Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

shift keys suddenly stopped functioning


  • Please log in to reply

#1
Beatriceswiss

Beatriceswiss

    Member

  • Member
  • PipPip
  • 80 posts

hello,

 

for no apparent reason, both shift keys on my laptop stopped functioning.  i am unable to type a capital letter unless i press caps lock, and i cannot type any of the functions that are on the keyboard number keys that are found along  the top of the keyboard.  for example, i can't type an exclamation mark, or a percent sign. 

 

any help in fixing this frustrating condition is greatly appreciated.  the frst and addition scan texts are provided below.

 

thank you in advance. beatrice

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2021
Ran by Beatrice (administrator) on BEATRICE (Hewlett-Packard HP Pavilion 17 Notebook PC) (12-10-2021 16:46:52)
Running from C:\Users\Beatrice\Desktop
Loaded Profiles: Beatrice
Platform: Microsoft Windows 8.1 (Update) (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
() [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(Advanced Micro Devices Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Andrea Electronics -> Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ATI Technologies Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe <4>
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <20>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe
(Hewlett Packard -> Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.19991_none_fa0fb7959b4c8c91\TiWorker.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7666392 2014-12-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2013-07-26] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1391472 2014-12-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [171832 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [333784 2021-03-31] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-24] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-07-23] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare Software Co., Ltd.  -> Wondershare)
HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [AVG-Secure-Search-Update_0214c] => C:\Users\Beatrice\AppData\Roaming\AVG 0214c Campaign\AVG-Secure-Search-Update-0214c.exe /PROMPT /mid=866453ef907a47d2a1e59913f05f23cd-7b0c96f9aa992d7393c82dd82ae949bc32978813 /CMPID=0214c
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [153136 2007-03-12] (Nero AG -> Nero AG)
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [uTorrent] => "C:\Users\Beatrice\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [BlackBerryLink.exe] => "C:\Program Files (x86)\Research In Motion\BlackBerry Link\BlackBerryLink.exe" /minimize
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [HP Officejet 4620 series (NET)] => C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [RIMDeviceManager] => C:\Program Files (x86)\Common Files\Research In Motion\RIMDeviceManager\RIMDeviceManager.exe" -RunServer
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016584 2021-01-15] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31176112 2021-08-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31176112 2021-08-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKLM\...\Windows x64\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCS.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpfpp083: C:\Windows\System32\spool\prtprocs\x64\hpfpp083.dll [254464 2008-10-06] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Windows x64\Print Processors\LMACGL4C: C:\Windows\System32\spool\prtprocs\x64\LMACGL4C.DLL [81920 2011-06-02] (Microsoft Windows Hardware Compatibility Publisher -> Lexmark International Inc.)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [51032 2008-04-07] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\Windows\system32\CNMLMCS.DLL [406528 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\HP 6412 Status Monitor: C:\Windows\system32\hpinksts6412LM.dll [331664 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP C611 Status Monitor: C:\Windows\system32\hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet 4620 series): C:\Windows\system32\HPDiscoPM6412.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\Windows\system32\hpbprtmon.dll [404992 2013-08-10] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
HKLM\...\Print\Monitors\hpf3l083.dll: C:\Windows\system32\hpf3l083.dll [134144 2008-10-06] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.71\Installer\chrmstp.exe [2021-10-04] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
AppInit_DLLs: acaptuser64.dll => C:\Windows\system32\acaptuser64.dll [119160 2008-06-12] (Adobe Systems, Incorporated -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2021-01-08]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) ============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {1B19C810-13C3-4EF7-823B-BD17E1F76D93} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {3A918669-731A-4E2F-9697-B7F16E6AC905} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-03-23] (Google Inc -> Google Inc.)
Task: {41D3515E-BCA9-4F9F-825D-D32EE3EA102C} - System32\Tasks\G2MUpdateTask-S-1-5-21-3281177217-869368764-2006139627-1002 => C:\Users\Beatrice\AppData\Local\GoToMeeting\19796\g2mupdate.exe [31176 2021-06-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {52402E40-0599-4C9A-A41E-199DC7B9F7E0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {58B040EB-6780-459B-82DE-8AE267E10B50} - System32\Tasks\G2MUploadTask-S-1-5-21-3281177217-869368764-2006139627-1002 => C:\Users\Beatrice\AppData\Local\GoToMeeting\19796\g2mupload.exe [31176 2021-06-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {5DA8520C-8C9E-4F90-BAC2-03C92A80859C} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2013-07-26] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {609D94C3-7F6F-4977-887B-3875AF409FC5} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40880 2021-08-24] (Garmin International, Inc. -> )
Task: {756C7C9B-63E2-46F8-AD26-4B5E9299BD22} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [4966200 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {8C389CB3-817C-4107-98BF-E0F0D1BBA974} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {AEE99C6E-BE10-4C77-9879-423F5B78679C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-03-23] (Google Inc -> Google Inc.)
Task: {BABB5768-11E9-4561-AFCC-EA6483C9F4DC} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1821968 2021-04-29] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {BBF4AC2F-7854-45DB-85D7-B7A22AA481D8} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2013-06-07] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3281177217-869368764-2006139627-1002.job => C:\Users\Beatrice\AppData\Local\GoToMeeting\19796\g2mupdate.exe
Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3281177217-869368764-2006139627-1002.job => C:\Users\Beatrice\AppData\Local\GoToMeeting\19796\g2mupload.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 207.164.234.193
Tcpip\..\Interfaces\{486B1D7C-1E02-42D5-B6AA-A45F73E675F1}: [DhcpNameServer] 192.168.2.1 207.164.234.193
Tcpip\..\Interfaces\{7C57A303-A069-4AAA-A050-8A4F276FEC6D}: [DhcpNameServer] 192.168.3.5 192.168.3.1
 
Edge: 
=======
Edge Profile: C:\Users\Beatrice\AppData\Local\Microsoft\Edge\User Data\Default [2020-09-27]
 
FireFox:
========
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll [2013-06-26] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-09-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3281177217-869368764-2006139627-1002: @ringcentral.com/TELUSMeetingsPlugin -> C:\Users\Beatrice\AppData\Roaming\TelusMeetings\bin\nptelusmtplugin.dll [2020-04-24] (RingCentral, Inc. -> Zoom Video Communications, Inc., RingCentral Inc., and TELUS Communications Company.)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default [2021-10-12]
CHR Notifications: Default -> hxxps://app.gotowebinar.com; hxxps://calendar.google.com; hxxps://hmsd.edsby.com; hxxps://mail.google.com; hxxps://meet.google.com; hxxps://newtonsgrove.edsby.com; hxxps://nowtoronto.com; hxxps://web.skype.com; hxxps://www.680news.com; hxxps://www.explore-mag.com; hxxps://www.facebook.com; hxxps://www.myswitzerland.com; hxxps://www.point2homes.com; hxxps://www0.123movieshub.sc
CHR Extension: (Slides) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]
CHR Extension: (Docs) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
CHR Extension: (Google Drive) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (YouTube) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-27]
CHR Extension: (uBlock Origin) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-10-12]
CHR Extension: (Sheets) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12]
CHR Extension: (Google Docs Offline) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-12]
CHR Extension: (Skype) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-28]
CHR Extension: (Gmail) - C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR Profile: C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-08-20]
CHR Profile: C:\Users\Beatrice\AppData\Local\Google\Chrome\User Data\System Profile [2021-08-20]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [99328 2013-08-19] () [File not signed]
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 AERTFilters; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [98208 2009-11-17] (Andrea Electronics -> Andrea Electronics Corporation)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-08-19] (Advanced Micro Devices, Inc.) [File not signed]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.)
R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [630584 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe [378168 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe [8360560 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AvgWscReporter; C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe [109480 2021-06-02] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2014-02-26] (Macrovision Corporation -> Macrovision Europe Ltd.) [File not signed]
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-04-18] (Hewlett-Packard Company -> HP)
R2 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-07-23] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-03-12] (Nero AG -> Nero AG)
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [35848 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [221728 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [369232 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [250480 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [99440 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [41504 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [184792 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [538632 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [108000 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [83064 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [851864 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [557288 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [215536 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [328712 2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 blackberryncm; C:\Windows\system32\DRIVERS\blackberryncm6_AMD64.sys [36360 2016-04-06] (Microsoft Windows Hardware Compatibility Publisher -> BlackBerry)
S3 libusb0; C:\Windows\system32\DRIVERS\libusb0.sys [44480 2013-09-23] (Akeo Consulting -> http://libusb-win32.sourceforge.net)
S3 rimvndis; C:\Windows\System32\Drivers\rimvndis6_AMD64.sys [18432 2015-05-26] (BlackBerry Limited) [File not signed]
S3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Microsoft Windows Hardware Compatibility Publisher -> Research in Motion Ltd)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [290008 2013-07-05] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2020-08-21] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Mediatek Inc. -> Ralink Technology, Corp.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) (Whitelisted) =========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2021-10-12 16:46 - 2021-10-12 16:48 - 000025830 _____ C:\Users\Beatrice\Desktop\FRST.txt
2021-10-12 16:18 - 2021-10-12 16:18 - 000000000 ____D C:\Users\Beatrice\Desktop\FRST-OlderVersion
2021-10-12 16:17 - 2021-10-12 16:47 - 000000000 ____D C:\FRST
2021-10-12 16:17 - 2021-10-12 16:18 - 002310656 _____ (Farbar) C:\Users\Beatrice\Desktop\FRST64.exe
2021-10-12 16:15 - 2021-10-12 16:15 - 002299904 _____ (Farbar) C:\Users\Beatrice\Downloads\FRST64.exe
2021-10-11 21:45 - 2021-10-11 21:45 - 000009869 _____ C:\Users\Beatrice\Downloads\FW_ Registration and Team Snap (1).zip
2021-10-11 21:43 - 2021-10-11 21:43 - 000022616 _____ C:\Users\Beatrice\Downloads\Bryan McWatt - 13U Select Peewee -Players, Coach and Assist. Coaches Information (1).xlsx
2021-10-11 21:41 - 2021-10-11 21:41 - 000022616 _____ C:\Users\Beatrice\Downloads\Bryan McWatt - 13U Select Peewee -Players, Coach and Assist. Coaches Information.xlsx
2021-10-11 21:30 - 2021-10-11 21:30 - 000003520 _____ C:\Users\Beatrice\Downloads\RE_ refund for ticket bought.zip
2021-10-11 07:27 - 2021-10-11 07:27 - 000002210 _____ C:\Users\Beatrice\Desktop\TELUS Business Connect Meetings.lnk
2021-10-11 07:27 - 2021-10-11 07:27 - 000000000 ____D C:\Users\Beatrice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telus Business Connect Meetings
2021-10-09 23:45 - 2021-10-09 23:45 - 000012074 _____ C:\Users\Beatrice\Downloads\U9 Team roster 2022.xlsx
2021-10-09 22:41 - 2021-10-09 22:41 - 000001766 _____ C:\Users\Public\Desktop\iTunes.lnk
2021-10-09 22:41 - 2021-10-09 22:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2021-10-09 22:41 - 2021-10-09 22:41 - 000000000 ____D C:\Program Files\iPod
2021-10-09 22:40 - 2021-10-09 22:41 - 000000000 ____D C:\Program Files\iTunes
2021-10-08 22:14 - 2021-10-08 22:14 - 000085058 _____ C:\Users\Beatrice\Downloads\October2021AGM_Agenda (1).pdf
2021-10-08 21:59 - 2021-10-08 21:59 - 000135706 _____ C:\Users\Beatrice\Downloads\Billing-History-31429802 (limited-accessibility).pdf
2021-10-08 21:45 - 2021-10-08 21:45 - 000147150 _____ C:\Users\Beatrice\Downloads\Baseball Ontario Registration, Privacy Assurance and Consent Form (1).pdf
2021-10-08 20:56 - 2021-10-08 20:56 - 000110894 _____ C:\Users\Beatrice\Downloads\I Cullum Support Letter.pdf
2021-10-07 21:01 - 2021-10-07 21:01 - 001070580 _____ C:\Users\Beatrice\Downloads\FW_ EBA Meeting Sept 16 Documents (3).zip
2021-10-07 20:59 - 2021-10-07 21:17 - 000000022 _____ C:\Users\Beatrice\Downloads\2021-09-19.zip
2021-10-07 20:47 - 2021-10-07 20:47 - 000147150 _____ C:\Users\Beatrice\Downloads\Baseball Ontario Registration, Privacy Assurance and Consent Form.pdf
2021-10-07 20:37 - 2021-10-07 20:37 - 000009869 _____ C:\Users\Beatrice\Downloads\FW_ Registration and Team Snap.zip
2021-10-07 09:32 - 2021-10-07 09:32 - 000085058 _____ C:\Users\Beatrice\Downloads\October2021AGM_Agenda.pdf
2021-10-07 09:04 - 2021-10-07 09:09 - 000000022 _____ C:\Users\Beatrice\Downloads\Fwd_ Wini's Celebration of Life (1).zip
2021-10-07 09:02 - 2021-10-07 09:02 - 022848814 _____ C:\Users\Beatrice\Downloads\Fwd_ Wini's Celebration of Life.zip
2021-10-05 21:33 - 2021-10-05 21:33 - 001412202 _____ C:\Users\Beatrice\Downloads\Paving project ltr June 25 2021.pdf
2021-10-05 21:32 - 2021-10-05 21:32 - 001578501 _____ C:\Users\Beatrice\Downloads\Paving project ltr July 17 2021 (1).pdf
2021-10-05 21:20 - 2021-10-05 21:20 - 000023037 _____ C:\Users\Beatrice\Downloads\Poetry & Readings.zip
2021-10-05 21:17 - 2021-10-05 21:17 - 000018819 _____ C:\Users\Beatrice\Downloads\I Will Remember & Pam's Service.zip
2021-10-05 18:11 - 2021-10-05 19:29 - 045197870 _____ C:\Users\Beatrice\Downloads\Wini's Memorial at Black Creek Pioneer Village October 5, 2021 (2).zip
2021-10-05 18:09 - 2021-10-05 18:10 - 000000022 _____ C:\Users\Beatrice\Downloads\Drafts (2).zip
2021-10-05 18:08 - 2021-10-05 18:08 - 002147598 _____ C:\Users\Beatrice\Downloads\Drafts (1).zip
2021-10-05 18:04 - 2021-10-05 18:04 - 002147598 _____ C:\Users\Beatrice\Downloads\Drafts.zip
2021-10-05 18:02 - 2021-10-05 18:03 - 000000022 _____ C:\Users\Beatrice\Downloads\Some More Documents for Meeting.zip
2021-10-05 17:46 - 2021-10-05 18:07 - 099977228 _____ C:\Users\Beatrice\Downloads\Wini's Memorial at Black Creek Pioneer Village October 5, 2021 (1).zip
2021-10-05 17:42 - 2021-10-05 17:43 - 106871818 _____ C:\Users\Beatrice\Downloads\Wini's Memorial at Black Creek Pioneer Village October 5, 2021.zip
2021-10-04 23:10 - 2021-10-04 23:10 - 001070580 _____ C:\Users\Beatrice\Downloads\FW_ EBA Meeting Sept 16 Documents (2).zip
2021-10-04 23:08 - 2021-10-04 23:08 - 001070580 _____ C:\Users\Beatrice\Downloads\FW_ EBA Meeting Sept 16 Documents (1).zip
2021-10-04 23:01 - 2021-10-04 23:01 - 000066717 _____ C:\Users\Beatrice\Downloads\Draft2022RepSelectCoachesContact.pdf
2021-10-04 22:31 - 2021-10-04 22:31 - 000087758 _____ C:\Users\Beatrice\Downloads\Umpire Schedulers Report Oct 2021.pdf
2021-10-04 13:10 - 2021-10-04 13:11 - 565215363 _____ C:\Users\Beatrice\Downloads\Wild Women's Lake Superior Car Camping Trip September 19-27, 2021.zip
2021-10-04 12:44 - 2021-10-04 12:44 - 002537490 _____ C:\Users\Beatrice\Downloads\Agenda, Minutes Financial Statements.zip
2021-10-04 12:41 - 2021-10-04 12:41 - 002730839 _____ C:\Users\Beatrice\Downloads\Draft 2022 (1).zip
2021-10-04 12:35 - 2021-10-04 12:35 - 002730839 _____ C:\Users\Beatrice\Downloads\Draft 2022.zip
2021-10-04 12:31 - 2021-10-04 12:31 - 000286103 _____ C:\Users\Beatrice\Downloads\FINAL 2021 STATEMENTS FOR MARTINGROVE BASEBALL.xlsx
2021-10-04 10:43 - 2021-10-04 10:43 - 000003179 _____ C:\Users\Beatrice\Downloads\Martingrove Senior Rep Team members export (1).csv
2021-10-04 09:39 - 2021-10-04 09:39 - 000012844 _____ C:\Users\Beatrice\Downloads\Your T-Ball Export is Ready.zip
2021-10-04 09:36 - 2021-10-04 09:36 - 000010079 _____ C:\Users\Beatrice\Downloads\Your Rookie Ball Export is Ready.zip
2021-10-04 09:32 - 2021-10-04 09:32 - 000005542 _____ C:\Users\Beatrice\Downloads\Your Peewee Export is Ready.zip
2021-10-04 09:29 - 2021-10-04 09:29 - 000006209 _____ C:\Users\Beatrice\Downloads\Your Mosquito Export is Ready.zip
2021-10-04 09:22 - 2021-10-04 09:22 - 000002282 _____ C:\Users\Beatrice\Downloads\1 members export (1).csv
2021-10-04 09:21 - 2021-10-04 09:21 - 000003646 _____ C:\Users\Beatrice\Downloads\Martingrove Krakens members export.csv
2021-10-04 09:20 - 2021-10-04 09:20 - 000011490 _____ C:\Users\Beatrice\Downloads\1 members export.csv
2021-10-04 09:18 - 2021-10-04 09:18 - 000004135 _____ C:\Users\Beatrice\Downloads\15U House League members export.csv
2021-10-04 09:15 - 2021-10-04 09:15 - 000005540 _____ C:\Users\Beatrice\Downloads\Mid Select - 18U members export.csv
2021-10-04 09:12 - 2021-10-04 09:12 - 000004981 _____ C:\Users\Beatrice\Downloads\Mos Select - 11U members export.csv
2021-10-04 09:11 - 2021-10-04 09:11 - 000004204 _____ C:\Users\Beatrice\Downloads\PW Select - 13U members export.csv
2021-10-04 09:07 - 2021-10-04 09:07 - 000004174 _____ C:\Users\Beatrice\Downloads\RB Select - 9U members export.csv
2021-10-04 09:04 - 2021-10-04 09:04 - 000004863 _____ C:\Users\Beatrice\Downloads\Maj. Midget Rep A - 18U members export.csv
2021-10-04 09:03 - 2021-10-04 09:03 - 000003178 _____ C:\Users\Beatrice\Downloads\Maj. Midget Rep AA - 18U members export.csv
2021-10-04 09:01 - 2021-10-04 09:01 - 000004503 _____ C:\Users\Beatrice\Downloads\Maj. PW Rep A - 13U members export.csv
2021-10-04 09:00 - 2021-10-04 09:00 - 000003653 _____ C:\Users\Beatrice\Downloads\Major Mos Rep A - 11U members export.csv
2021-10-04 08:59 - 2021-10-04 08:59 - 000003179 _____ C:\Users\Beatrice\Downloads\Martingrove Senior Rep Team members export.csv
2021-10-04 08:57 - 2021-10-04 08:57 - 000002473 _____ C:\Users\Beatrice\Downloads\Martingrove White Sox Rep (private) members export.csv
2021-10-04 08:56 - 2021-10-04 08:56 - 000004848 _____ C:\Users\Beatrice\Downloads\Min. Bantam Rep AA - 14U GC members export.csv
2021-10-04 08:55 - 2021-10-04 08:55 - 000005428 _____ C:\Users\Beatrice\Downloads\Min. Bantam Rep AA - 14U PT members export.csv
2021-10-04 08:53 - 2021-10-04 08:53 - 000004880 _____ C:\Users\Beatrice\Downloads\Min. Midget Rep A - 16U members export.csv
2021-10-04 08:51 - 2021-10-04 08:51 - 000005519 _____ C:\Users\Beatrice\Downloads\Min. PW Rep A - 12U members export (1).csv
2021-10-04 08:42 - 2021-10-04 08:42 - 000005519 _____ C:\Users\Beatrice\Downloads\Min. PW Rep A - 12U members export.csv
2021-09-29 08:02 - 2021-09-29 08:01 - 000340792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2021-09-29 08:02 - 2021-09-29 08:01 - 000215536 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2021-09-28 23:08 - 2021-09-28 23:08 - 000069084 _____ C:\Users\Beatrice\Downloads\TorontoHydro_17-09-21.pdf
2021-09-28 23:08 - 2021-09-28 23:08 - 000069084 _____ C:\Users\Beatrice\Downloads\TorontoHydro_17-09-21 (1).pdf
2021-09-28 23:03 - 2021-09-28 23:03 - 000095411 _____ C:\Users\Beatrice\Downloads\Your Agreement with Bell - Mobile# 4164326265.zip
2021-09-28 22:45 - 2021-09-28 22:46 - 003642382 _____ C:\Users\Beatrice\Downloads\9_23_21 Weekly Highlights .zip
2021-09-28 22:28 - 2021-09-28 22:28 - 000850549 _____ C:\Users\Beatrice\Downloads\PDF_104742096_2021-09-26_210.pdf
2021-09-28 22:22 - 2021-09-28 22:22 - 000693624 _____ C:\Users\Beatrice\Downloads\statement (5).pdf
2021-09-28 21:39 - 2021-09-28 21:39 - 000249328 _____ C:\Users\Beatrice\Downloads\Celebration of Life Invitation (3).pdf
2021-09-28 21:37 - 2021-09-28 21:37 - 000249328 _____ C:\Users\Beatrice\Downloads\Celebration of Life Invitation (2).pdf
2021-09-28 21:33 - 2021-09-28 21:33 - 000249328 _____ C:\Users\Beatrice\Downloads\Celebration of Life Invitation (1).pdf
2021-09-28 21:31 - 2021-09-28 21:31 - 000249328 _____ C:\Users\Beatrice\Downloads\Celebration of Life Invitation.pdf
2021-09-17 17:30 - 2021-09-17 17:30 - 000059249 _____ C:\Users\Beatrice\Downloads\Itinerary for Hiking & BA visit January 2023.zip
2021-09-17 16:57 - 2021-09-05 23:05 - 000518144 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2021-09-17 16:57 - 2021-09-05 22:56 - 000401920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2021-09-17 16:49 - 2021-09-17 16:49 - 000097250 _____ C:\Users\Beatrice\Downloads\document-0 (3).pdf
2021-09-15 17:34 - 2021-09-15 17:34 - 000477814 _____ C:\Users\Beatrice\Downloads\CCC447 Periodic Information Certificate - August 31, 2021.zip
2021-09-15 17:04 - 2021-09-15 17:04 - 001560728 _____ C:\Users\Beatrice\Downloads\9_15_21 Weekly Highlights.zip
2021-09-15 16:38 - 2021-09-15 16:38 - 001070580 _____ C:\Users\Beatrice\Downloads\FW_ EBA Meeting Sept 16 Documents.zip
2021-09-14 10:20 - 2021-09-14 10:20 - 000095928 _____ C:\Users\Beatrice\Downloads\document-0 (2).pdf
2021-09-13 13:21 - 2021-09-13 13:21 - 000242988 _____ C:\Users\Beatrice\Downloads\2022Coaching Application CL.pdf
2021-09-12 16:54 - 2021-09-12 16:55 - 000000022 _____ C:\Users\Beatrice\Downloads\TechCollect Info (2).zip
2021-09-12 16:45 - 2021-09-12 16:45 - 000023426 _____ C:\Users\Beatrice\Downloads\PR Media list - .xlsx
2021-09-12 14:36 - 2021-09-12 14:36 - 000181661 _____ C:\Users\Beatrice\Downloads\ereceipt.pdf
2021-09-12 12:23 - 2021-09-12 12:23 - 001219627 _____ C:\Users\Beatrice\Downloads\TechCollect Info (1).zip
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2021-10-12 16:46 - 2021-05-27 16:30 - 000000574 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3281177217-869368764-2006139627-1002.job
2021-10-12 16:34 - 2014-02-24 23:10 - 000000000 ____D C:\Program Files (x86)\Google
2021-10-12 16:17 - 2014-02-24 22:57 - 000000000 ____D C:\Users\Beatrice\AppData\Roaming\ClassicShell
2021-10-12 16:14 - 2021-05-27 16:30 - 000000670 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3281177217-869368764-2006139627-1002.job
2021-10-12 16:10 - 2015-10-24 19:58 - 000000000 ____D C:\ProgramData\Avg
2021-10-12 16:10 - 2013-08-22 10:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-10-12 14:08 - 2017-09-03 22:59 - 000004174 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2021-10-12 14:07 - 2013-08-22 09:36 - 000000000 ____D C:\Windows\Inf
2021-10-12 13:00 - 2013-08-22 11:36 - 000000000 ____D C:\Windows\system32\NDF
2021-10-12 12:38 - 2014-02-24 22:39 - 000000000 ____D C:\Users\Beatrice
2021-10-12 12:38 - 2013-10-07 03:40 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2021-10-12 12:32 - 2021-05-13 11:56 - 000000000 ____D C:\Users\Beatrice\AppData\Local\ElevatedDiagnostics
2021-10-12 11:41 - 2014-02-24 22:43 - 000003938 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{E86B3FDE-7E6F-4AC9-87C7-512C4E67B12B}
2021-10-11 21:29 - 2014-02-24 22:49 - 000003598 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3281177217-869368764-2006139627-1002
2021-10-11 07:27 - 2021-02-02 20:00 - 000000000 ____D C:\Users\Beatrice\AppData\Roaming\TelusMeetings
2021-10-08 20:39 - 2021-04-29 17:24 - 000000000 ____D C:\Users\Beatrice\Desktop\Alison
2021-10-08 19:59 - 2019-02-10 11:45 - 000000000 ____D C:\Users\Beatrice\Documents\2019 registration
2021-10-05 22:00 - 2021-05-04 14:01 - 000003676 _____ C:\Windows\system32\Tasks\G2MUploadTask-S-1-5-21-3281177217-869368764-2006139627-1002
2021-10-05 22:00 - 2021-05-04 14:01 - 000003580 _____ C:\Windows\system32\Tasks\G2MUpdateTask-S-1-5-21-3281177217-869368764-2006139627-1002
2021-10-05 22:00 - 2019-03-28 22:30 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2021-10-05 22:00 - 2018-10-15 22:50 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2021-10-05 22:00 - 2018-03-23 10:24 - 000003334 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-10-05 22:00 - 2018-03-23 10:24 - 000003206 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-10-05 22:00 - 2017-02-23 21:49 - 000003938 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{A8BB549A-4BE4-455E-9E7D-0D0CF353FA4E}
2021-10-05 22:00 - 2015-01-14 23:35 - 000003552 _____ C:\Windows\system32\Tasks\GarminUpdaterTask
2021-10-05 22:00 - 2013-10-07 03:42 - 000002990 _____ C:\Windows\system32\Tasks\Synaptics TouchPad Enhancements
2021-10-05 18:09 - 2018-11-24 08:31 - 000000000 ____D C:\Users\Beatrice\Desktop\Baseball registrations 2013-2018
2021-10-04 23:16 - 2021-01-08 09:09 - 000000000 ____D C:\Users\Beatrice\Desktop\Steven and Amanda's payments
2021-10-04 22:35 - 2018-03-23 10:24 - 000002211 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-10-04 22:35 - 2018-03-23 10:24 - 000002170 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-10-04 13:21 - 2013-08-22 09:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2021-10-04 10:12 - 2013-08-22 11:36 - 000000000 ____D C:\Windows\rescache
2021-10-03 22:44 - 2019-03-28 22:29 - 000002046 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-09-29 11:23 - 2013-08-26 02:09 - 000958016 _____ C:\Windows\system32\PerfStringBackup.INI
2021-09-29 08:03 - 2020-10-22 19:53 - 000184792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2021-09-29 08:01 - 2020-06-16 22:42 - 000538632 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2021-09-29 08:01 - 2019-01-17 23:18 - 000250480 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2021-09-29 08:01 - 2019-01-17 23:18 - 000099440 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2021-09-29 08:01 - 2018-10-23 23:07 - 000041504 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2021-09-29 08:01 - 2017-09-03 22:59 - 000557288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2021-09-29 08:01 - 2017-09-03 22:59 - 000328712 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2021-09-29 08:01 - 2017-09-03 22:59 - 000108000 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2021-09-29 08:01 - 2017-09-03 22:59 - 000083064 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys
2021-09-29 08:00 - 2019-01-17 23:18 - 000369232 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2021-09-29 08:00 - 2019-01-17 23:18 - 000035848 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArDisk.sys
2021-09-29 08:00 - 2017-12-10 23:25 - 000221728 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2021-09-29 08:00 - 2017-09-03 22:59 - 000851864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2021-09-28 21:21 - 2013-08-22 10:44 - 000486480 _____ C:\Windows\system32\FNTCACHE.DAT
2021-09-17 18:54 - 2013-08-22 11:36 - 000000000 ___RD C:\Windows\ToastData
2021-09-17 18:13 - 2014-02-26 18:21 - 000000000 ____D C:\Windows\system32\MRT
2021-09-17 18:06 - 2014-02-26 18:20 - 135637312 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-09-17 18:06 - 2013-08-22 11:20 - 000000000 ____D C:\Windows\CbsTemp
2021-09-15 16:42 - 2014-03-16 02:37 - 006698496 ___SH C:\Users\Beatrice\Downloads\Thumbs.db
2021-09-14 10:01 - 2021-07-11 08:40 - 000000000 ____D C:\Users\Beatrice\Desktop\Travel
2021-09-13 19:01 - 2021-06-07 18:42 - 000000000 ____D C:\Users\Beatrice\Desktop\Carleton Cards
2021-09-13 19:01 - 2014-07-01 15:43 - 003176448 ___SH C:\Users\Beatrice\Desktop\Thumbs.db
 
==================== Files in the root of some directories ========
 
2014-04-06 09:24 - 2014-04-06 09:24 - 000000000 _____ () C:\Users\Beatrice\AppData\Roaming\bitlord_log.txt
2014-09-29 23:04 - 2019-07-17 11:20 - 000000539 _____ () C:\Users\Beatrice\AppData\Roaming\Rim.Desktop.Exception.log
2014-09-29 23:03 - 2019-07-17 11:22 - 000003874 _____ () C:\Users\Beatrice\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2014-09-29 23:04 - 2019-07-17 11:20 - 000000539 _____ () C:\Users\Beatrice\AppData\Roaming\Rim.DesktopHelper.Exception.log
2015-01-25 19:37 - 2015-01-25 19:37 - 000003584 _____ () C:\Users\Beatrice\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
 
LastRegBack: 2021-10-08 20:04
==================== End of FRST.txt ========================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2021
Ran by Beatrice (12-10-2021 16:52:43)
Running from C:\Users\Beatrice\Desktop
Microsoft Windows 8.1 (Update) (X64) (2014-02-25 02:41:28)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
 
(If an entry is included in the fixlist, it will be removed.)
 
Administrator (S-1-5-21-3281177217-869368764-2006139627-500 - Administrator - Disabled)
Beatrice (S-1-5-21-3281177217-869368764-2006139627-1002 - Administrator - Enabled) => C:\Users\Beatrice
Guest (S-1-5-21-3281177217-869368764-2006139627-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3281177217-869368764-2006139627-1004 - Limited - Enabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Enabled - Up to date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}
AS: AVG Antivirus (Enabled - Up to date) {A3C8941D-8036-3856-D9BB-709D4A2A7EAC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\uTorrent) (Version: 3.5.3.44358 - BitTorrent Inc.)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Acrobat 9 Pro Extended - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7761-000000000004}{AC76BA86-1033-F400-7761-000000000004}) (Version: 9.0.0 - Adobe Systems)
Adobe Acrobat 9 Pro Extended 64-bit Add-On (HKLM\...\{AC76BA86-1033-0000-0064-0003D0000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 21.007.20095 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.89 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.3.133 - Adobe Systems, Inc.)
Amazon Kindle (HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\Amazon Kindle) (Version: 1.28.0.57030 - Amazon)
AMD Catalyst Install Manager (HKLM\...\{E825A27F-01E0-1BB8-6A7D-DD769D57E4B0}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (HKLM\...\{C908C165-F564-4420-AFBC-BC9BB5093D89}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32-bit) (HKLM-x32\...\{5C028510-A6A1-409A-A2BF-4DCB43B21EF9}) (Version: 7.6 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{5C7D4FCF-80C5-4520-9934-D50532AAC59C}) (Version: 7.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{74CC99EB-7DC0-4CB0-847A-F8C2FE39690C}) (Version: 14.5.0.7 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
AVG AntiVirus FREE (HKLM\...\AVG Antivirus) (Version: 21.8.3202 - AVG Technologies)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Classic Shell (HKLM\...\{2368907C-E8F6-4750-A023-254C3E2B5E8D}) (Version: 4.0.4 - IvoSoft)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Elevated Installer (HKLM-x32\...\{AA541EFB-3F91-4A7E-A915-CCDD91C2AE11}) (Version: 7.8.1.0 - Garmin Ltd or its subsidiaries) Hidden
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
File Viewer Plus 4 (HKLM-x32\...\{5C61A881-C34E-405E-8C33-800821A618CF}_is1) (Version: 4.0.1 - Sharpened Productions)
Galerie de photos (HKLM-x32\...\{F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Garmin Express (HKLM-x32\...\{4CE72891-E662-4E1D-997A-2DB13467F489}) (Version: 7.8.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{e0284aaa-26dc-4fb0-b0b6-06e658bdc602}) (Version: 7.8.1.0 - Garmin Ltd or its subsidiaries)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 94.0.4606.71 - Google LLC)
GoTo Opener (HKLM-x32\...\{E69269DB-A77B-4BC1-8F39-241107B09F26}) (Version: 1.0.539 - LogMeIn, Inc.)
GoToMeeting 10.17.0.19796 (HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\GoToMeeting) (Version: 10.17.0.19796 - LogMeIn, Inc.)
GWX Control Panel (HKLM-x32\...\UltimateOutsider_GwxControlPanel) (Version:  - UltimateOutsider)
HP 3D DriveGuard (HKLM-x32\...\{07F6DC37-0857-4B68-A675-4E35989E85E3}) (Version: 6.0.15.1 - Hewlett-Packard Company)
HP CASL Framework (HKLM-x32\...\{5094249B-9542-4536-AE76-B769EE085C99}) (Version: 7.0.5.1 - HP)
HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Officejet 4620 series Basic Device Software (HKLM\...\{B411AD10-1BC9-4939-8848-BC5E66F662B7}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart C4600 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{FF5C86D0-09EA-43B8-A11C-7B8F7DA7FC51}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP System Event Utility (HKLM-x32\...\{23EF407B-E7D0-4CB6-8916-43E5B9EEFDED}) (Version: 1.0.9 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HP Utility Center (HKLM\...\{AED1C141-3AFC-47FE-AE90-C820AA60B103}) (Version: 2.2.5 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
iTunes (HKLM\...\{E6FF3475-A35E-481F-8A8E-3D73CF3A30A1}) (Version: 12.10.11.2 - Apple Inc.)
K-Lite Mega Codec Pack 10.3.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.3.0 - )
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Project 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{8446EB22-A746-46DC-B1BD-E0DFA1F3CDDA}) (Version:  - Microsoft)
Microsoft Office Project Professional 2007 (HKLM-x32\...\PRJPRO) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Visio 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{CE144BF4-4950-4CDB-A5F7-CCE1888F49CB}) (Version:  - Microsoft)
Microsoft Office Visio Professional 2007 (HKLM-x32\...\VISPRO) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{0FD2B9C6-DB91-48EA-9518-AB5B68CA1E28}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{45898170-E68C-4F02-AA35-C2186BF347A3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{B39A6825-EA20-43EA-AB2D-A6BC0298D9A1}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Nero 7 Ultra Edition (HKLM-x32\...\{43FFE159-3199-4188-A1CD-629166AD1033}) (Version: 7.02.6445 - Nero AG)
OEM Application Profile (HKLM-x32\...\{70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Ralink Bluetooth Stack64 (HKLM\...\{8A2E2A41-B814-407E-2F96-4E433C42AB78}) (Version: 11.0.739.0 - Mediatek)
Ralink RT3290 802.11bgn Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.29.8105 - Mediatek)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.29068 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7404 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype version 8.68 (HKLM-x32\...\Skype_is1) (Version: 8.68 - Skype Technologies S.A.)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.6.2 - Synaptics Incorporated)
TELUS Business Connect Meetings (HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\TELUSBusinessConnectMeetings) (Version: 19.3 - Zoom Video Communications, Inc., RingCentral Inc., and TELUS Communications Company.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version:  - )
Zoom (HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\ZoomUMX) (Version: 5.7.7 (1105) - Zoom Video Communications, Inc.)
Zoom Outlook Plugin (HKLM-x32\...\{1BD8B0E0-0FBF-4F56-8F11-CE09B34EAD2F}) (Version: 5.0.24936 - Zoom)
 
Packages:
=========
Box for Windows 8 -> C:\Program Files\WindowsApps\134D4F5B.Box_2.1.4.4_neutral__2qk4zy5s3qmee [2015-11-13] (Box, Inc.)
Browser Choice -> C:\Windows\BrowserChoice [2014-03-13] (Microsoft Corporation)
eBay -> C:\Program Files\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw [2015-03-30] (eBay, Inc)
Games -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-03-30] (Microsoft Corporation) [MS Ad]
Getting Started with Windows 8 -> C:\Program Files\WindowsApps\AD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2015-03-30] (Hewlett-Packard Company)
HP Registration -> C:\Program Files\WindowsApps\AD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-03-30] (Hewlett-Packard Company)
Kindle -> C:\Program Files\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp [2015-06-24] (AMZN Mobile LLC)
McAfee® Central for HP -> C:\Program Files\WindowsApps\2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-04] (.-McAfee Inc-.)
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-03] (Microsoft Studios) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.11.1807.1002_x86__8wekyb3d8bbwe [2018-07-26] (Microsoft Studios) [MS Ad]
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-26] (Microsoft Corporation) [MS Ad]
MSN News -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-26] (Microsoft Corporation) [MS Ad]
MSN Sports -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-30] (Microsoft Corporation) [MS Ad]
MSN Travel -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-16] (Microsoft Corporation) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-25] (Microsoft Corporation) [MS Ad]
Music -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2015-03-30] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_2.22.0.39_x64__mcm4njqhnhss8 [2018-10-28] (Netflix, Inc.)
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2015-06-24] (Skype) [MS Ad]
Snapfish -> C:\Program Files\WindowsApps\AD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-08] (HP Inc.)
Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2015-11-07] (Microsoft Corporation) [MS Ad]
YouCam for HP -> C:\Program Files\WindowsApps\CyberLinkCorp.hs.YouCamforHP_1.0.2.29632_x86__06qsbagp91rvg [2015-03-30] (CYBERLINKCOM CORP)
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3281177217-869368764-2006139627-1002_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Beatrice\AppData\Local\GoToMeeting\19598\G2MOutlookAddin64.dll (LogMeIn, Inc. -> LogMeIn, Inc.)
CustomCLSID: HKU\S-1-5-21-3281177217-869368764-2006139627-1002_Classes\CLSID\{D9AC5E73-BB10-467b-B884-AA1E475C51F5}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ShellIconOverlayIdentifiers: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2008-06-12] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2006-12-11] () [File not signed]
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2007-05-05] () [File not signed]
ContextMenuHandlers3: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2006-12-11] () [File not signed]
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2007-05-05] () [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2013-08-19] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2008-06-12] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2021-09-29] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2006-12-11] () [File not signed]
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2007-05-05] () [File not signed]
 
==================== Codecs (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3554304 2013-03-17] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [258560 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3649536 2013-03-17] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-02-06] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
 
==================== Shortcuts & WMI ========================
 
==================== Loaded Modules (Whitelisted) =============
 
2014-02-26 20:55 - 2006-12-11 03:14 - 000043008 _____ () [File not signed] C:\Program Files (x86)\WinRar\rarext64.dll
2013-08-19 16:48 - 2013-08-19 16:48 - 000016896 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\a4\AS4.NativeProxy.dll
2013-08-19 16:47 - 2013-08-19 16:47 - 000127488 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-08-19 16:47 - 2013-08-19 16:47 - 000102400 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\c0e36bbe186843fc7128eb39327612ed\A4.Foundation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\6db8c82b2a10692ba3e34489b6ad608a\AEM.Actions.CCAA.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\4e856df190c91962ca5fd8df9ac81dc9\AEM.Plugin.EEU.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\a2e2f0a2dbfba05b96d65fb60c14e783\AEM.Plugin.Hotkeys.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.4adf1574#\daa6ebb9adcb0bbae42c14f968421fb0\AEM.Plugin.Audio.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\e9de4211033ac03b49524d460f50711f\AEM.Plugin.DPPE.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\3a1ef20072c43c9e29bda5cf9709ea70\AEM.Plugin.Source.Kit.Server.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\6a3d383cbca037228c208ff2a303b8b1\AEM.Plugin.WinMessages.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\21b7a82e5e33f5d2e17834d963d132a3\AEM.Plugin.REG.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\18b5c8ed2b0bba1d588f38b1eb6af77d\AEM.Plugin.GD.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\893ef2bbc7c3c42f25e945a0dd4320f7\AEM.Server.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\ef5d225d808ec141ea86eb4bbaec791b\AEM.Server.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\b0d8d25606ebd5d311aceb0099f57c61\APM.Foundation.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\89939812db211f67aaa00657ed4bf27d\ATICCCom.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\89d9988b6ee847b289b7ac7b4a4df4c4\CCC.Implementation.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.2042675f#\f173de02458fb1ede232d791cc71e372\CLI.Aspect.CPUPStates.Fuel.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000153088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\1cd1504fafcf8b947cf12e6d36697b70\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\e0f7df4d54829b73d16c20e99046b15a\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\b54721a1f5de630f771579cb315ba2a2\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2021-08-17 14:22 - 2021-08-17 14:22 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\682e29f26b487e54daf5b55e3279217c\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000072192 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.398e7f7a#\f33d2fe2e90efe35229ddd8f88e18c3b\CLI.Aspect.A4.A4.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\780905fef01522f3cde666b3e2c6e960\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\54ebdc788ac5acf32c531fc4c79d0110\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000130048 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\c0f11e19a23c4fecaf1de34e5cc90363\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\31b63793f15e5d17978b6aa718198009\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4ede500c#\c524e7b4d0618266f30dc8cdd0b8bcce\CLI.Aspect.DPPE.Fuel.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000074240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\06d48d3f7f37e0e3657afa5f189fb4ac\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000111616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.5a772e69#\ef07a48f48c48b14b506eb18332da2e8\CLI.Aspect.Fets.Fuel.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.648b65fc#\47f3e9c83d911f08f69f63e92d33291e\CLI.Aspect.WiFi.Fuel.Dashboard.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\74470ddc39c8c1a78a9a56d1164e026f\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000292864 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\84c5cec8efe6b9e3c9280e15ae45a504\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000616960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\aaff66a61d9dca778d784351ee335d7b\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000741376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\6fe036ed0a8945d93c96ba154382cb41\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000452608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\4bdec37f40ec4251b96ebe96a31263c7\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000149504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\6bb66a6f023c496c9240e99c052e30b9\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\de1d8944eb42d7655cdcc1ed9676a6ac\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\6cc330e9b7d4ad51a65470bc8fe4c1ce\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\e99d3b20f5c95ad31eeeb60b3a2b42b6\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000023552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c2a2b491#\de167116094e96283316565d95695c5c\CLI.Aspect.WiFi.Fuel.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000313344 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\8ff6794813acd80f05c2c9f1e2579548\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\9f1cd625b6456d1c24a42ebf8196eb5d\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000081408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.caa5cc64#\28a42922706040a82e69dc134952de90\CLI.Aspect.Fets.Fuel.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 001315840 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d7e090dc#\31ec10c598a6565857a46d37b2d65ca4\CLI.Aspect.User.Fuel.Dashboard.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e76f4137#\f476ef0dcfe3f2fc90ec157556335a3e\CLI.Aspect.A4.A4.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000273408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\b5dabe0a5801a757dfee5dbe7b34ac08\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 003358720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\254e8dbb08a8ba0aa4a332c12cc3fb85\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000240128 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\8cf353b7402a07e6aba1050994a8ae33\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000047104 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\851bf0de5087a1e78e477e86016d4904\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.efd83192#\6662e65b5a406a0245c0f96570a91b66\CLI.Aspect.CPUPStates.Fuel.Shared.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000047104 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f38af62f#\5c1e4083e27a6a2a1bc96dced89a5bd4\CLI.Aspect.A4.A4.Runtime.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f45bd021#\0240a99dadcf148ccc776ebc05182792\CLI.Aspect.DPPE.Fuel.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\27d8c928cece4642395be7ad945adf5a\CLI.Caste.A4.Runtime.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\d75b9fb9388d6047f16ef25b9a9e1d63\CLI.Caste.A4.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\4b1b031d16c0bbcaaddd3d36360d2c90\CLI.Caste.A4.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\142eaaf05aa814a2575a75f006881eb1\CLI.Caste.Fuel.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\65a344ad359d4a5a4788c3b70858f2b7\CLI.Caste.Fuel.Runtime.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\d500277be6b27753d3508b19479ea083\CLI.Caste.Fuel.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\2f9a6fea2c42ca7532c042790dc8b57d\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 001548800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\2aae98f57b2001b0086e2bbe8f4c7789\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000472576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\3ad443cd07c6339722af3186ba463d1b\CLI.Caste.Graphics.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\c7c01ac31e08314bf76111c8539b26cf\CLI.Caste.HydraVision.Runtime.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\04512d931f60bf343cc924eb4694fcdb\CLI.Caste.HydraVision.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\76445930daff76d3ee8661666afc7bc3\CLI.Caste.HydraVision.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\1bad36549a850f92338731093bb2ff55\CLI.Caste.Platform.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\385458e3f1554457744d360600ac5b2f\CLI.Caste.Platform.Runtime.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\146f1f938899f0959dae6893b1242299\CLI.Caste.Platform.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000350720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combinee84f0351#\4275059fed0e5dca55cff25dc4870be2\CLI.Combined.Fusion.Aspects.Runtime.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\8b26862960a9b9fd06b196b396af112d\CLI.Component.Runtime.Shared.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\050e85ce8fe21d09f0c242338854997e\CLI.Component.Dashboard.ProfileManager2.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000150528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\5d5fb095c2e6feb8277213427bd01d82\CLI.Component.Runtime.Shared.Private.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\daf5c208d31049d0b0832222a22365df\CLI.Component.Runtime.Extension.EEU.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 001603584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\912908b6e831aa02ec239740f1ed6b94\CLI.Component.Dashboard.Shared.Private.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\abfd444a6be7bd7004adbddff3c5b4c4\CLI.Component.Client.Shared.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000084480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\ff47b4bc127b0d432d3c89a1459f7002\CLI.Component.Dashboard.Shared.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\64e70f1cda447b5335b7dc63e65c57a5\CLI.Foundation.Private.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\7eeefb8daecd84b1fcc708b6a7945c88\CLI.Foundation.XManifest.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\787ef2401a5a375c8dc090b9f1b7ec4a\CLI.Foundation.CoreAudioAPI.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000934400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\f1c48cd8126c21d68bbd5d4a53e9d6f2\CLI.Foundation.Client.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\10a852602439a892079615108bd187f4\CLI.Foundation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\1649b79982f5be8407bbbcd0fa632b59\DEM.Graphics.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\41ca905699d9090d47d24a41e96408d6\Fuel.Foundation.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000292864 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\ef59587369907008c990e7cabaf8297d\LOG.Foundation.Implementation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000149504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\bc0382d14e7bce5c93890650cebc464c\LOG.Foundation.Private.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000087040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\a3246589851f87cc463b5d5f80040dbb\LOG.Foundation.Implementation.Private.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000123392 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\7d3c3b2c0292b687de55befac89e6683\LOG.Foundation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\02ea0567f2c02ab976785760270bad34\MOM.Foundation.ni.dll
2021-08-17 14:24 - 2021-08-17 14:24 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\0dc18e6b5d3ecf7cabcca9d873250db3\MOM.Implementation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\f4a13798bce1c49264d485c414971df6\NEWAEM.Foundation.ni.dll
2013-08-19 16:38 - 2013-08-19 16:38 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll
2013-08-19 16:37 - 2013-08-19 16:37 - 000004608 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000774656 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\13fe5d843ba61c542fcd59b7560e7647\ADL.Foundation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000250880 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\a58496caf23a12dc0387da8424860a88\APM.Server.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000297984 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\c816374a480ac81fda0b161780f1b8a1\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 001652736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\10d38bf7b8aa4c6cae1a56454e6708e5\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000740864 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\68635dcde6e130978d3fe3176f9a2177\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 002559488 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\a007883353d9bcde683526050397b044\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000989696 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\4c5ad577b1f4ba3fffcf5e83d53e81fe\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\6738be2851c88acac681376393f57f47\CLI.Component.Client.Shared.Private.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000233472 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\761404c4adc3cd35df4e9bb0d7188e5b\CLI.Component.Runtime.ni.dll
2021-08-17 14:22 - 2021-08-17 14:22 - 000914944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\1b40dacf94f2d86843e43d74257cf9df\CLI.Component.Dashboard.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\ce4a61a3f25087cba1f2b105129c679a\DEM.Graphics.I0706.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\10b1ad8dc44d7adc004ca8162434f939\DEM.Graphics.I0709.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\122e647b281ce9624c2e6e18efbc55d8\DEM.Graphics.I0712.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\17d82102af5f76d153707a79ce710e5d\DEM.Graphics.I0804.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\167e3cc8af8f34c81144f77b7fb3f1e9\DEM.Graphics.I0805.ni.dll
2021-08-17 14:23 - 2021-08-17 14:23 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\3a0e2560bbc3e0802b2fc0463da61040\DEM.Graphics.I0812.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\d02ff73250fc7538b321df5f640df173\DEM.Graphics.I0906.ni.dll
2021-08-15 21:31 - 2021-08-15 21:31 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\51a70dc7d493a64c4f64056931086004\DEM.Graphics.I0912.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\426ead6764b5086330af0456889837ce\DEM.Graphics.I1010.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 001005568 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\faa7fa0927cdc6715b0c84a754c20d74\Localization.Foundation.Private.ni.dll
2021-08-17 14:24 - 2021-08-17 14:24 - 000242688 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\faead3b7d1ff06d5b590f9308999bead\ResourceManagement.Foundation.Implementation.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\35075c8ee41732ac637e800fafead198\ResourceManagement.Foundation.Private.ni.dll
2021-08-15 21:30 - 2021-08-15 21:30 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\e0e79b66e3bfab418076f129b6a4d0f9\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 002286592 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\4b93d4ee69dca1fa156f4701aebfc801\CLI.Caste.Graphics.Shared.ni.dll
2021-08-15 21:32 - 2021-08-15 21:32 - 002788864 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\7436a7ac22885250f24915d2d3263411\CLI.Caste.Graphics.Runtime.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000025600 _____ (ATI Technologies Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\dfa03221ba4c7d8045929658ba0207af\DEM.Foundation.ni.dll
2021-08-15 21:29 - 2021-08-15 21:29 - 000115200 _____ (ATI Technologies Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\2c88f9c8b98539de483ddc4c6563ddd5\DEM.Graphics.I0601.ni.dll
2011-04-29 12:34 - 2011-04-29 12:34 - 000927232 _____ (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsem08.rsc
2011-04-29 12:34 - 2011-04-29 12:34 - 000012288 _____ (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqstp08.rsc
2011-04-29 20:08 - 2011-04-29 20:08 - 000048128 _____ (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.rsc
2010-08-06 12:15 - 2010-08-06 12:15 - 000054784 _____ (Hewlett-Packard) [File not signed] C:\Windows\SYSTEM32\hpzipr12.dll
2010-11-18 22:08 - 2010-11-18 22:08 - 000086016 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2014-01-18 18:12 - 2014-01-18 18:12 - 000796352 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicExplorer64.dll
2014-01-18 18:12 - 2014-01-18 18:12 - 002271424 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2014-01-18 18:12 - 2014-01-18 18:12 - 000283840 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Windows\system32\StartMenuHelper64.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
==================== Safe Mode (Whitelisted) ==================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\avgSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\avgSP.sys => ""="Driver"
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer (Whitelisted) ==========
 
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.msn.com/HPCON14/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON14/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON14/4
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON14/4
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-01-18] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-03-30 21:28 - 2018-12-03 12:24 - 000000041 _____ C:\Windows\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Beatrice\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Photo Gallery Wallpaper.jpg
DNS Servers: 192.168.2.1 - 207.164.234.193
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "BlackBerryLink.exe"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "RIMDeviceManager"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-3281177217-869368764-2006139627-1002\...\StartupApproved\Run: => "GarminExpress"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{C38017F8-E0E8-4B42-89D2-849D1FB92D12}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5114AAF1-933F-48E2-B065-8FD049CD208B}] => (Allow) LPort=2869
FirewallRules: [{8A63499F-BA73-4586-9EFD-A4E8BE6C67DA}] => (Allow) LPort=1900
FirewallRules: [{06F2CB04-A283-4B52-B8AA-229C717AFC13}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9BE17BA2-312C-4A9E-8EAD-5EEF4C17223A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1EFE606F-A8FC-4435-8FD8-765B3E043242}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{842CDB17-A5DE-4194-BA3F-443B0EE2AEE4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7CADD1D8-196B-4BFA-8606-09D4A1D2DC3B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe => No File
FirewallRules: [{3CB5F53A-8944-4F29-8D84-80BDE5F50762}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\FaxApplications.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B0D5AAE4-97F0-4FE8-982D-5A99C8DB57A7}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\DigitalWizards.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{142E4A0A-587A-4D65-BC6B-BD25D7B42F84}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\SendAFax.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{DCE51DE1-18DC-40E0-A2BB-2EC4E1264899}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4830FFDE-4BDC-49C9-B241-280544DA7EC3}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C9B42E5F-A389-4CAE-B246-9BD01E019D3C}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{7AE58E2A-6850-48BE-A271-D3CC2B44C5CB}C:\users\beatrice\appdata\local\logmein client\logmein client.exe] => (Allow) C:\users\beatrice\appdata\local\logmein client\logmein client.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [UDP Query User{D740E82B-1F84-4ADD-9F7E-EFB526EDDD03}C:\users\beatrice\appdata\local\logmein client\logmein client.exe] => (Allow) C:\users\beatrice\appdata\local\logmein client\logmein client.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [TCP Query User{B1DA0F5A-40E9-403E-8D94-4B0F9FA3996B}C:\users\beatrice\appdata\local\logmein client\logmein client.exe] => (Allow) C:\users\beatrice\appdata\local\logmein client\logmein client.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [UDP Query User{F56BEE0E-1B0F-4925-914C-727FF4C8E757}C:\users\beatrice\appdata\local\logmein client\logmein client.exe] => (Allow) C:\users\beatrice\appdata\local\logmein client\logmein client.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{0E6742E6-D825-48A0-9E15-9578D030152E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{64DB1C5C-FA5D-4632-972C-AFF6BDCD0DA4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E3C51DF4-EA9A-4381-9B60-732C750E9261}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{39C5FD0D-9617-4811-96B7-6F4584EE9163}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A3904ACB-D723-40B0-84FC-82CD131424AC}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{96F34E72-338C-43F4-A665-A3D6DA664BE4}] => (Allow) C:\Users\Beatrice\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{FFEA73B4-26C7-4B76-B566-16B7EC746F1B}] => (Allow) C:\Users\Beatrice\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{ED614057-4496-4D36-A24E-5BBF11F5473B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9C7642F9-4C29-4714-9D3F-A67324DC94C3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{311DF5C6-0821-4189-9756-DEFB77C9F34B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C863362F-668C-42B9-B273-881A20C7AF5A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{09C6ABE0-D192-4E3E-884C-CB4878B1A6BC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{CE833B81-9D44-448B-96C2-F97E034B6190}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B635B7F1-B07B-4141-B333-3E7E282E9795}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7D467B21-A5CB-4ED0-A49E-24406CD321CC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{F7814187-F802-46DD-9F33-D8B7B42C3F46}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard)
FirewallRules: [{92BC6056-5737-411B-B1A6-6B3964BA46D8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe => No File
FirewallRules: [{81B98103-2BCB-49CB-9519-1150EAB1CEA5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe => No File
FirewallRules: [{4F9307C3-1BB3-4471-9D2F-5AE3BA04A065}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard)
FirewallRules: [{1E3E99D4-0E24-4476-95E7-042F505D5D67}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4310A9AF-CF57-42E5-A26D-B5F21B061E1A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{99F057C5-36FD-4681-97CA-C4F388C66983}] => (Block) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{3CB52645-E171-4097-946A-78A57F8F7203}] => (Block) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{8E5466CC-6E3A-4EEE-979A-BA9930B92985}] => (Block) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{24ACCAF1-E06C-4109-9871-0B6EFE4C19C8}] => (Block) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{DF3E7EBD-D5DC-4D74-B6D7-388A7161033C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7DBD61DD-7C62-487B-9D44-68010C8E115B}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B8D094DD-B959-4F0A-83A6-3FB354E5FFBF}] => (Allow) C:\Users\Beatrice\AppData\Roaming\TelusMeetings\bin\TelusBusinessConnectMeetings.exe (RingCentral, Inc. -> Zoom Video Communications, Inc., RingCentral Inc., and TELUS Communications Company.)
FirewallRules: [{D3DDF015-B64F-4BFF-B371-36E361CC25A6}] => (Allow) C:\Users\Beatrice\AppData\Roaming\TelusMeetings\bin\airhost.exe (RingCentral, Inc. -> Zoom Video Communications, Inc., RingCentral Inc., and TELUS Communications Company.)
 
==================== Restore Points =========================
 
29-09-2021 08:56:46 Scheduled Checkpoint
08-10-2021 22:03:58 Scheduled Checkpoint
12-10-2021 11:48:02 JRT Pre-Junkware Removal
12-10-2021 13:37:39 Restore Operation
 
==================== Faulty Device Manager Devices ============
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (10/12/2021 02:06:50 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Windows Update). Additional information: 0x81000204.
 
Error: (10/12/2021 01:45:49 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x81000204.
 
Error: (10/05/2021 07:32:11 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 6.3.9600.18460 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 
Process ID: 16dc
 
Start Time: 01d7ba35a80f36b9
 
Termination Time: 109
 
Application Path: C:\Windows\explorer.exe
 
Report Id: 760a9471-2634-11ec-83c8-485ab6bbca3e
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
Error: (10/05/2021 06:09:24 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Explorer.EXE version 6.3.9600.18460 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 
Process ID: 1274
 
Start Time: 01d7ba2f0ca150cd
 
Termination Time: 149
 
Application Path: C:\Windows\Explorer.EXE
 
Report Id: e5835936-2628-11ec-83c8-485ab6bbca3e
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
Error: (10/04/2021 09:54:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 30299406
 
Error: (10/04/2021 09:54:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 30299406
 
Error: (10/04/2021 09:54:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (09/12/2021 09:32:20 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2341203
 
 
System errors:
=============
Error: (10/12/2021 04:59:28 PM) (Source: DCOM) (EventID: 10010) (User: Beatrice)
Description: The server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} did not register with DCOM within the required timeout.
 
Error: (10/12/2021 04:57:28 PM) (Source: DCOM) (EventID: 10010) (User: Beatrice)
Description: The server {1ECCA34C-E88A-44E3-8D6A-8921BDE9E452} did not register with DCOM within the required timeout.
 
Error: (10/12/2021 02:04:49 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: A corruption was discovered in the file system structure on volume Windows.
 
The Master File Table (MFT) contains a corrupted file record.  The file reference number is 0x14e00000003d0c2.  The name of the file is "\Program Files (x86)\AVG\Antivirus\setup\vps_defs_common-909.vpx".
 
Error: (10/12/2021 02:01:23 PM) (Source: DCOM) (EventID: 10010) (User: Beatrice)
Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
 
Error: (10/12/2021 02:01:23 PM) (Source: DCOM) (EventID: 10010) (User: Beatrice)
Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
 
Error: (10/12/2021 01:43:52 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: A corruption was discovered in the file system structure on volume Windows.
 
The Master File Table (MFT) contains a corrupted file record.  The file reference number is 0x14e00000003d0c2.  The name of the file is "\Program Files (x86)\AVG\Antivirus\setup\vps_defs_common-909.vpx".
 
Error: (10/12/2021 01:09:48 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Superfetch service terminated with the following error: 
The service has not been started.
 
Error: (10/12/2021 01:09:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
==================== Memory info =========================== 
 
BIOS: Insyde F.22 09/27/2013
Motherboard: Hewlett-Packard 213B
Processor: AMD A6-5200 APU with Radeon™ HD Graphics 
Percentage of memory in use: 37%
Total physical RAM: 7643.95 MB
Available physical RAM: 4780.32 MB
Total Virtual: 8859.95 MB
Available Virtual: 5693.52 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:677.33 GB) (Free:537.53 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:20.54 GB) (Free:2.03 GB) NTFS ==>[system with boot components (obtained from drive)]
 
\\?\Volume{ef62169f-32b1-4fb5-ac9c-72b6ac8ca640}\ (WINRE) (Fixed) (Total:0.39 GB) (Free:0.1 GB) NTFS
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 3A472083)
 
Partition: GPT.
 
==================== End of Addition.txt =======================
 

 

 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP
Error: (10/12/2021 02:04:49 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: A corruption was discovered in the file system structure on volume Windows.
 
The Master File Table (MFT) contains a corrupted file record.  The file reference number is 0x14e00000003d0c2.  The name of the file is "\Program Files (x86)\AVG\Antivirus\setup\vps_defs_common-909.vpx".

 

 

 

Search for

cmd

It should find Command Prompt.  Right click on Command Prompt and Run As Admin.  Type:

chkdsk  /r  C:

Hit Enter.  It will tell you it can't do it now and ask if you want to schedule the disk check for the next reboot.  Tell it :

y

Hit Enter.

Reboot.

The disk check should start and may take hours to complete.  It should boot to Windows when done.

Since we know AVG was involved in the problem it would be wise to download a new copy, uninstall AVG, reboot and install the new copy.

 

Also

search for

device manager

hit Enter.

 

Click on the arrow in front of Keyboards.  Find your keyboard and right click on it and Uninstall.  (Do not let it remove any files if it asks)  Reboot.  Windows will reinstall the keyboard drivers which may help the problem.

 

It may be a mechanical failure in which case you either replace the keyboard (usually a real pain to do), plug in a USB keyboard or you remap a key you do not use to do the shift function.

 

See if this works for you:

 

https://www.howtogee...-on-windows-10/

If Power Tools doesn't work on your version of Windows then try:

 

https://www.pcmag.co...p-your-keyboard


  • 0

#3
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

i ran chkdsk for about 4 hours.  when i looked at the monitor, my desktop was showing, so i assume chkdsk completed and the laptop restarted.  

 

i uninstalled the keyboard and restarted the computer.

 

i also uninstalled avg and installed a new version from the avg website.

 

after restarting the computer again, i tried the  keyboard.  both shift keys and the alt key still don;t work.

 

by the way, nothing was spilled on the keyboard, and the keys don't stick.


  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

You can get a 30 day trial of keyboard test software at:

 

https://www.passmark...ytest/index.php

 

It should verify that the keys are not working.  Then you will have to look at either remapping the keys, replacing the keyboard or using a USB keyboard.


  • 0

#5
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

i used the keyboard test software.  all keys worked except both shift keys and both alt keys.  however, when i pressed those keys, the test software did not indicate key being pressed or key failure.  there was no indication.  those keys on the test keyboard stayed black with the word shift or alt showing.


  • 0

#6
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

It doesn't look like a difficult job to replace the keyboard if I have the correct one:

 

 

The trickiest part is the ribbon cable.  It's hard to see in the video but you have to lift up on one side of the connector before you can slide out the cable.  Also make sure you get the ribbon in with the same side up then press down on the connector to hold the ribbon in place.

 

New keyboard is probably under $26 dollars including shipping (Probably shipping from China or thereabouts so may take a month to get and returns would be a nightmare so you may want to look on e-bay)

 

Would need the exact laptop part number and color to be sure which you needed.

 

https://www.amazon.c...rd_i=B07L9S2RXY

 

https://www.amazon.c...rd_i=B071LGMDXD

 

https://www.amazon.c...0/dp/B0756WQLK1

 

You might want to test with a borrowed USB keyboard just to make sure the USB keyboard will work before going to the trouble of changing out the keyboard.  


  • 0

#7
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

by the way, i tested with a separate usb keyboard, and all the keys, including both shift and alt keys, worked properly.  i assume that means the existing laptop keyboard is at fault.  i wonder if i can try cleaning under the keys to fix the problem/


  • 0

#8
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Unlikely.  The keyboard isn't really individual keys.  I think it is something like two pieces of plastic with some metal lines in a grid pattern on them.  When you press on a key you push two lines together. 

 

If you don't really carry the laptop around you might want to just keep the USB keyboard.

 

One thing we haven't tried is to check the system files.  I don't know what all gets checked but it won't hurt:

 

 

Download the attached fixlist.txt to the same location as FRST
Attached File  fixlist.txt   414bytes   171 downloads


Run FRST and press Fix (It will take about 25 minutes to complete)
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you


 

 


  • 0

#9
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

i ran the fixlist per step 8, but there is no log on the desktop.


  • 0

#10
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Fixlog.txt should be on the desktop if you ran it correctly and FRST is still on C:\Users\Beatrice\Desktop.  You did hit Fix and not Scan.  Also fixlist.txt should no longer be on the desktop.


  • 0

Advertisements


#11
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

both FRST and fixlist are on my desktop.  i ran FRST FIX again.  there is no fixlog on the desktop, and fixlist is still on the desktop.


  • 0

#12
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Did you remember to start FRST by right clicking and Run As Admin?

 

Normally when you press Fix it will tell you if it can't find the fixlist.


  • 0

#13
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

i reran FRST as Administrator.  Fixlog shown below.

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 16-10-2021
Ran by Beatrice (18-10-2021 11:33:37) Run:3
Running from C:\Users\Beatrice\Desktop
Loaded Profiles: Beatrice
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: SFC /scannow
CMD: findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
*****************
 
 
========= DISM /Online /Cleanup-Image /RestoreHealth =========
 
 
Deployment Image Servicing and Management tool
Version: 6.3.9600.19408
 
Image Version: 6.3.9600.19397
 
The restore operation completed successfully. The component store corruption was repaired.
The operation completed successfully.
 
========= End of CMD: =========
 
 
========= SFC /scannow =========
 
 
Fixing is terminated due to reaching maximum fixing time of 60 minutes. <==== ATTENTION

  • 0

#14
Beatriceswiss

Beatriceswiss

    Member

  • Topic Starter
  • Member
  • PipPip
  • 80 posts

hello, i have not heard back from you in over a week.  are you still able to help me with this problem.

 

thanks.


  • 0

#15
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Sorry lost track of you.

 

The DISM command ran OK but SFC didn't get enough time to run.  Let's do another fixlist that just does the SFC command:

 

Attached File  fixlist.txt   157bytes   156 downloads

 

Usually this take less than 15 minutes.  It will reboot when done.  Please post the fixlog.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP