Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26.02.2024 01
- Ran by UZER (administrator) on VINLANDER (Micro-Star International Co., Ltd. MS-7A38) (04-03-2024 12:25:29)
- Running from C:\Users\UZER\Downloads\avs\FRSTEnglish.exe
- Loaded Profiles: UZER
- Platform: Microsoft Windows 11 Pro Version 22H2 22621.3155 (X64) Language: English (United States)
- Default browser: FF
- Boot Mode: Safe Mode (with Networking)
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
- (services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- ==================== Registry (Whitelisted) ===================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3022640 2024-01-31] (Riot Games, Inc. -> Riot Games, Inc.)
- HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_5349479f7c9fe8a6\RtkAudUService64.exe [1951632 2023-12-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> )
- HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
- HKLM-x32\...\Run: [RadminVPN] => C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe [2089536 2023-07-10] (Famatech Corp. -> Famatech Corp.)
- HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7048568 2023-11-06] (LogMeIn, Inc. -> LogMeIn Inc.)
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restriction <==== ATTENTION
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [MicrosoftEdgeAutoLaunch_F35FF757D0FBB6BA4FAC20DCBAB7B09A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4210232 2023-10-06] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4388712 2024-02-29] (Valve Corp. -> Valve Corporation)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\UZER\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [Discord] => C:\Users\UZER\AppData\Local\Discord\Update.exe [1525016 2023-07-31] (Discord Inc. -> GitHub)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [Voicemod] => C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe [7474568 2023-09-05] (Voicemod Sociedad Limitada -> Voicemod)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [70921216 2024-02-21] (Riot Games, Inc. -> Riot Games, Inc.)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3593992 2024-02-08] (Razer USA Ltd. -> Razer Inc.)
- HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\...\Run: [electron.app.BlueStacks Services] => C:\Users\UZER\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe [162219656 2024-01-25] (Now.gg, INC -> now.gg, Inc.)
- HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3593992 2024-02-08] (Razer USA Ltd. -> Razer Inc.)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.217\Installer\chrmstp.exe [2024-01-12] (Google LLC -> Google LLC)
- HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.70\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable
- Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2023-12-28]
- ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
- BootExecute: autocheck autochk *
- GroupPolicy: Restriction ? <==== ATTENTION
- Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
- ==================== Scheduled Tasks (Whitelisted) =================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {B9297FF2-228A-4B6A-B257-4177002E4CBD} - System32\Tasks\6AM Shutdown => C:\Windows\System32\shutdown.exe [53248 2022-05-07] (Microsoft Windows -> Microsoft Corporation) ->
- Task: {349CBAFC-F39B-43A8-8A47-FBE1FBDE3B8F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-08-02] (Adobe Inc. -> Adobe Inc.)
- Task: {BC2B5FC2-FE5B-435B-AD3D-47C3CE787A58} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [682008 2021-03-30] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
- Task: {01DAC714-5DF1-466E-9C05-B5E28E0AA9C1} - System32\Tasks\AMSkipUAC => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [682008 2021-03-30] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
- Task: {C3839CA6-7456-44D0-B3FE-3E909C94966C} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [302968 2024-02-21] (Now.gg, INC -> BlueStack Systems, Inc.)
- Task: {10284938-7CDB-44C2-A097-008C6518202A} - System32\Tasks\ExtFS GUI => C:\Program Files (x86)\Paragon Software\ExtFS for Windows\Paragon ExtFS for Windows.exe -tray (No File)
- Task: {F7EF415F-E6FC-416D-AE40-0BA169E5DFE6} - System32\Tasks\ExtFS Updater => C:\Program Files (x86)\Paragon Software\ExtFS for Windows\Updater.exe (No File)
- Task: {A1B6E668-0728-40F4-8D04-5F1F43973DD7} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\Initialize.exe [143768 2024-01-15] (Glarysoft Ltd -> Glarysoft Ltd)
- Task: {D60C4D35-63A5-4223-AF0A-02128EB99B68} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe (No File)
- Task: {DBFC2974-7841-4E91-93C0-3E96677A9424} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2023-08-21] (Google LLC -> Google LLC)
- Task: {0D34C36A-E52D-48C1-B7E6-A412EAA13102} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2023-08-21] (Google LLC -> Google LLC)
- Task: {A5869AB9-B268-4D03-811E-34D21E62E0C4} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe (No File)
- Task: {A7CBBE4F-BE4F-4688-A2E4-2C3728335603} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {C69C8262-7662-4AEA-90C4-FE382AE3AA7B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {87E48CCC-1EDA-4C25-879A-8864853DD92F} - System32\Tasks\Microsoft\Windows\MapInfoS\BqvfkF20XyFr2F => C:\Programdata\ReaItekHD\taskhost.exe (No File) <==== ATTENTION
- Task: {C3CED4ED-0158-4B10-9DA8-75CBEA6020DE} - System32\Tasks\Microsoft\Windows\MapInfoS\RecoveryHosts => C:\ProgramData\Microsoft\Windows\BqvfkF20XyFr2F\MapInfoS.bat [2771 2024-01-06] () [File not signed] <==== ATTENTION
- Task: {09E40D7F-5513-4DFE-BEA1-9783ACA9E0AF} - System32\Tasks\Microsoft\Windows\MapInfoS\RecoveryTask => C:\Programdata\ReaItekHD\taskhostw.exe (No File) <==== ATTENTION
- Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
- Task: {7DE9D410-4874-4389-8B7A-48061F68D759} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {C00845A1-B1CF-4F4B-A7AD-20465C27B85E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {658499E7-2278-4C44-B41A-D2FD60A86A78} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {5323D1DA-64C8-4476-8367-11254C5F7C74} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {326C7132-B9D8-45ED-9511-2003EAAA78CA} - System32\Tasks\Microsoft\Windows\WindowsBackup\ControlService => C:\Programdata\ReaItekHD\taskhost.exe (No File) <==== ATTENTION
- Task: {501C848A-887F-4BF0-9FDC-6159818DE245} - System32\Tasks\Microsoft\Windows\WindowsBackup\MasterData => C:\Windows\SysWOW64\unsecapp.exe (No File) <==== ATTENTION
- Task: {F2029C4E-1E8D-4EA9-839A-D302D3F09B04} - System32\Tasks\Microsoft\Windows\WindowsBackup\OnlogonCheck => C:\Programdata\ReaItekHD\taskhostw.exe (No File) <==== ATTENTION
- Task: {9C16DE97-75FA-48A5-8715-1E9793652A3C} - System32\Tasks\Microsoft\Windows\WindowsBackup\SystemSupport => C:\Programdata\ReaItekHD\taskhostw.exe (No File) <==== ATTENTION
- Task: {B62C640D-8E56-4C7D-98AA-6E8DEF7F062C} - System32\Tasks\Microsoft\Windows\WindowsBackup\WinlogonCheck => C:\Programdata\ReaItekHD\taskhost.exe (No File) <==== ATTENTION
- Task: {87010B4C-BCFD-4D19-98F1-AD03036974A8} - System32\Tasks\Microsoft\Windows\Wininet\winser => "C:\ProgramData\Windows Tasks Service\winserv.exe" -> Task Service\winserv.exe <==== ATTENTION
- Task: {0C8BB925-ADE4-45CC-885D-484CACE1C122} - System32\Tasks\Microsoft\Windows\Wininet\winsers => "C:\ProgramData\Windows Tasks Service\winserv.exe" -> Task Service\winserv.exe <==== ATTENTION
- Task: {6F34E43B-4343-423D-968B-E5D35D17560B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720 2024-02-20] (Mozilla Corporation -> Mozilla Foundation)
- Task: {5F71DAF1-BA89-451B-B796-765E3902658C} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [2554472 2023-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
- Task: {ADE52015-45F8-40E8-98B5-F806FA5CA71A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
- Task: {8832B711-E34B-4B07-AAF6-6564AA58B9F0} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {07D0C0F6-105F-4ABA-A149-C383E0332B7D} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {7BC43A88-9418-4CBA-B94F-7FA9E093CB0C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {7CDE86CB-DBB8-46CD-952B-EA83D3838A2C} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {43F9AA2B-639F-435A-95BB-789603749F7D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {04D9450C-B4BA-4CFD-97DC-371AA49671F1} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {9D0FDA51-6B1F-4BFC-BC38-258C859D8FD9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {571CE03D-4BB0-41CC-8ADA-31AA4D73AD36} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {AA9DAFAA-C301-4745-B068-128CAFCC2CBB} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1693275419 => C:\Users\UZER\AppData\Local\Programs\Opera GX\launcher.exe [2303904 2024-02-27] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\UZER\AppData\Local\Programs\Opera GX\assistant" $(Arg0)
- Task: {821142FB-79A8-44A4-B00F-DBB4E24A65A9} - System32\Tasks\Opera GX scheduled Autoupdate 1692783482 => C:\Users\UZER\AppData\Local\Programs\Opera GX\launcher.exe [2303904 2024-02-27] (Opera Norway AS -> Opera Software)
- Task: {87F19B86-8487-4E78-A4F1-D1116EDC47BA} - System32\Tasks\Red Giant Link => C:\Program -> Files (x86)\Red Giant Link\Red Giant Link.exe
- Task: {A5718102-24B7-4C85-B0DE-B9F023422D46} - System32\Tasks\update-S-1-5-21-4015671430-4189389437-3832571869-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
- Task: {3C0BF4E3-A79A-44E9-92EF-3BB58D93E81A} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
- Task: C:\WINDOWS\Tasks\update-S-1-5-21-4015671430-4189389437-3832571869-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
- Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: Hosts file not detected in the default directory
- Tcpip\Parameters: [DhcpNameServer] 192.168.42.129
- Tcpip\..\Interfaces\{1cc8c76c-e1cd-4f83-85c8-5e5db6cedfae}: [NameServer] 8.8.8.8,8.8.4.4
- Tcpip\..\Interfaces\{1cc8c76c-e1cd-4f83-85c8-5e5db6cedfae}: [DhcpNameServer] 192.168.42.129
- Tcpip\..\Interfaces\{a4807880-84aa-44db-aef8-1cfc6831b0aa}: [NameServer] 8.8.8.8,8.8.4.4
- Tcpip\..\Interfaces\{a4807880-84aa-44db-aef8-1cfc6831b0aa}: [DhcpNameServer] 218.248.112.97 218.248.112.1
- Tcpip\..\Interfaces\{d4cc1c5f-4ce1-4be9-ac0e-333b29e81dc4}: [DhcpNameServer] 192.168.42.129
- Edge:
- =======
- Edge Profile: C:\Users\UZER\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-03]
- Edge Extension: (Google Docs Offline) - C:\Users\UZER\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-02]
- Edge Extension: (Edge relevant text changes) - C:\Users\UZER\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
- Edge HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [kagpabjoboikccfdghpdlaaopmgpgfdc]
- FireFox:
- ========
- FF ProfilePath: C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\7riiowyl.Default User [not found] <==== ATTENTION
- FF DefaultProfile: 99ywbqez.CascadeV1
- FF DefaultProfile: wc2nxv44.default
- FF ProfilePath: C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\99ywbqez.CascadeV1 [2024-03-04]
- FF Homepage: Mozilla\Firefox\Profiles\99ywbqez.CascadeV1 -> about:newtab
- FF Notifications: Mozilla\Firefox\Profiles\99ywbqez.CascadeV1 -> hxxps://aternos.org
- FF Extension: (Song id) - C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\99ywbqez.CascadeV1\Extensions\[email protected] [2024-02-01]
- FF Extension: (uBlock Origin) - C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\99ywbqez.CascadeV1\Extensions\[email protected] [2024-02-23]
- FF Extension: (Bitwarden - Free Password Manager) - C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\99ywbqez.CascadeV1\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2024-02-15]
- FF Extension: (Absolute Right Click) - C:\Users\UZER\AppData\Roaming\Mozilla\Firefox\Profiles\99ywbqez.CascadeV1\Extensions\{9350bc42-47fb-4598-ae0f-825e3dd9ceba}.xpi [2024-03-04]
- FF ProfilePath: C:\Users\UZER\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\wc2nxv44.default [2024-03-04]
- FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [No File]
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [No File]
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
- Chrome:
- =======
- CHR Profile: C:\Users\UZER\AppData\Local\Google\Chrome\User Data\Default [2024-03-04]
- CHR StartupUrls: Default -> "hxxp:\/\/www.google.com\/"
- CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\UZER\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-03-04]
- CHR Extension: (Google Docs Offline) - C:\Users\UZER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-04]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\UZER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-08-21]
- CHR HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
- CHR HKU\S-1-5-21-4015671430-4189389437-3832571869-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ljglajjnnkapghbckkcmodicjhacbfhk]
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
- Opera:
- =======
- StartMenuInternet: (HKU\S-1-5-21-4015671430-4189389437-3832571869-1001) Opera GXStable - "C:\Users\UZER\AppData\Local\Programs\Opera GX\Launcher.exe"
- ==================== Services (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-08-02] (Adobe Inc. -> Adobe Inc.)
- S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
- S3 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [5216584 2024-02-17] (AnyDesk Software GmbH -> AnyDesk Software GmbH)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9880840 2024-02-18] (BattlEye Innovations e.K. -> )
- S3 DokanMounter; C:\Program Files (x86)\Paragon Software\ExtFS for Windows\extservice.exe [1699008 2020-09-10] (Paragon Software GmbH -> Paragon Software) [File not signed]
- S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-05-01] (Epic Games Inc. -> Epic Games, Inc.)
- S3 GoogleInputService; C:\Program Files (x86)\Google\Google Input Tools\GoogleInputService.exe [164888 2023-08-21] (Google Inc -> Google Inc)
- S3 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [888216 2024-01-15] (Glarysoft Ltd -> Glarysoft Ltd)
- S3 GUMemfilesService; C:\Program Files (x86)\Glary Utilities\x64\MemfilesService.exe [433560 2024-01-15] (Glarysoft Ltd -> Glarysoft Ltd)
- S3 GUPMService; C:\Program Files (x86)\Glary Utilities\GUPMService.exe [76696 2024-01-15] (Glarysoft Ltd -> Glarysoft Ltd)
- R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3868536 2023-11-06] (LogMeIn, Inc. -> LogMeIn Inc.)
- S3 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [92768 2023-05-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
- S2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
- S2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [74336 2023-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
- S2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [154216 2023-08-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
- S2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36880 2023-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
- S3 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [37616 2022-04-28] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
- S2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_493585427225c794\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- S3 ParagonMounter; C:\Program Files (x86)\Paragon Software\ExtFS for Windows\extservice.exe [1699008 2020-09-10] (Paragon Software GmbH -> Paragon Software) [File not signed]
- S3 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256264 2023-02-10] (Razer USA Ltd. -> Razer Inc)
- S2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [298248 2024-02-07] (Razer USA Ltd. -> Razer Inc.)
- S3 Red Giant Service; C:\Program Files\Red Giant\Services\Red Giant Service.exe [5976136 2023-10-23] (Red Giant LLC -> Red Giant LLC)
- S2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [15246256 2024-02-19] (ADLICE -> )
- S3 RvControlSvc; C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe [1179712 2023-07-10] (Famatech Corp. -> Famatech Corp.)
- S3 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [538424 2023-11-09] (Razer USA Ltd. -> Razer Inc.)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534592 2023-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
- S2 TeraCopyService.exe; C:\Program Files\TeraCopy\TeraCopyService.exe [317664 2023-06-29] (CODE SECTOR PTY LTD -> )
- S2 TermService; C:\Program Files\RDP Wrapper\rdpwrap.dll [116736 2024-01-06] (Stas'M Corp.) [File not signed] <==== ATTENTION (no ServiceDLL)
- S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5084200 2024-02-19] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
- S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [802752 2023-10-12] (Oracle Corporation -> Oracle and/or its affiliates)
- S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9599704 2024-01-31] (Riot Games, Inc. -> Riot Games, Inc.)
- S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe [3191256 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe [133576 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- S2 WindscribeService; C:\Program Files\Windscribe\WindscribeService.exe [1054568 2024-02-15] (Windscribe Limited -> Windscribe Limited)
- S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12257120 2024-02-19] (KRAFTON, Inc. -> KRAFTON, Inc)
- S3 EasyAntiCheat_EOS; no ImagePath
- ===================== Drivers (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [54792 2023-04-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
- S3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0390451.inf_amd64_39377efdd62734d1\B390182\amdkmdag.sys [94467928 2023-04-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- S3 ampa; C:\WINDOWS\system32\ampa.sys [17008 2013-11-29] (ChengDu AoMei Tech Co., Ltd -> ) [File not signed]
- R1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2024-03-04] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
- S2 BlueStacksDrv_msi5; C:\Program Files\BlueStacks_msi5\BstkDrv_msi5.sys [310736 2023-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Bluestack System Inc.)
- S2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [394176 2024-02-21] (Microsoft Windows Hardware Compatibility Publisher -> Bluestack System Inc.)
- S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [544768 2023-09-03] (Microsoft Corporation) [File not signed]
- S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2023-09-03] (Microsoft Corporation) [File not signed]
- S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2023-09-03] (Microsoft Corporation) [File not signed]
- R3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
- S2 Dokan; C:\WINDOWS\System32\DRIVERS\dokan.sys [67264 2017-10-10] (Paragon Software GmbH -> Windows (R) Win 7 DDK provider)
- R0 fse; C:\WINDOWS\System32\drivers\fse.sys [218592 2023-11-17] (Microsoft Windows -> Microsoft Corporation)
- S1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [23568 2023-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd)
- R3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2023-11-06] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
- S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [42040 2024-03-04] (Microsoft Windows Hardware Compatibility Publisher -> )
- S1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
- S1 NemuDrv; C:\Program Files\NemuVbox\LoadedDrivers\NemuDrv.sys [299240 2022-01-12] (NetEase(Hangzhou) Network Co. Ltd. -> NetEase Corporation)
- S3 NTIOLib_CC_Clock; C:\Program Files (x86)\MSI\MSI Center\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
- S3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32424 2023-07-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
- S3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2024-02-08] (Nvidia Corporation -> NVIDIA Corporation)
- S3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_400a42c66fb0e159\rt68cx21x64.sys [598976 2022-01-17] (Realtek Semiconductor Corp. -> Realtek)
- R3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [58288 2023-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Famatech Corp.)
- S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
- R3 RzDev_0098; C:\WINDOWS\System32\drivers\RzDev_0098.sys [55624 2021-01-28] (Razer USA Ltd. -> Razer Inc)
- R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
- S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
- S3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [251776 2023-10-12] (Oracle Corporation -> Oracle and/or its affiliates)
- R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [262648 2023-10-12] (Oracle Corporation -> Oracle and/or its affiliates)
- S1 VBoxSup; C:\WINDOWS\system32\DRIVERS\VBoxSup.sys [1060600 2023-10-12] (Oracle Corporation -> Oracle and/or its affiliates)
- S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [21391000 2024-01-31] (Riot Games, Inc. -> Riot Games, Inc.)
- S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [94208 2023-11-17] (Microsoft Windows -> )
- S3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [48144 2023-08-30] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider)
- R0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21040 2024-02-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- S0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [608648 2024-02-28] (Microsoft Windows -> Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105752 2024-02-28] (Microsoft Windows -> Microsoft Corporation)
- S3 WindscribeSplitTunnel; C:\WINDOWS\system32\DRIVERS\WindscribeSplitTunnel.sys [38152 2024-02-15] (Windscribe Limited -> )
- S3 WinISO7CD; C:\WINDOWS\System32\drivers\WinISO7CD.sys [101920 2022-09-16] (Microsoft Windows Hardware Compatibility Publisher -> )
- S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2023-10-29] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
- S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2023-08-29] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
- S3 WOVAD; C:\WINDOWS\System32\drivers\womic.sys [51192 2022-01-14] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
- S3 xhunter1; C:\WINDOWS\xhunter1.sys [215864 2024-02-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
- S3 zttap300; C:\WINDOWS\System32\drivers\zttap300.sys [31744 2023-03-06] (Microsoft Windows Hardware Compatibility Publisher -> ZeroTier Networks LLC)
- S2 IDMWFP; \SystemRoot\System32\drivers\idmwfp.sys [X]
- U3 TrueSight; \??\C:\Windows\System32\drivers\truesight.sys [X]
- S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One month (created) (Whitelisted) =========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2024-03-04 12:25 - 2024-03-04 12:25 - 000119048 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SMR540.SYS
- 2024-03-04 12:25 - 2024-03-04 12:25 - 000000020 _____ C:\WINDOWS\system32\Drivers\SMR540.dat
- 2024-03-04 12:09 - 2024-03-04 12:25 - 000000000 ____D C:\ProgramData\HitmanPro
- 2024-03-04 12:09 - 2024-03-04 12:09 - 000001968 _____ C:\Users\Public\Desktop\HitmanPro.lnk
- 2024-03-04 12:09 - 2024-03-04 12:09 - 000001968 _____ C:\ProgramData\Desktop\HitmanPro.lnk
- 2024-03-04 12:09 - 2024-03-04 12:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
- 2024-03-04 12:09 - 2024-03-04 12:09 - 000000000 ____D C:\Program Files\HitmanPro
- 2024-03-04 11:51 - 2024-03-04 11:51 - 000000400 __RSH C:\ProgramData\ntuser.pol
- 2024-03-04 11:47 - 2024-03-04 11:47 - 000000000 ____D C:\Users\UZER\Desktop\rkill
- 2024-03-04 11:46 - 2024-03-04 11:50 - 000002492 _____ C:\Users\UZER\Desktop\Rkill.txt
- 2024-03-04 11:39 - 2024-03-04 12:25 - 000031791 _____ C:\WINDOWS\ZAM.krnl.trace
- 2024-03-04 11:39 - 2024-03-04 11:41 - 000000000 ____D C:\Users\UZER\AppData\Local\NPE
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000003544 _____ C:\WINDOWS\system32\Tasks\AMHelper
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000002652 _____ C:\WINDOWS\system32\Tasks\AMSkipUAC
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000001335 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000001335 _____ C:\ProgramData\Desktop\Zemana AntiMalware.lnk
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000000000 ____D C:\Users\UZER\AppData\Local\Zemana
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000000000 ____D C:\ProgramData\Norton
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
- 2024-03-04 11:39 - 2024-03-04 11:39 - 000000000 ____D C:\Program Files (x86)\Zemana
- 2024-03-04 11:37 - 2024-03-04 12:13 - 000000000 ____D C:\Users\UZER\AppData\Local\AMSDK
- 2024-03-04 11:29 - 2024-03-04 12:25 - 000000000 ____D C:\Users\UZER\Downloads\avs
- 2024-03-04 11:29 - 2024-03-04 11:30 - 000000000 ____D C:\ProgramData\RogueKiller
- 2024-03-04 11:29 - 2024-03-04 11:29 - 000000901 _____ C:\Users\Public\Desktop\RogueKiller.lnk
- 2024-03-04 11:29 - 2024-03-04 11:29 - 000000901 _____ C:\ProgramData\Desktop\RogueKiller.lnk
- 2024-03-04 11:29 - 2024-03-04 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
- 2024-03-04 11:29 - 2024-03-04 11:29 - 000000000 ____D C:\Program Files\RogueKiller
- 2024-03-04 11:24 - 2024-03-04 12:25 - 000000000 ____D C:\FRST
- 2024-03-04 08:55 - 2024-03-04 08:57 - 000000000 ____D C:\Users\UZER\AppData\Local\mod.io
- 2024-03-04 08:54 - 2024-03-04 08:54 - 000000000 ____D C:\Users\UZER\AppData\Local\ReadyOrNot
- 2024-03-04 08:02 - 2024-03-04 09:42 - 000000553 _____ C:\Users\Public\Desktop\Ready or Not DX11.lnk
- 2024-03-04 08:02 - 2024-03-04 09:42 - 000000553 _____ C:\ProgramData\Desktop\Ready or Not DX11.lnk
- 2024-03-04 08:02 - 2024-03-04 08:02 - 000000539 _____ C:\Users\Public\Desktop\Ready or Not.lnk
- 2024-03-04 08:02 - 2024-03-04 08:02 - 000000539 _____ C:\ProgramData\Desktop\Ready or Not.lnk
- 2024-03-04 07:34 - 2024-03-04 10:27 - 000000719 _____ C:\Users\Public\Desktop\NARUTO SHIPPUDEN - Ultimate Ninja STORM 2.lnk
- 2024-03-04 07:34 - 2024-03-04 10:27 - 000000719 _____ C:\ProgramData\Desktop\NARUTO SHIPPUDEN - Ultimate Ninja STORM 2.lnk
- 2024-03-03 22:10 - 2024-03-03 22:10 - 000000000 ____D C:\Users\UZER\Documents\FLiNGTrainer
- 2024-03-02 17:00 - 2024-03-02 17:00 - 000642584 _____ C:\Users\UZER\Downloads\sitting on the patio.mp4
- 2024-03-01 18:06 - 2024-03-01 18:06 - 000291962 _____ C:\Users\UZER\Downloads\FAQ English.pdf
- 2024-02-28 21:24 - 2024-02-28 21:24 - 000000000 ____D C:\Users\UZER\Documents\Adobe
- 2024-02-28 21:23 - 2024-02-28 21:23 - 000000000 ____D C:\Users\UZER\AppData\Local\Adobe
- 2024-02-28 20:13 - 2024-03-03 11:28 - 000000659 _____ C:\Users\Public\Desktop\Call of Duty - Infinite Warfare.lnk
- 2024-02-28 20:13 - 2024-03-03 11:28 - 000000659 _____ C:\ProgramData\Desktop\Call of Duty - Infinite Warfare.lnk
- 2024-02-27 17:40 - 2024-02-27 17:40 - 000144744 _____ C:\Users\UZER\Downloads\wtf.opus
- 2024-02-27 16:13 - 2024-02-28 18:36 - 000000623 _____ C:\Users\Public\Desktop\Ultimate Marvel vs. Capcom 3.lnk
- 2024-02-27 16:13 - 2024-02-28 18:36 - 000000623 _____ C:\ProgramData\Desktop\Ultimate Marvel vs. Capcom 3.lnk
- 2024-02-26 23:06 - 2024-02-26 23:06 - 000001273 _____ C:\Users\UZER\Desktop\GFXTool.lnk
- 2024-02-26 13:08 - 2024-02-26 13:08 - 000000000 ____D C:\Users\UZER\AppData\Roaming\A Plague Tale Innocence
- 2024-02-25 22:45 - 2024-02-25 22:45 - 000022838 _____ C:\Users\UZER\Downloads\thingy.opus
- 2024-02-25 22:39 - 2024-03-02 17:42 - 000000699 _____ C:\Users\Public\Desktop\A Plague Tale - Innocence.lnk
- 2024-02-25 22:39 - 2024-03-02 17:42 - 000000699 _____ C:\ProgramData\Desktop\A Plague Tale - Innocence.lnk
- 2024-02-25 17:10 - 2024-02-25 17:10 - 000537154 _____ C:\Users\UZER\Downloads\titanfall.mp4
- 2024-02-24 18:04 - 2024-02-24 18:04 - 000000519 _____ C:\Users\Public\Desktop\Heavy Rain.lnk
- 2024-02-24 18:04 - 2024-02-24 18:04 - 000000519 _____ C:\ProgramData\Desktop\Heavy Rain.lnk
- 2024-02-23 13:29 - 2024-02-23 13:32 - 000000031 _____ C:\Users\UZER\Documents\1.txt
- 2024-02-23 13:13 - 2024-02-25 18:06 - 000000000 ____D C:\Users\UZER\AppData\Roaming\riot-client-ux
- 2024-02-23 13:09 - 2024-02-23 13:09 - 000023027 _____ C:\Users\UZER\Downloads\WhatsApp Audio 2024-02-23 at 13.09.03_866af0e2.waptt.opus
- 2024-02-23 00:35 - 2024-02-23 00:35 - 000003276 _____ C:\WINDOWS\system32\Tasks\6AM Shutdown
- 2024-02-22 21:43 - 2024-02-22 21:43 - 000001237 _____ C:\Users\UZER\Desktop\BattlegroundsIndia (1).lnk
- 2024-02-22 21:04 - 2024-02-22 22:13 - 000000000 ____D C:\Users\UZER\AppData\Roaming\bluestacks-services
- 2024-02-22 21:04 - 2024-02-22 21:04 - 000002439 _____ C:\Users\UZER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlueStacks Services.lnk
- 2024-02-22 21:02 - 2024-02-27 22:02 - 000000000 ____D C:\ProgramData\bst_boost_interprocess
- 2024-02-22 21:02 - 2024-02-27 12:15 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5.lnk
- 2024-02-22 21:02 - 2024-02-26 14:52 - 000001301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks Multi-Instance Manager.lnk
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000003924 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper_nxt
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000001975 _____ C:\Users\Public\Desktop\BlueStacks 5.lnk
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000001975 _____ C:\ProgramData\Desktop\BlueStacks 5.lnk
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000001289 _____ C:\Users\Public\Desktop\BlueStacks Multi-Instance Manager.lnk
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000001289 _____ C:\ProgramData\Desktop\BlueStacks Multi-Instance Manager.lnk
- 2024-02-22 21:02 - 2024-02-22 21:02 - 000000000 ____D C:\Program Files\BlueStacks_nxt
- 2024-02-22 20:46 - 2024-02-22 20:46 - 000000809 _____ C:\Users\Public\Desktop\BlueStacks X.lnk
- 2024-02-22 20:46 - 2024-02-22 20:46 - 000000809 _____ C:\ProgramData\Desktop\BlueStacks X.lnk
- 2024-02-22 20:46 - 2024-02-22 20:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks X
- 2024-02-22 20:38 - 2024-02-22 23:21 - 000011145 _____ C:\Users\UZER\Documents\list.xlsx
- 2024-02-22 20:33 - 2024-02-22 20:33 - 000001256 _____ C:\Users\UZER\Desktop\BattlegroundsIndia.lnk
- 2024-02-22 09:31 - 2024-02-22 11:30 - 000011332 _____ C:\Users\UZER\Documents\Sports 2.xlsx
- 2024-02-22 09:14 - 2024-02-22 09:20 - 000010986 _____ C:\Users\UZER\Documents\Sports.xlsx
- 2024-02-21 20:20 - 2024-02-21 20:20 - 000000000 ____D C:\Program Files\BlueStacks_msi5
- 2024-02-21 16:24 - 2024-02-21 16:24 - 000000827 _____ C:\Users\UZER\Desktop\Gang Beasts v1.21.1.lnk
- 2024-02-21 16:24 - 2024-02-21 16:24 - 000000053 _____ C:\WINDOWS\WrpYGF74DrEm.ini
- 2024-02-21 16:24 - 2024-02-21 16:24 - 000000000 ____D C:\Users\UZER\AppData\LocalLow\Boneloaf
- 2024-02-21 13:34 - 2024-02-21 13:34 - 000001250 _____ C:\Users\UZER\Desktop\BitLife - Instance1.lnk
- 2024-02-20 21:21 - 2024-02-20 21:49 - 000000000 ____D C:\Program Files\Mozilla Firefox
- 2024-02-19 21:22 - 2024-02-19 21:22 - 000000764 _____ C:\Users\UZER\Desktop\Bully. Scholarship Edition.lnk
- 2024-02-19 21:21 - 2024-02-19 21:21 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Bully. Scholarship Edition
- 2024-02-19 20:43 - 2024-02-19 20:43 - 000000000 ____D C:\Users\Public\Documents\Epic
- 2024-02-19 20:43 - 2024-02-19 20:43 - 000000000 ____D C:\ProgramData\Documents\Epic
- 2024-02-19 20:22 - 2024-03-02 22:03 - 000000593 _____ C:\Users\Public\Desktop\Kena - Bridge of Spirits.lnk
- 2024-02-19 20:22 - 2024-03-02 22:03 - 000000593 _____ C:\ProgramData\Desktop\Kena - Bridge of Spirits.lnk
- 2024-02-19 12:17 - 2024-02-19 12:17 - 000000000 ____D C:\Users\UZER\AppData\Local\TslGame
- 2024-02-19 12:16 - 2024-02-23 16:29 - 000000000 ____D C:\Program Files\Common Files\PUBG
- 2024-02-19 12:16 - 2024-02-23 15:55 - 000215864 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys
- 2024-02-19 12:16 - 2024-02-19 12:16 - 000000000 ____D C:\Users\UZER\AppData\Local\WELLBIA
- 2024-02-19 12:16 - 2024-02-19 12:16 - 000000000 ____D C:\Users\UZER\AppData\Local\BattlEye
- 2024-02-19 12:16 - 2024-02-19 12:16 - 000000000 ____D C:\Program Files\Common Files\Wellbia.com
- 2024-02-17 18:56 - 2024-02-17 18:56 - 010222463 _____ C:\Users\UZER\Downloads\Subnautica.Nitrox.1.4.0.0-sowwyitsanalt.7z
- 2024-02-17 15:17 - 2024-02-17 15:17 - 005531913 _____ C:\Users\UZER\Downloads\Cod waw patch files.7z
- 2024-02-17 14:23 - 2024-02-17 14:23 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Call of Duty - World at War
- 2024-02-17 14:04 - 2024-02-17 14:04 - 000000000 ____D C:\ProgramData\Unknown Worlds
- 2024-02-17 13:57 - 2024-02-17 13:57 - 000000000 ____D C:\Users\UZER\AppData\LocalLow\Unknown Worlds
- 2024-02-17 13:22 - 2024-02-17 13:22 - 000000000 ____D C:\Users\UZER\AppData\Roaming\dnSpy
- 2024-02-17 13:18 - 2024-02-17 13:18 - 000000000 ____D C:\Users\UZER\AppData\Local\dnSpy
- 2024-02-17 13:16 - 2024-02-17 13:16 - 000000000 ____D C:\Users\UZER\.nuget
- 2024-02-17 13:08 - 2024-02-17 13:08 - 000000000 ____D C:\Users\UZER\AppData\Roaming\NuGet
- 2024-02-17 13:08 - 2024-02-17 13:08 - 000000000 ____D C:\Users\UZER\AppData\Local\ServiceHub
- 2024-02-17 13:08 - 2024-02-17 13:08 - 000000000 ____D C:\Users\UZER\AppData\Local\NuGet
- 2024-02-17 12:54 - 2024-02-17 12:54 - 000000000 ____D C:\Users\UZER\AppData\Local\CMakeTools
- 2024-02-17 00:51 - 2024-02-17 00:51 - 000000000 ___HD C:\Users\UZER\AppData\Roaming\mnlhxkrmqykppjtdlflsc
- 2024-02-17 00:51 - 2024-02-17 00:51 - 000000000 ____D C:\ProgramData\Autokroma
- 2024-02-17 00:33 - 2024-03-04 12:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boris FX Continuum AE
- 2024-02-17 00:30 - 2024-03-04 12:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boris FX Continuum OFX
- 2024-02-17 00:29 - 2024-02-17 00:33 - 000000000 ____D C:\Program Files\BorisFX
- 2024-02-17 00:29 - 2024-02-17 00:29 - 000000000 ____D C:\Program Files\Common Files\OFX
- 2024-02-17 00:26 - 2024-02-17 00:51 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Autokroma
- 2024-02-17 00:26 - 2024-02-17 00:26 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autokroma
- 2024-02-17 00:18 - 2022-10-06 21:52 - 000000000 ____D C:\Users\UZER\Documents\Autokroma Influx 1.2.1 (x64)
- 2024-02-16 23:25 - 2024-02-16 23:25 - 000000000 ____D C:\Users\UZER\AppData\Roaming\The Wolf Among Us_Uninstall
- 2024-02-16 15:08 - 2024-02-16 15:08 - 000000000 ____D C:\Users\UZER\Desktop\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj
- 2024-02-16 14:52 - 2024-02-16 14:52 - 000000000 ____D C:\Users\UZER\AppData\Roaming\NVIDIA
- 2024-02-16 14:50 - 2024-02-23 17:19 - 000000000 ____D C:\Users\UZER\AppData\Local\NVIDIA Corporation
- 2024-02-16 14:50 - 2024-02-16 14:51 - 000000000 ____D C:\Users\UZER\AppData\Local\NVIDIA
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000001449 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000001449 _____ C:\ProgramData\Desktop\GeForce Experience.lnk
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000000000 ____D C:\Users\UZER\AppData\LocalLow\NVIDIA
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
- 2024-02-16 14:50 - 2024-02-16 14:50 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
- 2024-02-16 14:50 - 2024-02-08 04:19 - 002905128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
- 2024-02-16 14:50 - 2024-02-08 04:19 - 002235944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
- 2024-02-16 14:50 - 2024-02-08 04:19 - 001296936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
- 2024-02-16 14:50 - 2024-02-08 04:19 - 000170040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
- 2024-02-16 14:50 - 2024-02-08 04:19 - 000149048 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
- 2024-02-16 14:48 - 2024-02-08 04:19 - 000121880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
- 2024-02-16 14:48 - 2024-02-08 04:19 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
- 2024-02-16 14:48 - 2024-02-08 04:19 - 000059928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
- 2024-02-16 14:47 - 2024-02-16 14:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2024-02-16 14:47 - 2024-02-08 13:55 - 002095464 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
- 2024-02-16 14:47 - 2024-02-08 13:55 - 002095464 _____ C:\WINDOWS\system32\vulkaninfo.exe
- 2024-02-16 14:47 - 2024-02-08 13:55 - 001655656 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2024-02-16 14:47 - 2024-02-08 13:55 - 001655656 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
- 2024-02-16 14:47 - 2024-02-08 13:55 - 001278824 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
- 2024-02-16 14:47 - 2024-02-08 13:55 - 001278824 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
- 2024-02-16 14:47 - 2024-02-08 13:54 - 001434368 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
- 2024-02-16 14:47 - 2024-02-08 13:54 - 001434368 _____ C:\WINDOWS\system32\vulkan-1.dll
- 2024-02-16 14:47 - 2024-02-08 13:54 - 001226760 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
- 2024-02-16 14:47 - 2024-02-08 13:50 - 001542176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2024-02-16 14:47 - 2024-02-08 13:50 - 001199224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2024-02-16 14:47 - 2024-02-08 13:50 - 001040920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
- 2024-02-16 14:47 - 2024-02-08 13:50 - 000670240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
- 2024-02-16 14:47 - 2024-02-08 13:50 - 000505352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
- 2024-02-16 14:47 - 2024-02-08 13:49 - 002173984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2024-02-16 14:47 - 2024-02-08 13:49 - 001625096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2024-02-16 14:47 - 2024-02-08 13:49 - 001024136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2024-02-16 14:47 - 2024-02-08 13:49 - 000842376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
- 2024-02-16 14:47 - 2024-02-08 13:49 - 000786960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2024-02-16 14:47 - 2024-02-08 13:48 - 000459272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
- 2024-02-16 14:47 - 2024-02-08 13:47 - 016033312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 012928648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 006780424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 005909112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 005773448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 003721232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2024-02-16 14:47 - 2024-02-08 13:47 - 000853112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
- 2024-02-16 14:47 - 2024-02-08 13:45 - 006943344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
- 2024-02-16 14:47 - 2024-02-08 13:45 - 006030992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2024-02-16 14:47 - 2024-02-08 04:19 - 000120261 _____ C:\WINDOWS\system32\nvinfo.pb
- 2024-02-16 14:46 - 2024-03-04 08:55 - 000000000 ____D C:\Users\UZER\AppData\Local\D3DSCache
- 2024-02-16 14:44 - 2024-03-04 12:25 - 001023114 _____ C:\WINDOWS\ntbtlog.txt
- 2024-02-16 14:44 - 2024-03-04 12:24 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
- 2024-02-15 19:29 - 2024-02-27 16:22 - 000000000 ____D C:\Users\UZER\AppData\Local\CAPCOM
- 2024-02-15 08:33 - 2024-02-15 08:33 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Moonchild Productions
- 2024-02-15 08:33 - 2024-02-15 08:33 - 000000000 ____D C:\Users\UZER\AppData\Local\Moonchild Productions
- 2024-02-15 08:32 - 2024-02-21 14:31 - 000000968 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pale Moon.lnk
- 2024-02-15 08:32 - 2024-02-15 08:32 - 000000956 _____ C:\Users\Public\Desktop\Pale Moon.lnk
- 2024-02-15 08:32 - 2024-02-15 08:32 - 000000956 _____ C:\ProgramData\Desktop\Pale Moon.lnk
- 2024-02-15 08:32 - 2024-02-15 08:32 - 000000000 ____D C:\Program Files\Pale Moon
- 2024-02-15 08:23 - 2024-02-18 19:36 - 000000000 ____D C:\Program Files\Windscribe
- 2024-02-15 08:23 - 2024-02-15 08:23 - 000038152 _____ C:\WINDOWS\system32\Drivers\WindscribeSplitTunnel.sys
- 2024-02-15 08:23 - 2024-02-15 08:23 - 000000000 ____D C:\Users\UZER\AppData\Local\Windscribe
- 2024-02-15 08:23 - 2024-02-15 08:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe
- 2024-02-15 04:44 - 2024-02-15 04:44 - 000019222 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
- 2024-02-15 04:44 - 2024-02-15 04:44 - 000019222 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
- 2024-02-15 04:40 - 2024-02-15 04:41 - 000000000 ___HD C:\$WinREAgent
- 2024-02-15 01:17 - 2024-02-15 01:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GenArts Sapphire AE
- 2024-02-15 01:07 - 2024-02-27 12:15 - 000001273 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2019.lnk
- 2024-02-15 01:07 - 2024-02-15 01:07 - 000000000 ____D C:\Users\Public\Documents\Adobe
- 2024-02-15 01:07 - 2024-02-15 01:07 - 000000000 ____D C:\ProgramData\Documents\Adobe
- 2024-02-15 01:02 - 2024-02-15 01:07 - 000000000 ____D C:\Program Files\Adobe
- 2024-02-15 00:52 - 2024-02-15 00:52 - 000002419 _____ C:\Users\UZER\Documents\aeplug.txt
- 2024-02-13 17:34 - 2024-02-17 17:43 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4015671430-4189389437-3832571869-1001
- 2024-02-13 17:34 - 2024-02-17 17:43 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4015671430-4189389437-3832571869-1001
- 2024-02-13 17:34 - 2024-02-17 17:43 - 000002382 _____ C:\Users\UZER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2024-02-13 17:22 - 2024-02-27 12:15 - 000000879 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
- 2024-02-13 17:22 - 2024-02-17 19:51 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Notepad++
- 2024-02-13 17:22 - 2024-02-13 17:22 - 000000000 ____D C:\Program Files\Notepad++
- 2024-02-13 17:15 - 2024-02-13 17:15 - 000000000 ____D C:\Users\UZER\AppData\Local\WB Games
- 2024-02-13 00:22 - 2024-03-02 17:25 - 000000000 ____D C:\Users\UZER\AppData\Roaming\GHISLER
- 2024-02-13 00:22 - 2024-03-02 17:25 - 000000000 ____D C:\Users\UZER\AppData\Local\GHISLER
- 2024-02-13 00:16 - 2024-02-25 23:44 - 000000000 ____D C:\Users\UZER\Downloads\Root
- 2024-02-13 00:14 - 2024-03-04 12:25 - 000000000 ____D C:\Users\UZER\AppData\Roaming\TeraCopy
- 2024-02-13 00:14 - 2024-02-13 00:14 - 000000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk
- 2024-02-13 00:14 - 2024-02-13 00:14 - 000000000 ___HD C:\Users\UZER\AppData\Roaming\Obsidium x64
- 2024-02-13 00:14 - 2024-02-13 00:14 - 000000000 ___HD C:\Users\UZER\.obs64
- 2024-02-13 00:14 - 2024-02-13 00:14 - 000000000 ____D C:\ProgramData\Code Sector
- 2024-02-13 00:14 - 2024-02-13 00:14 - 000000000 ____D C:\Program Files\TeraCopy
- 2024-02-13 00:11 - 2024-02-13 00:11 - 000000000 ____D C:\ProgramData\Caphyon
- 2024-02-08 11:10 - 2024-02-08 11:11 - 000000000 ____D C:\Users\UZER\Downloads\book
- 2024-02-08 11:09 - 2024-02-08 11:13 - 000000000 ____D C:\Users\UZER\Downloads\cracks
- 2024-02-08 11:07 - 2024-03-03 15:29 - 000000000 ____D C:\Users\UZER\Downloads\mods
- 2024-02-08 11:07 - 2024-02-27 11:44 - 000000000 ____D C:\Users\UZER\Downloads\installs
- 2024-02-08 11:07 - 2024-02-08 11:08 - 000000000 ____D C:\Users\UZER\Downloads\mc
- 2024-02-08 11:06 - 2024-02-18 00:01 - 000000000 ___HD C:\Users\UZER\Downloads\School
- 2024-02-07 22:22 - 2024-02-20 17:47 - 000000765 _____ C:\Users\Public\Desktop\Middle-earth - Shadow of War DE.lnk
- 2024-02-07 22:22 - 2024-02-20 17:47 - 000000765 _____ C:\ProgramData\Desktop\Middle-earth - Shadow of War DE.lnk
- 2024-02-05 21:29 - 2024-02-05 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
- 2024-02-05 21:29 - 2024-02-05 21:29 - 000000000 ____D C:\Program Files (x86)\Geeks3D
- 2024-02-04 21:45 - 2024-02-05 17:16 - 000001005 _____ C:\Users\Public\Desktop\SWAT 4 - The Stetchkov Syndicate.lnk
- 2024-02-04 21:45 - 2024-02-05 17:16 - 000001005 _____ C:\ProgramData\Desktop\SWAT 4 - The Stetchkov Syndicate.lnk
- 2024-02-04 21:45 - 2024-02-05 17:16 - 000000985 _____ C:\Users\Public\Desktop\SWAT 4.lnk
- 2024-02-04 21:45 - 2024-02-05 17:16 - 000000985 _____ C:\ProgramData\Desktop\SWAT 4.lnk
- 2024-02-04 21:45 - 2024-02-05 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SWAT 4 Gold Edition [GOG.com]
- 2024-02-04 21:44 - 2024-02-04 21:44 - 000000000 ____D C:\Users\UZER\AppData\LocalLow\Team17
- 2024-02-04 19:01 - 2024-02-27 11:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vampire - The Masquerade - Bloodlines [GOG.com]
- 2024-02-04 13:03 - 2024-02-04 13:16 - 000000000 ____D C:\Users\UZER\Documents\Baldur's Gate - Enhanced Edition
- 2024-02-04 13:02 - 2024-02-04 13:02 - 000000792 _____ C:\Users\UZER\Desktop\Baldurs Gate - Enhanced Edition.lnk
- 2024-02-04 13:02 - 2024-02-04 13:02 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Baldurs Gate - Enhanced Edition
- 2024-02-03 17:00 - 2024-02-03 17:00 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Sun
- 2024-02-03 17:00 - 2024-02-03 17:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
- 2024-02-03 17:00 - 2023-12-19 13:01 - 000200320 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
- 2024-02-03 10:15 - 2024-02-03 10:15 - 000000000 ____D C:\Users\UZER\AppData\Local\2K Games
- ==================== One month (modified) ==================
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2024-03-04 12:24 - 2023-01-04 07:41 - 000012288 ___SH C:\DumpStack.log.tmp
- 2024-03-04 12:22 - 2022-05-07 10:47 - 000524288 _____ C:\WINDOWS\system32\config\BBI
- 2024-03-04 12:21 - 2023-08-24 15:29 - 000000000 ____D C:\Users\UZER\AppData\Local\CrashDumps
- 2024-03-04 12:20 - 2023-08-21 20:50 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
- 2024-03-04 12:17 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\SystemTemp
- 2024-03-04 12:14 - 2023-09-02 18:18 - 000850308 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2024-03-04 12:14 - 2022-05-07 10:52 - 000000000 ____D C:\WINDOWS\INF
- 2024-03-04 12:09 - 2024-01-06 23:20 - 000000000 __SHD C:\AdwCleaner
- 2024-03-04 12:06 - 2023-09-02 18:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2024-03-04 12:06 - 2023-08-21 20:10 - 000000000 ____D C:\ProgramData\NVIDIA
- 2024-03-04 12:06 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2024-03-04 12:05 - 2022-05-07 10:54 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2024-03-04 11:29 - 2023-09-04 19:41 - 000000000 ____D C:\Users\UZER\Downloads\chit
- 2024-03-04 11:13 - 2023-01-04 07:46 - 000000000 ____D C:\Users\UZER\AppData\Local\Packages
- 2024-03-04 11:13 - 2022-05-07 10:54 - 000000000 ___HD C:\Program Files\WindowsApps
- 2024-03-04 10:26 - 2023-08-22 21:20 - 000000000 ____D C:\Program Files (x86)\Steam
- 2024-03-04 08:22 - 2023-09-02 18:10 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2024-03-04 07:31 - 2023-08-24 14:26 - 000000000 ____D C:\Users\UZER\AppData\Roaming\tixati
- 2024-03-03 23:20 - 2023-09-02 18:10 - 000000000 ____D C:\Users\UZER
- 2024-03-03 22:54 - 2023-09-04 19:22 - 000000000 ____D C:\Users\UZER\AppData\Local\Spotify
- 2024-03-03 22:51 - 2023-08-27 15:42 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Spotify
- 2024-03-03 22:47 - 2023-11-22 19:47 - 000000835 _____ C:\Users\Public\Desktop\Kingdom Come - Deliverance.lnk
- 2024-03-03 22:47 - 2023-11-22 19:47 - 000000835 _____ C:\ProgramData\Desktop\Kingdom Come - Deliverance.lnk
- 2024-03-03 15:00 - 2023-08-24 19:36 - 000000000 ____D C:\Users\UZER\AppData\Roaming\TS3Client
- 2024-03-02 17:22 - 2023-09-11 15:00 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Bitwarden
- 2024-02-29 21:17 - 2024-01-28 22:34 - 000000501 _____ C:\Users\Public\Desktop\Play Red Dead Redemption 2.lnk
- 2024-02-29 21:17 - 2024-01-28 22:34 - 000000501 _____ C:\ProgramData\Desktop\Play Red Dead Redemption 2.lnk
- 2024-02-28 22:33 - 2023-08-29 16:17 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Adobe
- 2024-02-28 19:27 - 2023-09-11 15:59 - 000000000 ____D C:\Users\UZER\AppData\Roaming\spicetify
- 2024-02-28 19:27 - 2023-09-11 15:59 - 000000000 ____D C:\Users\UZER\AppData\Local\spicetify
- 2024-02-28 17:35 - 2023-01-04 07:41 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
- 2024-02-28 17:10 - 2023-09-02 18:13 - 000004174 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1692783482
- 2024-02-28 17:10 - 2023-08-23 15:08 - 000001437 _____ C:\Users\UZER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera GX Browser .lnk
- 2024-02-27 19:26 - 2023-08-26 19:17 - 000000000 ____D C:\Users\UZER\Documents\Lightshot
- 2024-02-27 18:52 - 2023-08-24 12:35 - 000000000 ____D C:\Users\UZER\AppData\Local\EpicGamesLauncher
- 2024-02-27 17:01 - 2023-01-04 07:41 - 004089620 _____ C:\DUMP1caf.tmp
- 2024-02-27 15:12 - 2023-09-07 11:06 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
- 2024-02-27 12:15 - 2023-11-16 23:04 - 000001153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities.lnk
- 2024-02-27 12:15 - 2023-10-02 09:25 - 000000074 _____ C:\ProgramData\WnHqYU0nH4
- 2024-02-27 12:15 - 2023-08-28 16:38 - 000002244 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey Window Spy.lnk
- 2024-02-27 12:15 - 2023-08-21 20:50 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2024-02-27 12:15 - 2023-08-21 20:50 - 000002070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
- 2024-02-27 12:15 - 2023-08-21 20:50 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Private Browsing.lnk
- 2024-02-27 12:15 - 2023-01-04 07:41 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2024-02-27 12:14 - 2023-09-07 06:34 - 000000000 ____D C:\ProgramData\Riot Games
- 2024-02-27 11:04 - 2024-01-10 21:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enslaved Odyssey to the West Premium Edition
- 2024-02-27 11:04 - 2023-09-04 21:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI App Player
- 2024-02-26 15:09 - 2023-08-22 22:17 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
- 2024-02-26 15:09 - 2023-08-22 22:16 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
- 2024-02-26 14:52 - 2023-12-29 10:44 - 000000000 _____ C:\ProgramData\system.conf
- 2024-02-26 14:52 - 2023-08-28 16:41 - 000001464 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ahk2Exe.lnk
- 2024-02-26 14:52 - 2023-08-24 12:34 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
- 2024-02-26 13:58 - 2023-09-30 10:46 - 000001412 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
- 2024-02-26 13:58 - 2023-08-28 16:38 - 000001354 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey Dash.lnk
- 2024-02-26 13:08 - 2023-08-25 13:20 - 000000000 ____D C:\Users\UZER\Documents\My Games
- 2024-02-25 23:32 - 2023-12-28 20:37 - 000000000 ____D C:\Program Files (x86)\AnyDesk
- 2024-02-25 17:16 - 2023-09-02 20:44 - 000000000 ____D C:\Users\UZER\AppData\Roaming\discord
- 2024-02-25 17:04 - 2023-09-02 20:44 - 000002228 _____ C:\Users\UZER\Desktop\Discord.lnk
- 2024-02-25 17:04 - 2023-09-02 20:44 - 000000000 ____D C:\Users\UZER\AppData\Local\Discord
- 2024-02-24 20:10 - 2024-02-01 17:56 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
- 2024-02-24 20:10 - 2023-08-21 20:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2024-02-24 18:04 - 2023-09-28 08:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2024-02-24 16:51 - 2023-08-21 20:26 - 000000000 ____D C:\ProgramData\Package Cache
- 2024-02-24 15:10 - 2024-01-07 19:10 - 000000090 _____ C:\Users\UZER\Documents\1010.txt
- 2024-02-23 15:14 - 2023-08-24 19:35 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
- 2024-02-23 15:11 - 2023-12-27 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
- 2024-02-23 13:34 - 2023-12-27 14:21 - 000006207 _____ C:\Users\UZER\Documents\assassin.txt
- 2024-02-22 23:22 - 2023-12-06 23:00 - 000000000 ____D C:\Users\UZER\Documents\PDFgear
- 2024-02-22 21:01 - 2023-08-28 21:34 - 000000000 ____D C:\Users\UZER\AppData\Local\Bluestacks
- 2024-02-22 20:43 - 2023-08-28 21:34 - 000000000 ____D C:\Users\Public\BlueStacks
- 2024-02-22 20:40 - 2023-09-04 22:02 - 000000000 ____D C:\Users\UZER\AppData\Local\MSI App Player
- 2024-02-22 20:40 - 2023-08-28 21:36 - 000000000 ____D C:\ProgramData\boost_interprocess
- 2024-02-22 20:38 - 2023-11-26 15:30 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Microsoft\Excel
- 2024-02-22 16:53 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\Registration
- 2024-02-22 16:27 - 2022-05-07 10:54 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
- 2024-02-22 00:49 - 2023-08-21 20:44 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Microsoft\MMC
- 2024-02-21 16:31 - 2023-10-27 20:10 - 000000000 ____D C:\Users\Public\Documents\OnlineFix
- 2024-02-21 16:31 - 2023-10-27 20:10 - 000000000 ____D C:\ProgramData\Documents\OnlineFix
- 2024-02-21 16:23 - 2024-01-21 11:11 - 000000000 ____D C:\Users\UZER\AppData\Local\LogMeIn Hamachi
- 2024-02-21 13:53 - 2023-08-24 19:36 - 000000972 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
- 2024-02-21 11:31 - 2024-01-05 18:58 - 000000032 _____ C:\Users\UZER\AppData\Roaming\.machineId
- 2024-02-19 21:22 - 2023-09-01 09:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
- 2024-02-19 19:39 - 2023-12-24 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Undertale [GOG.com]
- 2024-02-19 19:39 - 2023-10-23 10:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HandBrake
- 2024-02-19 18:06 - 2023-08-29 16:46 - 000000000 ____D C:\Users\UZER\Documents\Telltale Games
- 2024-02-19 12:17 - 2023-08-24 12:35 - 000000000 ____D C:\Users\UZER\AppData\Local\UnrealEngine
- 2024-02-18 11:58 - 2023-09-07 06:36 - 000000000 ____D C:\Program Files\Riot Vanguard
- 2024-02-17 19:44 - 2023-09-15 17:05 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Code
- 2024-02-17 19:26 - 2023-09-02 18:10 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Microsoft\Windows
- 2024-02-17 14:46 - 2023-10-03 20:30 - 000000000 ____D C:\Users\UZER\AppData\Local\Activision
- 2024-02-17 13:08 - 2023-09-28 17:58 - 000000000 ____D C:\Users\UZER\.dotnet
- 2024-02-17 12:48 - 2023-09-15 17:05 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
- 2024-02-17 00:29 - 2023-10-02 09:18 - 000000000 ____D C:\ProgramData\BorisFX
- 2024-02-16 23:12 - 2023-12-20 18:10 - 000000124 _____ C:\Users\UZER\Documents\vacationon.txt
- 2024-02-16 17:54 - 2023-08-21 20:10 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2024-02-16 14:46 - 2023-01-04 07:46 - 000000000 ____D C:\ProgramData\Packages
- 2024-02-15 15:16 - 2022-05-07 10:47 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2024-02-15 07:14 - 2023-10-13 20:03 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
- 2024-02-15 07:14 - 2023-09-02 18:10 - 000392944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2024-02-15 07:14 - 2022-05-07 13:09 - 000000000 ____D C:\WINDOWS\system32\AppV
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\UUS
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\SystemResources
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\Sgrm
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\setup
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\ShellComponents
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\Provisioning
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\BrowserCore
- 2024-02-15 07:14 - 2022-05-07 10:54 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2024-02-15 04:46 - 2022-05-07 10:47 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2024-02-15 04:44 - 2023-09-02 18:13 - 003212800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
- 2024-02-15 04:31 - 2023-08-21 20:23 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2024-02-15 04:28 - 2023-08-21 20:22 - 191155960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2024-02-15 01:19 - 2023-10-02 09:18 - 000000000 ____D C:\ProgramData\GenArts
- 2024-02-15 01:17 - 2023-10-02 09:25 - 000000000 ____D C:\Program Files\GenArts
- 2024-02-15 01:07 - 2023-09-26 20:32 - 000000000 ____D C:\Program Files\Common Files\Adobe
- 2024-02-15 01:02 - 2023-08-21 20:44 - 000000000 ____D C:\Program Files (x86)\Adobe
- 2024-02-14 21:07 - 2024-01-19 23:33 - 000000747 _____ C:\Users\Public\Desktop\Cyberpunk 2077.lnk
- 2024-02-14 21:07 - 2024-01-19 23:33 - 000000747 _____ C:\ProgramData\Desktop\Cyberpunk 2077.lnk
- 2024-02-13 18:01 - 2023-10-03 20:27 - 000000000 ____D C:\Users\UZER\Documents\FIFA 14
- 2024-02-13 17:20 - 2023-10-02 00:05 - 000000000 ____D C:\Users\UZER\AppData\Roaming\Goldberg SteamEmu Saves
- 2024-02-13 17:06 - 2023-09-02 21:29 - 000000000 ____D C:\Users\UZER\AppData\Local\PlaceholderTileLogoFolder
- 2024-02-10 10:23 - 2023-08-21 20:59 - 000000000 ____D C:\MSI
- 2024-02-08 13:54 - 2023-12-14 10:13 - 001487904 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
- 2024-02-08 04:19 - 2023-08-24 14:16 - 000086568 _____ C:\WINDOWS\system32\FvSDK_x64.dll
- 2024-02-08 04:19 - 2023-08-24 14:16 - 000075304 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
- 2024-02-07 13:54 - 2023-09-25 23:08 - 000001057 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
- 2024-02-06 17:55 - 2023-09-20 12:18 - 000002266 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host
- 2024-02-06 13:34 - 2023-11-16 23:04 - 000002408 _____ C:\WINDOWS\system32\Tasks\GlaryInitialize
- ==================== Files in the root of some directories ========
- 2024-01-05 18:58 - 2024-02-21 11:31 - 000000032 _____ () C:\Users\UZER\AppData\Roaming\.machineId
- 2023-08-26 22:47 - 2023-09-26 20:58 - 000208896 _____ () C:\Users\UZER\AppData\Roaming\emp.bin
- 2023-10-02 11:44 - 2024-01-21 11:51 - 000000081 _____ () C:\Users\UZER\AppData\Local\FILM_AE_LogFile.txt
- 2023-09-30 10:46 - 2024-02-02 12:29 - 000015785 _____ () C:\Users\UZER\AppData\Local\oobelibMkey.log
- 2023-08-26 19:14 - 2023-08-26 19:14 - 000000003 _____ () C:\Users\UZER\AppData\Local\updater.log
- 2023-08-26 19:14 - 2023-08-26 19:14 - 000000424 _____ () C:\Users\UZER\AppData\Local\UserProducts.xml
- ==================== FLock ==============================
- 2024-01-06 23:20 C:\Program Files (x86)\Microsoft JDX
- ==================== SigCheck ============================
- (There is no automatic fix for files that do not pass verification.)
- ==================== End of FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement