still lagging badly
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-08-2021
Ran by USER (administrator) on DESKTOP-UM503BC (Dell Inc. Inspiron 3481) (10-08-2021 18:02:50)
Running from C:\Users\USER\Desktop
Loaded Profiles: USER
Platform: Windows 10 Home Single Language Version 20H2 19042.1110 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Daniel Terhell -> Resplendence Software Projects Sp.) C:\Program Files\LatencyMon\LatMon.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <58>
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f51939e52b944f4b\igfxCUIService.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f51939e52b944f4b\igfxEM.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_39c3e17a2e95f0ed\IntelCpHDCPSvc.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_39c3e17a2e95f0ed\IntelCpHeciSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_42f9d9bfb72d84cf\RstMwService.exe
(LINE Corporation -> LINE Corporation) C:\Users\USER\AppData\Local\Packages\NAVER.LINEwin8_8ptj331gd3tyt\AppData\LINE\Data\plugin\LineMediaPlayer\1.2.0.363\LineMediaPlayer.exe
(LINE Corporation) C:\Program Files\WindowsApps\NAVER.LINEwin8_7.1.0.0_x86__8ptj331gd3tyt\LINEAPP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MSPaint_6.2105.4017.0_x64__8wekyb3d8bbwe\PaintStudio.View.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12105.1001.23.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe
(Nir Sofer -> NirSoft) C:\Users\USER\Downloads\bluescreenview-x64\BlueScreenView.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\DSAPI.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\pcdrwi.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\Speccy\Speccy64.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(Rivet Networks LLC -> DELL) C:\Config.Msi\4bc737c.rbf
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_f9e3e5f664173b9e\WavesSysSvc64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1081136 2020-04-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_f9e3e5f664173b9e\WavesSvc64.exe [1774688 2020-09-02] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [DellMobileConnectWelcome] => C:\Program Files\Dell\DellMobileConnectDrivers\DellMobileConnectWStartup.exe [313064 2018-10-04] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.131\Installer\chrmstp.exe [2021-08-05] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {305DA005-5C08-44B3-8177-4E7C6ADC1BEF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5A749691-DC91-439C-B04F-90D55DC9453F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {773ED0D3-7286-4127-88EE-8C9B5457315A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [133422552 2021-08-05] (Microsoft Windows -> Microsoft Corporation)
Task: {7C99644E-78D3-4AB6-93FB-8B5551F4B3D9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-02] (Google LLC -> Google LLC)
Task: {A07912E9-B55C-4B23-A890-8078C61CE4BB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C591A672-CB66-44F1-8506-6CE3B161FF49} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D982DC0F-38DF-40CE-853A-E31D0295CEB5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-02] (Google LLC -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{a7b40a35-fced-4f9e-85bc-8c4127ec827d}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\USER\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-10]
Chrome:
=======
CHR Profile: C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default [2021-08-10]
CHR DefaultSearchURL: Default -> hxxps://th.search.yahoo.com/search?fr=mcafee&type=E211TH826G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR DefaultSuggestURL: Default -> hxxps://th.search.yahoo.com/sugg/gossip/gossip-th-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms}
CHR Extension: (Slides) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-01-02]
CHR Extension: (Docs) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-01-02]
CHR Extension: (Google Drive) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-01]
CHR Extension: (YouTube) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-01-02]
CHR Extension: (Sheets) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-01-02]
CHR Extension: (Google Docs Offline) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-03]
CHR Extension: (Gmail) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-01]
CHR Extension: (Chrome Media Router) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dcpm-notify; C:\Program Files\Dell\CommandPowerManager\NotifyService.exe [313440 2018-08-24] (Dell Inc -> Dell Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209448 2019-10-31] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3402800 2019-10-31] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218152 2019-10-31] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [50376 2021-03-31] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\DSAPI.exe [1053168 2020-01-06] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [293528 2018-10-20] (Dell Inc -> Dell Inc.)
S3 Dell.CommandPowerManager.Service; C:\Windows\system32\dllhost.exe /Processid:{883F8A0E-0B08-4883-90FE-208704736ABD} [21312 2021-08-06] (Microsoft Windows -> Microsoft Corporation)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38592 2021-01-18] (Dell Inc -> )
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [49624 2019-11-22] (Dell Inc. -> Dell Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cpuz149; C:\Users\USER\AppData\Local\Temp\cpuz149\cpuz149_x64.sys [44320 2021-08-10] (CPUID S.A.R.L.U. -> CPUID) <==== ATTENTION
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [35704 2019-10-30] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
R3 MpKsl3a414131; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FFB53AD3-15CF-4F08-8081-C855DC5BC1B2}\MpKslDrv.sys [123112 2021-08-09] (Microsoft Windows -> Microsoft Corporation)
R3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2020-08-21] (Daniel Terhell -> Resplendence Software Projects Sp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-08-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
S4 DBUtilDrv2; \SystemRoot\System32\drivers\DBUtilDrv2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-10 17:43 - 2021-08-10 17:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2021-08-10 17:43 - 2021-08-10 17:43 - 000000000 ____D C:\Program Files\LatencyMon
2021-08-10 17:43 - 2020-08-21 09:36 - 000026368 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2021-08-10 17:02 - 2021-08-10 17:03 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\USER\Downloads\LatencyMon (1).exe
2021-08-10 17:02 - 2021-08-10 17:03 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\USER\Desktop\LatencyMon.exe
2021-08-10 17:00 - 2021-08-10 17:01 - 000115931 _____ C:\Users\USER\Downloads\DESKTOP-UM503BC.txt
2021-08-10 17:00 - 2021-08-10 17:01 - 000115931 _____ C:\Users\USER\Downloads\DESKTOP-UM503BC (1).txt
2021-08-10 16:55 - 2021-08-10 16:56 - 000115931 _____ C:\Users\USER\Desktop\DESKTOP-UM503BC.txt
2021-08-10 16:54 - 2021-08-10 16:54 - 000115963 _____ C:\Users\USER\Documents\DESKTOP-UM503BC.txt
2021-08-10 16:49 - 2021-08-10 16:49 - 000000839 _____ C:\Users\Public\Desktop\Speccy.lnk
2021-08-10 16:49 - 2021-08-10 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2021-08-10 16:49 - 2021-08-10 16:49 - 000000000 ____D C:\Program Files\Speccy
2021-08-10 16:39 - 2021-08-10 16:42 - 008234296 _____ (Piriform Software Ltd) C:\Users\USER\Downloads\spsetup132.exe
2021-08-10 16:39 - 2021-08-10 16:39 - 000977344 _____ (WinZip Computing) C:\Users\USER\Downloads\winzip25-p014.exe
2021-08-10 16:32 - 2021-08-10 16:32 - 000019037 _____ C:\WINDOWS\system32\junk.txt
2021-08-10 16:32 - 2021-08-10 16:32 - 000000000 _____ C:\junk.txt
2021-08-10 16:05 - 2021-08-10 16:05 - 000022298 _____ C:\Users\USER\Desktop\Registry.txt
2021-08-10 15:59 - 2021-08-10 15:59 - 002834320 _____ (Sysinternals - www.sysinternals.com) C:\Users\USER\Desktop\procexp.exe
2021-08-10 15:56 - 2021-08-10 15:56 - 000002202 _____ C:\Users\USER\Desktop\BSOD.txt
2021-08-10 15:53 - 2021-08-10 15:54 - 000000000 ____D C:\Users\USER\Downloads\bluescreenview-x64
2021-08-10 15:52 - 2021-08-10 15:52 - 000085380 _____ C:\Users\USER\Downloads\bluescreenview-x64.zip
2021-08-10 09:49 - 2021-08-10 09:49 - 000000000 ____D C:\Users\USER\AppData\Local\LineCall
2021-08-09 22:16 - 2021-08-09 22:23 - 000030297 _____ C:\Users\USER\Desktop\Addition.txt
2021-08-09 19:08 - 2021-08-10 18:07 - 000014159 _____ C:\Users\USER\Desktop\FRST.txt
2021-08-09 19:08 - 2021-08-09 19:08 - 000000000 ____D C:\Users\USER\Desktop\FRST-OlderVersion
2021-08-09 19:06 - 2021-08-10 18:05 - 000000000 ____D C:\FRST
2021-08-09 19:02 - 2021-08-09 19:08 - 002300416 _____ (Farbar) C:\Users\USER\Desktop\FRST64.exe
2021-08-09 17:43 - 2021-08-09 17:46 - 000000000 ____D C:\WINDOWS\Minidump
2021-08-09 17:43 - 2021-08-09 17:45 - 009244332 _____ C:\WINDOWS\Minidump\080921-80171-01.dmp
2021-08-09 17:43 - 2021-08-09 17:43 - 1070517026 _____ C:\WINDOWS\MEMORY.DMP
2021-08-06 13:00 - 2021-08-06 13:00 - 000000000 ____D C:\Program Files (x86)\DummyDir
2021-08-06 11:23 - 2021-08-06 07:16 - 000000000 ____D C:\Windows.old
2021-08-06 11:18 - 2021-08-06 11:23 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-08-06 11:12 - 2021-08-06 11:17 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-08-06 11:12 - 2021-08-06 11:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-08-06 10:40 - 2021-08-06 10:40 - 000000000 ____D C:\ProgramData\ssh
2021-08-06 10:24 - 2021-08-06 10:24 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-08-06 10:24 - 2021-08-06 10:24 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb
2021-08-06 10:22 - 2021-08-06 10:22 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-08-06 10:21 - 2021-08-06 10:21 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-08-06 10:21 - 2021-08-06 10:21 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-08-06 10:21 - 2021-08-06 10:21 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-08-06 10:21 - 2021-08-06 10:21 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-08-06 10:21 - 2021-08-06 10:21 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-08-06 10:21 - 2021-08-06 10:21 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-08-06 10:20 - 2021-08-06 10:20 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-08-06 10:20 - 2021-08-06 10:20 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-08-06 10:20 - 2021-08-06 10:20 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-08-06 10:20 - 2021-08-06 10:20 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-08-06 10:19 - 2021-08-06 10:19 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-08-06 10:19 - 2021-08-06 10:19 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-08-06 10:19 - 2021-08-06 10:19 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-08-06 10:19 - 2021-08-06 10:19 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-08-06 10:19 - 2021-08-06 10:19 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-08-06 10:19 - 2021-08-06 10:19 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-08-06 10:19 - 2021-08-06 10:19 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-08-06 10:18 - 2021-08-06 10:18 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-08-06 10:18 - 2021-08-06 10:18 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-08-06 10:18 - 2021-08-06 10:18 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-08-06 10:17 - 2021-08-06 10:17 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-08-06 10:17 - 2021-08-06 10:17 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-08-06 10:17 - 2021-08-06 10:17 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-08-06 10:17 - 2021-08-06 10:17 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-08-06 10:17 - 2021-08-06 10:17 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-08-06 10:15 - 2021-08-06 10:15 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-08-06 10:15 - 2021-08-06 10:15 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-08-06 10:15 - 2021-08-06 10:15 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-08-06 10:15 - 2021-08-06 10:15 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-08-06 10:15 - 2021-08-06 10:15 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-08-06 10:14 - 2021-08-06 10:14 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-08-06 10:13 - 2021-08-06 10:13 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-08-06 10:13 - 2021-08-06 10:13 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-08-06 10:13 - 2021-08-06 10:13 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 001823280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-08-06 10:12 - 2021-08-06 10:12 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-08-06 10:12 - 2021-08-06 10:12 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-08-06 10:12 - 2021-08-06 10:12 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-08-06 10:12 - 2021-08-06 10:12 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-08-06 10:12 - 2021-08-06 10:12 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-08-06 10:12 - 2021-08-06 10:12 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-08-06 10:09 - 2021-08-06 10:09 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000097792 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-08-06 10:09 - 2021-08-06 10:09 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-08-06 10:07 - 2021-08-06 10:07 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-08-06 10:06 - 2021-08-06 10:06 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-08-06 10:06 - 2021-08-06 10:06 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-08-06 10:06 - 2021-08-06 10:06 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-08-06 10:06 - 2021-08-06 10:06 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-08-06 10:06 - 2021-08-06 10:06 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-08-06 10:06 - 2021-08-06 10:06 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-08-06 09:15 - 2021-08-06 09:15 - 000000697 _____ C:\WINDOWS\system32\NOISE.THA
2021-08-06 09:12 - 2021-08-06 09:12 - 000000000 ____D C:\WINDOWS\system32\th
2021-08-06 07:31 - 2021-08-06 07:31 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-08-06 07:20 - 2021-08-06 07:20 - 000000020 ___SH C:\Users\USER\ntuser.ini
2021-08-05 21:34 - 2021-08-09 17:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-05 21:34 - 2021-08-07 11:30 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3318631204-1972825221-1620860807-1001
2021-08-05 21:34 - 2021-08-06 00:41 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-08-05 21:34 - 2021-08-06 00:41 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3318631204-1972825221-1620860807-1002
2021-08-05 21:34 - 2021-08-05 21:34 - 000003408 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-05 21:34 - 2021-08-05 21:34 - 000003184 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-08-05 21:34 - 2021-08-05 21:34 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-08-05 21:34 - 2021-08-05 21:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2021-08-05 21:32 - 2021-08-05 21:34 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2021-08-05 21:32 - 2021-08-05 21:34 - 000011433 _____ C:\WINDOWS\diagerr.xml
2021-08-05 20:54 - 2021-08-09 17:49 - 000795738 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-08-05 20:37 - 2021-08-07 11:30 - 000002382 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-05 20:37 - 2021-08-05 20:52 - 000000000 ____D C:\Users\elksk
2021-08-05 20:37 - 2019-12-07 02:10 - 000001105 _____ C:\Users\elksk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-05 20:26 - 2021-08-10 17:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-08-05 20:26 - 2021-08-05 20:27 - 000315680 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-08-05 20:24 - 2021-08-09 17:43 - 000008192 ___SH C:\DumpStack.log.tmp
2021-08-05 13:06 - 2021-08-06 07:20 - 000000000 ___DC C:\WINDOWS\Panther
2021-08-04 12:59 - 2021-08-04 12:59 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-10 18:17 - 2019-12-07 02:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-10 17:56 - 2020-01-02 10:46 - 000000000 ____D C:\Users\USER\AppData\Local\PlaceholderTileLogoFolder
2021-08-10 17:18 - 2020-01-02 10:55 - 000000000 ____D C:\Program Files (x86)\Google
2021-08-10 16:41 - 2019-12-07 02:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-08-10 16:30 - 2019-12-07 02:03 - 000000000 ____D C:\WINDOWS\servicing
2021-08-10 16:12 - 2021-03-27 22:05 - 000000000 ____D C:\Users\USER\AppData\Local\D3DSCache
2021-08-10 09:57 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-08-10 09:42 - 2020-01-02 05:02 - 000000000 ____D C:\Users\USER\AppData\Local\Packages
2021-08-10 09:42 - 2019-12-07 02:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-08-09 22:23 - 2019-12-07 02:13 - 000000000 ____D C:\WINDOWS\INF
2021-08-09 18:50 - 2020-01-02 05:01 - 000000000 __SHD C:\Users\USER\IntelGraphicsProfiles
2021-08-09 18:49 - 2019-03-06 11:08 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2021-08-09 17:48 - 2019-03-06 11:23 - 000000000 ____D C:\ProgramData\Dell
2021-08-09 17:43 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-08-09 09:57 - 2019-12-07 02:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-08-09 09:21 - 2020-12-03 00:53 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-08-07 11:30 - 2020-01-02 05:08 - 000000000 ___RD C:\Users\USER\OneDrive
2021-08-06 13:33 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-08-06 11:23 - 2020-01-16 03:04 - 000000000 ____D C:\Program Files\UNP
2021-08-06 11:23 - 2019-12-07 02:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-08-06 11:23 - 2019-03-18 21:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-08-06 11:23 - 2019-03-06 11:03 - 000000000 ____D C:\WINDOWS\system32\ihvmanager
2021-08-06 11:23 - 2019-03-06 10:59 - 000000000 ____D C:\Program Files\Intel
2021-08-06 11:23 - 2018-09-15 00:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-08-06 11:22 - 2019-12-07 02:18 - 000000000 ____D C:\WINDOWS\Setup
2021-08-06 11:21 - 2019-12-07 02:14 - 000000000 __RHD C:\Users\Public\Libraries
2021-08-06 11:19 - 2019-03-06 11:01 - 000000000 ____D C:\WINDOWS\system32\cAVS
2021-08-06 11:18 - 2020-02-21 04:04 - 000000000 ____D C:\WINDOWS\Firmware
2021-08-06 10:41 - 2019-12-07 02:50 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-08-06 10:40 - 2019-12-07 02:52 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-08-06 10:40 - 2019-12-07 02:52 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\IME
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-08-06 10:37 - 2019-12-07 02:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-08-06 10:37 - 2019-12-07 02:52 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-08-06 09:12 - 2019-12-07 02:49 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-08-06 09:12 - 2019-12-07 02:49 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-08-06 07:47 - 2020-12-05 16:51 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-08-06 07:47 - 2020-12-05 16:51 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-08-06 07:44 - 2019-12-07 02:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-08-06 07:27 - 2020-01-02 05:05 - 000000000 ____D C:\ProgramData\Packages
2021-08-06 07:27 - 2019-12-07 02:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-08-06 07:24 - 2020-01-02 05:02 - 000000000 ___RD C:\Users\USER\3D Objects
2021-08-06 07:24 - 2019-03-06 12:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-08-06 07:20 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-08-06 07:18 - 2019-12-07 02:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-08-06 07:16 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-08-06 06:31 - 2019-03-06 11:27 - 000000000 ____D C:\ProgramData\RivetNetworks
2021-08-05 21:34 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-08-05 21:34 - 2019-12-07 02:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-08-05 21:31 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\Registration
2021-08-05 20:58 - 2020-04-11 12:03 - 000026988 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-08-05 20:53 - 2020-01-02 11:09 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-08-05 20:53 - 2020-01-02 11:09 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-08-05 20:42 - 2020-01-02 19:49 - 000000000 ____D C:\Users\elksk\AppData\Local\Packages
2021-08-05 20:30 - 2019-03-06 11:01 - 000000000 ____D C:\WINDOWS\system32\Intel
2021-08-05 20:29 - 2019-03-06 11:02 - 000000000 ____D C:\Intel
2021-08-05 14:06 - 2020-01-06 18:01 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-08-05 14:02 - 2020-01-06 18:00 - 133422552 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-08-04 13:05 - 2019-03-06 10:48 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-07-16 09:45 - 2020-12-03 00:53 - 000486712 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-07-16 09:45 - 2020-02-20 04:22 - 000740152 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
==================== FLock ==============================
2021-08-05 20:28 C:\Recovery
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-08-2021
Ran by USER (administrator) on DESKTOP-UM503BC (Dell Inc. Inspiron 3481) (10-08-2021 18:02:50)
Running from C:\Users\USER\Desktop
Loaded Profiles: USER
Platform: Windows 10 Home Single Language Version 20H2 19042.1110 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Daniel Terhell -> Resplendence Software Projects Sp.) C:\Program Files\LatencyMon\LatMon.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <58>
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f51939e52b944f4b\igfxCUIService.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f51939e52b944f4b\igfxEM.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_39c3e17a2e95f0ed\IntelCpHDCPSvc.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_39c3e17a2e95f0ed\IntelCpHeciSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_42f9d9bfb72d84cf\RstMwService.exe
(LINE Corporation -> LINE Corporation) C:\Users\USER\AppData\Local\Packages\NAVER.LINEwin8_8ptj331gd3tyt\AppData\LINE\Data\plugin\LineMediaPlayer\1.2.0.363\LineMediaPlayer.exe
(LINE Corporation) C:\Program Files\WindowsApps\NAVER.LINEwin8_7.1.0.0_x86__8ptj331gd3tyt\LINEAPP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MSPaint_6.2105.4017.0_x64__8wekyb3d8bbwe\PaintStudio.View.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12105.1001.23.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe
(Nir Sofer -> NirSoft) C:\Users\USER\Downloads\bluescreenview-x64\BlueScreenView.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\DSAPI.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\pcdrwi.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\Speccy\Speccy64.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(Rivet Networks LLC -> DELL) C:\Config.Msi\4bc737c.rbf
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_f9e3e5f664173b9e\WavesSysSvc64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1081136 2020-04-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_f9e3e5f664173b9e\WavesSvc64.exe [1774688 2020-09-02] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [DellMobileConnectWelcome] => C:\Program Files\Dell\DellMobileConnectDrivers\DellMobileConnectWStartup.exe [313064 2018-10-04] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.131\Installer\chrmstp.exe [2021-08-05] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {305DA005-5C08-44B3-8177-4E7C6ADC1BEF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5A749691-DC91-439C-B04F-90D55DC9453F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {773ED0D3-7286-4127-88EE-8C9B5457315A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [133422552 2021-08-05] (Microsoft Windows -> Microsoft Corporation)
Task: {7C99644E-78D3-4AB6-93FB-8B5551F4B3D9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-02] (Google LLC -> Google LLC)
Task: {A07912E9-B55C-4B23-A890-8078C61CE4BB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C591A672-CB66-44F1-8506-6CE3B161FF49} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D982DC0F-38DF-40CE-853A-E31D0295CEB5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-02] (Google LLC -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{a7b40a35-fced-4f9e-85bc-8c4127ec827d}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\USER\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-10]
Chrome:
=======
CHR Profile: C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default [2021-08-10]
CHR DefaultSearchURL: Default -> hxxps://th.search.yahoo.com/search?fr=mcafee&type=E211TH826G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR DefaultSuggestURL: Default -> hxxps://th.search.yahoo.com/sugg/gossip/gossip-th-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms}
CHR Extension: (Slides) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-01-02]
CHR Extension: (Docs) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-01-02]
CHR Extension: (Google Drive) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-01]
CHR Extension: (YouTube) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-01-02]
CHR Extension: (Sheets) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-01-02]
CHR Extension: (Google Docs Offline) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-03]
CHR Extension: (Gmail) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-01]
CHR Extension: (Chrome Media Router) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dcpm-notify; C:\Program Files\Dell\CommandPowerManager\NotifyService.exe [313440 2018-08-24] (Dell Inc -> Dell Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209448 2019-10-31] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3402800 2019-10-31] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218152 2019-10-31] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [50376 2021-03-31] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2521\DSAPI.exe [1053168 2020-01-06] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [293528 2018-10-20] (Dell Inc -> Dell Inc.)
S3 Dell.CommandPowerManager.Service; C:\Windows\system32\dllhost.exe /Processid:{883F8A0E-0B08-4883-90FE-208704736ABD} [21312 2021-08-06] (Microsoft Windows -> Microsoft Corporation)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38592 2021-01-18] (Dell Inc -> )
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [49624 2019-11-22] (Dell Inc. -> Dell Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cpuz149; C:\Users\USER\AppData\Local\Temp\cpuz149\cpuz149_x64.sys [44320 2021-08-10] (CPUID S.A.R.L.U. -> CPUID) <==== ATTENTION
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [35704 2019-10-30] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
R3 MpKsl3a414131; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FFB53AD3-15CF-4F08-8081-C855DC5BC1B2}\MpKslDrv.sys [123112 2021-08-09] (Microsoft Windows -> Microsoft Corporation)
R3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2020-08-21] (Daniel Terhell -> Resplendence Software Projects Sp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-08-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
S4 DBUtilDrv2; \SystemRoot\System32\drivers\DBUtilDrv2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-10 17:43 - 2021-08-10 17:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2021-08-10 17:43 - 2021-08-10 17:43 - 000000000 ____D C:\Program Files\LatencyMon
2021-08-10 17:43 - 2020-08-21 09:36 - 000026368 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2021-08-10 17:02 - 2021-08-10 17:03 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\USER\Downloads\LatencyMon (1).exe
2021-08-10 17:02 - 2021-08-10 17:03 - 002252096 _____ (Resplendence Software Projects Sp. ) C:\Users\USER\Desktop\LatencyMon.exe
2021-08-10 17:00 - 2021-08-10 17:01 - 000115931 _____ C:\Users\USER\Downloads\DESKTOP-UM503BC.txt
2021-08-10 17:00 - 2021-08-10 17:01 - 000115931 _____ C:\Users\USER\Downloads\DESKTOP-UM503BC (1).txt
2021-08-10 16:55 - 2021-08-10 16:56 - 000115931 _____ C:\Users\USER\Desktop\DESKTOP-UM503BC.txt
2021-08-10 16:54 - 2021-08-10 16:54 - 000115963 _____ C:\Users\USER\Documents\DESKTOP-UM503BC.txt
2021-08-10 16:49 - 2021-08-10 16:49 - 000000839 _____ C:\Users\Public\Desktop\Speccy.lnk
2021-08-10 16:49 - 2021-08-10 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2021-08-10 16:49 - 2021-08-10 16:49 - 000000000 ____D C:\Program Files\Speccy
2021-08-10 16:39 - 2021-08-10 16:42 - 008234296 _____ (Piriform Software Ltd) C:\Users\USER\Downloads\spsetup132.exe
2021-08-10 16:39 - 2021-08-10 16:39 - 000977344 _____ (WinZip Computing) C:\Users\USER\Downloads\winzip25-p014.exe
2021-08-10 16:32 - 2021-08-10 16:32 - 000019037 _____ C:\WINDOWS\system32\junk.txt
2021-08-10 16:32 - 2021-08-10 16:32 - 000000000 _____ C:\junk.txt
2021-08-10 16:05 - 2021-08-10 16:05 - 000022298 _____ C:\Users\USER\Desktop\Registry.txt
2021-08-10 15:59 - 2021-08-10 15:59 - 002834320 _____ (Sysinternals - www.sysinternals.com) C:\Users\USER\Desktop\procexp.exe
2021-08-10 15:56 - 2021-08-10 15:56 - 000002202 _____ C:\Users\USER\Desktop\BSOD.txt
2021-08-10 15:53 - 2021-08-10 15:54 - 000000000 ____D C:\Users\USER\Downloads\bluescreenview-x64
2021-08-10 15:52 - 2021-08-10 15:52 - 000085380 _____ C:\Users\USER\Downloads\bluescreenview-x64.zip
2021-08-10 09:49 - 2021-08-10 09:49 - 000000000 ____D C:\Users\USER\AppData\Local\LineCall
2021-08-09 22:16 - 2021-08-09 22:23 - 000030297 _____ C:\Users\USER\Desktop\Addition.txt
2021-08-09 19:08 - 2021-08-10 18:07 - 000014159 _____ C:\Users\USER\Desktop\FRST.txt
2021-08-09 19:08 - 2021-08-09 19:08 - 000000000 ____D C:\Users\USER\Desktop\FRST-OlderVersion
2021-08-09 19:06 - 2021-08-10 18:05 - 000000000 ____D C:\FRST
2021-08-09 19:02 - 2021-08-09 19:08 - 002300416 _____ (Farbar) C:\Users\USER\Desktop\FRST64.exe
2021-08-09 17:43 - 2021-08-09 17:46 - 000000000 ____D C:\WINDOWS\Minidump
2021-08-09 17:43 - 2021-08-09 17:45 - 009244332 _____ C:\WINDOWS\Minidump\080921-80171-01.dmp
2021-08-09 17:43 - 2021-08-09 17:43 - 1070517026 _____ C:\WINDOWS\MEMORY.DMP
2021-08-06 13:00 - 2021-08-06 13:00 - 000000000 ____D C:\Program Files (x86)\DummyDir
2021-08-06 11:23 - 2021-08-06 07:16 - 000000000 ____D C:\Windows.old
2021-08-06 11:18 - 2021-08-06 11:23 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-08-06 11:12 - 2021-08-06 11:17 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-08-06 11:12 - 2021-08-06 11:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-08-06 10:40 - 2021-08-06 10:40 - 000000000 ____D C:\ProgramData\ssh
2021-08-06 10:24 - 2021-08-06 10:24 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-08-06 10:24 - 2021-08-06 10:24 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb
2021-08-06 10:24 - 2021-08-06 10:24 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb
2021-08-06 10:22 - 2021-08-06 10:22 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-08-06 10:21 - 2021-08-06 10:21 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-08-06 10:21 - 2021-08-06 10:21 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-08-06 10:21 - 2021-08-06 10:21 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-08-06 10:21 - 2021-08-06 10:21 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-08-06 10:21 - 2021-08-06 10:21 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-08-06 10:21 - 2021-08-06 10:21 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-08-06 10:21 - 2021-08-06 10:21 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-08-06 10:20 - 2021-08-06 10:20 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-08-06 10:20 - 2021-08-06 10:20 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-08-06 10:20 - 2021-08-06 10:20 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-08-06 10:20 - 2021-08-06 10:20 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-08-06 10:20 - 2021-08-06 10:20 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-08-06 10:19 - 2021-08-06 10:19 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-08-06 10:19 - 2021-08-06 10:19 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-08-06 10:19 - 2021-08-06 10:19 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-08-06 10:19 - 2021-08-06 10:19 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-08-06 10:19 - 2021-08-06 10:19 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-08-06 10:19 - 2021-08-06 10:19 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-08-06 10:19 - 2021-08-06 10:19 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-08-06 10:19 - 2021-08-06 10:19 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-08-06 10:18 - 2021-08-06 10:18 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-08-06 10:18 - 2021-08-06 10:18 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-08-06 10:18 - 2021-08-06 10:18 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-08-06 10:18 - 2021-08-06 10:18 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-08-06 10:17 - 2021-08-06 10:17 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-08-06 10:17 - 2021-08-06 10:17 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-08-06 10:17 - 2021-08-06 10:17 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-08-06 10:17 - 2021-08-06 10:17 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-08-06 10:17 - 2021-08-06 10:17 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-08-06 10:16 - 2021-08-06 10:16 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-08-06 10:15 - 2021-08-06 10:15 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-08-06 10:15 - 2021-08-06 10:15 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-08-06 10:15 - 2021-08-06 10:15 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-08-06 10:15 - 2021-08-06 10:15 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-08-06 10:15 - 2021-08-06 10:15 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-08-06 10:15 - 2021-08-06 10:15 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-08-06 10:14 - 2021-08-06 10:14 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-08-06 10:13 - 2021-08-06 10:13 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-08-06 10:13 - 2021-08-06 10:13 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-08-06 10:13 - 2021-08-06 10:13 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 001823280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-08-06 10:12 - 2021-08-06 10:12 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-08-06 10:12 - 2021-08-06 10:12 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-08-06 10:12 - 2021-08-06 10:12 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-08-06 10:12 - 2021-08-06 10:12 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-08-06 10:12 - 2021-08-06 10:12 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-08-06 10:12 - 2021-08-06 10:12 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-08-06 10:12 - 2021-08-06 10:12 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-08-06 10:09 - 2021-08-06 10:09 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000097792 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-08-06 10:09 - 2021-08-06 10:09 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-08-06 10:09 - 2021-08-06 10:09 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-08-06 10:08 - 2021-08-06 10:08 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-08-06 10:07 - 2021-08-06 10:07 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-08-06 10:06 - 2021-08-06 10:06 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-08-06 10:06 - 2021-08-06 10:06 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-08-06 10:06 - 2021-08-06 10:06 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-08-06 10:06 - 2021-08-06 10:06 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-08-06 10:06 - 2021-08-06 10:06 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-08-06 10:06 - 2021-08-06 10:06 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-08-06 10:06 - 2021-08-06 10:06 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-08-06 09:15 - 2021-08-06 09:15 - 000000697 _____ C:\WINDOWS\system32\NOISE.THA
2021-08-06 09:12 - 2021-08-06 09:12 - 000000000 ____D C:\WINDOWS\system32\th
2021-08-06 07:31 - 2021-08-06 07:31 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-08-06 07:20 - 2021-08-06 07:20 - 000000020 ___SH C:\Users\USER\ntuser.ini
2021-08-05 21:34 - 2021-08-09 17:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-05 21:34 - 2021-08-07 11:30 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3318631204-1972825221-1620860807-1001
2021-08-05 21:34 - 2021-08-06 00:41 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-08-05 21:34 - 2021-08-06 00:41 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3318631204-1972825221-1620860807-1002
2021-08-05 21:34 - 2021-08-05 21:34 - 000003408 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-05 21:34 - 2021-08-05 21:34 - 000003184 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-08-05 21:34 - 2021-08-05 21:34 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-08-05 21:34 - 2021-08-05 21:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2021-08-05 21:32 - 2021-08-05 21:34 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2021-08-05 21:32 - 2021-08-05 21:34 - 000011433 _____ C:\WINDOWS\diagerr.xml
2021-08-05 20:54 - 2021-08-09 17:49 - 000795738 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-08-05 20:37 - 2021-08-07 11:30 - 000002382 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-05 20:37 - 2021-08-05 20:52 - 000000000 ____D C:\Users\elksk
2021-08-05 20:37 - 2019-12-07 02:10 - 000001105 _____ C:\Users\elksk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-05 20:26 - 2021-08-10 17:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-08-05 20:26 - 2021-08-05 20:27 - 000315680 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-08-05 20:24 - 2021-08-09 17:43 - 000008192 ___SH C:\DumpStack.log.tmp
2021-08-05 13:06 - 2021-08-06 07:20 - 000000000 ___DC C:\WINDOWS\Panther
2021-08-04 12:59 - 2021-08-04 12:59 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-10 18:17 - 2019-12-07 02:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-10 17:56 - 2020-01-02 10:46 - 000000000 ____D C:\Users\USER\AppData\Local\PlaceholderTileLogoFolder
2021-08-10 17:18 - 2020-01-02 10:55 - 000000000 ____D C:\Program Files (x86)\Google
2021-08-10 16:41 - 2019-12-07 02:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-08-10 16:30 - 2019-12-07 02:03 - 000000000 ____D C:\WINDOWS\servicing
2021-08-10 16:12 - 2021-03-27 22:05 - 000000000 ____D C:\Users\USER\AppData\Local\D3DSCache
2021-08-10 09:57 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-08-10 09:42 - 2020-01-02 05:02 - 000000000 ____D C:\Users\USER\AppData\Local\Packages
2021-08-10 09:42 - 2019-12-07 02:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-08-09 22:23 - 2019-12-07 02:13 - 000000000 ____D C:\WINDOWS\INF
2021-08-09 18:50 - 2020-01-02 05:01 - 000000000 __SHD C:\Users\USER\IntelGraphicsProfiles
2021-08-09 18:49 - 2019-03-06 11:08 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2021-08-09 17:48 - 2019-03-06 11:23 - 000000000 ____D C:\ProgramData\Dell
2021-08-09 17:43 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-08-09 09:57 - 2019-12-07 02:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-08-09 09:21 - 2020-12-03 00:53 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-08-07 11:30 - 2020-01-02 05:08 - 000000000 ___RD C:\Users\USER\OneDrive
2021-08-06 13:33 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-08-06 11:23 - 2020-01-16 03:04 - 000000000 ____D C:\Program Files\UNP
2021-08-06 11:23 - 2019-12-07 02:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-08-06 11:23 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-08-06 11:23 - 2019-03-18 21:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-08-06 11:23 - 2019-03-06 11:03 - 000000000 ____D C:\WINDOWS\system32\ihvmanager
2021-08-06 11:23 - 2019-03-06 10:59 - 000000000 ____D C:\Program Files\Intel
2021-08-06 11:23 - 2018-09-15 00:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-08-06 11:22 - 2019-12-07 02:18 - 000000000 ____D C:\WINDOWS\Setup
2021-08-06 11:21 - 2019-12-07 02:14 - 000000000 __RHD C:\Users\Public\Libraries
2021-08-06 11:19 - 2019-03-06 11:01 - 000000000 ____D C:\WINDOWS\system32\cAVS
2021-08-06 11:18 - 2020-02-21 04:04 - 000000000 ____D C:\WINDOWS\Firmware
2021-08-06 10:41 - 2019-12-07 02:50 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-08-06 10:41 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-08-06 10:40 - 2019-12-07 02:52 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-08-06 10:40 - 2019-12-07 02:52 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\IME
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-08-06 10:40 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-08-06 10:37 - 2019-12-07 02:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-08-06 10:37 - 2019-12-07 02:52 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-08-06 09:12 - 2019-12-07 02:49 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-08-06 09:12 - 2019-12-07 02:49 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-08-06 07:47 - 2020-12-05 16:51 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-08-06 07:47 - 2020-12-05 16:51 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-08-06 07:44 - 2019-12-07 02:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-08-06 07:27 - 2020-01-02 05:05 - 000000000 ____D C:\ProgramData\Packages
2021-08-06 07:27 - 2019-12-07 02:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-08-06 07:24 - 2020-01-02 05:02 - 000000000 ___RD C:\Users\USER\3D Objects
2021-08-06 07:24 - 2019-03-06 12:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-08-06 07:20 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-08-06 07:18 - 2019-12-07 02:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-08-06 07:16 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-08-06 06:31 - 2019-03-06 11:27 - 000000000 ____D C:\ProgramData\RivetNetworks
2021-08-05 21:34 - 2019-12-07 02:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-08-05 21:34 - 2019-12-07 02:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-08-05 21:31 - 2019-12-07 02:14 - 000000000 ____D C:\WINDOWS\Registration
2021-08-05 20:58 - 2020-04-11 12:03 - 000026988 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-08-05 20:53 - 2020-01-02 11:09 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-08-05 20:53 - 2020-01-02 11:09 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-08-05 20:42 - 2020-01-02 19:49 - 000000000 ____D C:\Users\elksk\AppData\Local\Packages
2021-08-05 20:30 - 2019-03-06 11:01 - 000000000 ____D C:\WINDOWS\system32\Intel
2021-08-05 20:29 - 2019-03-06 11:02 - 000000000 ____D C:\Intel
2021-08-05 14:06 - 2020-01-06 18:01 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-08-05 14:02 - 2020-01-06 18:00 - 133422552 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-08-04 13:05 - 2019-03-06 10:48 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-07-16 09:45 - 2020-12-03 00:53 - 000486712 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-07-16 09:45 - 2020-02-20 04:22 - 000740152 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
==================== FLock ==============================
2021-08-05 20:28 C:\Recovery
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================