Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

IE 11


  • Please log in to reply

#16
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

FRST is clean.

 

 

If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.

You can also try pausing your anti-virus.


  • 0

Advertisements


#17
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

I shut off Norton but it still wouldn't let me download as "Public Networks" is connect and controlled by Norton.


  • 0

#18
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

See if it will let you download FRST64.zip

 

Attached File  FRST64.zip   1.81MB   33 downloads

 

You will need to Save it then right click on it and Extract All, Extract.  Then right click and Run As Admin.  This is for 64 bit system.  If you need the 32 bit version let me know but at least see if you can download this one.


  • 0

#19
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

Hope this helps.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-06-2019 01
Ran by Merlin (administrator) on HOME-FLGILMORE2 (14-06-2019 09:34:44)
Running from C:\Users\Merlin\Downloads
Loaded Profiles: Merlin (Available Profiles: Merlin & Administrator)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe) C:\Windows\System32\Macromed\Flash\FlashUtil64_32_0_0_207_ActiveX.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(CHENGDU AOMEI Tech Co., Ltd. -> ) C:\Program Files (x86)\AOMEI Backupper\ABNotify.exe
(CHENGDU AOMEI Tech Co., Ltd. -> AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
(Goodsol Development Inc. -> Goodsol Development Inc.) C:\Program Files (x86)\goodsol\goodsol.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.17.1.50\NortonSecurity.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.17.1.50\NortonSecurity.exe
(TomTom International BV -> TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Tweaking LLC -> Tweaking.com) C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-05-07] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [ABNotify] => C:\Program Files (x86)\AOMEI Backupper\ABNotify.exe [80832 2016-09-26] (CHENGDU AOMEI Tech Co., Ltd. -> )
HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [242688 2010-11-20] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [vidc.ffds] => C:\Windows\SysWOW64\ff_vfw.dll [74752 2011-08-22] () [File not signed]
HKLM\...\Drivers32: [vidc.xvid] => C:\Windows\SysWOW64\xvidvfw.dll [240640 2011-05-30] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\SysWOW64\ac3filter.acm [497664 2009-08-11] () [File not signed]
HKLM\...\Drivers32: [msacm.divxa32] => C:\Windows\SysWOW64\DivXa32.acm [291408 2000-03-31] (Packed With Joy !) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\LameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [vidc.DIVX] => C:\Windows\SysWOW64\DivX.dll [720384 2010-02-19] (DivX, Inc.) [File not signed]
HKLM\...\Drivers32: [vidc.yv12] => C:\Windows\SysWOW64\DivX.dll [720384 2010-02-19] (DivX, Inc.) [File not signed]
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\...\Drivers32: [vidc.iv32] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel® Corporation)
HKLM\...\Drivers32: [vidc.iv31] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel® Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] ->

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0372A464-E3F5-4FD7-A4B3-E296EE1FFB29} - System32\Tasks\{105DF13D-F17C-449B-811B-A4D80D5A6D08} => C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE
Task: {062EE752-12DA-495B-9070-C77EE5970B2A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0C84A814-2C53-44E0-9AC8-485D4EB8AA9D} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
Task: {0F817577-39CD-4785-90A1-C38162292E1A} - System32\Tasks\Norton 360\Norton Security Suite Error Processor => C:\Program Files (x86)\Norton Security Suite\Engine\22.15.1.8\SymErr.exe
Task: {20E1A821-13C1-4FC9-A9A5-EB980351148A} - System32\Tasks\{240263E7-22FD-4248-A557-EC67005D8F8B} => C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
Task: {20EC14BF-D359-4EFC-865F-E423591D228D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {213B3193-2399-4906-9E11-D71C8A919F92} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3787304 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2CA2373B-CD8B-4354-8BC1-53DA37C3D989} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {30A8996F-2231-4861-AA6B-999AF9DE5425} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-06-11] (Adobe Inc. -> Adobe)
Task: {39F61DE4-E574-4B91-924A-0053EEAFD482} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {425FFB51-76F2-4C24-A289-CBB1E67B7C71} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [3273136 2012-12-19] (Piriform Ltd -> Piriform Ltd)
Task: {457FEA18-4E6B-46C5-9A7C-5CD4E09E8F5F} - System32\Tasks\{0D3C9B31-AFB5-4A1A-B4B3-65F1EEA136C2} => C:\Windows\system32\pcalua.exe -a C:\Users\Merlin\AppData\Local\Temp\Temp1_RTL8111BCRTL8112L_LAN_V735222009_Win7.zip\RTL8111BCRTL8112L_LAN_V735222009_Win7\AsusSetup.exe <==== ATTENTION
Task: {462BE0C6-ED4C-440C-848A-0AFAD70608EB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4B66EB50-4915-4D1C-A757-69C654AD8E15} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {53426C0C-36B6-4EC9-8675-3876B1F589DD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {53F417D0-9FB8-4E00-B7F0-C98F30BBF99C} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security Online\Upgrade.exe [2226856 2019-04-22] (Symantec Corporation -> Symantec Corporation)
Task: {5CED1006-723F-4945-A198-90119379EF7F} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe
Task: {6FED1BB7-9BC7-4E2F-A161-859072C3AB9E} - System32\Tasks\SUPERAntiSpyware Scheduled Task e5b83514-0ca1-4343-ae3d-ea191808687b => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com)
Task: {778905D0-01A2-4515-B464-839FC04B17F1} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2417032 2011-08-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {8C147581-A01A-4FF9-83E4-60D280493EDA} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {921C6DCA-CB88-4808-8A03-BCD24408BFAE} - System32\Tasks\{0FD635D4-F2B4-4C58-AE01-90325FEC47F4} => C:\Windows\system32\pcalua.exe -a "D:\Audio xp2003 & 64 bit\64bit\AsusSetup.exe" -d "D:\Audio xp2003 & 64 bit\64bit"
Task: {934AB69D-9967-45F5-8D57-D6AAD745062E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {97E75FAE-9C16-4B72-B262-125E450005F0} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.17.1.50\WSCStub.exe [2226856 2019-04-22] (Symantec Corporation -> Symantec Corporation)
Task: {98022438-305D-4B86-91F4-BA7D92228CCD} - System32\Tasks\{54C4D459-A1F6-4B0F-B870-AE4B65AA3F27} => C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE
Task: {9FAA0F27-FB54-4AEC-9EF8-E28072CA3219} - System32\Tasks\Norton Security with Backup\Norton Security Online Error Processor => C:\Program Files\Norton Security\Engine\22.17.1.50\SymErr.exe [101392 2019-04-22] (Symantec Corporation -> Symantec Corporation)
Task: {A22632C9-7D63-4A84-83E9-3A3C49FB96D9} - System32\Tasks\Norton 360\Norton Security Suite Error Analyzer => C:\Program Files (x86)\Norton Security Suite\Engine\22.15.1.8\SymErr.exe
Task: {A7A24796-4107-41BA-B997-C966F075EF9F} - System32\Tasks\{57536C1B-2219-4D55-B715-24FF9364566B} => C:\Windows\system32\pcalua.exe -a D:\goodsol99\gdsol.exe -d D:\goodsol99
Task: {C9468B22-17EF-4EA4-9717-75A114941BB9} - System32\Tasks\{0E25E599-F881-484C-BEAF-D8594169721D} => C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE
Task: {D0BE8D10-CC58-4BE6-973F-1C07C4B5D787} - System32\Tasks\{236274ED-A5C7-4A5B-A5FF-437947534D50} => C:\Windows\system32\pcalua.exe -a D:\Setup.exe -d D:\
Task: {D810284C-252E-4F78-B76C-391E15285DF7} - System32\Tasks\{68C2BEC9-B9A9-487C-A4C8-718FD338B9B1} => C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE [316184 2013-10-10] (SUPERAntiSpyware.com -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
Task: {E3E413C8-B64D-48C9-BB42-06C09E930106} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E4D218A6-09E6-4CF0-BF7B-1C7673F8534B} - System32\Tasks\{ABE8D378-188E-4979-A53A-BFA132729A7B} => C:\Windows\system32\pcalua.exe -a "C:\Users\Merlin\Documents\H & R Tax Returns\Program\HRBlock2013.exe" -d C:\Users\Merlin\Desktop -c /N version.taxcut.com
Task: {E63E9CEA-14AE-428E-AE6D-06730A203473} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {EB7FB2EE-F9EB-46E9-8597-F6912BF27466} - System32\Tasks\Norton Security with Backup\Norton Security Online Error Analyzer => C:\Program Files\Norton Security\Engine\22.17.1.50\SymErr.exe [101392 2019-04-22] (Symantec Corporation -> Symantec Corporation)
Task: {F73ED94C-0A94-41E8-82A3-7854C04F799B} - System32\Tasks\SUPERAntiSpyware Scheduled Task b61a981f-2726-4d17-a712-67fe3d57b1d3 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b61a981f-2726-4d17-a712-67fe3d57b1d3.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task e5b83514-0ca1-4343-ae3d-ea191808687b.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{FF5BE570-B618-4FC2-802F-323139912CB8}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=20.2.0.19
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=20.2.0.19
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=N360&pvid=20.2.0.19
HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://comcast.net/
SearchScopes: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11913&l=dis&prt=NGC&chn=1122&geo=US&ver=22.17.1.50&locale=en_US&guid=90A44157-635C-40DA-BD98-C17908FEDC05&doi=2016-09-01&gct=kwd&qsrc=2869
BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine\22.17.1.50\coIEPlg.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2008-01-01] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2008-01-01] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12] (DivX, LLC -> DivX, LLC)
BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine32\22.17.1.50\coIEPlg.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-06-12] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-12] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.17.1.50\coIEPlg.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine32\22.17.1.50\coIEPlg.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
Toolbar: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
Toolbar: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000 -> No Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} -  No File
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab

FireFox:
========
FF DefaultProfile: 7jd81ot7.default
FF ProfilePath: C:\Users\Merlin\AppData\Roaming\TomTom\HOME\Profiles\vnj9vpz9.default [2019-05-28]
FF Extension: (Emulator) - C:\Users\Merlin\AppData\Roaming\TomTom\HOME\Profiles\vnj9vpz9.default\Extensions\[email protected] [2017-06-11] [Legacy] [not signed]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\[email protected] [2019-04-08] [Legacy] [not signed]
FF ProfilePath: C:\Users\Merlin\AppData\Roaming\Mozilla\Firefox\Profiles\7jd81ot7.default [2019-06-11]
FF Homepage: Mozilla\Firefox\Profiles\7jd81ot7.default -> hxxps://www.malwarebytes.org/restorebrowser/
FF SearchPlugin: C:\Users\Merlin\AppData\Roaming\Mozilla\Firefox\Profiles\7jd81ot7.default\searchplugins\bing-lavasoft.xml [2018-02-09]
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, Inc. -> DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2008-01-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2008-01-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\NPCIG.dll [2008-10-15] (CANON INC.) [File not signed]
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2011-12-13] (DivX, LLC -> DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, Inc. -> DivX, LLC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-02] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.17.1.50\Exts\Chrome.crx <not found>
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.17.1.50\Exts\Chrome.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-04-29] (Apple Inc. -> Apple Inc.)
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [56256 2016-09-26] (CHENGDU AOMEI Tech Co., Ltd. -> AOMEI Tech Co., Ltd.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.17.1.50\NortonSecurity.exe [225608 2019-04-22] (Symantec Corporation -> Symantec Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Windows -> Microsoft Corporation)
S2 HPSLPSVC; C:\Users\Merlin\AppData\Local\Temp\7zS2D2C\hpslpsvc64.dll [X] <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [36024 2016-09-26] (CHENGDU AOMEI Tech Co., Ltd. -> )
R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [156856 2016-09-26] (CHENGDU AOMEI Tech Co., Ltd. -> )
R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [23224 2016-09-26] (CHENGDU AOMEI Tech Co., Ltd. -> )
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 atikmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [5020672 2009-07-13] (Microsoft Windows -> ATI Technologies Inc.)
R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.15.0.88\Definitions\BASHDefs\20190610.001\BHDrvx64.sys [1934048 2019-04-02] (Symantec Corporation -> Symantec Corporation)
R1 ccSet_NGC; C:\Windows\System32\drivers\NGCx64\1611010.032\ccSetx64.sys [192704 2019-04-22] (Symantec Corporation -> Symantec Corporation)
S3 dc3d; C:\Windows\System32\DRIVERS\dc3d.sys [47616 2011-05-18] (Hardware Group Test Cert -> Microsoft Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [515592 2019-06-06] (Symantec Corporation -> Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153096 2019-06-07] (Symantec Corporation -> Symantec Corporation)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153328 2019-05-09] (Malwarebytes Corporation -> Malwarebytes)
R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.15.0.88\Definitions\IPSDefs\20190613.061\IDSvia64.sys [1441800 2019-04-18] (Symantec Corporation -> Symantec Corporation)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [199768 2019-05-09] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [127136 2019-06-14] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73912 2019-06-14] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-06-14] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [107368 2019-06-14] (Malwarebytes Corporation -> Malwarebytes)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-05-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [75600 2019-04-16] (NVIDIA Corporation -> NVIDIA Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 SRTSP; C:\Windows\System32\drivers\NGCx64\1611010.032\SRTSP64.SYS [864480 2019-04-22] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\Windows\System32\drivers\NGCx64\1611010.032\SRTSPX64.SYS [49888 2019-04-22] (Symantec Corporation -> Symantec Corporation)
R0 SymEFASI; C:\Windows\System32\drivers\NGCx64\1611010.032\SYMEFASI64.SYS [1998552 2019-04-22] (Symantec Corporation -> Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [100064 2019-04-06] (Symantec Corporation -> Symantec Corporation)
S4 SymEvnt; C:\Program Files\Norton Security\NortonData\22.15.0.88\SymPlatform\SymEvnt.sys [709128 2019-05-20] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\Windows\System32\drivers\NGCx64\1611010.032\Ironx64.SYS [315912 2019-04-22] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\Windows\System32\drivers\NGCx64\1611010.032\symnets.sys [573448 2019-04-22] (Symantec Corporation -> Symantec Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 wpCtrlDrv_NGC; C:\Windows\System32\drivers\NGCx64\1611010.032\wpCtrlDrv.sys [1012120 2019-04-22] (Symantec Corporation -> Symantec Corporation)
S3 atillk64; \??\C:\Program Files (x86)\AMD\System Monitor\atillk64.sys [X]
S3 cpuz138; \??\C:\Users\Merlin\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [X] <==== ATTENTION
S3 cpuz140; \??\C:\Users\Merlin\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
S1 MpKsl9639261c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0C3E840B-3548-4814-93AF-A572F41F7B42}\MpKsl9639261c.sys [X]
S3 SWDUMon; system32\DRIVERS\SWDUMon.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-14 09:34 - 2019-06-14 09:37 - 000029657 _____ C:\Users\Merlin\Downloads\FRST.txt
2019-06-14 09:33 - 2019-06-14 09:34 - 000000000 ____D C:\FRST
2019-06-14 09:31 - 2019-06-14 09:31 - 002417664 _____ (Farbar) C:\Users\Merlin\Downloads\FRST64 (3).exe
2019-06-14 08:08 - 2019-06-14 08:08 - 000000000 ____D C:\Windows\System32\Tasks\Remediation
2019-06-14 05:03 - 2019-06-14 05:03 - 000073912 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2019-06-14 05:02 - 2019-06-14 05:02 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-06-14 05:02 - 2019-06-14 05:02 - 000127136 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2019-06-14 05:02 - 2019-06-14 05:02 - 000107368 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2019-06-13 19:21 - 2019-06-13 19:21 - 002418688 _____ (Farbar) C:\Users\Merlin\Downloads\FRST64 (2).exe
2019-06-13 19:20 - 2019-06-13 19:20 - 002418688 _____ (Farbar) C:\Users\Merlin\Downloads\FRST64 (1).exe
2019-06-13 18:58 - 2019-06-13 18:58 - 002418688 _____ (Farbar) C:\Users\Merlin\Downloads\FRST64.exe
2019-06-12 22:53 - 2019-06-12 22:53 - 000007125 _____ C:\Users\Merlin\Desktop\System Idle Process.txt
2019-06-12 22:45 - 2019-06-12 22:45 - 002703128 _____ (Sysinternals - www.sysinternals.com) C:\Users\Merlin\Documents\procexp.exe
2019-06-12 22:45 - 2019-06-12 22:45 - 000001913 _____ C:\Users\Merlin\Desktop\procexp - Shortcut.lnk
2019-06-12 07:43 - 2019-06-12 07:43 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:43 - 2019-06-12 07:43 - 000003790 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:43 - 2019-06-12 07:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-06-12 07:43 - 2019-05-22 06:45 - 002785592 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2019-06-12 07:43 - 2019-05-22 06:45 - 002164536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2019-06-12 07:43 - 2019-05-22 06:45 - 001316208 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2019-06-12 07:42 - 2019-06-12 07:42 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:42 - 2019-06-12 07:42 - 000003940 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:42 - 2019-06-12 07:42 - 000003704 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:42 - 2019-06-12 07:42 - 000003704 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:42 - 2019-06-12 07:42 - 000003704 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:42 - 2019-06-12 07:42 - 000003704 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:38 - 2019-06-12 07:38 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:38 - 2019-06-12 07:38 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-12 07:38 - 2019-05-01 07:48 - 000179000 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2019-06-12 07:38 - 2019-05-01 07:48 - 000154424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2019-06-12 07:37 - 2019-02-27 09:34 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2019-06-12 07:32 - 2019-05-23 09:19 - 001006800 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 001006800 _____ C:\Windows\system32\vulkan-1.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 000870096 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 000870096 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 000551360 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 000456640 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-06-12 07:32 - 2019-05-23 09:19 - 000286624 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2019-06-12 07:32 - 2019-05-23 09:19 - 000286624 _____ C:\Windows\system32\vulkaninfo.exe
2019-06-12 07:32 - 2019-05-23 09:19 - 000260512 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-06-12 07:32 - 2019-05-23 09:19 - 000260512 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-06-12 07:32 - 2019-05-23 09:18 - 023094016 _____ (NVIDIA Corporation) C:\Windows\system32\nvrtum64.dll
2019-06-12 07:32 - 2019-05-23 09:18 - 011051968 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2019-06-12 07:32 - 2019-05-23 09:18 - 000424136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 071735504 _____ (NVIDIA Corp.) C:\Windows\system32\nvoptix.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 040883344 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 035345288 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl64.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 030355600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 029842848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl32.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 009487240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 000427992 _____ C:\Windows\system32\nvofapi64.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 000376976 _____ C:\Windows\SysWOW64\nvofapi.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 000171424 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2019-06-12 07:32 - 2019-05-23 09:17 - 000149464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 021492128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2019-06-12 07:32 - 2019-05-23 09:16 - 002039256 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001722456 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6443086.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001540568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001469912 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001467864 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6443086.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001162200 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 001134496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000912472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000631896 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000542680 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000522328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000469976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000190040 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2019-06-12 07:32 - 2019-05-23 09:16 - 000168024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 040412368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 035269376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 020185504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 017463384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 005035096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 004492888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2019-06-12 07:32 - 2019-05-23 09:15 - 000524544 _____ (NVIDIA Corporation) C:\Windows\system32\nvcbl64.dll
2019-06-12 07:32 - 2019-05-23 09:13 - 021649168 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2019-06-12 07:32 - 2019-05-23 07:12 - 000228608 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2019-06-12 07:32 - 2019-05-23 07:12 - 000046848 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2019-06-12 07:32 - 2019-05-22 16:33 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2019-06-12 07:32 - 2019-05-22 16:33 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2019-06-12 07:32 - 2019-04-17 00:42 - 000069840 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2019-06-12 07:32 - 2019-04-16 21:44 - 000075600 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2019-06-12 07:04 - 2019-06-12 07:04 - 000001011 _____ C:\Users\Merlin\Desktop\SpeedFan.lnk
2019-06-12 07:04 - 2019-06-12 07:04 - 000000000 ____D C:\Users\Merlin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2019-06-12 07:02 - 2019-06-12 07:48 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2019-06-12 07:00 - 2019-06-12 07:00 - 003086696 _____ C:\Users\Merlin\Downloads\instspeedfan452_1 (1).exe
2019-06-12 05:02 - 2019-06-03 16:11 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2019-06-12 05:02 - 2019-06-03 16:11 - 000474112 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2019-06-12 05:02 - 2019-06-03 16:10 - 000304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2019-06-12 05:02 - 2019-05-27 00:19 - 000396896 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-06-12 05:02 - 2019-05-26 23:29 - 000348984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-06-12 05:02 - 2019-05-24 18:42 - 025733632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-06-12 05:02 - 2019-05-24 18:33 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-06-12 05:02 - 2019-05-24 18:33 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-06-12 05:02 - 2019-05-24 18:22 - 002903552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-06-12 05:02 - 2019-05-24 18:21 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-06-12 05:02 - 2019-05-24 18:20 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-06-12 05:02 - 2019-05-24 18:20 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-06-12 05:02 - 2019-05-24 18:20 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-06-12 05:02 - 2019-05-24 18:20 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-06-12 05:02 - 2019-05-24 18:14 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-06-12 05:02 - 2019-05-24 18:13 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-06-12 05:02 - 2019-05-24 18:11 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-06-12 05:02 - 2019-05-24 18:10 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-06-12 05:02 - 2019-05-24 18:10 - 000790528 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-06-12 05:02 - 2019-05-24 18:10 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-06-12 05:02 - 2019-05-24 18:10 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-06-12 05:02 - 2019-05-24 18:09 - 005776384 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-06-12 05:02 - 2019-05-24 18:07 - 020275712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-06-12 05:02 - 2019-05-24 18:04 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-06-12 05:02 - 2019-05-24 18:02 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-06-12 05:02 - 2019-05-24 17:56 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-06-12 05:02 - 2019-05-24 17:55 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-06-12 05:02 - 2019-05-24 17:55 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-06-12 05:02 - 2019-05-24 17:55 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-06-12 05:02 - 2019-05-24 17:52 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-06-12 05:02 - 2019-05-24 17:52 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-06-12 05:02 - 2019-05-24 17:50 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-06-12 05:02 - 2019-05-24 17:48 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-06-12 05:02 - 2019-05-24 17:45 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-06-12 05:02 - 2019-05-24 17:45 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-06-12 05:02 - 2019-05-24 17:44 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-06-12 05:02 - 2019-05-24 17:44 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-06-12 05:02 - 2019-05-24 17:43 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-06-12 05:02 - 2019-05-24 17:42 - 002297344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-06-12 05:02 - 2019-05-24 17:40 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-06-12 05:02 - 2019-05-24 17:40 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-06-12 05:02 - 2019-05-24 17:39 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-06-12 05:02 - 2019-05-24 17:38 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-06-12 05:02 - 2019-05-24 17:38 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-06-12 05:02 - 2019-05-24 17:38 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-06-12 05:02 - 2019-05-24 17:37 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-06-12 05:02 - 2019-05-24 17:37 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-06-12 05:02 - 2019-05-24 17:36 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-06-12 05:02 - 2019-05-24 17:36 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-06-12 05:02 - 2019-05-24 17:36 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-06-12 05:02 - 2019-05-24 17:34 - 015311872 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-06-12 05:02 - 2019-05-24 17:30 - 004858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-06-12 05:02 - 2019-05-24 17:30 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-06-12 05:02 - 2019-05-24 17:27 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-06-12 05:02 - 2019-05-24 17:26 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-06-12 05:02 - 2019-05-24 17:26 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-06-12 05:02 - 2019-05-24 17:24 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-06-12 05:02 - 2019-05-24 17:23 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-06-12 05:02 - 2019-05-24 17:23 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-06-12 05:02 - 2019-05-24 17:22 - 004492800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-06-12 05:02 - 2019-05-24 17:22 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-06-12 05:02 - 2019-05-24 17:17 - 013706240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-06-12 05:02 - 2019-05-24 17:17 - 001557504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-06-12 05:02 - 2019-05-24 17:17 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-06-12 05:02 - 2019-05-24 17:15 - 002060288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-06-12 05:02 - 2019-05-24 17:15 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-06-12 05:02 - 2019-05-24 17:15 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-06-12 05:02 - 2019-05-24 17:05 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-06-12 05:02 - 2019-05-24 17:04 - 014185984 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-06-12 05:02 - 2019-05-24 17:02 - 004386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-06-12 05:02 - 2019-05-24 16:59 - 012880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-06-12 05:02 - 2019-05-24 16:59 - 001323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-06-12 05:02 - 2019-05-24 16:56 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-06-12 05:02 - 2019-05-22 19:06 - 000806400 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2019-06-12 05:02 - 2019-05-22 19:06 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-06-12 05:02 - 2019-05-22 18:58 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2019-06-12 05:02 - 2019-05-22 18:58 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-06-12 05:02 - 2019-05-22 17:31 - 001251840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-06-12 05:02 - 2019-05-22 17:05 - 001650176 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-06-12 05:02 - 2019-05-22 17:05 - 001182208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2019-06-12 05:02 - 2019-05-17 11:21 - 000372456 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2019-06-12 05:02 - 2019-05-16 08:22 - 004057312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-06-12 05:02 - 2019-05-16 08:19 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-06-12 05:02 - 2019-05-16 08:18 - 000261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-06-12 05:02 - 2019-05-16 08:10 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-06-12 05:02 - 2019-05-16 08:08 - 001664352 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-06-12 05:02 - 2019-05-16 08:07 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-06-12 05:02 - 2019-05-16 08:07 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-06-12 05:02 - 2019-05-16 08:07 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-06-12 05:02 - 2019-05-16 08:07 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-06-12 05:02 - 2019-05-16 08:06 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-06-12 05:02 - 2019-05-16 07:39 - 003229696 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-06-12 05:02 - 2019-05-13 07:44 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-06-12 05:02 - 2019-05-13 07:44 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-06-12 05:02 - 2019-05-13 07:44 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-06-12 05:02 - 2019-05-13 07:44 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-06-12 05:02 - 2019-05-09 08:18 - 002368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-06-12 05:02 - 2019-05-09 08:07 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-06-12 05:02 - 2019-05-09 08:07 - 003247616 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-06-12 05:02 - 2019-05-09 08:07 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2019-06-12 05:02 - 2019-05-09 08:07 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-06-12 05:02 - 2019-04-29 19:07 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-06-12 05:02 - 2019-04-29 18:56 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-06-12 05:02 - 2019-04-25 08:18 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2019-06-12 05:02 - 2019-04-25 08:06 - 000110592 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2019-06-12 05:02 - 2019-04-24 08:11 - 001893096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-06-12 05:02 - 2019-04-12 06:05 - 000994384 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-06-12 05:02 - 2019-04-12 06:05 - 000017656 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-06-12 05:02 - 2019-04-12 06:05 - 000015608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-06-12 05:02 - 2019-04-12 06:05 - 000014072 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-06-12 05:02 - 2019-04-12 06:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-06-12 05:02 - 2019-04-12 06:04 - 000914584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-06-12 05:02 - 2019-04-12 06:04 - 000017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-06-12 05:02 - 2019-04-09 08:05 - 003165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2019-06-12 05:02 - 2019-04-09 07:53 - 002651136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-06-12 05:02 - 2019-04-09 07:52 - 000709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-06-12 05:01 - 2019-05-24 17:03 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-06-12 05:01 - 2019-05-24 16:58 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-06-12 05:01 - 2019-05-22 19:06 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2019-06-12 05:01 - 2019-05-22 19:06 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2019-06-12 05:01 - 2019-05-22 18:58 - 000628224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2019-06-12 05:01 - 2019-05-22 18:58 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2019-06-12 05:01 - 2019-05-16 08:22 - 003963624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-06-12 05:01 - 2019-05-16 08:21 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-06-12 05:01 - 2019-05-16 08:19 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-06-12 05:01 - 2019-05-16 08:18 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:17 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:10 - 005552872 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-06-12 05:01 - 2019-05-16 08:09 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-06-12 05:01 - 2019-05-16 08:09 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-06-12 05:01 - 2019-05-16 08:09 - 000153832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-06-12 05:01 - 2019-05-16 08:09 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-06-12 05:01 - 2019-05-16 08:07 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-06-12 05:01 - 2019-05-16 08:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 08:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 07:53 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-06-12 05:01 - 2019-05-16 07:53 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-06-12 05:01 - 2019-05-16 07:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-06-12 05:01 - 2019-05-16 07:47 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-06-12 05:01 - 2019-05-16 07:47 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-06-12 05:01 - 2019-05-16 07:47 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-06-12 05:01 - 2019-05-16 07:47 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-06-12 05:01 - 2019-05-16 07:45 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-06-12 05:01 - 2019-05-16 07:45 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 07:45 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 07:45 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 07:45 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-06-12 05:01 - 2019-05-16 07:41 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-06-12 05:01 - 2019-05-16 07:41 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-06-12 05:01 - 2019-05-16 07:41 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-06-12 05:01 - 2019-05-16 07:41 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-06-12 05:01 - 2019-05-16 07:38 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-06-12 05:01 - 2019-05-16 07:38 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-06-12 05:01 - 2019-05-16 07:38 - 000129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000160768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-06-12 05:01 - 2019-05-16 07:35 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-06-12 05:01 - 2019-05-16 07:34 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-06-12 05:01 - 2019-05-16 07:34 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-06-12 05:01 - 2019-05-16 07:34 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-06-12 05:01 - 2019-05-16 07:34 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-06-12 05:01 - 2019-05-16 07:34 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-06-12 05:01 - 2019-05-16 07:34 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-06-12 05:01 - 2019-05-09 08:18 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2019-06-12 05:01 - 2019-05-09 08:18 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2019-06-12 05:01 - 2019-05-09 08:18 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 001177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2019-06-12 05:01 - 2019-05-09 08:17 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2019-06-12 05:01 - 2019-05-09 08:10 - 000094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2019-06-12 05:01 - 2019-05-09 08:09 - 000114400 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-06-12 05:01 - 2019-05-09 08:07 - 014637568 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2019-06-12 05:01 - 2019-05-09 08:07 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2019-06-12 05:01 - 2019-05-09 08:07 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2019-06-12 05:01 - 2019-05-09 08:07 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 001484800 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 001202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2019-06-12 05:01 - 2019-05-09 08:06 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-06-12 05:01 - 2019-05-09 08:03 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2019-06-12 05:01 - 2019-05-09 08:03 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2019-06-12 05:01 - 2019-05-09 08:03 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2019-06-12 05:01 - 2019-05-09 08:02 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2019-06-12 05:01 - 2019-05-09 08:02 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2019-06-12 05:01 - 2019-05-09 08:01 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-06-12 05:01 - 2019-05-09 07:51 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2019-06-12 05:01 - 2019-05-09 07:49 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2019-06-12 05:01 - 2019-05-09 07:49 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2019-06-12 05:01 - 2019-05-09 07:40 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-06-12 05:01 - 2019-05-09 07:37 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2019-06-12 05:01 - 2019-05-09 07:37 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-06-12 05:01 - 2019-04-24 08:09 - 000377064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-06-12 05:01 - 2019-04-24 08:09 - 000287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-06-12 05:01 - 2019-04-12 06:05 - 000064248 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000017656 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000016120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000014288 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000013560 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012536 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:05 - 000011504 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000065784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000021752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000018680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000017144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000015608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000015096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000013560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000013560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000013048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000012024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000012024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-06-12 05:01 - 2019-04-12 06:04 - 000011000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-06-12 05:01 - 2019-04-09 08:17 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2019-06-12 05:01 - 2019-04-09 08:05 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-06-12 05:01 - 2019-04-09 08:05 - 000192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2019-06-12 05:01 - 2019-04-09 08:05 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2019-06-12 05:01 - 2019-04-09 08:05 - 000093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2019-06-12 05:01 - 2019-04-09 08:05 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2019-06-12 05:01 - 2019-04-09 08:05 - 000030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2019-06-12 05:01 - 2019-04-09 08:03 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2019-06-12 05:01 - 2019-04-09 07:52 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-06-12 05:01 - 2019-04-09 07:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-06-12 05:01 - 2019-04-09 07:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2019-06-12 05:01 - 2019-04-09 07:52 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2019-06-12 05:01 - 2019-04-09 07:52 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2019-06-11 21:39 - 2019-06-11 21:39 - 000096282 _____ C:\Users\Merlin\Documents\BSOD.txt
2019-06-11 21:37 - 2019-06-11 22:43 - 000000000 ____D C:\Program Files (x86)\NirSoft
2019-06-11 21:36 - 2019-06-11 21:36 - 000141864 _____ C:\Users\Merlin\Downloads\bluescreenview_setup.exe
2019-06-11 20:36 - 2019-06-11 20:36 - 000113549 _____ C:\Users\Merlin\Documents\HDDStatus - Tool to check hard disk status, health and reliability_php.mht
2019-06-11 20:31 - 2019-06-11 20:31 - 000015310 _____ C:\Users\Merlin\Documents\hdrepanalysis.htm
2019-06-11 17:31 - 2019-06-11 17:31 - 000053566 _____ C:\Users\Merlin\Downloads\appcrashview.zip
2019-06-11 17:01 - 2019-06-12 07:04 - 000000045 _____ C:\Windows\SysWOW64\initdebug.nfo
2019-06-11 16:57 - 2019-06-11 16:57 - 003086696 _____ C:\Users\Merlin\Downloads\instspeedfan452_1.exe
2019-06-09 23:57 - 2019-06-09 23:57 - 000722696 _____ C:\Windows\Minidump\060919-44928-01.dmp
2019-06-06 04:52 - 2019-06-06 04:52 - 000000950 _____ C:\Users\Merlin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk
2019-06-06 04:52 - 2019-06-06 04:52 - 000000920 _____ C:\Users\Merlin\Desktop\4K Video Downloader.lnk
2019-06-06 04:51 - 2019-06-06 04:51 - 000000000 ____D C:\Program Files\4KDownload
2019-06-06 04:49 - 2019-06-06 04:49 - 025337856 _____ C:\Users\Merlin\Downloads\4kvideodownloader_4.7.2_x64.msi
2019-06-04 19:48 - 2019-06-04 19:48 - 000000995 _____ C:\Users\Merlin\Desktop\Pretty Good Solitaire.lnk
2019-06-04 19:48 - 2019-06-04 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pretty Good Solitaire
2019-06-04 19:48 - 2019-06-04 19:48 - 000000000 ____D C:\Program Files (x86)\goodsol
2019-06-04 19:43 - 2019-06-04 19:43 - 027437184 _____ (Goodsol Development Inc. ) C:\Users\Merlin\Downloads\gdsol.exe
2019-06-03 08:25 - 2019-06-03 08:25 - 000001747 _____ C:\Users\Public\Desktop\iTunes.lnk
2019-06-03 08:25 - 2019-06-03 08:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2019-06-03 08:25 - 2019-06-03 08:25 - 000000000 ____D C:\Program Files\iPod
2019-06-01 09:02 - 2019-06-01 09:02 - 027439296 _____ (Goodsol Development Inc. ) C:\Users\Merlin\Downloads\pgsupgrade.exe
2019-05-31 21:19 - 2019-05-31 21:19 - 027437184 _____ (Goodsol Development Inc. ) C:\Users\Merlin\Downloads\gdsol (5).exe
2019-05-31 16:19 - 2019-05-31 16:19 - 000000953 _____ C:\Users\Merlin\Desktop\Pretty Good Solitaire 99.lnk
2019-05-31 16:19 - 1998-10-06 00:00 - 000598288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02A
2019-05-31 16:19 - 1998-10-06 00:00 - 000164112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02B
2019-05-31 16:19 - 1998-10-06 00:00 - 000147728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02C
2019-05-31 16:19 - 1998-10-06 00:00 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02D
2019-05-31 16:19 - 1998-09-25 00:00 - 001409024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02E
2019-05-31 16:19 - 1998-06-12 12:24 - 000006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.02F
2019-05-30 13:59 - 2019-05-30 13:59 - 000000000 ____D C:\Users\Merlin\AppData\Roaming\Goodsol
2019-05-30 13:43 - 1998-10-06 00:00 - 000598288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.024
2019-05-30 13:43 - 1998-10-06 00:00 - 000164112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.025
2019-05-30 13:43 - 1998-10-06 00:00 - 000147728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.026
2019-05-30 13:43 - 1998-10-06 00:00 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.027
2019-05-30 13:43 - 1998-09-25 00:00 - 001409024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.028
2019-05-30 13:43 - 1998-06-12 12:24 - 000006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.029

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-14 07:13 - 2012-12-20 21:29 - 036001002 _____ C:\Windows\ntbtlog.txt
2019-06-14 07:09 - 2017-10-23 16:27 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-06-14 05:14 - 2009-07-13 21:45 - 000032352 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-06-14 05:14 - 2009-07-13 21:45 - 000032352 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-06-14 05:05 - 2017-10-12 21:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-06-14 05:04 - 2012-01-18 05:05 - 000000000 ____D C:\Windows\system32\Macromed
2019-06-14 05:02 - 2016-09-29 18:29 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper
2019-06-14 05:02 - 2009-07-13 22:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-06-13 18:15 - 2017-08-17 18:15 - 000000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task e5b83514-0ca1-4343-ae3d-ea191808687b.job
2019-06-12 16:27 - 2009-07-13 22:13 - 000781298 _____ C:\Windows\system32\PerfStringBackup.INI
2019-06-12 16:27 - 2009-07-13 20:20 - 000000000 ____D C:\Windows\inf
2019-06-12 16:22 - 2009-07-13 21:45 - 000287200 _____ C:\Windows\system32\FNTCACHE.DAT
2019-06-12 16:18 - 2009-07-13 20:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2019-06-12 16:18 - 2009-07-13 20:20 - 000000000 ____D C:\Windows\system32\Dism
2019-06-12 10:08 - 2013-08-14 22:54 - 000000000 ____D C:\Windows\system32\MRT
2019-06-12 10:03 - 2011-07-30 22:33 - 135349160 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-06-12 09:48 - 2017-10-12 21:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-06-12 07:44 - 2017-10-12 21:34 - 000001374 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2019-06-12 07:43 - 2017-10-12 21:28 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-06-12 07:43 - 2017-10-12 21:22 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-06-12 07:41 - 2017-10-12 21:25 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-12 07:38 - 2017-10-12 21:41 - 000000000 ____D C:\Users\Merlin\AppData\Local\NVIDIA Corporation
2019-06-12 07:10 - 2008-01-01 00:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-06-12 07:09 - 2017-10-12 21:14 - 000099192 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2019-06-12 07:09 - 2017-10-12 21:13 - 000000000 ____D C:\Program Files (x86)\Java
2019-06-11 21:05 - 2009-07-13 20:20 - 000000000 ____D C:\Windows\system32\NDF
2019-06-11 06:16 - 2012-03-29 15:26 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-06-11 06:16 - 2012-03-29 15:26 - 000004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-06-11 06:16 - 2011-07-30 13:41 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-06-11 06:15 - 2011-07-30 13:41 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-06-10 02:00 - 2017-08-17 18:15 - 000000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b61a981f-2726-4d17-a712-67fe3d57b1d3.job
2019-06-10 02:00 - 2011-07-30 22:43 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
2019-06-09 23:57 - 2012-12-13 06:11 - 773584642 _____ C:\Windows\MEMORY.DMP
2019-06-09 23:57 - 2012-12-13 06:11 - 000000000 ____D C:\Windows\Minidump
2019-06-09 12:30 - 2011-07-30 22:43 - 000000000 ____D C:\Users\Merlin\AppData\Local\CrashDumps
2019-06-04 19:47 - 2019-04-05 13:07 - 000000000 ____D C:\Program Files (x86)\goodsol99
2019-06-03 08:25 - 2017-10-12 17:43 - 000000000 ____D C:\Program Files\iTunes
2019-05-31 16:19 - 2011-07-30 16:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pretty Good Solitaire 99
2019-05-31 16:16 - 2009-07-13 21:57 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2019-05-23 09:18 - 2017-10-12 21:24 - 000509320 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2019-05-23 09:14 - 2017-10-12 21:24 - 038743672 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2019-05-23 09:14 - 2017-10-12 21:24 - 033421760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2019-05-23 09:13 - 2017-10-12 21:24 - 018080304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2019-05-23 09:13 - 2017-10-12 21:24 - 004931840 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2019-05-23 09:13 - 2017-10-12 21:24 - 004374368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2019-05-23 07:12 - 2018-04-14 22:43 - 001682368 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2019-05-22 16:33 - 2018-04-14 18:49 - 000049325 _____ C:\Windows\system32\nvinfo.pb
2019-05-22 15:01 - 2017-10-12 21:29 - 005432688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 002637808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 001767920 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 000650608 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 000450872 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 000125240 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2019-05-22 15:01 - 2017-10-12 21:29 - 000083440 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2019-05-22 08:03 - 2017-10-12 21:29 - 008579232 _____ C:\Windows\system32\nvcoproc.bin
2019-05-17 12:56 - 2009-07-13 20:20 - 000000000 ____D C:\Windows\rescache

==================== Files in the root of some directories ================

2018-02-09 17:21 - 2018-02-09 17:21 - 000001683 _____ () C:\Program Files (x86)\dsengine.cfg
2015-04-01 22:04 - 2015-04-01 22:04 - 000000378 _____ () C:\Program Files (x86)\temp995.bat

==================== FLock ================

2014-04-22 15:24 C:\Users\dub_cm_auto\Application Data

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-06-03 16:56
==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2019 01
Ran by Merlin (14-06-2019 09:38:20)
Running from C:\Users\Merlin\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2011-07-30 20:14:15)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2540028857-2120196535-4242731766-500 - Administrator - Enabled) => C:\Users\Administrator.HOME-FLGILMORE2
Guest (S-1-5-21-2540028857-2120196535-4242731766-501 - Limited - Enabled)
Merlin (S-1-5-21-2540028857-2120196535-4242731766-1000 - Administrator - Enabled) => C:\Users\Merlin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton Security Online (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Security Online (Enabled - Up to date) {19116A92-4E0F-6AEB-F126-5230691200C8}
FW: Norton Security Online (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Video Downloader 4.7 (HKLM\...\{AC1A4B11-192E-45F2-A205-D3BF4CC8D938}) (Version: 4.7.2.2732 - Open Media LLC)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.0.19530 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.207 - Adobe)
AMD System Monitor (HKLM-x32\...\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}) (Version: 1.0.9 - Advanced Micro Devices, Inc.)
Any Audio Converter 3.2.7 (HKLM-x32\...\Any Audio Converter_is1) (Version:  - Any-Audio-Converter.com)
Any Video Converter 3.4.0 (HKLM-x32\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536C09F}_is1) (Version:  - AOMEI Technology Co., Ltd.)
Apple Application Support (32-bit) (HKLM-x32\...\{C1BCFECF-6EC2-4750-9072-5E2489423F8F}) (Version: 7.5 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{B202C7F5-7DE3-4FBF-B259-E70E625F56FC}) (Version: 7.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B5A46811-3612-4DA5-8A5A-E6DED5D7C523}) (Version: 12.2.1.12 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Audacity 1.3.13 (Unicode) (HKLM-x32\...\Audacity 1.3 Beta (Unicode)_is1) (Version:  - Audacity Team)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon DIGITAL CAMERA Solution Disk Software Guide (HKLM-x32\...\Software Guide) (Version: 1.1.0.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.7.2.11 - Canon Inc.)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.6.3.9 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.5.0.7 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.3.0.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.4.0.8 - Canon Inc.)
Canon Personal Printing Guide (HKLM-x32\...\Personal Printing Guide) (Version: 1.1.0.2 - Canon Inc.)
Canon PowerShot SD1400 IS_IXUS 130 Camera User Guide (HKLM-x32\...\CameraUserGuide-PSSD1400IS_IXUS130) (Version: 1.0.0.2 - Canon Inc.)
Canon Utilities CameraWindow (HKLM-x32\...\CameraWindowLauncher) (Version: 7.4.0.7 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.1.0.11 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.0.0.11 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.3.0.5 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.5.0.14 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.3.0.4 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 3.26 - Piriform)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.9 - DivX, LLC)
e-Sword (HKLM-x32\...\{1D3D8773-56B9-44F0-ACC6-3DEA462E665F}) (Version: 11.01.0000 - Rick Meyers)
Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
iTunes (HKLM\...\{A8AF3EF8-5010-4A92-BCCA-90F62A7D62B8}) (Version: 12.9.5.7 - Apple Inc.)
Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 211 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation)
LAME v3.98.3 for Audacity (HKLM-x32\...\LAME for Audacity_is1) (Version:  - )
Malwarebytes version 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Norton Security Online (HKLM-x32\...\NGC) (Version: 22.17.1.50 - Symantec Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.94 - NVIDIA Corporation)
NVIDIA Graphics Driver 430.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 430.86 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Pretty Good Solitaire version 19.1 (HKLM-x32\...\Pretty Good Solitaire_is1) (Version: 19.1.0 - Goodsol Development Inc.)
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Strongvault Online Backup (HKLM-x32\...\{5E33D30D-D896-4D92-B033-5F45819B2937}) (Version: 5.0.2.34 - Strongvault Online Backup) Hidden <==== ATTENTION
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1244 - SUPERAntiSpyware.com)
TomTom HOME (HKLM-x32\...\{30E6FC43-C31F-4968-9A06-AA38E3C3CF73}) (Version: 2.10.1 - TomTom)
TomTom HOME (HKLM-x32\...\{C51F55EC-477D-4385-B951-BDEFA5DFC90B}) (Version: 2.11.6 - TomTom)
Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 4.4.5 - Tweaking.com)
VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Windows Essentials Codec Pack 5.0 (HKLM-x32\...\Windows Essentials Codec Pack) (Version: 5.0 - Windows Essentials Codec Pack)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\PROGRA~1\MICROS~4\shellext.dll -> No File
ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.1.50\NavShExt.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\PROGRA~1\MICROS~4\shellext.dll -> No File
ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.1.50\NavShExt.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\PROGRA~1\MICROS~4\shellext.dll -> No File
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.17.1.50\buShell.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.1.50\NavShExt.dll [2019-04-22] (Symantec Corporation -> Symantec Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Merlin\AppData\Roaming\Microsoft\Windows\Network Shortcuts\My Web Sites on MSN\target.lnk -> hxxp://www.msnusers.co

==================== Loaded Modules (Whitelisted) ==============

2016-09-29 18:29 - 2015-02-26 00:00 - 002403504 _____ (Aomei Technology Co., Limited -> ) [File not signed] C:\Program Files (x86)\AOMEI Backupper\QtCore4.dll
2016-09-29 18:29 - 2015-02-26 00:00 - 000068784 _____ (Aomei Technology Co., Limited -> Microsoft Corporation) [File not signed] C:\Program Files (x86)\AOMEI Backupper\vcomp.dll
2019-06-04 19:48 - 2007-09-13 02:09 - 000303104 _____ (Goodsol Development) [File not signed] C:\Program Files (x86)\goodsol\gdcard.dll
2018-04-21 19:50 - 1999-02-26 15:57 - 000273408 _____ (RealNetworks, Inc.) [File not signed] C:\Windows\SysWow64\pncrt.dll
2018-04-21 19:50 - 1999-02-26 15:57 - 000319488 _____ (RealNetworks, Inc.) [File not signed] C:\Windows\SysWow64\pnen3250.dll
2018-04-21 19:50 - 1999-02-26 15:57 - 000609280 _____ (RealNetworks, Inc.) [File not signed] C:\Windows\SysWow64\pnui3250.dll
2018-04-21 19:50 - 1999-02-26 15:57 - 000062976 _____ (RealNetworks, Inc.) [File not signed] C:\Windows\SysWow64\Raocx32.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [119]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\webcompanion.com -> hxxp://webcompanion.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\...\1001movie.com -> 1001movie.com

There are 6091 more sites.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 19:34 - 2008-01-01 03:13 - 000000855 ____N C:\Windows\system32\drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;C:\Windows\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR
HKU\S-1-5-21-2540028857-2120196535-4242731766-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Merlin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\startupreg: ABNotify => C:\Program Files (x86)\AOMEI Backupper\ABNotify.exe -auto
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: MSC => "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: ShadowPlay => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{13E3F5AD-BD81-4EE7-A77E-F9AD9B51BB3B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{04D29961-17D1-4854-AEA1-C1F96D67C369}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{90DE7E4E-6257-474D-9DC1-AD942ACC336C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A754F708-05F6-45F1-8B37-CA877CF3CB37}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1090446C-F4F1-46B4-871D-BA4809D275E0}] => (Allow) C:\Users\Merlin\AppData\Local\Temp\7zSFDC9.tmp\SymNRT.exe No File
FirewallRules: [{D1E64D68-0C4B-4C1D-AAA5-2CFE54F5F8B7}] => (Allow) C:\Users\Merlin\AppData\Local\Temp\7zSFDC9.tmp\SymNRT.exe No File
FirewallRules: [{B080E22B-8D75-4BF9-ADC1-DB6E64814BD9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe No File
FirewallRules: [{6DE4BD18-90C6-489B-8D23-EDC2E11227C1}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{3B3E5A85-B4F0-47D9-88D9-4811AC2FEE3F}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AEE38E3F-EAC3-4B78-9794-8DBFAAC4BF38}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D4EC57D4-1853-42B2-9825-5A0DFC9BE001}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1A80CE13-9633-42BB-A055-EB6E7F061328}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F45878C0-46A5-4887-A1AD-430D1362E01C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6AEF93D7-E1B6-4994-9AD5-610EE9305640}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CEE54A90-C13E-4A0E-8D48-4FCEF2640376}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

==================== Restore Points =========================

02-06-2019 19:00:08 Windows Backup
06-06-2019 04:49:43 Removed 4K Video Downloader 4.4
06-06-2019 04:51:32 Installed 4K Video Downloader 4.7
09-06-2019 19:00:13 Windows Backup
12-06-2019 07:38:54 Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020
12-06-2019 07:40:02 Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020
12-06-2019 09:56:23 Windows Update

==================== Faulty Device Manager Devices =============

Name: MpKsl9639261c
Description: MpKsl9639261c
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: MpKsl9639261c
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/14/2019 08:05:43 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.19377, time stamp: 0x5ce88421
Faulting module name: KERNELBASE.dll, version: 6.1.7601.24475, time stamp: 0x5cdd8011
Exception code: 0x80004005
Fault offset: 0x0000c5af
Faulting process id: 0xd08
Faulting application start time: 0x01d522a94dc44c08
Faulting application path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: e12ee819-8eb5-11e9-837b-001fc6c4a7eb

Error: (06/12/2019 11:59:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program iexplore.exe version 11.0.9600.19377 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1058

Start Time: 01d52176b29b8b11

Termination Time: 0

Application Path: C:\Program Files\Internet Explorer\iexplore.exe

Report Id:

Error: (06/12/2019 08:48:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.19377, time stamp: 0x5ce88421
Faulting module name: KERNELBASE.dll, version: 6.1.7601.24475, time stamp: 0x5cdd8011
Exception code: 0x80004005
Fault offset: 0x0000c5af
Faulting process id: 0x11d8
Faulting application start time: 0x01d5217bb2916506
Faulting application path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: 0a58fefe-8d8e-11e9-9ab9-001fc6c4a7eb

Error: (06/12/2019 04:23:20 PM) (Source: .NET Runtime Optimization Service) (EventID: 1107) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to execute command from the offline queue: uninstall "MiguiControls, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil".  The error returned was Error: The specified assembly is not installed.
.

Error: (06/10/2019 06:30:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.19355, time stamp: 0x5cc116bf
Faulting module name: KERNELBASE.dll, version: 6.1.7601.24441, time stamp: 0x5cb93873
Exception code: 0x80004005
Fault offset: 0x0000c5af
Faulting process id: 0x3e4
Faulting application start time: 0x01d51fd7472b23d9
Faulting application path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: 79442b2b-8be8-11e9-80ef-001fc6c4a7eb

Error: (06/10/2019 02:55:54 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.19355 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1344

Start Time: 01d51f975304f4b8

Termination Time: 322

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (06/10/2019 01:22:39 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.19355 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1634

Start Time: 01d51f5a96be25d3

Termination Time: 270

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (06/09/2019 10:26:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.19355, time stamp: 0x5cc116bf
Faulting module name: KERNELBASE.dll, version: 6.1.7601.24441, time stamp: 0x5cb93873
Exception code: 0x80004005
Fault offset: 0x0000c5af
Faulting process id: 0x13a8
Faulting application start time: 0x01d51ebe148715ac
Faulting application path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: a78c57cc-8adb-11e9-a3a4-001fc6c4a7eb


System errors:
=============
Error: (06/14/2019 09:20:14 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 06:14:54 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 05:45:23 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 05:41:25 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 05:08:13 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 05:05:21 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.

Error: (06/14/2019 05:05:08 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The HP Network Devices Support service terminated with the following error:
The specified module could not be found.

Error: (06/13/2019 09:56:49 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.


==================== Memory info ===========================

BIOS: Phoenix Technologies, LTD ASUS M2A-VM ACPI BIOS Revision 1705 03/28/2008
Motherboard: ASUSTeK Computer INC. M2A-VM
Processor: AMD Athlon™ 64 X2 Dual Core Processor 5600+
Percentage of memory in use: 74%
Total physical RAM: 6142.49 MB
Available physical RAM: 1588.48 MB
Total Virtual: 12283.13 MB
Available Virtual: 6910.34 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:616.27 GB) (Free:487.45 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive e: (New Volume) (Fixed) (Total:315.24 GB) (Free:224.9 GB) NTFS


==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 0F0919B2)
Partition 1: (Active) - (Size=616.3 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=315.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Attached Files


  • 0

#20
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

Uninstall:

 

Java 8 Update 144 (64-bit)
Java 8 Update 144
Java 8 Update 21
Microsoft Security Essentials

Superantispyware

 

Download the attached fixlist.txt to the same location as FRST

Attached File  fixlist.txt   10.67KB   34 downloads

Run FRST and press Fix
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.

 

Run Process Explorer again as before and post the log.

 

 


  • 0

#21
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

The fix log that I tried to save was blocked by rebooting system.  When I ran FRST again and thought I could do another fix it said it was in the directory as frst.txt.  Here's what I got so far.

Attached Files


  • 0

#22
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

FRST removes the fixlist after it runs.  I'm assuming Norton is blocking the fixlog from showing at the start but the file is still present.  Look in:

C:\Users\Merlin\Downloads\Fixlog.txt

 

Let's get a new Process Explorer log.


  • 0

#23
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

I found a fixlog.  Thnx


Edited by abrahams child, 15 June 2019 - 10:31 AM.

  • 0

#24
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

Hope this what you want to see.

Attached Files


  • 0

#25
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

Get Process Explorer

https://live.sysinte...com/procexp.exe

Save it to your desktop then run it (Vista or Win7+ - right click and Run As Administrator).  

View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures


Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  

Wait a full minute then:

File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.
 


  • 0

Advertisements


#26
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

All signatures verified.

Attached Files


  • 0

#27
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP
iexplore.exe    32.35    669,816 K    730,144 K    5348    Internet Explorer    Microsoft Corporation    (Verified) Microsoft Corporation
iexplore.exe    15.93    303,208 K    335,716 K    5988    Internet Explorer    Microsoft Corporation    (Verified) Microsoft Corporation

 

 

this is way too high for IE.  What websites were you looking at?  How many tabs or windows did you have open?

 

Can you try it again with IE pointed just at google.com without any other tabs or windows?


  • 0

#28
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

Hope this one is better. Happy Fathers Day.

Attached Files


  • 0

#29
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,029 posts
  • MVP

Not really. 

 

iexplore.exe    20.70    387,588 K    359,116 K    5092    Internet Explorer    Microsoft Corporation    (Verified) Microsoft Corporation

 

 

 

I think we need to reset IE.

https://computerstep...t_explorer.html

Try it once without clicking on the Delete Personal Settings button.  Restart IE then go just to google and run Process Explorer.  If you see iexplore.exe is still over 5% then try it again but hit the Delete Personal Settings button.  This will erase all of your automatic logins and history.


  • 0

#30
abrahams child

abrahams child

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 286 posts

Upon resetting IE it went down to .65 without deleting personal data.  Was I correct?

Attached Files


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP