Okay, downloaded FRST once more, and at last acquired it to run. Listed below are the logs. I ought to reiterate right here that the pc was nonetheless having issues BEFORE I turned the Chrome sync again on, however clearly turning that again on induced extra hassle. I’ve fully reset each Chrome and Edge and cleared all information for each.
Scan results of Farbar Restoration Scan Software (FRST) (x64) Model: 19-07-2020
Ran by Michael (administrator) on YOGA_920 (LENOVO 80Y7) (19-07-2020 22:43:52)
Operating from C:UsersMichaelDesktop
Loaded Profiles: Michael
Platform: Home windows 10 Dwelling Model 2004 19041.388 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Regular
==================== Processes (Whitelisted) =================
(If an entry is included within the fixlist, the method might be closed. The file won’t be moved.)
() [File not signed] C:Program FilesSpiderOakONEwindows_dir_watcher.exe
(Adobe Inc. -> Adobe Inc.) C:Program Information (x86)Widespread FilesAdobeARM1.0armsvc.exe
(Adobe Inc. -> Adobe Methods, Included) C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGMService.exe
(Adobe Inc. -> Adobe Methods, Included) C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGSService.exe
(Axway Software program -> Syncplicity LLC) C:Program FilesSyncplicitySyncplicity.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender AgentDiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefender AgentProductAgentService.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefenderBitdefender System ManagementDevMgmtService.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefenderBitdefender Securitybdagent.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefenderBitdefender Securitybdntwrk.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefenderBitdefender Securitybdservicehost.exe <3>
(Bitdefender SRL -> Bitdefender) C:Program FilesBitdefenderBitdefender Securityupdatesrv.exe
(Bitdefender SRL -> Bitdefender) C:Program FilesCommon FilesBitdefenderSetupInformationBitdefender RedLinebdredline.exe
(Code Sector -> Code Sector) C:Program FilesTeraCopyTeraCopyService.exe
(Dolby Laboratories, Inc. -> ) C:Program FilesDolbyDolby DAX3APIDAX3API.exe
(Google LLC -> Google LLC) C:Program Information (x86)GoogleUpdate1.3.35.452GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:Program Information (x86)GoogleUpdate1.3.35.452GoogleCrashHandler64.exe
(INTEL CORP) C:Program FilesWindowsAppsAppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6cttGCP.ML.BackgroundSysTrayIGCCTray.exe
(INTEL CORP) C:Program FilesWindowsAppsAppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6cttIGCC.exe
(Intel Company -> Intel Company) C:WindowsSystem32IntelDPTFesif_uf.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Company) C:WindowsSystem32jhi_service.exe
(Intel® On-line Join -> Intel Company) C:Program FilesIntelIntel® On-line Connectioc.exe
(Intel® On-line Join Entry -> Intel® Company) C:Program FilesIntelIntel® On-line Join AccessIntelTechnologyAccessService.exe
(Intel® pGFX -> Intel Company) C:WindowsSystem32DriverStoreFileRepositorycui_dch.inf_amd64_f3a64c75ee4defb7igfxCUIService.exe
(Intel® pGFX -> Intel Company) C:WindowsSystem32DriverStoreFileRepositorycui_dch.inf_amd64_f3a64c75ee4defb7igfxEM.exe
(Intel® pGFX -> Intel Company) C:WindowsSystem32DriverStoreFileRepositoryiigd_dch.inf_amd64_38bfcb542ef4272eIntelCpHDCPSvc.exe
(Intel® pGFX -> Intel Company) C:WindowsSystem32DriverStoreFileRepositoryiigd_dch.inf_amd64_38bfcb542ef4272eIntelCpHeciSvc.exe
(Intel® Software program Improvement Merchandise -> Intel Company) C:WindowsSystem32DriverStoreFileRepositorysgx_psw.inf_amd64_bff7913eb62bbf90aesm_service.exe
(Intel® Belief Companies -> Intel® Company) C:WindowsSystem32InteliCLS ClientlibSocketHeciServer.exe
(Lenovo (Beijing) Restricted -> Lenovo Group Restricted) C:UsersMichaelAppDataLocalProgramsLenovoLenovo Service BridgeLSB.exe
(Lenovo -> Lenovo Group Ltd.) C:Program Information (x86)LenovoVantageService3.3.61.0LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:WindowsLenovoImControllerPluginHostLenovo.Trendy.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:WindowsLenovoImControllerPluginHostLenovo.Trendy.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:WindowsLenovoImControllerPluginHost86Lenovo.Trendy.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:WindowsLenovoImControllerPluginHost86Lenovo.Trendy.ImController.PluginHost.System.exe <3>
(Lenovo -> Lenovo Group Ltd.) C:WindowsLenovoImControllerServiceLenovo.Trendy.ImController.exe
(LENOVO -> Lenovo(beijing) Restricted) C:Program FilesLenovoLenovoUtilityutility.exe
(LENOVO -> Lenovo) C:WindowsSystem32ymc.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-Malwarembamtray.exe
(Microsoft Company -> Microsoft Corp.) C:Program Information (x86)MicrosoftBingDesktopBDAppHost.exe
(Microsoft Company -> Microsoft Corp.) C:Program Information (x86)MicrosoftBingDesktopBDExtHost.exe
(Microsoft Company -> Microsoft Corp.) C:Program Information (x86)MicrosoftBingDesktopBDRuntimeHost.exe
(Microsoft Company -> Microsoft Corp.) C:Program Information (x86)MicrosoftBingDesktopBDSurrogateHost.exe
(Microsoft Company -> Microsoft Corp.) C:Program Information (x86)MicrosoftBingDesktopBingDesktop.exe
(Microsoft Company -> Microsoft Company) C:Program Information (x86)MicrosoftEdgeApplicationmsedge.exe <2>
(Microsoft Company -> Microsoft Company) C:Program FilesCommon Filesmicrosoft sharedClickToRunOfficeClickToRun.exe
(Microsoft Company -> Microsoft Company) C:UsersMichaelAppDataLocalMicrosoftOneDriveOneDrive.exe <2>
(Microsoft Company -> Microsoft Company) C:UsersMichaelAppDataLocalMicrosoftTeamscurrentTeams.exe <7>
(Microsoft Company) C:Program FilesWindowsAppsMicrosoft.WindowsCalculator_10.2005.23.0_x64__8wekyb3d8bbweCalculator.exe
(Microsoft Company) C:Program FilesWindowsAppsMicrosoft.WindowsStore_12007.1001.2.0_x64__8wekyb3d8bbweWinStore.App.exe
(Microsoft Home windows -> Microsoft Company) C:WindowsImmersiveControlPanelSystemSettings.exe
(Microsoft Home windows -> Microsoft Company) C:WindowsSystem32cmd.exe
(Microsoft Home windows -> Microsoft Company) C:WindowsSystem32dllhost.exe
(Microsoft Home windows -> Microsoft Company) C:WindowsSystem32oobeUserOOBEBroker.exe
(Microsoft Home windows -> Microsoft Company) C:WindowsSystem32smartscreen.exe
(Microsoft Home windows {Hardware} Compatibility Writer -> Home windows ® Win 7 DDK supplier) C:WindowsSystem32driversAdminService.exe
(MiniTool Software program Restricted -> ) C:Program FilesMiniTool Partition Wizard 12updatechecker.exe
(Paramount Software program UK Ltd -> Paramount Software program UK Ltd) C:Program FilesMacriumCommonMacriumService.exe
(Paramount Software program UK Ltd -> Paramount Software program UK Ltd) C:Program FilesMacriumCommonReflectMonitor.exe
(Paramount Software program UK Ltd -> Paramount Software program UK Ltd) C:Program FilesMacriumCommonReflectUI.exe
(pCloud AG -> pCloud AG) C:Program Information (x86)pCloud DrivepCloud.exe
(Piriform Software program Ltd -> Piriform Software program Ltd) C:Program FilesCCleanerCCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARAVBg64.exe <3>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARAVCpl64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARtkAudioService64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:Program Information (x86)EPSON ProjectorEpson USB Show V1.7EMP_UDSA.exe
(Siber Methods -> Siber Methods) C:Program Information (x86)Siber SystemsAI RoboFormrobotaskbaricon.exe
(Skype) C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5cSkypeSkype.exe <6>
(SpiderOak, Inc. -> SpiderOak) C:Program FilesSpiderOakONESpiderOakONE.exe <2>
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop RemoteServerSRAgent.exe
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop RemoteServerSRFeature.exe
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop RemoteServerSRManager.exe
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop RemoteServerSRServer.exe
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop RemoteServerSRService.exe
(Splashtop Inc. -> Splashtop Inc.) C:Program Information (x86)SplashtopSplashtop Software program UpdaterSSUService.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:Program FilesSUPERAntiSpywareSASCore64.exe
(Help.com Inc -> SUPERAntiSpyware) C:Program FilesSUPERAntiSpywareSUPERANTISPYWARE.EXE
(TEFINCOM S.A. -> TEFINCOM S.A.) C:Program FilesNordVPNnordvpn-service.exe
(Wacom Expertise Company -> Wacom Expertise, Corp.) C:WindowsSystem32DriverStoreFileRepositorywtabletserviceisd.inf_amd64_4cc45e324dcccf58WTabletServiceISD.exe <2>
Didn’t entry course of -> IntelAudioService.exe
==================== Registry (Whitelisted) ===================
(If an entry is included within the fixlist, the registry merchandise might be restored to default or eliminated. The file won’t be moved.)
HKLM…Run: [LenovoUtility] => C:Program FilesLenovoLenovoUtilityutility.exe [914344 2017-06-13] (LENOVO -> Lenovo(beijing) Restricted)
HKLM…Run: [AdobeAAMUpdater-1.0] => C:Program Information (x86)Widespread FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Methods Included -> Adobe Methods Included)
HKLM…Run: [AdobeGCInvoker-1.0] => C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Methods, Included)
HKLM…Run: [Syncplicity] => C:Program FilesSyncplicitySyncplicity.exe [506224 2020-04-13] (Axway Software program -> Syncplicity LLC)
HKLM…Run: [RTHDVCPL] => C:Program FilesRealtekAudioHDARAVCpl64.exe [18390912 2019-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Run: [RtHDVBg_Dolby] => C:Program FilesRealtekAudioHDARAVBg64.exe [1506176 2019-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:Program FilesRealtekAudioHDARAVBg64.exe [1506176 2019-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Run: [MTPW] => C:Program FilesMiniTool Partition Wizard 12updatechecker.exe [219616 2020-02-19] (MiniTool Software program Restricted -> )
HKLM…Run: [Wondershare Helper Compact.exe] => C:Program FilesCommon FilesWondershareWondershare Helper CompactWSHelper.exe
HKLM…Run: [Reflect UI] => C:Program FilesMacriumCommonReflectUI.exe [7507624 2020-06-15] (Paramount Software program UK Ltd -> Paramount Software program UK Ltd)
HKLM-x32…Run: [BingDesktop] => C:Program Information (x86)MicrosoftBingDesktopBingDesktop.exe [2369240 2015-10-20] (Microsoft Company -> Microsoft Corp.)
HKLM-x32…Run: [Acrobat Assistant 8.0] => C:Program Information (x86)AdobeAcrobat 11.0AcrobatAcrotray.exe [3500056 2017-11-01] (Adobe Methods, Included -> Adobe Methods Inc.)
HKLM-x32…Run: [EPSON_UD_START] => C:Program Information (x86)EPSON ProjectorEpson USB Show V1.7EMP_UD.exe [537048 2018-03-13] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32…Run: [Wondershare Helper Compact.exe] => C:Program Information (x86)Widespread FilesWondershareWondershare Helper CompactWSHelper.exe [2133728 2017-09-12] (Wondershare Expertise Co.,Ltd -> Wondershare)
HKLM-x32…Run: [MTSM] => “C:Program FilesMiniTool ShadowMakerSMMonitor.exe” –auto
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [pCloud] => C:Program Information (x86)pCloud DrivepCloud.exe [3787496 2020-07-02] (pCloud AG -> pCloud AG)
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [SUPERAntiSpyware] => C:Program FilesSUPERAntiSpywareSUPERAntiSpyware.exe [9230256 2020-03-23] (Help.com Inc -> SUPERAntiSpyware)
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [CCleaner Smart Cleaning] => C:Program FilesCCleanerCCleaner64.exe [28990136 2020-06-17] (Piriform Software program Ltd -> Piriform Software program Ltd)
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [SpiderOakONE] => C:Program FilesSpiderOakONESpiderOakONE.exe [74688 2019-08-30] (SpiderOak, Inc. -> SpiderOak)
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [com.squirrel.Teams.Teams] => C:UsersMichaelAppDataLocalMicrosoftTeamsUpdate.exe [2350776 2020-06-02] (Microsoft third Celebration Software Element -> Microsoft Company)
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Run: [RoboForm] => C:Program Information (x86)Siber SystemsAI RoboFormRoboTaskBarIcon.exe [145680 2020-06-05] (Siber Methods -> Siber Methods)
HKLM…PrintMonitorsAdobe PDF Port Monitor: C:WINDOWSsystem32AdobePDF.dll [55432 2012-09-23] (Adobe Methods, Included -> Adobe Methods Inc)
HKLMSoftwareMicrosoftActive SetupInstalled Parts: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:Program Information (x86)GoogleChromeApplication84.0.4147.89Installerchrmstp.exe [2020-07-14] (Google LLC -> Google LLC)
HKLMSoftware…AuthenticationCredential Suppliers: [{243664FB-F5F5-46B9-88CD-463A338A804C}] -> C:WINDOWSsystem32RtkVpCP.dll [2018-01-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
HKLMSoftware…AuthenticationCredential Suppliers: [{97E1814E-5601-41c8-9971-10C319EF61CC}] -> C:WINDOWSsystem32SRCredentialProvider.dll [2020-04-17] (Splashtop Inc. -> Splashtop Inc.)
Startup: C:UsersmgeriAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupSend to OneNote.lnk [2018-05-21]
ShortcutTarget: Ship to OneNote.lnk -> C:Program Information (x86)Microsoft OfficerootOffice16ONENOTEM.EXE (Microsoft Company -> Microsoft Company)
Startup: C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupSend to OneNote.lnk [2020-07-15]
ShortcutTarget: Ship to OneNote.lnk -> C:Program Information (x86)Microsoft OfficerootOffice16ONENOTEM.EXE (Microsoft Company -> Microsoft Company)
==================== Scheduled Duties (Whitelisted) ============
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
Job: {049DBD86-799B-4EC3-A0A6-F0B8726B7313} – System32TasksMiniToolPartitionWizard => C:Program FilesMiniTool Partition Wizard 12updatechecker.exe [219616 2020-02-19] (MiniTool Software program Restricted -> )
Job: {07563818-42D0-487F-9A62-FB68EA259A23} – System32TasksRun RoboForm Course of => C:Program Information (x86)MicrosoftEdge BetaApplicationmsedge.exe
Job: {2570DB09-4622-415E-B251-342042B6A29D} – System32TasksBitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:Program FilesBitdefenderBitdefender Securitybdagent.exe [549032 2020-06-24] (Bitdefender SRL -> Bitdefender)
Job: {3BF36248-EE42-4A2A-9AAE-CA83FD305893} – System32TasksIntelIOC-Improve-f1c8187b-2653-47cd-a9be-b554b98f68a7 => C:Program Information (x86)IntelIntel® On-line Join AccessIntel® Software program Asset ManagerbinIntelSoftwareAssetManagerService.exe [18152 2016-12-21] (Intel® Software program Asset Supervisor -> Intel Company)
Job: {3D3090CC-21AB-47D7-A39E-28130DD1FA5A} – System32TasksG2MUploadTask-S-1-5-21-1998380166-1583960457-3440313674-1008 => C:UsersMichaelAppDataLocalGoToMeeting18068g2mupload.exe [32424 2020-06-24] (LogMeIn, Inc. -> LogMeIn, Inc.)
Job: {416B6C4D-FB7C-4CBE-8257-E07116CE08BA} – System32TasksLenovoImControllerTimeBasedEvents dc760fc-f56d-4082-854b-bf8437c179ee => C:WINDOWSLenovoImControllerServiceLenovo.Trendy.ImController.exe [80712 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
Job: {4875EBF6-7292-4181-BDA2-E1152713FA59} – System32TasksIUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:Program Information (x86)IntelIntel® Replace Managerbiniumsvc.exe
Job: {488AD9D4-B6F8-4D3E-A7ED-1CB3A158C18A} – System32TasksTVTTVSUUpdateTask_UserLogOn => C:Program Information (x86)LenovoSystem UpdatetvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Job: {5C5B841C-68CD-4285-9663-B51EF105ED4E} – System32TasksTVTTVSUUpdateTask => C:Program Information (x86)LenovoSystem UpdatetvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Job: {60DBC5E2-6D65-4A3C-888F-849832FF25D3} – System32TasksMicrosoftOfficeOffice Function Updates Logon => C:Program Information (x86)Microsoft OfficerootOffice16sdxhelper.exe [123744 2020-07-08] (Microsoft Company -> Microsoft Company)
Job: {79293351-E72B-4E2A-BA0B-E30463E65FB3} – System32TasksRun RoboForm TaskBar Icon => C:Program Information (x86)Siber SystemsAI RoboFormRoboTaskBarIcon.exe [145680 2020-06-05] (Siber Methods -> Siber Methods)
Job: {7C0A0E22-1627-4EC5-9F4B-220BAD073A15} – System32TasksLenovoImControllerLenovo iM Controller Monitor => C:WINDOWSsystem32ImController.InfInstaller.exe [56136 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
Job: {7C4DAD87-41A4-4B45-840E-3B64853F59F2} – System32TasksAvast SoftwareOverseer => C:Program FilesCommon FilesAVAST SoftwareOverseeroverseer.exe [1660520 2020-02-27] (Avast Software program s.r.o. -> Avast Software program)
Job: {7E848296-FD89-419E-AE3F-F7A3DE3F9092} – System32TasksEOSv3 Scheduler onTime => C:UsersMichaelDesktopesetonlinescanner.exe [14827616 2020-07-10] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Job: {81F648ED-511F-49B7-B8D7-39C6134E4591} – System32TasksGoogleUpdateTaskMachineUA => C:Program Information (x86)GoogleUpdateGoogleUpdate.exe [153168 2018-05-15] (Google Inc -> Google Inc.)
Job: {82550613-B41C-46A3-B53E-3DA56757C75F} – System32TasksMicrosoftOfficeOfficeTelemetryAgentLogOn2016 => C:Program Information (x86)Microsoft OfficerootOffice16msoia.exe [4569496 2020-07-08] (Microsoft Company -> Microsoft Company)
Job: {875DDAE8-90D8-4366-8F38-73A203F5597E} – System32TasksLenovoImControllerTimeBasedEvents 682336a-8a85-4c59-8833-57e6db98f0ed => C:WINDOWSLenovoImControllerServiceLenovo.Trendy.ImController.exe [80712 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
Job: {8F1FBED7-9E73-4EBB-A63D-E98858E8022E} – System32TasksMicrosoftOfficeOfficeTelemetryAgentFallBack2016 => C:Program Information (x86)Microsoft OfficerootOffice16msoia.exe [4569496 2020-07-08] (Microsoft Company -> Microsoft Company)
Job: {91B026D6-2F7F-4FFA-B325-2073751D5B01} – System32TasksOpen URL by RoboForm => C:WINDOWSsystem32rundll32.exe url.dll,FileProtocolHandler “hxxps://www.roboform.com/test-pass.html?aaa=KICMKMJMOJNJNMKJIMMMCNPMLJHMMJCNLMGMMJMJCNOJOMKMKJCNNMOMKMGMKMMMOJKMIMOMKJKJJNJICMHMCNGMCNPMFMOMOMCNNMJMLMCNOMGMPMLMOMFMPMCNPMCNOMGMPMLMOMCNNMJNPICMOMFMEKMICNJJCKFMIMKMOMJNHICMEKMICNJJCKJNBJCMCLGJMJHJOJKJDJJNKJCMJNNICMJNDJCMKJB (the info entry has 52 extra characters).
Job: {9C7E0D3A-A98F-43DA-81C0-A0CAC07BCB77} – System32TasksCCleanerSkipUAC => C:Program FilesCCleanerCCleaner.exe [24584376 2020-06-17] (Piriform Software program Ltd -> Piriform Software program Ltd)
Job: {9EABA1AC-483F-4185-9704-C774D85972A3} – System32TasksGoogleUpdateTaskMachineCore => C:Program Information (x86)GoogleUpdateGoogleUpdate.exe [153168 2018-05-15] (Google Inc -> Google Inc.)
Job: {A101DD91-4A1B-4167-BE3A-CAF26B84F97A} – System32TasksMicrosoftOfficeOffice Subscription Upkeep => C:Program Information (x86)Microsoft OfficerootvfsProgramFilesCommonx86Microsoft SharedOffice16OLicenseHeartbeat.exe [1313176 2020-07-08] (Microsoft Company -> Microsoft Company)
Job: {A2964B5B-111D-4FEF-BFEF-31D2414B9756} – System32TasksAdobeGCInvoker-1.0 => C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Methods, Included)
Job: {A48B72BA-4100-4D69-A65B-A2EA8A19BE20} – System32TasksLenovoVantageLenovo.Vantage.ServiceMaintainance => %systemrootpercentsystem32sc.exe begin LenovoVantageService
Job: {A58AF016-0054-4BDB-AEA8-8F90B2D18D2B} – System32TasksLenovoImControllerTimeBasedEventsaf77d875-7372-4685-9272-bf21b37b200d => C:WINDOWSLenovoImControllerServiceLenovo.Trendy.ImController.exe [80712 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
Job: {AF172E54-B897-4886-A7BE-65573F65F847} – System32TasksCCleaner Replace => C:Program FilesCCleanerCCUpdate.exe [686384 2020-06-17] (Piriform Software program Ltd -> Piriform Software program Ltd)
Job: {B0A61DD5-6738-4B86-A60B-5BA3D58A472B} – System32TasksBitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:Program FilesBitdefender AgentWatchDog.exe [490808 2020-03-27] (Bitdefender SRL -> Bitdefender)
Job: {B18EF341-ABA0-4965-A073-FD2415051946} – System32TasksLenovoImControllerLenovo iM Controller Scheduled Upkeep => “%windirpercentsystem32sc.exe” START ImControllerService
Job: {BEA12E6D-1F8E-4132-B26B-F2F4B93B132A} – System32TasksLenovoImControllerPluginsLenovoSystemUpdatePlugin_WeeklyTask => %windirpercentSystem32reg.exe add hklmSOFTWARELenovoSystemUpdatePluginscheduler /v begin /t reg_dword /d 1 /f /reg:32
Job: {BFCA0928-C57B-4050-B904-A445C5A9A2A1} – System32TasksLenovoImControllerTimeBasedEventsf8f084db-5a78-4312-858c-db1f72c0ee4a => C:WINDOWSLenovoImControllerServiceLenovo.Trendy.ImController.exe [80712 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
Job: {C1C2EC98-335B-4C36-A9CB-E95B14B6336F} – System32TasksMicrosoftOfficeOffice Function Updates => C:Program Information (x86)Microsoft OfficerootOffice16sdxhelper.exe [123744 2020-07-08] (Microsoft Company -> Microsoft Company)
Job: {D533F86E-E42C-47FB-9CF2-D0184A9FE568} – System32TasksIntelIOC-Improve-f1c8187b-2653-47cd-a9be-b554b98f68a7-Logon => C:Program Information (x86)IntelIntel® On-line Join AccessIntel® Software program Asset ManagerbinIntelSoftwareAssetManagerService.exe [18152 2016-12-21] (Intel® Software program Asset Supervisor -> Intel Company)
Job: {E20DEDDA-AF62-417E-B65E-A72CF7BFE3BD} – System32TasksG2MUpdateTask-S-1-5-21-1998380166-1583960457-3440313674-1008 => C:UsersMichaelAppDataLocalGoToMeeting18068g2mupdate.exe [32424 2020-06-24] (LogMeIn, Inc. -> LogMeIn, Inc.)
Job: {E8BF28D4-C6D0-4A27-BB38-BEEC3889FF6F} – System32TasksLenovoUtility Job => C:Windowsexplorer.exe lenovo-utility://
Job: {EB2E933B-B771-4C0F-A79A-0D90CC533173} – System32TasksLenovoBatteryGaugeBatteryGaugeMaintenance => C:ProgramDataLenovoImControllerPluginsLenovoBatteryGaugePackagex64BGHelper.exe [141752 2020-06-18] (Lenovo -> Lenovo Group Ltd.)
Job: {F1A0A1F7-8B5A-4E62-971C-13BBC0B8E37F} – System32TasksAdwCleaner_onReboot => C:UsersMichaelDesktopAdwCleaner.exe [8420016 2020-07-10] (Malwarebytes Inc -> Malwarebytes)
Job: {F318E90F-09A3-4E7C-88EB-7513D38AF594} – System32TasksLenovoLenovo Service BridgeS-1-5-21-1998380166-1583960457-3440313674-1008 => C:UsersMichaelAppDataLocalProgramsLenovoLenovo Service BridgeLSBUpdater.exe [87848 2020-06-15] (Lenovo (Beijing) Restricted -> Lenovo Group Restricted)
Job: {F5E8463D-93B4-48FB-B5A8-F219308185B9} – System32TasksMicrosoftOfficeOffice ClickToRun Service Monitor => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Company -> Microsoft Company)
Job: {FA3CC31A-DE8E-4023-8C18-0EEBE1C4BC45} – System32TasksMicrosoftOfficeOffice Computerized Updates 2.0 => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Company -> Microsoft Company)
Job: {FB2F3BA9-1F72-4082-A1B9-A0D968EF9C36} – System32TasksAdobe Acrobat Replace Job => C:Program Information (x86)Widespread FilesAdobeARM1.0AdobeARM.exe [1331792 2020-05-07] (Adobe Inc. -> Adobe Inc.)
Job: {FDC36765-ABFB-430F-BDFC-B485DADCB4AC} – System32TasksHPCustParticipation HP OfficeJet Professional 8720 => C:Program FilesHPHP OfficeJet Professional 8720BinHPCustPartic.exe [6439048 2018-04-06] (Hewlett Packard -> HP Inc.)
(If an entry is included within the fixlist, the duty (.job) file might be moved. The file which is operating by the duty won’t be moved.)
Job: C:WINDOWSTasksCreateExplorerShellUnelevatedTask.job => C:WINDOWSexplorer.exe
Job: C:WINDOWSTasksG2MUpdateTask-S-1-5-21-1998380166-1583960457-3440313674-1008.job => C:UsersMichaelAppDataLocalGoToMeeting18068g2mupdate.exe
Job: C:WINDOWSTasksG2MUploadTask-S-1-5-21-1998380166-1583960457-3440313674-1008.job => C:UsersMichaelAppDataLocalGoToMeeting18068g2mupload.exe
==================== Web (Whitelisted) ====================
(If an merchandise is included within the fixlist, if it’s a registry merchandise it will likely be eliminated or restored to default.)
TcpipParameters: [DhcpNameServer] 192.168.1.1
Tcpip..Interfaces{1cb0f570-5dbd-4587-bff7-c8009d599026}: [DhcpNameServer] 168.94.0.14 168.94.0.15
Tcpip..Interfaces{38a0ecb7-ba2c-446c-bb9f-a05f298fcf0b}: [DhcpNameServer] 150.206.1.2
Tcpip..Interfaces{74575cac-4307-42eb-be50-e1bd5f27040b}: [DhcpNameServer] 192.168.1.1
Web Explorer:
==================
HKLMSoftwareMicrosoftInternet ExplorerMain,Begin Web page = about:clean
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Begin Web page = about:clean
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Page_URL =
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL =
HKUS-1-5-21-1998380166-1583960457-3440313674-1008SoftwareMicrosoftInternet ExplorerMain,Begin Web page = about:clean
HKUS-1-5-21-1998380166-1583960457-3440313674-1008SoftwareMicrosoftInternet ExplorerMain,Secondary Begin Pages = hxxp://mystart.lenovo.com/
SearchScopes: HKUS-1-5-21-1998380166-1583960457-3440313674-1008 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&laptop=UE00
SearchScopes: HKUS-1-5-21-1998380166-1583960457-3440313674-1008 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&laptop=UE00
SearchScopes: HKUS-1-5-21-1998380166-1583960457-3440313674-1008 -> {86C037B2-42E2-4F84-8110-49FA89B0CC42} URL =
BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:Program FilesBitdefenderBitdefender Securitybdtbie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
BHO: Bitdefender Pockets -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:Program FilesBitdefenderBitdefender Securitypmbxie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
BHO: Skype for Enterprise Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:Program Information (x86)Microsoft OfficerootVFSProgramFilesX64Microsoft OfficeOffice16OCHelper.dll [2020-01-11] (Microsoft Company -> Microsoft Company)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:Program Information (x86)Siber SystemsAI RoboFormRoboForm-x64.dll [2020-06-05] (Siber Methods -> Siber Methods Inc.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXx64AcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
BHO: Adobe Acrobat Create PDF from Choice -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXx64AcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:Program FilesBitdefenderBitdefender Securityantispam32bdtbie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender Pockets -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:Program FilesBitdefenderBitdefender SecurityAntispam32pmbxie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
BHO-x32: Skype for Enterprise Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:Program Information (x86)Microsoft OfficerootOffice16OCHelper.dll [2020-01-11] (Microsoft Company -> Microsoft Company)
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:Program Information (x86)Siber SystemsAI RoboFormroboform.dll [2020-06-05] (Siber Methods -> Siber Methods Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXAcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
BHO-x32: Adobe Acrobat Create PDF from Choice -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXAcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
Toolbar: HKLM – &RoboForm Toolbar – {724d43a0-0d85-11d4-9908-00400523e39a} – C:Program Information (x86)Siber SystemsAI RoboFormRoboForm-x64.dll [2020-06-05] (Siber Methods -> Siber Methods Inc.)
Toolbar: HKLM – Bitdefender Pockets – {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} – C:Program FilesBitdefenderBitdefender Securitypmbxie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
Toolbar: HKLM – Adobe Acrobat Create PDF Toolbar – {47833539-D0C5-4125-9FA8-0819E2EAAC93} – C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXx64AcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
Toolbar: HKLM-x32 – &RoboForm Toolbar – {724d43a0-0d85-11d4-9908-00400523e39a} – C:Program Information (x86)Siber SystemsAI RoboFormroboform.dll [2020-06-05] (Siber Methods -> Siber Methods Inc.)
Toolbar: HKLM-x32 – Adobe Acrobat Create PDF Toolbar – {47833539-D0C5-4125-9FA8-0819E2EAAC93} – C:Program Information (x86)Widespread FilesAdobeAcrobatWCIEActiveXAcroIEFavClient.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Included)
Toolbar: HKLM-x32 – Bitdefender Pockets – {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} – C:Program FilesBitdefenderBitdefender SecurityAntispam32pmbxie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
Toolbar: HKUS-1-5-21-1998380166-1583960457-3440313674-1008 -> &RoboForm Toolbar – {724D43A0-0D85-11D4-9908-00400523E39A} – C:Program Information (x86)Siber SystemsAI RoboFormRoboForm-x64.dll [2020-06-05] (Siber Methods -> Siber Methods Inc.)
Toolbar: HKUS-1-5-21-1998380166-1583960457-3440313674-1008 -> Bitdefender Pockets – {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} – C:Program FilesBitdefenderBitdefender Securitypmbxie.dll [2020-06-24] (Bitdefender SRL -> Bitdefender)
Handler-x32: mso-minsb-roaming.16 – {83C25742-A9F7-49FB-9138-434302C88D07} – C:Program Information (x86)Microsoft OfficerootOffice16MSOSB.DLL [2020-07-08] (Microsoft Company -> Microsoft Company)
Handler-x32: mso-minsb.16 – {42089D2D-912D-4018-9087-2B87803E93FB} – C:Program Information (x86)Microsoft OfficerootOffice16MSOSB.DLL [2020-07-08] (Microsoft Company -> Microsoft Company)
Handler-x32: osf-roaming.16 – {42089D2D-912D-4018-9087-2B87803E93FB} – C:Program Information (x86)Microsoft OfficerootOffice16MSOSB.DLL [2020-07-08] (Microsoft Company -> Microsoft Company)
Handler-x32: osf.16 – {5504BE45-A83B-4808-900A-3A5C36E7F77A} – C:Program Information (x86)Microsoft OfficerootOffice16MSOSB.DLL [2020-07-08] (Microsoft Company -> Microsoft Company)
Edge:
======
DownloadDir: C:UsersMichaelDownloads
Edge Extension: (RoboForm) -> EdgeExtension_SiberSystemsIncRoboFormEdge_7kk3kr9e0p1np => C:Program FilesWindowsAppsSiberSystemsInc.RoboFormEdge_8.5.7.0_x86__7kk3kr9e0p1np [2019-06-21]
Edge DefaultProfile: Default
Edge Profile: C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefault [2020-07-19]
Edge Notifications: Default -> hxxps://pitchground.com; hxxps://voice.google.com
Edge HomePage: Default -> javascript:window.location.href=”hxxp://www.cnn.com”; window.open(‘hxxp://www.bbc.com’).blur(); window.open(‘hxxp://www.marketwatch.com’).blur(); window.open(‘hxxp://www.ft.com’).blur(); window.open(‘hxxp://www.bloomberg.com’).blur(); window.open(‘hxxp://www.cnbc.com/world/?area=world’).blur();window.focus();
Edge Extension: (Google Translate) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsaapbdbdomjkkjkaonfhkkikfgjllcleb [2020-05-27]
Edge Extension: (Honey) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsamnbcmdbanbkjhnfoeceemmmdiepnbpp [2020-05-27]
Edge Extension: (RescueTime for Chrome and Chrome OS) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsbdakmnplckeopfghnlpocafcepegjeap [2020-05-29]
Edge Extension: (Dragon Internet Extension) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsddaloccgjfibfpkalenodgehlhkgoahe [2020-07-16]
Edge Extension: (Alt Authorized Trademark Toolbar (App)) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsdhdpbjmnbdaobidbinfbcikihandibnj [2020-05-27]
Edge Extension: (Logitech Clean Scrolling) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsdkpejdfnpdkhifgbancbammdijojoffk [2020-05-27]
Edge Extension: (Share hyperlink by way of e mail) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsejdbkikfbnnhmachnnomjfgjbgkcnjkb [2020-07-19]
Edge Extension: (Take Webpage Screenshots Fully – FireShot) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsfcbmiimfkmkkkffjlopcpdlgclncnknm [2020-06-20]
Edge Extension: (Be a part of) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsflejfacjooompmliegamfbpjjdlhokhj [2020-06-20]
Edge Extension: (Workplace Enhancing for Docs, Sheets & Slides) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsgbkeegbaiigmenfmjfclcdgdpimamgkj [2020-05-27]
Edge Extension: (Workplace) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsgggmmkjegpiggikcnhidnjjhmicpibll [2020-06-10]
Edge Extension: (Adblock Plus – free advert blocker) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsgmgoamodcdcjnbaobigkjelfplakmdhh [2020-07-15]
Edge Extension: (TTS Reader for Google Books) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsgoailahjgoobladciinchmipiafijikf [2020-05-27]
Edge Extension: (Amazon Assistant) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionshkmnokmdbkkafgmpfhhiniclfnfpmogj [2020-05-27]
Edge Extension: (PassCamp: Password Supervisor) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsihhllachgimmobopggdgbknfodhkkjbn [2020-07-02]
Edge Extension: (Chrome Distant Desktop) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsinomeogfingihgjfjlpeplalcfajhgai [2020-05-27]
Edge Extension: (Save to Pocket) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsjicacccodjjgmghnmekophahpmddeemd [2020-05-27]
Edge Extension: (DS Amazon Fast View) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsjkompbllimaoekaogchhkmkdogpkhojg [2020-06-28]
Edge Extension: (Wikibuy from Capital One) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionskiiaghlmeikbpmeabhilfphikfcefljn [2020-05-27]
Edge Extension: (Forest: keep centered, be current) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionskjacjjdnoddnpbbcjilcajfhhbdhkpgk [2020-06-22]
Edge Extension: (InvisibleHand) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionslghjfnfolmcikomdjmoiemllfnlmmoko [2020-06-17]
Edge Extension: (RoboForm Password Supervisor) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsljfpcifpgbbchoddpjefaipoiigpdmag [2020-07-15]
Edge Extension: (PomoDoneApp Extension) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsloabahfgkfkkbmmapnklcfajmkjepapp [2020-06-17]
Edge Extension: (Video Pace Controller) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsnffaoalbilbmmfgbnbgppjihopabppdk [2020-06-28]
Edge Extension: (Superior Screenshot & Display screen Recorder) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsnlipoenfbbikpbjkfpfillcgkoblgpmj [2020-06-28]
Edge Extension: (Vimeo repeat & pace) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsnoonakfaafcdaagngpjehilgegefdima [2020-05-27]
Edge Extension: (AwardWallet) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsohkankfogimcbcioalemeonlapdababm [2020-05-27]
Edge Extension: (OneNote Internet Clipper) – C:UsersMichaelAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsoogbnpmeihfgnccdnmmlgicknopghhma [2020-05-27]
FireFox:
========
FF HKLM…FirefoxExtensions: [bdwtwe@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdwteff.xpi
FF Extension: (Bitdefender Pockets) – C:Program FilesBitdefenderBitdefender Securitybdwteff.xpi [2020-04-28] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM…FirefoxExtensions: [web2pdfextension.17@acrobat.adobe.com] – C:Program Information (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) – C:Program Information (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi [2017-11-01]
FF HKLM…FirefoxExtensions: [bdtbe@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdtbef.xpi
FF Extension: (Bitdefender Anti-tracker) – C:Program FilesBitdefenderBitdefender Securitybdtbef.xpi [2020-06-24] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF HKLM…ThunderbirdExtensions: [bdThunderbird@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdtbext
FF Extension: (Bitdefender Antispam Toolbar) – C:Program FilesBitdefenderBitdefender Securitybdtbext [2020-04-30] [Legacy] [not signed]
FF HKLM-x32…FirefoxExtensions: [bdwtwe@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdwteff.xpi
FF HKLM-x32…FirefoxExtensions: [web2pdfextension.17@acrobat.adobe.com] – C:Program Information (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi
FF HKLM-x32…FirefoxExtensions: [bdtbe@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdtbef.xpi
FF HKLM-x32…ThunderbirdExtensions: [bdThunderbird@bitdefender.com] – C:Program FilesBitdefenderBitdefender Securitybdtbext
FF Plugin: @Microsoft.com/NpCtrl,model=1.0 -> C:Program FilesMicrosoft Silverlight5.1.50918.0npctrl.dll [2018-10-23] (Microsoft Company -> Microsoft Company)
FF Plugin: adobe.com/AdobeAAMDetect -> C:Program Information (x86)Widespread FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2015-07-29] (Adobe Methods Included -> Adobe Methods)
FF Plugin-x32: @microsoft.com/Lync,model=15.0 -> C:Program Information (x86)Microsoft OfficerootVFSProgramFilesX86Mozilla Firefoxpluginsnpmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Company -> Microsoft Company)
FF Plugin-x32: @Microsoft.com/NpCtrl,model=1.0 -> C:Program Information (x86)Microsoft Silverlight5.1.50918.0npctrl.dll [2018-10-23] (Microsoft Company -> Microsoft Company)
FF Plugin-x32: @microsoft.com/SharePoint,model=14.0 -> C:Program Information (x86)Microsoft OfficerootOffice16NPSPWRAP.DLL [2020-01-11] (Microsoft Company -> Microsoft Company)
FF Plugin-x32: Adobe Acrobat -> C:Program Information (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2017-11-01] (Adobe Methods, Included -> Adobe Methods Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:Program Information (x86)Widespread FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2015-07-29] (Adobe Methods Included -> Adobe Methods)
FF Plugin HKUS-1-5-21-1998380166-1583960457-3440313674-1008: @zoom.us/ZoomVideoPlugin -> C:UsersMichaelAppDataRoamingZoombinnpzoomplugin.dll [2020-05-21] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
Chrome:
=======
CHR Profile: C:UsersMichaelAppDataLocalGoogleChromeUser DataDefault [2020-07-19]
CHR HomePage: Default -> javascript:window.location.href=”hxxp://www.cnn.com”; window.open(‘hxxp://www.bbc.com’).blur(); window.open(‘hxxp://www.marketwatch.com’).blur(); window.open(‘hxxp://www.ft.com’).blur(); window.open(‘hxxp://www.bloomberg.com’).blur(); window.open(‘hxxp://www.cnbc.com/world/?area=world’).blur();window.focus();
CHR StartupUrls: Default -> “hxxp://www.cnn.com/”,”hxxp://www.bbc.com/”,”hxxp://www.marketwatch.com/”,”hxxps://www.ft.com/”,”hxxps://www.bloomberg.com/”,”hxxp://www.cnbc.com/world/?area=world”
CHR Extension: (Google Translate) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsaapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-20]
CHR Extension: (Slides) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2018-05-22]
CHR Extension: (Imageye – Picture downloader) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsagionbommeaifngbhincahgmoflcikhm [2019-11-21]
CHR Extension: (Free Obtain Supervisor) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsahmpjcflkgiildlgicmcieglgoilbfdp [2020-07-10]
CHR Extension: (Flash Video Downloader) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2020-07-11]
CHR Extension: (Docs) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2018-05-22]
CHR Extension: (Google Drive) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2020-03-03]
CHR Extension: (RescueTime for Chrome and Chrome OS) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsbdakmnplckeopfghnlpocafcepegjeap [2020-05-29]
CHR Extension: (YouTube) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-22]
CHR Extension: (Honey) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsbmnlcjabgnpnenekpadlanbbkooimhnj [2020-07-10]
CHR Extension: (Adblock Plus – free advert blocker) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-07-15]
CHR Extension: (Electronic mail this web page (by Google)) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsdbeoemfhkdniadbojeencpkgmobndpai [2018-05-22]
CHR Extension: (Dragon Internet Extension) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsddaloccgjfibfpkalenodgehlhkgoahe [2020-07-16]
CHR Extension: (Alt Authorized Trademark Toolbar (App)) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdpbjmnbdaobidbinfbcikihandibnj [2020-03-08]
CHR Extension: (Logitech Clean Scrolling) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsdkpejdfnpdkhifgbancbammdijojoffk [2018-05-22]
CHR Extension: (Indescribable) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsebdgijnbkbbklimahaehhhdcjfckbeic [2020-07-19]
CHR Extension: (Adobe Acrobat) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsefaidnbmnnnibpcajpcglclefindmkaj [2020-07-16]
CHR Extension: (Chrome Distant Desktop) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsefmjfjelnicpmdcmfikempdhlmainjcb [2020-07-19]
CHR Extension: (Share hyperlink by way of e mail) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsejdbkikfbnnhmachnnomjfgjbgkcnjkb [2020-05-18]
CHR Extension: (Fb Pixel Helper) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsfdgfkebogiimcoedlicjlajpkdmockpc [2020-06-13]
CHR Extension: (Sheets) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2018-05-22]
CHR Extension: (Video Downloader PLUS) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsfhplmmllnpjjlncfjpbbpjadoeijkogc [2020-06-16]
CHR Extension: (Be a part of) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsflejfacjooompmliegamfbpjjdlhokhj [2020-06-21]
CHR Extension: (Web page Analytics (by Google)) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsfnbdnhhicmebfgdgglcdacdapkcihcoh [2020-06-14]
CHR Extension: (Bitdefender Pockets) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsgannpgaobkkhmpomoijebaigcapoeebl [2019-12-20]
CHR Extension: (Chrome Distant Desktop) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsgbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-20]
CHR Extension: (Workplace Enhancing for Docs, Sheets & Slides) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsgbkeegbaiigmenfmjfclcdgdpimamgkj [2020-03-03]
CHR Extension: (Google Docs Offline) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-27]
CHR Extension: (TTS Reader for Google Books) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsgoailahjgoobladciinchmipiafijikf [2020-05-25]
CHR Extension: (OneNote Internet Clipper) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsgojbdfnpnhogfdgjbigejoaolejmgdhk [2019-06-06]
CHR Extension: (Google Hold – Notes and Lists) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionshmjkmjkepdijhoojdojkdfohbdgmmhki [2020-07-16]
CHR Extension: (PassCamp: Password Supervisor) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsihhllachgimmobopggdgbknfodhkkjbn [2020-07-02]
CHR Extension: (Chrome Distant Desktop) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsinomeogfingihgjfjlpeplalcfajhgai [2019-06-22]
CHR Extension: (DS Amazon Fast View) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsjkompbllimaoekaogchhkmkdogpkhojg [2020-06-28]
CHR Extension: (Tag Assistant (by Google)) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionskejbdjndbnbjgmefkgdddjlbokphdefk [2020-06-03]
CHR Extension: (Bitdefender Anti-tracker) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionskhndhdhbebhaddchcgnalcjlaekbbeof [2020-06-05]
CHR Extension: (Forest: keep centered, be current) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionskjacjjdnoddnpbbcjilcajfhhbdhkpgk [2020-06-22]
CHR Extension: (InvisibleHand) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionslghjfnfolmcikomdjmoiemllfnlmmoko [2020-06-16]
CHR Extension: (Vimeo Video Downloader) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionslieleokakhofondondkehlhghhbadcch [2018-05-22]
CHR Extension: (Free Video Dоwnlоader) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionslmieilamoollaknppoffbmdgdcolcafa [2020-07-15]
CHR Extension: (PomoDoneApp Extension) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsloabahfgkfkkbmmapnklcfajmkjepapp [2020-06-16]
CHR Extension: (AwardWallet) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionslppkddfmnlpjbojooindbmcokchjgbib [2020-05-20]
CHR Extension: (Take Webpage Screenshots Fully – FireShot) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsmcbpblocgmgfnpjjppndjkmgjaogfceg [2020-07-10]
CHR Extension: (Google Play Books) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsmmimngoggfoobjdlefbcabngfnmieonb [2018-05-22]
CHR Extension: (MeddleMonkey) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsmoihledlmchhofenpacbhphnbnpakgmo [2020-07-10]
CHR Extension: (Wikibuy from Capital One) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsnenlahapcbofgnanklpelkaejcehkggg [2020-07-16]
CHR Extension: (Video Pace Controller) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsnffaoalbilbmmfgbnbgppjihopabppdk [2020-06-28]
CHR Extension: (Save to Pocket) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsniloccemoadcdkdjlinkgdfekeahmflj [2019-07-27]
CHR Extension: (Superior Screenshot & Display screen Recorder) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsnlipoenfbbikpbjkfpfillcgkoblgpmj [2020-06-28]
CHR Extension: (Chrome Internet Retailer Funds) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Vimeo repeat & pace) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionsnoonakfaafcdaagngpjehilgegefdima [2018-11-09]
CHR Extension: (Gmail) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-04-24]
CHR Extension: (Chrome Media Router) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-15]
CHR Extension: (RoboForm Password Supervisor) – C:UsersMichaelAppDataLocalGoogleChromeUser DataDefaultExtensionspnlccmojcmeohlpggmfnbbiapkmbliob [2020-07-10]
CHR HKLM…ChromeExtension: [pnlccmojcmeohlpggmfnbbiapkmbliob] – C:Program Information (x86)Siber SystemsAI RoboFormChromerf-chrome.crx [2018-05-15]
CHR HKLM-x32…ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] – C:Program Information (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2017-11-01]
CHR HKLM-x32…ChromeExtension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32…ChromeExtension: [khndhdhbebhaddchcgnalcjlaekbbeof]
CHR HKLM-x32…ChromeExtension: [pnlccmojcmeohlpggmfnbbiapkmbliob] – C:Program Information (x86)Siber SystemsAI RoboFormChromerf-chrome.crx [2018-05-15]
==================== Companies (Whitelisted) ===================
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
R2 !SASCORE; C:Program FilesSUPERAntiSpywareSASCORE64.EXE [173472 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 AGMService; C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGMService.exe [3673680 2020-06-04] (Adobe Inc. -> Adobe Methods, Included)
R2 AGSService; C:Program Information (x86)Widespread FilesAdobeAdobeGCClientAGSService.exe [3406416 2020-06-04] (Adobe Inc. -> Adobe Methods, Included)
R2 BDAuxSrv; C:Program FilesBitdefenderBitdefender Securitybdservicehost.exe [803576 2020-06-24] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:Program FilesBitdefenderBitdefender Securitybdservicehost.exe [803576 2020-06-24] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:Program FilesCommon FilesBitdefenderSetupInformationBitdefender RedLinebdredline.exe [2195320 2018-03-22] (Bitdefender SRL -> Bitdefender)
S2 BingDesktopUpdate; C:Program Information (x86)MicrosoftBingDesktopBingDesktopUpdater.exe [173784 2015-10-20] (Microsoft Company -> Microsoft Corp.)
S3 chromoting; C:Program Information (x86)GoogleChrome Distant Desktop85.0.4183.6remoting_host.exe [72176 2020-06-28] (Google LLC -> Google Inc.)
R2 ClickToRunSvc; C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeClickToRun.exe [10574728 2020-06-23] (Microsoft Company -> Microsoft Company)
R2 DevMgmtService; C:Program FilesBitdefenderBitdefender System ManagementDevMgmtService.exe [120392 2020-03-27] (Bitdefender SRL -> Bitdefender)
R2 Dolby DAX API Service; C:Program FilesDolbyDolby DAX3APIDAX3API.exe [212448 2019-01-22] (Dolby Laboratories, Inc. -> )
R2 EMP_UDSA; C:Program Information (x86)EPSON ProjectorEpson USB Show V1.7EMP_UDSA.exe [166504 2014-03-04] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
R2 ImControllerService; C:WINDOWSLenovoImControllerServiceLenovo.Trendy.ImController.exe [80712 2020-06-05] (Lenovo -> Lenovo Group Ltd.)
R3 Intel® On-line Join; C:Program FilesIntelIntel® On-line Connectioc.exe [575216 2018-02-23] (Intel® On-line Join -> Intel Company)
S2 Intel® On-line Join Helper; C:Program FilesIntelIntel® On-line ConnectiocHelperService.exe [306928 2018-02-23] (Intel® On-line Join -> Intel Company)
S3 Intel® On-line Join Software program Asset Supervisor; C:Program Information (x86)IntelIntel® On-line Join AccessIntel® Software program Asset ManagerbinIntelSoftwareAssetManagerService.exe [18152 2016-12-21] (Intel® Software program Asset Supervisor -> Intel Company)
R2 Intel® TechnologyAccessService; C:Program FilesIntelIntel® On-line Join AccessIntelTechnologyAccessService.exe [395000 2018-03-01] (Intel® On-line Join Entry -> Intel® Company)
R2 LenovoVantageService; C:Program Information (x86)LenovoVantageService3.3.61.0LenovoVantageService.exe [18360 2020-06-12] (Lenovo -> Lenovo Group Ltd.)
R2 MacriumService; C:Program FilesMacriumCommonMacriumService.exe [7407368 2020-06-15] (Paramount Software program UK Ltd -> Paramount Software program UK Ltd)
R2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6970968 2020-07-10] (Malwarebytes Inc -> Malwarebytes)
R2 nordvpn-service; C:Program FilesNordVPNnordvpn-service.exe [269584 2020-07-10] (TEFINCOM S.A. -> TEFINCOM S.A.)
R2 ProductAgentService; C:Program FilesBitdefender AgentProductAgentService.exe [1352120 2020-03-27] (Bitdefender SRL -> Bitdefender)
R2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [267552 2019-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 TeraCopyService; C:Program FilesTeraCopyTeraCopyService.exe [110416 2017-05-05] (Code Sector -> Code Sector)
R2 UPDATESRV; C:Program FilesBitdefenderBitdefender Securityupdatesrv.exe [170328 2020-06-24] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:Program FilesBitdefenderBitdefender Securitybdservicehost.exe [803576 2020-06-24] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [3004048 2019-12-07] (Microsoft Home windows Writer -> Microsoft Company)
S3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [103384 2019-12-07] (Microsoft Home windows Writer -> Microsoft Company)
R2 WTabletServiceISD; C:WINDOWSSystem32DriverStoreFileRepositorywtabletserviceisd.inf_amd64_4cc45e324dcccf58WTabletServiceISD.exe [4646848 2019-09-13] (Wacom Expertise Company -> Wacom Expertise, Corp.)
R2 YMC; C:WINDOWSsystem32ymc.exe [61832 2017-07-30] (LENOVO -> Lenovo)
===================== Drivers (Whitelisted) ===================
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
R1 atc; C:WINDOWSSystem32DRIVERSatc.sys [2106424 2020-06-24] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:WINDOWSSystem32DRIVERSbddci.sys [757240 2020-06-24] (Bitdefender SRL -> Bitdefender)
S0 bdelam; C:WINDOWSSystem32driversbdelam.sys [22960 2019-04-09] (Microsoft Home windows Early Launch Anti-malware Writer -> Bitdefender)
R0 bdprivmon; C:WINDOWSSystem32DRIVERSbdprivmon.sys [46056 2020-02-20] (Bitdefender SRL -> © Bitdefender SRL)
R1 BDVEDISK; C:WINDOWSsystem32DRIVERSbdvedisk.sys [96616 2020-05-20] (Bitdefender SRL -> BitDefender)
R1 cbfs6; C:WINDOWSsystem32driverscbfs6.sys [460992 2016-09-09] (EldoS Company -> /n software program, Inc.)
R1 cbfsconnect2017; C:WINDOWSsystem32driverscbfsconnect2017.sys [480272 2019-10-07] (Microsoft Home windows {Hardware} Compatibility Writer -> Callback Applied sciences, Inc.)
R3 eppvad_simple; C:WINDOWSsystem32driversEMP_UDAU.sys [23040 2011-06-07] (Microsoft Home windows {Hardware} Compatibility Writer -> SEIKO EPSON CORPORATION)
R1 ESProtectionDriver; C:WINDOWSsystem32driversmbae64.sys [153312 2020-07-10] (Malwarebytes Company -> Malwarebytes)
R0 Gemma; C:WINDOWSSystem32DRIVERSGemma.sys [453344 2020-06-24] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R0 gzflt; C:WINDOWSSystem32DRIVERSgzflt.sys [188384 2019-05-30] (Bitdefender SRL -> BitDefender LLC)
R2 Ignis; C:WINDOWSSystem32DRIVERSignis.sys [196392 2019-09-11] (Bitdefender SRL -> Bitdefender)
R2 inpoutx64; C:WINDOWSSystem32Driversinpoutx64.sys [15008 2018-05-15] (Pink Fox UK Restricted -> Highresolution Enterprises [www.highrez.co.uk])
R3 IntcAudioBus; C:WINDOWSSystem32driversIntcAudioBus.sys [254504 2018-07-27] (Intel® Sensible Sound Expertise -> Intel® Company)
R2 MBAMChameleon; C:WINDOWSSystem32DriversMbamChameleon.sys [216056 2020-07-18] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:WINDOWSSystem32DRIVERSMbamElam.sys [19912 2020-07-10] (Microsoft Home windows Early Launch Anti-malware Writer -> Malwarebytes)
R3 MBAMFarflt; C:WINDOWSSystem32DRIVERSfarflt.sys [197264 2020-07-19] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:WINDOWSsystem32DRIVERSmbam.sys [73368 2020-07-19] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:WINDOWSSystem32Driversmbamswissarmy.sys [248968 2020-07-11] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:WINDOWSsystem32DRIVERSmwac.sys [131232 2020-07-19] (Malwarebytes Inc -> Malwarebytes)
R1 ndisrd; C:WINDOWSsystem32DRIVERSndisrfl.sys [51256 2018-03-01] (Intel® On-line Join Entry -> Intel Company)
S3 nhi; C:WINDOWSSystem32driverstbt100x.sys [136784 2017-06-25] (Intel® Shopper Connectivity Division SW -> Intel Company)
R3 nlwt; C:WINDOWSsystem32DRIVERSnlwt.sys [39360 2020-04-20] (TEFINCOM S.A. -> WireGuard LLC)
R1 nordlwf; C:WINDOWSsystem32DRIVERSnordlwf.sys [38608 2020-07-10] (TEFINCOM S.A. -> TEFINCOM S.A.)
R0 pwdrvio; C:WINDOWSSystem32pwdrvio.sys [19152 2019-11-08] (MiniTool Resolution Ltd -> )
S3 pwdspio; C:WINDOWSsystem32pwdspio.sys [12504 2019-11-08] (MiniTool Resolution Ltd -> )
R1 SASDIFSV; C:Program FilesSUPERAntiSpywareSASDIFSV64.SYS [14928 2011-07-22] (Help.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:Program FilesSUPERAntiSpywareSASKUTIL64.SYS [12368 2011-07-12] (Help.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SPUVCbv; C:WINDOWSSystem32DriversSPUVCbv64.sys [899672 2017-10-18] (SUNPLUS INNOVATION TECHNOLOGY INC. -> Sunplus Innovation Expertise Inc.)
R2 SyncplicityDriveFSD_6; C:WINDOWSSystem32DRIVERSSyncplicityDriveFSD_6.sys [71264 2020-04-13] (Axway Software program -> Syncplicity)
R3 tapnordvpn; C:WINDOWSSystem32driverstapnordvpn.sys [44896 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Mission)
R0 trufos; C:WINDOWSSystem32DRIVERStrufos.sys [638368 2020-04-28] (Bitdefender SRL -> Bitdefender)
R3 vpnpbus; C:WINDOWSSystem32driversvpnpbus.sys [20704 2019-03-01] (Microsoft Home windows {Hardware} Compatibility Writer -> Callback Applied sciences, Inc.)
R3 WacHIDRouterISD; C:WINDOWSSystem32driversWacHIDRouterISDU.sys [97320 2019-09-13] (Wacom Expertise Company -> Wacom Expertise, Corp.)
S3 WdBoot; C:WINDOWSsystem32driversWdBoot.sys [46688 2019-12-07] (Microsoft Home windows Early Launch Anti-malware Writer -> Microsoft Company)
S3 WdFilter; C:WINDOWSsystem32driversWdFilter.sys [350136 2019-12-07] (Microsoft Home windows -> Microsoft Company)
S3 WdNisDrv; C:WINDOWSSystem32DriversWdNisDrv.sys [54200 2019-12-07] (Microsoft Home windows -> Microsoft Company)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
==================== One month (created) ===================
(If an entry is included within the fixlist, the file/folder might be moved.)
2020-07-19 22:38 – 2020-07-19 22:42 – 002293760 _____ (Farbar) C:UsersMichaelDesktopFRST64.exe
2020-07-19 22:07 – 2020-07-19 22:07 – 1802294524 _____ C:WINDOWSMEMORY.DMP
2020-07-19 22:07 – 2020-07-19 22:07 – 002487388 _____ C:WINDOWSMinidump 71920-34875-01.dmp
2020-07-19 22:00 – 2020-07-19 22:18 – 000000000 ____D C:UsersMichaelAppDataLocalLowIGDump
2020-07-19 20:38 – 2020-07-19 20:38 – 000073368 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbam.sys
2020-07-19 20:37 – 2020-07-19 20:37 – 000197264 _____ (Malwarebytes) C:WINDOWSsystem32Driversfarflt.sys
2020-07-19 14:54 – 2020-07-19 14:54 – 000001308 _____ C:UsersMichaelDesktopfixlist.txt
2020-07-19 13:39 – 2020-07-19 13:39 – 000131232 _____ (Malwarebytes) C:WINDOWSsystem32Driversmwac.sys
2020-07-19 13:37 – 2020-07-19 13:37 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMacrium
2020-07-19 13:37 – 2020-07-19 13:37 – 000000000 ____D C:Program FilesMacrium
2020-07-19 13:34 – 2020-07-19 13:37 – 000000000 ____D C:ProgramDataMacrium
2020-07-19 13:26 – 2020-07-19 13:26 – 000000000 ____D C:UsersMichaelAppDataRoamingMiniTool ShadowMaker
2020-07-19 13:12 – 2020-07-19 13:12 – 000001076 _____ C:UsersPublicDesktopWondershare Filmora9.lnk
2020-07-19 13:12 – 2020-07-19 13:12 – 000001076 _____ C:ProgramDataDesktopWondershare Filmora9.lnk
2020-07-19 13:12 – 2020-07-19 13:12 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsWondershare
2020-07-19 08:37 – 2020-07-19 08:39 – 000000166 _____ C:UsersMichaelDesktopbad Extension.txt
2020-07-18 11:23 – 2020-07-18 11:23 – 000216056 _____ (Malwarebytes) C:WINDOWSsystem32DriversMbamChameleon.sys
2020-07-17 18:58 – 2020-07-17 18:58 – 000003266 _____ C:WINDOWSsystem32TasksMiniToolPartitionWizard
2020-07-17 18:58 – 2020-07-17 18:58 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Partition Wizard 12
2020-07-17 18:58 – 2020-07-17 18:58 – 000000000 ____D C:Program FilesMiniTool Partition Wizard 12
2020-07-16 06:43 – 2020-07-16 06:43 – 024264704 _____ (Microsoft Company) C:WINDOWSsystem32Hydrogen.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 018766336 _____ (Microsoft Company) C:WINDOWSsystem32HologramWorld.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 007534160 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 005337504 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 004783328 _____ (Microsoft Company) C:WINDOWSsystem32mfcore.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 003547280 _____ (Microsoft Company) C:WINDOWSSysWOW64mfcore.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 002520048 _____ (Microsoft Company) C:WINDOWSsystem32msmpeg2vdec.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001352232 _____ (Microsoft Company) C:WINDOWSsystem32mfmpeg2srcsnk.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001337856 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Audio.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001301592 _____ (Microsoft Company) C:WINDOWSSysWOW64mfasfsrcsnk.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001246720 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Audio.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001087488 _____ (Microsoft Company) C:WINDOWSsystem32HoloSI.PCShell.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 001014872 _____ (Microsoft Company) C:WINDOWSSysWOW64mfmpeg2srcsnk.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000991744 _____ (Microsoft Company) C:WINDOWSsystem32WebcamUi.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000843264 _____ (Microsoft Company) C:WINDOWSsystem32HolographicExtensions.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000814592 _____ (Microsoft Company) C:WINDOWSSysWOW64WebcamUi.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000514560 _____ (Microsoft Company) C:WINDOWSsystem32WinBioDataModel.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000478208 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Picker.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000453952 _____ (Microsoft Company) C:WINDOWSSysWOW64MSAudDecMFT.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000441344 _____ (Microsoft Company) C:WINDOWSsystem32WalletService.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000423224 _____ (Microsoft Company) C:WINDOWSsystem32MSAudDecMFT.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000420864 _____ (Microsoft Company) C:WINDOWSsystem32MixedReality.Dealer.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000392192 _____ (Microsoft Company) C:WINDOWSsystem32ConsoleLogon.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000351232 _____ (Microsoft Company) C:WINDOWSsystem32APHostService.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000338944 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Picker.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000288256 _____ (Microsoft Company) C:WINDOWSSysWOW64ConsoleLogon.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000237056 _____ (Microsoft Company) C:WINDOWSsystem32HoloShellRuntime.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000180224 _____ (Microsoft Company) C:WINDOWSSysWOW64HoloShellRuntime.dll
2020-07-16 06:43 – 2020-07-16 06:43 – 000078848 _____ (Microsoft Company) C:WINDOWSsystem32WinBioDataModelOOBE.exe
2020-07-16 06:42 – 2020-07-16 06:43 – 001956016 _____ (Microsoft Company) C:WINDOWSsystem32mfasfsrcsnk.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 019868672 _____ (Microsoft Company) C:WINDOWSSysWOW64edgehtml.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 018068992 _____ (Microsoft Company) C:WINDOWSSysWOW64mshtml.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 007070208 _____ (Microsoft Company) C:WINDOWSSysWOW64mstscax.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 006404608 _____ (Microsoft Company) C:WINDOWSSysWOW64ieframe.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 005821952 _____ (Microsoft Company) C:WINDOWSSysWOW64Chakra.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 001312256 _____ (Microsoft Company) C:WINDOWSSysWOW64msjet40.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000804352 _____ (Microsoft Company) C:WINDOWSSysWOW64EdgeManager.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000423936 _____ (Microsoft Company) C:WINDOWSSysWOW64PlayToManager.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000353792 _____ (Microsoft Company) C:WINDOWSSysWOW64msrd3x40.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000343992 _____ (Microsoft Company) C:WINDOWSSysWOW64tsmf.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000327168 _____ (Microsoft Company) C:WINDOWSSysWOW64upnphost.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000208896 _____ (Microsoft Company) C:WINDOWSSysWOW64werui.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000189440 _____ (Microsoft Company) C:WINDOWSSysWOW64DWWIN.EXE
2020-07-16 06:42 – 2020-07-16 06:42 – 000171520 _____ (Microsoft Company) C:WINDOWSSysWOW64dialclient.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000142848 _____ (Microsoft Company) C:WINDOWSSysWOW64easwrt.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000127488 _____ (Microsoft Company) C:WINDOWSSysWOW64fdWSD.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000123392 _____ (Microsoft Company) C:WINDOWSSysWOW64PrintWSDAHost.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000062976 _____ (Microsoft Company) C:WINDOWSSysWOW64iemigplugin.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000058368 _____ (Microsoft Company) C:WINDOWSSysWOW64udhisapi.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000057856 _____ (Microsoft Company) C:WINDOWSSysWOW64MiracastReceiverExt.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000054784 _____ (Microsoft Company) C:WINDOWSSysWOW64tsgqec.dll
2020-07-16 06:42 – 2020-07-16 06:42 – 000035328 _____ (Microsoft Company) C:WINDOWSSysWOW64upnpcont.exe
2020-07-16 06:42 – 2020-07-16 06:42 – 000024064 _____ (Microsoft Company) C:WINDOWSSysWOW64odbcconf.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 026271744 _____ (Microsoft Company) C:WINDOWSsystem32edgehtml.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 023433216 _____ (Microsoft Company) C:WINDOWSsystem32mshtml.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 008892600 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Safety.PlayReady.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 008188928 _____ (Microsoft Company) C:WINDOWSsystem32mstscax.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 007593472 _____ (Microsoft Company) C:WINDOWSsystem32ieframe.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 005964496 _____ (Microsoft Company) C:WINDOWSSysWOW64shell32.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001557824 _____ (Microsoft Company) C:WINDOWSsystem32hvix64.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 001449280 _____ (Microsoft Company) C:WINDOWSSysWOW64dcomp.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001448448 _____ (Microsoft Company) C:WINDOWSSysWOW64GdiPlus.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001257472 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Speech.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001255744 _____ (Microsoft Company) C:WINDOWSsystem32hvax64.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 001218560 _____ (Microsoft Company) C:WINDOWSsystem32sdengin2.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001090560 _____ (Microsoft Company) C:WINDOWSsystem32StorSvc.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001022976 _____ (Microsoft Company) C:WINDOWSsystem32CBDHSvc.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 001008184 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Sensors.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000945664 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.UI.Immersive.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000942080 _____ (Microsoft Company) C:WINDOWSsystem32EdgeManager.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000886272 _____ (Microsoft Company) C:WINDOWSSysWOW64gdi32full.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000872448 _____ (Microsoft Company) C:WINDOWSsystem32werconcpl.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000866304 _____ (Microsoft Company) C:WINDOWSSysWOW64rasapi32.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000801560 _____ (Microsoft Company) C:WINDOWSsystem32tcblaunch.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000760832 _____ (Microsoft Company) C:WINDOWSSysWOW64SettingSyncCore.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000705024 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Inside.Administration.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000696240 _____ (Microsoft Company) C:WINDOWSSysWOW64wer.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000681472 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.UI.Search.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000673976 _____ (Microsoft Company) C:WINDOWSSysWOW64fontdrvhost.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000617472 _____ (Microsoft Company) C:WINDOWSSysWOW64efswrt.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000612352 _____ (Microsoft Company) C:WINDOWSsystem32PlayToManager.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000606880 _____ (Microsoft Company) C:WINDOWSSysWOW64oleaut32.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000539136 _____ (Microsoft Company) C:WINDOWSsystem32IESettingSync.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000535552 _____ (Microsoft Company) C:WINDOWSSysWOW64vbscript.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000482616 _____ (Microsoft Company) C:WINDOWSSysWOW64WerFault.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000473088 _____ (Microsoft Company) C:WINDOWSSysWOW64CredProvDataModel.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000471040 _____ (Microsoft Company) C:WINDOWSsystem32upnphost.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000469504 _____ (Microsoft Company) C:WINDOWSSysWOW64schannel.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000466928 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.MediaControl.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000453632 _____ (Microsoft Company) C:WINDOWSsystem32fhsettingsprovider.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000443704 _____ (Microsoft Company) C:WINDOWSSysWOW64msv1_0.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000420936 _____ (Microsoft Company) C:WINDOWSSysWOW64aepic.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000419840 _____ (Microsoft Company) C:WINDOWSsystem32RDXTaskFactory.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000413208 _____ (Microsoft Company) C:WINDOWSsystem32tsmf.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000409552 _____ (Microsoft Company) C:WINDOWSSysWOW64Faultrep.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000402944 _____ (Microsoft Company) C:WINDOWSSysWOW64edgeIso.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000379392 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000368640 _____ (Microsoft Company) C:WINDOWSSysWOW64Geolocation.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000355840 _____ (Microsoft Company) C:WINDOWSSysWOW64LockAppBroker.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000331264 _____ (Microsoft Company) C:WINDOWSSysWOW64AboveLockAppHost.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000328704 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000300032 _____ (Microsoft Company) C:WINDOWSsystem32CXHProvisioningServer.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000271872 _____ (Microsoft Company) C:WINDOWSSysWOW64credprovs.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000255488 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.UI.CredDialogController.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000247296 _____ (Microsoft Company) C:WINDOWSsystem32werui.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000245760 _____ (Microsoft Company) C:WINDOWSsystem32dialclient.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000234496 _____ (Microsoft Company) C:WINDOWSsystem32DWWIN.EXE
2020-07-16 06:41 – 2020-07-16 06:41 – 000221184 _____ (Microsoft Company) C:WINDOWSSysWOW64bthprops.cpl
2020-07-16 06:41 – 2020-07-16 06:41 – 000217912 _____ (Microsoft Company) C:WINDOWSsystem32tcbloader.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000216064 _____ (Microsoft Company) C:WINDOWSSysWOW64pku2u.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000203264 _____ (Microsoft Company) C:WINDOWSsystem32DiagSvc.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000201016 _____ (Microsoft Company) C:WINDOWSSysWOW64wermgr.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000195128 _____ (Microsoft Company) C:WINDOWSSysWOW64weretw.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000190048 _____ (Microsoft Company) C:WINDOWSSysWOW64logoncli.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000186880 _____ (Microsoft Company) C:WINDOWSSysWOW64wdigest.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000184832 _____ (Microsoft Company) C:WINDOWSsystem32dialserver.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000183296 _____ (Microsoft Company) C:WINDOWSsystem32easwrt.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000178176 _____ (Microsoft Company) C:WINDOWSSysWOW64intl.cpl
2020-07-16 06:41 – 2020-07-16 06:41 – 000169472 _____ (Microsoft Company) C:WINDOWSsystem32SettingsHandlers_Clipboard.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000163840 _____ (Microsoft Company) C:WINDOWSsystem32PrintWSDAHost.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000161792 _____ (Microsoft Company) C:WINDOWSsystem32StorageUsage.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000157184 _____ (Microsoft Company) C:WINDOWSsystem32fdWSD.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000151864 _____ (Microsoft Company) C:WINDOWSSysWOW64WerFaultSecure.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000138752 _____ (Microsoft Company) C:WINDOWSSysWOW64PrintWorkflowService.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000126464 _____ (Microsoft Company) C:WINDOWSsystem32wercplsupport.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000117048 _____ (Microsoft Company) C:WINDOWSsystem32hvloader.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000099328 _____ (Microsoft Company) C:WINDOWSSysWOW64fontsub.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000096256 _____ (Microsoft Company) C:WINDOWSSysWOW64EaseOfAccessDialog.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000095032 _____ (Microsoft Company) C:WINDOWSsystem32Drivershvservice.sys
2020-07-16 06:41 – 2020-07-16 06:41 – 000083456 _____ (Microsoft Company) C:WINDOWSSysWOW64usoapi.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000081920 _____ (Microsoft Company) C:WINDOWSSysWOW64sethc.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000073216 _____ (Microsoft Company) C:WINDOWSsystem32MiracastReceiverExt.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000070656 _____ (Microsoft Company) C:WINDOWSsystem32tsgqec.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000070144 _____ (Microsoft Company) C:WINDOWSsystem32udhisapi.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000066560 _____ (Microsoft Company) C:WINDOWSSysWOW64keyiso.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000065024 _____ (Microsoft Company) C:WINDOWSsystem32iemigplugin.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000063488 _____ (Microsoft Company) C:WINDOWSSysWOW64Print.Workflow.Supply.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000046080 _____ (Microsoft Company) C:WINDOWSSysWOW64mf3216.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000042496 _____ (Microsoft Company) C:WINDOWSsystem32upnpcont.exe
2020-07-16 06:41 – 2020-07-16 06:41 – 000038912 _____ (Microsoft Company) C:WINDOWSSysWOW64werdiagcontroller.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000030208 _____ (Microsoft Company) C:WINDOWSsystem32odbcconf.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000021304 _____ (Microsoft Company) C:WINDOWSsystem32kdhvcom.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000020632 _____ (Microsoft Company) C:WINDOWSSysWOW64WerEnc.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000016896 _____ (Microsoft Company) C:WINDOWSSysWOW64PrintWorkflowProxy.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000013824 _____ (Microsoft Company) C:WINDOWSSysWOW64KBDJPN.DLL
2020-07-16 06:41 – 2020-07-16 06:41 – 000012288 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000011776 _____ (Microsoft Company) C:WINDOWSSysWOW64dciman32.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000009269 _____ C:WINDOWSsystem32DrtmAuthTxt.wim
2020-07-16 06:41 – 2020-07-16 06:41 – 000007680 _____ (Microsoft Company) C:WINDOWSSysWOW64kbd106n.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000007680 _____ (Microsoft Company) C:WINDOWSSysWOW64kbd106.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000007680 _____ (Microsoft Company) C:WINDOWSSysWOW64kbd101.DLL
2020-07-16 06:41 – 2020-07-16 06:41 – 000007168 _____ (Microsoft Company) C:WINDOWSSysWOW64msimg32.dll
2020-07-16 06:41 – 2020-07-16 06:41 – 000002560 _____ (Microsoft Company) C:WINDOWSSysWOW64lpk.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 014754816 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.UI.Xaml.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 007593544 _____ (Microsoft Company) C:WINDOWSsystem32shell32.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 006920192 _____ (Microsoft Company) C:WINDOWSSysWOW64BingMaps.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 006356008 _____ (Microsoft Company) C:WINDOWSSysWOW64windows.storage.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 006029312 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Information.Pdf.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 004734976 _____ (Microsoft Company) C:WINDOWSSysWOW64twinui.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 003925856 _____ (Microsoft Company) C:WINDOWSSysWOW64explorer.exe
2020-07-16 06:40 – 2020-07-16 06:40 – 003812304 _____ (Microsoft Company) C:WINDOWSSysWOW64OneCoreUAPCommonProxyStub.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 002744320 _____ (Microsoft Company) C:WINDOWSSysWOW64win32kfull.sys
2020-07-16 06:40 – 2020-07-16 06:40 – 002104320 _____ (Microsoft Company) C:WINDOWSSysWOW64DWrite.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001952392 _____ (Microsoft Company) C:WINDOWSSysWOW64msxml6.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001816576 _____ (Microsoft Company) C:WINDOWSSysWOW64InstallService.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001668904 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.ApplicationModel.Retailer.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001654824 _____ (Microsoft Company) C:WINDOWSSysWOW64user32.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001640888 _____ (Microsoft Company) C:WINDOWSSysWOW64twinapi.appcore.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001606656 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Bluetooth.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001588224 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Notion.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001550336 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Graphics.Printing.3D.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001509736 _____ (Microsoft Company) C:WINDOWSSysWOW64WindowsCodecs.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001474048 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.PointOfService.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001374720 _____ (Microsoft Company) C:WINDOWSSysWOW64cdprt.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001315328 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Globalization.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001314120 _____ (Microsoft Company) C:WINDOWSSysWOW64ContentDeliveryManager.Utilities.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001303040 _____ (Microsoft Company) C:WINDOWSSysWOW64Wpc.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001247232 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.FaceAnalysis.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001239552 _____ (Microsoft Company) C:WINDOWSSysWOW64TokenBroker.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001125376 _____ (Microsoft Company) C:WINDOWSsystem32SettingSyncCore.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001041408 _____ (Microsoft Company) C:WINDOWSSysWOW64wpnapps.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 001001472 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Safety.Authentication.Internet.Core.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000970752 _____ (Microsoft Company) C:WINDOWSsystem32rasapi32.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000966872 _____ (Microsoft Company) C:WINDOWSSysWOW64InputHost.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000957952 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000933176 _____ (Microsoft Company) C:WINDOWSSysWOW64CloudExperienceHostCommon.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000912896 _____ (Microsoft Company) C:WINDOWSSysWOW64MiracastReceiver.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000909312 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Search.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000903168 _____ (Microsoft Company) C:WINDOWSSysWOW64MbaeApiPublic.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000885760 _____ (Microsoft Company) C:WINDOWSsystem32efswrt.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000877056 _____ (Microsoft Company) C:WINDOWSSysWOW64ShareHost.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000856328 _____ (Microsoft Company) C:WINDOWSSysWOW64msctf.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000798720 _____ (Microsoft Company) C:WINDOWSSysWOW64kerberos.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000779360 _____ (Microsoft Company) C:WINDOWSSysWOW64MrmCoreR.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000775768 _____ (Microsoft Company) C:WINDOWSSysWOW64AppContracts.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000774456 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Companies.TargetedContent.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000758784 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Safety.Authentication.OnlineId.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000721024 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.ApplicationModel.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000720896 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.AccountsControl.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000701952 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.UI.Core.TextInput.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000689152 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Ocr.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000651776 _____ (Microsoft Company) C:WINDOWSSysWOW64ActivationManager.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000640000 _____ (Microsoft Company) C:WINDOWSSysWOW64agentactivationruntimewindows.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000634680 _____ (Microsoft Company) C:WINDOWSSysWOW64LicensingWinRT.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000633856 _____ (Microsoft Company) C:WINDOWSSysWOW64agentactivationruntime.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000623392 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Notion.Stub.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000614912 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000607744 _____ (Microsoft Company) C:WINDOWSsystem32vbscript.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000595512 _____ (Microsoft Company) C:WINDOWSSysWOW64windows.applicationmodel.datatransfer.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000590848 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Graphics.Printing.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000568320 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gaming.Enter.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000563712 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Import.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000551424 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Cortana.Desktop.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000546816 _____ (Microsoft Company) C:WINDOWSSysWOW64sppcext.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000546456 _____ (Microsoft Company) C:WINDOWSSysWOW64SHCore.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000540672 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.SmartCards.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000523720 _____ (Microsoft Company) C:WINDOWSSysWOW64StructuredQuery.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000520192 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.System.Launcher.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000512512 _____ (Microsoft Company) C:WINDOWSSysWOW64twinapi.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000501248 _____ (Microsoft Company) C:WINDOWSSysWOW64twinui.appcore.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000476160 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000475704 _____ (Microsoft Company) C:WINDOWSSysWOW64sechost.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000455168 _____ C:WINDOWSSysWOW64WindowManagementAPI.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000445440 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.AllJoyn.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000433152 _____ (Microsoft Company) C:WINDOWSSysWOW64TileDataRepository.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000429056 _____ (Microsoft Company) C:WINDOWSSysWOW64InputSwitch.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000424448 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Graphics.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000412672 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.SmartCards.Cellphone.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000409088 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Funds.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000407504 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Enumeration.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000395600 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Media.Gadgets.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000388096 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.LowLevel.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000373760 _____ (Microsoft Company) C:WINDOWSSysWOW64MicrosoftAccountWAMExtension.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000373760 _____ (Microsoft Company) C:WINDOWSSysWOW64CoreShellAPI.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000360960 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.WiFiDirect.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000355328 _____ (Microsoft Company) C:WINDOWSSysWOW64RTMediaFrame.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000335360 _____ (Microsoft Company) C:WINDOWSSysWOW64AarSvc.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000329728 _____ (Microsoft Company) C:WINDOWSSysWOW64win32k.sys
2020-07-16 06:40 – 2020-07-16 06:40 – 000317952 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Midi.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000313152 _____ (Microsoft Company) C:WINDOWSSysWOW64SystemSettings.DataModel.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000311920 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Storage.ApplicationData.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000304128 _____ (Microsoft Company) C:WINDOWSSysWOW64wpnclient.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000296448 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.System.Diagnostics.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000290816 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gaming.Preview.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000281088 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Usb.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000280064 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000277504 _____ (Microsoft Company) C:WINDOWSSysWOW64AppxAllUserStore.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000276992 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.Lights.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000276480 _____ (Microsoft Company) C:WINDOWSSysWOW64PickerPlatform.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000273920 _____ (Microsoft Company) C:WINDOWSsystem32pku2u.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000230912 _____ (Microsoft Company) C:WINDOWSSysWOW64SyncSettings.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000215040 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Inside.Gadgets.Sensors.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000191488 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Safety.Authentication.Identification.Supplier.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000189952 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.HumanInterfaceDevice.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000184832 _____ (Microsoft Company) C:WINDOWSSysWOW64authui.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000183296 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Inside.Graphics.Show.DisplayColorManagement.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000179000 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Administration.Office.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000164864 _____ (Microsoft Company) C:WINDOWSSysWOW64CapabilityAccessManagerClient.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000163208 _____ (Microsoft Company) C:WINDOWSSysWOW64coreglobconfig.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000162816 _____ (Microsoft Company) C:WINDOWSSysWOW64UserDeviceRegistration.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000160768 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.ApplicationModel.Core.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000155136 _____ (Microsoft Company) C:WINDOWSSysWOW64ErrorDetails.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000151552 _____ (Microsoft Company) C:WINDOWSSysWOW64useractivitybroker.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000139776 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Inside.Graphics.Show.DisplayEnhancementManagement.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000135168 _____ (Microsoft Company) C:WINDOWSSysWOW64AppExtension.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000133632 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Vitality.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000114688 _____ (Microsoft Company) C:WINDOWSSysWOW64AppointmentActivation.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000108032 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Gadgets.SerialCommunication.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000094208 _____ (Microsoft Company) C:WINDOWSSysWOW64CameraCaptureUI.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000092952 _____ (Microsoft Company) C:WINDOWSSysWOW64win32u.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000086784 _____ (Microsoft Company) C:WINDOWSSysWOW64Windows.Safety.Credentials.UI.CredentialPicker.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000074752 _____ (Microsoft Company) C:WINDOWSSysWOW64DiagnosticInvoker.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000067072 _____ (Microsoft Company) C:WINDOWSSysWOW64windows.inside.shellcommon.AccountsControlExperience.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000066048 _____ (Microsoft Company) C:WINDOWSSysWOW64SystemUWPLauncher.exe
2020-07-16 06:40 – 2020-07-16 06:40 – 000061752 _____ (Microsoft Company) C:WINDOWSSysWOW64GameInput.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000052664 _____ (Microsoft Company) C:WINDOWSSysWOW64ResourcePolicyClient.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000019968 _____ (Microsoft Company) C:WINDOWSSysWOW64slcext.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000016896 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:40 – 2020-07-16 06:40 – 000002560 _____ (Microsoft Company) C:WINDOWSSysWOW64msxml6r.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 010922808 _____ (Microsoft Company) C:WINDOWSsystem32ntoskrnl.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 010336896 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Safety.PlayReady.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 007964416 _____ (Microsoft Company) C:WINDOWSsystem32windows.storage.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 006060544 _____ (Microsoft Company) C:WINDOWSsystem32twinui.pcshell.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 004629328 _____ (Microsoft Company) C:WINDOWSsystem32sppsvc.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 003906048 _____ (Microsoft Company) C:WINDOWSsystem32SettingsHandlers_nt.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 003860480 _____ (Microsoft Company) C:WINDOWSsystem32AppXDeploymentServer.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 003810816 _____ (Microsoft Company) C:WINDOWSsystem32win32kfull.sys
2020-07-16 06:39 – 2020-07-16 06:39 – 003778560 _____ (Microsoft Company) C:WINDOWSsystem32diagtrack.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 003752448 _____ (Microsoft Company) C:WINDOWSsystem32Microsoft.Bluetooth.Service.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002918216 _____ (Microsoft Company) C:WINDOWSsystem32KernelBase.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002585912 _____ (Microsoft Company) C:WINDOWSsystem32UpdateAgent.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002568192 _____ (Microsoft Company) C:WINDOWSsystem32WebRuntimeManager.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002399744 _____ (Microsoft Company) C:WINDOWSsystem32InstallService.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002338304 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Notion.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002286128 _____ (Microsoft Company) C:WINDOWSsystem32Windows.ApplicationModel.Retailer.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002177528 _____ (Microsoft Company) C:WINDOWSSysWOW64KernelBase.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002077696 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.PointOfService.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 002026496 _____ (Microsoft Company) C:WINDOWSsystem32LocationFramework.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001978656 _____ (Microsoft Company) C:WINDOWSsystem32dcomp.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001876480 _____ (Microsoft Company) C:WINDOWSsystem32wevtsvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001858560 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Speech.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001710080 _____ (Microsoft Company) C:WINDOWSsystem32GdiPlus.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001705472 _____ (Microsoft Company) C:WINDOWSsystem32WindowManagement.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001701368 _____ (Microsoft Company) C:WINDOWSsystem32user32.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001641472 _____ (Microsoft Company) C:WINDOWSsystem32lsasrv.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001507328 _____ (Microsoft Company) C:WINDOWSsystem32MoUsoCoreWorker.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 001495552 _____ (Microsoft Company) C:WINDOWSsystem32wpncore.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001477632 _____ (Microsoft Company) C:WINDOWSsystem32usermgr.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001414144 _____ (Microsoft Company) C:WINDOWSsystem32usocoreworker.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 001323008 _____ (Microsoft Company) C:WINDOWSsystem32wpnapps.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001286560 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Sensors.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001253888 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Immersive.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001207296 _____ (Microsoft Company) C:WINDOWSsystem32NotificationController.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001195520 _____ (Microsoft Company) C:WINDOWSsystem32MbaeApiPublic.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001182008 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Companies.TargetedContent.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001126472 _____ (Microsoft Company) C:WINDOWSsystem32msctf.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001071224 _____ (Microsoft Company) C:WINDOWSsystem32gdi32full.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001047552 _____ (Microsoft Company) C:WINDOWSsystem32kerberos.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001006592 _____ (Microsoft Company) C:WINDOWSsystem32uDWM.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 001005056 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Administration.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000994248 _____ (Microsoft Company) C:WINDOWSsystem32MrmCoreR.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000889384 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Shell.Dealer.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000887296 _____ (Microsoft Company) C:WINDOWSsystem32MdmDiagnostics.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000881112 _____ (Microsoft Company) C:WINDOWSsystem32wer.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000876544 _____ (Microsoft Company) C:WINDOWSsystem32LogonController.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000868352 _____ (Microsoft Company) C:WINDOWSsystem32netprofmsvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000831016 _____ (Microsoft Company) C:WINDOWSsystem32oleaut32.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000824328 _____ (Microsoft Company) C:WINDOWSsystem32fontdrvhost.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000753152 _____ (Microsoft Company) C:WINDOWSsystem32windows.immersiveshell.serviceprovider.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000748360 _____ (Microsoft Company) C:WINDOWSsystem32LicensingWinRT.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000704496 _____ (Microsoft Company) C:WINDOWSsystem32SHCore.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000687616 _____ (Microsoft Company) C:WINDOWSsystem32LockController.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000676088 _____ (Microsoft Company) C:WINDOWSsystem32StructuredQuery.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000644096 _____ C:WINDOWSsystem32WindowManagementAPI.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000623960 _____ (Microsoft Company) C:WINDOWSsystem32sechost.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000619520 _____ (Microsoft Company) C:WINDOWSsystem32CredProvDataModel.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000608256 _____ (Microsoft Company) C:WINDOWSsystem32sppcext.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000605184 _____ (Microsoft Company) C:WINDOWSsystem32TileDataRepository.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000597504 _____ (Microsoft Company) C:WINDOWSsystem32DevicesFlowBroker.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000596992 _____ (Microsoft Company) C:WINDOWSsystem32win32k.sys
2020-07-16 06:39 – 2020-07-16 06:39 – 000586240 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Funds.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000568632 _____ (Microsoft Company) C:WINDOWSsystem32WerFault.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000566784 _____ (Microsoft Company) C:WINDOWSsystem32schannel.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000565760 _____ (Microsoft Company) C:WINDOWSsystem32usosvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000560400 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.MediaControl.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000555744 _____ (Microsoft Company) C:WINDOWSsystem32aepic.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000539960 _____ (Microsoft Company) C:WINDOWSsystem32msv1_0.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000538624 _____ (Microsoft Company) C:WINDOWSsystem32InputSwitch.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000534016 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Information.Actions.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000533504 _____ (Microsoft Company) C:WINDOWSsystem32Narrator.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000531456 _____ (Microsoft Company) C:WINDOWSsystem32wow64win.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000524800 _____ (Microsoft Company) C:WINDOWSsystem32ncsi.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000522040 _____ (Microsoft Company) C:WINDOWSsystem32invagent.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000496128 _____ (Microsoft Company) C:WINDOWSsystem32Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000491520 _____ (Microsoft Company) C:WINDOWSsystem32Driverscldflt.sys
2020-07-16 06:39 – 2020-07-16 06:39 – 000487936 _____ (Microsoft Company) C:WINDOWSsystem32Geolocation.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000487552 _____ (Microsoft Company) C:WINDOWSsystem32Faultrep.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000480768 _____ (Microsoft Company) C:WINDOWSsystem32profsvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000467968 _____ (Microsoft Company) C:WINDOWSsystem32CloudDomainJoinDataModelServer.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000457728 _____ (Microsoft Company) C:WINDOWSsystem32LockAppBroker.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000456192 _____ (Microsoft Company) C:WINDOWSsystem32LockHostingFramework.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000447488 _____ (Microsoft Company) C:WINDOWSsystem32edgeIso.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000418816 _____ (Microsoft Company) C:WINDOWSsystem32AboveLockAppHost.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000405304 _____ (Microsoft Company) C:WINDOWSsystem32CloudExperienceHost.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000398848 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000390656 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Lights.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000388608 _____ (Microsoft Company) C:WINDOWSsystem32nlasvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000386048 _____ (Microsoft Company) C:WINDOWSsystem32PickerPlatform.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000380416 _____ (Microsoft Company) C:WINDOWSsystem32credprovs.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000368128 _____ (Microsoft Company) C:WINDOWSsystem32QuickActionsDataModel.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000367104 _____ (Microsoft Company) C:WINDOWSsystem32wpnclient.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000365568 _____ (Microsoft Company) C:WINDOWSsystem32AppxAllUserStore.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000362496 _____ (Microsoft Company) C:WINDOWSsystem32WaaSMedicSvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000327168 _____ (Microsoft Company) C:WINDOWSsystem32SettingsHandlers_Cortana.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000323584 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.CredDialogController.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000319808 _____ (Microsoft Company) C:WINDOWSsystem32CloudExperienceHostBroker.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000298496 _____ (Microsoft Company) C:WINDOWSsystem32TDLMigration.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000269312 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Safety.Authentication.Identification.Supplier.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000266752 _____ (Microsoft Company) C:WINDOWSsystem32bthprops.cpl
2020-07-16 06:39 – 2020-07-16 06:39 – 000265216 _____ (Microsoft Company) C:WINDOWSsystem32PasswordEnrollmentManager.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000262656 _____ (Microsoft Company) C:WINDOWSsystem32WaaSMedicCapsule.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000260288 _____ (Microsoft Company) C:WINDOWSsystem32logoncli.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000253016 _____ (Microsoft Company) C:WINDOWSsystem32weretw.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000248832 _____ (Microsoft Company) C:WINDOWSsystem32policymanagerprecheck.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000248320 _____ (Microsoft Company) C:WINDOWSsystem32SettingsHandlers_Gpu.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000247296 _____ (Microsoft Company) C:WINDOWSsystem32psmsrv.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000245248 _____ (Microsoft Company) C:WINDOWSsystem32wersvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000240640 _____ (Microsoft Company) C:WINDOWSsystem32wuuhosdeployment.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000238592 _____ (Microsoft Company) C:WINDOWSsystem32intl.cpl
2020-07-16 06:39 – 2020-07-16 06:39 – 000228864 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.CapturePicker.Desktop.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000228352 _____ (Microsoft Company) C:WINDOWSsystem32netprofm.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000227640 _____ (Microsoft Company) C:WINDOWSsystem32wermgr.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000224768 _____ (Microsoft Company) C:WINDOWSsystem32PeopleBand.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000223744 _____ (Microsoft Company) C:WINDOWSsystem32wdigest.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000220672 _____ (Microsoft Company) C:WINDOWSsystem32MtcModel.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000215896 _____ (Microsoft Company) C:WINDOWSsystem32coreglobconfig.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000181760 _____ (Microsoft Company) C:WINDOWSsystem32PrintWorkflowService.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000180024 _____ (Microsoft Company) C:WINDOWSsystem32Driversksecpkg.sys
2020-07-16 06:39 – 2020-07-16 06:39 – 000173056 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.CapturePicker.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000171024 _____ (Microsoft Company) C:WINDOWSsystem32WerFaultSecure.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000151552 _____ (Microsoft Company) C:WINDOWSsystem32Family.Shopper.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000146944 _____ (Microsoft Company) C:WINDOWSsystem32AppointmentActivation.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000137216 _____ (Microsoft Company) C:WINDOWSsystem32usoapi.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000136704 _____ (Microsoft Company) C:WINDOWSsystem32CredDialogBroker.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000134968 _____ (Microsoft Company) C:WINDOWSsystem32offlinelsa.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000132728 _____ (Microsoft Company) C:WINDOWSsystem32win32u.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000131072 _____ (Microsoft Company) C:WINDOWSsystem32cryptcatsvc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000130048 _____ (Microsoft Company) C:WINDOWSsystem32CaptureService.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000126976 _____ (Microsoft Company) C:WINDOWSsystem32fontsub.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000125952 _____ (Microsoft Company) C:WINDOWSsystem32EaseOfAccessDialog.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000116736 _____ (Microsoft Company) C:WINDOWSsystem32AxInstSv.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000114688 _____ (Microsoft Company) C:WINDOWSsystem32wsqmcons.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000107008 _____ (Microsoft Company) C:WINDOWSsystem32sethc.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000106496 _____ (Microsoft Company) C:WINDOWSsystem32DevicePairingExperienceMEM.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000105472 _____ (Microsoft Company) C:WINDOWSsystem32utcutil.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000103424 _____ (Microsoft Company) C:WINDOWSsystem32Family.Authentication.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000097280 _____ (Microsoft Company) C:WINDOWSsystem32nlaapi.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000094208 _____ (Microsoft Company) C:WINDOWSsystem32keyiso.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000092160 _____ (Microsoft Company) C:WINDOWSsystem32WaaSMedicAgent.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000083968 _____ (Microsoft Company) C:WINDOWSsystem32Print.Workflow.Supply.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000083456 _____ (Microsoft Company) C:WINDOWSsystem32LocationFrameworkInternalPS.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000063488 _____ (Microsoft Company) C:WINDOWSsystem32mf3216.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000060928 _____ (Microsoft Company) C:WINDOWSsystem32AxInstUI.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000054784 _____ (Microsoft Company) C:WINDOWSsystem32diagnosticdataquery.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000047104 _____ (Microsoft Company) C:WINDOWSsystem32werdiagcontroller.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000047104 _____ (Microsoft Company) C:WINDOWSsystem32npmproxy.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000040248 _____ (Microsoft Company) C:WINDOWSsystem32LocationFrameworkPS.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000038400 _____ (Microsoft Company) C:WINDOWSsystem32UIMgrBroker.exe
2020-07-16 06:39 – 2020-07-16 06:39 – 000030720 _____ (Microsoft Company) C:WINDOWSsystem32nlmproxy.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000028672 _____ (Microsoft Company) C:WINDOWSsystem32WaaSMedicPS.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000026112 _____ (Microsoft Company) C:WINDOWSsystem32PrintWorkflowProxy.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000024288 _____ (Microsoft Company) C:WINDOWSsystem32WerEnc.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000022528 _____ (Microsoft Company) C:WINDOWSsystem32slcext.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000020480 _____ (Microsoft Company) C:WINDOWSsystem32nlmsprep.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000016384 _____ (Microsoft Company) C:WINDOWSsystem32KBDJPN.DLL
2020-07-16 06:39 – 2020-07-16 06:39 – 000014336 _____ (Microsoft Company) C:WINDOWSsystem32dciman32.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000013824 _____ (Microsoft Company) C:WINDOWSsystem32UIManagerBrokerps.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000008704 _____ (Microsoft Company) C:WINDOWSsystem32kbd106n.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000008704 _____ (Microsoft Company) C:WINDOWSsystem32kbd106.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000008704 _____ (Microsoft Company) C:WINDOWSsystem32kbd101.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000008192 _____ (Microsoft Company) C:WINDOWSsystem32msimg32.dll
2020-07-16 06:39 – 2020-07-16 06:39 – 000003072 _____ (Microsoft Company) C:WINDOWSsystem32lpk.dll
2020-07-16 06:38 – 2020-07-16 06:39 – 002245632 _____ (Microsoft Company) C:WINDOWSsystem32ISM.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 017540608 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Xaml.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 009034752 _____ (Microsoft Company) C:WINDOWSsystem32BingMaps.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 007992824 _____ (Microsoft Company) C:WINDOWSsystem32OneCoreUAPCommonProxyStub.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 006709248 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Information.Pdf.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 006175232 _____ (Microsoft Company) C:WINDOWSsystem32twinui.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 005766168 _____ (Microsoft Company) C:WINDOWSsystem32StartTileData.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 004485216 _____ (Microsoft Company) C:WINDOWSexplorer.exe
2020-07-16 06:38 – 2020-07-16 06:38 – 003779896 _____ (Microsoft Company) C:WINDOWSsystem32Driversdxgkrnl.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 003749376 _____ (Microsoft Company) C:WINDOWSsystem32EdgeContent.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002963456 _____ (Microsoft Company) C:WINDOWSsystem32win32kbase.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 002631168 _____ (Microsoft Company) C:WINDOWSsystem32MapGeocoder.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002566144 _____ (Microsoft Company) C:WINDOWSsystem32DWrite.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002466864 _____ (Microsoft Company) C:WINDOWSsystem32msxml6.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002311680 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Bluetooth.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002305024 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Graphics.Printing.3D.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002131024 _____ (Microsoft Company) C:WINDOWSsystem32twinapi.appcore.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 002040832 _____ (Microsoft Company) C:WINDOWSsystem32CoreShell.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001784488 _____ (Microsoft Company) C:WINDOWSsystem32WindowsCodecs.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001766912 _____ (Microsoft Company) C:WINDOWSsystem32cdprt.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001762632 _____ (Microsoft Company) C:WINDOWSsystem32ContentDeliveryManager.Utilities.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001712128 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Globalization.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001556480 _____ (Microsoft Company) C:WINDOWSsystem32Wpc.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001540096 _____ (Microsoft Company) C:WINDOWSsystem32TaskFlowDataEngine.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001530880 _____ (Microsoft Company) C:WINDOWSsystem32TokenBroker.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001491968 _____ (Microsoft Company) C:WINDOWSsystem32dosvc.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001422336 _____ (Microsoft Company) C:WINDOWSsystem32FntCache.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001403904 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.FaceAnalysis.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001378568 _____ (Microsoft Company) C:WINDOWSsystem32InputHost.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001359872 _____ (Microsoft Company) C:WINDOWSsystem32tsf3gip.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001305600 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001257472 _____ (Microsoft Company) C:WINDOWSsystem32MiracastReceiver.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001222656 _____ (Microsoft Company) C:WINDOWSsystem32SEMgrSvc.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001145344 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Safety.Authentication.Internet.Core.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001114112 _____ (Microsoft Company) C:WINDOWSsystem32ShareHost.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001082168 _____ (Microsoft Company) C:WINDOWSsystem32CloudExperienceHostCommon.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001069056 _____ (Microsoft Company) C:WINDOWSsystem32Windows.AccountsControl.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001062912 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Alerts.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001058816 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Core.TextInput.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001048480 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Notion.Stub.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 001043456 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Ocr.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000968192 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Safety.Authentication.OnlineId.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000937464 _____ (Microsoft Company) C:WINDOWSsystem32Windows.ApplicationModel.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000914200 _____ (Microsoft Company) C:WINDOWSsystem32AppContracts.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000902976 _____ (Microsoft Company) C:WINDOWSsystem32Driversdxgmms2.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 000894464 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Administration.Service.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000879104 _____ (Microsoft Company) C:WINDOWSsystem32agentactivationruntimewindows.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000858624 _____ (Microsoft Company) C:WINDOWSsystem32agentactivationruntime.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000833024 _____ (Microsoft Company) C:WINDOWSsystem32bisrv.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000830464 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Graphics.Printing.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000824832 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gaming.Enter.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000804864 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.SmartCards.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000799552 _____ (Microsoft Company) C:WINDOWSsystem32windows.applicationmodel.datatransfer.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000799232 _____ (Microsoft Company) C:WINDOWSsystem32spoolsv.exe
2020-07-16 06:38 – 2020-07-16 06:38 – 000791552 _____ (Microsoft Company) C:WINDOWSsystem32ActivationManager.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000784896 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Import.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000781312 _____ (Microsoft Company) C:WINDOWSsystem32Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000752640 _____ (Microsoft Company) C:WINDOWSsystem32Windows.System.Launcher.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000678200 _____ (Microsoft Company) C:WINDOWSsystem32Driversspaceport.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 000670208 _____ (Microsoft Company) C:WINDOWSsystem32twinapi.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000657920 _____ (Microsoft Company) C:WINDOWSsystem32twinui.appcore.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000646656 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.AllJoyn.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000596480 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.LowLevel.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000565760 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.SmartCards.Cellphone.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000556032 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Graphics.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000541696 _____ (Microsoft Company) C:WINDOWSsystem32MicrosoftAccountWAMExtension.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000539256 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Enumeration.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000508416 _____ (Microsoft Company) C:WINDOWSsystem32RTMediaFrame.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000506672 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Media.Gadgets.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000504832 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.WiFiDirect.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000488448 _____ (Microsoft Company) C:WINDOWSsystem32modernexecserver.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000475648 _____ (Microsoft Company) C:WINDOWSsystem32CoreShellAPI.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000454968 _____ (Microsoft Company) C:WINDOWSsystem32Driversdxgmms1.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 000439296 _____ (Microsoft Company) C:WINDOWSsystem32AarSvc.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000436224 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Midi.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000430080 _____ (Microsoft Company) C:WINDOWSsystem32MicrosoftAccountExtension.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000423424 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.Usb.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000423224 _____ (Microsoft Company) C:WINDOWSsystem32SystemSettings.DataModel.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000389952 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Storage.ApplicationData.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000388096 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gaming.Preview.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000380632 _____ (Microsoft Company) C:WINDOWSsystem32CredentialEnrollmentManager.exe
2020-07-16 06:38 – 2020-07-16 06:38 – 000370688 _____ (Microsoft Company) C:WINDOWSsystem32vaultsvc.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000355328 _____ (Microsoft Company) C:WINDOWSsystem32Windows.System.Diagnostics.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000326144 _____ (Microsoft Company) C:WINDOWSsystem32SyncSettings.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000319488 _____ (Microsoft Company) C:WINDOWSsystem32vaultcli.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000316416 _____ (Microsoft Company) C:WINDOWSsystem32windows.inside.shellcommon.shareexperience.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000298496 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Gadgets.Sensors.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000287232 _____ (Microsoft Company) C:WINDOWSsystem32netman.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000286720 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.HumanInterfaceDevice.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000283136 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.AppDefaults.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000281088 _____ (Microsoft Company) C:WINDOWSsystem32authui.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000265728 _____ (Microsoft Company) C:WINDOWSsystem32cdd.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000252416 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Graphics.Show.DisplayColorManagement.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000249656 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Administration.Office.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000242688 _____ (Microsoft Company) C:WINDOWSsystem32CapabilityAccessManagerClient.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000222720 _____ (Microsoft Company) C:WINDOWSsystem32Windows.ApplicationModel.Core.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000220160 _____ (Microsoft Company) C:WINDOWSsystem32UserDeviceRegistration.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000215864 _____ (Microsoft Company) C:WINDOWSsystem32Driversspacedump.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 000208384 _____ (Microsoft Company) C:WINDOWSsystem32AppExtension.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000202752 _____ (Microsoft Company) C:WINDOWSsystem32DriversUSBAUDIO.sys
2020-07-16 06:38 – 2020-07-16 06:38 – 000202240 _____ (Microsoft Company) C:WINDOWSsystem32ErrorDetails.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000200192 _____ (Microsoft Company) C:WINDOWSsystem32useractivitybroker.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000198144 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Inside.Enter.ExpressiveInput.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000181248 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Vitality.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000170496 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Inside.Graphics.Show.DisplayEnhancementManagement.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000154624 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Gadgets.SerialCommunication.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000148280 _____ (Microsoft Company) C:WINDOWSsystem32ResourcePolicyServer.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000140288 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Storage.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000135168 _____ (Microsoft Company) C:WINDOWSsplwow64.exe
2020-07-16 06:38 – 2020-07-16 06:38 – 000131072 _____ (Microsoft Company) C:WINDOWSsystem32CameraCaptureUI.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000113112 _____ (Microsoft Company) C:WINDOWSsystem32Windows.Safety.Credentials.UI.CredentialPicker.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000100352 _____ (Microsoft Company) C:WINDOWSsystem32DiagnosticInvoker.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000090112 _____ (Microsoft Company) C:WINDOWSsystem32windows.inside.shellcommon.AccountsControlExperience.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000085504 _____ (Microsoft Company) C:WINDOWSsystem32SystemUWPLauncher.exe
2020-07-16 06:38 – 2020-07-16 06:38 – 000076992 _____ (Microsoft Company) C:WINDOWSsystem32CredentialEnrollmentManagerForUser.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000071792 _____ (Microsoft Company) C:WINDOWSsystem32ResourcePolicyClient.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000070968 _____ (Microsoft Company) C:WINDOWSsystem32GameInput.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000044032 _____ (Microsoft Company) C:WINDOWSsystem32Windows.UI.Xaml.Assets.Widespread.dll
2020-07-16 06:38 – 2020-07-16 06:38 – 000002560 _____ (Microsoft Company) C:WINDOWSsystem32msxml6r.dll
2020-07-16 03:14 – 2020-06-29 19:58 – 000391168 _____ (Microsoft Company) C:WINDOWSSysWOW64poqexec.exe
2020-07-16 03:13 – 2020-06-29 20:04 – 000495616 _____ (Microsoft Company) C:WINDOWSsystem32poqexec.exe
2020-07-15 20:27 – 2020-07-18 11:39 – 000014311 _____ C:UsersMichaelDesktopFixlog.txt
2020-07-15 19:59 – 2020-07-15 19:59 – 000001817 _____ C:UsersMichaelDesktopNordVPN.lnk
2020-07-15 19:59 – 2020-07-15 19:59 – 000000000 ____D C:ProgramDataNordVPN
2020-07-15 19:59 – 2020-07-15 19:59 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuNordSec
2020-07-15 19:59 – 2020-07-15 19:59 – 000000000 ____D C:Program FilesNordVPN
2020-07-15 19:59 – 2020-07-10 15:32 – 000038608 _____ (TEFINCOM S.A.) C:WINDOWSsystem32Driversnordlwf.sys
2020-07-12 10:09 – 2020-07-12 10:12 – 000065166 _____ C:UsersMichaelDesktopAddition.txt
2020-07-12 10:07 – 2020-07-19 22:45 – 000060242 _____ C:UsersMichaelDesktopFRST.txt
2020-07-12 10:07 – 2020-07-19 22:44 – 000000000 ____D C:FRST
2020-07-12 09:06 – 2020-07-19 22:07 – 000000000 ____D C:WINDOWSMinidump
2020-07-11 15:46 – 2020-07-11 15:46 – 000000000 ___HD C:$SysReset
2020-07-11 14:49 – 2020-07-11 15:33 – 000000214 _____ C:WINDOWSTasksCreateExplorerShellUnelevatedTask.job
2020-07-11 06:37 – 2020-07-11 06:38 – 000003352 _____ C:WINDOWSsystem32TasksEOSv3 Scheduler onTime
2020-07-10 23:08 – 2020-07-19 20:42 – 000000635 _____ C:UsersMichaelDesktopESET On-line Scanner.lnk
2020-07-10 23:07 – 2020-07-19 20:43 – 000000781 _____ C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsESET On-line Scanner.lnk
2020-07-10 23:07 – 2020-07-10 23:07 – 000000000 ____D C:UsersMichaelAppDataLocalESET
2020-07-10 22:57 – 2020-07-10 23:07 – 000003162 _____ C:WINDOWSsystem32TasksAdwCleaner_onReboot
2020-07-10 22:52 – 2020-07-10 22:57 – 000000000 ____D C:AdwCleaner
2020-07-10 22:50 – 2020-07-10 22:50 – 014827616 _____ (ESET spol. s r.o.) C:UsersMichaelDesktopesetonlinescanner.exe
2020-07-10 22:50 – 2020-07-10 22:50 – 008420016 _____ (Malwarebytes) C:UsersMichaelDesktopAdwCleaner.exe
2020-07-10 17:03 – 2020-07-11 16:15 – 000248968 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbamswissarmy.sys
2020-07-10 17:03 – 2020-07-10 17:03 – 000002040 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMalwarebytes.lnk
2020-07-10 17:03 – 2020-07-10 17:03 – 000000000 ____D C:UsersMichaelAppDataLocalmbam
2020-07-10 17:03 – 2020-07-10 17:02 – 000019912 _____ (Malwarebytes) C:WINDOWSsystem32DriversMbamElam.sys
2020-07-10 17:02 – 2020-07-10 17:02 – 000153312 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbae64.sys
2020-07-10 17:02 – 2020-07-10 17:02 – 000000000 ____D C:ProgramDataMalwarebytes
2020-07-10 17:02 – 2020-07-10 17:02 – 000000000 ____D C:Program FilesMalwarebytes
2020-07-05 18:03 – 2020-07-05 18:03 – 000013326 _____ C:UsersMichaelDesktop2000 Books_ Bill 000003861.pdf
2020-07-03 08:15 – 2020-07-03 08:15 – 000028000 _____ C:UsersMichaelDesktopViewPdfForm (7).pdf
2020-07-03 08:12 – 2020-07-03 08:12 – 000028000 _____ C:UsersMichaelDesktopViewPdfForm (6).pdf
2020-07-03 06:59 – 2020-07-03 06:59 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramspCloud
2020-07-03 06:59 – 2020-07-03 06:59 – 000000000 ____D C:Program Information (x86)pCloud Drive
2020-07-02 06:50 – 2020-07-02 06:50 – 316403536 _____ C:UsersMichaelDesktopseospyglass6.48.13-jre.exe
2020-06-30 21:58 – 2020-06-30 21:58 – 000000000 ____D C:Program FilesDolby
2020-06-30 21:58 – 2020-06-30 21:58 – 000000000 ____D C:Program FilesCommon FilesDolby
2020-06-28 14:39 – 2020-06-30 21:57 – 001398574 _____ C:WINDOWSgethelp_audiotroubleshooter_latestpackage.zip
2020-06-28 14:39 – 2020-06-28 14:39 – 000000000 ____D C:ProgramDataWindowsPerformanceRecorder
==================== One month (modified) ==================
(If an entry is included within the fixlist, the file/folder might be moved.)
2020-07-19 22:42 – 2020-01-13 19:04 – 000000000 ____D C:UsersMichaelAppDataLocalSyncplicity
2020-07-19 22:35 – 2019-12-07 02:14 – 000000000 ____D C:ProgramDataregid.1991-06.com.microsoft
2020-07-19 22:25 – 2019-12-07 02:03 – 000065536 _____ C:WINDOWSsystem32configELAM
2020-07-19 22:23 – 2020-02-25 21:16 – 000000000 ___RD C:UsersMichaelOneDrive – Israel & Gerity
2020-07-19 22:23 – 2018-05-19 12:07 – 000000000 ___RD C:UsersMichaelOneDrive
2020-07-19 22:21 – 2018-05-19 12:05 – 000000000 __SHD C:UsersMichaelIntelGraphicsProfiles
2020-07-19 22:20 – 2020-05-27 21:36 – 000000006 ____H C:WINDOWSTasksSA.DAT
2020-07-19 22:20 – 2020-05-27 21:24 – 000000000 ____D C:WINDOWSsystem32SleepStudy
2020-07-19 22:20 – 2020-05-27 21:23 – 000008192 ___SH C:DumpStack.log.tmp
2020-07-19 22:20 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSServiceState
2020-07-19 22:07 – 2020-05-27 21:25 – 000000000 ____D C:UsersMichael
2020-07-19 20:37 – 2019-12-07 02:03 – 001572864 _____ C:WINDOWSsystem32configBBI
2020-07-19 20:35 – 2019-12-07 02:03 – 000000000 ____D C:WINDOWSCbsTemp
2020-07-19 19:52 – 2020-05-27 21:36 – 000004158 _____ C:WINDOWSsystem32TasksUser_Feed_Synchronization-{2ECDD903-9065-4047-B531-DBC633C97374}
2020-07-19 17:17 – 2018-08-01 04:39 – 000000000 ____D C:UsersMichaelAppDataRoamingDropIt
2020-07-19 16:50 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSAppReadiness
2020-07-19 15:14 – 2019-12-07 02:14 – 000000000 ___HD C:Program FilesWindowsApps
2020-07-19 15:09 – 2018-07-26 17:10 – 000000000 ____D C:UsersMichaelAppDataLocalCrashDumps
2020-07-19 13:33 – 2020-04-01 20:26 – 000000000 ____D C:Program FilesMiniTool ShadowMaker
2020-07-19 13:33 – 2020-01-20 23:09 – 000000000 ____D C:UsersMichaelAppDataRoamingQtProject
2020-07-19 13:21 – 2019-12-07 02:13 – 000000000 ____D C:WINDOWSINF
2020-07-19 13:15 – 2019-11-30 15:35 – 000000000 ____D C:ProgramDataWondershare Filmora
2020-07-19 13:13 – 2019-12-01 08:55 – 000000000 ____D C:UsersMichaelDocumentsWondershare Filmora 9
2020-07-19 13:13 – 2019-10-02 19:26 – 000000000 ___HD C:UsersPublicDocumentsAdobeGCData
2020-07-19 13:13 – 2019-10-02 19:26 – 000000000 ___HD C:ProgramDataDocumentsAdobeGCData
2020-07-19 13:10 – 2019-11-30 15:35 – 000000000 ____D C:Program FilesWondershare
2020-07-19 13:08 – 2019-11-30 15:33 – 000000000 ____D C:UsersPublicDocumentsWondershare
2020-07-19 13:08 – 2019-11-30 15:33 – 000000000 ____D C:ProgramDataDocumentsWondershare
2020-07-18 23:22 – 2020-05-28 19:49 – 000000000 ____D C:UsersMichaelAppDataLocalDeployment
2020-07-18 18:15 – 2018-07-15 22:39 – 000000000 ____D C:UsersMichaelDocumentsOutlook Information
2020-07-18 11:31 – 2020-05-27 21:36 – 000795738 _____ C:WINDOWSsystem32PerfStringBackup.INI
2020-07-18 11:25 – 2018-05-22 21:35 – 000000000 ____D C:UsersMichaelAppDataLocalpCloud
2020-07-17 03:43 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSLiveKernelReports
2020-07-16 18:48 – 2018-05-19 12:05 – 000000000 ____D C:UsersMichaelAppDataLocalPackages
2020-07-16 18:47 – 2020-03-17 01:49 – 000002428 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Edge.lnk
2020-07-16 07:59 – 2020-05-27 21:23 – 000441592 _____ C:WINDOWSsystem32FNTCACHE.DAT
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ___SD C:WINDOWSsystem32DiagSvcs
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ___RD C:WINDOWSImmersiveControlPanel
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSSysWOW64WinMetadata
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSSystemResources
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSsystem32WinMetadata
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSsystem32oobe
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSsystem32appraiser
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSShellExperiences
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:WINDOWSbcastdvr
2020-07-16 07:58 – 2019-12-07 02:14 – 000000000 ____D C:Program FilesCommon FilesSystem
2020-07-15 20:29 – 2018-07-13 11:08 – 000000000 ____D C:UsersMichaelAppDataLocalLowTemp
2020-07-15 19:59 – 2019-03-19 17:53 – 000000000 ____D C:UsersMichaelAppDataLocalNordVPN
2020-07-14 22:49 – 2018-05-15 22:25 – 000002308 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk
2020-07-14 18:10 – 2018-06-16 13:55 – 000000000 ____D C:UsersMichaelAppDataRoamingOnetastic
2020-07-14 18:09 – 2019-04-23 20:23 – 006968608 _____ (ATAY LLC) C:UsersMichaelDownloadsOnetasticInstaller.x86.exe
2020-07-14 17:04 – 2020-03-23 10:01 – 000000000 ____D C:UsersMichaelAppDataLocalGoToMeeting
2020-07-12 09:11 – 2020-05-27 21:36 – 000003478 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineUA
2020-07-12 09:11 – 2020-05-27 21:36 – 000003354 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineCore
2020-07-11 16:45 – 2020-05-27 18:28 – 000000000 ___DC C:WINDOWSPanther
2020-07-11 16:42 – 2019-04-28 08:26 – 000000000 ____D C:UsersMichaelAppDataLocalFree Obtain Supervisor
2020-07-11 15:11 – 2020-05-27 21:36 – 000004210 _____ C:WINDOWSsystem32TasksCCleaner Replace
2020-07-11 14:51 – 2018-07-03 23:53 – 000000000 ____D C:UsersMichaelAppDataLocalElevatedDiagnostics
2020-07-10 22:57 – 2019-03-18 21:52 – 000000000 ____D C:WINDOWSsystem32Tasks_Migrated
2020-07-10 22:35 – 2018-05-19 12:05 – 000000000 ____D C:UsersMichaelAppDataLocalVirtualStore
2020-07-10 21:39 – 2020-05-27 21:25 – 000000000 ____D C:Userspostgres
2020-07-10 21:39 – 2020-05-27 21:25 – 000000000 ____D C:Usersncvad
2020-07-10 21:39 – 2020-05-27 21:25 – 000000000 ____D C:Usersmgeri
2020-07-10 18:37 – 2018-05-18 20:06 – 000000000 ____D C:Program Information (x86)TeamViewer
2020-07-10 18:36 – 2018-05-23 23:44 – 000000000 ____D C:UsersMichaelAppDataRoamingTeamViewer
2020-07-10 18:35 – 2018-08-01 18:44 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsSkype
2020-07-10 17:03 – 2019-12-07 02:14 – 000000000 ___HD C:WINDOWSELAMBKUP
2020-07-08 23:35 – 2018-05-18 21:13 – 000000000 ____D C:Program Information (x86)Microsoft Workplace
2020-07-07 12:51 – 2020-05-27 21:36 – 000004562 _____ C:WINDOWSsystem32TasksAdobe Acrobat Replace Job
2020-07-06 07:53 – 2020-03-02 11:13 – 000002344 _____ C:UsersPublicDesktopSplashtop Enterprise.lnk
2020-07-06 07:53 – 2020-03-02 11:13 – 000002344 _____ C:ProgramDataDesktopSplashtop Enterprise.lnk
2020-07-05 19:33 – 2019-02-26 22:34 – 000000000 ____D C:UsersMichaelAppDataLocalcalibre-cache
2020-07-03 06:59 – 2018-02-07 07:06 – 000000000 ____D C:ProgramDataPackage Cache
2020-07-03 06:26 – 2018-10-03 17:40 – 000000000 ____D C:UsersMichaelAppDataLocalFCC
2020-07-03 06:23 – 2018-06-26 10:44 – 000000000 ____D C:UsersMichaelAppDataRoamingTeraCopy
2020-07-01 18:38 – 2018-05-22 20:45 – 000000000 ____D C:UsersMichaelDocumentsAAZ SCAN PILE
2020-06-30 21:58 – 2018-04-23 17:56 – 000000000 ____D C:WINDOWSsystem32DAX3
2020-06-30 21:57 – 2018-04-23 17:56 – 000003383 _____ C:WINDOWSsystem32Driversrtkhdasetting.zip
2020-06-29 08:32 – 2019-09-29 15:57 – 000000000 ____D C:UsersMichaelAppDataLocalLenovoServiceBridge
2020-06-28 12:00 – 2019-09-02 11:19 – 000000000 ____D C:UsersMichaelAppDataRoamingFileJuggler2
2020-06-28 08:30 – 2020-03-23 10:01 – 000000664 _____ C:WINDOWSTasksG2MUploadTask-S-1-5-21-1998380166-1583960457-3440313674-1008.job
2020-06-28 08:30 – 2020-03-23 10:01 – 000000568 _____ C:WINDOWSTasksG2MUpdateTask-S-1-5-21-1998380166-1583960457-3440313674-1008.job
2020-06-25 21:36 – 2020-05-27 21:36 – 000003370 _____ C:WINDOWSsystem32TasksOneDrive Standalone Replace Job-S-1-5-21-1998380166-1583960457-3440313674-1008
2020-06-25 21:36 – 2020-05-27 21:25 – 000002380 _____ C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsOneDrive.lnk
2020-06-24 10:26 – 2020-05-27 21:36 – 000003824 _____ C:WINDOWSsystem32TasksG2MUploadTask-S-1-5-21-1998380166-1583960457-3440313674-1008
2020-06-24 10:26 – 2020-05-27 21:36 – 000003728 _____ C:WINDOWSsystem32TasksG2MUpdateTask-S-1-5-21-1998380166-1583960457-3440313674-1008
2020-06-24 03:39 – 2018-12-12 01:22 – 000453344 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:WINDOWSsystem32Driversgemma.sys
2020-06-24 03:39 – 2018-10-08 19:07 – 002106424 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:WINDOWSsystem32Driversatc.sys
2020-06-24 03:39 – 2018-10-08 19:07 – 000757240 _____ (Bitdefender) C:WINDOWSsystem32Driversbddci.sys
2020-06-23 20:06 – 2020-03-03 16:04 – 000000000 ____D C:WINDOWSTempInst
2020-06-23 20:06 – 2018-02-07 07:01 – 000000000 ____D C:ProgramDataLenovo
2020-06-19 05:29 – 2019-03-03 07:28 – 000000000 ____D C:UsersMichaelAppDataRoamingFireShot
==================== Information within the root of some directories ========
2019-03-09 08:10 – 2019-03-09 08:10 – 000000000 _____ () C:UsersMichaelAppDataLocaloobelibMkey.log
==================== SigCheck ============================
(There isn’t a automated repair for information that don’t cross verification.)
==================== Finish of FRST.txt ========================
Addition.txt
Further scan results of Farbar Restoration Scan Software (x64) Model: 19-07-2020
Ran by Michael (19-07-2020 22:47:07)
Operating from C:UsersMichaelDesktop
Home windows 10 Dwelling Model 2004 19041.388 (X64) (2020-05-28 04:36:45)
Boot Mode: Regular
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1998380166-1583960457-3440313674-500 – Administrator – Disabled)
DefaultAccount (S-1-5-21-1998380166-1583960457-3440313674-503 – Restricted – Disabled)
Visitor (S-1-5-21-1998380166-1583960457-3440313674-501 – Restricted – Disabled)
keili (S-1-5-21-1998380166-1583960457-3440313674-1005 – Restricted – Disabled)
kelto (S-1-5-21-1998380166-1583960457-3440313674-1006 – Restricted – Disabled)
kikig (S-1-5-21-1998380166-1583960457-3440313674-1007 – Restricted – Disabled)
mgeri (S-1-5-21-1998380166-1583960457-3440313674-1002 – Administrator – Enabled) => C:Usersmgeri
micha (S-1-5-21-1998380166-1583960457-3440313674-1004 – Restricted – Disabled)
Michael (S-1-5-21-1998380166-1583960457-3440313674-1008 – Administrator – Enabled) => C:UsersMichael
ncvad (S-1-5-21-1998380166-1583960457-3440313674-1003 – Restricted – Enabled) => C:Usersncvad
postgres (S-1-5-21-1998380166-1583960457-3440313674-1009 – Restricted – Enabled) => C:Userspostgres
WDAGUtilityAccount (S-1-5-21-1998380166-1583960457-3440313674-504 – Restricted – Disabled)
==================== Safety Middle ========================
(If an entry is included within the fixlist, it will likely be eliminated.)
AV: Home windows Defender (Disabled – Updated) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled – Updated) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: Bitdefender Antivirus (Enabled – Updated) {0E17DB7D-A20F-62CE-B95B-17DB0CDFE318}
AS: Home windows Defender (Disabled – Updated) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antispyware (Enabled – Updated) {B5763A99-8435-6D40-83EB-2CA97758A9A5}
FW: Bitdefender Firewall (Enabled) {362C5A58-E860-6396-9204-BEEEF20CA463}
==================== Put in Packages ======================
(Solely the adware packages with “Hidden” flag could possibly be added to the fixlist to unhide them. The adware packages needs to be uninstalled manually.)
7-Zip 18.06 (x64) (HKLM…7-Zip) (Model: 18.06 – Igor Pavlov)
Actionstep Workplace Add-In (HKLM-x32…{0259BC9E-D99E-4E00-995A-A0FD617DE27E}) (Model: 2.0.9.2 – Actionstep)
Adobe Acrobat XI Professional (HKLM-x32…{AC76BA86-1033-FFFF-7760-000000000006}) (Model: 11.0.23 – Adobe Methods)
Adobe Digital Editions 4.5 (HKLM-x32…Adobe Digital Editions 4.5) (Model: 4.5.10 – Adobe Methods Included)
Amazon Kindle (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Amazon Kindle) (Model: 1.27.0.56109 – Amazon)
Anki (HKLM-x32…Anki) (Model: – )
Apowersoft On-line Launcher model 1.7.8 (HKLM-x32…{20BF67A8-D81A-4489-8225-FABAA0896E2D}_is1) (Model: 1.7.8 – APOWERSOFT LIMITED)
Audacity 2.3.1 (HKLM-x32…Audacity_is1) (Model: 2.3.1 – Audacity Crew)
Bing Desktop (HKLM-x32…{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}) (Model: 1.3.478.0 – Microsoft Company)
Bitdefender Agent (HKLM…Bitdefender Agent) (Model: 23.0.8.115 – Bitdefender)
Bitdefender System Administration (HKLM…Bitdefender System Administration) (Model: 24.0.20.114 – Bitdefender)
Bitdefender Whole Safety (HKLM…Bitdefender) (Model: 23.0.11.48 – Bitdefender)
calibre (HKLM-x32…{54B7D91C-A982-420A-84E5-245DCD036C17}) (Model: 4.15.0 – Kovid Goyal)
CCleaner (HKLM…CCleaner) (Model: 5.68 – Piriform)
Chrome Distant Desktop Host (HKLM-x32…{044C9627-4253-4828-A3CB-6EF8CEC04963}) (Model: 85.0.4183.6 – Google Inc.)
CSV2QFX (HKLM-x32…CSV2QFX_is1) (Model: 3.3.6.0 – ProperSoft Inc.)
Dolby Atmos Home windows API SDK (HKLM…{F4D219B3-8286-4FD5-A160-DFE90AD21695}) (Model: 1.1.9.33 – Dolby Laboratories, Inc.) Hidden
DropIt (v8.5.1) (HKLM…DropIt_is1) (Model: 8.5.1 – Lupo PenSuite Crew)
Epson USB Show (HKLM-x32…{7650F538-6274-44EA-8F50-843479073333}) (Model: 1.73.000 – SEIKO EPSON CORPORATION)
File Juggler (HKLM-x32…{ABFC5AA9-D3B2-41BF-8C90-C9FF4836FDD5}) (Model: 2.0.16 – Bitvaerk)
Free Obtain Supervisor (HKLM…{43781dff-e0df-49ce-a6d2-47da96a485e7}}_is1) (Model: 5.1.38.7312 – FreeDownloadManager.ORG)
Google Chrome (HKLM-x32…Google Chrome) (Model: 84.0.4147.89 – Google LLC)
Google Replace Helper (HKLM-x32…{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Model: 1.3.35.451 – Google LLC) Hidden
GoTo Opener (HKLM-x32…{C0F33C38-345C-4C02-B161-11389350C2A5}) (Model: 1.0.533 – LogMeIn, Inc.)
GoToMeeting 10.11.1.18068 (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…GoToMeeting) (Model: 10.11.1.18068 – LogMeIn, Inc.)
HP Dropbox Plugin (HKLM-x32…{D12BC084-97D6-438A-AA7C-5962608D17A0}) (Model: 36.0.41.58587 – HP)
HP Google Drive Plugin (HKLM-x32…{BFA42100-DB54-467A-BB87-CF70732B4065}) (Model: 36.0.41.58587 – HP)
HP OfficeJet Professional 8720 Primary System Software program (HKLM…{F33982C6-BC38-4661-A7E5-637CB5ABF2DC}) (Model: 40.12.1161.1896 – HP Inc.)
HP OfficeJet Professional 8720 Assist (HKLM-x32…{18E5A98E-E857-4087-AF73-4E6B9AB0A140}) (Model: 38.0.0 – HP)
I.R.I.S. OCR (HKLM-x32…{11ED31EC-7EFA-4D56-B71D-E0214C8984CC}) (Model: 12.3.7.0 – HP)
Intel® Chipset System Software program (HKLM-x32…{17408817-d415-4768-a160-ae6d46d6bdb0}) (Model: 10.1.1.44 – Intel® Company) Hidden
Intel® Administration Engine Parts (HKLM…{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Model: 11.7.0.1054 – Intel Company)
Intel® On-line Join Software program Asset Supervisor (HKLM-x32…{15998D77-1F78-43EE-96D4-1067ECAA2412}) (Model: 3.5.2247 – Intel Company) Hidden
Intel® Processor Graphics (HKLM-x32…{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Model: 23.20.16.4973 – Intel Company)
Intel® Trusted Join Service Shopper x86 (HKLM-x32…{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Model: 1.47.866.0 – Intel Company) Hidden
Intel® Trusted Join Companies Shopper (HKLM-x32…{246c6cc0-9810-4728-9a29-28474de2eec5}) (Model: 1.47.866.0 – Intel Company) Hidden
Intel® On-line Join (HKLM-x32…{6b556278-d555-4d14-ac99-8ad600578a95}) (Model: 1.3.13.0 – Intel Company)
LAME v3.99.3 (for Home windows) (HKLM-x32…LAME_is1) (Model: – )
Lenovo Pen Settings Service (HKLM…ISD Pill Driver) (Model: 7.6.1.39 – Wacom Expertise Corp.)
Lenovo Service Bridge (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Model: 5.0.1.2 – Lenovo)
Lenovo System Replace (HKLM-x32…TVSU_is1) (Model: 5.07.0093 – Lenovo)
Lenovo Utility (HKLM…{12ABAC82-7D83-4CB8-9DD2-434DC9AF2942}_is1) (Model: 3.0.0.20 – Lenovo)
Lenovo Vantage Service (HKLM-x32…VantageSRV_is1) (Model: 3.3.61.0 – Lenovo Group Ltd.)
Lenovo Yoga Mode Management (Inf Set up) (HKLM…ACPIVPC) (Model: 15.11.28.175 – Lenovo)
Macrium Replicate Free Version (HKLM…{93AF16B5-1D74-4BC4-9EF9-DC8AC92C96D5}) (Model: 7.2.4971 – Paramount Software program (UK) Ltd.) Hidden
Macrium Replicate Free Version (HKLM…MacriumReflect) (Model: 7.2 – Paramount Software program (UK) Ltd.)
Malwarebytes model 4.1.2.73 (HKLM…{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Model: 4.1.2.73 – Malwarebytes)
Microsoft 365 – en-us (HKLM…o365homepremretail – en-us) (Model: 16.0.13001.20266 – Microsoft Company)
Microsoft 365 Apps for enterprise – en-us (HKLM…o365proplusretail – en-us) (Model: 16.0.13001.20266 – Microsoft Company)
Microsoft Edge (HKLM-x32…Microsoft Edge) (Model: 84.0.522.40 – Microsoft Company)
Microsoft Edge Replace (HKLM-x32…Microsoft Edge Replace) (Model: 1.3.133.5 – )
Microsoft OneDrive (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…OneDriveSetup.exe) (Model: 20.084.0426.0007 – Microsoft Company)
Microsoft OneNote Dwelling and Scholar 2016 – en-us (HKLM…OneNoteFreeRetail – en-us) (Model: 16.0.13001.20266 – Microsoft Company)
Microsoft Silverlight (HKLM…{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Model: 5.1.50918.0 – Microsoft Company)
Microsoft Groups (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…Groups) (Model: 1.3.00.13565 – Microsoft Company)
Microsoft Visible C++ 2008 Redistributable – x64 9.0.21022 (HKLM…{350AA351-21FA-3270-8B7A-835434E766AD}) (Model: 9.0.21022 – Microsoft Company)
Microsoft Visible C++ 2008 Redistributable – x64 9.0.30729.4148 (HKLM…{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Model: 9.0.30729.4148 – Microsoft Company)
Microsoft Visible C++ 2008 Redistributable – x64 9.0.30729.6161 (HKLM…{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Model: 9.0.30729.6161 – Microsoft Company)
Microsoft Visible C++ 2008 Redistributable – x86 9.0.21022 (HKLM-x32…{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Model: 9.0.21022 – Microsoft Company)
Microsoft Visible C++ 2008 Redistributable – x86 9.0.30729.6161 (HKLM-x32…{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Model: 9.0.30729.6161 – Microsoft Company)
Microsoft Visible C++ 2010 x64 Redistributable – 10.0.40219 (HKLM…{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Model: 10.0.40219 – Microsoft Company)
Microsoft Visible C++ 2010 x86 Redistributable – 10.0.40219 (HKLM-x32…{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Model: 10.0.40219 – Microsoft Company)
Microsoft Visible C++ 2013 Redistributable (x64) – 12.0.21005 (HKLM-x32…{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Model: 12.0.21005.1 – Microsoft Company)
Microsoft Visible C++ 2013 Redistributable (x64) – 12.0.30501 (HKLM-x32…{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Model: 12.0.30501.0 – Microsoft Company)
Microsoft Visible C++ 2013 Redistributable (x86) – 12.0.30501 (HKLM-x32…{f65db027-aff3-4070-886a-0d87064aabb1}) (Model: 12.0.30501.0 – Microsoft Company)
Microsoft Visible C++ 2015 Redistributable (x64) – 14.0.24215 (HKLM-x32…{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Model: 14.0.24215.1 – Microsoft Company)
Microsoft Visible C++ 2015 Redistributable (x86) – 14.0.24212 (HKLM-x32…{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Model: 14.0.24212.0 – Microsoft Company)
MiniTool Partition Wizard Free 12 (HKLM…{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Model: – MiniTool Software program Restricted)
Movavi Video Editor 14 (HKLM-x32…Movavi Video Editor 14) (Model: 14.0.0 – Movavi)
Mp3tag v3.01 (HKLM-x32…Mp3tag) (Model: 3.01 – Florian Heidenreich)
MyHarmony (HKLM-x32…{2AD8F8A1-ECE5-4890-BCC2-B4396370A0D4}) (Model: 1.0.308 – Logitech)
MySpeed v5.6.2 (HKLM-x32…{82575BD8-D023-407F-8629-0D3EB3F34399}) (Model: 5.06.0461 – Enounce Included)
NordVPN (HKLM…{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Model: 6.31.5.0 – TEFINCOM S.A.)
NordVPN community TAP (HKLM-x32…{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Model: 1.0.1 – NordVPN)
NordVPN community TUN (HKLM…{77DA107A-7AE4-497D-A84A-B143C3A21676}) (Model: 1.0.0 – NordVPN)
Workplace 16 Click on-to-Run Extensibility Element (HKLM-x32…{90160000-008C-0000-0000-0000000FF1CE}) (Model: 16.0.13001.20144 – Microsoft Company) Hidden
Workplace 16 Click on-to-Run Extensibility Element 64-bit Registration (HKLM…{90160000-00DD-0000-1000-0000000FF1CE}) (Model: 16.0.13001.20144 – Microsoft Company) Hidden
Workplace 16 Click on-to-Run Licensing Element (HKLM…{90160000-008F-0000-1000-0000000FF1CE}) (Model: 16.0.13001.20266 – Microsoft Company) Hidden
Workplace 16 Click on-to-Run Localization Element (HKLM-x32…{90160000-008C-0409-0000-0000000FF1CE}) (Model: 16.0.13001.20144 – Microsoft Company) Hidden
Onetastic Addin (HKLM-x32…{A3C693A5-EDBA-4CBB-BCE5-8594B2C10F10}) (Model: 4.4.0 – ATAY LLC)
pCloud Drive (HKLM-x32…{929F016C-26EC-4D9A-82DF-718FCE36B039}) (Model: 3.9.9.0 – pCloud AG) Hidden
pCloud Drive (HKLM-x32…{b2ea9319-7f54-4ba7-9497-e4945671f8fb}) (Model: 3.9.9.0 – pCloud AG)
PotPlayer-64 bit (HKLM…PotPlayer64) (Model: 200616 – Kakao Corp.)
Product Enchancment Examine for HP OfficeJet Professional 8720 (HKLM…{50DEE9F2-3AF3-454B-B5AC-A0873339572E}) (Model: 40.12.1161.1896 – HP Inc.)
Qualcomm Atheros 11ac Wi-fi LAN Installer (HKLM-x32…{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Model: 11.0.10442 – Qualcomm)
RoboForm 8-9-0-0 (All Customers) (HKLM-x32…AI RoboForm) (Model: 8-9-0-0 – Siber Methods)
Room Arranger (32-bit) (HKLM-x32…Room Arranger) (Model: 9.5.6 – Jan Adamec)
Skype for Enterprise 2016 – en-us (HKLM…SkypeforBusinessRetail – en-us) (Model: 16.0.13001.20266 – Microsoft Company)
Skype model 8.62 (HKLM-x32…Skype_is1) (Model: 8.62 – Skype Applied sciences S.A.)
SpiderOakONE x64 (HKLM…{D959D180-B651-402C-A3FA-0C7EC0FE9059}) (Model: 7.5.1.10336 – SpiderOak)
Splashtop Enterprise (HKLM-x32…{6A4CA92E-2579-4C4D-9C8B-44735449C64E}) (Model: 3.4.0.0 – Splashtop Inc.)
Splashtop Software program Updater (HKLM-x32…Splashtop Software program Updater) (Model: 1.5.6.17 – Splashtop Inc.)
Splashtop Streamer (HKLM-x32…{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Model: 3.3.8.0 – Splashtop Inc.)
SUPERAntiSpyware (HKLM…{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Model: 6.0.1258 – SUPERAntiSpyware.com)
Syncplicity (HKLM…{5F16CFC7-1009-4A73-8B67-E55DF159F30D}) (Model: 6.2.1.200413100 – Syncplicity, LLC)
Groups Machine-Broad Installer (HKLM-x32…{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Model: 1.2.0.19260 – Microsoft Company)
TeraCopy model 3.26 (HKLM…TeraCopy_is1) (Model: 3.26 – Code Sector)
Replace for Home windows 10 for x64-based Methods (KB4023057) (HKLM…{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Model: 2.52.0.0 – Microsoft Company)
Vulkan Run Time Libraries 1.0.61.0 (HKLM…VulkanRT1.0.61.0) (Model: 1.0.61.0 – LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM…VulkanRT1.0.65.1) (Model: 1.0.65.1 – LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM…VulkanRT1.0.65.1-2) (Model: 1.0.65.1 – LunarG, Inc.) Hidden
WinMerge 2.16.2.0 (HKLM-x32…WinMerge_is1) (Model: 2.16.2.0 – Thingamahoochie Software program)
Wondershare Filmora9(Construct 9.5.0) (HKLM…Wondershare Filmora9_is1) (Model: – Wondershare Software program)
Wondershare Helper Compact 2.6.0 (HKLM-x32…{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Model: 2.6.0 – Wondershare)
Zoom (HKUS-1-5-21-1998380166-1583960457-3440313674-1008…ZoomUMX) (Model: 5.0 – Zoom Video Communications, Inc.)
Packages:
=========
Autodesk SketchBook -> C:Program FilesWindowsApps89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-05] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:Program FilesWindowsAppsking.com.BubbleWitch3Saga_6.10.5.0_x86__kgqvnymyfvs32 [2020-06-17] (king.com)
Bulk Rename -> C:Program FilesWindowsApps43095JubsApps.BulkRename_1.5.6.0_x64__xs083r4r36z2j [2020-04-25] (JTek Apps)
Sweet Crush Soda Saga -> C:Program FilesWindowsAppsking.com.CandyCrushSodaSaga_1.172.400.0_x86__kgqvnymyfvs32 [2020-07-08] (king.com)
Disney Magic Kingdoms -> C:Program FilesWindowsAppsA278AB0D.DisneyMagicKingdoms_5.2.0.12_x86__h6adky7gbf63m [2020-07-14] (Gameloft SE)
Dolby Entry -> C:Program FilesWindowsAppsDolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220 [2020-04-17] (Dolby Laboratories)
Fitbit -> C:Program FilesWindowsAppsFitbit.Fitbit_2.44.1997.0_x64__6mqt6hf9g46tw [2019-10-04] (Fitbit)
Hidden Metropolis: Hidden Object Journey -> C:Program FilesWindowsApps828B5831.HiddenCityMysteryofShadows_1.36.3600.0_x86__ytsefhwckbdv6 [2020-07-14] (G5 Leisure AB)
HP Sensible -> C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_115.1.152.0_x64__v10z8vjag6ke6 [2020-05-27] (HP Inc.)
INSTEON for Hub -> C:Program FilesWindowsAppsSmartLabs.INSTEONforHub_1.2.1.18_x86__4162j3jeed9tp [2019-02-06] (SmartLabs)
Intel® Graphics Command Middle -> C:Program FilesWindowsAppsAppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6ctt [2020-06-09] (INTEL CORP) [Startup Task]
Lenovo Pen Settings -> C:Program FilesWindowsAppsWacomTechnologyCorp.157535B83C264_7.6.59.0_x64__ss941bf8mfs8a [2020-04-01] (Wacom Expertise Corp.)
Lenovo Vantage -> C:Program FilesWindowsAppsE046963F.LenovoCompanion_10.2006.30.0_x64__k1h2ywk1493x8 [2020-07-03] (LENOVO INC.)
LenovoUtility -> C:Program FilesWindowsAppsE0469640.LenovoUtility_3.1.12.0_x64__5grkq8ppsgwt4 [2020-05-20] (LENOVO INC) [Startup Task]
LinkedIn -> C:Program FilesWindowsApps7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2018-06-26] (LinkedIn)
March of Empires: Struggle of Lords -> C:Program FilesWindowsAppsA278AB0D.MarchofEmpires_4.9.0.7_x86__h6adky7gbf63m [2020-06-24] (Gameloft SE)
Microsoft Promoting SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Promoting.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Company) [MS Ad]
Microsoft Promoting SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Promoting.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Company) [MS Ad]
Microsoft Edge -> C:Program Information (x86)MicrosoftEdgeApplication [2020-07-16] (0)
Microsoft Solitaire Assortment -> C:Program FilesWindowsAppsMicrosoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-02] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:Program FilesWindowsAppsMicrosoft.Todos_2.22.31857.0_x64__8wekyb3d8bbwe [2020-07-14] (Microsoft Company)
Minecraft for Home windows 10 -> C:Program FilesWindowsAppsMicrosoft.MinecraftUWP_1.16.102.0_x64__8wekyb3d8bbwe [2020-07-02] (Microsoft Studios)
MPEG-2 Video Extension -> C:Program FilesWindowsAppsMicrosoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-09-23] (Microsoft Company)
MSN Climate -> C:Program FilesWindowsAppsMicrosoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Company) [MS Ad]
Nebo -> C:Program FilesWindowsAppsVisionObjects.MyScriptNebo_2.6.7620.0_x64__1rjv6qr7skr92 [2020-06-20] (MyScript)
Images Add-on -> C:Program FilesWindowsAppsMicrosoft.Home windows.Images.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-08-12] (Microsoft Company)
PowerPoint Cell -> C:Program FilesWindowsAppsMicrosoft.Workplace.PowerPoint_16001.13029.20044.0_x64__8wekyb3d8bbwe [2020-07-15] (Microsoft Company)
ReadAloud -> C:Program FilesWindowsApps21676OptimiliaStudios.ReadAloud_2.1.38.0_x64__k42naep6bwmrc [2020-07-02] (Optimilia Studios) [MS Ad]
RoboForm Password Supervisor -> C:Program FilesWindowsAppsSiberSystemsInc.RoboFormEdge_8.5.7.0_x86__7kk3kr9e0p1np [2019-06-21] (Siber Methods Inc)
Skype -> C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c [2020-07-17] (Skype) [Startup Task]
Xbox One SmartGlass -> C:Program FilesWindowsAppsMicrosoft.XboxOneSmartGlass_2.2.1702.2004_x64__8wekyb3d8bbwe [2018-06-15] (Microsoft Company)
==================== Customized CLSID (Whitelisted): ==============
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive – Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}0
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{04271989-C4D2-207E-DD0C-3F367278A4DF} -> [OneDrive – Israel & Gerity] => C:UsersMichaelOneDrive – Israel & Gerity [2020-02-25 21:16]
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{19A6E644-14E6-4A60-B8D7-DD20610A871D}InprocServer32 -> C:UsersMichaelAppDataLocalMicrosoftTeamsMeetingAddin1.0.20091.2x64Microsoft.Groups.AddinLoader.dll (Microsoft Company -> Microsoft Company)
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{5654b362-b14b-cc96-9d33-6e5cb82b4a7b8}InprocServer32 -> 0x46674941414376564A485568356330424867435336684E6E50356D3348666E745648716639442F48495165374168476672646E73475A4B5830696B67502B45643137634E534A53526A5475545734652F2F42673D => No File
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{a800c3ba-e9af-4f94-8842-22b09bb54cd1} -> [Syncplicity] => S: [0000-00-00 00:00]
CustomCLSID: HKUS-1-5-21-1998380166-1583960457-3440313674-1008_ClassesCLSID{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}InprocServer32 -> C:UsersMichaelAppDataLocalMicrosoftTeamsMeetingAddin1.0.20091.2x64Microsoft.Groups.AddinLoader.dll (Microsoft Company -> Microsoft Company)
SSODL: EldosMountNotificator-cbfs6 – {EF1B2AC8-2FA9-41C7-A062-3736B9F9C12F} – C:WINDOWSsystem32cbfsMntNtf6.dll (EldoS Company -> /n software program, Inc.)
SSODL: CallbackTechMountNotificator-cbfsconnect2017 – {BD0BC928-60AA-4F6C-A3CA-CD5162CAAF0F} – C:WINDOWSsystem32cbfsconnectMntNtf2017.dll (Callback Applied sciences, Inc. -> Callback Applied sciences, Inc.)
SSODL-x32: EldosMountNotificator-cbfs6 – {EF1B2AC8-2FA9-41C7-A062-3736B9F9C12F} – C:WINDOWSSysWOW64cbfsMntNtf6.dll (EldoS Company -> /n software program, Inc.)
SSODL-x32: CallbackTechMountNotificator-cbfsconnect2017 – {BD0BC928-60AA-4F6C-A3CA-CD5162CAAF0F} – C:WINDOWSSysWOW64cbfsconnectMntNtf2017.dll (Callback Applied sciences, Inc. -> Callback Applied sciences, Inc.)
ShellServiceObjects: Digital Storage Mount Notification -> {BD0BC928-60AA-4F6C-A3CA-CD5162CAAF0F} => C:WINDOWSsystem32cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Applied sciences, Inc. -> Callback Applied sciences, Inc.)
ShellServiceObjects: Digital Storage Mount Notification -> {EF1B2AC8-2FA9-41C7-A062-3736B9F9C12F} => C:WINDOWSsystem32cbfsMntNtf6.dll [2016-09-09] (EldoS Company -> /n software program, Inc.)
ShellServiceObjects-x32: Digital Storage Mount Notification -> {BD0BC928-60AA-4F6C-A3CA-CD5162CAAF0F} => C:WINDOWSSysWOW64cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Applied sciences, Inc. -> Callback Applied sciences, Inc.)
ShellServiceObjects-x32: Digital Storage Mount Notification -> {EF1B2AC8-2FA9-41C7-A062-3736B9F9C12F} => C:WINDOWSSysWOW64cbfsMntNtf6.dll [2016-09-09] (EldoS Company -> /n software program, Inc.)
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (Favorite Folder)] -> {31EF80A0-D827-4295-A92F-401CD8E3B8AA} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (Fully Synced)] -> {CA4FCCBF-F4B7-4DD1-861E-1F42AAD396D1} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (InCloud Folder)] -> {E72F70DA-D211-4974-8D0E-DDEC945BFD8B} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (Locked)] -> {3EF24560-7D87-49CF-BF20-58009912D1F4} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (Not Latest Version)] -> {284C090F-EB1D-4A6E-872E-6DB72E417E24} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ Syncplicity Icon Overlay (Shared Folder)] -> {3DFC86AD-F2CC-4AdA-98DD-AC5DC84119CC} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers: [ pCloudINPROGRESS] -> {D8BFAFBD-B670-4252-9C17-9CF1C64C2BAF} => C:Program Information (x86)pCloud DriveOverlayIcon64.dll [2017-10-23] (TODO: <Firm identify>) [File not signed]
ShellIconOverlayIdentifiers: [ pCloudINSYNC] -> {8D0C0582-552A-4A6B-9455-DA63E1F329C0} => C:Program Information (x86)pCloud DriveOverlayIcon64.dll [2017-10-23] (TODO: <Firm identify>) [File not signed]
ShellIconOverlayIdentifiers: [ pCloudNOSYNC] -> {3858ED1B-8F1C-42ED-A8A9-FDBF591E3C6B} => C:Program Information (x86)pCloud DriveOverlayIcon64.dll [2017-10-23] (TODO: <Firm identify>) [File not signed]
ShellIconOverlayIdentifiers: [EldosIconOverlay-cbfs6] -> {3595169D-CA86-4D7E-AFF9-FFB900D652BE} => C:WINDOWSsystem32cbfsMntNtf6.dll [2016-09-09] (EldoS Company -> /n software program, Inc.)
ShellIconOverlayIdentifiers: [SpiderOakONEOverlay] -> {6E1010DC-3571-45DE-9CA2-C5890119BBBE} => C:Program FilesSpiderOakONEshell_extension.dll [2019-08-30] (SpiderOakONE) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (Favorite Folder)] -> {31EF80A0-D827-4295-A92F-401CD8E3B8AA} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (Fully Synced)] -> {CA4FCCBF-F4B7-4DD1-861E-1F42AAD396D1} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (InCloud Folder)] -> {E72F70DA-D211-4974-8D0E-DDEC945BFD8B} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (Locked)] -> {3EF24560-7D87-49CF-BF20-58009912D1F4} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (Not Latest Version)] -> {284C090F-EB1D-4A6E-872E-6DB72E417E24} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [ Syncplicity Icon Overlay (Shared Folder)] -> {3DFC86AD-F2CC-4AdA-98DD-AC5DC84119CC} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay-cbfs6] -> {3595169D-CA86-4D7E-AFF9-FFB900D652BE} => C:WINDOWSsystem32cbfsMntNtf6.dll [2016-09-09] (EldoS Company -> /n software program, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:Program Information (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Methods, Included -> Adobe Methods Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [ContextMenu] -> {6d8f9bbf-8d40-3531-8f7c-9fd5e3760d01} => C:Program Information (x86)File Juggler 2FileJugglerContextMenu.DLL [2019-04-09] () [File not signed]
ContextMenuHandlers1: [ContextMenuExtension] -> {0ef7a918-328d-36da-a1b2-740c97802be6} => C:Program Information (x86)pCloud DriveContextMenuHandler64.dll [2020-06-25] (pCloud AG) [File not signed]
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:Program FilesMacriumReflectRContextMenu.dll [2019-09-20] (Paramount Software program UK Ltd -> Paramount Software program UK Ltd)
ContextMenuHandlers1: [SpiderOakONE] -> {6E1010DC-3571-45DE-9CA2-C5890119BBBF} => C:Program FilesSpiderOakONEshell_extension.dll [2019-08-30] (SpiderOakONE) [File not signed]
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:Program FilesTeraCopyTeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers1: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:Program Information (x86)WinMergeShellExtensionX64.dll [2019-03-22] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:Program FilesMacriumReflectRContextMenu.dll [2019-09-20] (Paramount Software program UK Ltd -> Paramount Software program UK Ltd)
ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:Program FilesTeraCopyTeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers2: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:Program Information (x86)WinMergeShellExtensionX64.dll [2019-03-22] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2020-07-10] (Malwarebytes Company -> Malwarebytes)
ContextMenuHandlers3: [Syncplicity] -> {D6E5689F-E28F-4F00-B6D3-FEA9A39D35E1} => C:Program FilesSyncplicitySyncplicityShellExt.dll [2020-04-13] (Syncplicity LLC.) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ContextMenu] -> {6d8f9bbf-8d40-3531-8f7c-9fd5e3760d01} => C:Program Information (x86)File Juggler 2FileJugglerContextMenu.DLL [2019-04-09] () [File not signed]
ContextMenuHandlers4: [ContextMenuExtension] -> {0ef7a918-328d-36da-a1b2-740c97802be6} => C:Program Information (x86)pCloud DriveContextMenuHandler64.dll [2020-06-25] (pCloud AG) [File not signed]
ContextMenuHandlers4: [SpiderOakONE] -> {6E1010DC-3571-45DE-9CA2-C5890119BBBF} => C:Program FilesSpiderOakONEshell_extension.dll [2019-08-30] (SpiderOakONE) [File not signed]
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:Program FilesTeraCopyTeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers4: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:Program Information (x86)WinMergeShellExtensionX64.dll [2019-03-22] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers5: [SpiderOakONE] -> {6E1010DC-3571-45DE-9CA2-C5890119BBBF} => C:Program FilesSpiderOakONEshell_extension.dll [2019-08-30] (SpiderOakONE) [File not signed]
ContextMenuHandlers5: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:Program Information (x86)WinMergeShellExtensionX64.dll [2019-03-22] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:Program Files7-Zip7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:Program Information (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Methods, Included -> Adobe Methods Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2020-07-10] (Malwarebytes Company -> Malwarebytes)
ContextMenuHandlers6: [SpiderOakONE] -> {6E1010DC-3571-45DE-9CA2-C5890119BBBF} => C:Program FilesSpiderOakONEshell_extension.dll [2019-08-30] (SpiderOakONE) [File not signed]
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:Program FilesTeraCopyTeraCopyExt.dll [2016-12-07] (Code Sector -> )
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could possibly be listed to be restored or eliminated.)
ShortcutWithArgument: C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsChrome Distant Desktop (1).lnk -> C:Program Information (x86)GoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=Default –app-id=efmjfjelnicpmdcmfikempdhlmainjcb
ShortcutWithArgument: C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsChrome Distant Desktop.lnk -> C:Program Information (x86)GoogleChromeApplicationchrome.exe (Google LLC) -> –profile-directory=Default –app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp
ShortcutWithArgument: C:UsersMichaelAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsGoogle Hold – Notes and Lists.lnk -> C:Program Information (x86)GoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=Default –app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
==================== Loaded Modules (Whitelisted) =============
2020-07-02 23:05 – 2020-07-02 23:05 – 001951744 _____ () [File not signed] C:Program Information (x86)pCloud DrivepSyncLib.dll
2015-12-05 20:41 – 2015-12-05 20:41 – 000121856 _____ () [File not signed] C:Program FilesSpiderOakONElib_ctypes.pyd
2015-12-05 20:43 – 2015-12-05 20:43 – 001436672 _____ () [File not signed] C:Program FilesSpiderOakONElib_hashlib.pyd
2015-12-05 20:42 – 2015-12-05 20:42 – 000051712 _____ () [File not signed] C:Program FilesSpiderOakONElib_socket.pyd
2015-12-05 20:42 – 2015-12-05 20:42 – 000065024 _____ () [File not signed] C:Program FilesSpiderOakONElib_sqlite3.pyd
2016-06-15 07:50 – 2016-06-15 07:50 – 000024064 _____ () [File not signed] C:Program FilesSpiderOakONElibbcrypt._bcrypt.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000072704 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._fsBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000075264 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._IFBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000074752 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._IIBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000072192 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._IOBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000075776 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._LFBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000075776 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._LLBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000073216 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._LOBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000071680 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._OIBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000073216 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._OLBTree.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000067072 _____ () [File not signed] C:Program FilesSpiderOakONElibBTrees._OOBTree.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000033280 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Cipher.AES.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000059392 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Cipher.DES3.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000009728 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Cipher.XOR.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000011264 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Hash.SHA256.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000010752 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Random.OSRNG.winrandom.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000010752 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Util._counter.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000008192 _____ () [File not signed] C:Program FilesSpiderOakONElibCrypto.Util.strxor.pyd
2016-06-10 12:17 – 2016-06-10 12:17 – 000073216 _____ () [File not signed] C:Program FilesSpiderOakONElibOpenSSL.crypto.pyd
2016-06-10 12:17 – 2016-06-10 12:17 – 000010752 _____ () [File not signed] C:Program FilesSpiderOakONElibOpenSSL.rand.pyd
2016-06-10 12:17 – 2016-06-10 12:17 – 000056320 _____ () [File not signed] C:Program FilesSpiderOakONElibOpenSSL.SSL.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000022016 _____ () [File not signed] C:Program FilesSpiderOakONElibpersistent.cPersistence.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000018432 _____ () [File not signed] C:Program FilesSpiderOakONElibpersistent.cPickleCache.pyd
2016-06-15 07:18 – 2016-06-15 07:18 – 000012288 _____ () [File not signed] C:Program FilesSpiderOakONElibpersistent.TimeStamp.pyd
2016-06-15 06:49 – 2016-06-15 06:49 – 000551424 _____ () [File not signed] C:Program FilesSpiderOakONElibpycurl.pyd
2014-11-09 13:20 – 2014-11-09 13:20 – 002184704 _____ () [File not signed] C:Program FilesSpiderOakONElibPyQt4.QtCore.pyd
2014-11-09 13:26 – 2014-11-09 13:26 – 000262656 _____ () [File not signed] C:Program FilesSpiderOakONElibPyQt4.QtDeclarative.pyd
2014-11-09 13:25 – 2014-11-09 13:25 – 007851008 _____ () [File not signed] C:Program FilesSpiderOakONElibPyQt4.QtGui.pyd
2014-11-09 13:26 – 2014-11-09 13:26 – 000653824 _____ () [File not signed] C:Program FilesSpiderOakONElibPyQt4.QtNetwork.pyd
2014-11-09 13:27 – 2014-11-09 13:27 – 000114176 _____ () [File not signed] C:Program FilesSpiderOakONElibPyQt4.QtSvg.pyd
2014-03-11 07:55 – 2014-03-11 07:55 – 000548864 _____ () [File not signed] C:Program FilesSpiderOakONElibpythoncom27.dll
2014-03-11 07:48 – 2014-03-11 07:48 – 000138240 _____ () [File not signed] C:Program FilesSpiderOakONElibpywintypes27.dll
2015-12-05 20:41 – 2015-12-05 20:41 – 000012800 _____ () [File not signed] C:Program FilesSpiderOakONElibselect.pyd
2016-06-15 06:59 – 2016-06-15 06:59 – 000040960 _____ () [File not signed] C:Program FilesSpiderOakONElibsimplejson._speedups.pyd
2014-11-09 13:13 – 2014-11-09 13:13 – 000100352 _____ () [File not signed] C:Program FilesSpiderOakONElibsip.pyd
2019-08-30 09:28 – 2019-08-30 09:28 – 000013824 _____ () [File not signed] C:Program FilesSpiderOakONElibspideroak_version_matcher.pyd
2015-12-05 20:42 – 2015-12-05 20:42 – 000612864 _____ () [File not signed] C:Program FilesSpiderOakONElibsqlite3.dll
2016-06-15 07:00 – 2016-06-15 07:00 – 000007680 _____ () [File not signed] C:Program FilesSpiderOakONElibtwisted.protocols._c_urlarg.pyd
2016-06-15 07:00 – 2016-06-15 07:00 – 000006656 _____ () [File not signed] C:Program FilesSpiderOakONElibtwisted.python._initgroups.pyd
2015-12-05 20:42 – 2015-12-05 20:42 – 000693248 _____ () [File not signed] C:Program FilesSpiderOakONElibunicodedata.pyd
2014-03-11 07:51 – 2014-03-11 07:51 – 000130048 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32api.pyd
2014-03-11 08:01 – 2014-03-11 08:01 – 000522752 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32com.shell.shell.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000055296 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32console.pyd
2014-03-11 07:49 – 2014-03-11 07:49 – 000023040 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32event.pyd
2014-03-11 07:51 – 2014-03-11 07:51 – 000064000 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32evtlog.pyd
2014-03-11 07:49 – 2014-03-11 07:49 – 000149504 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32file.pyd
2014-03-11 07:51 – 2014-03-11 07:51 – 000223744 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32gui.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000048128 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32inet.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000027648 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32pipe.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000045056 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32process.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000136192 _____ () [File not signed] C:Program FilesSpiderOakONElibwin32security.pyd
2016-06-15 07:00 – 2016-06-15 07:00 – 000024576 _____ () [File not signed] C:Program FilesSpiderOakONElibzope.interface._zope_interface_coptimizations.pyd
2014-03-11 07:55 – 2014-03-11 07:55 – 000548864 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libpythoncom27.dll
2014-03-11 07:48 – 2014-03-11 07:48 – 000138240 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libpywintypes27.dll
2014-03-11 07:51 – 2014-03-11 07:51 – 000130048 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32api.pyd
2014-03-11 08:02 – 2014-03-11 08:02 – 000125952 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32com.propsys.propsys.pyd
2014-03-11 08:01 – 2014-03-11 08:01 – 000522752 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32com.shell.shell.pyd
2014-03-11 07:49 – 2014-03-11 07:49 – 000023040 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32event.pyd
2014-03-11 07:51 – 2014-03-11 07:51 – 000064000 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32evtlog.pyd
2014-03-11 07:49 – 2014-03-11 07:49 – 000149504 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32file.pyd
2014-03-11 07:51 – 2014-03-11 07:51 – 000223744 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32gui.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000027648 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32pipe.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000045056 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32process.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000136192 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32security.pyd
2014-03-11 07:50 – 2014-03-11 07:50 – 000017920 _____ () [File not signed] C:Program FilesSpiderOakONEshell_extension_libwin32trace.pyd
2016-06-09 18:33 – 2016-06-09 18:33 – 000174080 _____ () [File not signed] C:Program FilesSpiderOakONEstylesfusion.dll
2019-12-07 04:55 – 2019-12-07 04:55 – 001322496 _____ () [File not signed] C:Program FilesWindowsAppsAppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6cttGCP.ML.BackgroundSysTrayx64e_sqlite3.dll
2020-04-17 23:53 – 2020-04-17 23:53 – 000165376 _____ () [File not signed] C:Program FilesWindowsAppsDolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220DAXRPCClient.dll
2020-04-17 23:53 – 2020-04-17 23:53 – 037219328 _____ () [File not signed] C:Program FilesWindowsAppsDolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220DolbyAccess.dll
2020-04-04 00:28 – 2020-04-04 00:28 – 001165824 _____ () [File not signed] C:Program FilesWindowsAppsDolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220e_sqlite3.dll
2014-06-27 08:09 – 2014-06-27 08:09 – 000032768 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEimageformatsqgif4.dll
2014-06-27 08:10 – 2014-06-27 08:10 – 000034304 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEimageformatsqico4.dll
2014-06-27 08:09 – 2014-06-27 08:09 – 000239104 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEimageformatsqjpeg4.dll
2014-06-27 08:09 – 2014-06-27 08:09 – 000278528 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEimageformatsqmng4.dll
2014-06-27 08:09 – 2014-06-27 08:09 – 000025600 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEimageformatsqsvg4.dll
2014-06-27 04:40 – 2014-06-27 04:40 – 003194880 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtCore4.dll
2014-06-27 05:28 – 2014-06-27 05:28 – 003321856 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtDeclarative4.dll
2014-06-27 04:56 – 2014-06-27 04:56 – 010674688 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtGui4.dll
2014-06-27 04:42 – 2014-06-27 04:42 – 001334784 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtNetwork4.dll
2014-06-27 05:18 – 2014-06-27 05:18 – 001528832 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtScript4.dll
2014-06-27 04:42 – 2014-06-27 04:42 – 000250368 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtSql4.dll
2014-06-27 05:06 – 2014-06-27 05:06 – 000352768 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtSvg4.dll
2014-06-27 05:03 – 2014-06-27 05:03 – 003722752 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONElibQtXmlPatterns4.dll
2014-06-27 04:40 – 2014-06-27 04:40 – 000468480 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:Program FilesSpiderOakONEQtXml4.dll
2019-01-24 22:09 – 2018-12-30 00:00 – 000077824 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll
2020-06-09 09:01 – 2020-06-09 09:01 – 039780864 _____ (Intel) [File not signed] C:Program FilesWindowsAppsAppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6cttIGCC.dll
2016-06-15 08:07 – 2016-06-15 08:07 – 000475136 _____ (libsodium contributors) [File not signed] C:Program FilesSpiderOakONElibsodium.DLL
2015-07-02 17:44 – 2015-07-02 17:44 – 000057344 _____ (Open Supply Software program group LGPL) [File not signed] C:Program Information (x86)pCloud DrivepthreadVSE2.dll
2019-08-30 09:28 – 2019-08-30 09:28 – 003392512 _____ (Python Software program Basis) [File not signed] C:Program FilesSpiderOakONEPYTHON27.DLL
2020-06-23 20:06 – 2020-04-05 18:14 – 001662976 _____ (Robert Simpson, et al.) [File not signed] C:Program Information (x86)LenovoVantageService3.3.61.0x64SQLite.Interop.dll
2020-04-13 10:01 – 2020-04-13 10:01 – 001547776 _____ (Robert Simpson, et al.) [File not signed] C:Program FilesSyncplicitySQLite.Interop.dll
2020-07-15 19:21 – 2020-04-05 18:36 – 001343488 _____ (Robert Simpson, et al.) [File not signed] C:ProgramDataLenovoiMControllerPluginsGenericMessagingPluginx86SQLite.Interop.dll
2019-08-30 09:28 – 2019-08-30 09:28 – 000030720 _____ (SpiderOakONE) [File not signed] C:Program FilesSpiderOakONEshell_extension.dll
2020-06-20 06:55 – 2020-04-09 09:17 – 000944840 _____ (SQLite Improvement Crew) [File not signed] C:ProgramDataLenovoiMControllerPluginsLenovoWiFiSecurityPluginx86x86e_sqlite3.dll
2020-04-13 10:04 – 2020-04-13 10:04 – 000635904 _____ (Syncplicity LLC.) [File not signed] C:Program FilesSyncplicitySyncplicityShellExt.dll
2016-06-20 09:22 – 2016-06-20 09:22 – 001660928 _____ (The OpenSSL Mission, hxxp://www.openssl.org/) [File not signed] C:Program FilesSpiderOakONElibLIBEAY32.dll
2016-06-20 09:23 – 2016-06-20 09:23 – 000332288 _____ (The OpenSSL Mission, hxxp://www.openssl.org/) [File not signed] C:Program FilesSpiderOakONElibSSLEAY32.dll
==================== Alternate Information Streams (Whitelisted) ========
(If an entry is included within the fixlist, solely the ADS might be eliminated.)
AlternateDataStreams: C:UsersMichaelDesktopFRST64.exe:SmartScreen [7]
==================== Secure Mode (Whitelisted) ==================
(If an entry is included within the fixlist, it will likely be faraway from the registry. The “AlternateShell” might be restored.)
HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService => “”=”Service”
HKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService => “”=”Service”
==================== Affiliation (Whitelisted) =================
==================== Web Explorer trusted/restricted ==========
(If an entry is included within the fixlist, it will likely be faraway from the registry.)
IE trusted web site: HKUS-1-5-21-1998380166-1583960457-3440313674-1008…sharepoint.com -> hxxps://trademarkit-files.sharepoint.com
==================== Hosts content material: =========================
(If wanted Hosts: directive could possibly be included within the fixlist to reset Hosts.)
2017-09-29 06:46 – 2020-07-19 22:20 – 000000000 _____ C:WINDOWSsystem32driversetchosts
==================== Different Areas ===========================
(At present there is no such thing as a automated repair for this part.)
HKLMSystemCurrentControlSetControlSession ManagerEnvironmentPath -> C:Program Information (x86)IntelIntel® Administration Engine ComponentsiCLS;C:Program FilesIntelIntel® Administration Engine ComponentsiCLS;%SystemRootpercentsystem32;%SystemRoot%;%SystemRootpercentSystem32Wbem;%SYSTEMROOTpercentSystem32WindowsPowerShellv1.0;%SYSTEMROOTpercentSystem32OpenSSH;C:Program Information (x86)IntelIntel® Administration Engine ComponentsDAL;C:Program FilesIntelIntel® Administration Engine ComponentsDAL;C:Program Information (x86)IntelIntel® Administration Engine ComponentsIPT;C:Program FilesIntelIntel® Administration Engine ComponentsIPT;C:Program Information (x86)Calibre2
HKUS-1-5-21-1998380166-1583960457-3440313674-1008Control PanelDesktopWallpaper -> C:UsersMichaelAppDataLocalMicrosoftBingDesktopen-USAppsWallpaper_5386c77076d04cf9a8b5d619b4cba48eVersionIndependentimages60626.jpg
DNS Servers: 192.168.1.1
HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer => (SmartScreenEnabled: )
Home windows Firewall is enabled.
Community Binding:
=============
Ethernet 5: NordVPN LightWeight Firewall -> NordLwf (enabled)
Ethernet 5: Intel® Expertise Entry Filter Driver -> nt_ndisrd (enabled)
Wi-Fi: Intel® Expertise Entry Filter Driver -> nt_ndisrd (enabled)
Wi-Fi: NordVPN LightWeight Firewall -> NordLwf (enabled)
==================== MSCONFIG/TASK MANAGER disabled objects ==
(If an entry is included within the fixlist, it will likely be eliminated.)
HKLM…StartupApprovedRun: => “AdobeAAMUpdater-1.0”
HKLM…StartupApprovedRun: => “AdobeGCInvoker-1.0”
HKLM…StartupApprovedRun: => “Wondershare Helper Compact.exe”
HKLM…StartupApprovedRun: => “MTPW”
HKLM…StartupApprovedRun32: => “Acrobat Assistant 8.0”
HKLM…StartupApprovedRun32: => “EPSON_UD_START”
HKLM…StartupApprovedRun32: => “MTSM”
HKLM…StartupApprovedRun32: => “Wondershare Helper Compact.exe”
HKUS-1-5-21-1998380166-1583960457-3440313674-1008…StartupApprovedStartupFolder: => “Ship to OneNote.lnk”
==================== FirewallRules (Whitelisted) ================
(If an entry is included within the fixlist, it will likely be faraway from the registry. The file won’t be moved until listed individually.)
FirewallRules: [{AADC0B0F-7E10-4DF9-8B45-32A075618063}] => (Permit) C:UsersMichaelAppDataLocalApowersoftApowersoft On-line LauncherApowersoft On-line Launcher.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{F5EEBBE9-93B5-4F5F-BB2A-00CEECB0BBE4}] => (Permit) C:UsersMichaelAppDataLocalApowersoftApowersoft On-line LauncherApowersoft On-line Launcher.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{FD3034B9-A1A6-4793-8631-92257277BB47}] => (Permit) C:Program Information (x86)LenovoSystem Updateuncserver.exe (Lenovo -> )
FirewallRules: [{C7ABD427-E204-456E-8051-7D7999861308}] => (Permit) C:Program Information (x86)LenovoSystem Updateuncserver.exe (Lenovo -> )
FirewallRules: [{7F920F4C-5CA9-4C00-AE14-F2055FA6A6E2}] => (Permit) C:UsersMichaelAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{060650F6-2BE0-4994-9C9F-A626759D8CA1}] => (Permit) C:Program FilesCCleanerCCUpdate.exe (Piriform Software program Ltd -> Piriform Software program Ltd)
FirewallRules: [{0ABE52C4-CAF7-4F8C-9EC0-A8054C60C2E5}] => (Permit) C:Program FilesCCleanerCCUpdate.exe (Piriform Software program Ltd -> Piriform Software program Ltd)
FirewallRules: [{758B469D-133C-4A43-B07C-0F1396204BAC}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720BinHPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{55FAD35C-11BA-44BC-8F3C-87621FBA1E2A}] => (Permit) LPort=5357
FirewallRules: [{19BB1A1A-6882-4C90-8F29-A55E760401A9}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720BinDeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{6F161C90-E0B0-43A7-ABE7-E40C1D811CF3}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720binFaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{887E9822-62CF-4D80-BEE2-F1D189541F12}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720binSendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{388F00A5-AF74-4489-B04A-6C335A3CDDCD}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720binDigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{08583F25-E9BC-4EB9-AE65-6DB9ADE7BE52}] => (Permit) C:Program FilesHPHP OfficeJet Professional 8720binFaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{67E95107-7799-40E3-95C5-F3527DA18687}] => (Permit) C:Program FilesWindowsAppsMicrosoft.Workplace.Desktop.Outlook_16010.9226.2156.0_x86__8wekyb3d8bbweOffice16OUTLOOK.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{15F1817C-EEE2-4D19-870A-A44EE78ACE4B}] => (Permit) C:Program FilesCCleanerCCUpdate.exe (Piriform Software program Ltd -> Piriform Software program Ltd)
FirewallRules: [{450A34D9-858E-4A11-B57A-00521784EF6B}] => (Permit) C:Program FilesCCleanerCCUpdate.exe (Piriform Software program Ltd -> Piriform Software program Ltd)
FirewallRules: [{89A7AFC7-636D-41AA-BCC4-D0C667C67909}] => (Permit) C:Program Information (x86)Microsoft OfficerootOffice16Lync.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{69890062-CF4F-4023-827D-1226B48F9FDC}] => (Permit) C:Program Information (x86)Microsoft OfficerootOffice16Lync.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{7078E03C-27E5-4740-A6FE-81ADA86F16DD}] => (Permit) C:Program Information (x86)Microsoft OfficerootOffice16UcMapi.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{52A2D98D-FCB4-41C0-A8B2-A29B049DE454}] => (Permit) C:Program Information (x86)Microsoft OfficerootOffice16UcMapi.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{0FF81C94-B065-4E9F-AB0F-B39C18D2AA37}] => (Permit) C:Program FilesFreeDownloadManager.ORGFree Obtain Managerfdm.exe (FreeDownloadManager.org) [File not signed]
FirewallRules: [{50442975-1961-4E0C-B38D-59ABFB3C4848}] => (Permit) C:Program FilesFreeDownloadManager.ORGFree Obtain Managerfdm.exe (FreeDownloadManager.org) [File not signed]
FirewallRules: [{0DD29CFE-A6EB-4821-A01D-5C58C1263191}] => (Permit) C:Program Information (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{43307CCB-D824-464A-A418-219B4736D6B3}] => (Permit) C:Program Information (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{BD90D9D0-637F-496D-938A-7CB26CB99E5E}] => (Permit) C:Program Information (x86)pCloud DrivepCloud.exe (pCloud AG -> pCloud AG)
FirewallRules: [{2939DBCE-CF10-4F21-91AF-5ADC7D685E6B}] => (Permit) C:Program Information (x86)SplashtopSplashtop RemoteClient for STBwbs-agentprojectsviewitwbs_agent.exe (Splashtop Inc. -> Node.js)
FirewallRules: [{1184D62C-4C7C-4166-9DC9-202F90DB5C96}] => (Permit) C:Program Information (x86)Microsoft OfficerootOffice16outlook.exe (Microsoft Company -> Microsoft Company)
FirewallRules: [{A24A79B9-0525-4F88-A816-10CFEC622A49}] => (Permit) C:Program Information (x86)GoogleChrome Distant Desktop85.0.4183.6remoting_host.exe (Google LLC -> Google Inc.)
FirewallRules: [{41C0F808-8FAA-4E5D-AC36-57746393B6A3}] => (Permit) C:Program Information (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{0C67787B-071A-4E40-83EF-A6E7F5E76608}] => (Permit) C:Program Information (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{012D4833-305A-4689-A55E-9838FA5946E5}] => (Permit) C:Program Information (x86)GoogleChromeApplicationchrome.exe (Google LLC -> Google LLC)
FirewallRules: [{E8971897-BDF0-4559-B52B-95BBF9CA96AE}] => (Permit) C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5cSkypeSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{081E2673-F94A-431A-85D7-686C19081C89}] => (Permit) C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5cSkypeSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{7F638517-DA92-44E5-AC0E-D69E6BDFAA7E}] => (Permit) C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5cSkypeSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{90CD3EDA-588E-401D-9883-A5F2D849F92F}] => (Permit) C:Program FilesWindowsAppsMicrosoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5cSkypeSkype.exe (Skype Software program Sarl -> Skype Applied sciences S.A.)
FirewallRules: [{072A8FE0-D195-466D-87E5-0CEF4FA29873}] => (Permit) C:Program FilesMiniTool ShadowMakerAgentService.exe => No File
FirewallRules: [{0C036DAA-B0E7-408A-88A5-3A616829BEDB}] => (Permit) C:Program FilesMiniTool ShadowMakerAgentService.exe => No File
FirewallRules: [{51F23AD2-A390-444E-ADEF-FA335190E880}] => (Permit) C:Program FilesMiniTool ShadowMakerAgentService.exe => No File
FirewallRules: [{658F5A55-A307-4BB8-A211-956D36CA1017}] => (Permit) C:Program FilesMiniTool ShadowMakerAgentService.exe => No File
FirewallRules: [{20FBBAF9-67DA-42D8-A4B1-504133A7EB6D}] => (Permit) C:Program Information (x86)SplashtopSplashtop RemoteServerSRManager.exe (Splashtop Inc. -> Splashtop Inc.)
==================== Restore Factors =========================
14-07-2020 19:34:04 Scheduled Checkpoint
15-07-2020 20:27:44 Restore Level Created by FRST
16-07-2020 03:15:46 Home windows Modules Installer
16-07-2020 04:05:18 Home windows Modules Installer
16-07-2020 06:03:26 Home windows Modules Installer
16-07-2020 06:07:29 Home windows Modules Installer
18-07-2020 10:47:00 Restore Level Created by FRST
19-07-2020 13:37:04 Put in Macrium Replicate Free Version
==================== Defective System Supervisor Gadgets ============
==================== Occasion log errors: ========================
Software errors:
==================
Error: (07/19/2020 10:26:35 PM) (Supply: Software Error) (EventID: 1000) (Person: )
Description: Faulting software identify: OfficeC2RClient.exe, model: 16.0.13001.20262, time stamp: 0x5ef1f593
Faulting module identify: ucrtbase.dll, model: 10.0.19041.1, time stamp: 0xbd1e2564
Exception code: 0xc0000409
Fault offset: 0x000000000007284e
Faulting course of id: 0x20c4
Faulting software begin time: 0x01d65e5643cdd252
Faulting software path: C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe
Faulting module path: C:WINDOWSSystem32ucrtbase.dll
Report Id: 5ed67382-90f3-40d2-9b3a-3e4095c41ad4
Faulting bundle full identify:
Faulting package-relative software ID:
Error: (07/19/2020 10:21:36 PM) (Supply: FidoAppletDLL) (EventID: 0) (Person: )
Description: Occasion-ID 0
Error: (07/19/2020 10:20:46 PM) (Supply: Software Error) (EventID: 1000) (Person: )
Description: Faulting software identify: IntelAudioService.exe, model: 1.0.160.0, time stamp: 0x5c06849b
Faulting module identify: unknown, model: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00007ff8ffb91aae
Faulting course of id: 0x17fc
Faulting software begin time: 0x01d65e558333efbc
Faulting software path: C:WINDOWSsystem32cAVSIntel® Audio ServiceIntelAudioService.exe
Faulting module path: unknown
Report Id: 47b4b937-cf1a-4bb7-9320-711272e900b0
Faulting bundle full identify:
Faulting package-relative software ID:
Error: (07/19/2020 10:20:43 PM) (Supply: .NET Runtime) (EventID: 1026) (Person: )
Description: Software: IntelAudioService.exe
Framework Model: v4.0.30319
Description: The method was terminated attributable to an unhandled exception.
Exception Data: System.NullReferenceException
Error: (07/19/2020 10:09:25 PM) (Supply: FidoAppletDLL) (EventID: 0) (Person: )
Description: Occasion-ID 0
Error: (07/19/2020 10:08:37 PM) (Supply: Software Error) (EventID: 1000) (Person: )
Description: Faulting software identify: IntelAudioService.exe, model: 1.0.160.0, time stamp: 0x5c06849b
Faulting module identify: unknown, model: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00007ffb550f1aae
Faulting course of id: 0x1aec
Faulting software begin time: 0x01d65e53ba899377
Faulting software path: C:WINDOWSsystem32cAVSIntel® Audio ServiceIntelAudioService.exe
Faulting module path: unknown
Report Id: 1115fdd3-b6a4-4924-8312-03c11d1586a6
Faulting bundle full identify:
Faulting package-relative software ID:
Error: (07/19/2020 10:08:09 PM) (Supply: .NET Runtime) (EventID: 1026) (Person: )
Description: Software: IntelAudioService.exe
Framework Model: v4.0.30319
Description: The method was terminated attributable to an unhandled exception.
Exception Data: System.NullReferenceException
Error: (07/19/2020 09:41:43 PM) (Supply: ESENT) (EventID: 485) (Person: )
Description: svchost (6888,D,0) SRUJet: An try to delete the file “C:WINDOWSsystem32SRUSRU05FE6.log” failed with system error 5 (0x00000005): “Entry is denied. “. The delete file operation will fail with error -1032 (0xfffffbf8).
System errors:
=============
Error: (07/19/2020 10:20:42 PM) (Supply: Service Management Supervisor) (EventID: 7009) (Person: )
Description: A timeout was reached (45000 milliseconds) whereas ready for the BingDesktopUpdate service to attach.
Error: (07/19/2020 10:20:37 PM) (Supply: EventLog) (EventID: 6008) (Person: )
Description: The earlier system shutdown at 10:07:22 PM on 7/19/2020 was surprising.
Error: (07/19/2020 10:19:06 PM) (Supply: DCOM) (EventID: 10010) (Person: YOGA_920)
Description: The server microsoft.windowscommunicationsapps_16005.12827.20560.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca didn’t register with DCOM inside the required timeout.
Error: (07/19/2020 10:16:11 PM) (Supply: Service Management Supervisor) (EventID: 7009) (Person: )
Description: A timeout was reached (30000 milliseconds) whereas ready for the Intel® On-line Join Software program Asset Supervisor service to attach.
Error: (07/19/2020 10:09:14 PM) (Supply: Service Management Supervisor) (EventID: 7000) (Person: )
Description: The nordvpn-service service failed to begin because of the following error:
The service didn’t reply to the beginning or management request in a well timed vogue.
Error: (07/19/2020 10:09:14 PM) (Supply: Service Management Supervisor) (EventID: 7009) (Person: )
Description: A timeout was reached (45000 milliseconds) whereas ready for the nordvpn-service service to attach.
Error: (07/19/2020 10:07:57 PM) (Supply: Service Management Supervisor) (EventID: 7009) (Person: )
Description: A timeout was reached (45000 milliseconds) whereas ready for the BingDesktopUpdate service to attach.
Error: (07/19/2020 10:07:45 PM) (Supply: BugCheck) (EventID: 1001) (Person: )
Description: The pc has rebooted from a bugcheck. The bugcheck was: 0x0000019c (0x0000000000000050, 0xffffb20e5ae2b080, 0x0000000000000000, 0x0000000000000000). A dump was saved in: C:WINDOWSMEMORY.DMP. Report Id: fa264672-ced9-4f62-85d5-309032f1d6b4.
CodeIntegrity:
===================================
Date: 2020-07-19 22:42:02.0500000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:42:01.9890000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:47.5470000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:47.3250000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:47.2250000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:46.5030000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:43.4320000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
Date: 2020-07-19 22:36:43.3110000Z
Description:
Code Integrity decided {that a} course of (DeviceHarddiskVolume3Program Information (x86)MicrosoftEdgeApplicationmsedge.exe) tried to load DeviceHarddiskVolume3Program FilesMalwarebytesAnti-Malwarembae64.dll that didn’t meet the Microsoft signing degree necessities.
==================== Reminiscence data ===========================
BIOS: LENOVO 5NCN41WW 09/12/2018
Motherboard: LENOVO LNVNB161216
Processor: Intel® Core i7-8550U CPU @ 1.80GHz
Proportion of reminiscence in use: 66%
Whole bodily RAM: 8033.35 MB
Accessible bodily RAM: 2725.51 MB
Whole Digital: 16066.7 MB
Accessible Digital: 8998.51 MB
==================== Drives ================================
Drive c: (Home windows) (Fastened) (Whole:237.23 GB) (Free:12.25 GB) NTFS
Drive p: (pCloud Drive) (Detachable) (Whole:2048 GB) (Free:1798.84 GB) exFAT
Drive s: (Syncplicity) (Community) (Whole:10485760 GB) (Free:10485760 GB) NTFS
?Quantity{22705ef7-9b59-462f-8f51-4e4cd68017c9} (WINRE_DRV) (Fastened) (Whole:0.98 GB) (Free:0.46 GB) NTFS
?Quantity{778d888e-39d2-4198-b905-80a7c8bec880} (SYSTEM_DRV) (Fastened) (Whole:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Desk ====================
==========================================================
Disk: 0 (Dimension: 238.5 GB) (Disk ID: 7114A794)
Partition: GPT.
==================== Finish of Addition.txt =======================