Potential Malware (Win64 Poki?) – Virus, Trojan, Spyware, and Malware Removal Help

0
346


Hello,

 

Computer is very slow and programs crash and a scan showed a possible trojan maybe win64 poki or something, the antivirus program crashed before I could see.

 

 

 

Kind Regards,

 

Ben.

 

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-02-2020 02
Ran by Ben (administrator) on LAPTOP-ICFI28LN (Acer Aspire VN7-793G) (07-02-2020 15:33:19)
Running from C:UsersDSL-2070Downloads
Loaded Profiles: Ben (Available Profiles: defaultuser0 & Ben)
Platform: Windows 10 Home Version 1909 18363.628 (X64) Language: English (United States)
Default browser: “C:Program FilesFirefox Developer Editionfirefox.exe” -osint -url “%1”
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Acer Incorporated -> ) C:OEMPreloadFUBServiceFUBService.exe
(Acer Incorporated -> ) C:Program Files (x86)AcerCare CenterACCStd.exe
(Acer Incorporated -> Acer Incorporated) C:Program Files (x86)AcerAOP FrameworkBackgroundAgent.exe
(Acer Incorporated -> Acer Incorporated) C:Program Files (x86)AcerAOP FrameworkCCDMonitorService.exe
(Acer Incorporated -> Acer Incorporated) C:Program FilesAcerAcer Quick AccessePowerButton_NB.exe
(Acer Incorporated -> Acer Incorporated) C:Program FilesAcerAcer Quick AccessQAAdminAgent.exe
(Acer Incorporated -> Acer Incorporated) C:Program FilesAcerAcer Quick AccessQAAgent.exe
(Acer Incorporated -> Acer Incorporated) C:Program FilesAcerAcer Quick AccessQALockHandler.exe
(Acer Incorporated -> Acer Incorporated) C:Program FilesAcerAcer Quick AccessQASvc.exe
(Adobe Inc. -> Adobe Systems) C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:Program Files (x86)AdobeAcrobat 10.0Acrobatacrotray.exe
(Apple Inc. -> Apple Inc.) C:Program FilesBonjourmDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender AgentDiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender AgentProductAgentService.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender Antivirus Freebdagent.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender Antivirus Freebdredline.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender Antivirus Freeupdatesrv.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender Antivirus Freevsserv.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender Antivirus Freevsservppl.exe
(Dolby Laboratories, Inc. -> ) C:Program FilesDolbyDolby DAX2DAX2_APIDolbyDAX2API.exe
(Dolby Laboratories, Inc. -> ) C:Program FilesDolbyDolby DAX2DAX2_APPDolbyDAX2TrayIcon.exe
(Intel Corporation – Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:Program Files (x86)IntelIntel® Management Engine ComponentsLMSLMS.exe
(Intel® CN -> Intel Corporation) C:WindowsSystem32IntelSSTAPOParameterServiceParameterService.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe
(Intel® Extreme Tuning Utility -> Intel® Corporation) C:Program Files (x86)IntelIntel® Extreme Tuning UtilityXtuService.exe
(Intel® pGFX -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371igfxCUIService.exe
(Intel® pGFX -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371igfxEM.exe
(Intel® pGFX -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371igfxext.exe
(Intel® pGFX -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371IntelCpHDCPSvc.exe
(Intel® pGFX -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371IntelCpHeciSvc.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-Malwarembamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:WindowsMicrosoft.NETFramework64v3.0WPFPresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32wbemWMIADAP.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2001.7-0MsMpEng.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program FilesFirefox Developer Editionfirefox.exe
(NVIDIA Corporation -> Node.js) C:Program Files (x86)NVIDIA CorporationNvNodeNVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program Files (x86)NVIDIA CorporationNvContainernvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationDisplaynvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonMacriumService.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonReflectMonitor.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonReflectUI.exe
(Qualcomm Atheros -> Windows ® Win 7 DDK provider) C:Program Files (x86)Bluetooth SuiteAdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARAVCpl64.exe
(Sony) [File not signed] C:Program FilesSonyXperia CompanionServiceXperiaCompanionService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM…Run: [RTHDVCPL] => C:Program FilesRealtekAudioHDARAVCpl64.exe [16889344 2017-03-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Run: [RtHDVBg_Dolby] => C:Program FilesRealtekAudioHDARAVBg64.exe [1485312 2017-03-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Run: [iTunesHelper] => C:Program FilesiTunesiTunesHelper.exe [301880 2018-11-15] (Apple Inc. -> Apple Inc.)
HKLM…Run: [DAX2_APP] => C:Program FilesDolbyDolby DAX2DAX2_APPDolbyDAX2TrayIcon.exe [849928 2016-09-19] (Dolby Laboratories, Inc. -> )
HKLM…Run: [Reflect UI] => C:Program FilesMacriumCommonReflectUI.exe [6525840 2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
HKLM-x32…Run: [ControlCenter4] => C:Program Files (x86)ControlCenter4BrCcBoot.exe [139264 2013-04-08] (Brother Industries, Ltd.) [File not signed]
HKLM-x32…Run: [BrStsMon00] => C:Program Files (x86)Browny02BrotherBrStMonW.exe [4522496 2013-03-22] (Brother Industries, Ltd.) [File not signed]
HKLM-x32…Run: [BrHelp] => C:Program Files (x86)BrotherBrother HelpBrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32…Run: [Adobe Acrobat Speed Launcher] => C:Program Files (x86)AdobeAcrobat 10.0AcrobatAcrobat_sl.exe [36760 2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32…Run: [Acrobat Assistant 8.0] => C:Program Files (x86)AdobeAcrobat 10.0AcrobatAcrotray.exe [821144 2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32…Run: [SunJavaUpdateSched] => C:Program Files (x86)Common FilesJavaJava Updatejusched.exe [646160 2019-12-11] (Oracle America, Inc. -> Oracle Corporation)
HKUS-1-5-19…RunOnce: [WAB Migrate] => C:Program FilesWindows Mailwab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKUS-1-5-20…RunOnce: [WAB Migrate] => C:Program FilesWindows Mailwab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKUS-1-5-21-1224708674-751352818-3313322539-1001…Run: [Adobe Acrobat Synchronizer] => C:Program Files (x86)AdobeAcrobat 10.0AcrobatAdobeCollabSync.exe [1216416 2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0207749B-57B1-4F71-A97D-13ECA30EF9FB} – System32TasksBitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:Program FilesBitdefender AgentWatchDog.exe [488760 2019-07-15] (Bitdefender SRL -> Bitdefender)
Task: {0DC2624A-104E-4B16-A38B-29B7C6643A7F} – System32TasksNvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {11CB9599-E61E-4F26-B3DC-04F49DEA5E3C} – System32TasksNvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {14438A3F-6778-4879-A68F-D9CF6092CB8C} – System32TasksUser Boot Experience Task => C:OEMPreloadFUBServiceFUBService.exe [30976 2015-05-14] (Acer Incorporated -> )
Task: {27907B3D-00AA-4B80-B4FB-B9293A97E70C} – System32TasksNvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2AF40FE8-A22F-497E-B745-807E60575569} – System32TasksIntelThunderboltStart Thunderbolt service when hardware is detected => sc.exe start ThunderboltService
Task: {2C66CBA9-0A57-4C48-9CF9-356DCEE4E404} – System32TasksOneDrive Standalone Update Task-S-1-5-21-1224708674-751352818-3313322539-1002 => C:UsersDSL-2070AppDataLocalMicrosoftOneDriveOneDriveStandaloneUpdater.exe
Task: {3338D9B5-8624-40A7-9792-4711FD914837} – System32TasksNVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program Files (x86)NVIDIA CorporationNVIDIA GeForce ExperienceNVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {38DCAE48-2C9E-480D-8ABE-9549A92E855A} – System32TasksNvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationUpdate CoreNvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3ABD0F73-C0BE-49E5-A22B-0CF62ECEF917} – MicrosoftWindowsUNPRunCampaignManager -> No File <==== ATTENTION
Task: {3B3FB820-9A05-4E49-A3DC-E38BF52345EE} – System32TasksIntelThunderboltStart Thunderbolt service on boot if driver is up => C:Program Files (x86)IntelThunderbolt Softwaretbtsvc.exe [2018024 2016-11-16] (Intel® Client Connectivity Division SW -> Intel Corporation)
Task: {3C9CB03D-C158-4FEF-A292-466514839380} – System32TasksSoftware Update Application => C:ProgramDataOEMUpgradeToolListCheck.exe [473904 2017-02-21] (Acer Incorporated -> Acer Incorporated)
Task: {3FADA6C8-38EC-4539-9EFD-70F5F6B2D95D} – System32TasksPower Button => C:Program FilesAcerAcer Quick AccessePowerButton_NB.exe [2767664 2017-02-15] (Acer Incorporated -> Acer Incorporated)
Task: {48699F6D-DF17-41D8-AB27-5159926EA7A3} – System32TasksACC => C:Program Files (x86)AcerCare CenterLiveUpdateChecker.exe [2920752 2017-05-24] (Acer Incorporated -> )
Task: {52F6FE24-3BB8-4E55-9F19-D88F3D4C2AF5} – System32TasksACCAgent => C:Program Files (x86)AcerCare CenterLiveUpdateAgent.exe [41264 2017-02-21] (Acer Incorporated -> )
Task: {61400BE4-64D1-4251-B330-0559FF5BA0C9} – System32TasksNvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationUpdate CoreNvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {744ECD73-0242-4BD8-9366-7693E358E6F3} – System32TasksNvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program Files (x86)NVIDIA CorporationNvNodenvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {77AB02D3-62FE-44DB-A469-82417E3FB997} – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cache Maintenance => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0MpCmdRun.exe [473544 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {797B58C0-7435-4191-A44B-308087344F0E} – System32TasksBacKGroundAgent => C:Program Files (x86)AcerAOP FrameworkBackgroundAgent.exe [65752 2016-08-30] (Acer Incorporated -> Acer Incorporated)
Task: {94F34DEA-FD90-4D95-91E6-335EEFC0256A} – System32TasksQuick Access => C:Program FilesAcerAcer Quick AccessQALauncher.exe [445744 2017-02-15] (Acer Incorporated -> Acer Incorporated)
Task: {9E8BCC35-514E-4351-B6F1-124EE78B3616} – System32TasksIntel PTT EK Recertification => C:Program FilesInteliCLS ClientIntelPTTEKRecertification.exe [543536 2016-10-13] (Intel® Trust Services -> Intel® Corporation)
Task: {A1E79E15-4AA7-4FBE-8279-992AC849174D} – System32TasksIntelThunderboltStart Thunderbolt application on login if service is up => C:Program Files (x86)IntelThunderbolt SoftwareConditionalAppStarter.exe [222944 2016-11-16] (Intel® Client Connectivity Division SW -> Intel Corporation)
Task: {A7E445C3-30BD-4FAA-82E6-BBD6B7916470} – System32TasksAcerCMUpdateTask2.1.16258 => C:Program Files (x86)AcerAmundsen2.1.16258AWC.exe [152880 2016-09-20] (Acer Incorporated -> )
Task: {A9BA60A2-5A39-47AE-B91C-C0DF66AE35CC} – System32TasksAdobe Flash Player NPAPI Notifier => C:WINDOWSSysWOW64MacromedFlashFlashUtil32_32_0_0_321_Plugin.exe [1458232 2020-01-22] (Adobe Inc. -> Adobe)
Task: {AEED7466-D985-4007-92DD-6DD5D86C5D3E} – System32TasksAdobe Flash Player Updater => C:WINDOWSSysWOW64MacromedFlashFlashPlayerUpdateService.exe [335416 2020-01-22] (Adobe Inc. -> Adobe)
Task: {B97CFDCE-E202-4412-93F5-B3B13C5FFB93} – System32TasksAdobe Acrobat Update Task => C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {BE228B8E-5CFE-4FEE-BBA2-C0762F1BE7C5} – System32TasksNvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BEFE7D98-5A12-4D53-B04A-45252223E876} – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Verification => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0MpCmdRun.exe [473544 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C7725576-5068-4796-93F1-21CCC68C873A} – System32TasksCAM => C:Program Files (x86)NZXTCAMCAM_V3.exe [7482480 2018-05-21] (NZXT -> )
Task: {CE648A34-E4F0-4D3B-8D26-8A2B61FE748D} – System32TasksAppleAppleSoftwareUpdate => C:Program Files (x86)Apple Software UpdateSoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {CFFBD34D-0C27-42FA-91B2-BE59413D815D} – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Scheduled Scan => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0MpCmdRun.exe [473544 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D816E13E-EE3D-4F0F-9943-8BDE09D32691} – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cleanup => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0MpCmdRun.exe [473544 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E8FDE0C8-59E6-4C75-AF14-0EB326264B50} – System32TasksACCBackgroundApplication => C:Program Files (x86)AcerCare CenterACCStd.exe [4696880 2018-05-28] (Acer Incorporated -> )
Task: {EE991FEE-282C-4CFE-A0D2-62B66EF95A13} – System32TasksIntelThunderboltStart Thunderbolt application when hardware is detected => C:Program Files (x86)IntelThunderbolt SoftwareConditionalAppStarter.exe [222944 2016-11-16] (Intel® Client Connectivity Division SW -> Intel Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

TcpipParameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip..Interfaces{409acd4a-c6fc-413a-bc7d-e98d0de656bc}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip..Interfaces{575f3091-343e-49b8-adab-bb21b7495833}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip..Interfaces{576a8fd6-9f14-439c-b343-dd3d1747a1ef}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Search Page =
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Page_URL =
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL =
HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Local Page =
HKUS-1-5-21-1224708674-751352818-3313322539-1001SoftwareMicrosoftInternet ExplorerMain,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
SearchScopes: HKUS-1-5-21-1224708674-751352818-3313322539-1001 -> DefaultScope {55B4AC39-46BB-49B4-9E50-841508F6F803} URL =
SearchScopes: HKUS-1-5-21-1224708674-751352818-3313322539-1001 -> {55B4AC39-46BB-49B4-9E50-841508F6F803} URL =
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:Program FilesMicrosoft OfficeOffice14URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEHelperShim.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:Program Files (x86)Javajre1.8.0_241binssv.dll [2020-01-17] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEFavClient.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:Program Files (x86)Microsoft OfficeOffice14URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:Program Files (x86)Javajre1.8.0_241binjp2ssv.dll [2020-01-17] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEFavClient.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 – Adobe PDF – {47833539-D0C5-4125-9FA8-0819E2EAAC93} – C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEFavClient.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)

Edge:
======
DownloadDir: C:UsersDSL-2070Downloads

FireFox:
========
FF DefaultProfile: bgporcht.default
FF ProfilePath: C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesg47anrc0.dev-edition-default [2020-02-07]
FF ProfilePath: C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesbgporcht.default [2020-01-31]
FF Homepage: MozillaFirefoxProfilesbgporcht.default -> hxxp://www.startpage.com/
FF Extension: (Amazon Assistant for Firefox) – C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesbgporcht.defaultExtensionsabb-acer@amazon.com [2017-09-02] [Legacy]
FF Extension: (AdBlock) – C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesbgporcht.defaultExtensionsjid1-NIfFY2CA8fy1tg@jetpack.xpi [2017-09-20]
FF Extension: (English (US) Language Pack) – C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesbgporcht.defaultExtensionslangpack-en-US@firefox.mozilla.org.xpi [2017-09-02] [Legacy]
FF Extension: (Mozilla Partner Defaults) – C:UsersDSL-2070AppDataRoamingMozillaFirefoxProfilesbgporcht.defaultExtensionspartnerdefaults@mozilla.com [2017-09-02] [Legacy]
FF HKLM-x32…FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] – C:Program Files (x86)AdobeAcrobat 10.0AcrobatBrowserWCFirefoxExtn
FF Extension: (Adobe Acrobat – Create PDF) – C:Program Files (x86)AdobeAcrobat 10.0AcrobatBrowserWCFirefoxExtn [2017-09-27] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:WINDOWSsystem32MacromedFlashNPSWF64_32_0_0_321.dll [2020-01-22] (Adobe Inc. -> )
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:WINDOWSSysWOW64MacromedFlashNPSWF32_32_0_0_321.dll [2020-01-22] (Adobe Inc. -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.241.2 -> C:Program Files (x86)Javajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-01-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.241.2 -> C:Program Files (x86)Javajre1.8.0_241binplugin2npjp2.dll [2020-01-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2019-12-03] (Adobe Inc. -> Adobe Systems Inc.)
StartMenuInternet: Firefox-CA9422711AE1A81C – C:Program FilesFirefox Developer Editionfirefox.exe

Chrome:
=======
CHR HKLM-x32…ChromeExtension: [pbjikboenpfhbbejgkoklgkhjpfogcam]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe [85304 2018-10-16] (Apple Inc. -> Apple Inc.)
S3 AtcHost; C:Program FilesBitdefender Antivirus Freeatchost.exe [1475272 2019-10-29] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 AtherosSvc; C:Program Files (x86)Bluetooth Suiteadminservice.exe [338312 2016-10-28] (Qualcomm Atheros -> Windows ® Win 7 DDK provider)
R2 bdredline; C:Program FilesBitdefender Antivirus Freebdredline.exe [2500144 2019-05-29] (Bitdefender SRL -> Bitdefender)
S3 BrYNSvc; C:Program Files (x86)Browny02BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 CCDMonitorService; C:Program Files (x86)AcerAOP FrameworkCCDMonitorService.exe [2267352 2016-08-30] (Acer Incorporated -> Acer Incorporated)
R2 DAX2API; C:Program FilesDolbyDolby DAX2DAX2_APIDolbyDAX2API.exe [163336 2016-09-19] (Dolby Laboratories, Inc. -> )
S3 Futuremark SystemInfo Service; C:Program Files (x86)FuturemarkSystemInfoFMSISvc.exe [342456 2018-07-12] (FUTUREMARK INC -> Futuremark)
S3 Intel® Capability Licensing Service TCP IP Interface; C:Program FilesInteliCLS ClientSocketHeciServer.exe [630048 2016-10-13] (Intel® Trust Services -> Intel® Corporation)
R2 IntelSSTSvc; C:WINDOWSsystem32IntelSSTAPOParameterServiceParameterService.exe [26576 2016-12-15] (Intel® CN -> Intel Corporation)
R2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [196200 2016-12-19] (Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MacriumService; C:Program FilesMacriumCommonMacriumService.exe [6429680 2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
R2 MBAMService; C:Program FilesMalwarebytesAnti-Malwarembamservice.exe [6960640 2019-11-09] (Malwarebytes Inc -> Malwarebytes)
R2 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ProductAgentService; C:Program FilesBitdefender AgentProductAgentService.exe [1291888 2019-07-15] (Bitdefender SRL -> Bitdefender)
S3 QALSvc; C:Program FilesAcerAcer Quick AccessQALSvc.exe [461616 2017-02-15] (Acer Incorporated -> Acer Incorporated)
R3 QASvc; C:Program FilesAcerAcer Quick AccessQASvc.exe [506672 2017-02-15] (Acer Incorporated -> Acer Incorporated)
S3 ThunderboltService; C:Program Files (x86)IntelThunderbolt Softwaretbtsvc.exe [2018024 2016-11-16] (Intel® Client Connectivity Division SW -> Intel Corporation)
R2 updatesrv; C:Program FilesBitdefender Antivirus Freeupdatesrv.exe [242024 2020-02-06] (Bitdefender SRL -> Bitdefender)
S3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [694016 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R2 vsserv; C:Program FilesBitdefender Antivirus Freevsserv.exe [308064 2020-02-06] (Bitdefender SRL -> Bitdefender)
R2 vsservppl; C:Program FilesBitdefender Antivirus Freevsservppl.exe [242024 2020-02-06] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0NisSrv.exe [3284840 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:ProgramDataMicrosoftWindows Defenderplatform4.18.2001.7-0MsMpEng.exe [103168 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XperiaCompanionService; C:Program FilesSonyXperia CompanionServiceXperiaCompanionService.exe [2548224 2019-10-22] (Sony) [File not signed]
R2 XTU3SERVICE; C:Program Files (x86)IntelIntel® Extreme Tuning UtilityXtuService.exe [18736 2018-05-17] (Intel® Extreme Tuning Utility -> Intel® Corporation)
R2 NVDisplay.ContainerLocalSystem; “C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe” -s NVDisplay.ContainerLocalSystem -f “C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log” -l 3 -d “C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem” -r -p 30000
R2 NvTelemetryContainer; “C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe” -s NvTelemetryContainer -f “C:ProgramDataNVIDIANvTelemetryContainer.log” -l 3 -d “C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins” -r

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 atc; C:WINDOWSSystem32DRIVERSatc.sys [1693368 2019-10-29] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:WINDOWSsystem32DRIVERSbddci.sys [739024 2019-11-28] (Bitdefender SRL -> Bitdefender)
S0 bdelam; C:WINDOWSSystem32driversbdelam.sys [22960 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R3 cbfs3; C:WINDOWSSystem32driverscbfs3.sys [352144 2012-04-09] (EldoS Corporation -> EldoS Corporation)
S3 cpuz146; C:WINDOWStempcpuz146cpuz146_x64.sys [52824 2020-02-07] (CPUID -> CPUID)
R3 edrsensor; C:WINDOWSSystem32DRIVERSedrsensor.sys [309144 2019-11-28] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R3 ETDI2C; C:WINDOWSsystem32DRIVERSETDI2C.sys [217688 2016-08-17] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R1 Gemma; C:WINDOWSSystem32DRIVERSGemma.sys [564136 2019-11-28] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R0 gzflt; C:WINDOWSSystem32driversgzflt.sys [188384 2019-05-02] (Bitdefender SRL -> BitDefender LLC)
R2 iocbios2; C:Program Files (x86)IntelIntel® Extreme Tuning UtilityDriversIocDriver64bitiocbios2.sys [37104 2018-05-09] (Intel Corporation -> Intel Corporation)
R3 LMDriver; C:WINDOWSSystem32driversLMDriver.sys [31000 2018-05-16] (Acer Incorporated -> Acer Incorporated)
R2 MBAMChameleon; C:WINDOWSSystem32DriversMbamChameleon.sys [214496 2020-01-30] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:WINDOWSSystem32DRIVERSMbamElam.sys [20936 2019-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:WINDOWSSystem32Driversmbamswissarmy.sys [248968 2020-02-07] (Malwarebytes Inc -> Malwarebytes)
R3 nvlddmkm; C:WINDOWSSystem32DriverStoreFileRepositorynvac.inf_amd64_accc4df98b18ce81nvlddmkm.sys [14857264 2017-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [30144 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:WINDOWSsystem32driversnvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:WINDOWSSystem32driversnvvhci.sys [57792 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 PSMounterEx; C:Windowssystem32driverspsmounterex.sys [179416 2019-02-15] (Paramount Software UK Ltd -> Windows ® Win 7 DDK provider)
R3 PtpFilterDriver; C:WINDOWSSystem32driversPtpFilterDriver.sys [51840 2016-12-27] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 RadioShim; C:WINDOWSSystem32driversRadioShim.sys [25368 2018-05-16] (Acer Incorporated -> Acer Incorporated)
R3 rt640x64; C:WINDOWSSystem32driversrt640x64.sys [943112 2016-07-31] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:WINDOWSsystem32DriversRtsUer.sys [418784 2016-09-05] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R2 trufos; C:WINDOWSSystem32driverstrufos.sys [637112 2019-10-29] (Bitdefender SRL -> Bitdefender)
S3 usbrndis6; C:WINDOWSSystem32driversusb80236.sys [24576 2019-09-03] (Microsoft Windows -> Microsoft Corporation)
R3 VBoxNetAdp; C:WINDOWSsystem32DRIVERSVBoxNetAdp6.sys [237584 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:WINDOWSsystem32DRIVERSVBoxNetLwf.sys [248464 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:WINDOWSSystem32driverswdWdBoot.sys [45960 2020-02-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:WINDOWSSystem32driverswdWdFilter.sys [376032 2020-02-04] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:WINDOWSSystem32driverswdWdNisDrv.sys [53984 2020-02-04] (Microsoft Windows -> Microsoft Corporation)
S3 WinRing0_1_2_0; C:Program Files (x86)NZXTCAMCAM_V3.sys [14544 2020-02-07] (Noriyuki MIYAZAKI -> OpenLibSys.org)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-07 15:33 – 2020-02-07 15:34 – 000032919 _____ C:UsersDSL-2070DownloadsFRST.txt
2020-02-07 15:32 – 2020-02-07 15:33 – 000000000 ____D C:FRST
2020-02-07 15:32 – 2020-02-07 15:32 – 002279424 _____ (Farbar) C:UsersDSL-2070DownloadsFRST64.exe
2020-02-07 15:28 – 2020-02-07 15:28 – 000000000 ____D C:WINDOWSPanther
2020-02-07 14:40 – 2020-02-07 15:03 – 000000999 _____ C:UsersDSL-2070DesktopType B Advanced Exam.txt
2020-02-07 14:25 – 2020-02-07 15:28 – 000000677 _____ C:UsersDSL-2070DesktopESET Online Scanner.lnk
2020-02-07 14:25 – 2020-02-07 14:25 – 014562400 _____ (ESET spol. s r.o.) C:UsersDSL-2070Downloadsesetonlinescanner_enu.exe
2020-02-07 14:25 – 2020-02-07 14:25 – 000000776 _____ C:UsersDSL-2070AppDataRoamingMicrosoftWindowsStart MenuProgramsESET Online Scanner.lnk
2020-02-07 14:25 – 2020-02-07 14:25 – 000000000 ____D C:UsersDSL-2070AppDataLocalESET
2020-02-07 14:00 – 2020-02-07 14:00 – 000000000 ____D C:UsersDSL-2070Downloads3DMark11-v1-0-179
2020-02-07 13:55 – 2020-02-07 13:56 – 272845703 _____ C:UsersDSL-2070Downloads3DMark11-v1-0-179.zip
2020-02-07 11:51 – 2020-02-07 11:51 – 000000000 ____D C:ProgramDataSystemAcCrux
2020-02-07 11:51 – 2020-02-07 11:51 – 000000000 ____D C:Program FilesEaseUS
2020-02-07 08:24 – 2020-02-07 12:44 – 000000000 ____D C:UsersDSL-2070DesktopNegociant Roasters S7 Wagga
2020-02-06 18:56 – 2020-02-06 18:56 – 000000000 ___RD C:UsersDSL-2070DocumentsMicrosoft.WindowsSoundRecorder_8wekyb3d8bbwe!App
2020-02-03 16:20 – 2020-02-03 16:20 – 000001079 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox Developer Edition.lnk
2020-02-03 16:20 – 2020-02-03 16:20 – 000000000 ____D C:ProgramDataMozilla
2020-02-03 16:20 – 2020-02-03 16:20 – 000000000 ____D C:Program FilesFirefox Developer Edition
2020-02-03 16:20 – 2020-02-03 16:20 – 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service
2020-01-30 17:21 – 2020-01-30 17:22 – 000000000 ____D C:UsersDSL-2070DesktopCeramic Oxide Fabricators
2020-01-30 09:17 – 2020-02-07 15:28 – 000248968 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbamswissarmy.sys
2020-01-30 09:17 – 2020-01-30 09:17 – 000214496 _____ (Malwarebytes) C:WINDOWSsystem32DriversMbamChameleon.sys
2020-01-29 22:43 – 2020-01-29 22:43 – 001541632 _____ (Microsoft Corporation) C:WINDOWSsystem32wbengine.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 025444352 _____ (Microsoft Corporation) C:WINDOWSsystem32Hydrogen.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 022635008 _____ (Microsoft Corporation) C:WINDOWSsystem32mshtml.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 019812864 _____ (Microsoft Corporation) C:WINDOWSsystem32HologramWorld.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 018026496 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mshtml.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 007754240 _____ (Microsoft Corporation) C:WINDOWSsystem32Chakra.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 007259648 _____ (Microsoft Corporation) C:WINDOWSsystem32ieframe.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 006516648 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Media.Protection.PlayReady.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 006285312 _____ (Microsoft Corporation) C:WINDOWSSysWOW64ieframe.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 006083832 _____ (Microsoft Corporation) C:WINDOWSSysWOW64windows.storage.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 005914112 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Chakra.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 005764664 _____ (Microsoft Corporation) C:WINDOWSSysWOW64shell32.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 005112320 _____ (Microsoft Corporation) C:WINDOWSSysWOW64twinui.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 004856832 _____ (Microsoft Corporation) C:WINDOWSsystem32jscript9.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 004348616 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Mirage.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 003967888 _____ (Microsoft Corporation) C:WINDOWSSysWOW64explorer.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 003819008 _____ (Microsoft Corporation) C:WINDOWSSysWOW64jscript9.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 003243080 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Mirage.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002801152 _____ (Microsoft Corporation) C:WINDOWSSysWOW64win32kfull.sys
2020-01-29 22:42 – 2020-01-29 22:42 – 002584008 _____ (Microsoft Corporation) C:WINDOWSSysWOW64combase.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002493928 _____ (Microsoft Corporation) C:WINDOWSsystem32msmpeg2vdec.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002314952 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msmpeg2vdec.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002260176 _____ (Microsoft Corporation) C:WINDOWSSysWOW64iertutil.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002225160 _____ (Microsoft Corporation) C:WINDOWSsystem32ResetEngine.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 002032128 _____ C:WINDOWSsystem32rdpnano.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001916744 _____ (Microsoft Corporation) C:WINDOWSSysWOW64AudioEng.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001835128 _____ (Microsoft Corporation) C:WINDOWSsystem32mfsrcsnk.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001693184 _____ (Microsoft Corporation) C:WINDOWSSysWOW64urlmon.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001610752 _____ (Microsoft Corporation) C:WINDOWSsystem32HologramCompositor.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001489064 _____ (Microsoft Corporation) C:WINDOWSsystem32mfsvr.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001417760 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mfsrcsnk.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001412096 _____ (Microsoft Corporation) C:WINDOWSsystem32SystemSettings.Handlers.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001399304 _____ (Microsoft Corporation) C:WINDOWSsystem32hvix64.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 001283592 _____ (Microsoft Corporation) C:WINDOWSsystem32SecConfig.efi
2020-01-29 22:42 – 2020-01-29 22:42 – 001283584 _____ (Microsoft Corporation) C:WINDOWSsystem32werconcpl.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001214976 _____ (Microsoft Corporation) C:WINDOWSsystem32reseteng.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001154448 _____ (Microsoft Corporation) C:WINDOWSSysWOW64AudioSes.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001151816 _____ (Microsoft Corporation) C:WINDOWSsystem32mfmpeg2srcsnk.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001105776 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mfsvr.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001083392 _____ (Microsoft Corporation) C:WINDOWSsystem32clusapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 001073168 _____ (Microsoft Corporation) C:WINDOWSsystem32hvax64.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 001000960 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Mirage.Internal.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000923136 _____ (Microsoft Corporation) C:WINDOWSsystem32EdgeManager.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000913408 _____ (Microsoft Corporation) C:WINDOWSsystem32rasmans.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000895488 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.UI.Immersive.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000892488 _____ (Microsoft Corporation) C:WINDOWSSysWOW64WinTypes.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000890368 _____ (Microsoft Corporation) C:WINDOWSsystem32HolographicExtensions.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000852480 _____ (Microsoft Corporation) C:WINDOWSsystem32ieproxy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000805376 _____ (Microsoft Corporation) C:WINDOWSSysWOW64clusapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000788992 _____ (Microsoft Corporation) C:WINDOWSsystem32msfeeds.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000783480 _____ (Microsoft Corporation) C:WINDOWSsystem32tcblaunch.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000768488 _____ (Microsoft Corporation) C:WINDOWSSysWOW64rpcrt4.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000749568 _____ (Microsoft Corporation) C:WINDOWSsystem32FrameServer.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000704512 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.UI.FileExplorer.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000701440 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Mirage.Internal.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000679160 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wer.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000673080 _____ (Microsoft Corporation) C:WINDOWSsystem32comctl32.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000667136 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msfeeds.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000667136 _____ (Microsoft Corporation) C:WINDOWSSysWOW64EdgeManager.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000663552 _____ (Microsoft Corporation) C:WINDOWSSysWOW64netlogon.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000623104 _____ (Microsoft Corporation) C:WINDOWSsystem32resutils.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000610816 _____ (Microsoft Corporation) C:WINDOWSsystem32netprofmsvc.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000599552 _____ (Microsoft Corporation) C:WINDOWSSysWOW64ActivationManager.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000568120 _____ (Microsoft Corporation) C:WINDOWSSysWOW64comctl32.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000521728 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.System.Launcher.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000512000 _____ (Microsoft Corporation) C:WINDOWSSysWOW64twinapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000510768 _____ (Microsoft Corporation) C:WINDOWSsystem32systemreset.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000500736 _____ (Microsoft Corporation) C:WINDOWSsystem32inetcpl.cpl
2020-01-29 22:42 – 2020-01-29 22:42 – 000497152 _____ (Microsoft Corporation) C:WINDOWSsystem32werui.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000490496 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.UI.FileExplorer.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000486912 _____ (Microsoft Corporation) C:WINDOWSsystem32puiobj.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000476672 _____ (Microsoft Corporation) C:WINDOWSSysWOW64resutils.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000469504 _____ (Microsoft Corporation) C:WINDOWSSysWOW64webio.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000453432 _____ (Microsoft Corporation) C:WINDOWSSysWOW64WerFault.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000450048 _____ (Microsoft Corporation) C:WINDOWSsystem32rdpclip.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000441072 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Media.MediaControl.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000430080 _____ (Microsoft Corporation) C:WINDOWSSysWOW64werui.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000421376 _____ (Microsoft Corporation) C:WINDOWSSysWOW64inetcpl.cpl
2020-01-29 22:42 – 2020-01-29 22:42 – 000407040 _____ (Microsoft Corporation) C:WINDOWSsystem32DispBroker.Desktop.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000404912 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Faultrep.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000399360 _____ (Microsoft Corporation) C:WINDOWSsystem32iedkcs32.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000384000 _____ (Microsoft Corporation) C:WINDOWSSysWOW64puiobj.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000375504 _____ (Microsoft Corporation) C:WINDOWSSysWOW64AUDIOKSE.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000370688 _____ (Microsoft Corporation) C:WINDOWSSysWOW64ieproxy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000366416 _____ (Microsoft Corporation) C:WINDOWSsystem32mfsensorgroup.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000345088 _____ (Microsoft Corporation) C:WINDOWSSysWOW64iedkcs32.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000327680 _____ (Microsoft Corporation) C:WINDOWSSysWOW64edgeIso.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000324608 _____ (Microsoft Corporation) C:WINDOWSsystem32FSClient.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000324096 _____ (Microsoft Corporation) C:WINDOWSSysWOW64win32k.sys
2020-01-29 22:42 – 2020-01-29 22:42 – 000307712 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wincorlib.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000300392 _____ (Microsoft Corporation) C:WINDOWSsystem32skci.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000251904 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msIso.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000228864 _____ (Microsoft Corporation) C:WINDOWSsystem32ie4uinit.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000227840 _____ (Microsoft Corporation) C:WINDOWSsystem32IndexedDbLegacy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000226816 _____ (Microsoft Corporation) C:WINDOWSsystem32netprofm.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000224768 _____ (Microsoft Corporation) C:WINDOWSsystem32DWWIN.EXE
2020-01-29 22:42 – 2020-01-29 22:42 – 000217600 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msutb.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000210744 _____ (Microsoft Corporation) C:WINDOWSsystem32tcbloader.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000201728 _____ (Microsoft Corporation) C:WINDOWSsystem32puiapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000199480 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wermgr.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000193592 _____ (Microsoft Corporation) C:WINDOWSSysWOW64weretw.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000190464 _____ (Microsoft Corporation) C:WINDOWSSysWOW64regapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000190256 _____ (Microsoft Corporation) C:WINDOWSSysWOW64logoncli.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000186880 _____ (Microsoft Corporation) C:WINDOWSSysWOW64DWWIN.EXE
2020-01-29 22:42 – 2020-01-29 22:42 – 000183808 _____ (Microsoft Corporation) C:WINDOWSsystem32ResetEngOnline.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000175616 _____ (Microsoft Corporation) C:WINDOWSSysWOW64IndexedDbLegacy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000172032 _____ (Microsoft Corporation) C:WINDOWSSysWOW64puiapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000143872 _____ (Microsoft Corporation) C:WINDOWSSysWOW64SpatialAudioLicenseSrv.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000123392 _____ (Microsoft Corporation) C:WINDOWSsystem32wercplsupport.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000119808 _____ (Microsoft Corporation) C:WINDOWSsystem32DafPrintProvider.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000119296 _____ (Microsoft Corporation) C:WINDOWSsystem32compstui.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000099712 _____ (Microsoft Corporation) C:WINDOWSsystem32FsIso.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000097280 _____ (Microsoft Corporation) C:WINDOWSSysWOW64compstui.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000095232 _____ (Microsoft Corporation) C:WINDOWSsystem32msfeedsbs.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000093704 _____ (Microsoft Corporation) C:WINDOWSsystem32hvloader.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000089328 _____ (Microsoft Corporation) C:WINDOWSSysWOW64win32u.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000088576 _____ (Microsoft Corporation) C:WINDOWSSysWOW64DafPrintProvider.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000084496 _____ (Microsoft Corporation) C:WINDOWSsystem32Drivershvservice.sys
2020-01-29 22:42 – 2020-01-29 22:42 – 000079872 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msfeedsbs.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000077824 _____ (Microsoft Corporation) C:WINDOWSSysWOW64usoapi.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000072816 _____ (Microsoft Corporation) C:WINDOWSSysWOW64remoteaudioendpoint.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000066560 _____ (Microsoft Corporation) C:WINDOWSsystem32findnetprinters.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000065536 _____ (Microsoft Corporation) C:WINDOWSsystem32iemigplugin.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000064000 _____ (Microsoft Corporation) C:WINDOWSsystem32printui.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000063488 _____ (Microsoft Corporation) C:WINDOWSSysWOW64iemigplugin.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000062464 _____ (Microsoft Corporation) C:WINDOWSSysWOW64printui.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000059221 _____ C:WINDOWSsystem32srms.dat
2020-01-29 22:42 – 2020-01-29 22:42 – 000053248 _____ (Microsoft Corporation) C:WINDOWSSysWOW64findnetprinters.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000045056 _____ (Microsoft Corporation) C:WINDOWSsystem32npmproxy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000042512 _____ (Microsoft Corporation) C:WINDOWSsystem32SysResetErr.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000038912 _____ (Microsoft Corporation) C:WINDOWSSysWOW64werdiagcontroller.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000038400 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mcicda.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000029696 _____ (Microsoft Corporation) C:WINDOWSsystem32nlmproxy.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000027648 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mciwave.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000024064 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mciseq.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000021304 _____ (Microsoft Corporation) C:WINDOWSsystem32kdhvcom.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000019768 _____ (Microsoft Corporation) C:WINDOWSsystem32ResetEngine.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000017408 _____ (Microsoft Corporation) C:WINDOWSsystem32nlmsprep.dll
2020-01-29 22:42 – 2020-01-29 22:42 – 000015360 _____ (Microsoft Corporation) C:WINDOWSsystem32msfeedssync.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000013824 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msfeedssync.exe
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth9.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth8.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth7.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth6.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth5.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth4.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth3.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth2.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth12.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth11.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth10.bin
2020-01-29 22:42 – 2020-01-29 22:42 – 000000315 _____ C:WINDOWSsystem32DrtmAuth1.bin
2020-01-29 22:41 – 2020-01-29 22:41 – 009926968 _____ (Microsoft Corporation) C:WINDOWSsystem32ntoskrnl.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 007905208 _____ (Microsoft Corporation) C:WINDOWSsystem32windows.storage.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 007600656 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Media.Protection.PlayReady.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 007263992 _____ (Microsoft Corporation) C:WINDOWSsystem32shell32.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 006435840 _____ (Microsoft Corporation) C:WINDOWSsystem32twinui.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 006231200 _____ (Microsoft Corporation) C:WINDOWSsystem32StartTileData.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 006167552 _____ (Microsoft Corporation) C:WINDOWSsystem32twinui.pcshell.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 004615376 _____ (Microsoft Corporation) C:WINDOWSexplorer.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 004470784 _____ (Microsoft Corporation) C:WINDOWSsystem32InputService.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 004005888 _____ (Microsoft Corporation) C:WINDOWSsystem32EdgeContent.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 003729408 _____ (Microsoft Corporation) C:WINDOWSsystem32win32kfull.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 003703296 _____ (Microsoft Corporation) C:WINDOWSsystem32AppXDeploymentServer.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 003591184 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversdxgkrnl.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 003550208 _____ (Microsoft Corporation) C:WINDOWSsystem32dwmcore.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 003372440 _____ (Microsoft Corporation) C:WINDOWSsystem32combase.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 003110400 _____ (Microsoft Corporation) C:WINDOWSsystem32wuaueng.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002988552 _____ (Microsoft Corporation) C:WINDOWSsystem32Driverstcpip.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 002773776 _____ (Microsoft Corporation) C:WINDOWSsystem32iertutil.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002766088 _____ (Microsoft Corporation) C:WINDOWSsystem32KernelBase.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002703872 _____ (Microsoft Corporation) C:WINDOWSsystem32WebRuntimeManager.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002284544 _____ (Microsoft Corporation) C:WINDOWSsystem32AppXDeploymentExtensions.onecore.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002125904 _____ (Microsoft Corporation) C:WINDOWSsystem32AudioEng.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002084576 _____ (Microsoft Corporation) C:WINDOWSSysWOW64KernelBase.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 002071552 _____ (Microsoft Corporation) C:WINDOWSsystem32ISM.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001942016 _____ (Microsoft Corporation) C:WINDOWSsystem32audiosrv.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001858560 _____ (Microsoft Corporation) C:WINDOWSsystem32urlmon.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001841152 _____ C:WINDOWSsystem32TextInputMethodFormatter.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001757096 _____ (Microsoft Corporation) C:WINDOWSsystem32winload.efi
2020-01-29 22:41 – 2020-01-29 22:41 – 001748480 _____ (Microsoft Corporation) C:WINDOWSsystem32AppXDeploymentExtensions.desktop.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001743672 _____ (Microsoft Corporation) C:WINDOWSsystem32sppobjs.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001726480 _____ (Microsoft Corporation) C:WINDOWSsystem32appraiser.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001602560 _____ (Microsoft Corporation) C:WINDOWSsystem32dosvc.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001512320 _____ (Microsoft Corporation) C:WINDOWSsystem32winload.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 001480192 _____ (Microsoft Corporation) C:WINDOWSsystem32usocoreworker.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 001413912 _____ (Microsoft Corporation) C:WINDOWSsystem32AudioSes.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001394168 _____ (Microsoft Corporation) C:WINDOWSsystem32WinTypes.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001372160 _____ (Microsoft Corporation) C:WINDOWSsystem32NotificationController.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001366128 _____ (Microsoft Corporation) C:WINDOWSsystem32winresume.efi
2020-01-29 22:41 – 2020-01-29 22:41 – 001300280 _____ (Microsoft Corporation) C:WINDOWSsystem32Drivershttp.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 001182232 _____ (Microsoft Corporation) C:WINDOWSsystem32winresume.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 001170960 _____ (Microsoft Corporation) C:WINDOWSsystem32rpcrt4.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001149712 _____ (Microsoft Corporation) C:WINDOWSsystem32ApplyTrustOffline.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 001097216 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.UI.Immersive.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001083904 _____ (Microsoft Corporation) C:WINDOWSsystem32MusUpdateHandlers.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001051448 _____ (Microsoft Corporation) C:WINDOWSsystem32pidgenx.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 001027000 _____ (Microsoft Corporation) C:WINDOWSsystem32ClipSVC.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000974336 _____ (Microsoft Corporation) C:WINDOWSsystem32uDWM.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000949248 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthSSO.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000928120 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthService.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000916480 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.UI.Core.TextInput.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000891736 _____ (Microsoft Corporation) C:WINDOWSsystem32ci.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000875144 _____ (Microsoft Corporation) C:WINDOWSsystem32wer.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000874512 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversdxgmms2.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000864256 _____ (Microsoft Corporation) C:WINDOWSsystem32netlogon.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000824848 _____ (Microsoft Corporation) C:WINDOWSsystem32NetSetupEngine.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000803840 _____ (Microsoft Corporation) C:WINDOWSsystem32bisrv.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000750080 _____ (Microsoft Corporation) C:WINDOWSsystem32ActivationManager.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000747320 _____ (Microsoft Corporation) C:WINDOWSsystem32aeinv.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000737280 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.System.Launcher.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000735744 _____ (Microsoft Corporation) C:WINDOWSsystem32AudioEndpointBuilder.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000732200 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_StorageSense.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000727040 _____ (Microsoft Corporation) C:WINDOWSsystem32agentactivationruntime.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000716288 _____ (Microsoft Corporation) C:WINDOWSsystem32agentactivationruntimewindows.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000661816 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversafd.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000642008 _____ (Microsoft Corporation) C:WINDOWSsystem32TextInputFramework.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000637968 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversstorport.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000637440 _____ (Microsoft Corporation) C:WINDOWSsystem32twinapi.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000617784 _____ (Microsoft Corporation) C:WINDOWSsystem32hal.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000605184 _____ (Microsoft Corporation) C:WINDOWSsystem32MusNotification.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000598528 _____ (Microsoft Corporation) C:WINDOWSsystem32webio.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000589592 _____ (Microsoft Corporation) C:WINDOWSsystem32audiodg.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000587064 _____ (Microsoft Corporation) C:WINDOWSSysWOW64NetSetupEngine.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000558592 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_Notifications.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000550400 _____ (Microsoft Corporation) C:WINDOWSsystem32win32k.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000545432 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Media.MediaControl.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000536064 _____ (Microsoft Corporation) C:WINDOWSsystem32usosvc.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000518184 _____ (Microsoft Corporation) C:WINDOWSsystem32WerFault.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000516096 _____ (Microsoft Corporation) C:WINDOWSsystem32MusNotificationUx.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000477496 _____ (Microsoft Corporation) C:WINDOWSsystem32DriversFWPKCLNT.SYS
2020-01-29 22:41 – 2020-01-29 22:41 – 000467648 _____ (Microsoft Corporation) C:WINDOWSsystem32Faultrep.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000465208 _____ (Microsoft Corporation) C:WINDOWSsystem32invagent.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000464384 _____ (Microsoft Corporation) C:WINDOWSsystem32cloudAP.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000459896 _____ (Microsoft Corporation) C:WINDOWSsystem32MusNotifyIcon.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000456192 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.ApplicationModel.ConversationalAgent.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000443904 _____ (Microsoft Corporation) C:WINDOWSsystem32edgeIso.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000441144 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversdxgmms1.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000437776 _____ (Microsoft Corporation) C:WINDOWSsystem32Driverspci.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000435200 _____ (Microsoft Corporation) C:WINDOWSsystem32wincorlib.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000416056 _____ (Microsoft Corporation) C:WINDOWSsystem32DriversClasspnp.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000415808 _____ (Microsoft Corporation) C:WINDOWSsystem32AUDIOKSE.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000355840 _____ (Microsoft Corporation) C:WINDOWSsystem32WaaSMedicSvc.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000350720 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_SpeechPrivacy.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000324616 _____ (Microsoft Corporation) C:WINDOWSsystem32acmigration.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000311096 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthAgent.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000308736 _____ (Microsoft Corporation) C:WINDOWSsystem32msIso.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000296760 _____ (Microsoft Corporation) C:WINDOWSsystem32Driverssdbus.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000291328 _____ (Microsoft Corporation) C:WINDOWSsystem32DeviceDirectoryClient.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000285184 _____ (Microsoft Corporation) C:WINDOWSsystem32WaaSMedicCapsule.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000282112 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.UI.AppDefaults.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000281088 _____ (Microsoft Corporation) C:WINDOWSsystem32msutb.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000277504 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_CapabilityAccess.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000265216 _____ (Microsoft Corporation) C:WINDOWSsystem32cdd.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000259984 _____ (Microsoft Corporation) C:WINDOWSsystem32logoncli.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000256000 _____ (Microsoft Corporation) C:WINDOWSsystem32UpdateDeploymentProvider.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000250880 _____ (Microsoft Corporation) C:WINDOWSsystem32Driverswinnat.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000248064 _____ (Microsoft Corporation) C:WINDOWSsystem32weretw.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000225280 _____ (Microsoft Corporation) C:WINDOWSsystem32wersvc.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000221200 _____ (Microsoft Corporation) C:WINDOWSsystem32wermgr.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000209920 _____ (Microsoft Corporation) C:WINDOWSsystem32wuuhosdeployment.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000203776 _____ (Microsoft Corporation) C:WINDOWSsystem32regapi.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000201728 _____ (Microsoft Corporation) C:WINDOWSsystem32AppXApplicabilityBlob.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000197632 _____ (Microsoft Corporation) C:WINDOWSsystem32Win32CompatibilityAppraiserCSP.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000194064 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversdumpsd.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000184832 _____ (Microsoft Corporation) C:WINDOWSsystem32AarSvc.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000169472 _____ (Microsoft Corporation) C:WINDOWSsystem32SpatialAudioLicenseSrv.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000155648 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_AppExecutionAlias.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000151552 _____ (Microsoft Corporation) C:WINDOWSsystem32SettingsHandlers_BackgroundApps.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000143160 _____ (Microsoft Corporation) C:WINDOWSsystem32NetSetupApi.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000138752 _____ (Microsoft Corporation) C:WINDOWSsystem32InputLocaleManager.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000135168 _____ (Microsoft Corporation) C:WINDOWSsystem32musdialoghandlers.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000128512 _____ (Microsoft Corporation) C:WINDOWSsystem32usoapi.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000127064 _____ (Microsoft Corporation) C:WINDOWSsystem32win32u.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000123904 _____ (Microsoft Corporation) C:WINDOWSsystem32ApplicationControlCSP.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000117264 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversbindflt.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000112128 _____ (Microsoft Corporation) C:WINDOWSsystem32NetDriverInstall.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000107832 _____ (Microsoft Corporation) C:WINDOWSSysWOW64NetSetupApi.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000107008 _____ (Microsoft Corporation) C:WINDOWSsystem32DevicePairingExperienceMEM.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000106808 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthProxyStub.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000092160 _____ (Microsoft Corporation) C:WINDOWSsystem32wsqmcons.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000089912 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversvolmgr.sys
2020-01-29 22:41 – 2020-01-29 22:41 – 000089088 _____ (Microsoft Corporation) C:WINDOWSsystem32WaaSMedicAgent.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000088352 _____ (Microsoft Corporation) C:WINDOWSsystem32remoteaudioendpoint.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000087040 _____ (Microsoft Corporation) C:WINDOWSsystem32EditBufferTestHook.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000084992 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthSystray.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000080896 _____ (Microsoft Corporation) C:WINDOWSSysWOW64NetDriverInstall.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000077824 _____ (Microsoft Corporation) C:WINDOWSsystem32CustomInstallExec.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000071480 _____ (Microsoft Corporation) C:WINDOWSsystem32win32appinventorycsp.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000069120 _____ (Microsoft Corporation) C:WINDOWSsystem32UsoClient.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000063288 _____ (Microsoft Corporation) C:WINDOWSsystem32SecurityHealthHost.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000057856 _____ (Microsoft Corporation) C:WINDOWSsystem32wups2.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000057344 _____ (Microsoft Corporation) C:WINDOWSsystem32audioresourceregistrar.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000048640 _____ (Microsoft Corporation) C:WINDOWSsystem32mcicda.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000047208 _____ (Microsoft Corporation) C:WINDOWSsystem32wuauclt.exe
2020-01-29 22:41 – 2020-01-29 22:41 – 000044544 _____ (Microsoft Corporation) C:WINDOWSsystem32werdiagcontroller.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000041472 _____ (Microsoft Corporation) C:WINDOWSsystem32WordBreakers.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000034304 _____ (Microsoft Corporation) C:WINDOWSsystem32mciwave.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000030208 _____ (Microsoft Corporation) C:WINDOWSsystem32mciseq.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000028672 _____ (Microsoft Corporation) C:WINDOWSsystem32WaaSMedicPS.dll
2020-01-29 22:41 – 2020-01-29 22:41 – 000017920 _____ (Microsoft Corporation) C:WINDOWSsystem32bindflt.dll
2020-01-27 18:37 – 2020-01-27 18:37 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsSony
2020-01-27 18:37 – 2020-01-27 18:37 – 000000000 ____D C:Program FilesSony
2020-01-27 18:36 – 2020-01-27 18:36 – 000000000 ____D C:Program Files (x86)Sony
2020-01-27 18:29 – 2020-01-27 18:29 – 000000000 ____D C:UsersDSL-2070Desktopphone
2020-01-16 21:53 – 2020-01-16 21:53 – 025900032 _____ (Microsoft Corporation) C:WINDOWSsystem32edgehtml.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 019849216 _____ (Microsoft Corporation) C:WINDOWSSysWOW64edgehtml.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 008012800 _____ (Microsoft Corporation) C:WINDOWSsystem32mstscax.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 007016448 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mstscax.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 003263488 _____ (Microsoft Corporation) C:WINDOWSsystem32tquery.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 002870784 _____ (Microsoft Corporation) C:WINDOWSsystem32mssrch.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 002716672 _____ (Microsoft Corporation) C:WINDOWSsystem32win32kbase.sys
2020-01-16 21:53 – 2020-01-16 21:53 – 002561536 _____ (Microsoft Corporation) C:WINDOWSSysWOW64tquery.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 002473976 _____ (Microsoft Corporation) C:WINDOWSsystem32twinapi.appcore.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 002305536 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mssrch.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001985928 _____ (Microsoft Corporation) C:WINDOWSSysWOW64twinapi.appcore.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001835008 _____ (Microsoft Corporation) C:WINDOWSsystem32enterprisecsps.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001697280 _____ (Microsoft Corporation) C:WINDOWSsystem32GdiPlus.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001664896 _____ (Microsoft Corporation) C:WINDOWSSysWOW64user32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001655880 _____ (Microsoft Corporation) C:WINDOWSsystem32user32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001458688 _____ (Microsoft Corporation) C:WINDOWSSysWOW64GdiPlus.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001330952 _____ (Microsoft Corporation) C:WINDOWSsystem32crypt32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001106944 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Media.Streaming.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001098720 _____ (Microsoft Corporation) C:WINDOWSsystem32DolbyDecMFT.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 001020032 _____ (Microsoft Corporation) C:WINDOWSSysWOW64crypt32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000921600 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Internal.Management.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000896512 _____ (Microsoft Corporation) C:WINDOWSsystem32MdmDiagnostics.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000852480 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Media.Streaming.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000851456 _____ (Microsoft Corporation) C:WINDOWSsystem32SearchIndexer.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000842752 _____ (Microsoft Corporation) C:WINDOWSsystem32jscript.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000689664 _____ (Microsoft Corporation) C:WINDOWSSysWOW64jscript.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000678712 _____ (Microsoft Corporation) C:WINDOWSsystem32StructuredQuery.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000673792 _____ (Microsoft Corporation) C:WINDOWSsystem32wiaaut.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000671232 _____ (Microsoft Corporation) C:WINDOWSsystem32wiaservc.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000670720 _____ (Microsoft Corporation) C:WINDOWSSysWOW64SearchIndexer.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000646144 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Windows.Internal.Management.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000571392 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wiaaut.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000542496 _____ (Microsoft Corporation) C:WINDOWSSysWOW64StructuredQuery.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000432256 _____ (Microsoft Corporation) C:WINDOWSsystem32tsmf.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000401408 _____ (Microsoft Corporation) C:WINDOWSsystem32SearchProtocolHost.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000400696 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversclfs.sys
2020-01-16 21:53 – 2020-01-16 21:53 – 000392192 _____ (Microsoft Corporation) C:WINDOWSsystem32Search.ProtocolHandler.MAPI2.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000379392 _____ (Microsoft Corporation) C:WINDOWSsystem32provengine.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000368128 _____ (Microsoft Corporation) C:WINDOWSsystem32mssvp.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000363840 _____ (Microsoft Corporation) C:WINDOWSSysWOW64tsmf.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000336384 _____ (Microsoft Corporation) C:WINDOWSSysWOW64SearchProtocolHost.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000329216 _____ (Microsoft Corporation) C:WINDOWSsystem32DiagnosticLogCSP.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000321536 _____ (Microsoft Corporation) C:WINDOWSsystem32sti.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000317440 _____ (Microsoft Corporation) C:WINDOWSsystem32ConhostV1.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000299520 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mssvp.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000294400 _____ (Microsoft Corporation) C:WINDOWSsystem32provops.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000283136 _____ (Microsoft Corporation) C:WINDOWSSysWOW64Search.ProtocolHandler.MAPI2.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000271872 _____ (Microsoft Corporation) C:WINDOWSsystem32provhandlers.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000240640 _____ (Microsoft Corporation) C:WINDOWSsystem32SearchFilterHost.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000233472 _____ (Microsoft Corporation) C:WINDOWSsystem32KnobsCore.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000232448 _____ (Microsoft Corporation) C:WINDOWSsystem32provisioningcsp.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000227840 _____ (Microsoft Corporation) C:WINDOWSSysWOW64sti.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000211968 _____ (Microsoft Corporation) C:WINDOWSSysWOW64SearchFilterHost.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000206336 _____ (Microsoft Corporation) C:WINDOWSsystem32sti_ci.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000204800 _____ (Microsoft Corporation) C:WINDOWSsystem32mssph.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000162696 _____ (Microsoft Corporation) C:WINDOWSsystem32dmcmnutils.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000160768 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mssph.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000148992 _____ (Microsoft Corporation) C:WINDOWSsystem32MDMAppInstaller.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000147456 _____ (Microsoft Corporation) C:WINDOWSsystem32mssprxy.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000145920 _____ (Microsoft Corporation) C:WINDOWSsystem32wiadss.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000128512 _____ (Microsoft Corporation) C:WINDOWSsystem32mssitlb.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000127520 _____ (Microsoft Corporation) C:WINDOWSSysWOW64dmcmnutils.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000123904 _____ (Microsoft Corporation) C:WINDOWSsystem32cryptcatsvc.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000120320 _____ (Microsoft Corporation) C:WINDOWSsystem32KnobsCsp.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000119808 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wiadss.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000113152 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mssitlb.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000102400 _____ (Microsoft Corporation) C:WINDOWSsystem32NFCProvisioningPlugin.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000097280 _____ (Microsoft Corporation) C:WINDOWSsystem32provdatastore.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000091136 _____ (Microsoft Corporation) C:WINDOWSsystem32ProvPluginEng.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000090624 _____ (Microsoft Corporation) C:WINDOWSsystem32tsgqec.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000088576 _____ (Microsoft Corporation) C:WINDOWSsystem32BarcodeProvisioningPlugin.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000084480 _____ (Microsoft Corporation) C:WINDOWSsystem32enterpriseresourcemanager.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000083968 _____ (Microsoft Corporation) C:WINDOWSsystem32wiarpc.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000083456 _____ (Microsoft Corporation) C:WINDOWSsystem32provtool.exe
2020-01-16 21:53 – 2020-01-16 21:53 – 000083456 _____ (Microsoft Corporation) C:WINDOWSsystem32clfsw32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000070144 _____ (Microsoft Corporation) C:WINDOWSSysWOW64tsgqec.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000066560 _____ (Microsoft Corporation) C:WINDOWSSysWOW64clfsw32.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000066048 _____ (Microsoft Corporation) C:WINDOWSSysWOW64enterpriseresourcemanager.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000066048 _____ (Microsoft Corporation) C:WINDOWSsystem32RemovableMediaProvisioningPlugin.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000060416 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mssprxy.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000060416 _____ (Microsoft Corporation) C:WINDOWSsystem32msscntrs.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000046080 _____ (Microsoft Corporation) C:WINDOWSSysWOW64msscntrs.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000033792 _____ (Microsoft Corporation) C:WINDOWSsystem32Windows.Management.Provisioning.ProxyStub.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000026112 _____ (Microsoft Corporation) C:WINDOWSsystem32DriversWSDScan.sys
2020-01-16 21:53 – 2020-01-16 21:53 – 000018432 _____ (Microsoft Corporation) C:WINDOWSsystem32wiatrace.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000015360 _____ (Microsoft Corporation) C:WINDOWSSysWOW64wiatrace.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000013312 _____ (Microsoft Corporation) C:WINDOWSsystem32Driversserscan.sys
2020-01-16 21:53 – 2020-01-16 21:53 – 000010752 _____ (Microsoft Corporation) C:WINDOWSsystem32DMAlertListener.ProxyStub.dll
2020-01-16 21:53 – 2020-01-16 21:53 – 000007680 _____ (Microsoft Corporation) C:WINDOWSSysWOW64DMAlertListener.ProxyStub.dll
2020-01-16 21:49 – 2019-12-10 16:15 – 000492544 _____ (Microsoft Corporation) C:WINDOWSsystem32poqexec.exe
2020-01-16 21:49 – 2019-12-10 15:59 – 000390656 _____ (Microsoft Corporation) C:WINDOWSSysWOW64poqexec.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-07 15:33 – 2019-03-19 15:37 – 000065536 _____ C:WINDOWSsystem32configELAM
2020-02-07 15:32 – 2017-09-18 20:42 – 000000000 ____D C:Program FilesBitdefender Antivirus Free
2020-02-07 15:29 – 2017-09-02 10:51 – 000000000 ____D C:UsersDSL-2070AppDataLocalLowMozilla
2020-02-07 15:28 – 2019-06-01 20:49 – 000000006 ____H C:WINDOWSTasksSA.DAT
2020-02-07 15:28 – 2019-06-01 20:42 – 000000000 ____D C:WINDOWSsystem32SleepStudy
2020-02-07 15:28 – 2019-06-01 20:05 – 000000000 ____D C:UsersDSL-2070
2020-02-07 15:28 – 2019-03-19 15:52 – 000000000 ____D C:ProgramDataregid.1991-06.com.microsoft
2020-02-07 15:28 – 2017-09-20 11:03 – 000000000 ____D C:ProgramDataNVIDIA
2020-02-07 15:18 – 2017-10-24 12:47 – 000000000 ____D C:UsersDSL-2070AppDataRoamingeM Client
2020-02-07 15:06 – 2019-06-01 20:49 – 000005404 _____ C:WINDOWSsystem32TasksSoftware Update Application
2020-02-07 15:06 – 2019-06-01 20:49 – 000003778 _____ C:WINDOWSsystem32TasksACC
2020-02-07 15:06 – 2019-06-01 20:49 – 000003060 _____ C:WINDOWSsystem32TasksACCBackgroundApplication
2020-02-07 15:06 – 2017-04-12 12:34 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAcer
2020-02-07 14:38 – 2019-06-01 20:49 – 000003322 _____ C:WINDOWSsystem32TasksCAM
2020-02-07 14:38 – 2018-08-15 21:04 – 000004536 _____ C:UsersDSL-2070AppDataRoamingCamStudio.cfg
2020-02-07 14:38 – 2018-08-15 21:04 – 000000408 _____ C:UsersDSL-2070AppDataRoamingCamShapes.ini
2020-02-07 14:38 – 2018-08-15 21:04 – 000000408 _____ C:UsersDSL-2070AppDataRoamingCamLayout.ini
2020-02-07 14:38 – 2018-08-15 21:04 – 000000096 _____ C:UsersDSL-2070AppDataRoamingCamdata.ini
2020-02-07 14:38 – 2018-08-15 21:01 – 000000096 _____ C:UsersDSL-2070AppDataRoamingversion2.xml
2020-02-07 14:08 – 2018-06-04 21:23 – 000000000 ____D C:UsersDSL-2070AppDataLocalD3DSCache
2020-02-07 13:48 – 2019-01-23 18:29 – 000000000 ____D C:UsersPublicCanvas
2020-02-07 08:33 – 2018-05-15 19:55 – 000000000 ____D C:UsersDSL-2070AppDataLocalMicrosoft Help
2020-02-07 08:19 – 2019-12-02 16:00 – 000000000 ____D C:UsersDSL-2070DesktopCoffee Institute SA S7
2020-02-06 18:57 – 2019-09-08 16:40 – 000000000 ____D C:UsersDSL-2070AppDataLocalElevatedDiagnostics
2020-02-06 17:21 – 2017-10-02 18:37 – 000000000 ____D C:Program Files (x86)Google
2020-02-06 17:21 – 2017-10-02 18:36 – 000000000 ____D C:UsersDSL-2070AppDataLocalGoogle
2020-02-06 15:10 – 2017-10-02 18:25 – 000000000 ____D C:UsersDSL-2070AppDataRoamingvlc
2020-02-04 17:52 – 2018-05-15 20:00 – 000000000 ____D C:WINDOWSsystem32Driverswd
2020-02-03 17:14 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSAppReadiness
2020-02-03 16:20 – 2017-09-02 10:51 – 000000000 ____D C:UsersDSL-2070AppDataRoamingMozilla
2020-02-03 09:35 – 2017-09-20 12:54 – 000013245 _____ C:WINDOWSBRRBCOM.INI
2020-02-02 19:42 – 2017-09-03 18:35 – 000000335 _____ C:UsersDSL-2070DesktopMy Computer.lnk
2020-01-30 11:50 – 2019-03-19 15:52 – 000000000 ___HD C:Program FilesWindowsApps
2020-01-30 10:27 – 2019-03-19 15:50 – 000000000 ____D C:WINDOWSINF
2020-01-30 09:24 – 2019-06-01 20:50 – 000840852 _____ C:WINDOWSsystem32PerfStringBackup.INI
2020-01-30 09:21 – 2017-09-20 13:52 – 000748816 ____N (Microsoft Corporation) C:WINDOWSsystem32MpSigStub.exe
2020-01-30 09:18 – 2017-09-02 08:05 – 000000000 ___RD C:UsersDSL-20703D Objects
2020-01-30 09:18 – 2017-04-12 11:52 – 000000000 __RHD C:UsersPublicAccountPictures
2020-01-30 09:17 – 2019-06-01 20:42 – 000632688 _____ C:WINDOWSsystem32FNTCACHE.DAT
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ___RD C:WINDOWSImmersiveControlPanel
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSSystemResources
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSsystem32WinBioPlugIns
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSsystem32PerceptionSimulation
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSShellExperiences
2020-01-30 09:16 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSbcastdvr
2020-01-30 09:16 – 2019-03-19 15:37 – 000786432 _____ C:WINDOWSsystem32configBBI
2020-01-30 08:17 – 2019-11-16 09:45 – 000000000 ____D C:UsersDSL-2070DesktopCFA Pod -Pressure Vessel – 2019
2020-01-30 08:01 – 2019-03-19 15:37 – 000000000 ____D C:WINDOWSCbsTemp
2020-01-29 21:27 – 2019-06-13 17:24 – 000001282 _____ C:UsersPublicDesktopB4A.lnk
2020-01-29 21:27 – 2019-06-13 17:24 – 000001282 _____ C:ProgramDataDesktopB4A.lnk
2020-01-29 21:27 – 2019-06-13 17:24 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsB4A
2020-01-29 21:26 – 2019-07-23 17:34 – 000153312 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbae64.sys
2020-01-27 18:37 – 2017-04-12 12:06 – 000000000 ____D C:ProgramDataPackage Cache
2020-01-27 18:35 – 2019-02-09 15:59 – 000000000 ____D C:ProgramDataboost_interprocess
2020-01-22 10:00 – 2019-06-01 20:49 – 000004584 _____ C:WINDOWSsystem32TasksAdobe Flash Player NPAPI Notifier
2020-01-22 09:59 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSSysWOW64Macromed
2020-01-22 09:59 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSsystem32Macromed
2020-01-20 15:46 – 2019-03-19 15:52 – 000000000 ____D C:WINDOWSsystem32NDF
2020-01-17 06:15 – 2019-12-03 16:10 – 000000000 ____D C:UsersDSL-2070AppDataLocalcache
2020-01-17 06:12 – 2019-09-08 19:59 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsJava
2020-01-17 06:12 – 2019-09-08 19:59 – 000000000 ____D C:Program Files (x86)Java
2020-01-17 06:12 – 2018-02-26 11:31 – 000000000 ____D C:ProgramDataOracle
2020-01-17 06:11 – 2019-09-08 19:59 – 000114232 _____ (Oracle Corporation) C:WINDOWSSysWOW64WindowsAccessBridge-32.dll
2020-01-16 22:06 – 2019-03-19 15:52 – 000000000 ___SD C:WINDOWSsystem32UNP
2020-01-16 21:57 – 2017-09-02 11:06 – 000000000 ____D C:WINDOWSsystem32MRT
2020-01-16 21:55 – 2017-09-02 11:06 – 120202352 ____C (Microsoft Corporation) C:WINDOWSsystem32MRT.exe

==================== Files in the root of some directories ========

2018-08-15 21:04 – 2020-02-07 14:38 – 000000096 _____ () C:UsersDSL-2070AppDataRoamingCamdata.ini
2018-08-15 21:04 – 2020-02-07 14:38 – 000000408 _____ () C:UsersDSL-2070AppDataRoamingCamLayout.ini
2018-08-15 21:04 – 2020-02-07 14:38 – 000000408 _____ () C:UsersDSL-2070AppDataRoamingCamShapes.ini
2018-08-15 21:04 – 2020-02-07 14:38 – 000004536 _____ () C:UsersDSL-2070AppDataRoamingCamStudio.cfg
2018-08-15 21:04 – 2018-08-15 21:04 – 000000000 _____ () C:UsersDSL-2070AppDataRoamingCamStudio.Producer.Data.ini
2018-08-15 21:04 – 2018-08-15 21:04 – 000001205 _____ () C:UsersDSL-2070AppDataRoamingCamStudio.Producer.ini
2017-11-17 16:17 – 2017-11-18 17:02 – 000282624 _____ () C:UsersDSL-2070AppDataRoamingPhotobookShop.com.au Prefsv3
2018-08-15 21:01 – 2020-02-07 14:38 – 000000096 _____ () C:UsersDSL-2070AppDataRoamingversion2.xml
2019-02-09 15:57 – 2019-02-09 15:57 – 050496864 _____ (Sony) C:UsersDSL-2070AppDataLocalpcc.exe
2017-09-02 11:18 – 2019-09-10 10:32 – 000007600 _____ () C:UsersDSL-2070AppDataLocalResmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

 

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by Ben (07-02-2020 15:34:58)
Running from C:UsersDSL-2070Downloads
Windows 10 Home Version 1909 18363.628 (X64) (2019-06-01 09:49:14)
Boot Mode: Normal
==========================================================

==================== Accounts: =============================

Administrator (S-1-5-21-1224708674-751352818-3313322539-500 – Administrator – Disabled)
Ben (S-1-5-21-1224708674-751352818-3313322539-1001 – Administrator – Enabled) => C:UsersDSL-2070
DefaultAccount (S-1-5-21-1224708674-751352818-3313322539-503 – Limited – Disabled)
defaultuser0 (S-1-5-21-1224708674-751352818-3313322539-1000 – Limited – Disabled) => C:Usersdefaultuser0
Guest (S-1-5-21-1224708674-751352818-3313322539-501 – Limited – Disabled)
WDAGUtilityAccount (S-1-5-21-1224708674-751352818-3313322539-504 – Limited – Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus Free Antimalware (Enabled – Up to date) {EA21BCE8-A461-99C3-3A0D-4C964E75494E}
AV: Windows Defender (Disabled – Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antivirus Free Antimalware (Enabled – Up to date) {51405D0C-825B-964D-00BD-77E435F203F3}
AS: Windows Defender (Disabled – Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with “Hidden” flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DMark 11 (HKLM…{FD67BFA0-E205-47AA-BA09-123B3B72DB5E}) (Version: 1.0.132.0 – Futuremark) Hidden
3DMark 11 (HKLM-x32…{f9e83b9c-ab7e-4005-8f32-4ea69703a5e4}) (Version: 1.0.132.0 – Futuremark)
7-Zip 17.01 beta (x64) (HKLM…7-Zip) (Version: 17.01 beta – Igor Pavlov)
Acer Care Center (HKLM…{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3038 – Acer Incorporated)
Acer Configuration Manager (HKLM-x32…{414D554E-4453-454E-0201-000000016258}) (Version: 2.1.16258 – Acer)
Acer Quick Access (HKLM…{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3012 – Acer Incorporated)
Adobe Acrobat Reader DC (HKLM-x32…{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.021.20061 – Adobe Systems Incorporated)
Adobe Acrobat X Pro – English, Français, Deutsch (HKLM-x32…{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.0.0 – Adobe Systems)
Adobe Flash Player 32 NPAPI (HKLM-x32…Adobe Flash Player NPAPI) (Version: 32.0.0.321 – Adobe)
Ansel (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 381.74 – NVIDIA Corporation) Hidden
AOP Framework (HKLM-x32…{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.22.2001.0 – Acer Incorporated)
App Explorer (HKUS-1-5-19…Host App Service) (Version: 0.272.1.295 – SweetLabs) <==== ATTENTION
App Explorer (HKUS-1-5-20…Host App Service) (Version: 0.272.1.295 – SweetLabs) <==== ATTENTION
Apple Application Support (32-bit) (HKLM-x32…{80B42CAA-28C0-4FBD-A46E-D61F45E2F9FC}) (Version: 7.2 – Apple Inc.)
Apple Application Support (64-bit) (HKLM…{466D00D0-E7DE-47C2-8FE5-54A8009F5850}) (Version: 7.2 – Apple Inc.)
Apple Mobile Device Support (HKLM…{5FA8C4BE-8C74-4B9C-9B49-EBF759230189}) (Version: 12.1.0.25 – Apple Inc.)
Apple Software Update (HKLM-x32…{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 – Apple Inc.)
Arduino (HKLM-x32…Arduino) (Version: 1.8.10 – Arduino LLC)
B4A v9.80 (HKLM-x32…{DA51676B-4318-4AF6-B94F-A8A9067622AD}_is1) (Version:  – Anywhere Software)
B4R v3.00 (HKLM-x32…{BDE7CEAB-7394-4B50-8109-268DFB9A3023}_is1) (Version:  – Anywhere Software)
BatteryBar (remove only) (HKLM…BatteryBar) (Version:  – )
BCSoft 3.9.4f (HKLM-x32…BCSoft) (Version: 3.9.4f – )
Bitdefender Agent (HKLM…Bitdefender Agent) (Version: 21.0.25.59 – Bitdefender)
Bitdefender Antivirus Free (HKLM…{1FCCF41D-5F00-4FE2-9653-162D0486C8B4}) (Version: 1.0.8.33 – Bitdefender)
Bonjour (HKLM…{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 – Apple Inc.)
Brother MFL-Pro Suite MFC-J6720DW (HKLM-x32…{6A367B4D-2E1C-4843-9FF0-A1DF1DEAB1E6}) (Version: 1.0.0.0 – Brother Industries, Ltd.)
CAM (HKLM-x32…{B97509AD-DBA3-44A4-98D9-4866C7DE3861}) (Version: 3.5.90 – NZXT)
CamStudio 2.7.4 (HKLM…{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.4 – CamStudio Open Source)
CDBurnerXP (HKLM-x32…{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7041 – CDBurnerXP)
CrystalDiskInfo 7.1.1 (HKLM-x32…CrystalDiskInfo_is1) (Version: 7.1.1 – Crystal Dew World)
CrystalDiskMark 5.2.2 (HKLM…CrystalDiskMark5_is1) (Version: 5.2.2 – Crystal Dew World)
Dolby Audio X2 Windows API SDK (HKLM…{AA950AA4-CD9B-4D81-B6C0-BFABB7A24261}) (Version: 0.7.5.65 – Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM…{DBC4388A-9417-41DB-85CF-DF4993B84D5A}) (Version: 0.7.5.67 – Dolby Laboratories, Inc.)
DriverSetupUtility (HKLM…{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3019 – Acer Incorporated)
ELAN FingerPrinter 1.6.5.1_X64_WHQL (HKLM…ElanFP) (Version: 1.6.5.1 – ELAN Microelectronic Corp.)
ELAN HIDI2C Filter Driver X64 13.6.7.2_WHQL (HKLM…Elantech) (Version: 13.6.7.2 – ELAN Microelectronic Corp.)
eM Client (HKLM-x32…{1450D779-8650-468B-9136-CA836C0A744C}) (Version: 7.2.36908.0 – eM Client Inc.)
Firefox Developer Edition 73.0 (x64 en-US) (HKLM…Firefox Developer Edition 73.0 (x64 en-US)) (Version: 73.0 – Mozilla)
Futuremark SystemInfo (HKLM-x32…{3EEDF905-7C41-4C78-A5B9-45FB2A3E79DA}) (Version: 5.11.681.0 – Futuremark)
GoCanvas (HKLM-x32…GoCanvas) (Version: 9.16.1.3 – Canvas Solutions Inc.)
Grand Theft Auto V (HKLM-x32…{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: “1.00.0000” – Rockstar Games)
Intel® Chipset Device Software (HKLM-x32…{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 – Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM…{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1047 – Intel Corporation)
Intel® Processor Graphics (HKLM-x32…{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 – Intel Corporation)
Intel® Serial IO (HKLM…{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1633.3 – Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM…{7516A945-5FC4-4563-8F5E-EECDBF61E84F}) (Version: 7.5.1 – Intel Corporation)
iTunes (HKLM…{160EFAC8-C79A-48A2-845C-3F6F577078A0}) (Version: 12.9.2.6 – Apple Inc.)
Java 8 Update 241 (HKLM-x32…{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 – Oracle Corporation)
LibreOffice 6.1.1.2 (HKLM…{0E18CB72-99E8-4B76-9841-FC483C92959E}) (Version: 6.1.1.2 – The Document Foundation)
Macrium Reflect Free Edition (HKLM…{13882057-4CEB-4F8A-9646-4A3EF85A89AE}) (Version: 7.2.4473 – Paramount Software (UK) Ltd.) Hidden
Macrium Reflect Free Edition (HKLM…MacriumReflect) (Version: 7.2 – Paramount Software (UK) Ltd.)
Malwarebytes version 4.0.4.49 (HKLM…{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 – Malwarebytes)
Microsoft Office Home and Student 2010 (HKLM-x32…Office14.SingleImage) (Version: 14.0.7015.1000 – Microsoft Corporation)
Microsoft Visio Compatibility Pack (HKLM-x32…{95150000-005B-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1509 – Microsoft Corporation)
Microsoft Visio Professional 2010 (HKLM-x32…Office14.VISIOR) (Version: 14.0.7015.1000 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.17 (HKLM-x32…{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.6161 (HKLM-x32…{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 – Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable – 10.0.40219 (HKLM…{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable – 10.0.40219 (HKLM-x32…{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) – 11.0.61030 (HKLM-x32…{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) – 11.0.61030 (HKLM-x32…{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) – 12.0.21005 (HKLM-x32…{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) – 12.0.21005 (HKLM-x32…{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) – 12.0.30501 (HKLM-x32…{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 – Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) – 14.0.24215 (HKLM-x32…{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 – Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) – 14.0.23026 (HKLM-x32…{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 – Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM…Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 – Microsoft Corporation)
Mozilla Maintenance Service (HKLM…MozillaMaintenanceService) (Version: 73.0 – Mozilla)
Notepad++ (32-bit x86) (HKLM-x32…Notepad++) (Version: 7.5.6 – Notepad++ Team)
NVIDIA GeForce Experience 3.10.0.95 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 – NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0329 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 – NVIDIA Corporation)
Oracle VM VirtualBox 6.0.10 (HKLM…{6A145EBB-FA61-4F90-BDE1-2308B1C26C0F}) (Version: 6.0.10 – Oracle Corporation)
Privatefirewall 7.0 (HKLM-x32…{E8EA933E-03A2-4E62-9F52-812C72BE2A6B}) (Version: 7.0.30.3 – PWI, Inc.)
Progress Telerik Fiddler (HKUS-1-5-21-1224708674-751352818-3313322539-1001…Fiddler2) (Version: 5.0.20192.25091 – Telerik)
Python 3.6.5 (64-bit) (HKUS-1-5-21-1224708674-751352818-3313322539-1001…{9822e06d-fadf-408e-9776-1614747eaeb3}) (Version: 3.6.5150.0 – Python Software Foundation)
Python 3.6.5 (Miniconda3 4.5.4 64-bit) (HKUS-1-5-21-1224708674-751352818-3313322539-1001…Python 3.6.5 (Miniconda3 4.5.4 64-bit)) (Version: 4.5.4 – Anaconda, Inc.)
Python 3.6.5 Core Interpreter (64-bit) (HKLM…{CCE23D38-AE4C-41EE-867C-7DF7DCB52E7F}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Development Libraries (64-bit) (HKLM…{6A7E897E-3F28-41DE-8EA7-FD3325FA881A}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Documentation (64-bit) (HKLM…{B85E198A-D267-47DB-8F8C-1E5A95F77305}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Executables (64-bit) (HKLM…{B145D381-BCBE-408A-BDFA-0871790EC59D}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 pip Bootstrap (64-bit) (HKLM…{E828E9CB-111D-4185-AA7E-DD61923A61ED}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Standard Library (64-bit) (HKLM…{1A3684F6-CDA3-461A-83BA-186C525DA86F}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Tcl/Tk Support (64-bit) (HKLM…{20DE5A77-9F46-44D8-BB87-A10325DC493A}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Test Suite (64-bit) (HKLM…{C1BE25E2-19E0-4148-AE98-7A576D1E1528}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python 3.6.5 Utility Scripts (64-bit) (HKLM…{97CD25CA-B289-442B-96F9-D0F17B2617E9}) (Version: 3.6.5150.0 – Python Software Foundation) Hidden
Python Launcher (HKLM-x32…{8A66FEC2-E443-4219-B9AC-F9B10607B57C}) (Version: 3.6.6295.0 – Python Software Foundation)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32…{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10398 – Qualcomm)
Qualcomm Atheros Bluetooth Installer (64) (HKLM…{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.285 – Qualcomm Atheros)
Realtek Card Reader (HKLM-x32…{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 – Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32…{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 – Realtek)
Realtek High Definition Audio Driver (HKLM-x32…{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8078 – Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32…Rockstar Games Social Club) (Version: 1.2.4.0 – Rockstar Games)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32…{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  – Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32…{91140000-0057-0000-0000-0000000FF1CE}_Office14.VISIOR_{359ADBEC-068A-4CC9-9174-77AB8EDB867A}) (Version:  – Microsoft)
Stellarium 0.19.1.1 (HKLM…Stellarium_is1) (Version: 0.19.1.1 – Stellarium team)
Thunderbolt™ Software (HKLM-x32…{10877131-EC3F-4F2F-97CD-2B8341D461D7}) (Version: 16.2.55.275 – Intel Corporation)
TinyCAD 2.90.00 (HKLM-x32…TinyCAD) (Version: 2.90.00 – TinyCAD)
TuxGuitar (HKLM-x32…TuxGuitar 1.5) (Version: 1.5 – TuxGuitar)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM…{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 – Microsoft Corporation)
USB ESYS/BMBC (Driver Removal) (HKLM-x32…SLABCOMM&10C4&EA60) (Version:  – Honeywell)
V2026_V2075 (HKLM-x32…ST6UNST #1) (Version:  – )
VLC media player (HKLM-x32…VLC media player) (Version: 2.2.6 – VideoLAN)
Vulkan Run Time Libraries 1.0.42.1 (HKLM…VulkanRT1.0.42.1) (Version: 1.0.42.1 – LunarG, Inc.)
Windows 10 Update Assistant (HKLM-x32…{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22391 – Microsoft Corporation)
Xperia Companion (HKLM-x32…{5b7c1b25-5fb6-442c-a1b5-cb8dfc2267bf}) (Version: 2.8.3.0 – Sony)
Xperia Companion (HKLM-x32…{66EABD35-6233-4926-9AB1-AB31CC6BC7D9}) (Version: 2.8.3.0 – Sony) Hidden
Xperia Companion Service (HKLM…{E41065E8-67E2-448F-940C-FF9D7C51E4E3}) (Version: 2.8.3.0 – Sony) Hidden

Packages:
=========
djay Pro -> C:Program FilesWindowsApps59BEBC1A.djayPro_1.0.27578.0_x86__e3tqh12mt5rj6 [2019-09-17] (Algoriddim)
Microsoft Advertising SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:Program FilesWindowsAppsMicrosoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-12] (Microsoft Studios) [MS Ad]
WhatsApp Desktop -> C:Program FilesWindowsApps5319275A.WhatsAppDesktop_0.4.315.0_x64__cv1g1gvanyjgm [2020-01-23] (WhatsApp Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKUS-1-5-21-1224708674-751352818-3313322539-1001_ClassesCLSID{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}InprocServer32 -> C:UsersDSL-2070AppDataLocalMicrosoftOneDrive17.3.6998.0830amd64FileSyncShell64.dll => No File
CustomCLSID: HKUS-1-5-21-1224708674-751352818-3313322539-1001_ClassesCLSID{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}InprocServer32 -> C:UsersDSL-2070AppDataLocalMicrosoftOneDrive17.3.6998.0830amd64FileSyncShell64.dll => No File
CustomCLSID: HKUS-1-5-21-1224708674-751352818-3313322539-1001_ClassesCLSID{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}InprocServer32 -> C:UsersDSL-2070AppDataLocalMicrosoftOneDrive17.3.6998.0830amd64FileSyncShell64.dll => No File
SSODL: EldosMountNotificator – {5FF49FE8-B332-4CB9-B102-FB6951629E55} – C:WINDOWSsystem32CbFsMntNtf3.dll (EldoS Corporation -> EldoS Corporation)
SSODL-x32: EldosMountNotificator – {5FF49FE8-B332-4CB9-B102-FB6951629E55} – C:WINDOWSSysWow64CbFsMntNtf3.dll (EldoS Corporation -> EldoS Corporation)
ShellServiceObjects: Virtual Storage Mount Notification -> {5FF49FE8-B332-4CB9-B102-FB6951629E55} => C:WINDOWSsystem32CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation -> EldoS Corporation)
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {5FF49FE8-B332-4CB9-B102-FB6951629E55} => C:WINDOWSSysWow64CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation -> EldoS Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:WINDOWSsystem32CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation -> EldoS Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:WINDOWSsystem32CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation -> EldoS Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2017-08-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:Program Files (x86)AdobeAcrobat 10.0Acrobat ElementsContextMenu64.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:Program Files (x86)Notepad++NppShell_06.dll [2018-03-19] (Notepad++ -> )
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:Program FilesMacriumReflectRContextMenu.dll [2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
ContextMenuHandlers1: [WorkFolders] -> {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} =>  -> No File
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:Program FilesMacriumReflectRContextMenu.dll [2019-09-20] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2017-08-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers4: [WorkFolders] -> {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:WINDOWSSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_7ee21f0fcd504371igfxDTCM.dll [2016-11-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:WINDOWSsystem32nvshext.dll [2017-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2017-08-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:Program Files (x86)AdobeAcrobat 10.0Acrobat ElementsContextMenu64.dll [2010-10-25] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:UsersDSL-2070AppDataRoamingMicrosoftWindowsStart MenuProgramsTinyCADUsers Group.lnk -> hxxp://uk.groups.yahoo.com/group/tinycad
Shortcut: C:UsersDSL-2070AppDataRoamingMicrosoftInternet ExplorerQuick LaunchUser PinnedTaskBarFirefox Developer Edition.lnk -> C:Program FilesFirefox Developer Editionfirefox.exe (Mozilla Corporation)
Shortcut: C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox Developer Edition.lnk -> C:Program FilesFirefox Developer Editionfirefox.exe (Mozilla Corporation)
ShortcutWithArgument: C:UsersDSL-2070AppDataRoamingMicrosoftWindowsStart MenuProgramsAnaconda3 (64-bit)Anaconda Prompt.lnk -> C:WindowsSystem32cmd.exe (Microsoft Corporation) -> “/K” C:UsersDSL-2070Miniconda3Scriptsactivate.bat C:UsersDSL-2070Miniconda3

==================== Loaded Modules (Whitelisted) =============

2017-09-20 12:53 – 2005-04-22 15:36 – 000143360 _____ () [File not signed] C:WINDOWSsystem32BrSNMP64.dll
2017-09-20 12:53 – 2013-01-07 11:53 – 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:WINDOWSsystem32BrNetSti.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The “AlternateShell” will be restored.)

HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService => “”=”Service”
HKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService => “”=”Service”

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 22:47 – 2016-07-16 22:45 – 000000824 _____ C:WINDOWSsystem32driversetchosts

2019-09-06 18:38 – 2019-09-08 22:06 – 000000444 _____ C:WINDOWSsystem32driversetchosts.ics
192.168.137.1 LAPTOP-ICFI28LN.mshome.net # 2024 9 5 6 11 6 5 904

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLMSystemCurrentControlSetControlSession ManagerEnvironmentPath -> C:Program Files (x86)Common FilesOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Windowssystem32;C:Windows;C:WindowsSystem32Wbem;C:WindowsSystem32WindowsPowerShellv1.0;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;%SYSTEMROOT%System32OpenSSH
HKUS-1-5-21-1224708674-751352818-3313322539-1001Control PanelDesktopWallpaper -> C:UsersDSL-2070AppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper
DNS Servers: 192.168.1.1
HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

Network Binding:
=============
VirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)
Wi-Fi: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)
Ethernet Port: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM…StartupApprovedRun: => “iTunesHelper”
HKLM…StartupApprovedRun32: => “BrHelp”
HKLM…StartupApprovedRun32: => “BrStsMon00”
HKLM…StartupApprovedRun32: => “Dropbox”
HKUS-1-5-21-1224708674-751352818-3313322539-1001…StartupApprovedRun: => “OneDriveSetup”
HKUS-1-5-21-1224708674-751352818-3313322539-1001…StartupApprovedRun: => “Adobe Acrobat Synchronizer”

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{5DD4CE9E-E31E-45D6-806F-47B15196133B}] => (Allow) LPort=2333
FirewallRules: [{28DB5226-B487-493B-87E2-29FDE2709751}] => (Allow) LPort=9143
FirewallRules: [{9555C17E-6092-406D-A01F-FC4386A72463}] => (Allow) C:Program Files (x86)AcerabPhotoWindowsUpnp.exe No File
FirewallRules: [{53B8502A-12F8-45D5-AA63-4ECD8B14E6D0}] => (Allow) C:Program Files (x86)AcerabPhotoWindowsUpnp.exe No File
FirewallRules: [{FCE583A4-C639-480D-8830-DC080491B3FD}] => (Allow) C:Program Files (x86)AcerabPhotoDMCDaemon.exe No File
FirewallRules: [{E7B3FA25-3E2B-4363-A2EB-4671C4EB7D02}] => (Allow) C:Program Files (x86)AcerabPhotoDMCDaemon.exe No File
FirewallRules: [{9086B134-310E-4DAF-A756-912F9EADB1D1}] => (Allow) C:Program Files (x86)AcerAOP Frameworkacerccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{7F6DDB12-C803-40BC-A8C6-7641574B2954}] => (Allow) C:Program Files (x86)AcerAOP Frameworkacerccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{0AF448B7-5440-4E07-ABA1-ADCED42E49E8}] => (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe No File
FirewallRules: [{65666984-A8F4-4C20-A052-3B4EA1677863}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CCC37CEE-0856-4DAD-BDB9-A6C24C2DF21C}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{592A5540-6E63-40E3-BC2D-841AFF30E981}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamUserAgent.exe No File
FirewallRules: [{E8A84C6C-A897-455F-8056-1AE55F9C4817}] => (Allow) C:Program FilesNVIDIA CorporationNvContainerNvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{56BA2267-D679-4E29-A245-EC4EC8CE1C57}] => (Allow) C:Program FilesNVIDIA CorporationNvContainerNvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5ADEB618-6B05-4197-8097-EA14A7207168}] => (Allow) C:Program Files (x86)BrotherBrmfl13cFAXRX.EXE (Brother Industries, Ltd.) [File not signed]
FirewallRules: [{6BF66FC3-850F-4C07-9372-C1E380839930}] => (Allow) LPort=54925
FirewallRules: [{CA105593-C283-43E9-BB9B-EFF982462E0E}] => (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9414B5CA-E6C8-4391-AEA9-3FC46699A919}] => (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4FB9BEBF-A562-45DA-A69F-774D3FF5250C}] => (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A2A527F0-ADE9-4E9A-8767-91CD31BE1DA8}] => (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{75B44D55-218C-4A4E-9325-7EA8FEEE6955}] => (Allow) C:Program FilesRockstar GamesGrand Theft Auto VGTA5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{FD5C82A2-DD98-4B0D-9517-F16721E6C99B}] => (Allow) C:Program FilesRockstar GamesGrand Theft Auto VGTA5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{8CE3F027-C9E8-498D-B417-ADBEABC964CC}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{57379756-2C53-4306-883B-9BD47A16F13D}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{429F9CC3-044A-497B-9429-71EE2A16FE39}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5DF32288-869F-457B-9CBF-F69A30735933}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CEBD03AB-76A2-4BAD-BCF5-CB25818A76D8}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{50C4FFC0-31B5-4304-8738-38E185E07386}C:program files (x86)arduinojavabinjavaw.exe] => (Block) C:program files (x86)arduinojavabinjavaw.exe
FirewallRules: [UDP Query User{D8FAC9BE-560F-491E-99CF-3C5006C2DACF}C:program files (x86)arduinojavabinjavaw.exe] => (Block) C:program files (x86)arduinojavabinjavaw.exe
FirewallRules: [{D85DDA0E-3E28-4BC8-BC0B-59E5B5FB0F87}] => (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0525008D-60F5-421D-937B-18E3DD634022}] => (Allow) C:Program FilesiTunesiTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{0A43A681-C7DA-4D27-8CAD-06B78327AF4C}C:program files (x86)arduinojavabinjava.exe] => (Allow) C:program files (x86)arduinojavabinjava.exe
FirewallRules: [UDP Query User{63BAC715-304D-4763-BD54-4ACA03E549C5}C:program files (x86)arduinojavabinjava.exe] => (Allow) C:program files (x86)arduinojavabinjava.exe
FirewallRules: [{E26B379B-89DF-4083-92DE-F88345B59B21}] => (Block) C:program files (x86)arduinojavabinjava.exe
FirewallRules: [{3F94AD52-1FFC-4DC9-838A-50C7825CDF60}] => (Block) C:program files (x86)arduinojavabinjava.exe
FirewallRules: [TCP Query User{0C89623A-2A7C-4687-869A-681B9F1F35F5}C:javajdk-11.0.1binjava.exe] => (Allow) C:javajdk-11.0.1binjava.exe
FirewallRules: [UDP Query User{789B6517-4098-46E0-BF98-9FB465310B4B}C:javajdk-11.0.1binjava.exe] => (Allow) C:javajdk-11.0.1binjava.exe
FirewallRules: [{0EA2C30D-FCA2-4B69-B750-A7E521F39639}] => (Block) C:javajdk-11.0.1binjava.exe
FirewallRules: [{E0826BD7-BC8F-4A7A-9755-6A23A3C72242}] => (Block) C:javajdk-11.0.1binjava.exe
FirewallRules: [{18D5A98C-DC84-4C46-8178-E750208967BA}] => (Allow) C:UsersDSL-2070AppDataLocalProgramsFiddlerFiddler.exe (Progress Software Corporation -> Telerik)
FirewallRules: [{215B0700-FE0D-4B75-B3B4-629A9A255A61}] => (Allow) %systemroot%system32alg.exe No File
FirewallRules: [{D8D7E998-763C-40FF-AF56-486EC5BCE73D}] => (Allow) C:Program Files (x86)SonyXperia CompanionXperiaCompanion.exe (Sony Mobile Communications AB -> Sony)
FirewallRules: [{A91E94F6-0C49-4305-B7E8-66CCBF2F5C97}] => (Allow) C:Program FilesFirefox Developer Editionfirefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C37A303F-95E8-4BA7-B5BD-1D53FB4F06DE}] => (Allow) C:Program FilesFirefox Developer Editionfirefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{6AACB961-0441-4848-ACE6-596A20478247}C:program files (x86)arduinojavabinjavaw.exe] => (Allow) C:program files (x86)arduinojavabinjavaw.exe
FirewallRules: [UDP Query User{48095FF8-D739-4F99-AC25-304B4A793AB9}C:program files (x86)arduinojavabinjavaw.exe] => (Allow) C:program files (x86)arduinojavabinjavaw.exe

==================== Restore Points =========================

07-02-2020 09:13:00 Scheduled Checkpoint

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (02/07/2020 03:28:43 PM) (Source: CertEnroll) (EventID: 87) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment for WORKGROUPLAPTOP-ICFI28LN$ via https://INTC-KeyId-5e73c89aa3e902b272b9f0741f7d8730e3ec724a.microsoftaik.azure.net/templates/Aik/scep failed:

SubmitDone
Submit(Request): Bad Request
{“Message”:”Attestation statement cannot be verified, rejecting request: 0x80070057.”}
HTTP/1.1 400 Bad Request
Cache-Control: no-cache
Date: Fri, 07 Feb 2020 04:28:43 GMT
Pragma: no-cache
Content-Length: 86
Content-Type: application/json; charset=utf-8
Expires: -1
x-ms-request-id: d6ff34e7-c5ae-4251-ae3e-b01df828d7a3
Strict-Transport-Security: max-age=31536000;includeSubDomains
X-Content-Type-Options: nosniff

Method: POST(3438ms)
Stage: SubmitDone
Bad request (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST)

Error: (02/07/2020 03:24:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7164,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:WINDOWSsystem32configsystemprofileAppDataLocalTileDataLayerDatabaseEDB.log.

Error: (02/07/2020 03:23:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program firefox.exe version 73.0.0.7334 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 3c54

Start Time: 01d5dd6e375c8bf1

Termination Time: 9

Application Path: C:Program FilesFirefox Developer Editionfirefox.exe

Report Id: c050596f-ba77-42b5-b704-f4fdbbae967d

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown

Error: (02/07/2020 03:06:16 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for “C:Program Files (x86)TinyCADTinyCad.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:WINDOWSWinSxSmanifestsamd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.628_none_e6c6b62f130d50fc.manifest.
Component 2: C:WINDOWSWinSxSmanifestsx86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.628_none_2e73ed0627897a02.manifest.

Error: (02/07/2020 03:05:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: CAM_V3.exe, version: 0.3.0.0, time stamp: 0x5b0282c5
Faulting module name: KERNELBASE.dll, version: 10.0.18362.628, time stamp: 0x54734dee
Exception code: 0xe0434352
Fault offset: 0x00113db2
Faulting process id: 0x1300
Faulting application start time: 0x01d5dd681ce2af16
Faulting application path: C:Program Files (x86)NZXTCAMCAM_V3.exe
Faulting module path: C:WINDOWSSystem32KERNELBASE.dll
Report Id: 8ec850f5-5d97-401e-9c13-ef8c9471764f
Faulting package full name:
Faulting package-relative application ID:

Error: (02/07/2020 03:05:07 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: CAM_V3.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.Threading.Tasks.TaskCanceledException
   at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(System.Threading.Tasks.Task)
   at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(System.Threading.Tasks.Task)
   at System.Runtime.CompilerServices.TaskAwaiter.GetResult()
   at CAMV2.OverClocking.OverClockingPage+d__4.MoveNext()
   at System.Runtime.CompilerServices.AsyncMethodBuilderCore+<>c.b__6_1(System.Object)
   at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   at System.Threading.ThreadPoolWorkQueue.Dispatch()
   at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (02/07/2020 03:04:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: CAMFPS.exe, version: 1.0.0.0, time stamp: 0x5b0282c1
Faulting module name: KERNELBASE.dll, version: 10.0.18362.628, time stamp: 0x54734dee
Exception code: 0xe0434352
Fault offset: 0x00113db2
Faulting process id: 0x292c
Faulting application start time: 0x01d5dd6bac3e5cf5
Faulting application path: C:Program Files (x86)NZXTCAMFPSCAMFPS.exe
Faulting module path: C:WINDOWSSystem32KERNELBASE.dll
Report Id: 35ed683c-69b0-46a8-875c-4eabbd9c90d7
Faulting package full name:
Faulting package-relative application ID:

Error: (02/07/2020 03:04:19 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: CAMFPS.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.IO.FileNotFoundException
   at CAMFPS.ProcessHelper.GetAutoInjection()
   at CAMFPS.ProcessHelper.b__2c(System.Object)
   at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   at System.Threading.ThreadPoolWorkQueue.Dispatch()
   at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

System errors:
=============
Error: (02/07/2020 03:28:19 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 3:27:10 PM on ‎2/‎7/‎2020 was unexpected.

Error: (02/07/2020 02:28:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (02/07/2020 02:28:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: ??C:UsersDSL-2070AppDataLocalTempehdrv.sys

Error: (02/07/2020 02:28:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (02/07/2020 02:28:11 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: ??C:UsersDSL-2070AppDataLocalTempehdrv.sys

Error: (02/07/2020 02:28:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (02/07/2020 02:28:11 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: ??C:UsersDSL-2070AppDataLocalTempehdrv.sys

Error: (02/07/2020 02:28:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Windows Defender:
===================================
Date: 2020-02-06 12:27:01.828
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {F343D03A-DB93-467D-B5B7-15DC5C34B14C}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-01-31 11:23:07.100
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {58B003F5-0276-4243-BB2B-717E3217D8A7}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-10-16 10:59:16.137
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {58721C64-15A9-4844-B48F-4F4E2A05B2B8}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-09-20 22:16:41.126
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {3430268F-D8FA-410E-A12A-3C6FBA8EBD9E}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-09-10 11:08:18.017
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {49BB27CA-6298-4F13-AC81-2B48B6A0E12A}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-10-28 11:50:14.442
Description:
Windows Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Behavior Monitoring
Error Code: 0x80508023
Error description: The program could not find the malware and other potentially unwanted software on this device.
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

Date: 2019-09-11 14:57:18.664
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.301.783.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16300.1
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2019-09-11 14:57:18.664
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.301.783.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16300.1
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2019-09-11 14:57:18.664
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.301.783.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16300.1
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2019-09-11 14:57:18.656
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.301.783.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16300.1
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

CodeIntegrity:
===================================

Date: 2020-02-07 15:31:25.319
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.313
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.307
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.299
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.291
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.284
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.278
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-02-07 15:31:25.268
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3Program FilesWindows DefenderMpCmdRun.exe) attempted to load DeviceHarddiskVolume3Program FilesBitdefender Antivirus Freebdamsi264426339644157237antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.06 07/05/2017
Motherboard: KBL Neptune_KLS
Processor: Intel® Core™ i7-7700HQ CPU @ 2.80GHz
Percentage of memory in use: 29%
Total physical RAM: 16270.22 MB
Available physical RAM: 11523.15 MB
Total Virtual: 18702.22 MB
Available Virtual: 13031.91 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:237.36 GB) (Free:49.91 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:807.58 GB) NTFS

?Volume{ad36b2d6-ff17-436d-9e04-6cca394348dd} (Recovery) (Fixed) (Total:1 GB) (Free:0.51 GB) NTFS
?Volume{07414f8c-041a-41d0-a473-0ba10f4d9d03} (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 53261900)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 407E5DD8)

Partition: GPT.

==================== End of Addition.txt =======================



Source link