman32.dll
Access denied - C:\WINDOWS\system32\dcntel.dll
Access denied - C:\WINDOWS\system32\dcomcnfg.exe
Access denied - C:\WINDOWS\system32\dcomp.dll
Access denied - C:\WINDOWS\system32\DDACLSys.dll
Access denied - C:\WINDOWS\system32\DdcComImplementations.dll
Access denied - C:\WINDOWS\system32\DDDS.dll
Access denied - C:\WINDOWS\system32\ddisplay.dll
Access denied - C:\WINDOWS\system32\ddodiag.exe
Access denied - C:\WINDOWS\system32\DDOIProxy.dll
Access denied - C:\WINDOWS\system32\DDORes.dll
Access denied - C:\WINDOWS\system32\ddraw.dll
Access denied - C:\WINDOWS\system32\ddrawex.dll
Access denied - C:\WINDOWS\system32\DefaultAccountTile.png
Access denied - C:\WINDOWS\system32\DefaultDeviceManager.dll
Access denied - C:\WINDOWS\system32\DefaultHrtfs.bin
Access denied - C:\WINDOWS\system32\DefaultPrinterProvider.dll
Access denied - C:\WINDOWS\system32\Defrag.exe
Access denied - C:\WINDOWS\system32\defragproxy.dll
Access denied - C:\WINDOWS\system32\defragres.dll
Access denied - C:\WINDOWS\system32\defragsvc.dll
Access denied - C:\WINDOWS\system32\delegatorprovider.dll
Access denied - C:\WINDOWS\system32\desk.cpl
Access denied - C:\WINDOWS\system32\deskadp.dll
Access denied - C:\WINDOWS\system32\deskmon.dll
Access denied - C:\WINDOWS\system32\desktopimgdownldr.exe
Access denied - C:\WINDOWS\system32\DesktopShellExt.dll
Access denied - C:\WINDOWS\system32\DevDispItemProvider.dll
Access denied - C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
Access denied - C:\WINDOWS\system32\devenum.dll
Access denied - C:\WINDOWS\system32\deviceaccess.dll
Access denied - C:\WINDOWS\system32\deviceassociation.dll
Access denied - C:\WINDOWS\system32\DeviceCensus.exe
Access denied - C:\WINDOWS\system32\DeviceCenter.dll
Access denied - C:\WINDOWS\system32\DeviceCredential.dll
Access denied - C:\WINDOWS\system32\DeviceCredentialDeployment.exe
Access denied - C:\WINDOWS\system32\DeviceDirectoryClient.dll
Access denied - C:\WINDOWS\system32\DeviceDisplayStatusManager.dll
Access denied - C:\WINDOWS\system32\DeviceDriverRetrievalClient.dll
Access denied - C:\WINDOWS\system32\DeviceEject.exe
Access denied - C:\WINDOWS\system32\DeviceElementSource.dll
Access denied - C:\WINDOWS\system32\DeviceEnroller.exe
Access denied - C:\WINDOWS\system32\DeviceFlows.DataModel.dll
Access denied - C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
Access denied - C:\WINDOWS\system32\devicengccredprov.dll
Access denied - C:\WINDOWS\system32\DevicePairing.dll
Access denied - C:\WINDOWS\system32\DevicePairingFolder.dll
Access denied - C:\WINDOWS\system32\DevicePairingProxy.dll
Access denied - C:\WINDOWS\system32\DevicePairingWizard.exe
Access denied - C:\WINDOWS\system32\DeviceProperties.exe
Access denied - C:\WINDOWS\system32\DeviceReactivation.dll
Access denied - C:\WINDOWS\system32\deviceregistration.dll
Access denied - C:\WINDOWS\system32\DeviceSetupManager.dll
Access denied - C:\WINDOWS\system32\DeviceSetupManagerAPI.dll
Access denied - C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
Access denied - C:\WINDOWS\system32\DevicesFlowBroker.dll
Access denied - C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
Access denied - C:\WINDOWS\system32\DeviceUpdateAgent.dll
Access denied - C:\WINDOWS\system32\DeviceUxRes.dll
Access denied - C:\WINDOWS\system32\devinv.dll
Access denied - C:\WINDOWS\system32\devmgmt.msc
Access denied - C:\WINDOWS\system32\devmgr.dll
Access denied - C:\WINDOWS\system32\DevModeRunAsUserConfig.msc
Access denied - C:\WINDOWS\system32\devobj.dll
Access denied - C:\WINDOWS\system32\DevPropMgr.dll
Access denied - C:\WINDOWS\system32\DevQueryBroker.dll
Access denied - C:\WINDOWS\system32\devrtl.dll
Access denied - C:\WINDOWS\system32\dfdts.dll
Access denied - C:\WINDOWS\system32\DFDWiz.exe
Access denied - C:\WINDOWS\system32\dfrgui.exe
Access denied - C:\WINDOWS\system32\dfscli.dll
Access denied - C:\WINDOWS\system32\dfshim.dll
Access denied - C:\WINDOWS\system32\DfsShlEx.dll
Access denied - C:\WINDOWS\system32\dhcpcmonitor.dll
Access denied - C:\WINDOWS\system32\dhcpcore.dll
Access denied - C:\WINDOWS\system32\dhcpcore6.dll
Access denied - C:\WINDOWS\system32\dhcpcsvc.dll
Access denied - C:\WINDOWS\system32\dhcpcsvc6.dll
Access denied - C:\WINDOWS\system32\dhcpsapi.dll
Access denied - C:\WINDOWS\system32\DHolographicDisplay.dll
Access denied - C:\WINDOWS\system32\DiagCpl.dll
Access denied - C:\WINDOWS\system32\DiagnosticInvoker.dll
Access denied - C:\WINDOWS\system32\DiagnosticLogCSP.dll
Access denied - C:\WINDOWS\system32\diagperf.dll
Access denied - C:\WINDOWS\system32\DiagSvc.dll
Access denied - C:\WINDOWS\system32\diagtrack.dll
Access denied - C:\WINDOWS\system32\dialclient.dll
Access denied - C:\WINDOWS\system32\dialer.exe
Access denied - C:\WINDOWS\system32\dialserver.dll
Access denied - C:\WINDOWS\system32\DictationManager.dll
Access denied - C:\WINDOWS\system32\difxapi.dll
Access denied - C:\WINDOWS\system32\dimsjob.dll
Access denied - C:\WINDOWS\system32\dimsroam.dll
Access denied - C:\WINDOWS\system32\dinput.dll
Access denied - C:\WINDOWS\system32\dinput8.dll
Access denied - C:\WINDOWS\system32\Direct2DDesktop.dll
Access denied - C:\WINDOWS\system32\directmanipulation.dll
Access denied - C:\WINDOWS\system32\discan.dll
Access denied - C:\WINDOWS\system32\diskmgmt.msc
Access denied - C:\WINDOWS\system32\diskpart.exe
Access denied - C:\WINDOWS\system32\diskperf.exe
Access denied - C:\WINDOWS\system32\diskraid.exe
Access denied - C:\WINDOWS\system32\DiskSnapshot.conf
Access denied - C:\WINDOWS\system32\DiskSnapshot.exe
Access denied - C:\WINDOWS\system32\Dism.exe
Access denied - C:\WINDOWS\system32\DismApi.dll
Access denied - C:\WINDOWS\system32\DispBroker.dll
Access denied - C:\WINDOWS\system32\dispdiag.exe
Access denied - C:\WINDOWS\system32\dispex.dll
Access denied - C:\WINDOWS\system32\Display.dll
Access denied - C:\WINDOWS\system32\DisplayManager.dll
Access denied - C:\WINDOWS\system32\DisplaySwitch.exe
Access denied - C:\WINDOWS\system32\djctq.rs
Access denied - C:\WINDOWS\system32\djoin.exe
Access denied - C:\WINDOWS\system32\dllhost.exe
Access denied - C:\WINDOWS\system32\dllhst3g.exe
Access denied - C:\WINDOWS\system32\dlnashext.dll
Access denied - C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
Access denied - C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll
Access denied - C:\WINDOWS\system32\DMAppsRes.dll
Access denied - C:\WINDOWS\system32\dmcertinst.exe
Access denied - C:\WINDOWS\system32\dmcfghost.exe
Access denied - C:\WINDOWS\system32\dmcfgutils.dll
Access denied - C:\WINDOWS\system32\dmclient.exe
Access denied - C:\WINDOWS\system32\dmcmnutils.dll
Access denied - C:\WINDOWS\system32\dmcommandlineutils.dll
Access denied - C:\WINDOWS\system32\dmcsps.dll
Access denied - C:\WINDOWS\system32\dmdlgs.dll
Access denied - C:\WINDOWS\system32\dmdskmgr.dll
Access denied - C:\WINDOWS\system32\dmdskres.dll
Access denied - C:\WINDOWS\system32\dmdskres2.dll
Access denied - C:\WINDOWS\system32\dmenrollengine.dll
Access denied - C:\WINDOWS\system32\dmenterprisediagnostics.dll
Access denied - C:\WINDOWS\system32\dmintf.dll
Access denied - C:\WINDOWS\system32\dmiso8601utils.dll
Access denied - C:\WINDOWS\system32\dmloader.dll
Access denied - C:\WINDOWS\system32\DmNotificationBroker.exe
Access denied - C:\WINDOWS\system32\dmocx.dll
Access denied - C:\WINDOWS\system32\dmoleaututils.dll
Access denied - C:\WINDOWS\system32\DmOmaCpMo.exe
Access denied - C:\WINDOWS\system32\dmprocessxmlfiltered.dll
Access denied - C:\WINDOWS\system32\dmpushproxy.dll
Access denied - C:\WINDOWS\system32\DMPushRouterCore.dll
Access denied - C:\WINDOWS\system32\DMRServer.dll
Access denied - C:\WINDOWS\system32\dmsynth.dll
Access denied - C:\WINDOWS\system32\dmusic.dll
Access denied - C:\WINDOWS\system32\dmutil.dll
Access denied - C:\WINDOWS\system32\dmvdsitf.dll
Access denied - C:\WINDOWS\system32\dmview.ocx
Access denied - C:\WINDOWS\system32\dmwappushsvc.dll
Access denied - C:\WINDOWS\system32\dmwmicsp.dll
Access denied - C:\WINDOWS\system32\dmxmlhelputils.dll
Access denied - C:\WINDOWS\system32\dnsapi.dll
Access denied - C:\WINDOWS\system32\dnscacheugc.exe
Access denied - C:\WINDOWS\system32\dnscmmc.dll
Access denied - C:\WINDOWS\system32\dnsext.dll
Access denied - C:\WINDOWS\system32\dnshc.dll
Access denied - C:\WINDOWS\system32\dnsrslvr.dll
Access denied - C:\WINDOWS\system32\Docking.VirtualInput.dll
Access denied - C:\WINDOWS\system32\DockInterface.ProxyStub.dll
Access denied - C:\WINDOWS\system32\docprop.dll
Access denied - C:\WINDOWS\system32\DocumentPerformanceEvents.dll
Access denied - C:\WINDOWS\system32\DolbyDecMFT.dll
Access denied - C:\WINDOWS\system32\DolbyHrtfEnc.dll
Access denied - C:\WINDOWS\system32\DolbyMATEnc.dll
Access denied - C:\WINDOWS\system32\domgmt.dll
Access denied - C:\WINDOWS\system32\dosettings.dll
Access denied - C:\WINDOWS\system32\doskey.exe
Access denied - C:\WINDOWS\system32\dosvc.dll
Access denied - C:\WINDOWS\system32\dot3api.dll
Access denied - C:\WINDOWS\system32\dot3cfg.dll
Access denied - C:\WINDOWS\system32\Dot3Conn.dll
Access denied - C:\WINDOWS\system32\dot3dlg.dll
Access denied - C:\WINDOWS\system32\dot3gpclnt.dll
Access denied - C:\WINDOWS\system32\dot3gpui.dll
Access denied - C:\WINDOWS\system32\dot3hc.dll
Access denied - C:\WINDOWS\system32\dot3mm.dll
Access denied - C:\WINDOWS\system32\dot3msm.dll
Access denied - C:\WINDOWS\system32\dot3svc.dll
Access denied - C:\WINDOWS\system32\dot3ui.dll
Access denied - C:\WINDOWS\system32\dpapi.dll
Access denied - C:\WINDOWS\system32\dpapimig.exe
Access denied - C:\WINDOWS\system32\dpapiprovider.dll
Access denied - C:\WINDOWS\system32\dpapisrv.dll
Access denied - C:\WINDOWS\system32\DpiScaling.exe
Access denied - C:\WINDOWS\system32\dpnaddr.dll
Access denied - C:\WINDOWS\system32\dpnathlp.dll
Access denied - C:\WINDOWS\system32\dpnet.dll
Access denied - C:\WINDOWS\system32\dpnhpast.dll
Access denied - C:\WINDOWS\system32\dpnhupnp.dll
Access denied - C:\WINDOWS\system32\dpnlobby.dll
Access denied - C:\WINDOWS\system32\dpnsvr.exe
Access denied - C:\WINDOWS\system32\dps.dll
Access denied - C:\WINDOWS\system32\dpx.dll
Access denied - C:\WINDOWS\system32\driverquery.exe
Access denied - C:\WINDOWS\system32\drprov.dll
Access denied - C:\WINDOWS\system32\drt.dll
Access denied - C:\WINDOWS\system32\drtprov.dll
Access denied - C:\WINDOWS\system32\drttransport.dll
Access denied - C:\WINDOWS\system32\drvcfg.exe
Access denied - C:\WINDOWS\system32\drvinst.exe
Access denied - C:\WINDOWS\system32\drvstore.dll
Access denied - C:\WINDOWS\system32\dsauth.dll
Access denied - C:\WINDOWS\system32\DscCore.dll
Access denied - C:\WINDOWS\system32\DscCoreConfProv.dll
Access denied - C:\WINDOWS\system32\dsclient.dll
Access denied - C:\WINDOWS\system32\dscproxy.dll
Access denied - C:\WINDOWS\system32\DscTimer.dll
Access denied - C:\WINDOWS\system32\dsdmo.dll
Access denied - C:\WINDOWS\system32\dskquota.dll
Access denied - C:\WINDOWS\system32\dskquoui.dll
Access denied - C:\WINDOWS\system32\DsmUserTask.exe
Access denied - C:\WINDOWS\system32\dsound.dll
Access denied - C:\WINDOWS\system32\dsparse.dll
Access denied - C:\WINDOWS\system32\dsprop.dll
Access denied - C:\WINDOWS\system32\dsquery.dll
Access denied - C:\WINDOWS\system32\dsreg.dll
Access denied - C:\WINDOWS\system32\dsregcmd.exe
Access denied - C:\WINDOWS\system32\dsrole.dll
Access denied - C:\WINDOWS\system32\dssec.dll
Access denied - C:\WINDOWS\system32\dssenh.dll
Access denied - C:\WINDOWS\system32\dssvc.dll
Access denied - C:\WINDOWS\system32\dstokenclean.exe
Access denied - C:\WINDOWS\system32\Dsui.dll
Access denied - C:\WINDOWS\system32\dsuiext.dll
Access denied - C:\WINDOWS\system32\dswave.dll
Access denied - C:\WINDOWS\system32\dtsh.dll
Access denied - C:\WINDOWS\system32\DuCsps.dll
Access denied - C:\WINDOWS\system32\dui70.dll
Access denied - C:\WINDOWS\system32\duser.dll
Access denied - C:\WINDOWS\system32\dusmapi.dll
Access denied - C:\WINDOWS\system32\dusmsvc.dll
Access denied - C:\WINDOWS\system32\dusmtask.exe
Access denied - C:\WINDOWS\system32\dvdplay.exe
Access denied - C:\WINDOWS\system32\dwm.exe
Access denied - C:\WINDOWS\system32\dwmapi.dll
Access denied - C:\WINDOWS\system32\dwmcore.dll
Access denied - C:\WINDOWS\system32\dwmghost.dll
Access denied - C:\WINDOWS\system32\dwminit.dll
Access denied - C:\WINDOWS\system32\dwmredir.dll
Access denied - C:\WINDOWS\system32\DWrite.dll
Access denied - C:\WINDOWS\system32\DWWIN.EXE
Access denied - C:\WINDOWS\system32\dxdiag.exe
Access denied - C:\WINDOWS\system32\dxdiagn.dll
Access denied - C:\WINDOWS\system32\dxgi.dll
Access denied - C:\WINDOWS\system32\dxgwdi.dll
Access denied - C:\WINDOWS\system32\dxilconv.dll
Access denied - C:\WINDOWS\system32\dxmasf.dll
Access denied - C:\WINDOWS\system32\DXP.dll
Access denied - C:\WINDOWS\system32\dxpps.dll
Access denied - C:\WINDOWS\system32\Dxpserver.exe
Access denied - C:\WINDOWS\system32\DxpTaskSync.dll
Access denied - C:\WINDOWS\system32\dxtmsft.dll
Access denied - C:\WINDOWS\system32\dxtrans.dll
Access denied - C:\WINDOWS\system32\dxva2.dll
Access denied - C:\WINDOWS\system32\DynamicLong.bin
Access denied - C:\WINDOWS\system32\DynamicMedium.bin
Access denied - C:\WINDOWS\system32\DynamicShort.bin
Access denied - C:\WINDOWS\system32\dynamoapi.dll
Access denied - C:\WINDOWS\system32\EAMProgressHandler.dll
Access denied - C:\WINDOWS\system32\Eap3Host.exe
Access denied - C:\WINDOWS\system32\eapp3hst.dll
Access denied - C:\WINDOWS\system32\eappcfg.dll
Access denied - C:\WINDOWS\system32\eappcfgui.dll
Access denied - C:\WINDOWS\system32\eappgnui.dll
Access denied - C:\WINDOWS\system32\eapphost.dll
Access denied - C:\WINDOWS\system32\eappprxy.dll
Access denied - C:\WINDOWS\system32\eapprovp.dll
Access denied - C:\WINDOWS\system32\eapsimextdesktop.dll
Access denied - C:\WINDOWS\system32\eapsvc.dll
Access denied - C:\WINDOWS\system32\easconsent.dll
Access denied - C:\WINDOWS\system32\EaseOfAccessDialog.exe
Access denied - C:\WINDOWS\system32\easinvoker.exe
Access denied - C:\WINDOWS\system32\easinvoker.proxystub.dll
Access denied - C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
Access denied - C:\WINDOWS\system32\EasPolicyManagerBrokerPS.dll
Access denied - C:\WINDOWS\system32\easwrt.dll
Access denied - C:\WINDOWS\system32\edgehtml.dll
Access denied - C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
Access denied - C:\WINDOWS\system32\edgeIso.dll
Access denied - C:\WINDOWS\system32\EdgeManager.dll
Access denied - C:\WINDOWS\system32\EditBufferTestHook.dll
Access denied - C:\WINDOWS\system32\EditionUpgradeHelper.dll
Access denied - C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
Access denied - C:\WINDOWS\system32\edpauditapi.dll
Access denied - C:\WINDOWS\system32\EDPCleanup.exe
Access denied - C:\WINDOWS\system32\edpcsp.dll
Access denied - C:\WINDOWS\system32\edpnotify.exe
Access denied - C:\WINDOWS\system32\edptask.dll
Access denied - C:\WINDOWS\system32\edputil.dll
Access denied - C:\WINDOWS\system32\EduPrintProv.exe
Access denied - C:\WINDOWS\system32\eeprov.dll
Access denied - C:\WINDOWS\system32\eeutil.dll
Access denied - C:\WINDOWS\system32\efsadu.dll
Access denied - C:\WINDOWS\system32\efscore.dll
Access denied - C:\WINDOWS\system32\efsext.dll
Access denied - C:\WINDOWS\system32\efslsaext.dll
Access denied - C:\WINDOWS\system32\efssvc.dll
Access denied - C:\WINDOWS\system32\efsui.exe
Access denied - C:\WINDOWS\system32\efsutil.dll
Access denied - C:\WINDOWS\system32\efswrt.dll
Access denied - C:\WINDOWS\system32\EhStorAPI.dll
Access denied - C:\WINDOWS\system32\EhStorAuthn.exe
Access denied - C:\WINDOWS\system32\EhStorPwdMgr.dll
Access denied - C:\WINDOWS\system32\EhStorShell.dll
Access denied - C:\WINDOWS\system32\els.dll
Access denied - C:\WINDOWS\system32\ELSCore.dll
Access denied - C:\WINDOWS\system32\elshyph.dll
Access denied - C:\WINDOWS\system32\elslad.dll
Access denied - C:\WINDOWS\system32\elsTrans.dll
Access denied - C:\WINDOWS\system32\EmailApis.dll
Access denied - C:\WINDOWS\system32\embeddedmodesvc.dll
Access denied - C:\WINDOWS\system32\embeddedmodesvcapi.dll
Access denied - C:\WINDOWS\system32\EmojiDS.dll
Access denied - C:\WINDOWS\system32\encapi.dll
Access denied - C:\WINDOWS\system32\EncDec.dll
Access denied - C:\WINDOWS\system32\EncDump.dll
Access denied - C:\WINDOWS\system32\energy.dll
Access denied - C:\WINDOWS\system32\energyprov.dll
Access denied - C:\WINDOWS\system32\energytask.dll
Access denied - C:\WINDOWS\system32\enrollmentapi.dll
Access denied - C:\WINDOWS\system32\EnterpriseAPNCsp.dll
Access denied - C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
Access denied - C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
Access denied - C:\WINDOWS\system32\enterprisecsps.dll
Access denied - C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
Access denied - C:\WINDOWS\system32\enterpriseetw.dll
Access denied - C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
Access denied - C:\WINDOWS\system32\enterpriseresourcemanager.dll
Access denied - C:\WINDOWS\system32\eqossnap.dll
Access denied - C:\WINDOWS\system32\ErrorDetails.dll
Access denied - C:\WINDOWS\system32\ErrorDetailsCore.dll
Access denied - C:\WINDOWS\system32\es.dll
Access denied - C:\WINDOWS\system32\EsdSip.dll
Access denied - C:\WINDOWS\system32\esent.dll
Access denied - C:\WINDOWS\system32\esentprf.dll
Access denied - C:\WINDOWS\system32\esentutl.exe
Access denied - C:\WINDOWS\system32\esevss.dll
Access denied - C:\WINDOWS\system32\eShims.dll
Access denied - C:\WINDOWS\system32\esrb.rs
Access denied - C:\WINDOWS\system32\EthernetMediaManager.dll
Access denied - C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
Access denied - C:\WINDOWS\system32\ETWESEProviderResources.dll
Access denied - C:\WINDOWS\system32\EtwRundown.dll
Access denied - C:\WINDOWS\system32\eudcedit.exe
Access denied - C:\WINDOWS\system32\eUICCsCSP.dll
Access denied - C:\WINDOWS\system32\EventAggregation.dll
Access denied - C:\WINDOWS\system32\eventcls.dll
Access denied - C:\WINDOWS\system32\eventcreate.exe
Access denied - C:\WINDOWS\system32\EventViewer_EventDetails.xsl
Access denied - C:\WINDOWS\system32\eventvwr.exe
Access denied - C:\WINDOWS\system32\eventvwr.msc
Access denied - C:\WINDOWS\system32\evr.dll
Access denied - C:\WINDOWS\system32\ExecModelClient.dll
Access denied - C:\WINDOWS\system32\execmodelproxy.dll
Access denied - C:\WINDOWS\system32\expand.exe
Access denied - C:\WINDOWS\system32\ExplorerFrame.dll
Access denied - C:\WINDOWS\system32\ExSMime.dll
Access denied - C:\WINDOWS\system32\extrac32.exe
Access denied - C:\WINDOWS\system32\ExtrasXmlParser.dll
Access denied - C:\WINDOWS\system32\f3ahvoas.dll
Access denied - C:\WINDOWS\system32\facecredentialprovider.dll
Access denied - C:\WINDOWS\system32\FaceProcessor.dll
Access denied - C:\WINDOWS\system32\FaceProcessorCore.dll
Access denied - C:\WINDOWS\system32\FaceTrackerInternal.dll
Access denied - C:\WINDOWS\system32\Family.Authentication.dll
Access denied - C:\WINDOWS\system32\Family.Cache.dll
Access denied - C:\WINDOWS\system32\Family.Client.dll
Access denied - C:\WINDOWS\system32\Family.SyncEngine.dll
Access denied - C:\WINDOWS\system32\FamilySafetyExt.dll
Access denied - C:\WINDOWS\system32\Faultrep.dll
Access denied - C:\WINDOWS\system32\FaxPrinterInstaller.dll
Access denied - C:\WINDOWS\system32\fc.exe
Access denied - C:\WINDOWS\system32\fdBth.dll
Access denied - C:\WINDOWS\system32\fdBthProxy.dll
Access denied - C:\WINDOWS\system32\FdDevQuery.dll
Access denied - C:\WINDOWS\system32\fde.dll
Access denied - C:\WINDOWS\system32\fdeploy.dll
Access denied - C:\WINDOWS\system32\fdPHost.dll
Access denied - C:\WINDOWS\system32\fdPnp.dll
Access denied - C:\WINDOWS\system32\fdprint.dll
Access denied - C:\WINDOWS\system32\fdProxy.dll
Access denied - C:\WINDOWS\system32\FDResPub.dll
Access denied - C:\WINDOWS\system32\fdSSDP.dll
Access denied - C:\WINDOWS\system32\fdWCN.dll
Access denied - C:\WINDOWS\system32\fdWNet.dll
Access denied - C:\WINDOWS\system32\fdWSD.dll
Access denied - C:\WINDOWS\system32\FeatureToastHeroImg.jpg
Access denied - C:\WINDOWS\system32\feclient.dll
Access denied - C:\WINDOWS\system32\ffbroker.dll
Access denied - C:\WINDOWS\system32\fhautoplay.dll
Access denied - C:\WINDOWS\system32\fhcat.dll
Access denied - C:\WINDOWS\system32\fhcfg.dll
Access denied - C:\WINDOWS\system32\fhcleanup.dll
Access denied - C:\WINDOWS\system32\fhcpl.dll
Access denied - C:\WINDOWS\system32\fhengine.dll
Access denied - C:\WINDOWS\system32\fhevents.dll
Access denied - C:\WINDOWS\system32\fhlisten.dll
Access denied - C:\WINDOWS\system32\fhmanagew.exe
Access denied - C:\WINDOWS\system32\fhsettingsprovider.dll
Access denied - C:\WINDOWS\system32\fhshl.dll
Access denied - C:\WINDOWS\system32\fhsrchapi.dll
Access denied - C:\WINDOWS\system32\fhsrchph.dll
Access denied - C:\WINDOWS\system32\fhsvc.dll
Access denied - C:\WINDOWS\system32\fhsvcctl.dll
Access denied - C:\WINDOWS\system32\fhtask.dll
Access denied - C:\WINDOWS\system32\fhuxadapter.dll
Access denied - C:\WINDOWS\system32\fhuxapi.dll
Access denied - C:\WINDOWS\system32\fhuxcommon.dll
Access denied - C:\WINDOWS\system32\fhuxgraphics.dll
Access denied - C:\WINDOWS\system32\fhuxpresentation.dll
Access denied - C:\WINDOWS\system32\fidocredprov.dll
Access denied - C:\WINDOWS\system32\FileAppxStreamingDataSource.dll
Access denied - C:\WINDOWS\system32\FileHistory.exe
Access denied - C:\WINDOWS\system32\filemgmt.dll
Access denied - C:\WINDOWS\system32\FilterDS.dll
Access denied - C:\WINDOWS\system32\find.exe
Access denied - C:\WINDOWS\system32\findnetprinters.dll
Access denied - C:\WINDOWS\system32\findstr.exe
Access denied - C:\WINDOWS\system32\finger.exe
Access denied - C:\WINDOWS\system32\fingerprintcredential.dll
Access denied - C:\WINDOWS\system32\Firewall.cpl
Access denied - C:\WINDOWS\system32\FirewallAPI.dll
Access denied - C:\WINDOWS\system32\FirewallControlPanel.dll
Access denied - C:\WINDOWS\system32\fixmapi.exe
Access denied - C:\WINDOWS\system32\FlightSettings.dll
Access denied - C:\WINDOWS\system32\fltLib.dll
Access denied - C:\WINDOWS\system32\fltMC.exe
Access denied - C:\WINDOWS\system32\fmapi.dll
Access denied - C:\WINDOWS\system32\fmifs.dll
Access denied - C:\WINDOWS\system32\fms.dll
Access denied - C:\WINDOWS\system32\FntCache.dll
Access denied - C:\WINDOWS\system32\fodhelper.exe
Access denied - C:\WINDOWS\system32\Fondue.exe
Access denied - C:\WINDOWS\system32\fontdrvhost.exe
Access denied - C:\WINDOWS\system32\fontext.dll
Access denied - C:\WINDOWS\system32\FontGlyphAnimator.dll
Access denied - C:\WINDOWS\system32\fontgroupsoverride.dll
Access denied - C:\WINDOWS\system32\FontProvider.dll
Access denied - C:\WINDOWS\system32\fontsub.dll
Access denied - C:\WINDOWS\system32\fontview.exe
Access denied - C:\WINDOWS\system32\forfiles.exe
Access denied - C:\WINDOWS\system32\format.com
Access denied - C:\WINDOWS\system32\fpb.rs
Access denied - C:\WINDOWS\system32\fphc.dll
Access denied - C:\WINDOWS\system32\framedyn.dll
Access denied - C:\WINDOWS\system32\framedynos.dll
Access denied - C:\WINDOWS\system32\FrameServer.dll
Access denied - C:\WINDOWS\system32\frprov.dll
Access denied - C:\WINDOWS\system32\fsavailux.exe
Access denied - C:\WINDOWS\system32\FSClient.dll
Access denied - C:\WINDOWS\system32\FsIso.exe
Access denied - C:\WINDOWS\system32\fsmgmt.msc
Access denied - C:\WINDOWS\system32\fsquirt.exe
Access denied - C:\WINDOWS\system32\fsutil.exe
Access denied - C:\WINDOWS\system32\fsutilext.dll
Access denied - C:\WINDOWS\system32\fthsvc.dll
Access denied - C:\WINDOWS\system32\ftp.exe
Access denied - C:\WINDOWS\system32\fundisc.dll
Access denied - C:\WINDOWS\system32\fveapi.dll
Access denied - C:\WINDOWS\system32\fveapibase.dll
Access denied - C:\WINDOWS\system32\fvecerts.dll
Access denied - C:\WINDOWS\system32\fvecpl.dll
Access denied - C:\WINDOWS\system32\fvenotify.exe
Access denied - C:\WINDOWS\system32\fveskybackup.dll
Access denied - C:\WINDOWS\system32\fveui.dll
Access denied - C:\WINDOWS\system32\fvewiz.dll
Access denied - C:\WINDOWS\system32\fwbase.dll
Access denied - C:\WINDOWS\system32\fwcfg.dll
Access denied - C:\WINDOWS\system32\fwmdmcsp.dll
Access denied - C:\WINDOWS\system32\fwpolicyiomgr.dll
Access denied - C:\WINDOWS\system32\FWPUCLNT.DLL
Access denied - C:\WINDOWS\system32\FwRemoteSvr.dll
Access denied - C:\WINDOWS\system32\FXSAPI.dll
Access denied - C:\WINDOWS\system32\FXSCOM.dll
Access denied - C:\WINDOWS\system32\FXSCOMEX.dll
Access denied - C:\WINDOWS\system32\FXSCOMPOSE.dll
Access denied - C:\WINDOWS\system32\FXSCOMPOSERES.dll
Access denied - C:\WINDOWS\system32\FXSCOVER.exe
Access denied - C:\WINDOWS\system32\FXSEVENT.dll
Access denied - C:\WINDOWS\system32\FXSMON.dll
Access denied - C:\WINDOWS\system32\FXSRESM.dll
Access denied - C:\WINDOWS\system32\FXSROUTE.dll
Access denied - C:\WINDOWS\system32\FXSST.dll
Access denied - C:\WINDOWS\system32\FXSSVC.exe
Access denied - C:\WINDOWS\system32\FXST30.dll
Access denied - C:\WINDOWS\system32\FXSTIFF.dll
Access denied - C:\WINDOWS\system32\FXSUNATD.exe
Access denied - C:\WINDOWS\system32\FXSUTILITY.dll
Access denied - C:\WINDOWS\system32\g711codc.ax
Access denied - C:\WINDOWS\system32\gacinstall.dll
Access denied - C:\WINDOWS\system32\GameBarPresenceWriter.exe
Access denied - C:\WINDOWS\system32\GameBarPresenceWriter.proxy.dll
Access denied - C:\WINDOWS\system32\GameChatOverlayExt.dll
Access denied - C:\WINDOWS\system32\GameChatTranscription.dll
Access denied - C:\WINDOWS\system32\gamemode.dll
Access denied - C:\WINDOWS\system32\gamemonitor.dll
Access denied - C:\WINDOWS\system32\GamePanel.exe
Access denied - C:\WINDOWS\system32\GamePanelExternalHook.dll
Access denied - C:\WINDOWS\system32\gameux.dll
Access denied - C:\WINDOWS\system32\GameUXLegacyGDFs.dll
Access denied - C:\WINDOWS\system32\gamingtcui.dll
Access denied - C:\WINDOWS\system32\gatherNetworkInfo.vbs
Access denied - C:\WINDOWS\system32\gb2312.uce
Access denied - C:\WINDOWS\system32\gcdef.dll
Access denied - C:\WINDOWS\system32\gdi32.dll
Access denied - C:\WINDOWS\system32\gdi32full.dll
Access denied - C:\WINDOWS\system32\GdiPlus.dll
Access denied - C:\WINDOWS\system32\generaltel.dll
Access denied - C:\WINDOWS\system32\GenValObj.exe
Access denied - C:\WINDOWS\system32\Geocommon.dll
Access denied - C:\WINDOWS\system32\Geolocation.dll
Access denied - C:\WINDOWS\system32\getmac.exe
Access denied - C:\WINDOWS\system32\getuname.dll
Access denied - C:\WINDOWS\system32\glmf32.dll
Access denied - C:\WINDOWS\system32\GlobCollationHost.dll
Access denied - C:\WINDOWS\system32\globinputhost.dll
Access denied - C:\WINDOWS\system32\glu32.dll
Access denied - C:\WINDOWS\system32\gmsaclient.dll
Access denied - C:\WINDOWS\system32\gpapi.dll
Access denied - C:\WINDOWS\system32\gpedit.dll
Access denied - C:\WINDOWS\system32\gpprnext.dll
Access denied - C:\WINDOWS\system32\gpresult.exe
Access denied - C:\WINDOWS\system32\gpsvc.dll
Access denied - C:\WINDOWS\system32\gptext.dll
Access denied - C:\WINDOWS\system32\gpupdate.exe
Access denied - C:\WINDOWS\system32\GraphicsPerfSvc.dll
Access denied - C:\WINDOWS\system32\grb.rs
Access denied - C:\WINDOWS\system32\Groupinghc.dll
Access denied - C:\WINDOWS\system32\grpconv.exe
Access denied - C:\WINDOWS\system32\hal.dll
Access denied - C:\WINDOWS\system32\HalExtIntcLpioDMA.dll
Access denied - C:\WINDOWS\system32\HalExtPL080.dll
Access denied - C:\WINDOWS\system32\hascsp.dll
Access denied - C:\WINDOWS\system32\hbaapi.dll
Access denied - C:\WINDOWS\system32\hcproviders.dll
Access denied - C:\WINDOWS\system32\HdcpHandler.dll
Access denied - C:\WINDOWS\system32\hdwwiz.cpl
Access denied - C:\WINDOWS\system32\hdwwiz.exe
Access denied - C:\WINDOWS\system32\HeadTrackerStorage.dll
Access denied - C:\WINDOWS\system32\HeatCore.dll
Access denied - C:\WINDOWS\system32\help.exe
Access denied - C:\WINDOWS\system32\HelpPaneProxy.dll
Access denied - C:\WINDOWS\system32\hgcpl.dll
Access denied - C:\WINDOWS\system32\hgprint.dll
Access denied - C:\WINDOWS\system32\hhctrl.ocx
Access denied - C:\WINDOWS\system32\hhsetup.dll
Access denied - C:\WINDOWS\system32\hid.dll
Access denied - C:\WINDOWS\system32\hidphone.tsp
Access denied - C:\WINDOWS\system32\hidserv.dll
Access denied - C:\WINDOWS\system32\hlink.dll
Access denied - C:\WINDOWS\system32\hmkd.dll
Access denied - C:\WINDOWS\system32\hnetcfg.dll
Access denied - C:\WINDOWS\system32\HNetCfgClient.dll
Access denied - C:\WINDOWS\system32\hnetmon.dll
Access denied - C:\WINDOWS\system32\HologramCompositor.dll
Access denied - C:\WINDOWS\system32\HolographicExtensions.dll
Access denied - C:\WINDOWS\system32\HolographicRuntimes.dll
Access denied - C:\WINDOWS\system32\HoloShellRuntime.dll
Access denied - C:\WINDOWS\system32\HOSTNAME.EXE
Access denied - C:\WINDOWS\system32\hotplug.dll
Access denied - C:\WINDOWS\system32\HrtfApo.dll
Access denied - C:\WINDOWS\system32\html.iec
Access denied - C:\WINDOWS\system32\httpapi.dll
Access denied - C:\WINDOWS\system32\httpprxc.dll
Access denied - C:\WINDOWS\system32\httpprxm.dll
Access denied - C:\WINDOWS\system32\httpprxp.dll
Access denied - C:\WINDOWS\system32\HttpsDataSource.dll
Access denied - C:\WINDOWS\system32\htui.dll
Access denied - C:\WINDOWS\system32\hvax64.exe
Access denied - C:\WINDOWS\system32\hvhostsvc.dll
Access denied - C:\WINDOWS\system32\hvix64.exe
Access denied - C:\WINDOWS\system32\hvloader.dll
Access denied - C:\WINDOWS\system32\hwrcomp.exe
Access denied - C:\WINDOWS\system32\hwrreg.exe
Access denied - C:\WINDOWS\system32\Hydrogen.dll
Access denied - C:\WINDOWS\system32\hypervisor.mof
Access denied - C:\WINDOWS\system32\ias.dll
Access denied - C:\WINDOWS\system32\iasacct.dll
Access denied - C:\WINDOWS\system32\iasads.dll
Access denied - C:\WINDOWS\system32\iasdatastore.dll
Access denied - C:\WINDOWS\system32\iashlpr.dll
Access denied - C:\WINDOWS\system32\IasMigPlugin.dll
Access denied - C:\WINDOWS\system32\iasnap.dll
Access denied - C:\WINDOWS\system32\iaspolcy.dll
Access denied - C:\WINDOWS\system32\iasrad.dll
Access denied - C:\WINDOWS\system32\iasrecst.dll
Access denied - C:\WINDOWS\system32\iassam.dll
Access denied - C:\WINDOWS\system32\iassdo.dll
Access denied - C:\WINDOWS\system32\iassvcs.dll
Access denied - C:\WINDOWS\system32\icacls.exe
Access denied - C:\WINDOWS\system32\icfupgd.dll
Access denied - C:\WINDOWS\system32\icm32.dll
Access denied - C:\WINDOWS\system32\icmp.dll
Access denied - C:\WINDOWS\system32\icmui.dll
Access denied - C:\WINDOWS\system32\IconCodecService.dll
Access denied - C:\WINDOWS\system32\IcsEntitlementHost.exe
Access denied - C:\WINDOWS\system32\icsigd.dll
Access denied - C:\WINDOWS\system32\icsunattend.exe
Access denied - C:\WINDOWS\system32\icsvc.dll
Access denied - C:\WINDOWS\system32\icsvcext.dll
Access denied - C:\WINDOWS\system32\icuin.dll
Access denied - C:\WINDOWS\system32\icuuc.dll
Access denied - C:\WINDOWS\system32\IdCtrls.dll
Access denied - C:\WINDOWS\system32\ideograf.uce
Access denied - C:\WINDOWS\system32\IdListen.dll
Access denied - C:\WINDOWS\system32\idndl.dll
Access denied - C:\WINDOWS\system32\IDStore.dll
Access denied - C:\WINDOWS\system32\ie4uinit.exe
Access denied - C:\WINDOWS\system32\IEAdvpack.dll
Access denied - C:\WINDOWS\system32\ieapfltr.dll
Access denied - C:\WINDOWS\system32\iedkcs32.dll
Access denied - C:\WINDOWS\system32\ieframe.dll
Access denied - C:\WINDOWS\system32\iepeers.dll
Access denied - C:\WINDOWS\system32\ieproxy.dll
Access denied - C:\WINDOWS\system32\iernonce.dll
Access denied - C:\WINDOWS\system32\iertutil.dll
Access denied - C:\WINDOWS\system32\iesetup.dll
Access denied - C:\WINDOWS\system32\iesysprep.dll
Access denied - C:\WINDOWS\system32\ieui.dll
Access denied - C:\WINDOWS\system32\ieuinit.inf
Access denied - C:\WINDOWS\system32\ieUnatt.exe
Access denied - C:\WINDOWS\system32\iexpress.exe
Access denied - C:\WINDOWS\system32\ifmon.dll
Access denied - C:\WINDOWS\system32\ifsutil.dll
Access denied - C:\WINDOWS\system32\ifsutilx.dll
Access denied - C:\WINDOWS\system32\igdDiag.dll
Access denied - C:\WINDOWS\system32\IHDS.dll
Access denied - C:\WINDOWS\system32\ihvrilproxy.dll
Access denied - C:\WINDOWS\system32\IKEEXT.DLL
Access denied - C:\WINDOWS\system32\imaadp32.acm
Access denied - C:\WINDOWS\system32\imagehlp.dll
Access denied - C:\WINDOWS\system32\imageres.dll
Access denied - C:\WINDOWS\system32\imagesp1.dll
Access denied - C:\WINDOWS\system32\imapi.dll
Access denied - C:\WINDOWS\system32\imapi2.dll
Access denied - C:\WINDOWS\system32\imapi2fs.dll
Access denied - C:\WINDOWS\system32\imgutil.dll
Access denied - C:\WINDOWS\system32\imm32.dll
Access denied - C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
Access denied - C:\WINDOWS\system32\ImplatSetup.dll
Access denied - C:\WINDOWS\system32\IndexedDbLegacy.dll
Access denied - C:\WINDOWS\system32\inetcomm.dll
Access denied - C:\WINDOWS\system32\inetcpl.cpl
Access denied - C:\WINDOWS\system32\inetmib1.dll
Access denied - C:\WINDOWS\system32\inetpp.dll
Access denied - C:\WINDOWS\system32\inetppui.dll
Access denied - C:\WINDOWS\system32\INETRES.dll
Access denied - C:\WINDOWS\system32\InfDefaultInstall.exe
Access denied - C:\WINDOWS\system32\InkEd.dll
Access denied - C:\WINDOWS\system32\InkObjCore.dll
Access denied - C:\WINDOWS\system32\InprocLogger.dll
Access denied - C:\WINDOWS\system32\input.dll
Access denied - C:\WINDOWS\system32\InputHost.dll
Access denied - C:\WINDOWS\system32\InputInjectionBroker.dll
Access denied - C:\WINDOWS\system32\InputLocaleManager.dll
Access denied - C:\WINDOWS\system32\InputService.dll
Access denied - C:\WINDOWS\system32\InputSwitch.dll
Access denied - C:\WINDOWS\system32\inseng.dll
Access denied - C:\WINDOWS\system32\InstallService.dll
Access denied - C:\WINDOWS\system32\internetmail.dll
Access denied - C:\WINDOWS\system32\InternetMailCsp.dll
Access denied - C:\WINDOWS\system32\intl.cpl
Access denied - C:\WINDOWS\system32\invagent.dll
Access denied - C:\WINDOWS\system32\iologmsg.dll
Access denied - C:\WINDOWS\system32\ipconfig.exe
Access denied - C:\WINDOWS\system32\IPELoggingDictationHelper.dll
Access denied - C:\WINDOWS\system32\IPHLPAPI.DLL
Access denied - C:\WINDOWS\system32\iphlpsvc.dll
Access denied - C:\WINDOWS\system32\ipnathlp.dll
Access denied - C:\WINDOWS\system32\IpNatHlpClient.dll
Access denied - C:\WINDOWS\system32\IPPMon.dll
Access denied - C:\WINDOWS\system32\iprtprio.dll
Access denied - C:\WINDOWS\system32\iprtrmgr.dll
Access denied - C:\WINDOWS\system32\ipsecsnp.dll
Access denied - C:\WINDOWS\system32\IPSECSVC.DLL
Access denied - C:\WINDOWS\system32\ipsmsnap.dll
Access denied - C:\WINDOWS\system32\ipxlatcfg.dll
Access denied - C:\WINDOWS\system32\irclass.dll
Access denied - C:\WINDOWS\system32\irftp.exe
Access denied - C:\WINDOWS\system32\iri.dll
Access denied - C:\WINDOWS\system32\irmon.dll
Access denied - C:\WINDOWS\system32\irprops.cpl
Access denied - C:\WINDOWS\system32\iscsicli.exe
Access denied - C:\WINDOWS\system32\iscsicpl.dll
Access denied - C:\WINDOWS\system32\iscsicpl.exe
Access denied - C:\WINDOWS\system32\iscsidsc.dll
Access denied - C:\WINDOWS\system32\iscsied.dll
Access denied - C:\WINDOWS\system32\iscsiexe.dll
Access denied - C:\WINDOWS\system32\iscsilog.dll
Access denied - C:\WINDOWS\system32\iscsium.dll
Access denied - C:\WINDOWS\system32\iscsiwmi.dll
Access denied - C:\WINDOWS\system32\iscsiwmiv2.dll
Access denied - C:\WINDOWS\system32\ISM.dll
Access denied - C:\WINDOWS\system32\isoburn.exe
Access denied - C:\WINDOWS\system32\itircl.dll
Access denied - C:\WINDOWS\system32\itss.dll
Access denied - C:\WINDOWS\system32\iuilp.dll
Access denied - C:\WINDOWS\system32\iumbase.dll
Access denied - C:\WINDOWS\system32\iumcrypt.dll
Access denied - C:\WINDOWS\system32\iumdll.dll
Access denied - C:\WINDOWS\system32\IumSdk.dll
Access denied - C:\WINDOWS\system32\iyuv_32.dll
Access denied - C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
Access denied - C:\WINDOWS\system32\joinproviderol.dll
Access denied - C:\WINDOWS\system32\joinutil.dll
Access denied - C:\WINDOWS\system32\joy.cpl
Access denied - C:\WINDOWS\system32\JpMapControl.dll
Access denied - C:\WINDOWS\system32\jpndecoder.dll
Access denied - C:\WINDOWS\system32\jpninputrouter.dll
Access denied - C:\WINDOWS\system32\jpnranker.dll
Access denied - C:\WINDOWS\system32\JpnServiceDS.dll
Access denied - C:\WINDOWS\system32\jscript.dll
Access denied - C:\WINDOWS\system32\jscript9.dll
Access denied - C:\WINDOWS\system32\jscript9diag.dll
Access denied - C:\WINDOWS\system32\jsproxy.dll
Access denied - C:\WINDOWS\system32\kanji_1.uce
Access denied - C:\WINDOWS\system32\kanji_2.uce
Access denied - C:\WINDOWS\system32\kbd101.dll
Access denied - C:\WINDOWS\system32\kbd101a.dll
Access denied - C:\WINDOWS\system32\kbd101b.dll
Access denied - C:\WINDOWS\system32\kbd101c.dll
Access denied - C:\WINDOWS\system32\kbd103.dll
Access denied - C:\WINDOWS\system32\kbd106.dll
Access denied - C:\WINDOWS\system32\kbd106n.dll
Access denied - C:\WINDOWS\system32\KBDA1.DLL
Access denied - C:\WINDOWS\system32\KBDA2.DLL
Access denied - C:\WINDOWS\system32\KBDA3.DLL
Access denied - C:\WINDOWS\system32\KBDAL.DLL
Access denied - C:\WINDOWS\system32\KBDARME.DLL
Access denied - C:\WINDOWS\system32\kbdarmph.dll
Access denied - C:\WINDOWS\system32\kbdarmty.dll
Access denied - C:\WINDOWS\system32\KBDARMW.DLL
Access denied - C:\WINDOWS\system32\kbdax2.dll
Access denied - C:\WINDOWS\system32\KBDAZE.DLL
Access denied - C:\WINDOWS\system32\KBDAZEL.DLL
Access denied - C:\WINDOWS\system32\KBDAZST.DLL
Access denied - C:\WINDOWS\system32\KBDBASH.DLL
Access denied - C:\WINDOWS\system32\KBDBE.DLL
Access denied - C:\WINDOWS\system32\KBDBENE.DLL
Access denied - C:\WINDOWS\system32\KBDBGPH.DLL
Access denied - C:\WINDOWS\system32\KBDBGPH1.DLL
Access denied - C:\WINDOWS\system32\KBDBHC.DLL
Access denied - C:\WINDOWS\system32\KBDBLR.DLL
Access denied - C:\WINDOWS\system32\KBDBR.DLL
Access denied - C:\WINDOWS\system32\KBDBU.DLL
Access denied - C:\WINDOWS\system32\KBDBUG.DLL
Access denied - C:\WINDOWS\system32\KBDBULG.DLL
Access denied - C:\WINDOWS\system32\KBDCA.DLL
Access denied - C:\WINDOWS\system32\KBDCAN.DLL
Access denied - C:\WINDOWS\system32\KBDCHER.DLL
Access denied - C:\WINDOWS\system32\KBDCHERP.DLL
Access denied - C:\WINDOWS\system32\KBDCR.DLL
Access denied - C:\WINDOWS\system32\KBDCZ.DLL
Access denied - C:\WINDOWS\system32\KBDCZ1.DLL
Access denied - C:\WINDOWS\system32\KBDCZ2.DLL
Access denied - C:\WINDOWS\system32\KBDDA.DLL
Access denied - C:\WINDOWS\system32\KBDDIV1.DLL
Access denied - C:\WINDOWS\system32\KBDDIV2.DLL
Access denied - C:\WINDOWS\system32\KBDDV.DLL
Access denied - C:\WINDOWS\system32\KBDDZO.DLL
Access denied - C:\WINDOWS\system32\KBDES.DLL
Access denied - C:\WINDOWS\system32\KBDEST.DLL
Access denied - C:\WINDOWS\system32\KBDFA.DLL
Access denied - C:\WINDOWS\system32\kbdfar.dll
Access denied - C:\WINDOWS\system32\KBDFC.DLL
Access denied - C:\WINDOWS\system32\KBDFI.DLL
Access denied - C:\WINDOWS\system32\KBDFI1.DLL
Access denied - C:\WINDOWS\system32\KBDFO.DLL
Access denied - C:\WINDOWS\system32\KBDFR.DLL
Access denied - C:\WINDOWS\system32\KBDFTHRK.DLL
Access denied - C:\WINDOWS\system32\KBDGAE.DLL
Access denied - C:\WINDOWS\system32\KBDGEO.DLL
Access denied - C:\WINDOWS\system32\kbdgeoer.dll
Access denied - C:\WINDOWS\system32\kbdgeome.dll
Access denied - C:\WINDOWS\system32\kbdgeooa.dll
Access denied - C:\WINDOWS\system32\kbdgeoqw.dll
Access denied - C:\WINDOWS\system32\KBDGKL.DLL
Access denied - C:\WINDOWS\system32\KBDGN.DLL
Access denied - C:\WINDOWS\system32\KBDGR.DLL
Access denied - C:\WINDOWS\system32\KBDGR1.DLL
Access denied - C:\WINDOWS\system32\KBDGRLND.DLL
Access denied - C:\WINDOWS\system32\KBDGTHC.DLL
Access denied - C:\WINDOWS\system32\KBDHAU.DLL
Access denied - C:\WINDOWS\system32\KBDHAW.DLL
Access denied - C:\WINDOWS\system32\KBDHE.DLL
Access denied - C:\WINDOWS\system32\KBDHE220.DLL
Access denied - C:\WINDOWS\system32\KBDHE319.DLL
Access denied - C:\WINDOWS\system32\KBDHEB.DLL
Access denied - C:\WINDOWS\system32\kbdhebl3.dll
Access denied - C:\WINDOWS\system32\KBDHELA2.DLL
Access denied - C:\WINDOWS\system32\KBDHELA3.DLL
Access denied - C:\WINDOWS\system32\KBDHEPT.DLL
Access denied - C:\WINDOWS\system32\KBDHU.DLL
Access denied - C:\WINDOWS\system32\KBDHU1.DLL
Access denied - C:\WINDOWS\system32\kbdibm02.dll
Access denied - C:\WINDOWS\system32\KBDIBO.DLL
Access denied - C:\WINDOWS\system32\KBDIC.DLL
Access denied - C:\WINDOWS\system32\KBDINASA.DLL
Access denied - C:\WINDOWS\system32\KBDINBE1.DLL
Access denied - C:\WINDOWS\system32\KBDINBE2.DLL
Access denied - C:\WINDOWS\system32\KBDINBEN.DLL
Access denied - C:\WINDOWS\system32\KBDINDEV.DLL
Access denied - C:\WINDOWS\system32\KBDINEN.DLL
Access denied - C:\WINDOWS\system32\KBDINGUJ.DLL
Access denied - C:\WINDOWS\system32\KBDINHIN.DLL
Access denied - C:\WINDOWS\system32\KBDINKAN.DLL
Access denied - C:\WINDOWS\system32\KBDINMAL.DLL
Access denied - C:\WINDOWS\system32\KBDINMAR.DLL
Access denied - C:\WINDOWS\system32\KBDINORI.DLL
Access denied - C:\WINDOWS\system32\KBDINPUN.DLL
Access denied - C:\WINDOWS\system32\KBDINTAM.DLL
Access denied - C:\WINDOWS\system32\KBDINTEL.DLL
Access denied - C:\WINDOWS\system32\KBDINUK2.DLL
Access denied - C:\WINDOWS\system32\KBDIR.DLL
Access denied - C:\WINDOWS\system32\KBDIT.DLL
Access denied - C:\WINDOWS\system32\KBDIT142.DLL
Access denied - C:\WINDOWS\system32\KBDIULAT.DLL
Access denied - C:\WINDOWS\system32\KBDJAV.DLL
Access denied - C:\WINDOWS\system32\KBDJPN.DLL
Access denied - C:\WINDOWS\system32\KBDKAZ.DLL
Access denied - C:\WINDOWS\system32\KBDKHMR.DLL
Access denied - C:\WINDOWS\system32\KBDKNI.DLL
Access denied - C:\WINDOWS\system32\KBDKOR.DLL
Access denied - C:\WINDOWS\system32\KBDKURD.DLL
Access denied - C:\WINDOWS\system32\KBDKYR.DLL
Access denied - C:\WINDOWS\system32\KBDLA.DLL
Access denied - C:\WINDOWS\system32\KBDLAO.DLL
Access denied - C:\WINDOWS\system32\kbdlisub.dll
Access denied - C:\WINDOWS\system32\kbdlisus.dll
Access denied - C:\WINDOWS\system32\kbdlk41a.dll
Access denied - C:\WINDOWS\system32\KBDLT.DLL
Access denied - C:\WINDOWS\system32\KBDLT1.DLL
Access denied - C:\WINDOWS\system32\KBDLT2.DLL
Access denied - C:\WINDOWS\system32\KBDLV.DLL
Access denied - C:\WINDOWS\system32\KBDLV1.DLL
Access denied - C:\WINDOWS\system32\KBDLVST.DLL
Access denied - C:\WINDOWS\system32\KBDMAC.DLL
Access denied - C:\WINDOWS\system32\KBDMACST.DLL
Access denied - C:\WINDOWS\system32\KBDMAORI.DLL
Access denied - C:\WINDOWS\system32\KBDMLT47.DLL
Access denied - C:\WINDOWS\system32\KBDMLT48.DLL
Access denied - C:\WINDOWS\system32\KBDMON.DLL
Access denied - C:\WINDOWS\system32\KBDMONMO.DLL
Access denied - C:\WINDOWS\system32\KBDMONST.DLL
Access denied - C:\WINDOWS\system32\KBDMYAN.DLL
Access denied - C:\WINDOWS\system32\KBDNE.DLL
Access denied - C:\WINDOWS\system32\kbdnec.dll
Access denied - C:\WINDOWS\system32\kbdnec95.dll
Access denied - C:\WINDOWS\system32\kbdnecat.dll
Access denied - C:\WINDOWS\system32\kbdnecnt.dll
Access denied - C:\WINDOWS\system32\KBDNEPR.DLL
Access denied - C:\WINDOWS\system32\kbdnko.dll
Access denied - C:\WINDOWS\system32\KBDNO.DLL
Access denied - C:\WINDOWS\system32\KBDNO1.DLL
Access denied - C:\WINDOWS\system32\KBDNSO.DLL
Access denied - C:\WINDOWS\system32\KBDNTL.DLL
Access denied - C:\WINDOWS\system32\KBDOGHAM.DLL
Access denied - C:\WINDOWS\system32\KBDOLCH.DLL
Access denied - C:\WINDOWS\system32\KBDOLDIT.DLL
Access denied - C:\WINDOWS\system32\KBDOSM.DLL
Access denied - C:\WINDOWS\system32\KBDPASH.DLL
Access denied - C:\WINDOWS\system32\kbdphags.dll
Access denied - C:\WINDOWS\system32\KBDPL.DLL
Access denied - C:\WINDOWS\system32\KBDPL1.DLL
Access denied - C:\WINDOWS\system32\KBDPO.DLL
Access denied - C:\WINDOWS\system32\KBDRO.DLL
Access denied - C:\WINDOWS\system32\KBDROPR.DLL
Access denied - C:\WINDOWS\system32\KBDROST.DLL
Access denied - C:\WINDOWS\system32\KBDRU.DLL
Access denied - C:\WINDOWS\system32\KBDRU1.DLL
Access denied - C:\WINDOWS\system32\KBDRUM.DLL
Access denied - C:\WINDOWS\system32\KBDSF.DLL
Access denied - C:\WINDOWS\system32\KBDSG.DLL
Access denied - C:\WINDOWS\system32\KBDSL.DLL
Access denied - C:\WINDOWS\system32\KBDSL1.DLL
Access denied - C:\WINDOWS\system32\KBDSMSFI.DLL
Access denied - C:\WINDOWS\system32\KBDSMSNO.DLL
Access denied - C:\WINDOWS\system32\KBDSN1.DLL
Access denied - C:\WINDOWS\system32\KBDSORA.DLL
Access denied - C:\WINDOWS\system32\KBDSOREX.DLL
Access denied - C:\WINDOWS\system32\KBDSORS1.DLL
Access denied - C:\WINDOWS\system32\KBDSORST.DLL
Access denied - C:\WINDOWS\system32\KBDSP.DLL
Access denied - C:\WINDOWS\system32\KBDSW.DLL
Access denied - C:\WINDOWS\system32\KBDSW09.DLL
Access denied - C:\WINDOWS\system32\KBDSYR1.DLL
Access denied - C:\WINDOWS\system32\KBDSYR2.DLL
Access denied - C:\WINDOWS\system32\KBDTAILE.DLL
Access denied - C:\WINDOWS\system32\KBDTAJIK.DLL
Access denied - C:\WINDOWS\system32\KBDTAT.DLL
Access denied - C:\WINDOWS\system32\KBDTH0.DLL
Access denied - C:\WINDOWS\system32\KBDTH1.DLL
Access denied - C:\WINDOWS\system32\KBDTH2.DLL
Access denied - C:\WINDOWS\system32\KBDTH3.DLL
Access denied - C:\WINDOWS\system32\KBDTIFI.DLL
Access denied - C:\WINDOWS\system32\KBDTIFI2.DLL
Access denied - C:\WINDOWS\system32\KBDTIPRC.DLL
Access denied - C:\WINDOWS\system32\KBDTIPRD.DLL
Access denied - C:\WINDOWS\system32\KBDTT102.DLL
Access denied - C:\WINDOWS\system32\KBDTUF.DLL
Access denied - C:\WINDOWS\system32\KBDTUQ.DLL
Access denied - C:\WINDOWS\system32\KBDTURME.DLL
Access denied - C:\WINDOWS\system32\KBDTZM.DLL
Access denied - C:\WINDOWS\system32\KBDUGHR.DLL
Access denied - C:\WINDOWS\system32\KBDUGHR1.DLL
Access denied - C:\WINDOWS\system32\KBDUK.DLL
Access denied - C:\WINDOWS\system32\KBDUKX.DLL
Access denied - C:\WINDOWS\system32\KBDUR.DLL
Access denied - C:\WINDOWS\system32\KBDUR1.DLL
Access denied - C:\WINDOWS\system32\KBDURDU.DLL
Access denied - C:\WINDOWS\system32\KBDUS.DLL
Access denied - C:\WINDOWS\system32\KBDUSA.DLL
Access denied - C:\WINDOWS\system32\KBDUSL.DLL
Access denied - C:\WINDOWS\system32\KBDUSR.DLL
Access denied - C:\WINDOWS\system32\KBDUSX.DLL
Access denied - C:\WINDOWS\system32\KBDUZB.DLL
Access denied - C:\WINDOWS\system32\KBDVNTC.DLL
Access denied - C:\WINDOWS\system32\KBDWOL.DLL
Access denied - C:\WINDOWS\system32\KBDYAK.DLL
Access denied - C:\WINDOWS\system32\KBDYBA.DLL
Access denied - C:\WINDOWS\system32\KBDYCC.DLL
Access denied - C:\WINDOWS\system32\KBDYCL.DLL
Access denied - C:\WINDOWS\system32\kd.dll
Access denied - C:\WINDOWS\system32\kdcom.dll
Access denied - C:\WINDOWS\system32\kdhvcom.dll
Access denied - C:\WINDOWS\system32\kdnet.dll
Access denied - C:\WINDOWS\system32\kdnet_uart16550.dll
Access denied - C:\WINDOWS\system32\KdsCli.dll
Access denied - C:\WINDOWS\system32\kdstub.dll
Access denied - C:\WINDOWS\system32\kdusb.dll
Access denied - C:\WINDOWS\system32\kd_02_10df.dll
Access denied - C:\WINDOWS\system32\kd_02_10ec.dll
Access denied - C:\WINDOWS\system32\kd_02_1137.dll
Access denied - C:\WINDOWS\system32\kd_02_14e4.dll
Access denied - C:\WINDOWS\system32\kd_02_15b3.dll
Access denied - C:\WINDOWS\system32\kd_02_1969.dll
Access denied - C:\WINDOWS\system32\kd_02_19a2.dll
Access denied - C:\WINDOWS\system32\kd_02_1af4.dll
Access denied - C:\WINDOWS\system32\kd_02_8086.dll
Access denied - C:\WINDOWS\system32\kd_07_1415.dll
Access denied - C:\WINDOWS\system32\kd_0C_8086.dll
Access denied - C:\WINDOWS\system32\keepaliveprovider.dll
Access denied - C:\WINDOWS\system32\KerbClientShared.dll
Access denied - C:\WINDOWS\system32\kerberos.dll
Access denied - C:\WINDOWS\system32\kernel.appcore.dll
Access denied - C:\WINDOWS\system32\kernel32.dll
Access denied - C:\WINDOWS\system32\KernelBase.dll
Access denied - C:\WINDOWS\system32\keyiso.dll
Access denied - C:\WINDOWS\system32\keymgr.dll
Access denied - C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll
Access denied - C:\WINDOWS\system32\klist.exe
Access denied - C:\WINDOWS\system32\kmddsp.tsp
Access denied - C:\WINDOWS\system32\KnobsCore.dll
Access denied - C:\WINDOWS\system32\KnobsCsp.dll
Access denied - C:\WINDOWS\system32\korean.uce
Access denied - C:\WINDOWS\system32\ksetup.exe
Access denied - C:\WINDOWS\system32\ksproxy.ax
Access denied - C:\WINDOWS\system32\kstvtune.ax
Access denied - C:\WINDOWS\system32\ksuser.dll
Access denied - C:\WINDOWS\system32\Kswdmcap.ax
Access denied - C:\WINDOWS\system32\ksxbar.ax
Access denied - C:\WINDOWS\system32\ktmutil.exe
Access denied - C:\WINDOWS\system32\ktmw32.dll
Access denied - C:\WINDOWS\system32\l2gpstore.dll
Access denied - C:\WINDOWS\system32\l2nacp.dll
Access denied - C:\WINDOWS\system32\L2SecHC.dll
Access denied - C:\WINDOWS\system32\l3codeca.acm
Access denied - C:\WINDOWS\system32\l3codecp.acm
Access denied - C:\WINDOWS\system32\label.exe
Access denied - C:\WINDOWS\system32\LangCleanupSysprepAction.dll
Access denied - C:\WINDOWS\system32\LanguageComponentsInstaller.dll
Access denied - C:\WINDOWS\system32\LanguageComponentsInstallerComHandler.exe
Access denied - C:\WINDOWS\system32\LAPRXY.DLL
Access denied - C:\WINDOWS\system32\LargeRoom.bin
Access denied - C:\WINDOWS\system32\LaunchTM.exe
Access denied - C:\WINDOWS\system32\LaunchWinApp.exe
Access denied - C:\WINDOWS\system32\lcphrase.tbl
Access denied - C:\WINDOWS\system32\lcptr.tbl
Access denied - C:\WINDOWS\system32\LegacyNetUX.dll
Access denied - C:\WINDOWS\system32\LegacyNetUXHost.exe
Access denied - C:\WINDOWS\system32\lfsvc.dll
Access denied - C:\WINDOWS\system32\LicenseManager.dll
Access denied - C:\WINDOWS\system32\LicenseManagerApi.dll
Access denied - C:\WINDOWS\system32\LicenseManagerShellext.exe
Access denied - C:\WINDOWS\system32\LicenseManagerSvc.dll
Access denied - C:\WINDOWS\system32\LicensingCSP.dll
Access denied - C:\WINDOWS\system32\licensingdiag.exe
Access denied - C:\WINDOWS\system32\LicensingDiagSpp.dll
Access denied - C:\WINDOWS\system32\LicensingUI.exe
Access denied - C:\WINDOWS\system32\LicensingWinRT.dll
Access denied - C:\WINDOWS\system32\licmgr10.dll
Access denied - C:\WINDOWS\system32\linkinfo.dll
Access denied - C:\WINDOWS\system32\ListSvc.dll
Access denied - C:\WINDOWS\system32\lltdapi.dll
Access denied - C:\WINDOWS\system32\lltdres.dll
Access denied - C:\WINDOWS\system32\lltdsvc.dll
Access denied - C:\WINDOWS\system32\lmhsvc.dll
Access denied - C:\WINDOWS\system32\loadperf.dll
Access denied - C:\WINDOWS\system32\locale.nls
Access denied - C:\WINDOWS\system32\localsec.dll
Access denied - C:\WINDOWS\system32\LocalServiceCredUIBroker.exe
Access denied - C:\WINDOWS\system32\localspl.dll
Access denied - C:\WINDOWS\system32\localui.dll
Access denied - C:\WINDOWS\system32\LocationApi.dll
Access denied - C:\WINDOWS\system32\LocationFramework.dll
Access denied - C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
Access denied - C:\WINDOWS\system32\LocationFrameworkPS.dll
Access denied - C:\WINDOWS\system32\LocationNotificationWindows.exe
Access denied - C:\WINDOWS\system32\LocationWinPalMisc.dll
Access denied - C:\WINDOWS\system32\Locator.exe
Access denied - C:\WINDOWS\system32\LockAppBroker.dll
Access denied - C:\WINDOWS\system32\LockAppHost.exe
Access denied - C:\WINDOWS\system32\LockController.dll
Access denied - C:\WINDOWS\system32\LockHostingFramework.dll
Access denied - C:\WINDOWS\system32\LockScreenContent.dll
Access denied - C:\WINDOWS\system32\LockScreenContentHost.dll
Access denied - C:\WINDOWS\system32\LockScreenContentServer.exe
Access denied - C:\WINDOWS\system32\LockScreenData.dll
Access denied - C:\WINDOWS\system32\lodctr.exe
Access denied - C:\WINDOWS\system32\logagent.exe
Access denied - C:\WINDOWS\system32\loghours.dll
Access denied - C:\WINDOWS\system32\logman.exe
Access denied - C:\WINDOWS\system32\logoncli.dll
Access denied - C:\WINDOWS\system32\LogonController.dll
Access denied - C:\WINDOWS\system32\LogonUI.exe
Access denied - C:\WINDOWS\system32\lpasvc.dll
Access denied - C:\WINDOWS\system32\lpk.dll
Access denied - C:\WINDOWS\system32\lpkinstall.exe
Access denied - C:\WINDOWS\system32\lpksetup.exe
Access denied - C:\WINDOWS\system32\lpksetupproxyserv.dll
Access denied - C:\WINDOWS\system32\lpremove.exe
Access denied - C:\WINDOWS\system32\LsaIso.exe
Access denied - C:\WINDOWS\system32\lsasrv.dll
Access denied - C:\WINDOWS\system32\lsass.exe
Access denied - C:\WINDOWS\system32\lsm.dll
Access denied - C:\WINDOWS\system32\lsmproxy.dll
Access denied - C:\WINDOWS\system32\luainstall.dll
Access denied - C:\WINDOWS\system32\luiapi.dll
Access denied - C:\WINDOWS\system32\lusrmgr.msc
Access denied - C:\WINDOWS\system32\lz32.dll
Access denied - C:\WINDOWS\system32\l_intl.nls
Access denied - C:\WINDOWS\system32\Magnification.dll
Access denied - C:\WINDOWS\system32\Magnify.exe
Access denied - C:\WINDOWS\system32\main.cpl
Access denied - C:\WINDOWS\system32\MaintenanceUI.dll
Access denied - C:\WINDOWS\system32\makecab.exe
Access denied - C:\WINDOWS\system32\manage-bde.exe
Access denied - C:\WINDOWS\system32\MapConfiguration.dll
Access denied - C:\WINDOWS\system32\MapControlCore.dll
Access denied - C:\WINDOWS\system32\MapControlStringsRes.dll
Access denied - C:\WINDOWS\system32\MapGeocoder.dll
Access denied - C:\WINDOWS\system32\mapi32.dll
Access denied - C:\WINDOWS\system32\mapistub.dll
Access denied - C:\WINDOWS\system32\MapRouter.dll
Access denied - C:\WINDOWS\system32\MapsBtSvc.dll
Access denied - C:\WINDOWS\system32\MapsBtSvcProxy.dll
Access denied - C:\WINDOWS\system32\MapsCSP.dll
Access denied - C:\WINDOWS\system32\MapsStore.dll
Access denied - C:\WINDOWS\system32\MapsTelemetry.dll
Access denied - C:\WINDOWS\system32\mapstoasttask.dll
Access denied - C:\WINDOWS\system32\mapsupdatetask.dll
Access denied - C:\WINDOWS\system32\MbaeApi.dll
Access denied - C:\WINDOWS\system32\MbaeApiPublic.dll
Access denied - C:\WINDOWS\system32\MbaeParserTask.exe
Access denied - C:\WINDOWS\system32\MbaeXmlParser.dll
Access denied - C:\WINDOWS\system32\mblctr.exe
Access denied - C:\WINDOWS\system32\MBMediaManager.dll
Access denied - C:\WINDOWS\system32\MBR2GPT.EXE
Access denied - C:\WINDOWS\system32\mbsmsapi.dll
Access denied - C:\WINDOWS\system32\mbussdapi.dll
Access denied - C:\WINDOWS\system32\mcbuilder.exe
Access denied - C:\WINDOWS\system32\MCCSEngineShared.dll
Access denied - C:\WINDOWS\system32\MCCSPal.dll
Access denied - C:\WINDOWS\system32\mciavi32.dll
Access denied - C:\WINDOWS\system32\mcicda.dll
Access denied - C:\WINDOWS\system32\mciqtz32.dll
Access denied - C:\WINDOWS\system32\mciseq.dll
Access denied - C:\WINDOWS\system32\mciwave.dll
Access denied - C:\WINDOWS\system32\MCRecvSrc.dll
Access denied - C:\WINDOWS\system32\mcupdate_AuthenticAMD.dll
Access denied - C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
Access denied - C:\WINDOWS\system32\MDEServer.exe
Access denied - C:\WINDOWS\system32\MDMAgent.exe
Access denied - C:\WINDOWS\system32\MDMAppInstaller.exe
Access denied - C:\WINDOWS\system32\MdmCommon.dll
Access denied - C:\WINDOWS\system32\MdmDiagnostics.dll
Access denied - C:\WINDOWS\system32\MdmDiagnosticsTool.exe
Access denied - C:\WINDOWS\system32\mdminst.dll
Access denied - C:\WINDOWS\system32\mdmlocalmanagement.dll
Access denied - C:\WINDOWS\system32\mdmmigrator.dll
Access denied - C:\WINDOWS\system32\mdmpostprocessevaluator.dll
Access denied - C:\WINDOWS\system32\mdmregistration.dll
Access denied - C:\WINDOWS\system32\MdRes.exe
Access denied - C:\WINDOWS\system32\MdSched.exe
Access denied - C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
Access denied - C:\WINDOWS\system32\MediumRoom.bin
Access denied - C:\WINDOWS\system32\MemoryDiagnostic.dll
Access denied - C:\WINDOWS\system32\MessagingDataModel2.dll
Access denied - C:\WINDOWS\system32\MessagingService.dll
Access denied - C:\WINDOWS\system32\mf.dll
Access denied - C:\WINDOWS\system32\mf3216.dll
Access denied - C:\WINDOWS\system32\mfAACEnc.dll
Access denied - C:\WINDOWS\system32\mfasfsrcsnk.dll
Access denied - C:\WINDOWS\system32\mfaudiocnv.dll
Access denied - C:\WINDOWS\system32\mfc42.dll
Access denied - C:\WINDOWS\system32\mfc42u.dll
Access denied - C:\WINDOWS\system32\MFCaptureEngine.dll
Access denied - C:\WINDOWS\system32\mfcore.dll
Access denied - C:\WINDOWS\system32\mfcsubs.dll
Access denied - C:\WINDOWS\system32\mfds.dll
Access denied - C:\WINDOWS\system32\mfdvdec.dll
Access denied - C:\WINDOWS\system32\mferror.dll
Access denied - C:\WINDOWS\system32\mfh263enc.dll
Access denied - C:\WINDOWS\system32\mfh264enc.dll
Access denied - C:\WINDOWS\system32\mfksproxy.dll
Access denied - C:\WINDOWS\system32\MFMediaEngine.dll
Access denied - C:\WINDOWS\system32\mfmjpegdec.dll
Access denied - C:\WINDOWS\system32\mfmkvsrcsnk.dll
Access denied - C:\WINDOWS\system32\mfmp4srcsnk.dll
Access denied - C:\WINDOWS\system32\mfmpeg2srcsnk.dll
Access denied - C:\WINDOWS\system32\mfnetcore.dll
Access denied - C:\WINDOWS\system32\mfnetsrc.dll
Access denied - C:\WINDOWS\system32\mfperfhelper.dll
Access denied - C:\WINDOWS\system32\mfplat.dll
Access denied - C:\WINDOWS\system32\MFPlay.dll
Access denied - C:\WINDOWS\system32\mfpmp.exe
Access denied - C:\WINDOWS\system32\mfps.dll
Access denied - C:\WINDOWS\system32\mfreadwrite.dll
Access denied - C:\WINDOWS\system32\mfsensorgroup.dll
Access denied - C:\WINDOWS\system32\mfsrcsnk.dll
Access denied - C:\WINDOWS\system32\mfsvr.dll
Access denied - C:\WINDOWS\system32\mftranscode.dll
Access denied - C:\WINDOWS\system32\mfvdsp.dll
Access denied - C:\WINDOWS\system32\mfvfw.dll
Access denied - C:\WINDOWS\system32\MFWMAAEC.DLL
Access denied - C:\WINDOWS\system32\mgmtapi.dll
Access denied - C:\WINDOWS\system32\mgmtrefreshcredprov.dll
Access denied - C:\WINDOWS\system32\mi.dll
Access denied - C:\WINDOWS\system32\mibincodec.dll
Access denied - C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-battery-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-hal-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-kernel-pnp-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
Access denied - C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
Access denied - C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
Access denied - C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-pdc.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-power-cad-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-processor-aggregator-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-sleepstudy-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-storage-tiering-events.dll
Access denied - C:\WINDOWS\system32\microsoft-windows-system-events.dll
Access denied - C:\WINDOWS\system32\Microsoft-WindowsPhone-SEManagementProvider.dll
Access denied - C:\WINDOWS\system32\Microsoft.Bluetooth.Core.dll
Access denied - C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
Access denied - C:\WINDOWS\system32\Microsoft.Bluetooth.Proxy.dll
Access denied - C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
Access denied - C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
Access denied - C:\WINDOWS\system32\MicrosoftAccountExtension.dll
Access denied - C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
Access denied - C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
Access denied - C:\WINDOWS\system32\midimap.dll
Access denied - C:\WINDOWS\system32\migisol.dll
Access denied - C:\WINDOWS\system32\miguiresource.dll
Access denied - C:\WINDOWS\system32\mimefilt.dll
Access denied - C:\WINDOWS\system32\mimofcodec.dll
Access denied - C:\WINDOWS\system32\MinstoreEvents.dll
Access denied - C:\WINDOWS\system32\mintdh.dll
Access denied - C:\WINDOWS\system32\MiracastInputMgr.dll
Access denied - C:\WINDOWS\system32\MiracastReceiver.dll
Access denied - C:\WINDOWS\system32\MirrorDrvCompat.dll
Access denied - C:\WINDOWS\system32\mispace.dll
Access denied - C:\WINDOWS\system32\MitigationConfiguration.dll
Access denied - C:\WINDOWS\system32\miutils.dll
Access denied - C:\WINDOWS\system32\mlang.dat
Access denied - C:\WINDOWS\system32\mlang.dll
Access denied - C:\WINDOWS\system32\mmc.exe
Access denied - C:\WINDOWS\system32\mmcbase.dll
Access denied - C:\WINDOWS\system32\mmci.dll
Access denied - C:\WINDOWS\system32\mmcico.dll
Access denied - C:\WINDOWS\system32\mmcndmgr.dll
Access denied - C:\WINDOWS\system32\mmcshext.dll
Access denied - C:\WINDOWS\system32\MMDevAPI.dll
Access denied - C:\WINDOWS\system32\mmgaclient.dll
Access denied - C:\WINDOWS\system32\mmgaproxystub.dll
Access denied - C:\WINDOWS\system32\mmgaserver.exe
Access denied - C:\WINDOWS\system32\mmres.dll
Access denied - C:\WINDOWS\system32\mmsys.cpl
Access denied - C:\WINDOWS\system32\mobsync.exe
Access denied - C:\WINDOWS\system32\mode.com
Access denied - C:\WINDOWS\system32\modemui.dll
Access denied - C:\WINDOWS\system32\modernexecserver.dll
Access denied - C:\WINDOWS\system32\more.com
Access denied - C:\WINDOWS\system32\moricons.dll
Access denied - C:\WINDOWS\system32\mos.dll
Access denied - C:\WINDOWS\system32\moshost.dll
Access denied - C:\WINDOWS\system32\MosHostClient.dll
Access denied - C:\WINDOWS\system32\moshostcore.dll
Access denied - C:\WINDOWS\system32\MosResource.dll
Access denied - C:\WINDOWS\system32\MosStorage.dll
Access denied - C:\WINDOWS\system32\mountvol.exe
Access denied - C:\WINDOWS\system32\MP3DMOD.DLL
Access denied - C:\WINDOWS\system32\MP43DECD.DLL
Access denied - C:\WINDOWS\system32\MP4SDECD.DLL
Access denied - C:\WINDOWS\system32\Mpeg2Data.ax
Access denied - C:\WINDOWS\system32\mpeval.dll
Access denied - C:\WINDOWS\system32\mpg2splt.ax
Access denied - C:\WINDOWS\system32\MPG4DECD.DLL
Access denied - C:\WINDOWS\system32\mpnotify.exe
Access denied - C:\WINDOWS\system32\mpr.dll
Access denied - C:\WINDOWS\system32\mprapi.dll
Access denied - C:\WINDOWS\system32\mprddm.dll
Access denied - C:\WINDOWS\system32\mprdim.dll
Access denied - C:\WINDOWS\system32\mprext.dll
Access denied - C:\WINDOWS\system32\mprmsg.dll
Access denied - C:\WINDOWS\system32\MPSSVC.dll
Access denied - C:\WINDOWS\system32\mpunits.dll
Access denied - C:\WINDOWS\system32\MRINFO.EXE
Access denied - C:\WINDOWS\system32\MrmCoreR.dll
Access denied - C:\WINDOWS\system32\MrmDeploy.dll
Access denied - C:\WINDOWS\system32\MrmIndexer.dll
Access denied - C:\WINDOWS\system32\mrt100.dll
Access denied - C:\WINDOWS\system32\mrt_map.dll
Access denied - C:\WINDOWS\system32\ms3dthumbnailprovider.dll
Access denied - C:\WINDOWS\system32\msaatext.dll
Access denied - C:\WINDOWS\system32\MSAC3ENC.DLL
Access denied - C:\WINDOWS\system32\msacm32.dll
Access denied - C:\WINDOWS\system32\msacm32.drv
Access denied - C:\WINDOWS\system32\msadp32.acm
Access denied - C:\WINDOWS\system32\msafd.dll
Access denied - C:\WINDOWS\system32\MSAJApi.dll
Access denied - C:\WINDOWS\system32\MSAlacDecoder.dll
Access denied - C:\WINDOWS\system32\MSAlacEncoder.dll
Access denied - C:\WINDOWS\system32\MSAMRNBDecoder.dll
Access denied - C:\WINDOWS\system32\MSAMRNBEncoder.dll
Access denied - C:\WINDOWS\system32\MSAMRNBSink.dll
Access denied - C:\WINDOWS\system32\MSAMRNBSource.dll
Access denied - C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
Access denied - C:\WINDOWS\system32\msasn1.dll
Access denied - C:\WINDOWS\system32\MSAudDecMFT.dll
Access denied - C:\WINDOWS\system32\msaudite.dll
Access denied - C:\WINDOWS\system32\msauserext.dll
Access denied - C:\WINDOWS\system32\mscandui.dll
Access denied - C:\WINDOWS\system32\mscat32.dll
Access denied - C:\WINDOWS\system32\MSchedExe.exe
Access denied - C:\WINDOWS\system32\mscms.dll
Access denied - C:\WINDOWS\system32\msconfig.exe
Access denied - C:\WINDOWS\system32\mscoree.dll
Access denied - C:\WINDOWS\system32\mscorier.dll
Access denied - C:\WINDOWS\system32\mscories.dll
Access denied - C:\WINDOWS\system32\msctf.dll
Access denied - C:\WINDOWS\system32\msctfime.ime
Access denied - C:\WINDOWS\system32\MsCtfMonitor.dll
Access denied - C:\WINDOWS\system32\msctfp.dll
Access denied - C:\WINDOWS\system32\msctfui.dll
Access denied - C:\WINDOWS\system32\msctfuimanager.dll
Access denied - C:\WINDOWS\system32\msdadiag.dll
Access denied - C:\WINDOWS\system32\msdart.dll
Access denied - C:\WINDOWS\system32\msdatsrc.tlb
Access denied - C:\WINDOWS\system32\msdelta.dll
Access denied - C:\WINDOWS\system32\msdmo.dll
Access denied - C:\WINDOWS\system32\msdrm.dll
Access denied - C:\WINDOWS\system32\msdt.exe
Access denied - C:\WINDOWS\system32\msdtc.exe
Access denied - C:\WINDOWS\system32\msdtckrm.dll
Access denied - C:\WINDOWS\system32\msdtclog.dll
Access denied - C:\WINDOWS\system32\msdtcprx.dll
Access denied - C:\WINDOWS\system32\msdtctm.dll
Access denied - C:\WINDOWS\system32\msdtcuiu.dll
Access denied - C:\WINDOWS\system32\msdtcVSp1res.dll
Access denied - C:\WINDOWS\system32\MSDvbNP.ax
Access denied - C:\WINDOWS\system32\msdxm.ocx
Access denied - C:\WINDOWS\system32\msdxm.tlb
Access denied - C:\WINDOWS\system32\msfeeds.dll
Access denied - C:\WINDOWS\system32\msfeedsbs.dll
Access denied - C:\WINDOWS\system32\msfeedssync.exe
Access denied - C:\WINDOWS\system32\MSFlacDecoder.dll
Access denied - C:\WINDOWS\system32\MSFlacEncoder.dll
Access denied - C:\WINDOWS\system32\msftedit.dll
Access denied - C:\WINDOWS\system32\MsftOemDllIgneous.dll
Access denied - C:\WINDOWS\system32\msg711.acm
Access denied - C:\WINDOWS\system32\msgsm32.acm
Access denied - C:\WINDOWS\system32\mshta.exe
Access denied - C:\WINDOWS\system32\mshtml.dll
Access denied - C:\WINDOWS\system32\mshtml.tlb
Access denied - C:\WINDOWS\system32\MshtmlDac.dll
Access denied - C:\WINDOWS\system32\mshtmled.dll
Access denied - C:\WINDOWS\system32\mshtmler.dll
Access denied - C:\WINDOWS\system32\msi.dll
Access denied - C:\WINDOWS\system32\MsiCofire.dll
Access denied - C:\WINDOWS\system32\msidcrl40.dll
Access denied - C:\WINDOWS\system32\msident.dll
Access denied - C:\WINDOWS\system32\msidle.dll
Access denied - C:\WINDOWS\system32\msidntld.dll
Access denied - C:\WINDOWS\system32\msieftp.dll
Access denied - C:\WINDOWS\system32\msiexec.exe
Access denied - C:\WINDOWS\system32\msihnd.dll
Access denied - C:\WINDOWS\system32\msiltcfg.dll
Access denied - C:\WINDOWS\system32\msimg32.dll
Access denied - C:\WINDOWS\system32\msimsg.dll
Access denied - C:\WINDOWS\system32\msimtf.dll
Access denied - C:\WINDOWS\system32\msinfo32.exe
Access denied - C:\WINDOWS\system32\msisip.dll
Access denied - C:\WINDOWS\system32\msIso.dll
Access denied - C:\WINDOWS\system32\msiwer.dll
Access denied - C:\WINDOWS\system32\mskeyprotcli.dll
Access denied - C:\WINDOWS\system32\mskeyprotect.dll
Access denied - C:\WINDOWS\system32\msls31.dll
Access denied - C:\WINDOWS\system32\msmpeg2adec.dll
Access denied - C:\WINDOWS\system32\MSMPEG2ENC.DLL
Access denied - C:\WINDOWS\system32\msmpeg2vdec.dll
Access denied - C:\WINDOWS\system32\MSNP.ax
Access denied - C:\WINDOWS\system32\msobjs.dll
Access denied - C:\WINDOWS\system32\msoert2.dll
Access denied - C:\WINDOWS\system32\MSOpusDecoder.dll
Access denied - C:\WINDOWS\system32\mspaint.exe
Access denied - C:\WINDOWS\system32\mspatcha.dll
Access denied - C:\WINDOWS\system32\mspatchc.dll
Access denied - C:\WINDOWS\system32\MSPhotography.dll
Access denied - C:\WINDOWS\system32\msports.dll
Access denied - C:\WINDOWS\system32\msprivs.dll
Access denied - C:\WINDOWS\system32\msra.exe
Access denied - C:\WINDOWS\system32\msrahc.dll
Access denied - C:\WINDOWS\system32\MsraLegacy.tlb
Access denied - C:\WINDOWS\system32\msrating.dll
Access denied - C:\WINDOWS\system32\msrdc.dll
Access denied - C:\WINDOWS\system32\MsRdpWebAccess.dll
Access denied - C:\WINDOWS\system32\msrle32.dll
Access denied - C:\WINDOWS\system32\msscntrs.dll
Access denied - C:\WINDOWS\system32\mssign32.dll
Access denied - C:\WINDOWS\system32\mssip32.dll
Access denied - C:\WINDOWS\system32\mssitlb.dll
Access denied - C:\WINDOWS\system32\MsSpellCheckingFacility.dll
Access denied - C:\WINDOWS\system32\MsSpellCheckingHost.exe
Access denied - C:\WINDOWS\system32\mssph.dll
Access denied - C:\WINDOWS\system32\mssprxy.dll
Access denied - C:\WINDOWS\system32\mssrch.dll
Access denied - C:\WINDOWS\system32\mssvp.dll
Access denied - C:\WINDOWS\system32\mstask.dll
Access denied - C:\WINDOWS\system32\msTextPrediction.dll
Access denied - C:\WINDOWS\system32\mstsc.exe
Access denied - C:\WINDOWS\system32\mstscax.dll
Access denied - C:\WINDOWS\system32\msutb.dll
Access denied - C:\WINDOWS\system32\msv1_0.dll
Access denied - C:\WINDOWS\system32\msvcirt.dll
Access denied - C:\WINDOWS\system32\msvcp110_win.dll
Access denied - C:\WINDOWS\system32\msvcp120_clr0400.dll
Access denied - C:\WINDOWS\system32\msvcp60.dll
Access denied - C:\WINDOWS\system32\msvcp_win.dll
Access denied - C:\WINDOWS\system32\msvcr100_clr0400.dll
Access denied - C:\WINDOWS\system32\msvcr120_clr0400.dll
Access denied - C:\WINDOWS\system32\msvcrt.dll
Access denied - C:\WINDOWS\system32\msvfw32.dll
Access denied - C:\WINDOWS\system32\msvidc32.dll
Access denied - C:\WINDOWS\system32\MSVidCtl.dll
Access denied - C:\WINDOWS\system32\MSVideoDSP.dll
Access denied - C:\WINDOWS\system32\MSVP9DEC.dll
Access denied - C:\WINDOWS\system32\msvproc.dll
Access denied - C:\WINDOWS\system32\MSVPXENC.dll
Access denied - C:\WINDOWS\system32\MSWB7.dll
Access denied - C:\WINDOWS\system32\mswmdm.dll
Access denied - C:\WINDOWS\system32\mswsock.dll
Access denied - C:\WINDOWS\system32\msxml3.dll
Access denied - C:\WINDOWS\system32\msxml3r.dll
Access denied - C:\WINDOWS\system32\msxml6.dll
Access denied - C:\WINDOWS\system32\msxml6r.dll
Access denied - C:\WINDOWS\system32\msyuv.dll
Access denied - C:\WINDOWS\system32\MtcModel.dll
Access denied - C:\WINDOWS\system32\MTF.dll
Access denied - C:\WINDOWS\system32\MtfDecoder.dll
Access denied - C:\WINDOWS\system32\MTFFuzzyDS.dll
Access denied - C:\WINDOWS\system32\MTFServer.dll
Access denied - C:\WINDOWS\system32\MTFSpellcheckDS.dll
Access denied - C:\WINDOWS\system32\mtstocom.exe
Access denied - C:\WINDOWS\system32\mtxclu.dll
Access denied - C:\WINDOWS\system32\mtxdm.dll
Access denied - C:\WINDOWS\system32\mtxex.dll
Access denied - C:\WINDOWS\system32\mtxoci.dll
Access denied - C:\WINDOWS\system32\muifontsetup.dll
Access denied - C:\WINDOWS\system32\MUILanguageCleanup.dll
Access denied - C:\WINDOWS\system32\MuiUnattend.exe
Access denied - C:\WINDOWS\system32\MultiDigiMon.exe
Access denied - C:\WINDOWS\system32\musdialoghandlers.dll
Access denied - C:\WINDOWS\system32\MusNotification.exe
Access denied - C:\WINDOWS\system32\MusNotificationUx.exe
Access denied - C:\WINDOWS\system32\MusNotifyIcon.exe
Access denied - C:\WINDOWS\system32\MusUpdateHandlers.dll
Access denied - C:\WINDOWS\system32\mycomput.dll
Access denied - C:\WINDOWS\system32\mydocs.dll
Access denied - C:\WINDOWS\system32\Mystify.scr
Access denied - C:\WINDOWS\system32\NAPCRYPT.DLL
Access denied - C:\WINDOWS\system32\NapiNSP.dll
Access denied - C:\WINDOWS\system32\Narrator.exe
Access denied - C:\WINDOWS\system32\nativemap.dll
Access denied - C:\WINDOWS\system32\NaturalAuth.dll
Access denied - C:\WINDOWS\system32\NaturalAuthClient.dll
Access denied - C:\WINDOWS\system32\NaturalLanguage6.dll
Access denied - C:\WINDOWS\system32\navshutdown.dll
Access denied - C:\WINDOWS\system32\nbtstat.exe
Access denied - C:\WINDOWS\system32\NcaApi.dll
Access denied - C:\WINDOWS\system32\NcaSvc.dll
Access denied - C:\WINDOWS\system32\ncbservice.dll
Access denied - C:\WINDOWS\system32\NcdAutoSetup.dll
Access denied - C:\WINDOWS\system32\NcdProp.dll
Access denied - C:\WINDOWS\system32\nci.dll
Access denied - C:\WINDOWS\system32\ncobjapi.dll
Access denied - C:\WINDOWS\system32\ncpa.cpl
Access denied - C:\WINDOWS\system32\ncrypt.dll
Access denied - C:\WINDOWS\system32\ncryptprov.dll
Access denied - C:\WINDOWS\system32\ncryptsslp.dll
Access denied - C:\WINDOWS\system32\ncsi.dll
Access denied - C:\WINDOWS\system32\ncuprov.dll
Access denied - C:\WINDOWS\system32\ndadmin.exe
Access denied - C:\WINDOWS\system32\nddeapi.dll
Access denied - C:\WINDOWS\system32\ndfapi.dll
Access denied - C:\WINDOWS\system32\ndfetw.dll
Access denied - C:\WINDOWS\system32\NdfEventView.xml
Access denied - C:\WINDOWS\system32\ndfhcdiscovery.dll
Access denied - C:\WINDOWS\system32\ndishc.dll
Access denied - C:\WINDOWS\system32\ndproxystub.dll
Access denied - C:\WINDOWS\system32\nduprov.dll
Access denied - C:\WINDOWS\system32\negoexts.dll
Access denied - C:\WINDOWS\system32\net.exe
Access denied - C:\WINDOWS\system32\net1.exe
Access denied - C:\WINDOWS\system32\netapi32.dll
Access denied - C:\WINDOWS\system32\netbios.dll
Access denied - C:\WINDOWS\system32\netbtugc.exe
Access denied - C:\WINDOWS\system32\NetCellcoreCellManagerProviderResources.dll
Access denied - C:\WINDOWS\system32\netcenter.dll
Access denied - C:\WINDOWS\system32\netcfg.exe
Access denied - C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
Access denied - C:\WINDOWS\system32\netcfgx.dll
Access denied - C:\WINDOWS\system32\netcorehc.dll
Access denied - C:\WINDOWS\system32\netdiagfx.dll
Access denied - C:\WINDOWS\system32\NetDriverInstall.dll
Access denied - C:\WINDOWS\system32\netevent.dll
Access denied - C:\WINDOWS\system32\NetEvtFwdr.exe
Access denied - C:\WINDOWS\system32\netfxperf.dll
Access denied - C:\WINDOWS\system32\neth.dll
Access denied - C:\WINDOWS\system32\NetHost.exe
Access denied - C:\WINDOWS\system32\netid.dll
Access denied - C:\WINDOWS\system32\netiohlp.dll
Access denied - C:\WINDOWS\system32\netiougc.exe
Access denied - C:\WINDOWS\system32\netjoin.dll
Access denied - C:\WINDOWS\system32\netlogon.dll
Access denied - C:\WINDOWS\system32\netman.dll
Access denied - C:\WINDOWS\system32\netmsg.dll
Access denied - C:\WINDOWS\system32\netplwiz.dll
Access denied - C:\WINDOWS\system32\Netplwiz.exe
Access denied - C:\WINDOWS\system32\netprofm.dll
Access denied - C:\WINDOWS\system32\netprofmsvc.dll
Access denied - C:\WINDOWS\system32\netprovfw.dll
Access denied - C:\WINDOWS\system32\netprovisionsp.dll
Access denied - C:\WINDOWS\system32\NetSetupApi.dll
Access denied - C:\WINDOWS\system32\NetSetupEngine.dll
Access denied - C:\WINDOWS\system32\NetSetupShim.dll
Access denied - C:\WINDOWS\system32\NetSetupSvc.dll
Access denied - C:\WINDOWS\system32\netsh.exe
Access denied - C:\WINDOWS\system32\netshell.dll
Access denied - C:\WINDOWS\system32\NETSTAT.EXE
Access denied - C:\WINDOWS\system32\nettrace.dll
Access denied - C:\WINDOWS\system32\NetTrace.PLA.Diagnostics.xml
Access denied - C:\WINDOWS\system32\netutils.dll
Access denied - C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
Access denied - C:\WINDOWS\system32\NetworkCollectionAgent.dll
Access denied - C:\WINDOWS\system32\NetworkDesktopSettings.dll
Access denied - C:\WINDOWS\system32\networkexplorer.dll
Access denied - C:\WINDOWS\system32\networkhelper.dll
Access denied - C:\WINDOWS\system32\networkitemfactory.dll
Access denied - C:\WINDOWS\system32\NetworkMobileSettings.dll
Access denied - C:\WINDOWS\system32\NetworkProxyCsp.dll
Access denied - C:\WINDOWS\system32\NetworkStatus.dll
Access denied - C:\WINDOWS\system32\NetworkUXBroker.dll
Access denied - C:\WINDOWS\system32\netwphelper.dll
Access denied - C:\WINDOWS\system32\newdev.dll
Access denied - C:\WINDOWS\system32\newdev.exe
Access denied - C:\WINDOWS\system32\NFCProvisioningPlugin.dll
Access denied - C:\WINDOWS\system32\NfcRadioMedia.dll
Access denied - C:\WINDOWS\system32\ngccredprov.dll
Access denied - C:\WINDOWS\system32\NgcCtnr.dll
Access denied - C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
Access denied - C:\WINDOWS\system32\NgcCtnrSvc.dll
Access denied - C:\WINDOWS\system32\ngckeyenum.dll
Access denied - C:\WINDOWS\system32\ngcksp.dll
Access denied - C:\WINDOWS\system32\ngcpopkeysrv.dll
Access denied - C:\WINDOWS\system32\NgcProCsp.dll
Access denied - C:\WINDOWS\system32\ngcrecovery.dll
Access denied - C:\WINDOWS\system32\ngcsvc.dll
Access denied - C:\WINDOWS\system32\ngctasks.dll
Access denied - C:\WINDOWS\system32\ninput.dll
Access denied - C:\WINDOWS\system32\nlaapi.dll
Access denied - C:\WINDOWS\system32\nlahc.dll
Access denied - C:\WINDOWS\system32\nlasvc.dll
Access denied - C:\WINDOWS\system32\nlhtml.dll
Access denied - C:\WINDOWS\system32\nlmgp.dll
Access denied - C:\WINDOWS\system32\nlmproxy.dll
Access denied - C:\WINDOWS\system32\nlmsprep.dll
Access denied - C:\WINDOWS\system32\nlsbres.dll
Access denied - C:\WINDOWS\system32\NlsData0000.dll
Access denied - C:\WINDOWS\system32\NlsData0009.dll
Access denied - C:\WINDOWS\system32\Nlsdl.dll
Access denied - C:\WINDOWS\system32\NlsLexicons0009.dll
Access denied - C:\WINDOWS\system32\nltest.exe
Access denied - C:\WINDOWS\system32\NMAA.dll
Access denied - C:\WINDOWS\system32\NmaDirect.dll
Access denied - C:\WINDOWS\system32\normaliz.dll
Access denied - C:\WINDOWS\system32\normidna.nls
Access denied - C:\WINDOWS\system32\normnfc.nls
Access denied - C:\WINDOWS\system32\normnfd.nls
Access denied - C:\WINDOWS\system32\normnfkc.nls
Access denied - C:\WINDOWS\system32\normnfkd.nls
Access denied - C:\WINDOWS\system32\notepad.exe
Access denied - C:\WINDOWS\system32\NotificationController.dll
Access denied - C:\WINDOWS\system32\NotificationControllerPS.dll
Access denied - C:\WINDOWS\system32\NotificationObjFactory.dll
Access denied - C:\WINDOWS\system32\notificationplatformcomponent.dll
Access denied - C:\WINDOWS\system32\npmproxy.dll
Access denied - C:\WINDOWS\system32\NPSM.dll
Access denied - C:\WINDOWS\system32\NPSMDesktopProvider.dll
Access denied - C:\WINDOWS\system32\nrpsrv.dll
Access denied - C:\WINDOWS\system32\nshhttp.dll
Access denied - C:\WINDOWS\system32\nshipsec.dll
Access denied - C:\WINDOWS\system32\nshwfp.dll
Access denied - C:\WINDOWS\system32\nsi.dll
Access denied - C:\WINDOWS\system32\nsisvc.dll
Access denied - C:\WINDOWS\system32\nslookup.exe
Access denied - C:\WINDOWS\system32\ntasn1.dll
Access denied - C:\WINDOWS\system32\ntdll.dll
Access denied - C:\WINDOWS\system32\ntdsapi.dll
Access denied - C:\WINDOWS\system32\ntlanman.dll
Access denied - C:\WINDOWS\system32\ntlanui2.dll
Access denied - C:\WINDOWS\system32\NtlmShared.dll
Access denied - C:\WINDOWS\system32\ntmarta.dll
Access denied - C:\WINDOWS\system32\ntoskrnl.exe
Access denied - C:\WINDOWS\system32\ntprint.dll
Access denied - C:\WINDOWS\system32\ntprint.exe
Access denied - C:\WINDOWS\system32\ntshrui.dll
Access denied - C:\WINDOWS\system32\ntvdm64.dll
Access denied - C:\WINDOWS\system32\objsel.dll
Access denied - C:\WINDOWS\system32\occache.dll
Access denied - C:\WINDOWS\system32\ocsetapi.dll
Access denied - C:\WINDOWS\system32\odbc32.dll
Access denied - C:\WINDOWS\system32\odbcad32.exe
Access denied - C:\WINDOWS\system32\odbcbcp.dll
Access denied - C:\WINDOWS\system32\odbcconf.dll
Access denied - C:\WINDOWS\system32\odbcconf.exe
Access denied - C:\WINDOWS\system32\odbcconf.rsp
Access denied - C:\WINDOWS\system32\odbccp32.dll
Access denied - C:\WINDOWS\system32\odbccr32.dll
Access denied - C:\WINDOWS\system32\odbccu32.dll
Access denied - C:\WINDOWS\system32\odbcint.dll
Access denied - C:\WINDOWS\system32\odbctrac.dll
Access denied - C:\WINDOWS\system32\oemlicense.dll
Access denied - C:\WINDOWS\system32\ofdeploy.exe
Access denied - C:\WINDOWS\system32\offfilt.dll
Access denied - C:\WINDOWS\system32\officecsp.dll
Access denied - C:\WINDOWS\system32\offlinelsa.dll
Access denied - C:\WINDOWS\system32\offlinesam.dll
Access denied - C:\WINDOWS\system32\offreg.dll
Access denied - C:\WINDOWS\system32\oflc-nz.rs
Access denied - C:\WINDOWS\system32\OkDone_80.contrast-black.png
Access denied - C:\WINDOWS\system32\OkDone_80.contrast-white.png
Access denied - C:\WINDOWS\system32\OkDone_80.png
Access denied - C:\WINDOWS\system32\ole32.dll
Access denied - C:\WINDOWS\system32\oleacc.dll
Access denied - C:\WINDOWS\system32\oleacchooks.dll
Access denied - C:\WINDOWS\system32\oleaccrc.dll
Access denied - C:\WINDOWS\system32\oleaut32.dll
Access denied - C:\WINDOWS\system32\oledlg.dll
Access denied - C:\WINDOWS\system32\oleprn.dll
Access denied - C:\WINDOWS\system32\OmaDmAgent.dll
Access denied - C:\WINDOWS\system32\omadmapi.dll
Access denied - C:\WINDOWS\system32\omadmclient.exe
Access denied - C:\WINDOWS\system32\omadmprc.exe
Access denied - C:\WINDOWS\system32\OnDemandBrokerClient.dll
Access denied - C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
Access denied - C:\WINDOWS\system32\OneBackupHandler.dll
Access denied - C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
Access denied - C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
Access denied - C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
Access denied - C:\WINDOWS\system32\onex.dll
Access denied - C:\WINDOWS\system32\onexui.dll
Access denied - C:\WINDOWS\system32\OobeFldr.dll
Access denied - C:\WINDOWS\system32\OpcServices.dll
Access denied - C:\WINDOWS\system32\openfiles.exe
Access denied - C:\WINDOWS\system32\opengl32.dll
Access denied - C:\WINDOWS\system32\OpenWith.exe
Access denied - C:\WINDOWS\system32\OptionalFeatures.exe
Access denied - C:\WINDOWS\system32\ortcengine.dll
Access denied - C:\WINDOWS\system32\osbaseln.dll
Access denied - C:\WINDOWS\system32\osk.exe
Access denied - C:\WINDOWS\system32\OskSupport.dll
Access denied - C:\WINDOWS\system32\osuninst.dll
Access denied - C:\WINDOWS\system32\OutdoorAudioEnvironment.bin
Access denied - C:\WINDOWS\system32\P2P.dll
Access denied - C:\WINDOWS\system32\P2PGraph.dll
Access denied - C:\WINDOWS\system32\p2pnetsh.dll
Access denied - C:\WINDOWS\system32\p2psvc.dll
Access denied - C:\WINDOWS\system32\PackagedCWALauncher.exe
Access denied - C:\WINDOWS\system32\packager.dll
Access denied - C:\WINDOWS\system32\PackageStateRoaming.dll
Access denied - C:\WINDOWS\system32\panmap.dll
Access denied - C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
Access denied - C:\WINDOWS\system32\PATHPING.EXE
Access denied - C:\WINDOWS\system32\pautoenr.dll
Access denied - C:\WINDOWS\system32\PayloadRestrictions.dll
Access denied - C:\WINDOWS\system32\PaymentMediatorServiceProxy.dll
Access denied - C:\WINDOWS\system32\pcacli.dll
Access denied - C:\WINDOWS\system32\pcadm.dll
Access denied - C:\WINDOWS\system32\pcaevts.dll
Access denied - C:\WINDOWS\system32\pcalua.exe
Access denied - C:\WINDOWS\system32\pcasvc.dll
Access denied - C:\WINDOWS\system32\pcaui.dll
Access denied - C:\WINDOWS\system32\pcaui.exe
Access denied - C:\WINDOWS\system32\pcbp.rs
Access denied - C:\WINDOWS\system32\pcl.sep
Access denied - C:\WINDOWS\system32\PCPKsp.dll
Access denied - C:\WINDOWS\system32\PCShellCommonProxyStub.dll
Access denied - C:\WINDOWS\system32\pcsvDevice.dll
Access denied - C:\WINDOWS\system32\pcwrun.exe
Access denied - C:\WINDOWS\system32\pcwum.dll
Access denied - C:\WINDOWS\system32\pcwutl.dll
Access denied - C:\WINDOWS\system32\pdh.dll
Access denied - C:\WINDOWS\system32\pdhui.dll
Access denied - C:\WINDOWS\system32\pegi-pt.rs
Access denied - C:\WINDOWS\system32\pegi.rs
Access denied - C:\WINDOWS\system32\PeopleAPIs.dll
Access denied - C:\WINDOWS\system32\PeopleBand.dll
Access denied - C:\WINDOWS\system32\PerceptionSimulation.ProxyStubs.dll
Access denied - C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
Access denied - C:\WINDOWS\system32\perfctrs.dll
Access denied - C:\WINDOWS\system32\perfdisk.dll
Access denied - C:\WINDOWS\system32\perfmon.exe
Access denied - C:\WINDOWS\system32\perfmon.msc
Access denied - C:\WINDOWS\system32\perfnet.dll
Access denied - C:\WINDOWS\system32\perfos.dll
Access denied - C:\WINDOWS\system32\perfproc.dll
Access denied - C:\WINDOWS\system32\perftrack.dll
Access denied - C:\WINDOWS\system32\perfts.dll
Access denied - C:\WINDOWS\system32\PersonalizationCSP.dll
Access denied - C:\WINDOWS\system32\PersonaX.dll
Access denied - C:\WINDOWS\system32\phoneactivate.exe
Access denied - C:\WINDOWS\system32\PhoneCallHistoryApis.dll
Access denied - C:\WINDOWS\system32\PhoneDataSync.dll
Access denied - C:\WINDOWS\system32\PhoneOm.dll
Access denied - C:\WINDOWS\system32\PhonePlatformAbstraction.dll
Access denied - C:\WINDOWS\system32\PhoneProviders.dll
Access denied - C:\WINDOWS\system32\PhoneService.dll
Access denied - C:\WINDOWS\system32\PhoneServiceRes.dll
Access denied - C:\WINDOWS\system32\Phoneutil.dll
Access denied - C:\WINDOWS\system32\PhoneutilRes.dll
Access denied - C:\WINDOWS\system32\PhotoMetadataHandler.dll
Access denied - C:\WINDOWS\system32\PhotoScreensaver.scr
Access denied - C:\WINDOWS\system32\photowiz.dll
Access denied - C:\WINDOWS\system32\PickerHost.exe
Access denied - C:\WINDOWS\system32\PickerPlatform.dll
Access denied - C:\WINDOWS\system32\pid.dll
Access denied - C:\WINDOWS\system32\pidgenx.dll
Access denied - C:\WINDOWS\system32\pifmgr.dll
Access denied - C:\WINDOWS\system32\PimIndexMaintenance.dll
Access denied - C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
Access denied - C:\WINDOWS\system32\Pimstore.dll
Access denied - C:\WINDOWS\system32\PinEnrollmentHelper.dll
Access denied - C:\WINDOWS\system32\PING.EXE
Access denied - C:\WINDOWS\system32\PkgMgr.exe
Access denied - C:\WINDOWS\system32\pku2u.dll
Access denied - C:\WINDOWS\system32\pla.dll
Access denied - C:\WINDOWS\system32\plasrv.exe
Access denied - C:\WINDOWS\system32\playlistfolder.dll
Access denied - C:\WINDOWS\system32\PlaySndSrv.dll
Access denied - C:\WINDOWS\system32\PlayToDevice.dll
Access denied - C:\WINDOWS\system32\PlayToManager.dll
Access denied - C:\WINDOWS\system32\playtomenu.dll
Access denied - C:\WINDOWS\system32\PlayToReceiver.dll
Access denied - C:\WINDOWS\system32\PlayToStatusProvider.dll
Access denied - C:\WINDOWS\system32\ploptin.dll
Access denied - C:\WINDOWS\system32\pngfilt.dll
Access denied - C:\WINDOWS\system32\pnidui.dll
Access denied - C:\WINDOWS\system32\pnpclean.dll
Access denied - C:\WINDOWS\system32\pnppolicy.dll
Access denied - C:\WINDOWS\system32\pnpts.dll
Access denied - C:\WINDOWS\system32\pnpui.dll
Access denied - C:\WINDOWS\system32\PnPUnattend.exe
Access denied - C:\WINDOWS\system32\pnputil.exe
Access denied - C:\WINDOWS\system32\PNPXAssoc.dll
Access denied - C:\WINDOWS\system32\PNPXAssocPrx.dll
Access denied - C:\WINDOWS\system32\pnrpauto.dll
Access denied - C:\WINDOWS\system32\Pnrphc.dll
Access denied - C:\WINDOWS\system32\pnrpnsp.dll
Access denied - C:\WINDOWS\system32\pnrpsvc.dll
Access denied - C:\WINDOWS\system32\policymanager.dll
Access denied - C:\WINDOWS\system32\policymanagerprecheck.dll
Access denied - C:\WINDOWS\system32\polstore.dll
Access denied - C:\WINDOWS\system32\poqexec.exe
Access denied - C:\WINDOWS\system32\PortableDeviceApi.dll
Access denied - C:\WINDOWS\system32\PortableDeviceClassExtension.dll
Access denied - C:\WINDOWS\system32\PortableDeviceConnectApi.dll
Access denied - C:\WINDOWS\system32\PortableDeviceStatus.dll
Access denied - C:\WINDOWS\system32\PortableDeviceSyncProvider.dll
Access denied - C:\WINDOWS\system32\PortableDeviceTypes.dll
Access denied - C:\WINDOWS\system32\PortableDeviceWiaCompat.dll
Access denied - C:\WINDOWS\system32\POSyncServices.dll
Access denied - C:\WINDOWS\system32\pots.dll
Access denied - C:\WINDOWS\system32\powercfg.cpl
Access denied - C:\WINDOWS\system32\powercfg.exe
Access denied - C:\WINDOWS\system32\powercpl.dll
Access denied - C:\WINDOWS\system32\powrprof.dll
Access denied - C:\WINDOWS\system32\prauthproviders.dll
Access denied - C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
Access denied - C:\WINDOWS\system32\PresentationHost.exe
Access denied - C:\WINDOWS\system32\PresentationHostProxy.dll
Access denied - C:\WINDOWS\system32\PresentationNative_v0300.dll
Access denied - C:\WINDOWS\system32\prevhost.exe
Access denied - C:\WINDOWS\system32\prflbmsg.dll
Access denied - C:\WINDOWS\system32\print.exe
Access denied - C:\WINDOWS\system32\Print.Workflow.Source.dll
Access denied - C:\WINDOWS\system32\PrintDialogHost.exe
Access denied - C:\WINDOWS\system32\PrintDialogs.dll
Access denied - C:\WINDOWS\system32\printfilterpipelineprxy.dll
Access denied - C:\WINDOWS\system32\printfilterpipelinesvc.exe
Access denied - C:\WINDOWS\system32\PrintIsolationHost.exe
Access denied - C:\WINDOWS\system32\PrintIsolationProxy.dll
Access denied - C:\WINDOWS\system32\PrintPlatformConfig.dll
Access denied - C:\WINDOWS\system32\PrintRenderAPIHost.DLL
Access denied - C:\WINDOWS\system32\printui.dll
Access denied - C:\WINDOWS\system32\printui.exe
Access denied - C:\WINDOWS\system32\PrintWorkflowProxy.dll
Access denied - C:\WINDOWS\system32\PrintWorkflowService.dll
Access denied - C:\WINDOWS\system32\PrintWSDAHost.dll
Access denied - C:\WINDOWS\system32\prm0009.dll
Access denied - C:\WINDOWS\system32\prncache.dll
Access denied - C:\WINDOWS\system32\prnfldr.dll
Access denied - C:\WINDOWS\system32\prnntfy.dll
Access denied - C:\WINDOWS\system32\prntvpt.dll
Access denied - C:\WINDOWS\system32\ProductEnumerator.dll
Access denied - C:\WINDOWS\system32\profapi.dll
Access denied - C:\WINDOWS\system32\profext.dll
Access denied - C:\WINDOWS\system32\profprov.dll
Access denied - C:\WINDOWS\system32\profsvc.dll
Access denied - C:\WINDOWS\system32\profsvcext.dll
Access denied - C:\WINDOWS\system32\propsys.dll
Access denied - C:\WINDOWS\system32\proquota.exe
Access denied - C:\WINDOWS\system32\provcore.dll
Access denied - C:\WINDOWS\system32\provdatastore.dll
Access denied - C:\WINDOWS\system32\provdiagnostics.dll
Access denied - C:\WINDOWS\system32\provengine.dll
Access denied - C:\WINDOWS\system32\provhandlers.dll
Access denied - C:\WINDOWS\system32\provisioningcommandscsp.dll
Access denied - C:\WINDOWS\system32\provisioningcsp.dll
Access denied - C:\WINDOWS\system32\ProvisioningHandlers.dll
Access denied - C:\WINDOWS\system32\provlaunch.exe
Access denied - C:\WINDOWS\system32\provmigrate.dll
Access denied - C:\WINDOWS\system32\provops.dll
Access denied - C:\WINDOWS\system32\provpackageapidll.dll
Access denied - C:\WINDOWS\system32\provplatformdesktop.dll
Access denied - C:\WINDOWS\system32\ProvPluginEng.dll
Access denied - C:\WINDOWS\system32\provsvc.dll
Access denied - C:\WINDOWS\system32\ProvSysprep.dll
Access denied - C:\WINDOWS\system32\provthrd.dll
Access denied - C:\WINDOWS\system32\provtool.exe
Access denied - C:\WINDOWS\system32\ProximityCommon.dll
Access denied - C:\WINDOWS\system32\ProximityCommonPal.dll
Access denied - C:\WINDOWS\system32\ProximityRtapiPal.dll
Access denied - C:\WINDOWS\system32\ProximityService.dll
Access denied - C:\WINDOWS\system32\ProximityServicePal.dll
Access denied - C:\WINDOWS\system32\ProximityUxHost.exe
Access denied - C:\WINDOWS\system32\prproc.exe
Access denied - C:\WINDOWS\system32\prvdmofcomp.dll
Access denied - C:\WINDOWS\system32\psapi.dll
Access denied - C:\WINDOWS\system32\pscript.sep
Access denied - C:\WINDOWS\system32\PSHED.DLL
Access denied - C:\WINDOWS\system32\psisdecd.dll
Access denied - C:\WINDOWS\system32\psisrndr.ax
Access denied - C:\WINDOWS\system32\PSModuleDiscoveryProvider.dll
Access denied - C:\WINDOWS\system32\psmodulediscoveryprovider.mof
Access denied - C:\WINDOWS\system32\PsmServiceExtHost.dll
Access denied - C:\WINDOWS\system32\psmsrv.dll
Access denied - C:\WINDOWS\system32\psr.exe
Access denied - C:\WINDOWS\system32\pstask.dll
Access denied - C:\WINDOWS\system32\pstorec.dll
Access denied - C:\WINDOWS\system32\puiapi.dll
Access denied - C:\WINDOWS\system32\puiobj.dll
Access denied - C:\WINDOWS\system32\PushToInstall.dll
Access denied - C:\WINDOWS\system32\pwlauncher.dll
Access denied - C:\WINDOWS\system32\pwlauncher.exe
Access denied - C:\WINDOWS\system32\pwrshplugin.dll
Access denied - C:\WINDOWS\system32\pwsso.dll
Access denied - C:\WINDOWS\system32\qasf.dll
Access denied - C:\WINDOWS\system32\qcap.dll
Access denied - C:\WINDOWS\system32\qdv.dll
Access denied - C:\WINDOWS\system32\qdvd.dll
Access denied - C:\WINDOWS\system32\qedit.dll
Access denied - C:\WINDOWS\system32\qedwipes.dll
Access denied - C:\WINDOWS\system32\qmgr.dll
Access denied - C:\WINDOWS\system32\quartz.dll
Access denied - C:\WINDOWS\system32\Query.dll
Access denied - C:\WINDOWS\system32\QuickActionsDataModel.dll
Access denied - C:\WINDOWS\system32\quickassist.exe
Access denied - C:\WINDOWS\system32\qwave.dll
Access denied - C:\WINDOWS\system32\RacEngn.dll
Access denied - C:\WINDOWS\system32\racpldlg.dll
Access denied - C:\WINDOWS\system32\radardt.dll
Access denied - C:\WINDOWS\system32\radarrs.dll
Access denied - C:\WINDOWS\system32\RADCUI.dll
Access denied - C:\WINDOWS\system32\rasadhlp.dll
Access denied - C:\WINDOWS\system32\rasapi32.dll
Access denied - C:\WINDOWS\system32\rasauto.dll
Access denied - C:\WINDOWS\system32\rasautou.exe
Access denied - C:\WINDOWS\system32\raschap.dll
Access denied - C:\WINDOWS\system32\raschapext.dll
Access denied - C:\WINDOWS\system32\rasctrnm.h
Access denied - C:\WINDOWS\system32\rasctrs.dll
Access denied - C:\WINDOWS\system32\rascustom.dll
Access denied - C:\WINDOWS\system32\rasdiag.dll
Access denied - C:\WINDOWS\system32\rasdial.exe
Access denied - C:\WINDOWS\system32\rasdlg.dll
Access denied - C:\WINDOWS\system32\raserver.exe
Access denied - C:\WINDOWS\system32\rasgcw.dll
Access denied - C:\WINDOWS\system32\rasman.dll
Access denied - C:\WINDOWS\system32\rasmans.dll
Access denied - C:\WINDOWS\system32\rasmbmgr.dll
Access denied - C:\WINDOWS\system32\RasMediaManager.dll
Access denied - C:\WINDOWS\system32\RASMM.dll
Access denied - C:\WINDOWS\system32\rasmontr.dll
Access denied - C:\WINDOWS\system32\rasphone.exe
Access denied - C:\WINDOWS\system32\rasplap.dll
Access denied - C:\WINDOWS\system32\rasppp.dll
Access denied - C:\WINDOWS\system32\rastapi.dll
Access denied - C:\WINDOWS\system32\rastls.dll
Access denied - C:\WINDOWS\system32\rastlsext.dll
Access denied - C:\WINDOWS\system32\rdbui.dll
Access denied - C:\WINDOWS\system32\rdpbase.dll
Access denied - C:\WINDOWS\system32\rdpcfgex.dll
Access denied - C:\WINDOWS\system32\rdpclip.exe
Access denied - C:\WINDOWS\system32\rdpcore.dll
Access denied - C:\WINDOWS\system32\rdpcorets.dll
Access denied - C:\WINDOWS\system32\rdpencom.dll
Access denied - C:\WINDOWS\system32\rdpendp.dll
Access denied - C:\WINDOWS\system32\rdpinput.exe
Access denied - C:\WINDOWS\system32\RdpRelayTransport.dll
Access denied - C:\WINDOWS\system32\RdpSa.exe
Access denied - C:\WINDOWS\system32\RdpSaProxy.exe
Access denied - C:\WINDOWS\system32\RdpSaPs.dll
Access denied - C:\WINDOWS\system32\RdpSaUacHelper.exe
Access denied - C:\WINDOWS\system32\rdpserverbase.dll
Access denied - C:\WINDOWS\system32\rdpudd.dll
Access denied - C:\WINDOWS\system32\rdrleakdiag.exe
Access denied - C:\WINDOWS\system32\RDSAppXHelper.dll
Access denied - C:\WINDOWS\system32\rdsdwmdr.dll
Access denied - C:\WINDOWS\system32\RDSPnf.exe
Access denied - C:\WINDOWS\system32\rdvvmtransport.dll
Access denied - C:\WINDOWS\system32\RDXService.dll
Access denied - C:\WINDOWS\system32\RDXTaskFactory.dll
Access denied - C:\WINDOWS\system32\ReAgent.dll
Access denied - C:\WINDOWS\system32\ReAgentc.exe
Access denied - C:\WINDOWS\system32\ReAgentTask.dll
Access denied - C:\WINDOWS\system32\recdisc.exe
Access denied - C:\WINDOWS\system32\recover.exe
Access denied - C:\WINDOWS\system32\recovery.dll
Access denied - C:\WINDOWS\system32\RecoveryDrive.exe
Access denied - C:\WINDOWS\system32\refsutil.exe
Access denied - C:\WINDOWS\system32\reg.exe
Access denied - C:\WINDOWS\system32\regapi.dll
Access denied - C:\WINDOWS\system32\RegCtrl.dll
Access denied - C:\WINDOWS\system32\regedt32.exe
Access denied - C:\WINDOWS\system32\regidle.dll
Access denied - C:\WINDOWS\system32\regini.exe
Access denied - C:\WINDOWS\system32\Register-CimProvider.exe
Access denied - C:\WINDOWS\system32\regsvc.dll
Access denied - C:\WINDOWS\system32\regsvr32.exe
Access denied - C:\WINDOWS\system32\reguwpapi.dll
Access denied - C:\WINDOWS\system32\ReInfo.dll
Access denied - C:\WINDOWS\system32\rekeywiz.exe
Access denied - C:\WINDOWS\system32\relog.exe
Access denied - C:\WINDOWS\system32\RelPost.exe
Access denied - C:\WINDOWS\system32\remoteaudioendpoint.dll
Access denied - C:\WINDOWS\system32\remotepg.dll
Access denied - C:\WINDOWS\system32\RemotePosWorker.exe
Access denied - C:\WINDOWS\system32\remotesp.tsp
Access denied - C:\WINDOWS\system32\RemoteWipeCSP.dll
Access denied - C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
Access denied - C:\WINDOWS\system32\RemoveDeviceContextHandler.dll
Access denied - C:\WINDOWS\system32\RemoveDeviceElevated.dll
Access denied - C:\WINDOWS\system32\removehypervisor.mof
Access denied - C:\WINDOWS\system32\rendezvousSession.tlb
Access denied - C:\WINDOWS\system32\repair-bde.exe
Access denied - C:\WINDOWS\system32\replace.exe
Access denied - C:\WINDOWS\system32\ReportingCSP.dll
Access denied - C:\WINDOWS\system32\RESAMPLEDMO.DLL
Access denied - C:\WINDOWS\system32\reseteng.dll
Access denied - C:\WINDOWS\system32\ResetEngine.dll
Access denied - C:\WINDOWS\system32\ResetEngine.exe
Access denied - C:\WINDOWS\system32\ResetEngOnline.dll
Access denied - C:\WINDOWS\system32\resmon.exe
Access denied - C:\WINDOWS\system32\ResourcePolicyClient.dll
Access denied - C:\WINDOWS\system32\ResourcePolicyServer.dll
Access denied - C:\WINDOWS\system32\ResPriHMImageList
Access denied - C:\WINDOWS\system32\ResPriImageList
Access denied - C:\WINDOWS\system32\RestartManager.mof
Access denied - C:\WINDOWS\system32\RestartManagerUninstall.mof
Access denied - C:\WINDOWS\system32\RestartNowPower_80.contrast-black.png
Access denied - C:\WINDOWS\system32\RestartNowPower_80.contrast-white.png
Access denied - C:\WINDOWS\system32\RestartNowPower_80.png
Access denied - C:\WINDOWS\system32\resutils.dll
Access denied - C:\WINDOWS\system32\rgb9rast.dll
Access denied - C:\WINDOWS\system32\Ribbons.scr
Access denied - C:\WINDOWS\system32\riched20.dll
Access denied - C:\WINDOWS\system32\riched32.dll
Access denied - C:\WINDOWS\system32\rilproxy.dll
Access denied - C:\WINDOWS\system32\RjvMDMConfig.dll
Access denied - C:\WINDOWS\system32\RMActivate.exe
Access denied - C:\WINDOWS\system32\RMActivate_isv.exe
Access denied - C:\WINDOWS\system32\RMActivate_ssp.exe
Access denied - C:\WINDOWS\system32\RMActivate_ssp_isv.exe
Access denied - C:\WINDOWS\system32\RMapi.dll
Access denied - C:\WINDOWS\system32\rmclient.dll
Access denied - C:\WINDOWS\system32\RmClient.exe
Access denied - C:\WINDOWS\system32\RMSRoamingSecurity.dll
Access denied - C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
Access denied - C:\WINDOWS\system32\rnr20.dll
Access denied - C:\WINDOWS\system32\RoamingSecurity.dll
Access denied - C:\WINDOWS\system32\Robocopy.exe
Access denied - C:\WINDOWS\system32\rometadata.dll
Access denied - C:\WINDOWS\system32\RotMgr.dll
Access denied - C:\WINDOWS\system32\ROUTE.EXE
Access denied - C:\WINDOWS\system32\RpcEpMap.dll
Access denied - C:\WINDOWS\system32\rpchttp.dll
Access denied - C:\WINDOWS\system32\RpcNs4.dll
Access denied - C:\WINDOWS\system32\rpcnsh.dll
Access denied - C:\WINDOWS\system32\RpcPing.exe
Access denied - C:\WINDOWS\system32\rpcrt4.dll
Access denied - C:\WINDOWS\system32\RpcRtRemote.dll
Access denied - C:\WINDOWS\system32\rpcss.dll
Access denied - C:\WINDOWS\system32\rrinstaller.exe
Access denied - C:\WINDOWS\system32\rsaenh.dll
Access denied - C:\WINDOWS\system32\rshx32.dll
Access denied - C:\WINDOWS\system32\RstrtMgr.dll
Access denied - C:\WINDOWS\system32\rstrui.exe
Access denied - C:\WINDOWS\system32\rtffilt.dll
Access denied - C:\WINDOWS\system32\rtm.dll
Access denied - C:\WINDOWS\system32\rtmcodecs.dll
Access denied - C:\WINDOWS\system32\RTMediaFrame.dll
Access denied - C:\WINDOWS\system32\rtmmvrortc.dll
Access denied - C:\WINDOWS\system32\rtmpal.dll
Access denied - C:\WINDOWS\system32\rtmpltfm.dll
Access denied - C:\WINDOWS\system32\rtutils.dll
Access denied - C:\WINDOWS\system32\RTWorkQ.dll
Access denied - C:\WINDOWS\system32\RuleBasedDS.dll
Access denied - C:\WINDOWS\system32\runas.exe
Access denied - C:\WINDOWS\system32\rundll32.exe
Access denied - C:\WINDOWS\system32\runexehelper.exe
Access denied - C:\WINDOWS\system32\RunLegacyCPLElevated.exe
Access denied - C:\WINDOWS\system32\runonce.exe
Access denied - C:\WINDOWS\system32\runscripthelper.exe
Access denied - C:\WINDOWS\system32\RuntimeBroker.exe
Access denied - C:\WINDOWS\system32\samcli.dll
Access denied - C:\WINDOWS\system32\samlib.dll
Access denied - C:\WINDOWS\system32\samsrv.dll
Access denied - C:\WINDOWS\system32\sas.dll
Access denied - C:\WINDOWS\system32\sbe.dll
Access denied - C:\WINDOWS\system32\sbeio.dll
Access denied - C:\WINDOWS\system32\sberes.dll
Access denied - C:\WINDOWS\system32\sbservicetrigger.dll
Access denied - C:\WINDOWS\system32\sc.exe
Access denied - C:\WINDOWS\system32\scansetting.dll
Access denied - C:\WINDOWS\system32\SCardBi.dll
Access denied - C:\WINDOWS\system32\SCardDlg.dll
Access denied - C:\WINDOWS\system32\SCardSvr.dll
Access denied - C:\WINDOWS\system32\ScavengeSpace.xml
Access denied - C:\WINDOWS\system32\scavengeui.dll
Access denied - C:\WINDOWS\system32\ScDeviceEnum.dll
Access denied - C:\WINDOWS\system32\scecli.dll
Access denied - C:\WINDOWS\system32\scesrv.dll
Access denied - C:\WINDOWS\system32\schannel.dll
Access denied - C:\WINDOWS\system32\schedcli.dll
Access denied - C:\WINDOWS\system32\schedsvc.dll
Access denied - C:\WINDOWS\system32\ScheduleTime_80.contrast-black.png
Access denied - C:\WINDOWS\system32\ScheduleTime_80.contrast-white.png
Access denied - C:\WINDOWS\system32\ScheduleTime_80.png
Access denied - C:\WINDOWS\system32\schtasks.exe
Access denied - C:\WINDOWS\system32\scksp.dll
Access denied - C:\WINDOWS\system32\scripto.dll
Access denied - C:\WINDOWS\system32\scrnsave.scr
Access denied - C:\WINDOWS\system32\scrobj.dll
Access denied - C:\WINDOWS\system32\scrrun.dll
Access denied - C:\WINDOWS\system32\sdbinst.exe
Access denied - C:\WINDOWS\system32\sdchange.exe
Access denied - C:\WINDOWS\system32\sdclt.exe
Access denied - C:\WINDOWS\system32\sdcpl.dll
Access denied - C:\WINDOWS\system32\SDDS.dll
Access denied - C:\WINDOWS\system32\sdengin2.dll
Access denied - C:\WINDOWS\system32\SDFHost.dll
Access denied - C:\WINDOWS\system32\sdhcinst.dll
Access denied - C:\WINDOWS\system32\sdiageng.dll
Access denied - C:\WINDOWS\system32\sdiagnhost.exe
Access denied - C:\WINDOWS\system32\sdiagprv.dll
Access denied - C:\WINDOWS\system32\sdiagschd.dll
Access denied - C:\WINDOWS\system32\sdohlp.dll
Access denied - C:\WINDOWS\system32\sdrsvc.dll
Access denied - C:\WINDOWS\system32\sdshext.dll
Access denied - C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
Access denied - C:\WINDOWS\system32\SearchFilterHost.exe
Access denied - C:\WINDOWS\system32\SearchFolder.dll
Access denied - C:\WINDOWS\system32\SearchIndexer.exe
Access denied - C:\WINDOWS\system32\SearchProtocolHost.exe
Access denied - C:\WINDOWS\system32\SebBackgroundManagerPolicy.dll
Access denied - C:\WINDOWS\system32\SecConfig.efi
Access denied - C:\WINDOWS\system32\SecEdit.exe
Access denied - C:\WINDOWS\system32\sechost.dll
Access denied - C:\WINDOWS\system32\secinit.exe
Access denied - C:\WINDOWS\system32\seclogon.dll
Access denied - C:\WINDOWS\system32\secproc.dll
Access denied - C:\WINDOWS\system32\secproc_isv.dll
Access denied - C:\WINDOWS\system32\secproc_ssp.dll
Access denied - C:\WINDOWS\system32\secproc_ssp_isv.dll
Access denied - C:\WINDOWS\system32\secur32.dll
Access denied - C:\WINDOWS\system32\securekernel.exe
Access denied - C:\WINDOWS\system32\SecureTimeAggregator.dll
Access denied - C:\WINDOWS\system32\security.dll
Access denied - C:\WINDOWS\system32\SecurityAndMaintenance.png
Access denied - C:\WINDOWS\system32\SecurityAndMaintenance_Alert.png
Access denied - C:\WINDOWS\system32\SecurityAndMaintenance_Error.png
Access denied - C:\WINDOWS\system32\SecurityHealthAgent.dll
Access denied - C:\WINDOWS\system32\SecurityHealthBatteryAlertsManager.dll
Access denied - C:\WINDOWS\system32\SecurityHealthProxyStub.dll
Access denied - C:\WINDOWS\system32\SecurityHealthService.exe
Access denied - C:\WINDOWS\system32\SecurityHealthSSO.dll
Access denied - C:\WINDOWS\system32\SEMgrPS.dll
Access denied - C:\WINDOWS\system32\SEMgrSvc.dll
Access denied - C:\WINDOWS\system32\SEMgrSvcPAL.dll
Access denied - C:\WINDOWS\system32\sendmail.dll
Access denied - C:\WINDOWS\system32\Sens.dll
Access denied - C:\WINDOWS\system32\SensApi.dll
Access denied - C:\WINDOWS\system32\SensorCustomAdbAlgorithm.dll
Access denied - C:\WINDOWS\system32\SensorDataService.exe
Access denied - C:\WINDOWS\system32\SensorPerformanceEvents.dll
Access denied - C:\WINDOWS\system32\SensorsApi.dll
Access denied - C:\WINDOWS\system32\SensorsClassExtension.dll
Access denied - C:\WINDOWS\system32\SensorsCpl.dll
Access denied - C:\WINDOWS\system32\SensorService.dll
Access denied - C:\WINDOWS\system32\SensorsNativeApi.dll
Access denied - C:\WINDOWS\system32\SensorsNativeApi.V2.dll
Access denied - C:\WINDOWS\system32\SensorsUtilsV2.dll
Access denied - C:\WINDOWS\system32\sensrsvc.dll
Access denied - C:\WINDOWS\system32\serialui.dll
Access denied - C:\WINDOWS\system32\services.exe
Access denied - C:\WINDOWS\system32\services.msc
Access denied - C:\WINDOWS\system32\ServiceWorkerHost.exe
Access denied - C:\WINDOWS\system32\serwvdrv.dll
Access denied - C:\WINDOWS\system32\SessEnv.dll
Access denied - C:\WINDOWS\system32\sessionmsg.exe
Access denied - C:\WINDOWS\system32\setbcdlocale.dll
Access denied - C:\WINDOWS\system32\sethc.exe
Access denied - C:\WINDOWS\system32\SetNetworkLocation.dll
Access denied - C:\WINDOWS\system32\SetNetworkLocationFlyout.dll
Access denied - C:\WINDOWS\system32\SetProxyCredential.dll
Access denied - C:\WINDOWS\system32\setspn.exe
Access denied - C:\WINDOWS\system32\SettingMonitor.dll
Access denied - C:\WINDOWS\system32\settings.dat
Access denied - C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
Access denied - C:\WINDOWS\system32\SettingsExtensibilityHandlers.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_AppControl.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_BatteryUsage.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Devices.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Display.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Flights.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Gaming.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Maps.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_nt.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_OneCore_BatterySaver.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_QuickActions.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_SharedExperiences_Rome.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_Troubleshoot.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_User.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
Access denied - C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
Access denied - C:\WINDOWS\system32\SettingSync.dll
Access denied - C:\WINDOWS\system32\SettingSyncCore.dll
Access denied - C:\WINDOWS\system32\SettingSyncHost.exe
Access denied - C:\WINDOWS\system32\SettingSyncPolicy.dll
Access denied - C:\WINDOWS\system32\setupapi.dll
Access denied - C:\WINDOWS\system32\setupcl.exe
Access denied - C:\WINDOWS\system32\setupcln.dll
Access denied - C:\WINDOWS\system32\setupetw.dll
Access denied - C:\WINDOWS\system32\setupugc.exe
Access denied - C:\WINDOWS\system32\setx.exe
Access denied - C:\WINDOWS\system32\sfc.dll
Access denied - C:\WINDOWS\system32\sfc.exe
Access denied - C:\WINDOWS\system32\sfc_os.dll
Access denied - C:\WINDOWS\system32\shacct.dll
Access denied - C:\WINDOWS\system32\shacctprofile.dll
Access denied - C:\WINDOWS\system32\SharedPCCSP.dll
Access denied - C:\WINDOWS\system32\SharedRealitySvc.dll
Access denied - C:\WINDOWS\system32\SharedStartModel.dll
Access denied - C:\WINDOWS\system32\SharedStartModelShim.dll
Access denied - C:\WINDOWS\system32\ShareHost.dll
Access denied - C:\WINDOWS\system32\sharemediacpl.dll
Access denied - C:\WINDOWS\system32\SHCore.dll
Access denied - C:\WINDOWS\system32\shdocvw.dll
Access denied - C:\WINDOWS\system32\shell32.dll
Access denied - C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
Access denied - C:\WINDOWS\system32\shellstyle.dll
Access denied - C:\WINDOWS\system32\shfolder.dll
Access denied - C:\WINDOWS\system32\shgina.dll
Access denied - C:\WINDOWS\system32\ShiftJIS.uce
Access denied - C:\WINDOWS\system32\shimeng.dll
Access denied - C:\WINDOWS\system32\shimgvw.dll
Access denied - C:\WINDOWS\system32\shlwapi.dll
Access denied - C:\WINDOWS\system32\shpafact.dll
Access denied - C:\WINDOWS\system32\shrpubw.exe
Access denied - C:\WINDOWS\system32\shsetup.dll
Access denied - C:\WINDOWS\system32\shsvcs.dll
Access denied - C:\WINDOWS\system32\shunimpl.dll
Access denied - C:\WINDOWS\system32\shutdown.exe
Access denied - C:\WINDOWS\system32\shutdownext.dll
Access denied - C:\WINDOWS\system32\shutdownux.dll
Access denied - C:\WINDOWS\system32\shwebsvc.dll
Access denied - C:\WINDOWS\system32\signdrv.dll
Access denied - C:\WINDOWS\system32\sigverif.exe
Access denied - C:\WINDOWS\system32\SIHClient.exe
Access denied - C:\WINDOWS\system32\sihost.exe
Access denied - C:\WINDOWS\system32\SimAuth.dll
Access denied - C:\WINDOWS\system32\SimCfg.dll
Access denied - C:\WINDOWS\system32\simpdata.tlb
Access denied - C:\WINDOWS\system32\skci.dll
Access denied - C:\WINDOWS\system32\slc.dll
Access denied - C:\WINDOWS\system32\slcext.dll
Access denied - C:\WINDOWS\system32\SlideToShutDown.exe
Access denied - C:\WINDOWS\system32\slmgr.vbs
Access denied - C:\WINDOWS\system32\slr100.dll
Access denied - C:\WINDOWS\system32\slui.exe
Access denied - C:\WINDOWS\system32\slwga.dll
Access denied - C:\WINDOWS\system32\SmallRoom.bin
Access denied - C:\WINDOWS\system32\SmartCardBackgroundPolicy.dll
Access denied - C:\WINDOWS\system32\SmartcardCredentialProvider.dll
Access denied - C:\WINDOWS\system32\SmartCardSimulator.dll
Access denied - C:\WINDOWS\system32\smartscreen.exe
Access denied - C:\WINDOWS\system32\smartscreenps.dll
Access denied - C:\WINDOWS\system32\SMBHelperClass.dll
Access denied - C:\WINDOWS\system32\smbwmiv2.dll
Access denied - C:\WINDOWS\system32\SmiEngine.dll
Access denied - C:\WINDOWS\system32\smphost.dll
Access denied - C:\WINDOWS\system32\SmsDeviceAccessRevocation.dll
Access denied - C:\WINDOWS\system32\SMSRouter.dll
Access denied - C:\WINDOWS\system32\SmsRouterSvc.dll
Access denied - C:\WINDOWS\system32\smss.exe
Access denied - C:\WINDOWS\system32\SndVol.exe
Access denied - C:\WINDOWS\system32\SndVolSSO.dll
Access denied - C:\WINDOWS\system32\SnippingTool.exe
Access denied - C:\WINDOWS\system32\snmpapi.dll
Access denied - C:\WINDOWS\system32\snmptrap.exe
Access denied - C:\WINDOWS\system32\Snooze_80.contrast-black.png
Access denied - C:\WINDOWS\system32\Snooze_80.contrast-white.png
Access denied - C:\WINDOWS\system32\Snooze_80.png
Access denied - C:\WINDOWS\system32\socialapis.dll
Access denied - C:\WINDOWS\system32\softkbd.dll
Access denied - C:\WINDOWS\system32\softpub.dll
Access denied - C:\WINDOWS\system32\sort.exe
Access denied - C:\WINDOWS\system32\SortServer2003Compat.dll
Access denied - C:\WINDOWS\system32\SortWindows61.dll
Access denied - C:\WINDOWS\system32\SortWindows6Compat.dll
Access denied - C:\WINDOWS\system32\SpaceAgent.exe
Access denied - C:\WINDOWS\system32\spacebridge.dll
Access denied - C:\WINDOWS\system32\SpaceControl.dll
Access denied - C:\WINDOWS\system32\spaceman.exe
Access denied - C:\WINDOWS\system32\SpatializerApo.dll
Access denied - C:\WINDOWS\system32\SpatialStore.dll
Access denied - C:\WINDOWS\system32\spbcd.dll
Access denied - C:\WINDOWS\system32\spcompat.dll
Access denied - C:\WINDOWS\system32\Spectrum.exe
Access denied - C:\WINDOWS\system32\SpectrumSyncClient.dll
Access denied - C:\WINDOWS\system32\SpeechPal.dll
Access denied - C:\WINDOWS\system32\spfileq.dll
Access denied - C:\WINDOWS\system32\spinf.dll
Access denied - C:\WINDOWS\system32\spmpm.dll
Access denied - C:\WINDOWS\system32\spnet.dll
Access denied - C:\WINDOWS\system32\spoolss.dll
Access denied - C:\WINDOWS\system32\spoolsv.exe
Access denied - C:\WINDOWS\system32\spopk.dll
Access denied - C:\WINDOWS\system32\spp.dll
Access denied - C:\WINDOWS\system32\sppc.dll
Access denied - C:\WINDOWS\system32\sppcext.dll
Access denied - C:\WINDOWS\system32\sppcomapi.dll
Access denied - C:\WINDOWS\system32\sppcommdlg.dll
Access denied - C:\WINDOWS\system32\SppExtComObj.Exe
Access denied - C:\WINDOWS\system32\sppinst.dll
Access denied - C:\WINDOWS\system32\sppnp.dll
Access denied - C:\WINDOWS\system32\sppobjs.dll
Access denied - C:\WINDOWS\system32\sppsvc.exe
Access denied - C:\WINDOWS\system32\sppwinob.dll
Access denied - C:\WINDOWS\system32\sppwmi.dll
Access denied - C:\WINDOWS\system32\spwinsat.dll
Access denied - C:\WINDOWS\system32\spwizeng.dll
Access denied - C:\WINDOWS\system32\spwizimg.dll
Access denied - C:\WINDOWS\system32\spwizres.dll
Access denied - C:\WINDOWS\system32\spwmp.dll
Access denied - C:\WINDOWS\system32\sqlcecompact40.dll
Access denied - C:\WINDOWS\system32\sqlceoledb40.dll
Access denied - C:\WINDOWS\system32\sqlceqp40.dll
Access denied - C:\WINDOWS\system32\sqlcese40.dll
Access denied - C:\WINDOWS\system32\sqlsrv32.dll
Access denied - C:\WINDOWS\system32\sqlsrv32.rll
Access denied - C:\WINDOWS\system32\sqmapi.dll
Access denied - C:\WINDOWS\system32\srchadmin.dll
Access denied - C:\WINDOWS\system32\srclient.dll
Access denied - C:\WINDOWS\system32\srcore.dll
Access denied - C:\WINDOWS\system32\srdelayed.exe
Access denied - C:\WINDOWS\system32\SrEvents.dll
Access denied - C:\WINDOWS\system32\SRH.dll
Access denied - C:\WINDOWS\system32\srhelper.dll
Access denied - C:\WINDOWS\system32\srms-apr.dat
Access denied - C:\WINDOWS\system32\srms.dat
Access denied - C:\WINDOWS\system32\srpapi.dll
Access denied - C:\WINDOWS\system32\srrstr.dll
Access denied - C:\WINDOWS\system32\SrTasks.exe
Access denied - C:\WINDOWS\system32\srumapi.dll
Access denied - C:\WINDOWS\system32\srumsvc.dll
Access denied - C:\WINDOWS\system32\srvcli.dll
Access denied - C:\WINDOWS\system32\srvsvc.dll
Access denied - C:\WINDOWS\system32\srwmi.dll
Access denied - C:\WINDOWS\system32\sscore.dll
Access denied - C:\WINDOWS\system32\sscoreext.dll
Access denied - C:\WINDOWS\system32\ssdm.dll
Access denied - C:\WINDOWS\system32\ssdpapi.dll
Access denied - C:\WINDOWS\system32\ssdpsrv.dll
Access denied - C:\WINDOWS\system32\sspicli.dll
Access denied - C:\WINDOWS\system32\sspisrv.dll
Access denied - C:\WINDOWS\system32\SSShim.dll
Access denied - C:\WINDOWS\system32\ssText3d.scr
Access denied - C:\WINDOWS\system32\sstpsvc.dll
Access denied - C:\WINDOWS\system32\StartTileData.dll
Access denied - C:\WINDOWS\system32\Startupscan.dll
Access denied - C:\WINDOWS\system32\StateRepository.Core.dll
Access denied - C:\WINDOWS\system32\StaticDictDS.dll
Access denied - C:\WINDOWS\system32\stclient.dll
Access denied - C:\WINDOWS\system32\stdole2.tlb
Access denied - C:\WINDOWS\system32\stdole32.tlb
Access denied - C:\WINDOWS\system32\sti.dll
Access denied - C:\WINDOWS\system32\sti_ci.dll
Access denied - C:\WINDOWS\system32\stobject.dll
Access denied - C:\WINDOWS\system32\StorageContextHandler.dll
Access denied - C:\WINDOWS\system32\StorageUsage.dll
Access denied - C:\WINDOWS\system32\storagewmi.dll
Access denied - C:\WINDOWS\system32\storagewmi_passthru.dll
Access denied - C:\WINDOWS\system32\stordiag.exe
Access denied - C:\WINDOWS\system32\storewuauth.dll
Access denied - C:\WINDOWS\system32\Storprop.dll
Access denied - C:\WINDOWS\system32\StorSvc.dll
Access denied - C:\WINDOWS\system32\streamci.dll
Access denied - C:\WINDOWS\system32\StructuredQuery.dll
Access denied - C:\WINDOWS\system32\SubRange.uce
Access denied - C:\WINDOWS\system32\subst.exe
Access denied - C:\WINDOWS\system32\sud.dll
Access denied - C:\WINDOWS\system32\svchost.exe
Access denied - C:\WINDOWS\system32\svf.dll
Access denied - C:\WINDOWS\system32\svsvc.dll
Access denied - C:\WINDOWS\system32\swprv.dll
Access denied - C:\WINDOWS\system32\sxproxy.dll
Access denied - C:\WINDOWS\system32\sxs.dll
Access denied - C:\WINDOWS\system32\sxshared.dll
Access denied - C:\WINDOWS\system32\sxssrv.dll
Access denied - C:\WINDOWS\system32\sxsstore.dll
Access denied - C:\WINDOWS\system32\sxstrace.exe
Access denied - C:\WINDOWS\system32\SyncCenter.dll
Access denied - C:\WINDOWS\system32\SyncController.dll
Access denied - C:\WINDOWS\system32\SyncHost.exe
Access denied - C:\WINDOWS\system32\SyncHostps.dll
Access denied - C:\WINDOWS\system32\SyncInfrastructure.dll
Access denied - C:\WINDOWS\system32\SyncInfrastructureps.dll
Access denied - C:\WINDOWS\system32\SyncProxy.dll
Access denied - C:\WINDOWS\system32\Syncreg.dll
Access denied - C:\WINDOWS\system32\SyncRes.dll
Access denied - C:\WINDOWS\system32\SyncSettings.dll
Access denied - C:\WINDOWS\system32\syncutil.dll
Access denied - C:\WINDOWS\system32\sysclass.dll
Access denied - C:\WINDOWS\system32\sysdm.cpl
Access denied - C:\WINDOWS\system32\SysFxUI.dll
Access denied - C:\WINDOWS\system32\sysmain.dll
Access denied - C:\WINDOWS\system32\sysmon.ocx
Access denied - C:\WINDOWS\system32\sysntfy.dll
Access denied - C:\WINDOWS\system32\sysprint.sep
Access denied - C:\WINDOWS\system32\sysprtj.sep
Access denied - C:\WINDOWS\system32\SysResetErr.exe
Access denied - C:\WINDOWS\system32\syssetup.dll
Access denied - C:\WINDOWS\system32\systemcpl.dll
Access denied - C:\WINDOWS\system32\SystemEventsBrokerClient.dll
Access denied - C:\WINDOWS\system32\SystemEventsBrokerServer.dll
Access denied - C:\WINDOWS\system32\systeminfo.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesAdvanced.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesComputerName.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesDataExecutionPrevention.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesHardware.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesPerformance.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesProtection.exe
Access denied - C:\WINDOWS\system32\SystemPropertiesRemote.exe
Access denied - C:\WINDOWS\system32\systemreset.exe
Access denied - C:\WINDOWS\system32\SystemSettings.DataModel.dll
Access denied - C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
Access denied - C:\WINDOWS\system32\SystemSettings.Handlers.dll
Access denied - C:\WINDOWS\system32\SystemSettings.SettingsExtensibility.dll
Access denied - C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
Access denied - C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
Access denied - C:\WINDOWS\system32\SystemSettingsBroker.exe
Access denied - C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
Access denied - C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
Access denied - C:\WINDOWS\system32\SystemSupportInfo.dll
Access denied - C:\WINDOWS\system32\SystemUWPLauncher.exe
Access denied - C:\WINDOWS\system32\systray.exe
Access denied - C:\WINDOWS\system32\t2embed.dll
Access denied - C:\WINDOWS\system32\Tabbtn.dll
Access denied - C:\WINDOWS\system32\TabbtnEx.dll
Access denied - C:\WINDOWS\system32\tabcal.exe
Access denied - C:\WINDOWS\system32\TabletPC.cpl
Access denied - C:\WINDOWS\system32\TabSvc.dll
Access denied - C:\WINDOWS\system32\takeown.exe
Access denied - C:\WINDOWS\system32\tapi3.dll
Access denied - C:\WINDOWS\system32\tapi32.dll
Access denied - C:\WINDOWS\system32\tapilua.dll
Access denied - C:\WINDOWS\system32\TapiMigPlugin.dll
Access denied - C:\WINDOWS\system32\tapiperf.dll
Access denied - C:\WINDOWS\system32\tapisrv.dll
Access denied - C:\WINDOWS\system32\TapiSysprep.dll
Access denied - C:\WINDOWS\system32\tapiui.dll
Access denied - C:\WINDOWS\system32\TapiUnattend.exe
Access denied - C:\WINDOWS\system32\TaskApis.dll
Access denied - C:\WINDOWS\system32\taskbarcpl.dll
Access denied - C:\WINDOWS\system32\taskcomp.dll
Access denied - C:\WINDOWS\system32\TaskFlowDataEngine.dll
Access denied - C:\WINDOWS\system32\taskhostw.exe
Access denied - C:\WINDOWS\system32\taskkill.exe
Access denied - C:\WINDOWS\system32\tasklist.exe
Access denied - C:\WINDOWS\system32\Taskmgr.exe
Access denied - C:\WINDOWS\system32\taskschd.dll
Access denied - C:\WINDOWS\system32\taskschd.msc
Access denied - C:\WINDOWS\system32\TaskSchdPS.dll
Access denied - C:\WINDOWS\system32\tbauth.dll
Access denied - C:\WINDOWS\system32\tbs.dll
Access denied - C:\WINDOWS\system32\tcmsetup.exe
Access denied - C:\WINDOWS\system32\tcpbidi.xml
Access denied - C:\WINDOWS\system32\tcpipcfg.dll
Access denied - C:\WINDOWS\system32\tcpmib.dll
Access denied - C:\WINDOWS\system32\tcpmon.dll
Access denied - C:\WINDOWS\system32\tcpmon.ini
Access denied - C:\WINDOWS\system32\tcpmonui.dll
Access denied - C:\WINDOWS\system32\TCPSVCS.EXE
Access denied - C:\WINDOWS\system32\tdc.ocx
Access denied - C:\WINDOWS\system32\tdh.dll
Access denied - C:\WINDOWS\system32\TDLMigration.dll
Access denied - C:\WINDOWS\system32\tdlrecover.exe
Access denied - C:\WINDOWS\system32\telephon.cpl
Access denied - C:\WINDOWS\system32\TelephonyInteractiveUser.dll
Access denied - C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
Access denied - C:\WINDOWS\system32\TempSignedLicenseExchangeTask.dll
Access denied - C:\WINDOWS\system32\termmgr.dll
Access denied - C:\WINDOWS\system32\termsrv.dll
Access denied - C:\WINDOWS\system32\tetheringclient.dll
Access denied - C:\WINDOWS\system32\tetheringconfigsp.dll
Access denied - C:\WINDOWS\system32\TetheringIeProvider.dll
Access denied - C:\WINDOWS\system32\TetheringMgr.dll
Access denied - C:\WINDOWS\system32\tetheringservice.dll
Access denied - C:\WINDOWS\system32\TetheringStation.dll
Access denied - C:\WINDOWS\system32\TextInputFramework.dll
Access denied - C:\WINDOWS\system32\themecpl.dll
Access denied - C:\WINDOWS\system32\themeservice.dll
Access denied - C:\WINDOWS\system32\themeui.dll
Access denied - C:\WINDOWS\system32\threadpoolwinrt.dll
Access denied - C:\WINDOWS\system32\thumbcache.dll
Access denied - C:\WINDOWS\system32\ThumbnailExtractionHost.exe
Access denied - C:\WINDOWS\system32\tier2punctuations.dll
Access denied - C:\WINDOWS\system32\TieringEngineProxy.dll
Access denied - C:\WINDOWS\system32\TieringEngineService.exe
Access denied - C:\WINDOWS\system32\TileDataRepository.dll
Access denied - C:\WINDOWS\system32\tileobjserver.dll
Access denied - C:\WINDOWS\system32\TimeBrokerClient.dll
Access denied - C:\WINDOWS\system32\TimeBrokerServer.dll
Access denied - C:\WINDOWS\system32\timedate.cpl
Access denied - C:\WINDOWS\system32\TimeDateMUICallback.dll
Access denied - C:\WINDOWS\system32\timeout.exe
Access denied - C:\WINDOWS\system32\TimeSyncTask.dll
Access denied - C:\WINDOWS\system32\tlscsp.dll
Access denied - C:\WINDOWS\system32\tokenbinding.dll
Access denied - C:\WINDOWS\system32\TokenBroker.dll
Access denied - C:\WINDOWS\system32\TokenBrokerCookies.exe
Access denied - C:\WINDOWS\system32\TokenBrokerUI.dll
Access denied - C:\WINDOWS\system32\tpm.msc
Access denied - C:\WINDOWS\system32\TpmCertResources.dll
Access denied - C:\WINDOWS\system32\tpmcompc.dll
Access denied - C:\WINDOWS\system32\TpmCoreProvisioning.dll
Access denied - C:\WINDOWS\system32\TpmInit.exe
Access denied - C:\WINDOWS\system32\TpmTasks.dll
Access denied - C:\WINDOWS\system32\tpmvsc.dll
Access denied - C:\WINDOWS\system32\tpmvscmgr.exe
Access denied - C:\WINDOWS\system32\tpmvscmgrsvr.exe
Access denied - C:\WINDOWS\system32\tquery.dll
Access denied - C:\WINDOWS\system32\tracerpt.exe
Access denied - C:\WINDOWS\system32\TRACERT.EXE
Access denied - C:\WINDOWS\system32\traffic.dll
Access denied - C:\WINDOWS\system32\TransformPPSToWlan.xslt
Access denied - C:\WINDOWS\system32\TransformPPSToWlanCredentials.xslt
Access denied - C:\WINDOWS\system32\TransliterationRanker.dll
Access denied - C:\WINDOWS\system32\tree.com
Access denied - C:\WINDOWS\system32\trie.dll
Access denied - C:\WINDOWS\system32\trkwks.dll
Access denied - C:\WINDOWS\system32\TrustedSignalCredProv.dll
Access denied - C:\WINDOWS\system32\tsbyuv.dll
Access denied - C:\WINDOWS\system32\tsddd.dll
Access denied - C:\WINDOWS\system32\tsgqec.dll
Access denied - C:\WINDOWS\system32\tsmf.dll
Access denied - C:\WINDOWS\system32\TSpkg.dll
Access denied - C:\WINDOWS\system32\TSSessionUX.dll
Access denied - C:\WINDOWS\system32\TSTheme.exe
Access denied - C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
Access denied - C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyExtension.dll
Access denied - C:\WINDOWS\system32\TSWbPrxy.exe
Access denied - C:\WINDOWS\system32\TSWorkspace.dll
Access denied - C:\WINDOWS\system32\TsWpfWrp.exe
Access denied - C:\WINDOWS\system32\TtlsAuth.dll
Access denied - C:\WINDOWS\system32\TtlsCfg.dll
Access denied - C:\WINDOWS\system32\TtlsExt.dll
Access denied - C:\WINDOWS\system32\tvratings.dll
Access denied - C:\WINDOWS\system32\twext.dll
Access denied - C:\WINDOWS\system32\twinapi.appcore.dll
Access denied - C:\WINDOWS\system32\twinapi.dll
Access denied - C:\WINDOWS\system32\twinui.appcore.dll
Access denied - C:\WINDOWS\system32\twinui.dll
Access denied - C:\WINDOWS\system32\twinui.pcshell.dll
Access denied - C:\WINDOWS\system32\txflog.dll
Access denied - C:\WINDOWS\system32\txfw32.dll
Access denied - C:\WINDOWS\system32\typeperf.exe
Access denied - C:\WINDOWS\system32\tzautoupdate.dll
Access denied - C:\WINDOWS\system32\tzres.dll
Access denied - C:\WINDOWS\system32\tzsync.exe
Access denied - C:\WINDOWS\system32\tzsyncres.dll
Access denied - C:\WINDOWS\system32\tzutil.exe
Access denied - C:\WINDOWS\system32\ubpm.dll
Access denied - C:\WINDOWS\system32\ucmhc.dll
Access denied - C:\WINDOWS\system32\ucrtbase.dll
Access denied - C:\WINDOWS\system32\ucrtbase_enclave.dll
Access denied - C:\WINDOWS\system32\ucsvc.exe
Access denied - C:\WINDOWS\system32\udhisapi.dll
Access denied - C:\WINDOWS\system32\uDWM.dll
Access denied - C:\WINDOWS\system32\uexfat.dll
Access denied - C:\WINDOWS\system32\ufat.dll
Access denied - C:\WINDOWS\system32\UI0Detect.exe
Access denied - C:\WINDOWS\system32\UiaManager.dll
Access denied - C:\WINDOWS\system32\UIAnimation.dll
Access denied - C:\WINDOWS\system32\UIAutomationCore.dll
Access denied - C:\WINDOWS\system32\uicom.dll
Access denied - C:\WINDOWS\system32\UIManagerBrokerps.dll
Access denied - C:\WINDOWS\system32\UIMgrBroker.exe
Access denied - C:\WINDOWS\system32\uireng.dll
Access denied - C:\WINDOWS\system32\UIRibbon.dll
Access denied - C:\WINDOWS\system32\UIRibbonRes.dll
Access denied - C:\WINDOWS\system32\ulib.dll
Access denied - C:\WINDOWS\system32\umb.dll
Access denied - C:\WINDOWS\system32\umdmxfrm.dll
Access denied - C:\WINDOWS\system32\umpnpmgr.dll
Access denied - C:\WINDOWS\system32\umpo-overrides.dll
Access denied - C:\WINDOWS\system32\umpo.dll
Access denied - C:\WINDOWS\system32\umpoext.dll
Access denied - C:\WINDOWS\system32\umpowmi.dll
Access denied - C:\WINDOWS\system32\umrdp.dll
Access denied - C:\WINDOWS\system32\unattend.dll
Access denied - C:\WINDOWS\system32\unenrollhook.dll
Access denied - C:\WINDOWS\system32\unimdm.tsp
Access denied - C:\WINDOWS\system32\unimdmat.dll
Access denied - C:\WINDOWS\system32\uniplat.dll
Access denied - C:\WINDOWS\system32\Unistore.dll
Access denied - C:\WINDOWS\system32\unlodctr.exe
Access denied - C:\WINDOWS\system32\unregmp2.exe
Access denied - C:\WINDOWS\system32\untfs.dll
Access denied - C:\WINDOWS\system32\UpdateAgent.dll
Access denied - C:\WINDOWS\system32\updatecsp.dll
Access denied - C:\WINDOWS\system32\updatehandlers.dll
Access denied - C:\WINDOWS\system32\updatepolicy.dll
Access denied - C:\WINDOWS\system32\UpgradeResultsUI.exe
Access denied - C:\WINDOWS\system32\upnp.dll
Access denied - C:\WINDOWS\system32\upnpcont.exe
Access denied - C:\WINDOWS\system32\upnphost.dll
Access denied - C:\WINDOWS\system32\uReFS.dll
Access denied - C:\WINDOWS\system32\uReFSv1.dll
Access denied - C:\WINDOWS\system32\ureg.dll
Access denied - C:\WINDOWS\system32\url.dll
Access denied - C:\WINDOWS\system32\urlmon.dll
Access denied - C:\WINDOWS\system32\UsbCApi.dll
Access denied - C:\WINDOWS\system32\usbceip.dll
Access denied - C:\WINDOWS\system32\usbmon.dll
Access denied - C:\WINDOWS\system32\usbperf.dll
Access denied - C:\WINDOWS\system32\UsbSettingsHandlers.dll
Access denied - C:\WINDOWS\system32\UsbTask.dll
Access denied - C:\WINDOWS\system32\usbui.dll
Access denied - C:\WINDOWS\system32\user32.dll
Access denied - C:\WINDOWS\system32\UserAccountBroker.exe
Access denied - C:\WINDOWS\system32\UserAccountControlSettings.dll
Access denied - C:\WINDOWS\system32\UserAccountControlSettings.exe
Access denied - C:\WINDOWS\system32\usercpl.dll
Access denied - C:\WINDOWS\system32\UserDataAccessRes.dll
Access denied - C:\WINDOWS\system32\UserDataAccountApis.dll
Access denied - C:\WINDOWS\system32\UserDataLanguageUtil.dll
Access denied - C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
Access denied - C:\WINDOWS\system32\UserDataService.dll
Access denied - C:\WINDOWS\system32\UserDataTimeUtil.dll
Access denied - C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
Access denied - C:\WINDOWS\system32\UserDeviceRegistration.dll
Access denied - C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
Access denied - C:\WINDOWS\system32\userenv.dll
Access denied - C:\WINDOWS\system32\userinit.exe
Access denied - C:\WINDOWS\system32\userinitext.dll
Access denied - C:\WINDOWS\system32\UserLanguageProfileCallback.dll
Access denied - C:\WINDOWS\system32\UserLanguagesCpl.dll
Access denied - C:\WINDOWS\system32\usermgr.dll
Access denied - C:\WINDOWS\system32\usermgrcli.dll
Access denied - C:\WINDOWS\system32\UserMgrProxy.dll
Access denied - C:\WINDOWS\system32\usk.rs
Access denied - C:\WINDOWS\system32\usoapi.dll
Access denied - C:\WINDOWS\system32\UsoClient.exe
Access denied - C:\WINDOWS\system32\usocore.dll
Access denied - C:\WINDOWS\system32\usp10.dll
Access denied - C:\WINDOWS\system32\ustprov.dll
Access denied - C:\WINDOWS\system32\utcutil.dll
Access denied - C:\WINDOWS\system32\utildll.dll
Access denied - C:\WINDOWS\system32\Utilman.exe
Access denied - C:\WINDOWS\system32\uudf.dll
Access denied - C:\WINDOWS\system32\UvcModel.dll
Access denied - C:\WINDOWS\system32\UXInit.dll
Access denied - C:\WINDOWS\system32\uxlib.dll
Access denied - C:\WINDOWS\system32\uxlibres.dll
Access denied - C:\WINDOWS\system32\uxtheme.dll
Access denied - C:\WINDOWS\system32\vac.exe
Access denied - C:\WINDOWS\system32\VAN.dll
Access denied - C:\WINDOWS\system32\Vault.dll
Access denied - C:\WINDOWS\system32\vaultcli.dll
Access denied - C:\WINDOWS\system32\VaultCmd.exe
Access denied - C:\WINDOWS\system32\VaultRoaming.dll
Access denied - C:\WINDOWS\system32\vaultsvc.dll
Access denied - C:\WINDOWS\system32\VBICodec.ax
Access denied - C:\WINDOWS\system32\vbisurf.ax
Access denied - C:\WINDOWS\system32\vbscript.dll
Access denied - C:\WINDOWS\system32\VCardParser.dll
Access denied - C:\WINDOWS\system32\vds.exe
Access denied - C:\WINDOWS\system32\vdsbas.dll
Access denied - C:\WINDOWS\system32\vdsdyn.dll
Access denied - C:\WINDOWS\system32\vdsldr.exe
Access denied - C:\WINDOWS\system32\vdsutil.dll
Access denied - C:\WINDOWS\system32\vdsvd.dll
Access denied - C:\WINDOWS\system32\vds_ps.dll
Access denied - C:\WINDOWS\system32\VEDataLayerHelpers.dll
Access denied - C:\WINDOWS\system32\VEEventDispatcher.dll
Access denied - C:\WINDOWS\system32\verclsid.exe
Access denied - C:\WINDOWS\system32\verifier.dll
Access denied - C:\WINDOWS\system32\verifier.exe
Access denied - C:\WINDOWS\system32\verifiergui.exe
Access denied - C:\WINDOWS\system32\version.dll
Access denied - C:\WINDOWS\system32\vertdll.dll
Access denied - C:\WINDOWS\system32\VEStoreEventHandlers.dll
Access denied - C:\WINDOWS\system32\vfwwdm32.dll
Access denied - C:\WINDOWS\system32\vidcap.ax
Access denied - C:\WINDOWS\system32\VideoHandlers.dll
Access denied - C:\WINDOWS\system32\VIDRESZR.DLL
Access denied - C:\WINDOWS\system32\virtdisk.dll
Access denied - C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
Access denied - C:\WINDOWS\system32\vmbuspipe.dll
Access denied - C:\WINDOWS\system32\vmictimeprovider.dll
Access denied - C:\WINDOWS\system32\vmrdvcore.dll
Access denied - C:\WINDOWS\system32\VocabRoamingHandler.dll
Access denied - C:\WINDOWS\system32\VoiceActivationManager.dll
Access denied - C:\WINDOWS\system32\VoipRT.dll
Access denied - C:\WINDOWS\system32\vpnike.dll
Access denied - C:\WINDOWS\system32\vpnikeapi.dll
Access denied - C:\WINDOWS\system32\VpnSohDesktop.dll
Access denied - C:\WINDOWS\system32\VPNv2CSP.dll
Access denied - C:\WINDOWS\system32\VrdUmed.dll
Access denied - C:\WINDOWS\system32\VscMgrPS.dll
Access denied - C:\WINDOWS\system32\vssadmin.exe
Access denied - C:\WINDOWS\system32\vssapi.dll
Access denied - C:\WINDOWS\system32\vsstrace.dll
Access denied - C:\WINDOWS\system32\VSSVC.exe
Access denied - C:\WINDOWS\system32\vss_ps.dll
Access denied - C:\WINDOWS\system32\w32time.dll
Access denied - C:\WINDOWS\system32\w32tm.exe
Access denied - C:\WINDOWS\system32\w32topl.dll
Access denied - C:\WINDOWS\system32\WaaSAssessment.dll
Access denied - C:\WINDOWS\system32\WaaSMedic.exe
Access denied - C:\WINDOWS\system32\WABSyncProvider.dll
Access denied - C:\WINDOWS\system32\waitfor.exe
Access denied - C:\WINDOWS\system32\WalletBackgroundServiceProxy.dll
Access denied - C:\WINDOWS\system32\WalletProxy.dll
Access denied - C:\WINDOWS\system32\WalletService.dll
Access denied - C:\WINDOWS\system32\WallpaperHost.exe
Access denied - C:\WINDOWS\system32\wavemsp.dll
Access denied - C:\WINDOWS\system32\wbadmin.exe
Access denied - C:\WINDOWS\system32\wbemcomn.dll
Access denied - C:\WINDOWS\system32\wbengine.exe
Access denied - C:\WINDOWS\system32\wbiosrvc.dll
Access denied - C:\WINDOWS\system32\wcimage.dll
Access denied - C:\WINDOWS\system32\wcl.dll
Access denied - C:\WINDOWS\system32\wclEtw.dll
Access denied - C:\WINDOWS\system32\wclPowrProf.dll
Access denied - C:\WINDOWS\system32\wclSqm.dll
Access denied - C:\WINDOWS\system32\wclUnicode.dll
Access denied - C:\WINDOWS\system32\wclWdi.dll
Access denied - C:\WINDOWS\system32\wcmapi.dll
Access denied - C:\WINDOWS\system32\wcmcsp.dll
Access denied - C:\WINDOWS\system32\wcmsvc.dll
Access denied - C:\WINDOWS\system32\WcnApi.dll
Access denied - C:\WINDOWS\system32\wcncsvc.dll
Access denied - C:\WINDOWS\system32\WcnEapAuthProxy.dll
Access denied - C:\WINDOWS\system32\WcnEapPeerProxy.dll
Access denied - C:\WINDOWS\system32\WcnNetsh.dll
Access denied - C:\WINDOWS\system32\wcnwiz.dll
Access denied - C:\WINDOWS\system32\wc_storage.dll
Access denied - C:\WINDOWS\system32\wdc.dll
Access denied - C:\WINDOWS\system32\wdi.dll
Access denied - C:\WINDOWS\system32\wdigest.dll
Access denied - C:\WINDOWS\system32\wdmaud.drv
Access denied - C:\WINDOWS\system32\wdscore.dll
Access denied - C:\WINDOWS\system32\WdsUnattendTemplate.xml
Access denied - C:\WINDOWS\system32\WEB.rs
Access denied - C:\WINDOWS\system32\webauthn.dll
Access denied - C:\WINDOWS\system32\WebCache.exe
Access denied - C:\WINDOWS\system32\WebcamUi.dll
Access denied - C:\WINDOWS\system32\webcheck.dll
Access denied - C:\WINDOWS\system32\WebClnt.dll
Access denied - C:\WINDOWS\system32\webio.dll
Access denied - C:\WINDOWS\system32\webplatstorageserver.dll
Access denied - C:\WINDOWS\system32\WebRuntimeManager.dll
Access denied - C:\WINDOWS\system32\webservices.dll
Access denied - C:\WINDOWS\system32\Websocket.dll
Access denied - C:\WINDOWS\system32\wecapi.dll
Access denied - C:\WINDOWS\system32\wecsvc.dll
Access denied - C:\WINDOWS\system32\wecutil.exe
Access denied - C:\WINDOWS\system32\wephostsvc.dll
Access denied - C:\WINDOWS\system32\wer.dll
Access denied - C:\WINDOWS\system32\werconcpl.dll
Access denied - C:\WINDOWS\system32\wercplsupport.dll
Access denied - C:\WINDOWS\system32\werdiagcontroller.dll
Access denied - C:\WINDOWS\system32\weretw.dll
Access denied - C:\WINDOWS\system32\WerFault.exe
Access denied - C:\WINDOWS\system32\WerFaultSecure.exe
Access denied - C:\WINDOWS\system32\wermgr.exe
Access denied - C:\WINDOWS\system32\wersvc.dll
Access denied - C:\WINDOWS\system32\werui.dll
Access denied - C:\WINDOWS\system32\wevtapi.dll
Access denied - C:\WINDOWS\system32\wevtfwd.dll
Access denied - C:\WINDOWS\system32\wevtsvc.dll
Access denied - C:\WINDOWS\system32\wevtutil.exe
Access denied - C:\WINDOWS\system32\wextract.exe
Access denied - C:\WINDOWS\system32\WF.msc
Access denied - C:\WINDOWS\system32\wfapigp.dll
Access denied - C:\WINDOWS\system32\wfdprov.dll
Access denied - C:\WINDOWS\system32\WFDSConMgr.dll
Access denied - C:\WINDOWS\system32\WFDSConMgrSvc.dll
Access denied - C:\WINDOWS\system32\WfHC.dll
Access denied - C:\WINDOWS\system32\WFS.exe
Access denied - C:\WINDOWS\system32\WFSR.dll
Access denied - C:\WINDOWS\system32\whealogr.dll
Access denied - C:\WINDOWS\system32\where.exe
Access denied - C:\WINDOWS\system32\whhelper.dll
Access denied - C:\WINDOWS\system32\whoami.exe
Access denied - C:\WINDOWS\system32\wiaacmgr.exe
Access denied - C:\WINDOWS\system32\wiaaut.dll
Access denied - C:\WINDOWS\system32\wiadefui.dll
Access denied - C:\WINDOWS\system32\wiadss.dll
Access denied - C:\WINDOWS\system32\WiaExtensionHost64.dll
Access denied - C:\WINDOWS\system32\wiarpc.dll
Access denied - C:\WINDOWS\system32\wiascanprofiles.dll
Access denied - C:\WINDOWS\system32\wiaservc.dll
Access denied - C:\WINDOWS\system32\wiashext.dll
Access denied - C:\WINDOWS\system32\wiatrace.dll
Access denied - C:\WINDOWS\system32\wiawow64.exe
Access denied - C:\WINDOWS\system32\WiFiConfigSP.dll
Access denied - C:\WINDOWS\system32\wificonnapi.dll
Access denied - C:\WINDOWS\system32\WiFiDisplay.dll
Access denied - C:\WINDOWS\system32\wifinetworkmanager.dll
Access denied - C:\WINDOWS\system32\wifiprofilessettinghandler.dll
Access denied - C:\WINDOWS\system32\wifitask.exe
Access denied - C:\WINDOWS\system32\WimBootCompress.ini
Access denied - C:\WINDOWS\system32\wimgapi.dll
Access denied - C:\WINDOWS\system32\wimserv.exe
Access denied - C:\WINDOWS\system32\win32appinventorycsp.dll
Access denied - C:\WINDOWS\system32\win32k.sys
Access denied - C:\WINDOWS\system32\win32kbase.sys
Access denied - C:\WINDOWS\system32\win32kfull.sys
Access denied - C:\WINDOWS\system32\win32spl.dll
Access denied - C:\WINDOWS\system32\win32u.dll
Access denied - C:\WINDOWS\system32\winbio.dll
Access denied - C:\WINDOWS\system32\WinBioDataModel.dll
Access denied - C:\WINDOWS\system32\WinBioDataModelOOBE.exe
Access denied - C:\WINDOWS\system32\winbioext.dll
Access denied - C:\WINDOWS\system32\winbrand.dll
Access denied - C:\WINDOWS\system32\wincorlib.dll
Access denied - C:\WINDOWS\system32\wincredprovider.dll
Access denied - C:\WINDOWS\system32\wincredui.dll
Access denied - C:\WINDOWS\system32\WindowManagement.dll
Access denied - C:\WINDOWS\system32\Windows.AccountsControl.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
Access denied - C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
Access denied - C:\WINDOWS\system32\Windows.CloudDomainJoinAUG.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.CloudStore.dll
Access denied - C:\WINDOWS\system32\Windows.CloudStore.Schema.DesktopShell.dll
Access denied - C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
Access denied - C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
Access denied - C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
Access denied - C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
Access denied - C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Data.Pdf.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Background.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Background.ps.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Custom.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Haptics.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Lights.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Midi.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Perception.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Picker.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Portable.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Printers.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Printers.Extensions.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Radios.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Scanners.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Sensors.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.Usb.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.WiFi.dll
Access denied - C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
Access denied - C:\WINDOWS\system32\Windows.Energy.dll
Access denied - C:\WINDOWS\system32\Windows.Gaming.Input.dll
Access denied - C:\WINDOWS\system32\Windows.Gaming.Preview.dll
Access denied - C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
Access denied - C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
Access denied - C:\WINDOWS\system32\Windows.Globalization.dll
Access denied - C:\WINDOWS\system32\Windows.Globalization.Fontgroups.dll
Access denied - C:\WINDOWS\system32\Windows.Globalization.PhoneNumberFormatting.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.Printing.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
Access denied - C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
Access denied - C:\WINDOWS\system32\Windows.Help.Runtime.dll
Access denied - C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.AdaptiveCards.XamlCardRenderer.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Management.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.SecurityMitigationsBroker.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
Access denied - C:\WINDOWS\system32\windows.internal.shellcommon.AppResolverModal.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.ShellCommon.Broker.dll
Access denied - C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.Signals.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.UI.BioEnrollment.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Management.Workplace.dll
Access denied - C:\WINDOWS\system32\Windows.Management.Workplace.WorkplaceSettings.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Audio.dll
Access denied - C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
Access denied - C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
Access denied - C:\WINDOWS\system32\Windows.Media.Devices.dll
Access denied - C:\WINDOWS\system32\Windows.Media.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Editing.dll
Access denied - C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Import.dll
Access denied - C:\WINDOWS\system32\Windows.Media.MediaControl.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Ocr.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Playback.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Renewal.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Speech.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Streaming.dll
Access denied - C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
Access denied - C:\WINDOWS\system32\Windows.Mirage.dll
Access denied - C:\WINDOWS\system32\Windows.Mirage.Internal.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.HostName.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.Proximity.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.Vpn.dll
Access denied - C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
Access denied - C:\WINDOWS\system32\Windows.Payments.dll
Access denied - C:\WINDOWS\system32\Windows.Perception.Stub.dll
Access denied - C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
Access denied - C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
Access denied - C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
Access denied - C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
Access denied - C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
Access denied - C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
Access denied - C:\WINDOWS\system32\Windows.Sets.dll
Access denied - C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
Access denied - C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
Access denied - C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
Access denied - C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
Access denied - C:\WINDOWS\system32\Windows.Shell.ServiceHostBuilder.dll
Access denied - C:\WINDOWS\system32\Windows.Shell.StartLayoutPopulationEvents.dll
Access denied - C:\WINDOWS\system32\Windows.StateRepository.dll
Access denied - C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
Access denied - C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
Access denied - C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
Access denied - C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
Access denied - C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
Access denied - C:\WINDOWS\system32\Windows.Storage.Compression.dll
Access denied - C:\WINDOWS\system32\windows.storage.dll
Access denied - C:\WINDOWS\system32\Windows.Storage.OneCore.dll
Access denied - C:\WINDOWS\system32\Windows.Storage.Search.dll
Access denied - C:\WINDOWS\system32\Windows.System.Diagnostics.dll
Access denied - C:\WINDOWS\system32\Windows.System.Diagnostics.Telemetry.PlatformTelemetryClient.dll
Access denied - C:\WINDOWS\system32\Windows.System.Diagnostics.TraceReporting.PlatformDiagnosticActions.dll
Access denied - C:\WINDOWS\system32\Windows.System.Launcher.dll
Access denied - C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
Access denied - C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
Access denied - C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
Access denied - C:\WINDOWS\system32\Windows.System.Profile.SystemId.dll
Access denied - C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
Access denied - C:\WINDOWS\system32\Windows.System.RemoteDesktop.dll
Access denied - C:\WINDOWS\system32\Windows.System.SystemManagement.dll
Access denied - C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
Access denied - C:\WINDOWS\system32\Windows.System.UserProfile.DiagnosticsSettings.dll
Access denied - C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
Access denied - C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
Access denied - C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Cred.dll
Access denied - C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
Access denied - C:\WINDOWS\system32\Windows.UI.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Immersive.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Input.Inking.Analysis.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Logon.dll
Access denied - C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Search.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Shell.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Storage.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
Access denied - C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
Access denied - C:\WINDOWS\system32\Windows.UI.XamlHost.dll
Access denied - C:\WINDOWS\system32\Windows.WARP.JITService.dll
Access denied - C:\WINDOWS\system32\Windows.WARP.JITService.exe
Access denied - C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
Access denied - C:\WINDOWS\system32\Windows.Web.dll
Access denied - C:\WINDOWS\system32\Windows.Web.Http.dll
Access denied - C:\WINDOWS\system32\WindowsActionDialog.exe
Access denied - C:\WINDOWS\system32\WindowsCodecs.dll
Access denied - C:\WINDOWS\system32\WindowsCodecsExt.dll
Access denied - C:\WINDOWS\system32\WindowsCodecsRaw.dll
Access denied - C:\WINDOWS\system32\WindowsCodecsRaw.txt
Access denied - C:\WINDOWS\system32\WindowsDefaultHeatProcessor.dll
Access denied - C:\WINDOWS\system32\windowslivelogin.dll
Access denied - C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
Access denied - C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
Access denied - C:\WINDOWS\system32\winethc.dll
Access denied - C:\WINDOWS\system32\WinFax.dll
Access denied - C:\WINDOWS\system32\winhttp.dll
Access denied - C:\WINDOWS\system32\winhttpcom.dll
Access denied - C:\WINDOWS\system32\wininet.dll
Access denied - C:\WINDOWS\system32\wininetlui.dll
Access denied - C:\WINDOWS\system32\wininit.exe
Access denied - C:\WINDOWS\system32\wininitext.dll
Access denied - C:\WINDOWS\system32\winipcfile.dll
Access denied - C:\WINDOWS\system32\winipcsecproc.dll
Access denied - C:\WINDOWS\system32\winipsec.dll
Access denied - C:\WINDOWS\system32\winjson.dll
Access denied - C:\WINDOWS\system32\Winlangdb.dll
Access denied - C:\WINDOWS\system32\winload.efi
Access denied - C:\WINDOWS\system32\winload.exe
Access denied - C:\WINDOWS\system32\winlogon.exe
Access denied - C:\WINDOWS\system32\winlogonext.dll
Access denied - C:\WINDOWS\system32\winmde.dll
Access denied - C:\WINDOWS\system32\winmm.dll
Access denied - C:\WINDOWS\system32\winmmbase.dll
Access denied - C:\WINDOWS\system32\winmsipc.dll
Access denied - C:\WINDOWS\system32\WinMsoIrmProtector.dll
Access denied - C:\WINDOWS\system32\winnlsres.dll
Access denied - C:\WINDOWS\system32\winnsi.dll
Access denied - C:\WINDOWS\system32\WinOpcIrmProtector.dll
Access denied - C:\WINDOWS\system32\winresume.efi
Access denied - C:\WINDOWS\system32\winresume.exe
Access denied - C:\WINDOWS\system32\winrm.cmd
Access denied - C:\WINDOWS\system32\winrm.vbs
Access denied - C:\WINDOWS\system32\winrnr.dll
Access denied - C:\WINDOWS\system32\winrs.exe
Access denied - C:\WINDOWS\system32\winrscmd.dll
Access denied - C:\WINDOWS\system32\winrshost.exe
Access denied - C:\WINDOWS\system32\winrsmgr.dll
Access denied - C:\WINDOWS\system32\winrssrv.dll
Access denied - C:\WINDOWS\system32\WinRtTracing.dll
Access denied - C:\WINDOWS\system32\WinSAT.exe
Access denied - C:\WINDOWS\system32\WinSATAPI.dll
Access denied - C:\WINDOWS\system32\WinSCard.dll
Access denied - C:\WINDOWS\system32\WinSetupUI.dll
Access denied - C:\WINDOWS\system32\winshfhc.dll
Access denied - C:\WINDOWS\system32\winsku.dll
Access denied - C:\WINDOWS\system32\winsockhc.dll
Access denied - C:\WINDOWS\system32\winspool.drv
Access denied - C:\WINDOWS\system32\winsqlite3.dll
Access denied - C:\WINDOWS\system32\WINSRPC.DLL
Access denied - C:\WINDOWS\system32\winsrv.dll
Access denied - C:\WINDOWS\system32\winsrvext.dll
Access denied - C:\WINDOWS\system32\winsta.dll
Access denied - C:\WINDOWS\system32\WinSync.dll
Access denied - C:\WINDOWS\system32\WinSyncMetastore.dll
Access denied - C:\WINDOWS\system32\WinSyncProviders.dll
Access denied - C:\WINDOWS\system32\wintrust.dll
Access denied - C:\WINDOWS\system32\WinTypes.dll
Access denied - C:\WINDOWS\system32\winusb.dll
Access denied - C:\WINDOWS\system32\winver.exe
Access denied - C:\WINDOWS\system32\wisp.dll
Access denied - C:\WINDOWS\system32\witnesswmiv2provider.dll
Access denied - C:\WINDOWS\system32\wkscli.dll
Access denied - C:\WINDOWS\system32\wkspbroker.exe
Access denied - C:\WINDOWS\system32\wkspbrokerAx.dll
Access denied - C:\WINDOWS\system32\wksprt.exe
Access denied - C:\WINDOWS\system32\wksprtPS.dll
Access denied - C:\WINDOWS\system32\wkssvc.dll
Access denied - C:\WINDOWS\system32\wlanapi.dll
Access denied - C:\WINDOWS\system32\wlancfg.dll
Access denied - C:\WINDOWS\system32\WLanConn.dll
Access denied - C:\WINDOWS\system32\wlandlg.dll
Access denied - C:\WINDOWS\system32\wlanext.exe
Access denied - C:\WINDOWS\system32\wlangpui.dll
Access denied - C:\WINDOWS\system32\WLanHC.dll
Access denied - C:\WINDOWS\system32\wlanhlp.dll
Access denied - C:\WINDOWS\system32\WlanMediaManager.dll
Access denied - C:\WINDOWS\system32\WlanMM.dll
Access denied - C:\WINDOWS\system32\wlanmsm.dll
Access denied - C:\WINDOWS\system32\wlanpref.dll
Access denied - C:\WINDOWS\system32\WlanRadioManager.dll
Access denied - C:\WINDOWS\system32\wlansec.dll
Access denied - C:\WINDOWS\system32\wlansvc.dll
Access denied - C:\WINDOWS\system32\wlansvcpal.dll
Access denied - C:\WINDOWS\system32\wlanui.dll
Access denied - C:\WINDOWS\system32\wlanutil.dll
Access denied - C:\WINDOWS\system32\Wldap32.dll
Access denied - C:\WINDOWS\system32\wldp.dll
Access denied - C:\WINDOWS\system32\wlgpclnt.dll
Access denied - C:\WINDOWS\system32\wlidcli.dll
Access denied - C:\WINDOWS\system32\wlidcredprov.dll
Access denied - C:\WINDOWS\system32\wlidfdp.dll
Access denied - C:\WINDOWS\system32\wlidnsp.dll
Access denied - C:\WINDOWS\system32\wlidprov.dll
Access denied - C:\WINDOWS\system32\wlidres.dll
Access denied - C:\WINDOWS\system32\wlidsvc.dll
Access denied - C:\WINDOWS\system32\wlrmdr.exe
Access denied - C:\WINDOWS\system32\WlS0WndH.dll
Access denied - C:\WINDOWS\system32\WMADMOD.DLL
Access denied - C:\WINDOWS\system32\WMADMOE.DLL
Access denied - C:\WINDOWS\system32\WMALFXGFXDSP.dll
Access denied - C:\WINDOWS\system32\WMASF.DLL
Access denied - C:\WINDOWS\system32\wmcodecdspps.dll
Access denied - C:\WINDOWS\system32\wmdmlog.dll
Access denied - C:\WINDOWS\system32\wmdmps.dll
Access denied - C:\WINDOWS\system32\wmdrmsdk.dll
Access denied - C:\WINDOWS\system32\wmerror.dll
Access denied - C:\WINDOWS\system32\wmi.dll
Access denied - C:\WINDOWS\system32\wmiclnt.dll
Access denied - C:\WINDOWS\system32\wmicmiplugin.dll
Access denied - C:\WINDOWS\system32\wmidcom.dll
Access denied - C:\WINDOWS\system32\wmidx.dll
Access denied - C:\WINDOWS\system32\WmiMgmt.msc
Access denied - C:\WINDOWS\system32\wmiprop.dll
Access denied - C:\WINDOWS\system32\wmitomi.dll
Access denied - C:\WINDOWS\system32\WMNetMgr.dll
Access denied - C:\WINDOWS\system32\wmp.dll
Access denied - C:\WINDOWS\system32\WMPDMC.exe
Access denied - C:\WINDOWS\system32\WmpDui.dll
Access denied - C:\WINDOWS\system32\wmpdxm.dll
Access denied - C:\WINDOWS\system32\wmpeffects.dll
Access denied - C:\WINDOWS\system32\WMPhoto.dll
Access denied - C:\WINDOWS\system32\wmploc.DLL
Access denied - C:\WINDOWS\system32\wmpmde.dll
Access denied - C:\WINDOWS\system32\wmpps.dll
Access denied - C:\WINDOWS\system32\wmpshell.dll
Access denied - C:\WINDOWS\system32\wmsgapi.dll
Access denied - C:\WINDOWS\system32\WMSPDMOD.DLL
Access denied - C:\WINDOWS\system32\WMSPDMOE.DLL
Access denied - C:\WINDOWS\system32\WMVCORE.DLL
Access denied - C:\WINDOWS\system32\WMVDECOD.DLL
Access denied - C:\WINDOWS\system32\wmvdspa.dll
Access denied - C:\WINDOWS\system32\WMVENCOD.DLL
Access denied - C:\WINDOWS\system32\WMVSDECD.DLL
Access denied - C:\WINDOWS\system32\WMVSENCD.DLL
Access denied - C:\WINDOWS\system32\WMVXENCD.DLL
Access denied - C:\WINDOWS\system32\WofTasks.dll
Access denied - C:\WINDOWS\system32\WofUtil.dll
Access denied - C:\WINDOWS\system32\WordBreakers.dll
Access denied - C:\WINDOWS\system32\workerdd.dll
Access denied - C:\WINDOWS\system32\WorkFolders.exe
Access denied - C:\WINDOWS\system32\WorkfoldersControl.dll
Access denied - C:\WINDOWS\system32\WorkFoldersGPExt.dll
Access denied - C:\WINDOWS\system32\WorkFoldersRes.dll
Access denied - C:\WINDOWS\system32\WorkFoldersShell.dll
Access denied - C:\WINDOWS\system32\workfolderssvc.dll
Access denied - C:\WINDOWS\system32\wow64.dll
Access denied - C:\WINDOWS\system32\wow64cpu.dll
Access denied - C:\WINDOWS\system32\wow64win.dll
Access denied - C:\WINDOWS\system32\wowreg32.exe
Access denied - C:\WINDOWS\system32\WpAXHolder.dll
Access denied - C:\WINDOWS\system32\wpbcreds.dll
Access denied - C:\WINDOWS\system32\Wpc.dll
Access denied - C:\WINDOWS\system32\WpcApi.dll
Access denied - C:\WINDOWS\system32\WpcMon.exe
Access denied - C:\WINDOWS\system32\wpcmon.png
Access denied - C:\WINDOWS\system32\WpcRefreshTask.dll
Access denied - C:\WINDOWS\system32\WpcTok.exe
Access denied - C:\WINDOWS\system32\WpcWebFilter.dll
Access denied - C:\WINDOWS\system32\wpdbusenum.dll
Access denied - C:\WINDOWS\system32\wpdshext.dll
Access denied - C:\WINDOWS\system32\WPDShextAutoplay.exe
Access denied - C:\WINDOWS\system32\WPDShServiceObj.dll
Access denied - C:\WINDOWS\system32\WPDSp.dll
Access denied - C:\WINDOWS\system32\wpd_ci.dll
Access denied - C:\WINDOWS\system32\wpnapps.dll
Access denied - C:\WINDOWS\system32\wpnclient.dll
Access denied - C:\WINDOWS\system32\wpncore.dll
Access denied - C:\WINDOWS\system32\wpninprc.dll
Access denied - C:\WINDOWS\system32\wpnpinst.exe
Access denied - C:\WINDOWS\system32\wpnprv.dll
Access denied - C:\WINDOWS\system32\wpnservice.dll
Access denied - C:\WINDOWS\system32\wpnsruprov.dll
Access denied - C:\WINDOWS\system32\WpnUserService.dll
Access denied - C:\WINDOWS\system32\WpPortingLibrary.dll
Access denied - C:\WINDOWS\system32\WppRecorderUM.dll
Access denied - C:\WINDOWS\system32\wpr.config.xml
Access denied - C:\WINDOWS\system32\wpr.exe
Access denied - C:\WINDOWS\system32\WPTaskScheduler.dll
Access denied - C:\WINDOWS\system32\wpx.dll
Access denied - C:\WINDOWS\system32\write.exe
Access denied - C:\WINDOWS\system32\ws2help.dll
Access denied - C:\WINDOWS\system32\ws2_32.dll
Access denied - C:\WINDOWS\system32\wscadminui.exe
Access denied - C:\WINDOWS\system32\wscapi.dll
Access denied - C:\WINDOWS\system32\wscinterop.dll
Access denied - C:\WINDOWS\system32\wscisvif.dll
Access denied - C:\WINDOWS\system32\WSClient.dll
Access denied - C:\WINDOWS\system32\WSCollect.exe
Access denied - C:\WINDOWS\system32\wscproxystub.dll
Access denied - C:\WINDOWS\system32\wscript.exe
Access denied - C:\WINDOWS\system32\wscsvc.dll
Access denied - C:\WINDOWS\system32\wscui.cpl
Access denied - C:\WINDOWS\system32\WSDApi.dll
Access denied - C:\WINDOWS\system32\wsdchngr.dll
Access denied - C:\WINDOWS\system32\WSDMon.dll
Access denied - C:\WINDOWS\system32\WSDPrintProxy.DLL
Access denied - C:\WINDOWS\system32\WSDScanProxy.dll
Access denied - C:\WINDOWS\system32\wsecedit.dll
Access denied - C:\WINDOWS\system32\wsepno.dll
Access denied - C:\WINDOWS\system32\wshbth.dll
Access denied - C:\WINDOWS\system32\wshcon.dll
Access denied - C:\WINDOWS\system32\wshelper.dll
Access denied - C:\WINDOWS\system32\wshext.dll
Access denied - C:\WINDOWS\system32\wshhyperv.dll
Access denied - C:\WINDOWS\system32\wship6.dll
Access denied - C:\WINDOWS\system32\wshirda.dll
Access denied - C:\WINDOWS\system32\wshom.ocx
Access denied - C:\WINDOWS\system32\wshqos.dll
Access denied - C:\WINDOWS\system32\wshrm.dll
Access denied - C:\WINDOWS\system32\WSHTCPIP.DLL
Access denied - C:\WINDOWS\system32\WsmAgent.dll
Access denied - C:\WINDOWS\system32\wsmanconfig_schema.xml
Access denied - C:\WINDOWS\system32\WSManHTTPConfig.exe
Access denied - C:\WINDOWS\system32\WSManMigrationPlugin.dll
Access denied - C:\WINDOWS\system32\WsmAuto.dll
Access denied - C:\WINDOWS\system32\wsmplpxy.dll
Access denied - C:\WINDOWS\system32\wsmprovhost.exe
Access denied - C:\WINDOWS\system32\WsmPty.xsl
Access denied - C:\WINDOWS\system32\WsmRes.dll
Access denied - C:\WINDOWS\system32\WsmSvc.dll
Access denied - C:\WINDOWS\system32\WsmTxt.xsl
Access denied - C:\WINDOWS\system32\WsmWmiPl.dll
Access denied - C:\WINDOWS\system32\wsnmp32.dll
Access denied - C:\WINDOWS\system32\wsock32.dll
Access denied - C:\WINDOWS\system32\wsplib.dll
Access denied - C:\WINDOWS\system32\wsp_fs.dll
Access denied - C:\WINDOWS\system32\wsp_health.dll
Access denied - C:\WINDOWS\system32\wsp_sr.dll
Access denied - C:\WINDOWS\system32\wsqmcons.exe
Access denied - C:\WINDOWS\system32\WSReset.exe
Access denied - C:\WINDOWS\system32\WSTPager.ax
Access denied - C:\WINDOWS\system32\wtsapi32.dll
Access denied - C:\WINDOWS\system32\wuapi.dll
Access denied - C:\WINDOWS\system32\wuapihost.exe
Access denied - C:\WINDOWS\system32\wuauclt.exe
Access denied - C:\WINDOWS\system32\wuaueng.dll
Access denied - C:\WINDOWS\system32\wuautoappupdate.dll
Access denied - C:\WINDOWS\system32\wuceffects.dll
Access denied - C:\WINDOWS\system32\WUDFCoinstaller.dll
Access denied - C:\WINDOWS\system32\WUDFCompanionHost.exe
Access denied - C:\WINDOWS\system32\WUDFHost.exe
Access denied - C:\WINDOWS\system32\WUDFPlatform.dll
Access denied - C:\WINDOWS\system32\WudfSMCClassExt.dll
Access denied - C:\WINDOWS\system32\WUDFx.dll
Access denied - C:\WINDOWS\system32\WUDFx02000.dll
Access denied - C:\WINDOWS\system32\wudriver.dll
Access denied - C:\WINDOWS\system32\wups.dll
Access denied - C:\WINDOWS\system32\wups2.dll
Access denied - C:\WINDOWS\system32\wusa.exe
Access denied - C:\WINDOWS\system32\wuuhext.dll
Access denied - C:\WINDOWS\system32\wuuhosdeployment.dll
Access denied - C:\WINDOWS\system32\wvc.dll
Access denied - C:\WINDOWS\system32\WwaApi.dll
Access denied - C:\WINDOWS\system32\WwaExt.dll
Access denied - C:\WINDOWS\system32\WWAHost.exe
Access denied - C:\WINDOWS\system32\WWanAPI.dll
Access denied - C:\WINDOWS\system32\wwancfg.dll
Access denied - C:\WINDOWS\system32\wwanconn.dll
Access denied - C:\WINDOWS\system32\WWanHC.dll
Access denied - C:\WINDOWS\system32\wwanmm.dll
Access denied - C:\WINDOWS\system32\Wwanpref.dll
Access denied - C:\WINDOWS\system32\wwanprotdim.dll
Access denied - C:\WINDOWS\system32\WwanRadioManager.dll
Access denied - C:\WINDOWS\system32\wwansvc.dll
Access denied - C:\WINDOWS\system32\wwapi.dll
Access denied - C:\WINDOWS\system32\XamlTileRender.dll
Access denied - C:\WINDOWS\system32\XAudio2_8.dll
Access denied - C:\WINDOWS\system32\XAudio2_9.dll
Access denied - C:\WINDOWS\system32\xbgmengine.dll
Access denied - C:\WINDOWS\system32\xbgmsvc.exe
Access denied - C:\WINDOWS\system32\XblAuthManager.dll
Access denied - C:\WINDOWS\system32\XblAuthManagerProxy.dll
Access denied - C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
Access denied - C:\WINDOWS\system32\XblGameSave.dll
Access denied - C:\WINDOWS\system32\XblGameSaveExt.dll
Access denied - C:\WINDOWS\system32\XblGameSaveProxy.dll
Access denied - C:\WINDOWS\system32\XblGameSaveTask.exe
Access denied - C:\WINDOWS\system32\XboxGipRadioManager.dll
Access denied - C:\WINDOWS\system32\xboxgipsvc.dll
Access denied - C:\WINDOWS\system32\xboxgipsynthetic.dll
Access denied - C:\WINDOWS\system32\XboxNetApiSvc.dll
Access denied - C:\WINDOWS\system32\xcopy.exe
Access denied - C:\WINDOWS\system32\XInput1_4.dll
Access denied - C:\WINDOWS\system32\XInput9_1_0.dll
Access denied - C:\WINDOWS\system32\XInputUap.dll
Access denied - C:\WINDOWS\system32\xmlfilter.dll
Access denied - C:\WINDOWS\system32\xmllite.dll
Access denied - C:\WINDOWS\system32\xmlprovi.dll
Access denied - C:\WINDOWS\system32\xolehlp.dll
Access denied - C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
Access denied - C:\WINDOWS\system32\XpsFilt.dll
Access denied - C:\WINDOWS\system32\XpsGdiConverter.dll
Access denied - C:\WINDOWS\system32\XpsPrint.dll
Access denied - C:\WINDOWS\system32\XpsRasterService.dll
Access denied - C:\WINDOWS\system32\xpsrchvw.exe
Access denied - C:\WINDOWS\system32\xpsrchvw.xml
Access denied - C:\WINDOWS\system32\xpsservices.dll
Access denied - C:\WINDOWS\system32\XPSSHHDR.dll
Access denied - C:\WINDOWS\system32\xwizard.dtd
Access denied - C:\WINDOWS\system32\xwizard.exe
Access denied - C:\WINDOWS\system32\xwizards.dll
Access denied - C:\WINDOWS\system32\xwreg.dll
Access denied - C:\WINDOWS\system32\xwtpdui.dll
Access denied - C:\WINDOWS\system32\xwtpw32.dll
Access denied - C:\WINDOWS\system32\zipcontainer.dll
Access denied - C:\WINDOWS\system32\zipfldr.dll
Access denied - C:\WINDOWS\system32\ztrace_maps.dll

C:\WINDOWS\system32>


Thanks!
 
I dont know, my computer has been acting really funny lately.
Like things go black
When I "Shut down" it never shuts down - so like if I turn the PC back on, it re-opens everything I had open.
Im totally confused
Its also been really slow lately, and I've deleted folders with 231232132zhsad randomness in the folder name.
 
Hello Rebelk955 and welcome to PCHF:)
My Name is Gus and I'll be helping you. Before we start can I ask you to read these instructions carefully and if possible print them out for use as we go through the cleaning process. Depending on what tools are in use you may not have access to these instructions.



  • If you are unsure of any request as we progress PLEASE ASK, and remember as we proceed that there is no such thing as a silly question.
  • Please let me know if you are receiving help at another forum on this issue so I can close this thread?
  • At the right hand top of your first post please click on the"Watch thread" marker so you will receive an immediate alert when I reply.
  • Please do not run any tools other than the ones we ask you to, some can be very dangerous and actually make things worse.
  • Should any tools we ask you to use give you a security warning you can safely allow them to run, they have all been proven safe.
  • Download any requested tools and make sure to run them from the desktop, unless specifically instructed otherwise.
  • Please do not install any other software whilst we cleanup, this can complicate the process, making cleaning impossible.
  • With malware it can be impossible to determine the outcome, and whilst we will work to a positive result we strongly recommend you backup all your personal files and folders before we begin.
  • As we proceed with disinfecting it may appear as if your computer is back to normal, but please stay with me till I give you the all clear. In return I will do the same for you.
  • Do remember the fixes used to clean your machine are meant for your computer only, and the use on another computer may cause serious damage to that machine.
  • When your machine has been cleaned we will remove all the tools used, and also give you some tips to keep your computer clean and safe in the future.
  • Finally, please allow me a little time to analyse any logs I request from you, I know you want your computer cleaned yesterday but please remember we are all volunteers here and we do have a life that sometimes takes us away from computers. If your thread gets closed due to no response from you you can PM me or a staff member and have it reopened. Should you not hear from me within 48 hours please PM me.
  • That's the last of the fine print so lets get under way:)


We need a log from Farbar Recovery Scan Tool (FRST) to examine your system.

Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.

If you are unsure if your operating system is 32 or 64 Bit please go HERE.

Once downloaded right click the FRST desktop icon and select "Run as administrator" from the menu"



icon2-jpg.112




If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
Frst will open with two dialogue boxes, accept the disclaimer.



frst-disclaimer-jpg.113




  1. Accept the default whitelist options,
  2. If the additions.txt options box is not checked please select it.
  3. Then select "Scan"


frst-jpg.114




Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.



2016-08-12_152002-jpg.115




Please COPY and PASTE the contents of these two files in your next post.

We will also need a log from AdwCleaner for further information.

Please download a copy of AdwCleaner from HERE, it is important to download it to your desktop.

Once downloaded to the desktop AdwCleaner will create an icon

eEGkHPS.jpg




Should you receive any security warnings or your User Account Control warning appears whilst you are using this application you can safely allow AdwCleaner to continue.

Before running AdwCleaner please ensure all other programs and browsers are closed, then double left click the icon to open it.

AdwCleaner will open, click the scan button to start searching.



hBYSf6z.jpg




The scan may take some time to complete, and when it has any malware found will be automatically selected for quarantining. Click the "Clean" button.



ftC2WaB.jpg




After a few seconds a message should tell you your computer will now reboot. Allow the reboot.

When the computer restarts a log file will be displayed, but if its closed for any reason before copying the contents, you will find a copy of the file if you navigate to C:\AdwCleaner[C#].txt (The C denotes the Cleaning log)



jr9Bx9h.jpg




Please Copy and Paste the contents of the log file with your next reply.:)
 
Take your time Gus!
I've got nothing but time!

AdwCleaner detected nothing
 

Attachments

  • Addition.txt
    67.6 KB · Views: 28
  • FRST.txt
    48.5 KB · Views: 16
  • AdwCleaner[S0].txt
    945 bytes · Views: 31
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14.03.2018
Ran by Dylan (administrator) on DESKTOP-F54C10V (25-03-2018 21:32:44)
Running from C:\Users\Dylan\Downloads
Loaded Profiles: defaultuser0 & Dylan (Available Profiles: defaultuser0 & Dylan)
Platform: Windows 10 Home Version 1709 16299.309 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
() C:\Windows\System32\PnkBstrA.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18022-0\MsMpEng.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
(Razer Inc) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18022-0\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(FrescoLogic) C:\Program Files\Insignia\Insignia USB Display Adapter\FL2000\x64\flvga_tray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(Corsair Components, Inc.) C:\Program Files (x86)\Corsair\Corsair Utility Engine\CUE.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.16299.251_none_16dd4c82321e5ccc\TiWorker.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8842496 2016-06-24] (Realtek Semiconductor)
HKLM\...\Run: [flvga_tray] => C:\Program Files\Insignia\Insignia USB Display Adapter\FL2000\x64\flvga_tray.exe [439424 2017-01-15] (FrescoLogic)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [flvga_tray32] => C:\Program Files\Insignia\Insignia USB Display Adapter\FL2000\x86\flvga_tray.exe [419968 2017-01-15] (FrescoLogic)
HKLM-x32\...\Run: [Corsair Utility Engine] => C:\Program Files (x86)\Corsair\Corsair Utility Engine\CUE.exe [21098704 2017-12-07] (Corsair Components, Inc.)
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596664 2017-08-30] (Razer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation)
HKU\S-1-5-21-927589816-2843545167-1243196516-1002\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [519680 2017-09-29] (Microsoft Corporation)
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3198752 2018-03-22] (Valve Corporation)
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Run: [TSMApplication] => C:\Program Files (x86)\TradeSkillMaster Application\app\TSMApplication.exe [1623040 2018-01-03] ()
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Run: [Spotify Web Helper] => C:\Users\Dylan\AppData\Roaming\Spotify\SpotifyWebHelper.exe [777840 2018-03-24] (Spotify Ltd)
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Run: [Spotify] => C:\Users\Dylan\AppData\Roaming\Spotify\Spotify.exe [21025392 2018-03-24] (Spotify Ltd)
IFEO\hirezgamesdiagandsupport.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\origin.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\rzsynapse.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-01-24]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.1
Tcpip\..\Interfaces\{7eb501df-dec8-4a26-9db5-10b87c4cd37b}: [DhcpNameServer] 10.0.1.1
Tcpip\..\Interfaces\{cd1693db-ef80-4abe-aec5-8ee6d960e829}: [DhcpNameServer] 10.0.1.1 10.0.1.3

Internet Explorer:
==================
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> DefaultScope {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-24] (Oracle Corporation)

FireFox:
========
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-24] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-01-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-01-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default [2018-03-25]
CHR Extension: (Slides) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Docs) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Google Drive) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-17]
CHR Extension: (YouTube) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-17]
CHR Extension: (Sheets) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Google Docs Offline) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-17]
CHR Extension: (AdBlock) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-03-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Gmail) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-17]
CHR Extension: (Chrome Media Router) - C:\Users\Dylan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-23]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-10-11] (Apple Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7013384 2018-03-20] ()
R2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [7649576 2018-03-10] (AVAST Software)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [526888 2017-11-23] (EasyAntiCheat Ltd)
S4 HiPatchService; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2017-09-19] (Hi-Rez Studios) [File not signed]
S4 HnGSteamService; D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngservice.exe [777000 2018-03-20] (Reto-Moto ApS)
S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
S4 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S4 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-26] (Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation)
S4 Origin Client Service; D:\Origin\OriginClientService.exe [2159424 2018-03-05] (Electronic Arts)
S4 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3028808 2018-03-05] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2017-12-09] ()
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2017-12-09] ()
S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2017-07-19] ()
R2 RzSurroundVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe [4261344 2016-11-03] (Razer Inc)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\NisSrv.exe [356152 2018-03-01] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MsMpEng.exe [106280 2018-03-01] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45528 2017-10-23] (Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21968 2017-10-23] (Corsair)
S3 fl2000; C:\WINDOWS\System32\drivers\fl2000.sys [157312 2017-01-15] (FrescoLogic)
S3 IaNVMe; C:\WINDOWS\System32\drivers\IaNVMe.sys [101872 2016-01-26] (Intel Corporation)
R0 lci_proxykmd; C:\WINDOWS\System32\drivers\lci_proxykmd.sys [100992 2017-01-15] (FrescoLogic)
R3 netr28ux; C:\WINDOWS\System32\drivers\netr28ux.sys [2224128 2017-09-29] (MediaTek Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_258f7a4f413a360c\nvlddmkm.sys [17493832 2018-02-19] (NVIDIA Corporation)
S3 nvme; C:\WINDOWS\System32\drivers\nvme.sys [119840 2015-12-16] (Samsung Electronics Co., Ltd)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2017-12-14] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [58816 2018-03-14] (NVIDIA Corporation)
S3 ocznvme; C:\WINDOWS\System32\drivers\ocznvme.sys [99592 2016-06-10] (TOSHIBA CORPORATION)
S3 ocztrimfilter; C:\WINDOWS\System32\drivers\ocztrimfilter.sys [29064 2016-06-10] (TOSHIBA CORPORATION)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-05-16] (Realtek )
S3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [52240 2016-10-30] (Razer Inc)
S3 rzmpos; C:\WINDOWS\System32\drivers\rzmpos.sys [48144 2016-10-30] (Razer Inc)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [45752 2017-07-19] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [139704 2017-08-19] (Razer, Inc.)
R3 RZSURROUNDVADService; C:\WINDOWS\system32\drivers\RzSurroundVAD.sys [49176 2016-10-16] (Windows (R) Win 7 DDK provider)
R0 Tcpip; C:\WINDOWS\System32\drivers\tcpip.sys [2773400 2018-02-10] (Microsoft Corporation) [File not signed]
S3 Tcpip6; C:\WINDOWS\System32\drivers\tcpip.sys [2773400 2018-02-10] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-03-01] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288296 2018-03-01] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129568 2018-03-01] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-03-25 21:32 - 2018-03-25 21:33 - 000017434 _____ C:\Users\Dylan\Downloads\FRST.txt
2018-03-25 21:32 - 2018-03-25 21:32 - 000000000 ____D C:\FRST
2018-03-25 21:31 - 2018-03-25 21:31 - 002403328 _____ (Farbar) C:\Users\Dylan\Downloads\FRST64.exe
2018-03-25 21:26 - 2018-03-25 21:26 - 000256848 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-03-24 20:36 - 2018-03-24 20:36 - 000000000 _____ C:\WINDOWS\system32\atrib
2018-03-24 20:28 - 2018-03-24 20:36 - 000000000 _____ C:\WINDOWS\system32\attrib
2018-03-24 20:28 - 2018-03-01 22:36 - 017085440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2018-03-24 20:28 - 2018-03-01 22:02 - 000037888 _____ C:\WINDOWS\system32\SpectrumSyncClient.dll
2018-03-24 20:28 - 2018-03-01 22:01 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll
2018-03-24 20:28 - 2018-03-01 22:00 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2018-03-24 20:28 - 2018-03-01 22:00 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\svf.dll
2018-03-24 20:28 - 2018-03-01 22:00 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2018-03-24 20:28 - 2018-03-01 21:59 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2018-03-24 20:28 - 2018-03-01 15:28 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2018-03-24 20:28 - 2018-03-01 02:50 - 000270744 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-03-24 20:28 - 2018-03-01 02:49 - 000389536 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-03-24 20:28 - 2018-03-01 02:48 - 000664472 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-03-24 20:28 - 2018-03-01 02:47 - 000749464 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-03-24 20:28 - 2018-03-01 02:47 - 000035224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2018-03-24 20:28 - 2018-03-01 02:46 - 002003352 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-03-24 20:28 - 2018-03-01 02:46 - 001568664 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-03-24 20:28 - 2018-03-01 02:46 - 000609176 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-03-24 20:28 - 2018-03-01 02:46 - 000138144 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-03-24 20:28 - 2018-03-01 02:45 - 000070040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-03-24 20:28 - 2018-03-01 02:40 - 002514936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-03-24 20:28 - 2018-03-01 02:40 - 000461720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-03-24 20:28 - 2018-03-01 02:40 - 000273304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-03-24 20:28 - 2018-03-01 02:37 - 007831760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2018-03-24 20:28 - 2018-03-01 02:31 - 008602520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-03-24 20:28 - 2018-03-01 02:30 - 000540064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-03-24 20:28 - 2018-03-01 02:30 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-03-24 20:28 - 2018-03-01 02:29 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2018-03-24 20:28 - 2018-03-01 02:27 - 001173576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-03-24 20:28 - 2018-03-01 02:26 - 000170912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-03-24 20:28 - 2018-03-01 02:25 - 000377752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-03-24 20:28 - 2018-03-01 02:23 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-03-24 20:28 - 2018-03-01 02:19 - 000710768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-03-24 20:28 - 2018-03-01 02:17 - 002710736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-03-24 20:28 - 2018-03-01 02:17 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-03-24 20:28 - 2018-03-01 02:17 - 000408984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-03-24 20:28 - 2018-03-01 02:15 - 002574232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-03-24 20:28 - 2018-03-01 02:14 - 007675784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-03-24 20:28 - 2018-03-01 02:14 - 007384576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-03-24 20:28 - 2018-03-01 02:14 - 005105664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWSnapin.dll
2018-03-24 20:28 - 2018-03-01 02:14 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2018-03-24 20:28 - 2018-03-01 02:14 - 000356952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2018-03-24 20:28 - 2018-03-01 02:14 - 000147872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2018-03-24 20:28 - 2018-03-01 02:14 - 000128928 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2018-03-24 20:28 - 2018-03-01 02:12 - 000677272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-03-24 20:28 - 2018-03-01 02:12 - 000250264 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2018-03-24 20:28 - 2018-03-01 02:12 - 000189344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-03-24 20:28 - 2018-03-01 02:11 - 000093600 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2018-03-24 20:28 - 2018-03-01 02:10 - 001779936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2018-03-24 20:28 - 2018-03-01 02:10 - 000075168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-03-24 20:28 - 2018-03-01 02:10 - 000022936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2018-03-24 20:28 - 2018-03-01 02:09 - 001054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-03-24 20:28 - 2018-03-01 01:51 - 000777904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-03-24 20:28 - 2018-03-01 01:48 - 001930736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-03-24 20:28 - 2018-03-01 01:39 - 000213400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-03-24 20:28 - 2018-03-01 01:30 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2018-03-24 20:28 - 2018-03-01 01:29 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-03-24 20:28 - 2018-03-01 01:29 - 000574960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-03-24 20:28 - 2018-03-01 01:28 - 006480616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-03-24 20:28 - 2018-03-01 01:28 - 002193168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-03-24 20:28 - 2018-03-01 01:28 - 000115096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2018-03-24 20:28 - 2018-03-01 01:27 - 000284112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2018-03-24 20:28 - 2018-03-01 01:27 - 000221592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2018-03-24 20:28 - 2018-03-01 01:26 - 001524776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2018-03-24 20:28 - 2018-03-01 01:26 - 001057816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-03-24 20:28 - 2018-03-01 01:23 - 005105664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthFWSnapin.dll
2018-03-24 20:28 - 2018-03-01 01:21 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2018-03-24 20:28 - 2018-03-01 01:09 - 025251840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-03-24 20:28 - 2018-03-01 01:03 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-03-24 20:28 - 2018-03-01 01:03 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2018-03-24 20:28 - 2018-03-01 01:03 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-03-24 20:28 - 2018-03-01 01:03 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2018-03-24 20:28 - 2018-03-01 01:03 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2018-03-24 20:28 - 2018-03-01 01:01 - 019354624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-03-24 20:28 - 2018-03-01 01:01 - 006575616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-03-24 20:28 - 2018-03-01 01:01 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-03-24 20:28 - 2018-03-01 01:01 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2018-03-24 20:28 - 2018-03-01 01:00 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2018-03-24 20:28 - 2018-03-01 00:59 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2018-03-24 20:28 - 2018-03-01 00:58 - 004839424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2018-03-24 20:28 - 2018-03-01 00:58 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-03-24 20:28 - 2018-03-01 00:58 - 000405504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2018-03-24 20:28 - 2018-03-01 00:58 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-03-24 20:28 - 2018-03-01 00:57 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-03-24 20:28 - 2018-03-01 00:56 - 018922496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-03-24 20:28 - 2018-03-01 00:56 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-03-24 20:28 - 2018-03-01 00:55 - 000346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2018-03-24 20:28 - 2018-03-01 00:54 - 003664384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-03-24 20:28 - 2018-03-01 00:54 - 003181568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-03-24 20:28 - 2018-03-01 00:54 - 001296896 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-03-24 20:28 - 2018-03-01 00:54 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-03-24 20:28 - 2018-03-01 00:54 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-03-24 20:28 - 2018-03-01 00:54 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-03-24 20:28 - 2018-03-01 00:53 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-03-24 20:28 - 2018-03-01 00:53 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll
2018-03-24 20:28 - 2018-03-01 00:53 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2018-03-24 20:28 - 2018-03-01 00:52 - 011923968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-03-24 20:28 - 2018-03-01 00:52 - 006030336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-03-24 20:28 - 2018-03-01 00:51 - 002329088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2018-03-24 20:28 - 2018-03-01 00:51 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-03-24 20:28 - 2018-03-01 00:51 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2018-03-24 20:28 - 2018-03-01 00:51 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2018-03-24 20:28 - 2018-03-01 00:50 - 003677184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-03-24 20:28 - 2018-03-01 00:50 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-03-24 20:28 - 2018-03-01 00:50 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-03-24 20:28 - 2018-03-01 00:50 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2018-03-24 20:28 - 2018-03-01 00:50 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys
2018-03-24 20:28 - 2018-03-01 00:49 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-03-24 20:28 - 2018-03-01 00:49 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2018-03-24 20:28 - 2018-03-01 00:49 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2018-03-24 20:28 - 2018-03-01 00:49 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2018-03-24 20:28 - 2018-03-01 00:48 - 000543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2018-03-24 20:28 - 2018-03-01 00:48 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2018-03-24 20:28 - 2018-03-01 00:47 - 023674368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-03-24 20:28 - 2018-03-01 00:47 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2018-03-24 20:28 - 2018-03-01 00:47 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2018-03-24 20:28 - 2018-03-01 00:46 - 004051968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2018-03-24 20:28 - 2018-03-01 00:46 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2018-03-24 20:28 - 2018-03-01 00:46 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2018-03-24 20:28 - 2018-03-01 00:45 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-03-24 20:28 - 2018-03-01 00:45 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-03-24 20:28 - 2018-03-01 00:45 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2018-03-24 20:28 - 2018-03-01 00:44 - 008030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-03-24 20:28 - 2018-03-01 00:44 - 005195776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-03-24 20:28 - 2018-03-01 00:43 - 012830208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-03-24 20:28 - 2018-03-01 00:42 - 003505664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2018-03-24 20:28 - 2018-03-01 00:42 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-03-24 20:28 - 2018-03-01 00:41 - 008103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-03-24 20:28 - 2018-03-01 00:41 - 004745728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-03-24 20:28 - 2018-03-01 00:41 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-03-24 20:28 - 2018-03-01 00:41 - 001548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-03-24 20:28 - 2018-03-01 00:41 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-03-24 20:28 - 2018-03-01 00:40 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2018-03-24 20:28 - 2018-03-01 00:39 - 002222592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2018-03-24 20:28 - 2018-03-01 00:39 - 002035712 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2018-03-24 20:28 - 2018-03-01 00:39 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2018-03-24 20:28 - 2018-03-01 00:39 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2018-03-24 20:28 - 2018-03-01 00:38 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2018-03-24 20:28 - 2018-03-01 00:38 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2018-03-24 20:28 - 2018-03-01 00:36 - 004050432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2018-03-24 20:28 - 2018-03-01 00:36 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2018-03-24 20:28 - 2018-03-01 00:35 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2018-03-24 20:28 - 2018-03-01 00:35 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\racpldlg.dll
2018-03-24 20:28 - 2018-03-01 00:35 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-03-24 20:28 - 2018-02-21 21:23 - 001092016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-03-24 20:28 - 2018-02-21 21:23 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-03-24 20:28 - 2018-02-21 21:13 - 000279456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2018-03-24 20:28 - 2018-02-21 21:13 - 000077216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-03-24 20:28 - 2018-02-21 21:11 - 000109984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2018-03-24 20:28 - 2018-02-21 21:10 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2018-03-24 20:28 - 2018-02-21 21:08 - 001206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-03-24 20:28 - 2018-02-21 21:08 - 001055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-03-24 20:28 - 2018-02-21 21:08 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-03-24 20:28 - 2018-02-21 21:07 - 001415296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-03-24 20:28 - 2018-02-21 21:07 - 001209248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-03-24 20:28 - 2018-02-21 21:07 - 000194456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2018-03-24 20:28 - 2018-02-21 21:03 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-03-24 20:28 - 2018-02-21 21:03 - 000082848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-03-24 20:28 - 2018-02-21 21:02 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2018-03-24 20:28 - 2018-02-21 21:00 - 000187296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2018-03-24 20:28 - 2018-02-21 20:59 - 021351624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-03-24 20:28 - 2018-02-21 20:54 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2018-03-24 20:28 - 2018-02-21 20:52 - 000103328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-03-24 20:28 - 2018-02-21 20:51 - 000555424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-03-24 20:28 - 2018-02-21 20:51 - 000097176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2018-03-24 20:28 - 2018-02-21 20:51 - 000045472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2018-03-24 20:28 - 2018-02-21 20:50 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-03-24 20:28 - 2018-02-21 20:50 - 000229272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2018-03-24 20:28 - 2018-02-21 19:41 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-03-24 20:28 - 2018-02-21 19:31 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2018-03-24 20:28 - 2018-02-21 19:30 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2018-03-24 20:28 - 2018-02-21 19:30 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2018-03-24 20:28 - 2018-02-21 19:30 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2018-03-24 20:28 - 2018-02-21 19:27 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-03-24 20:28 - 2018-02-21 19:25 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2018-03-24 20:28 - 2018-02-21 19:16 - 001286144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-03-24 20:28 - 2018-02-21 19:12 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2018-03-24 20:07 - 2018-03-24 20:07 - 000000000 ____D C:\Users\Dylan\AppData\Local\VirtualStore
2018-03-23 19:17 - 2018-03-23 19:17 - 000004088 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-21 20:46 - 2018-03-21 20:46 - 000000222 _____ C:\Users\Dylan\Desktop\Heroes & Generals.url
2018-03-21 19:20 - 2018-03-21 19:20 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2018-03-21 19:20 - 2018-03-21 19:20 - 000001258 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2018-03-21 19:20 - 2018-03-21 19:20 - 000000000 ____D C:\Program Files (x86)\Epic Games
2018-03-21 19:12 - 2018-03-21 19:13 - 032260096 _____ C:\Users\Dylan\Downloads\EpicInstaller-7.5.0-fortnite-70a6a90cbb0d418fadd62a55d58fa068.msi
2018-03-12 15:54 - 2018-03-12 15:54 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-03-12 15:54 - 2018-01-23 17:42 - 000137712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2018-03-12 15:54 - 2017-11-02 15:15 - 000928568 ____N C:\WINDOWS\system32\vulkan-1.dll
2018-03-12 15:54 - 2017-11-02 15:15 - 000798520 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2018-03-12 15:54 - 2017-11-02 15:15 - 000490808 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2018-03-12 15:54 - 2017-11-02 15:14 - 000591672 ____N C:\WINDOWS\system32\vulkaninfo.exe
2018-03-12 15:53 - 2018-03-12 15:53 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2018-03-04 03:04 - 2018-03-04 03:04 - 000000041 _____ C:\Users\Dylan\Desktop\montage song.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-03-25 21:32 - 2017-11-15 01:10 - 001569430 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-03-25 21:29 - 2018-01-10 17:18 - 000000000 _____ C:\WINDOWS\system32\RzSurroundVADAudioDeviceManager_log.txt
2018-03-25 21:27 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-03-25 21:26 - 2017-11-15 18:54 - 000000000 ___RD C:\Users\Dylan\3D Objects
2018-03-25 21:26 - 2017-11-15 01:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-03-25 21:26 - 2017-06-05 19:34 - 000000000 ____D C:\ProgramData\NVIDIA
2018-03-25 21:26 - 2016-08-31 13:56 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-03-25 04:31 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\TextInput
2018-03-25 04:31 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-03-25 04:31 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-03-25 04:31 - 2017-09-29 08:44 - 000000000 ____D C:\WINDOWS\INF
2018-03-25 04:31 - 2017-09-29 03:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-03-25 04:27 - 2016-12-21 16:39 - 000000000 ____D C:\Users\Dylan\AppData\Local\Ubisoft Game Launcher
2018-03-25 04:15 - 2017-11-15 01:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-03-25 02:53 - 2016-12-17 18:37 - 000000000 ____D C:\Users\Dylan\AppData\Local\CrashDumps
2018-03-25 01:14 - 2017-03-12 01:30 - 000000000 ____D C:\Users\Dylan\AppData\LocalLow\Heroes and Generals
2018-03-25 01:08 - 2017-11-15 01:03 - 000000000 ____D C:\Users\Dylan
2018-03-25 00:45 - 2016-12-21 01:09 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\TS3Client
2018-03-25 00:28 - 2016-12-18 00:02 - 000000000 ____D C:\Users\Dylan\AppData\Local\Battle.net
2018-03-25 00:23 - 2017-11-15 01:06 - 000004166 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{4758898D-EFAE-4773-8F34-80700D4D8775}
2018-03-25 00:15 - 2016-12-18 00:01 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-03-24 22:27 - 2017-11-15 01:03 - 000000000 ____D C:\Users\defaultuser0
2018-03-24 20:31 - 2017-06-09 14:54 - 000000000 ____D C:\Users\Dylan\AppData\Local\Spotify
2018-03-24 20:30 - 2017-09-29 08:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-03-24 20:25 - 2017-06-09 14:54 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\Spotify
2018-03-24 20:21 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-03-24 20:07 - 2017-06-05 19:34 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-03-24 20:06 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-03-24 20:06 - 2017-09-29 08:46 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-03-24 19:58 - 2017-07-27 13:24 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\LambdaMenu
2018-03-24 19:21 - 2017-06-28 21:28 - 000000000 ____D C:\Users\Dylan\AppData\Local\FiveM
2018-03-24 01:23 - 2018-01-02 03:10 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\obs-studio
2018-03-23 19:17 - 2017-11-15 01:06 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-11-15 01:06 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-03-23 19:17 - 2017-06-05 19:34 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-03-23 19:17 - 2017-06-05 19:34 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-03-23 19:17 - 2016-12-29 00:59 - 000001485 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-03-23 17:45 - 2017-09-29 08:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-03-22 18:11 - 2016-12-17 18:38 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-03-20 23:09 - 2017-02-25 01:31 - 000000000 ____D C:\ProgramData\Origin
2018-03-20 21:21 - 2017-02-25 01:33 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\Origin
2018-03-20 18:28 - 2018-02-22 16:26 - 000000000 ____D C:\Program Files (x86)\Overwatch
2018-03-15 22:30 - 2016-12-18 23:03 - 000000000 ____D C:\Users\Dylan\Documents\My Games
2018-03-14 08:05 - 2017-10-11 05:14 - 000058816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2018-03-14 08:05 - 2016-12-29 00:59 - 002480064 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-03-14 08:05 - 2016-12-29 00:59 - 002137024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-03-14 08:05 - 2016-12-29 00:59 - 001310144 ____N (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-03-14 07:44 - 2016-12-29 00:58 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-03-13 19:44 - 2016-12-17 23:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-03-13 19:42 - 2017-10-10 17:30 - 130364688 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2018-03-13 19:42 - 2016-12-17 23:19 - 130364688 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-03-12 16:31 - 2016-12-26 00:35 - 000226168 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2018-03-12 16:31 - 2016-12-26 00:35 - 000226168 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2018-03-12 16:08 - 2017-05-29 21:37 - 000000922 _____ C:\Users\Public\Desktop\Battlefield 1.lnk
2018-03-12 15:54 - 2016-10-15 15:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-03-05 01:34 - 2017-06-05 19:34 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2018-03-05 01:18 - 2017-07-05 22:56 - 000189784 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2018-03-05 01:18 - 2017-07-05 22:56 - 000152408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2018-03-04 05:42 - 2016-12-18 19:58 - 000000000 ____D C:\Users\Dylan\AppData\Roaming\Curse Client
2018-03-03 23:16 - 2017-11-11 17:28 - 000000209 _____ C:\Users\Dylan\Desktop\Configuration.ini
2018-03-03 23:10 - 2017-11-11 17:28 - 000071356 _____ C:\Users\Dylan\Desktop\Sound.wav
2018-03-02 16:09 - 2017-09-29 08:49 - 000834552 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-03-02 16:09 - 2017-09-29 08:49 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2018-03-01 18:55 - 2018-02-04 21:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-03-01 18:55 - 2017-09-29 08:46 - 000000000 ___RD C:\Program Files\Windows Defender

==================== Files in the root of some directories =======

2017-09-02 01:27 - 2017-09-02 01:27 - 000000098 _____ () C:\Users\Dylan\AppData\Roaming\LauncherSettings_live.cfg
2017-09-02 01:24 - 2017-09-02 01:25 - 000011235 _____ () C:\Users\Dylan\AppData\Roaming\TheHunterSettings_live.bin
2017-09-02 00:50 - 2017-09-02 00:50 - 000000043 _____ () C:\Users\Dylan\AppData\Roaming\TheHunterSettings_steam_live.cfg
2017-08-03 20:59 - 2017-08-03 20:59 - 000002720 _____ () C:\Users\Dylan\AppData\Local\recently-used.xbel
2017-07-08 21:30 - 2017-07-08 21:30 - 000007605 _____ () C:\Users\Dylan\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
2018-03-18 20:22 - 2018-03-18 20:22 - 000000000 _____ () C:\Users\Dylan\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
2018-03-18 20:22 - 2018-03-18 20:22 - 000000017 _____ () C:\Users\Dylan\AppData\Local\Temp\9ec93f2ddf0807eb37f93ec0c6968e81.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-03-15 15:29

==================== End of FRST.txt ============================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14.03.2018
Ran by Dylan (25-03-2018 21:33:14)
Running from C:\Users\Dylan\Downloads
Windows 10 Home Version 1709 16299.309 (X64) (2017-11-15 06:08:21)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-927589816-2843545167-1243196516-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-927589816-2843545167-1243196516-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-927589816-2843545167-1243196516-1002 - Limited - Disabled) => C:\Users\defaultuser0
Dylan (S-1-5-21-927589816-2843545167-1243196516-1003 - Administrator - Enabled) => C:\Users\Dylan
Guest (S-1-5-21-927589816-2843545167-1243196516-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-927589816-2843545167-1243196516-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
A3Launcher version 0.1.5.8 (HKLM-x32\...\{1E29A86E-9AE2-4CD8-74C8-6B170ED3C4D2}_is1) (Version: 0.1.5.8 - Maca134)
Apple Application Support (32-bit) (HKLM-x32\...\{D811A40A-9791-497C-B9DC-2D89C8E95EA1}) (Version: 6.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{8B47B514-F5D2-4E0D-B951-6E250618A7CD}) (Version: 6.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{31A0B634-BCF4-4D3F-8336-87FEACFEE142}) (Version: 11.0.1.2 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
ArmA3Sync 1.6.92 (HKLM-x32\...\{F097E7D7-D093-4394-9EED-43AFCCD12B7A}_is1) (Version: 1.6.92 - The [S.o.E] team)
AutoHotkey 1.1.24.05 (HKLM\...\AutoHotkey) (Version: 1.1.24.05 - Lexikos)
Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 17.3.4228 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.53.31065 - Electronic Arts)
Battleground Europe (HKLM-x32\...\{BCA70BBE-EACC-49F4-AC9A-1DFE4E55F739}_is1) (Version: 1.35.9.4 - Playnet Inc.)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - )
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien)
Corsair Utility Engine (HKLM-x32\...\{016ED5C0-8A01-416B-9AC9-FE00EB01ACF1}) (Version: 2.21.67 - Corsair)
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Discord (HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Discord) (Version: 0.0.300 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{D442B219-3EBE-4EE2-88F9-5A31DF331CB1}) (Version: 1.1.144.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 65.0.3325.181 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.8.3 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Insignia USB Display Driver (HKLM\...\{79621217-87FB-41FE-A376-8EF29FF0B2A5}) (Version: 2.0.33207.0 - Insignia)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{B294CE94-FE0F-4427-910C-180AF9FCFED1}) (Version: 1.0.1.620 - Intel Corporation)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\{E80C09B5-A296-47E9-BD4B-BCCF2FDCA13E}) (Version: 4.1.2 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{38F03569-A636-4CF3-BDDE-032C8C251304}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 390.77 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 390.77 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Graphics Driver 390.77 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 390.77 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.36.6 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.36.6 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.1.3 - OBS Project)
Origin (HKLM-x32\...\Origin) (Version: 10.5.14.38647 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.26 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.00.830 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.9.422.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7855 - Realtek Semiconductor Corp.)
Roblox Player for Dylan (HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - Roblox Corporation)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.2.0 - Rockstar Games)
Speccy (HKLM\...\Speccy) (Version: 1.30 - Piriform)
Spotify (HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\Spotify) (Version: 1.0.67.582.g19436fa3 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TradeSkillMaster Application version 1.0 (HKLM-x32\...\{c44da794-b956-4d50-8733-346d56ae63c7}_is1) (Version: 1.0 - TradeSkillMaster)
Uplay (HKLM-x32\...\Uplay) (Version: 15.0 - Ubisoft)
Video Win Movie Maker 2016 (HKLM-x32\...\{3CC29C1A-B5FE-457B-8F22-32A2videowin}}_is1) (Version: - videowinsoft.com)
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation)
Windows Driver Package - Fresco Logic (fl2000) AVClass (01/13/2017 2.0.33207.0) (HKLM\...\E2B3168CBF4619E86310F373A949C19E6D937829) (Version: 01/13/2017 2.0.33207.0 - Fresco Logic)
Windows Driver Package - Fresco Logic Inc. (lci_proxykmd) System (01/13/2017 2.0.33207.0) (HKLM\...\F8BD8C2AEFE15B7D51643F75BF2D242A332B7B36) (Version: 01/13/2017 2.0.33207.0 - Fresco Logic Inc.)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-01-23] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02E0AA58-BCF3-47C4-B47A-7B8CB489650C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-14] (NVIDIA Corporation)
Task: {1213480A-C1C1-45BB-80EB-3646E7C57F4C} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-02-19] (Intel(R) Corporation)
Task: {14F51C98-F743-4697-B451-BD6A086B2013} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {206C736B-C426-4932-98B0-2D946F7A599D} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-14] (NVIDIA Corporation)
Task: {3B416FC7-FF95-4425-AE24-00B9B7DF558E} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-F54C10V-Dylan => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated)
Task: {3D846B38-B232-4256-BDCB-03BB5F51BAEE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {3DDAC28A-8BB6-450C-8F93-120BBE601744} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {5AECF167-47DF-4BEA-8604-540F32A8C77E} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-F54C10V-Dylan => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {673BF61F-8391-4F8D-90C5-76BADFC1F978} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-03-10] (AVAST Software)
Task: {6C2DD4A2-9481-43AA-9D93-41BBF576BB45} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {75E5C8F0-D46D-434B-9CC6-16CA66A7180F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {9663D5F1-015A-4094-821B-9AEA585433EA} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-14] (NVIDIA Corporation)
Task: {9B2C1641-A924-4C94-BF75-E81A7812F3B9} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {A275A828-52CB-4AB9-A878-87713B5B9469} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-17] (Google Inc.)
Task: {B055F31F-7AB5-4A33-BBF1-C97A7F2B5298} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-14] (NVIDIA Corporation)
Task: {B3346C9D-7153-47C3-8FD4-1D238F2B5D13} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-17] (Google Inc.)
Task: {B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
Task: {E4C2F350-A340-49D4-972E-075B763AB79E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {EA8DAD48-C613-48C6-87CC-B2BFA14999F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-09-29 08:41 - 2017-09-29 08:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2016-12-29 00:58 - 2018-03-14 08:05 - 001267648 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-12-09 15:25 - 2017-12-09 15:25 - 000076152 ____N () C:\WINDOWS\system32\PnkBstrA.exe
2018-03-24 20:28 - 2018-02-21 19:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-03-24 20:28 - 2018-02-21 19:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-03-23 17:44 - 2018-03-23 17:45 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-03-23 17:44 - 2018-03-23 17:45 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-03-23 17:44 - 2018-03-23 17:45 - 022050304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-03-23 17:44 - 2018-03-23 17:45 - 002584576 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\skypert.dll
2018-03-22 18:11 - 2018-03-20 01:00 - 002683224 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\swiftshader\libglesv2.dll
2018-03-22 18:11 - 2018-03-20 01:00 - 000127832 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\swiftshader\libegl.dll
2018-02-20 21:46 - 2018-02-20 21:46 - 004734464 _____ () C:\Program Files\WindowsApps\Microsoft.Wallet_2.2.18047.0_x64__8wekyb3d8bbwe\Microsoft.Wallet.dll
2016-12-29 00:58 - 2018-03-14 08:05 - 001041344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-12-29 00:59 - 2018-03-14 08:04 - 081563584 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2018-01-24 21:14 - 2016-09-12 15:53 - 048936448 _____ () C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll
2017-12-07 13:26 - 2017-12-07 13:26 - 000044544 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\MacroRecording.dll
2017-12-07 13:34 - 2017-12-07 13:34 - 000197120 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\quazip.dll
2017-12-07 13:49 - 2017-12-07 13:49 - 000151040 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairAudioDevice.dll
2017-12-07 13:26 - 2017-12-07 13:26 - 000097280 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\zlib.dll
2017-10-02 08:54 - 2017-10-02 08:54 - 000013312 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\libEGL.DLL
2017-10-02 08:54 - 2017-10-02 08:54 - 001950720 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\libGLESv2.dll
2018-03-23 19:17 - 2018-03-14 08:04 - 002478016 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libglesv2.dll
2018-03-23 19:17 - 2018-03-14 08:04 - 000125376 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libegl.dll
2018-03-21 19:14 - 2018-01-10 21:05 - 000784672 _____ () D:\Program Files (x86)\Steam\SDL2.dll
2018-03-23 17:42 - 2018-03-22 20:01 - 002631968 _____ () D:\Program Files (x86)\Steam\video.dll
2016-12-17 19:00 - 2016-08-31 20:02 - 004969248 _____ () D:\Program Files (x86)\Steam\v8.dll
2018-03-21 19:14 - 2017-12-19 20:43 - 000695584 _____ () D:\Program Files (x86)\Steam\libavformat-57.dll
2018-03-21 19:14 - 2017-12-19 20:43 - 000351520 _____ () D:\Program Files (x86)\Steam\libavresample-3.dll
2018-03-21 19:14 - 2017-12-19 20:43 - 000783648 _____ () D:\Program Files (x86)\Steam\libswscale-4.dll
2018-03-21 19:14 - 2017-12-19 20:43 - 000847136 _____ () D:\Program Files (x86)\Steam\libavutil-55.dll
2018-03-21 19:14 - 2017-12-19 20:43 - 005137696 _____ () D:\Program Files (x86)\Steam\libavcodec-57.dll
2016-12-17 19:00 - 2016-08-31 20:02 - 001195296 _____ () D:\Program Files (x86)\Steam\icuuc.dll
2016-12-17 19:00 - 2016-08-31 20:02 - 001563936 _____ () D:\Program Files (x86)\Steam\icui18n.dll
2018-03-23 17:43 - 2018-03-22 20:01 - 000977184 _____ () D:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-12-17 19:00 - 2016-07-04 17:17 - 000266560 _____ () D:\Program Files (x86)\Steam\openvr_api.dll
2017-10-14 00:50 - 2017-09-06 21:04 - 000678400 _____ () D:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2018-03-21 19:14 - 2017-12-13 16:16 - 071471392 _____ () D:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-12-17 19:00 - 2015-09-24 18:52 - 000119208 _____ () D:\Program Files (x86)\Steam\winh264.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Dylan:Heroes & Generals [38]
AlternateDataStreams: C:\ProgramData\.rdata:X [526]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 06:47 - 2016-07-16 06:45 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-927589816-2843545167-1243196516-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Dylan\Downloads\flag.jpg
DNS Servers: 10.0.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "Razer Synapse"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-927589816-2843545167-1243196516-1002\...\StartupApproved\Run: => "OneDriveSetup"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "TSMApplication"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "Gaijin.Net Agent"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\...\StartupApproved\Run: => "Spotify Web Helper"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D08C5DB8-7A38-4A66-A1A7-06CE73EC51FC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Heliborne\heliborne.exe
FirewallRules: [{6EC9CC9A-5A5C-4585-A9D6-27A51BA8DE32}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Heliborne\heliborne.exe
FirewallRules: [UDP Query User{15A84A36-D241-4B3C-A2E2-DFC3B62D0B40}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{AAC49F84-436A-4831-BCEF-676284064DEF}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{EF8536CB-F6E2-41B9-A2BB-035646D8EED6}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{DA8F5FAD-FABB-43A8-8416-67DE3196E975}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [{6A742523-99C8-4699-BEC6-C71818197A22}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\L.A.Noire\LANLauncher.exe
FirewallRules: [{9CFB885E-EB69-4BD6-9D71-3BCE20FFD3EA}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\L.A.Noire\LANLauncher.exe
FirewallRules: [{8CEEA14D-70BD-467D-926B-B5257E798F90}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe
FirewallRules: [{9363060B-70D9-4C81-8216-02C922075169}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe
FirewallRules: [{13AEA34B-3FA2-4E93-B413-802693E0FAE6}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{52D048EE-94AE-49DD-8FF4-A014CB5EBBF8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{F3A569F3-3AA9-4AB8-90A4-AF92A39178F1}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{87A7C0A8-B462-4BEB-9046-D394A92B93BC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [UDP Query User{BF7BEC03-DDBE-4039-B3DA-F922284ECA4C}D:\program files (x86)\steam\steamapps\common\thehunter\game\thehunter.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\thehunter\game\thehunter.exe
FirewallRules: [TCP Query User{04ADA6E9-7894-4C7D-91BF-4B1BCDFD4169}D:\program files (x86)\steam\steamapps\common\thehunter\game\thehunter.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\thehunter\game\thehunter.exe
FirewallRules: [{651F755A-D1CE-4D59-B0AE-9E0DC9482D93}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{41CDBEA3-6A5F-4099-90A5-131BDCAFEF11}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [UDP Query User{8878A27A-CD34-420B-84D0-05BBEC2E23FC}D:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe] => (Block) D:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [TCP Query User{2B1F26EB-F46B-4675-A351-452F2B4C9CEA}D:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe] => (Block) D:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{B6245913-C166-4298-9E6D-4E8B6DF69F3E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{11F5D596-B610-49A9-98E0-17E5907456AE}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{F8B73ECE-5F65-49D1-929C-C078A6F8B407}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DDA38CFB-632E-40B2-8E67-0E2807EA86BC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{3A681154-3EB5-4716-BFDD-268EE39B8A69}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{8EE51CAA-E446-45C9-97DA-72E4B6AC4967}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{BD56C0BE-BE8C-4ED2-969A-DC81D51E5E18}D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [TCP Query User{C6AA60B0-8BB3-433B-A7A0-23A3811C6205}D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [{EDA9D18C-6F1A-49FF-BC87-2EA3008C757A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\APB Reloaded\Binaries\VivoxVoiceService.exe
FirewallRules: [{60BE49F5-1D7F-4E1D-AD92-0EFA96741BD2}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\APB Reloaded\Binaries\VivoxVoiceService.exe
FirewallRules: [{D52A2313-39FF-4FDF-9215-86FC2999C668}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\APB Reloaded\Binaries\APB.exe
FirewallRules: [{1115ADFF-FFAF-4A6C-B293-75486964E8D8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\APB Reloaded\Binaries\APB.exe
FirewallRules: [{2CB622F2-3738-4B8C-8D80-3A1AC4306F7E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{5FCC0180-7F1C-45ED-96EA-566B20D0198B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{0329FE90-8CB8-4BE2-876C-EFE3DB87454E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Rust\Rust.exe
FirewallRules: [{AE369B8C-5A36-44BF-9618-88AD5F7CD42E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Rust\Rust.exe
FirewallRules: [{6A642390-546C-4E15-B3A9-ED8EE9463A9F}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7A416D1C-31E4-41B6-955F-8EA78772BC58}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6D29D63A-6D3B-481E-AE72-3E4785D3C90C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{EA43B2F2-E97C-463B-8299-884BFA6F0564}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{031D7733-62D8-4A63-B352-21A2DDDAC524}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [{92EFB661-FBCC-47AD-9043-668D46E358FC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [{9A81CF2C-1310-425D-9012-D6100B69D2B0}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{0926A648-BF6F-4062-B4A0-515427010275}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{8C5F3545-C41D-44E0-B578-20EC18BA3F89}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{92523B04-3B1F-4DD0-BDD0-77EF89A32BE3}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [UDP Query User{8EF00548-5465-450A-BD6D-3FF2D14989A9}C:\users\dylan\appdata\local\fivem\fivem.exe] => (Allow) C:\users\dylan\appdata\local\fivem\fivem.exe
FirewallRules: [TCP Query User{02E9D19E-B70E-4AC4-9A29-63C1088AF6D7}C:\users\dylan\appdata\local\fivem\fivem.exe] => (Allow) C:\users\dylan\appdata\local\fivem\fivem.exe
FirewallRules: [{EB26D244-D077-49C7-9503-D1638AD6F8EC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{F4D8C552-53D9-43A5-A66B-7C2E25D0363D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{D0066701-7E91-40D1-8D53-EFD645E050F8}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{075EAE8A-1CA6-4562-94BE-31004B76DD80}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [UDP Query User{E110E7DE-9206-464B-BFA5-61D388F1BA3B}C:\users\dylan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\dylan\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{5A88977E-9035-48DB-8AFB-37C729C9EBC9}C:\users\dylan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\dylan\appdata\roaming\spotify\spotify.exe
FirewallRules: [{3D8836BB-740E-450D-8D16-A5763BCCDF71}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{865937EC-1A7F-4398-9559-6B7CFA484CD0}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FDCFA9D9-7D88-4F85-8696-C73D21270AAF}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{FED7A89D-A32A-4D35-85D8-1534956F9444}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{575B42A5-3336-47B3-B0DD-DB665D5F548A}D:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{CB927772-0D80-46CD-8807-4D5AA4ED3C7F}D:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{B53CCAE8-2878-42B0-A9A7-A18F91775581}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [{C7DEC64B-BD2C-4549-8E69-45105771B974}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [TCP Query User{97905A5F-33AC-4E8C-B4CE-EDF23BE57472}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{DF3498A9-A093-4FAC-8156-199F82E5C90A}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{DF2FB0CA-0226-49E4-A1AC-F55DD71CF669}D:\program files (x86)\five-reborn\fivem.exe] => (Allow) D:\program files (x86)\five-reborn\fivem.exe
FirewallRules: [UDP Query User{3701CB24-21B6-440B-AA84-0F597087FC1E}D:\program files (x86)\five-reborn\fivem.exe] => (Allow) D:\program files (x86)\five-reborn\fivem.exe
FirewallRules: [TCP Query User{14E52623-7EF6-433D-82BF-A1C2A7F1648D}D:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [UDP Query User{0EEF197E-2394-4C99-84D4-1843A17DB752}D:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [{7D0461BA-FEE6-499C-B839-F447324D468E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{6B5D32EC-330A-4BBF-9BB5-AE0FEAD84F37}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{C82B74AE-7282-4B76-82AA-712DCA58296B}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{67F387C2-6A35-411A-9A76-25421EA55F7F}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{C429B1F5-B9BD-4D8F-A780-92D0FBCCF30C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{FF150E50-C8D5-487D-9D82-E0617FD3FD15}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{9A6E9312-4ED0-44BA-89AE-9D32136EE98A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{CFC14584-E351-421C-8D10-DD6B18E5A289}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{69B81E6B-67A0-4445-87ED-4F291397B875}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [{797DC106-6380-4B94-B66A-1344FC6F1610}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [TCP Query User{7A1264AE-1784-4150-9467-1E4D255CC5D2}D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{17BF5164-D19F-4066-A0C8-9259510C3703}D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{8F46B75D-FE42-4225-A6E5-96C6E80F7F60}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [{6E19CFE9-5199-47F2-B782-DA6278E019C4}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [TCP Query User{9528A433-C5E2-431B-B331-068525655EEF}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [UDP Query User{0E237E17-BB80-4A0B-A923-6D630744C278}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [{2A9E5D60-18D6-4910-A1C7-3F6C7262EA33}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{25A8F1B0-ABF6-4E03-98D1-87DD77FE5269}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [TCP Query User{69C6CC03-D6A9-4DFC-B401-E447F9905A16}D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [UDP Query User{0B353D32-AECD-491A-B476-0EC9CD2B3B5D}D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [TCP Query User{E72DAB16-674A-4F26-A06E-CA3668D98117}D:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [UDP Query User{9B6928A1-F9BF-439B-863E-A2897DD94BA6}D:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [{6BCEFEE8-5066-4437-AB05-A4266D0579E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{84D4F047-B360-4AB2-8774-18A04AA93510}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{CD33EBD4-8121-432C-96EA-4AB22B1C4284}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{7283D1F8-8838-4F8E-B631-D39C934D46D4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{ECC637CE-DC5B-4A79-9297-451CCD99CF0F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{C712D8CA-A15F-4F8D-84FE-7A33097D4CD6}D:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe
FirewallRules: [UDP Query User{FFB9DA79-AD45-4701-8BB3-7E7ADB9044F9}D:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe
FirewallRules: [TCP Query User{09197CCA-C61C-47CB-A9FD-CA1B5679BCD7}D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [UDP Query User{F410A270-250E-45F4-8DF1-A8F63BC454FD}D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [TCP Query User{52D1BEC6-DAF2-4930-9474-9EB826547CE0}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{1417A3FC-2BCA-46B4-A4D4-3C70FE3AE2C9}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{5F7112D0-793B-49C7-84B5-BC851082FA3C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{318928C6-1154-4EE3-A0A0-099252930C7D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [TCP Query User{65332E50-ACA0-4D4D-82E1-F63206099AC0}D:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{8BD72B29-0806-4AE6-9235-C4A4D3C04132}D:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [{6EB5EE6A-0C16-4726-963E-45F507C7387A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Rising Storm 2\Binaries\Win64\RisingStorm2.exe
FirewallRules: [{35D55FD3-C318-423D-A06C-97E361273683}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Rising Storm 2\Binaries\Win64\RisingStorm2.exe
FirewallRules: [TCP Query User{4A8444CA-0392-4175-B39E-F3A658ECE2C1}D:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [UDP Query User{4D7A016A-1011-4CB6-BCD4-E7E64676BB5F}D:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [{73415E35-980E-4951-9994-A91741D40FBB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{A99DECF0-81DF-4579-82F6-35FD9B372A9F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{7B8E74A6-5FB2-4504-ADA2-7706AF3B3CC3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{348A0CA5-BA2F-4F42-8506-C79526F191DC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{A66B975B-3B18-4E08-8E56-67F17435D264}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{3EF5EA82-DAF4-44EF-A908-C5BACC187C22}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{783D5CCE-4CE4-435A-BDB0-A5AFA2772F37}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{27B243BA-D4A4-4F8A-B9EA-0385807F3FA4}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [TCP Query User{FF8CF571-7D2E-42E3-B694-051702BEFA27}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [UDP Query User{C1C835FD-D9D2-4F76-B727-2A2E74C59A9F}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [{099B713F-3FCA-4AB5-AAEF-D4335C1DA5EE}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
FirewallRules: [{50093020-A8B3-4F1E-8010-38E5278096F8}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
FirewallRules: [{76469003-D8E3-456B-BF7C-F1DBA43B3FDA}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe
FirewallRules: [{55D894C5-8D0A-4C62-AEE7-ECCE2C6AE808}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe
FirewallRules: [{515CADF4-9536-4D52-A80C-BCD93B118964}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2\arma2.exe
FirewallRules: [{892CBCAF-9F21-43A1-A6F9-8ECA5F6FFD02}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 2\arma2.exe
FirewallRules: [{D7547B00-AE5F-4331-BD9D-94190F90200C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Comedy Night\Comedy Night.exe
FirewallRules: [{9C384D0D-0CE4-46E6-88FE-335DE40B2457}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Comedy Night\Comedy Night.exe
FirewallRules: [TCP Query User{A1510240-C63B-4904-8723-9182D61BCE5A}D:\program files (x86)\steam\steamapps\common\miscreated\bin64\miscreated.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\miscreated\bin64\miscreated.exe
FirewallRules: [UDP Query User{12DD4ECA-4629-4493-A3B6-F0B84B4319B3}D:\program files (x86)\steam\steamapps\common\miscreated\bin64\miscreated.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\miscreated\bin64\miscreated.exe
FirewallRules: [{498F4743-692D-4F0F-970F-1CC60A6FB13A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [{699A4CA1-B6EE-4A17-9D0D-609B411C736A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [{76D0D85E-802A-4676-82AD-CAAC69330C42}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{B10E7011-6283-4AED-90BE-6569A6C47221}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{F0AA3D21-AA18-4535-A1F0-9751298CEA5D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{E5960736-C579-4AB0-B079-1C620E7079D1}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{3865CFC3-37C5-40BD-9559-446677A71452}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's The Division\thedivision.exe
FirewallRules: [{535453AF-FEB4-449F-B46B-EC855D3F2531}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's The Division\thedivision.exe
FirewallRules: [TCP Query User{EF5EF7C4-A680-489E-A0B1-82D101D6DE15}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{8B123EED-BDE2-4B00-9183-FF102F0B2B8B}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{0F1758AC-AB21-40F8-9916-F41A1EFE7A02}D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.129\deploy\leagueclient.exe] => (Allow) D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.129\deploy\leagueclient.exe
FirewallRules: [UDP Query User{7B9B9C0D-04F1-40A4-9A8C-1419EFD66CBB}D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.129\deploy\leagueclient.exe] => (Allow) D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.129\deploy\leagueclient.exe
FirewallRules: [{986BC5D8-6237-4C96-AF6F-B43D2CCE7959}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{1099B298-47A1-4D10-85F4-316BB07F98CD}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{AE502A5E-3348-4325-AEDC-46BA538C4136}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe
FirewallRules: [{1A1BB0A8-30A5-41DF-90F0-51A61686E8F9}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe
FirewallRules: [TCP Query User{56E4E334-F4F4-45F2-838F-96D741E3AC5A}D:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [UDP Query User{B5750ED2-4B9D-4A06-8869-B66111C7A851}D:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{6E271F2D-0400-408A-A20E-6AAE3A94F9EF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{8F562BDD-7BB0-43E2-B164-CB43EED8793B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{7BA8C13E-6A65-4E7A-A5FC-E90E3341A285}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{9084B43E-2F5D-4508-87EB-C2FF40F6D0B7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{84CF074A-29F0-4627-BD98-9E7F804CE123}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{7F1486F8-5C92-4A9F-BE9D-EDFBDDF9DC04}D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe
FirewallRules: [UDP Query User{3C1A6FFB-7EA4-49EF-A25C-717B9BBD1CD0}D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\program files (x86)\leauge of legends\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/25/2018 02:53:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: hng.exe, version: 0.0.0.0, time stamp: 0x5ab011ef
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000
Faulting process id: 0x110c
Faulting application start time: 0x01d3c40e4ec1a19b
Faulting application path: D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hng.exe
Faulting module path: unknown
Report Id: 3854fe3f-df96-4197-9af4-69ad3240f9b2
Faulting package full name:
Faulting package-relative application ID:

Error: (03/24/2018 08:43:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Spotify.exe version 1.0.67.582 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 2480

Start Time: 01d3c3d8340976b6

Termination Time: 4294967295

Application Path: C:\Users\Dylan\AppData\Roaming\Spotify\Spotify.exe

Report Id: 8a705282-5c14-4794-8025-3365bc7df16d

Faulting package full name:

Faulting package-relative application ID:

Error: (03/24/2018 08:04:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: FiveM.exe, version: 1.0.0.0, time stamp: 0x5a279400
Faulting module name: FiveM.exe, version: 1.0.0.0, time stamp: 0x5a279400
Exception code: 0xc0000005
Fault offset: 0x00000000002c1d89
Faulting process id: 0x2784
Faulting application start time: 0x01d3c3d290411553
Faulting application path: C:\Users\Dylan\AppData\Local\FiveM\FiveM.exe
Faulting module path: C:\Users\Dylan\AppData\Local\FiveM\FiveM.exe
Report Id: 8943fe27-c0c4-4f5f-b9a7-7af3d52bc2a5
Faulting package full name:
Faulting package-relative application ID:

Error: (03/24/2018 07:13:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: hng.exe, version: 0.0.0.0, time stamp: 0x5ab011ef
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000
Faulting process id: 0x2fc8
Faulting application start time: 0x01d3c3ce13e19b6e
Faulting application path: D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hng.exe
Faulting module path: unknown
Report Id: c7437a6f-f24e-4ea8-9a25-ec8f6df1ad83
Faulting package full name:
Faulting package-relative application ID:

Error: (03/24/2018 06:34:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: hng.exe, version: 0.0.0.0, time stamp: 0x5ab011ef
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000
Faulting process id: 0x2054
Faulting application start time: 0x01d3c3c8a0fc5e9a
Faulting application path: D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hng.exe
Faulting module path: unknown
Report Id: 9df9cff0-a4b3-492c-9ee4-c86a6ba37305
Faulting package full name:
Faulting package-relative application ID:

Error: (03/24/2018 03:15:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: hng.exe, version: 0.0.0.0, time stamp: 0x5ab011ef
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000
Faulting process id: 0x1da4
Faulting application start time: 0x01d3c3483edc8551
Faulting application path: D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hng.exe
Faulting module path: unknown
Report Id: cd6a2062-eaf9-4d2b-b3f4-ea73d59dfdb4
Faulting package full name:
Faulting package-relative application ID:

Error: (03/23/2018 08:59:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: hng.exe, version: 0.0.0.0, time stamp: 0x5ab011ef
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000
Faulting process id: 0x138c
Faulting application start time: 0x01d3c313af92c149
Faulting application path: D:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hng.exe
Faulting module path: unknown
Report Id: ca983663-c958-416e-af23-904b54e9dfb8
Faulting package full name:
Faulting package-relative application ID:

Error: (03/23/2018 07:48:25 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.


System errors:
=============
Error: (03/25/2018 09:30:21 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-F54C10V)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-F54C10V\Dylan SID (S-1-5-21-927589816-2843545167-1243196516-1003) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:27:53 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-F54C10V)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-F54C10V\Dylan SID (S-1-5-21-927589816-2843545167-1243196516-1003) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:27:09 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-F54C10V)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-F54C10V\Dylan SID (S-1-5-21-927589816-2843545167-1243196516-1003) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:26:38 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:26:38 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:26:38 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 09:26:38 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/25/2018 04:31:05 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-F54C10V)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.


Windows Defender:
===================================
Date: 2018-03-24 22:16:41.852
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {7C266C03-199C-4886-AE1A-2FE6D153C4ED}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2018-02-14 17:21:13.939
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {81463FF2-C51A-441C-9F11-EE444522AC48}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2018-02-14 17:20:06.241
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {C4360FDA-6666-4322-9A3D-52AFE06CE5B7}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2018-01-28 20:56:21.657
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {928FBB5C-7A19-43CA-BF57-6300F17AC112}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-12-29 20:26:28.646
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {5256728F-8769-4C2E-8D8A-6963B4EBB900}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2018-02-07 15:33:15.801
Description:
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.261.794.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14500.5
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2018-02-07 15:33:15.801
Description:
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 118.2.0.0
Update Source: Microsoft Malware Protection Center
Signature Type: Network Inspection System
Update Type: Full
Current Engine Version:
Previous Engine Version: 2.1.14202.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2018-02-07 15:33:15.798
Description:
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.261.794.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14500.5
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2018-02-07 15:33:15.798
Description:
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.261.794.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14500.5
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2018-02-07 15:33:15.798
Description:
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.261.794.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14500.5
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

CodeIntegrity:
===================================

Date: 2018-03-25 21:32:08.626
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:32:08.625
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:57.339
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:57.338
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:51.522
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:51.519
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:44.154
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2018-03-25 21:31:44.153
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 18%
Total physical RAM: 16346.79 MB
Available physical RAM: 13243.5 MB
Total Virtual: 18778.79 MB
Available Virtual: 13184.22 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.24 GB) (Free:9.32 GB) NTFS
Drive d: (New Volume) (Fixed) (Total:1862.89 GB) (Free:946.64 GB) NTFS

\\?\Volume{d7645f23-afa5-464d-9110-ebe5a3c4a53f}\ (Recovery) (Fixed) (Total:0.44 GB) (Free:0.05 GB) NTFS
\\?\Volume{390d82fc-5e60-4880-8629-8b1e4d2853af}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 111.8 GB) (Disk ID: 67CB2BAE)

Partition: GPT.

========================================================
Disk: 1 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================
 
Whilst I look over your logs I would suggest you attend to a couple of issues.
  1. System restore is disabled which is not good.
  2. Your system drive is nearly full, and Windows will never work efficiently like that. Suggest you remove superfluous software and create more free space.

Please go here and download RogueKiller, click HERE to download a 32bit version, or HERE for a 64bit one. If you are unsure if your PC is a 32 or 64bit version look HERE.

Save the download to your desktop.

Close all running programs, Including any Antivirus or Security programs.
If you are unsure how to do this please ask.:thumbsup:
  • Right click the new RogueKiller desktop shortcut, and then click on "Run as Administrator"
  • If you get a dialogue box explaining that there is a new version, go to the website and download it. Click the go to website button at the bottom of the box.
  • Once the application is open, or you have updated it, click on the Scan button located on the top menu bar.
  • The scan may take some time to complete depending on the amount of data on your PC. Allow it to complete.
  • Once the scan is complete check every item for deletion.
  • Then check "Remove Selected"

C4i7v64.jpg



Again it may take a little time to remove the detections.
Then click "Open Report" on the bottom left of the main program interface.
A new dialogue box will open, click "Open TXT"


u32ik5U.jpg



Please Copy and Paste the contents of that text file in your next post.:)

If by chance you have closed the TXT file before copying it you can retrieve it by clicking on the History button on the programs main interface.
 
RogueKiller V12.12.10.0 (x64) [Mar 26 2018] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : https://forum.adlice.com
Website : http://www.adlice.com/download/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 10 (10.0.16299) 64 bits version
Started in : Normal mode
User : Dylan [Administrator]
Started from : C:\Users\Dylan\Downloads\RogueKiller_portable64.exe
Mode : Scan -- Date : 03/27/2018 18:42:58 (Duration : 00:25:55)

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 7 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main | Start Page : http://oem17win10.msn.com/?pc=NMTE -> Found
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main | Start Page : http://oem17win10.msn.com/?pc=NMTE -> Found
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://oem17win10.msn.com/?pc=NMTE -> Found
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://oem17win10.msn.com/?pc=NMTE -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.1.1 ([]) -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{7eb501df-dec8-4a26-9db5-10b87c4cd37b} | DhcpNameServer : 10.0.1.1 ([]) -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{cd1693db-ef80-4abe-aec5-8ee6d960e829} | DhcpNameServer : 10.0.1.1 10.0.1.3 ([][]) -> Found

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ WMI : 0 ¤¤¤

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: SanDisk SD8SBBU120G1122 +++++
--- User ---
[MBR] 7b5eb678d0010d8d50044ab9135a39c9
[BSP] f1d1d1622348948eeef5ca87808836d5 : Empty MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 450 MB
1 - [MAN-MOUNT] EFI system partition | Offset (sectors): 923648 | Size: 100 MB
2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 1128448 | Size: 16 MB
3 - Basic data partition | Offset (sectors): 1161216 | Size: 113905 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: TOSHIBA DT01ACA200 +++++
--- User ---
[MBR] 0086f36f0b7bc8b257f89fc226376c3d
[BSP] 9e3b3c473b1db0daa516427cdae6e1cc : Windows Vista/7/8 MBR Code
Partition table:
0 - Microsoft reserved partition | Offset (sectors): 34 | Size: 128 MB
1 - Basic data partition | Offset (sectors): 264192 | Size: 1907600 MB
User = LL1 ... OK
User = LL2 ... OK
 
Please left click on the attached Fixlist.txt file at the bottom of this post. On the dialogue box that opens click "Save File" and then "OK"


vzol8OV.jpg



Select a location then save the file. IMPORTANT the fixlist.txt file must be in the same location as the FRST program otherwise the fix will not work.


pjsQ8XB.jpg



To run the fix right click the FRST icon and choose "Run as Administrator" then click on "Fix"


cp0349X.jpg



Depending on the amount of data to be moved it may take a few minutes to complete, and the computer may reboot. When the fix is complete and/or the computer has rebooted the "Fixlist.txt" file you created will be renamed "Fixlog.txt"

Please COPY and PASTE the contents of this new file in your next post:)

Now please rerun FRST and COPY and PASTE the new logs.

We need a log from Farbar Recovery Scan Tool (FRST) to examine your system.

Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.

If you are unsure if your operating system is 32 or 64 Bit please go HERE.

Once downloaded right click the FRST desktop icon and select "Run as administrator" from the menu"


icon2-jpg.112



If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
Frst will open with two dialogue boxes, accept the disclaimer.


frst-disclaimer-jpg.113


  1. Accept the default whitelist options,
  2. If the additions.txt options box is not checked please select it.
  3. Then select "Scan"

frst-jpg.114



Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.


2016-08-12_152002-jpg.115



Please COPY and PASTE the contents of these two files in your next post.

Your next post should contain

Fixlog
New FRST log
New Addition log:)
 

Attachments

  • fixlist.txt
    2 KB · Views: 35
Last edited:
Fix result of Farbar Recovery Scan Tool (x64) Version: 14.03.2018
Ran by Dylan (28-03-2018 19:07:35) Run:1
Running from C:\Users\Dylan\Downloads
Loaded Profiles: defaultuser0 & Dylan (Available Profiles: defaultuser0 & Dylan)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorepoint:
Closeprocesses:
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> DefaultScope {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
Task: {B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
AlternateDataStreams: C:\Users\Dylan:Heroes & Generals [38]
AlternateDataStreams: C:\ProgramData\.rdata:X [526]
C:\Users\Dylan\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
C:\Users\Dylan\AppData\Local\Temp\9ec93f2ddf0807eb37f93ec0c6968e81.dll
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state On
CMD: ipconfig /flushdns
EmptyTemp:
reboot:
end

*****************

Error: (0) Failed to create a restore point.
Processes closed successfully.
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9D825E1D-057D-4728-8F64-0608FB9D5669}" => removed successfully
HKLM\Software\Classes\CLSID\{9D825E1D-057D-4728-8F64-0608FB9D5669} => not found
"HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0" => removed successfully
"C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll" => not found
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}" => removed successfully
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}" => removed successfully
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw" => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} => could not remove. Access Denied.
C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate" => removed successfully
C:\Users\Dylan => ":Heroes & Generals" ADS removed successfully
C:\ProgramData\.rdata => ":X" ADS removed successfully
"C:\Users\Dylan\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll" => not found
"C:\Users\Dylan\AppData\Local\Temp\9ec93f2ddf0807eb37f93ec0c6968e81.dll" => not found

========= netsh advfirewall reset =========

Ok.


========= End of CMD: =========


========= netsh advfirewall set allprofiles state On =========

Ok.


========= End of CMD: =========


========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 9461760 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 37840115 B
Java, Flash, Steam htmlcache => 309891151 B
Windows/system/drivers => 4841268 B
Edge => 3876750 B
Chrome => 525764826 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 35658 B
defaultuser0 => 0 B
Dylan => 9820403152 B

RecycleBin => 4799320142 B
EmptyTemp: => 14.4 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 28-03-2018 19:08:43)


Result of scheduled keys to remove after reboot:

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} => could not remove. Access Denied.

==== End of Fixlog 19:08:43 ====
 
Fix result of Farbar Recovery Scan Tool (x64) Version: 14.03.2018
Ran by Dylan (29-03-2018 21:57:04) Run:2
Running from C:\Users\Dylan\Desktop
Loaded Profiles: defaultuser0 & Dylan (Available Profiles: defaultuser0 & Dylan)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorepoint:
Closeprocesses:
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> DefaultScope {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
SearchScopes: HKU\S-1-5-21-927589816-2843545167-1243196516-1003 -> {9D825E1D-057D-4728-8F64-0608FB9D5669} URL =
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Dylan\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
Task: {B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
AlternateDataStreams: C:\Users\Dylan:Heroes & Generals [38]
AlternateDataStreams: C:\ProgramData\.rdata:X [526]
C:\Users\Dylan\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
C:\Users\Dylan\AppData\Local\Temp\9ec93f2ddf0807eb37f93ec0c6968e81.dll
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state On
CMD: ipconfig /flushdns
EmptyTemp:
reboot:
end

*****************

Error: (0) Failed to create a restore point.
Processes closed successfully.
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
"HKU\S-1-5-21-927589816-2843545167-1243196516-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => not found
HKU\S-1-5-21-927589816-2843545167-1243196516-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9D825E1D-057D-4728-8F64-0608FB9D5669} => not found
HKLM\Software\Classes\CLSID\{9D825E1D-057D-4728-8F64-0608FB9D5669} => not found
HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0 => not found
"C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll" => not found
HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => not found
HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => not found
HKU\S-1-5-21-927589816-2843545167-1243196516-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => not found
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} => could not remove. Access Denied.
"C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate" => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate => could not remove. Access Denied.
"C:\Users\Dylan" => ":Heroes & Generals" ADS not found.
"C:\ProgramData\.rdata" => ":X" ADS not found.
"C:\Users\Dylan\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll" => not found
"C:\Users\Dylan\AppData\Local\Temp\9ec93f2ddf0807eb37f93ec0c6968e81.dll" => not found

========= netsh advfirewall reset =========

Ok.


========= End of CMD: =========


========= netsh advfirewall set allprofiles state On =========

Ok.


========= End of CMD: =========


========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 9461760 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10566707 B
Java, Flash, Steam htmlcache => 1017556 B
Windows/system/drivers => 26546 B
Edge => 1219641 B
Chrome => 42056136 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 2986 B
defaultuser0 => 0 B
Dylan => 5668638029 B

RecycleBin => 4467 B
EmptyTemp: => 5.3 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-03-2018 21:57:49)


Result of scheduled keys to remove after reboot:

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B764F182-E15A-4A9D-AA3B-A5FDAA0D273A} => could not remove. Access Denied.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate => could not remove. Access Denied.

==== End of Fixlog 21:57:49 ====
 
Hello Rebelk955
Can you please RE-RUN FRST from your desktop. Then we need you to COPY and PASTE the logs produced.

Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.

If you are unsure if your operating system is 32 or 64 Bit please go HERE.

Once downloaded right click the FRST desktop icon and select "Run as administrator" from the menu"


icon2-jpg.112



If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
Frst will open with two dialogue boxes, accept the disclaimer.



frst-disclaimer-jpg.113


  1. Accept the default whitelist options,
  2. If the additions.txt options box is not checked please select it.
  3. Then select "Scan"

frst-jpg.114


Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.


2016-08-12_152002-jpg.115


Please COPY and PASTE the contents of these two files in your next post.:)
 
Status
Not open for further replies.