Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-09-2021 02 Ran by User (administrator) on DELL (Dell Inc. Inspiron 5547) (25-09-2021 19:23:15) Running from C:\Users\User\Downloads Loaded Profiles: User Platform: Windows 10 Home Version 21H1 19043.1237 (X64) Language: English (United States) Default browser: Chrome Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366400.inf_amd64_4021c2cb607d5b92\B366217\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366400.inf_amd64_4021c2cb607d5b92\B366217\atiesrxx.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Corel Corporation -> Mindjet) C:\Program Files\MindManager 21\MmReminderService.exe (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe (Dell Inc -> Dell Inc.) C:\Program Files (x86)\Dell\UpdateService\Service\InvColPC.exe (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe (DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCD\SupportAssist\Dsapi.exe (Pervasive Software, Inc. -> ) C:\PVSW\bin\w3dbsmgr.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe <==== ATTENTION (zero byte File/Folder) C:\Windows\Temp\C9632CF058AE4321B6B0B5EA39B710FE <==== ATTENTION (zero byte File/Folder) C:\Windows\Temp\inv665C_tmp\invcol.exe <==== ATTENTION (zero byte File/Folder) C:\Windows\Temp\inv665C_tmp\TBT_Dock_Firmware\GetDockVer32W.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2015-08-04] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-04] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [165928 2021-08-31] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-02-26] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [DpTsClnt] => Regsvr32.exe /s "C:\Program Files\DigitalPersona\Bin\DpTsClnt.dll" HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3955888 2015-09-01] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [340440 2021-04-16] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [MMReminderService] => C:\Program Files\MindManager 21\MMReminderService.exe [127808 2020-09-18] (Corel Corporation -> Mindjet) HKLM-x32\...\Run: [Zwift] => C:\Program Files (x86)\Zwift\ZwiftLauncher.exe [18036608 2019-09-05] (Zwift, Inc. -> Zwift, Inc) [File not signed] HKU\S-1-5-21-139916497-3742323812-500074900-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30871536 2019-09-18] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-139916497-3742323812-500074900-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\User\AppData\Local\Microsoft\Teams\Update.exe [2452664 2020-10-30] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-139916497-3742323812-500074900-1001\...\MountPoints2: {06d52b93-0120-11ec-83bf-34de1a1ceec6} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-21-139916497-3742323812-500074900-1001\...\MountPoints2: {12b50b74-bc93-11eb-83a0-34de1a1ceec6} - "D:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\KOAYTJ_P: C:\Windows\System32\spool\prtprocs\x64\KOAYTJ_P.DLL [92680 2019-05-15] (Microsoft Windows Hardware Compatibility Publisher -> Monotype Imaging Inc.) HKLM\...\Print\Monitors\C364SeriesPCL Language Monitor: C:\WINDOWS\system32\KOAYTJ_L.DLL [25600 2019-05-15] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\CutePDF Writer Monitor v3.2: C:\WINDOWS\system32\cpwmon64_v32.dll [90096 2017-05-26] (Acro Software Inc -> ) HKLM\...\Print\Monitors\HP c111 Status Monitor: C:\WINDOWS\system32\hpinkstsc111LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\93.0.4577.82\Installer\chrmstp.exe [2021-09-15] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{90EF4A5E-85DB-4825-96F5-1AB93C2A8EEB}] -> C:\Program Files\MindManager 21\sys\MmInternetExplorerActiveSetup.vbs Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Pervasive.SQL Workgroup Engine.lnk [2018-11-05] ShortcutTarget: Pervasive.SQL Workgroup Engine.lnk -> C:\PVSW\bin\w3dbsmgr.exe (Pervasive Software, Inc. -> ) Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 1510 series.lnk [2021-07-12] ShortcutAndArgument: Monitor Ink Alerts - HP Deskjet 1510 series.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN42H1N1GQ05XJ;CONNECTION=USB;MONITOR=1; GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {01DBE1D9-48AD-458A-9E51-9C6EE22427E5} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21857672 2021-09-10] (Microsoft Corporation -> Microsoft Corporation) Task: {169570C8-9C5B-434B-8E84-123F79B06BB5} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {19C9EF0B-523E-4B0C-8FD6-4B101D2FADEF} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [62752 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {22A151E3-2028-452A-81C5-4E9AC45F22EA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113536 2021-09-18] (Microsoft Corporation -> Microsoft Corporation) Task: {329CF401-30DF-4164-9A94-76C144CBAECC} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {33D3B01E-52B0-4595-965B-B1A0EFA2CFD6} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40432 2019-09-18] (Garmin International, Inc. -> ) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {3EC76EC2-A879-4698-A706-B06CE5A26824} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113536 2021-09-18] (Microsoft Corporation -> Microsoft Corporation) Task: {4C1A0A49-AC5E-4FBE-BD9C-C7ED85BF4D03} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.) Task: {565F1CE8-191F-4B75-9047-81CC89CD0F1D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {61EE472C-DE86-49B4-8C07-291DDD9C7770} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3075936 2021-07-21] (Intel Corporation -> Intel Corporation) Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {72EE46E0-9180-4852-853F-506F42BB48DA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {7F83C63E-B10A-4005-8ACA-18AE2A6D9A07} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3075936 2021-07-21] (Intel Corporation -> Intel Corporation) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {87AA307C-44ED-4E20-905D-AE8D24F3CCD2} - System32\Tasks\PCDBackgroundMonSetup => C:\Program Files\My Dell\pcdrcui.exe Task: {93880007-352F-4888-A063-6F9FDD330BF6} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-04] (Realtek Semiconductor Corp -> Realtek Semiconductor) Task: {A49B7CE2-3FA0-4F19-8A25-D983881DAF51} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\sedlauncher.exe Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {E1C0E00C-2AB7-4A90-9F8F-31350DBD2DFE} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1060384 2021-08-20] (Dell Inc -> Dell Inc.) Task: {E96B2EDB-8935-4C8A-9E11-7ACEF70BDB6B} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [268576 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {F29DD711-5D4E-41C3-90AD-1E2D4D56BCD1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21857672 2021-09-10] (Microsoft Corporation -> Microsoft Corporation) Task: {F661BE9D-3ADB-428D-A634-37A6F0649315} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-23] (Google Inc -> Google Inc.) Task: {F7B853F2-1FBA-42B2-9AC0-739780551F0C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-23] (Google Inc -> Google Inc.) Task: {FAA85201-D5BB-4A6D-8A83-CDF93A0F797B} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1155480 2021-09-18] (Microsoft Corporation -> Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{13cd96fe-9e75-48a6-b2ca-8b5167cce406}: [DhcpNameServer] 10.0.0.2 Tcpip\..\Interfaces\{57c85a79-2acc-4aa7-920c-605db54869d9}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6c9d32de-5335-4fa2-8a34-f65bd46935e2}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{6c9d32de-5335-4fa2-8a34-f65bd46935e2}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{b18e01f8-0bfc-4d6f-acf7-c90343f36464}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found] Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found] Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found] Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found] Edge DefaultProfile: Default Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-25] Edge HomePage: Default -> hxxp://www.google.com/ Edge Extension: (Alexa Traffic Rank) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2020-05-27] Edge Extension: (goo.gl URL Shortener (Unofficial)) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2020-04-23] Edge Extension: (True Key™ by McAfee) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nbeldjopgciegccabfohnefghfpinncn [2020-12-17] Edge Extension: (AdBlock — best ad blocker) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-09-14] Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-09-25] FireFox: ======== FF DefaultProfile: eys3jtko.default-1536150662053 FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\eys3jtko.default-1536150662053 [2021-09-22] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-18] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-18] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-09-09] (Adobe Inc. -> Adobe Systems Inc.) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2021-09-25] Chrome: ======= CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2021-09-25] CHR Notifications: Default -> hxxps://178887483213093.eu.webpush.freshchat.com; hxxps://book.qantas.com; hxxps://dnschecker.org; hxxps://elite-cv.com; hxxps://homes.trovit.co.za; hxxps://messages.google.com; hxxps://petcube.com; hxxps://www.banggood.com; hxxps://www.indiatoday.in; hxxps://www.instagram.com; hxxps://www.makro.co.za; hxxps://www.netflix.com; hxxps://www.newsbreak.com; hxxps://www.oberlo.com; hxxps://www.pricecheck.co.za; hxxps://www.quickresults.net; hxxps://www.radissonhotels.com; hxxps://www.reddit.com; hxxps://www.shawacademy.com; hxxps://www.tomsguide.com; hxxps://www.travelstart.co.za; hxxps://www.youtube.com CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.sweet-page.com/?type=hp&ts=1410506580&from=cor&uid=HitachiXHTS545050B9SA00_091120PBG401Q7CT9S9VX","hxxps://www.google.com/" CHR Extension: (Slides) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15] CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15] CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-20] CHR Extension: (DuckDuckGo) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2021-09-03] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-23] CHR Extension: (Alexa Traffic Rank) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2020-05-24] CHR Extension: (Adobe Acrobat) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-08-06] CHR Extension: (Sheets) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15] CHR Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-24] CHR Extension: (AdBlock — best ad blocker) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-09-13] CHR Extension: (TweetDeck by Twitter) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl [2017-05-23] CHR Extension: (Auto History Wipe) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdgnienkeomlaeeojaibeicglpoaadnj [2020-11-11] CHR Extension: (goo.gl URL Shortener (Unofficial)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2017-07-24] CHR Extension: (Zoom Scheduler) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgjfgplpablkjnlkjmjdecgdpfankdle [2021-08-31] CHR Extension: (True Key™ by McAfee) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbeldjopgciegccabfohnefghfpinncn [2020-12-14] CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24] CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\System Profile [2021-06-01] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9179528 2021-09-10] (Microsoft Corporation -> Microsoft Corporation) R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [426528 2021-08-02] (Dell Technologies Inc. -> Dell Technologies Inc.) R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3835424 2021-08-02] (Dell Technologies Inc. -> Dell Technologies Inc.) R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [452640 2021-08-02] (Dell Technologies Inc. -> Dell Technologies Inc.) R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCD\SupportAssist\Dsapi.exe [1020584 2021-07-28] (PC-Doctor, Inc. -> PC-Doctor, Inc.) R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38600 2021-07-20] (Dell Inc -> ) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3079464 2021-08-31] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3079464 2021-08-31] (ESET, spol. s r.o. -> ESET) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-08-19] (HP Inc. -> HP Inc.) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39968 2021-08-20] (Dell Inc -> Dell Inc.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13172752 2020-01-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-14] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-14] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_8e2568524f674315\amdsafd.sys [100768 2021-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 DBUtilDrv2; C:\WINDOWS\System32\drivers\DBUtilDrv2.sys [24968 2021-09-25] (Microsoft Windows Hardware Compatibility Publisher -> Dell) R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [43400 2021-07-28] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies) S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation) R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [10752 2013-01-24] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [169424 2021-08-31] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [123472 2021-08-31] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15824 2021-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [194776 2021-08-31] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [43904 2021-08-31] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [70232 2021-08-31] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [107456 2021-08-31] (ESET, spol. s r.o. -> ESET) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 libusb0; C:\WINDOWS\System32\drivers\libusb0.sys [52832 2012-01-17] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35344 2018-06-27] (CACE Technologies, Inc. -> CACE Technologies, Inc.) S3 PcaSp50; C:\WINDOWS\System32\Drivers\PcaSp50.sys [45624 2009-08-24] (PRINTING COMMUNICATIONS ASSOC., INC. -> Printing Communications Assoc., Inc. (PCAUSA)) S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2020-08-21] (Daniel Terhell -> Resplendence Software Projects Sp.) S3 rspWhySoSlow; C:\WINDOWS\System32\DRIVERS\rspWhy64.sys [28928 2016-12-17] (Daniel Terhell -> Resplendence Software Projects Sp.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-12-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429296 2020-12-14] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2021-09-25 19:23 - 2021-09-25 19:23 - 000024968 _____ (Dell) C:\WINDOWS\system32\Drivers\DBUtilDrv2.sys 2021-09-25 19:19 - 2021-09-25 19:19 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-09-25 09:55 - 2021-09-25 09:55 - 002304512 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe 2021-09-24 15:04 - 2021-09-24 15:04 - 000001966 _____ C:\Users\User\Desktop\Zoom.lnk 2021-09-24 15:04 - 2021-09-24 15:04 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2021-09-23 10:29 - 2021-09-23 11:14 - 000001076 _____ C:\Users\User\Desktop\WhoCrashed.lnk 2021-09-23 10:29 - 2021-09-23 10:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed 2021-09-23 10:29 - 2021-09-23 10:29 - 000000000 ____D C:\Program Files\WhoCrashed 2021-09-23 09:36 - 2021-09-23 09:37 - 190186360 _____ (Intel(R) Corporation) C:\Users\User\Downloads\wifi_21.10.1_proset64_win10 (1).exe 2021-09-23 09:35 - 2021-09-23 09:35 - 010692312 _____ (Resplendence Software Projects Sp. ) C:\Users\User\Downloads\whocrashedSetup.exe 2021-09-23 09:15 - 2021-09-23 09:15 - 000609892 _____ C:\Users\User\Downloads\wc044_george_2015_sep-lg_profile.pdf 2021-09-22 18:57 - 2021-09-22 18:57 - 000223559 _____ C:\Users\User\Downloads\andBeyond-Bateleur-House-Group-Financial-Accountant-web (4).pdf 2021-09-22 13:10 - 2021-09-22 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon 2021-09-22 13:10 - 2021-09-22 13:10 - 000000000 ____D C:\Program Files\LatencyMon 2021-09-22 13:10 - 2020-08-21 09:36 - 000026368 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys 2021-09-22 13:07 - 2021-09-22 13:07 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\User\Downloads\LatencyMon (1).exe 2021-09-22 13:01 - 2021-09-22 13:01 - 000000839 _____ C:\Users\Public\Desktop\Speccy.lnk 2021-09-22 13:01 - 2021-09-22 13:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2021-09-22 13:01 - 2021-09-22 13:01 - 000000000 ____D C:\Program Files\Speccy 2021-09-22 13:00 - 2021-09-22 13:00 - 008234296 _____ (Piriform Software Ltd) C:\Users\User\Downloads\spsetup132 (1).exe 2021-09-22 12:56 - 2021-09-22 12:56 - 000036618 _____ C:\junk.txt 2021-09-22 12:46 - 2021-09-22 12:46 - 002839416 _____ (Sysinternals - www.sysinternals.com) C:\Users\User\Downloads\procexp (2).exe 2021-09-22 12:18 - 2021-09-22 12:18 - 008474901 _____ (UserBenchmark.com) C:\Users\User\Downloads\UserBenchMark (1).exe 2021-09-22 11:14 - 2021-09-25 09:56 - 000000454 _____ C:\Users\User\Downloads\Fixlog.txt 2021-09-21 17:27 - 2021-09-21 17:27 - 003631811 _____ C:\Users\User\Downloads\52-Ways-to-find-your-gap-in-the-the-market.pdf 2021-09-20 10:26 - 2021-09-25 09:55 - 000000000 ____D C:\Users\User\Downloads\FRST-OlderVersion 2021-09-20 10:25 - 2021-09-25 19:25 - 000000000 ____D C:\FRST 2021-09-19 21:15 - 2021-09-19 21:15 - 000330364 _____ C:\Users\User\Downloads\Afrikaanse Projek GR 6.pdf 2021-09-16 15:12 - 2021-09-16 15:12 - 002968460 _____ C:\Users\User\Downloads\SEP-LG 2020 - WC044 George Municipality-converted.xlsx 2021-09-16 14:30 - 2021-09-16 14:30 - 001243545 _____ C:\Users\User\Downloads\WC044 George 2018 Socio-economic Profile (SEP-LG) F .pdf 2021-09-16 08:49 - 2021-09-16 08:49 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-09-16 08:48 - 2021-09-16 08:48 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-09-15 15:44 - 2021-09-25 10:06 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps 2021-09-15 11:10 - 2021-09-15 11:10 - 001313608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-09-15 11:10 - 2021-09-15 11:10 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-09-15 11:10 - 2021-09-15 11:10 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-09-15 11:10 - 2021-09-15 11:10 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-09-15 11:10 - 2021-09-15 11:10 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx 2021-09-15 11:10 - 2021-09-15 11:10 - 000011355 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-09-15 11:09 - 2021-09-15 11:09 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll 2021-09-15 11:09 - 2021-09-15 11:09 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-09-15 11:09 - 2021-09-15 11:09 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-09-15 11:09 - 2021-09-15 11:09 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-09-15 11:09 - 2021-09-15 11:09 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-09-15 11:09 - 2021-09-15 11:09 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-09-15 11:09 - 2021-09-15 11:09 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-09-15 11:09 - 2021-09-15 11:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2021-09-15 11:08 - 2021-09-15 11:08 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll 2021-09-15 11:08 - 2021-09-15 11:08 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-09-15 11:08 - 2021-09-15 11:08 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-09-15 11:08 - 2021-09-15 11:08 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-09-15 11:08 - 2021-09-15 11:08 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-09-15 11:08 - 2021-09-15 11:08 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-09-15 10:41 - 2021-09-15 10:41 - 000002144 _____ C:\Users\Public\Desktop\MindManager 21.lnk 2021-09-15 10:41 - 2021-09-15 10:41 - 000002063 _____ C:\Users\Public\Desktop\MindManager Snap 21.lnk 2021-09-15 10:41 - 2021-09-15 10:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MindManager 21 2021-09-15 10:40 - 2021-09-16 12:22 - 000000000 ____D C:\Program Files\MindManager 21 2021-09-15 10:40 - 2021-09-15 10:40 - 000000000 ____D C:\ProgramData\Mindjet 2021-09-15 10:30 - 2021-09-15 10:30 - 000000000 ___HD C:\$WinREAgent 2021-09-14 18:58 - 2021-09-15 10:05 - 000000000 ____D C:\Users\User\Downloads\Mindjet MindManager 2021 v21.0.261 (x64) Final + Crack 2021-09-14 16:41 - 2021-09-14 16:41 - 000480086 _____ C:\Users\User\Desktop\Karen DHE.pdf 2021-09-14 16:39 - 2021-09-14 16:39 - 000317125 _____ C:\Users\User\Desktop\Karen ID.pdf 2021-09-14 16:36 - 2021-09-14 16:36 - 001755377 _____ C:\Users\User\Desktop\Karen Application.pdf 2021-09-14 14:28 - 2021-09-14 14:28 - 002839416 _____ (Sysinternals - www.sysinternals.com) C:\Users\User\Downloads\procexp (1).exe 2021-09-14 14:26 - 2021-09-14 14:26 - 002101944 _____ (Malwarebytes) C:\Users\User\Downloads\MBSetup-119967.119967-consumer.exe 2021-09-14 14:25 - 2021-09-14 14:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-09-14 14:25 - 2021-09-14 14:25 - 000000000 ____D C:\Program Files\7-Zip 2021-09-14 14:23 - 2021-09-14 14:23 - 001447178 _____ (Igor Pavlov) C:\Users\User\Downloads\7z1900-x64.exe 2021-09-13 15:54 - 2021-04-19 20:52 - 001865864 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-09-13 15:54 - 2021-04-19 20:52 - 001446528 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-09-13 15:54 - 2021-04-19 20:52 - 001101728 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-09-13 15:54 - 2021-04-19 20:52 - 000954912 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-09-13 15:46 - 2021-09-13 15:46 - 000000000 ____D C:\WINDOWS\{1BC0F99A-3593-4A78-9397-A55D35037A2A} 2021-09-13 15:36 - 2021-08-12 15:19 - 001151992 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys 2021-09-13 15:30 - 2021-09-13 15:34 - 004982207 _____ C:\Users\User\Downloads\Install_Win10_10050_09012021.zip 2021-09-13 15:26 - 2021-09-13 15:26 - 000000414 _____ C:\Users\User\Downloads\fixlist (1).txt 2021-09-13 13:05 - 2021-09-13 13:05 - 000000000 ____D C:\Users\User\AppData\Local\Resplendence 2021-09-13 13:05 - 2016-12-17 20:59 - 000028928 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspWhy64.sys 2021-09-13 13:03 - 2021-09-13 13:03 - 003040528 _____ (Resplendence Software Projects Sp. ) C:\Users\User\Downloads\WhySoSlowSetup.exe 2021-09-13 13:03 - 2021-09-13 13:03 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\User\Downloads\LatencyMon.exe 2021-09-13 12:51 - 2021-09-13 12:52 - 008234296 _____ (Piriform Software Ltd) C:\Users\User\Downloads\spsetup132.exe 2021-09-13 12:45 - 2021-09-22 12:47 - 000036208 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS 2021-09-13 12:44 - 2021-09-13 12:45 - 002839416 _____ (Sysinternals - www.sysinternals.com) C:\Users\User\Downloads\procexp.exe 2021-09-13 12:41 - 2021-09-13 12:44 - 000000000 ____D C:\Users\User\Downloads\bluescreenview 2021-09-13 12:41 - 2021-09-13 12:41 - 000067310 _____ C:\Users\User\Downloads\bluescreenview.zip 2021-09-13 11:16 - 2021-09-13 11:16 - 008474901 _____ (UserBenchmark.com) C:\Users\User\Downloads\UserBenchMark.exe 2021-09-13 08:26 - 2021-09-13 08:26 - 000003918 _____ C:\WINDOWS\system32\Tasks\Dell SupportAssistAgent AutoUpdate 2021-09-13 08:24 - 2021-09-13 08:24 - 000003352 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-139916497-3742323812-500074900-1001 2021-09-13 08:24 - 2021-09-13 08:24 - 000002378 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-09-07 13:05 - 2021-09-07 13:05 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2021-09-07 12:55 - 2021-09-07 12:55 - 000319343 _____ C:\Users\User\Downloads\WILLIAMS RODGER, 20NOV70 , WLEXR4.pdf 2021-09-06 13:59 - 2021-09-06 13:59 - 000128046 _____ C:\Users\User\Downloads\docketReport (3).pdf 2021-09-02 17:42 - 2021-09-02 17:42 - 000001425 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-09-01 09:41 - 2021-09-01 09:41 - 000131871 _____ C:\Users\User\Downloads\Payment_Notification (17).pdf 2021-09-01 09:40 - 2021-09-01 09:40 - 000132036 _____ C:\Users\User\Downloads\Payment_Notification (16).pdf 2021-08-31 10:16 - 2021-08-31 10:16 - 000194776 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2021-08-31 10:16 - 2021-08-31 10:16 - 000169424 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2021-08-31 10:16 - 2021-08-31 10:16 - 000107456 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2021-08-31 10:16 - 2021-08-31 10:16 - 000070232 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2021-08-31 10:16 - 2021-08-31 10:16 - 000043904 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2021-08-30 13:43 - 2021-08-30 13:43 - 000098734 _____ C:\Users\User\Downloads\sd16_hybrid_p4_a.pdf ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2021-09-25 19:26 - 2020-04-23 13:54 - 000029131 _____ C:\Users\User\Downloads\FRST.txt 2021-09-25 19:23 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-09-25 19:23 - 2017-05-23 14:29 - 000000000 ____D C:\Program Files (x86)\Google 2021-09-25 19:20 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-09-25 19:19 - 2021-05-06 14:48 - 000008192 ___SH C:\DumpStack.log.tmp 2021-09-25 19:19 - 2020-09-11 15:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-09-25 19:19 - 2019-05-15 11:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-09-25 19:19 - 2017-05-23 09:54 - 000000000 __SHD C:\Users\User\IntelGraphicsProfiles 2021-09-25 19:18 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2021-09-25 19:18 - 2017-05-24 17:36 - 000000000 ____D C:\Users\User\Documents\Outlook Files 2021-09-25 19:06 - 2020-09-11 15:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-09-25 09:28 - 2018-10-10 15:31 - 000000000 ____D C:\Pastel12 2021-09-25 09:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-09-24 15:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-09-24 15:04 - 2021-03-19 08:13 - 000000000 ____D C:\Users\User\AppData\Roaming\Zoom 2021-09-23 16:59 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-09-23 16:49 - 2020-09-11 15:24 - 000842482 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-09-23 10:30 - 2017-07-26 13:00 - 000000000 ____D C:\Users\User\AppData\Local\DBG 2021-09-23 10:16 - 2019-04-05 16:54 - 000000000 ____D C:\ProgramData\Intel 2021-09-23 10:16 - 2017-05-23 18:33 - 000000000 ____D C:\ProgramData\Package Cache 2021-09-23 10:15 - 2020-05-24 13:56 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless 2021-09-22 12:41 - 2020-04-23 13:57 - 000046805 _____ C:\Users\User\Downloads\Addition.txt 2021-09-22 12:30 - 2017-05-23 09:46 - 000000000 ____D C:\Program Files (x86)\Intel 2021-09-22 11:42 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-09-21 12:09 - 2017-12-12 19:47 - 000000000 ____D C:\Users\User\AppData\Local\Packages 2021-09-20 09:49 - 2017-05-24 16:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-09-18 15:51 - 2020-04-23 13:44 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-09-16 14:34 - 2021-02-23 16:07 - 000000000 ____D C:\Users\User\Documents\New Business 2021-09-16 12:23 - 2019-09-10 08:43 - 000000000 ____D C:\Users\User\Documents\My Maps 2021-09-15 14:35 - 2021-04-18 12:02 - 000457752 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-09-15 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-09-15 14:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2021-09-15 10:13 - 2017-05-23 10:14 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-09-15 10:08 - 2017-05-23 10:13 - 135637312 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-09-15 10:04 - 2017-05-23 14:30 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-09-14 18:35 - 2017-05-23 18:38 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-09-14 18:04 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-09-13 15:53 - 2018-09-03 17:03 - 000000000 ____D C:\ProgramData\RivetNetworks 2021-09-13 15:49 - 2018-06-27 19:40 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2021-09-13 15:47 - 2021-04-24 19:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-09-13 15:45 - 2019-02-19 12:45 - 000000000 ____D C:\Program Files (x86)\iBeesoft 2021-09-13 15:36 - 2020-05-07 23:24 - 000000000 ____D C:\Program Files (x86)\Realtek 2021-09-13 10:31 - 2021-04-19 13:08 - 000000000 ____D C:\Users\User\AppData\Local\AMD_Common 2021-09-13 08:33 - 2017-05-23 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2021-09-02 17:42 - 2019-03-12 09:13 - 000000000 ____D C:\Users\User\AppData\Local\CutePDF Writer 2021-08-31 10:16 - 2018-05-24 10:49 - 000123472 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2021-08-30 16:47 - 2021-01-25 13:56 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools ==================== Files in the root of some directories ======== 2018-10-10 15:29 - 2018-11-05 11:45 - 000000190 _____ () C:\Program Files (x86)\Common Files\psasetup.log 2018-10-11 13:45 - 2021-09-25 09:26 - 000752702 _____ () C:\Users\User\AppData\Local\BICPartnerV12.log 2018-06-28 12:10 - 2020-06-05 10:56 - 000007596 _____ () C:\Users\User\AppData\Local\resmon.resmoncfg ==================== FLock ============================== 2017-05-23 19:29 C:\System Recovery ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================