Advertisement
Rzychu22

frst

Jan 1st, 2020
2,391
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 43.50 KB | None | 0 0
  1. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-12-2019 01
  2. Ran by Rzychu (administrator) on DESKTOP-428GQMH (Micro-Star International Co., Ltd. MS-7B49) (01-01-2020 19:52:19)
  3. Running from E:\
  4. Loaded Profiles: Rzychu (Available Profiles: Rzychu)
  5. Platform: Windows 10 Pro Version 1903 18362.535 (X64) Language: English (United States)
  6. Default browser: FF
  7. Boot Mode: Normal
  8. Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Processes (Whitelisted) =================
  11.  
  12. (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
  13.  
  14. () [File not signed] G:\Program Files (x86)\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
  15. (Discord Inc. -> Discord Inc.) C:\Users\Rzychu\AppData\Local\Discord\app-0.0.305\Discord.exe
  16. (Discord Inc. -> Discord Inc.) C:\Users\Rzychu\AppData\Local\Discord\app-0.0.305\Discord.exe
  17. (Discord Inc. -> Discord Inc.) C:\Users\Rzychu\AppData\Local\Discord\app-0.0.305\Discord.exe
  18. (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
  19. (Intel Corporation) [File not signed] C:\Windows\System32\IPROSetMonitor.exe
  20. (Intel(R) Rapid Storage Technology -> Intel Corporation) F:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
  21. (Intel(R) Rapid Storage Technology -> Intel Corporation) F:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
  22. (Logitech Inc -> Logitech Europe S.A.) C:\Program Files\Logitech\Collaboration\Services\Video\cropAssistAPI\CropAssistService.exe
  23. (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
  24. (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
  25. (Logitech Inc -> Logitech) C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe
  26. (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
  27. (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_1912.1001.8.0_x64__8wekyb3d8bbwe\app\XboxAppServices.exe
  28. (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.26001.0_x64__8wekyb3d8bbwe\GamingServices.exe
  29. (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.26001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
  30. (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
  31. (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
  32. (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
  33. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
  34. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
  35. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
  36. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
  37. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
  38. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
  39. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\slui.exe
  40. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
  41. (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
  42. (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe
  43. (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  44. (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  45. (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  46. (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  47. (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  48. (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
  49. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  50. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  51. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  52. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  53. (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
  54. (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
  55. (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
  56. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  57. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  58. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  59. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  60. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  61. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  62. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  63. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  64. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\GameOverlayUI.exe
  65. (Valve -> Valve Corporation) G:\Program Files (x86)\Steam\Steam.exe
  66. Failed to access process -> OTL.exe
  67.  
  68. ==================== Registry (Whitelisted) ===================
  69.  
  70. (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
  71.  
  72. HKLM\...\Run: [IAStorIcon] => F:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321096 2017-06-09] (Intel(R) Rapid Storage Technology -> Intel Corporation)
  73. HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
  74. HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation -> Microsoft Corporation)
  75. HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-05-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
  76. HKLM-x32\...\Run: [LWS] => G:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech, Inc. -> Logitech Inc.)
  77. HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
  78. HKLM-x32\...\Run: [IObit Security 360] => "E:\DUŻY CIP\ANTYWIRUS - IS360 Portable\IS360tray.exe" /autostart
  79. HKLM\...\Policies\Explorer: [RestrictRun] 0
  80. HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
  81. HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
  82. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\...\Run: [Steam] => G:\Program Files (x86)\Steam\steam.exe [3288528 2019-12-21] (Valve -> Valve Corporation)
  83. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\...\Run: [Discord] => C:\Users\Rzychu\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
  84. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\...\Run: [Spotify] => C:\Users\Rzychu\AppData\Roaming\Spotify\Spotify.exe [22151072 2019-12-20] (Spotify AB -> Spotify Ltd)
  85. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\...\Policies\Explorer: [RestrictRun] 0
  86. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\Software\Policies\...\system: [disablecmd] 0
  87. HKU\S-1-5-21-2846184411-462228645-4040623696-1001\...\MountPoints2: {1351c80c-2c7b-11ea-9c05-309c23b5a20a} - "E:\HiSuiteDownLoader.exe"
  88. Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2018-12-07]
  89. ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
  90.  
  91. ==================== Scheduled Tasks (Whitelisted) ============
  92.  
  93. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  94.  
  95. Task: {2B9D5236-EA33-428D-9D02-FA62C258F201} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  96. Task: {46E5FD7F-402D-41B1-8670-660410F035AC} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  97. Task: {530BF315-6CCD-4CD8-AEFA-B1633DB6A376} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  98. Task: {55389DF1-59D7-4D14-A6A4-CC7707AC5EDC} - System32\Tasks\SDMsgUpdate (TE) => C:\SmartDraw 2019\Messages\SDNotify.exe
  99. Task: {5D0A10FF-22D5-4AC0-85AE-D38A5B9F730F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
  100. Task: {698CD2EF-A7FC-4DA5-8252-F799FD80B3FB} - System32\Tasks\ACC => C:\Program Files\DriverSetupUtility\FUB\FUB_Send.bat
  101. Task: {6BC066D8-714B-4F20-A139-22BE9EE22971} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  102. Task: {71C638A7-598B-4934-90B5-DDA51F147DC6} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  103. Task: {76A798A5-755E-4184-A2ED-5DC57736ADD5} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  104. Task: {8E45505E-BBBF-4A07-8CDD-D70780B69DBD} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  105. Task: {8FB30C22-F596-4A8F-BEDD-61D06E179B08} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
  106. Task: {944A4DA6-C2A8-43B9-9155-1DC743EB1C4D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  107. Task: {A465BCB9-70DC-4F98-8890-82D834024E30} - System32\Tasks\SDMsgUpdate (Local) => C:\SmartDraw 2019\Messages\SDNotify.exe
  108. Task: {C405DEC9-ECD0-4C17-96F9-7F25B3B95819} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  109. Task: {DD7C2FEC-5BD9-4E32-966A-FB72249B81B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  110. Task: {EBD46B39-4E54-485E-A5BF-762716974CC5} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
  111. Task: {F1803648-83CF-4447-9A62-7226FC363802} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe
  112. Task: {F871F1EC-2E2A-4DD0-A3E9-1F989AD10627} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
  113. Task: {F8BEAAE4-B133-45B2-8E7E-F1ABA79E9612} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  114.  
  115. (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
  116.  
  117.  
  118. ==================== Internet (Whitelisted) ====================
  119.  
  120. (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
  121.  
  122. Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
  123. Tcpip\..\Interfaces\{04781ccb-5c74-42b1-90a4-5cd2fb4a1966}: [DhcpNameServer] 192.168.42.129
  124. Tcpip\..\Interfaces\{5b467c51-ca52-407d-b6ff-2b78ac7539cf}: [DhcpNameServer] 192.168.1.1
  125. Tcpip\..\Interfaces\{a56ef7b5-9bc6-405f-b684-aa1f659483cd}: [DhcpNameServer] 192.168.42.129
  126.  
  127. Internet Explorer:
  128. ==================
  129. BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation -> Microsoft Corporation)
  130. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-07-08] (Oracle America, Inc. -> Oracle Corporation)
  131. BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation -> Microsoft Corporation)
  132. BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-07-08] (Oracle America, Inc. -> Oracle Corporation)
  133. Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll [2008-05-23] (Microsoft Corporation) [File not signed]
  134.  
  135. FireFox:
  136. ========
  137. FF DefaultProfile: w0nwajsb.default-1564219750931
  138. FF ProfilePath: C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931 [2020-01-01]
  139. FF Session Restore: Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931 -> is enabled.
  140. FF Extension: (Bloker reklam AdGuard) - C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931\Extensions\adguardadblocker@adguard.com.xpi [2019-12-24]
  141. FF Extension: (BetterTTV) - C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931\Extensions\firefox@betterttv.net.xpi [2019-12-09]
  142. FF Extension: (Twitch Chat Scroll FIX) - C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931\Extensions\twitchchatscrollfix@grue.addons.mozilla.org.xpi [2019-07-27]
  143. FF Extension: (uBlock Origin) - C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931\Extensions\uBlock0@raymondhill.net.xpi [2019-11-26]
  144. FF Extension: (The FFZ Enhancing Add-On) - C:\Users\Rzychu\AppData\Roaming\Mozilla\Firefox\Profiles\w0nwajsb.default-1564219750931\Extensions\{363147eb-453a-4818-90ca-4fd58b79f0e0}.xpi [2019-11-05]
  145. FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll [2019-08-20] (Adobe Inc. -> )
  146. FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
  147. FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll [2019-08-20] (Adobe Inc. -> )
  148. FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-07-08] (Oracle America, Inc. -> Oracle Corporation)
  149. FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-07-08] (Oracle America, Inc. -> Oracle Corporation)
  150. FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
  151. FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
  152.  
  153. ==================== Services (Whitelisted) ===================
  154.  
  155. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  156.  
  157. S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8402648 2019-11-29] (BattlEye Innovations e.K. -> )
  158. S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (Shanghai Comet Network Technology -> www.BitComet.com)
  159. S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2019-11-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
  160. R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.26001.0_x64__8wekyb3d8bbwe\GamingServices.exe [21640 2019-12-12] (Microsoft Corporation -> Microsoft Corporation)
  161. R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.26001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [21640 2019-12-12] (Microsoft Corporation -> Microsoft Corporation)
  162. R2 IAStorDataMgrSvc; F:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2017-06-09] (Intel(R) Rapid Storage Technology -> Intel Corporation)
  163. R2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2018-01-31] (Intel Corporation) [File not signed]
  164. R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
  165. R2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4477576 2018-06-19] (Logitech Inc -> Logitech)
  166. R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
  167. S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
  168. S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2332464 2019-07-27] (Electronic Arts, Inc. -> Electronic Arts)
  169. R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3206448 2019-07-27] (Electronic Arts, Inc. -> Electronic Arts)
  170. S3 Rockstar Service; g:\Program Files\Rockstar Games\Launcher\RockstarService.exe [474256 2019-12-05] (Rockstar Games, Inc. -> Rockstar Games)
  171. R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-05-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
  172. S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-13] (Microsoft Windows Publisher -> Microsoft Corporation)
  173. R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  174. R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  175. R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
  176.  
  177. ===================== Drivers (Whitelisted) ===================
  178.  
  179. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  180.  
  181. S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [313112 2019-10-21] (Bluestack Systems, Inc. -> Bluestack System Inc. )
  182. S3 cpuz148; C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [44832 2019-12-17] (CPUID S.A.R.L.U. -> CPUID)
  183. S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-08-02] (AVB Disc Soft, SIA -> Disc Soft Ltd)
  184. S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-08-02] (AVB Disc Soft, SIA -> Disc Soft Ltd)
  185. R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_1b1c9965dc1c6f0f\gameflt.sys [71000 2019-12-12] (Microsoft Windows -> Microsoft Corporation)
  186. R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
  187. R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
  188. R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_827405c7c65146ab\nvlddmkm.sys [22377352 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
  189. S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
  190. R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
  191. R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
  192. R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
  193. R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [48320 2018-11-09] (SteelSeries ApS -> )
  194. R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [48056 2018-11-09] (SteelSeries ApS -> SteelSeries ApS)
  195. S3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
  196. S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-09-13] (Microsoft Windows -> Microsoft Corporation)
  197. S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
  198. R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-04] (Microsoft Windows -> Microsoft Corporation)
  199. R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-04] (Microsoft Windows -> Microsoft Corporation)
  200. R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_4beca0218f643d77\xvdd.sys [478256 2019-10-11] (Microsoft Windows -> Microsoft Corporation)
  201. R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2019-07-27] (Zemana Ltd. -> Zemana Ltd.)
  202. R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2019-07-27] (Zemana Ltd. -> Zemana Ltd.)
  203.  
  204. ==================== NetSvcs (Whitelisted) ===================
  205.  
  206. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  207.  
  208.  
  209. ==================== One month (created) ===================
  210.  
  211. (If an entry is included in the fixlist, the file/folder will be moved.)
  212.  
  213. 2020-01-01 19:49 - 2020-01-01 19:52 - 000000000 ____D C:\FRST
  214. 2020-01-01 17:54 - 2020-01-01 17:54 - 000254656 _____ C:\Users\Rzychu\Desktop\OTL.Txt
  215. 2020-01-01 17:54 - 2020-01-01 17:54 - 000189960 _____ C:\Users\Rzychu\Desktop\Extras.Txt
  216. 2020-01-01 12:00 - 2020-01-01 12:00 - 000062792 _____ C:\ProgramData\agent.uninstall.1577876441.bdinstall.v2.bin
  217. 2020-01-01 11:54 - 2020-01-01 11:54 - 000103480 _____ C:\ProgramData\agent.1577876098.bdinstall.v2.bin
  218. 2020-01-01 11:44 - 2020-01-01 11:51 - 000000000 ____D C:\ProgramData\SophosClean
  219. 2020-01-01 10:51 - 2020-01-01 10:51 - 000000000 ____D C:\Users\Rzychu\AppData\Local\Comodo
  220. 2020-01-01 10:45 - 2020-01-01 10:45 - 000000000 ____D C:\Users\Rzychu\AppData\Local\cache
  221. 2020-01-01 10:44 - 2020-01-01 10:44 - 001883976 _____ (Malwarebytes) C:\Users\Rzychu\Downloads\MBSetup.exe
  222. 2019-12-30 00:59 - 2019-12-30 00:59 - 000047070 _____ C:\Users\Rzychu\AppData\Local\recently-used.xbel
  223. 2019-12-28 22:48 - 2019-12-28 22:48 - 000000000 ____D C:\Users\Rzychu\AppData\Roaming\Valve Corporation
  224. 2019-12-27 14:11 - 2019-12-27 14:11 - 000000222 _____ C:\Users\Rzychu\Desktop\Darkest Dungeon®.url
  225. 2019-12-25 20:06 - 2019-12-25 20:06 - 000000000 ____D C:\Users\Rzychu\AppData\LocalLow\DYNAMICNEXT
  226. 2019-12-21 14:10 - 2019-12-21 14:10 - 000000000 ____D C:\Users\Rzychu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
  227. 2019-12-21 14:10 - 2019-12-21 14:10 - 000000000 ____D C:\ProgramData\Rockstar Games
  228. 2019-12-21 14:09 - 2019-12-21 14:09 - 000000000 ____D C:\Program Files (x86)\VulkanRT
  229. 2019-12-20 23:18 - 2019-12-20 23:18 - 000000223 _____ C:\Users\Rzychu\Desktop\Red Dead Redemption 2.url
  230. 2019-12-16 18:16 - 2019-12-16 18:16 - 000079862 _____ C:\Users\Rzychu\Documents\jebac.xcf
  231. 2019-12-16 18:15 - 2019-12-16 18:15 - 000181497 _____ C:\Users\Rzychu\Downloads\nimavisual_pauraque-serif-rough.zip
  232. 2019-12-16 18:15 - 2019-12-16 18:15 - 000000000 ____D C:\Users\Rzychu\Desktop\nimavisual_pauraque-serif-rough
  233. 2019-12-16 18:13 - 2019-12-16 18:13 - 002249819 _____ C:\Users\Rzychu\Downloads\kineticplasma-fonts_falling-sky.zip
  234. 2019-12-16 18:13 - 2019-12-16 18:13 - 000000000 ____D C:\Users\Rzychu\Desktop\kineticplasma-fonts_falling-sky
  235. 2019-12-13 23:02 - 2019-12-13 23:02 - 000000000 ____D C:\Users\Rzychu\AppData\LocalLow\NoBrakesGames
  236. 2019-12-13 15:22 - 2019-12-14 12:05 - 000000000 ____D C:\Users\Rzychu\Desktop\Klasy
  237. 2019-12-13 11:20 - 2019-12-13 11:20 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
  238. 2019-12-13 11:20 - 2019-12-13 11:20 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
  239. 2019-12-13 11:20 - 2019-12-13 11:20 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
  240. 2019-12-13 11:20 - 2019-12-13 11:20 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
  241. 2019-12-13 11:20 - 2019-12-13 11:20 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
  242. 2019-12-13 11:20 - 2019-12-13 11:20 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
  243. 2019-12-13 11:20 - 2019-12-13 11:20 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
  244. 2019-12-13 11:20 - 2019-12-13 11:20 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
  245. 2019-12-13 11:20 - 2019-12-13 11:20 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
  246. 2019-12-13 11:20 - 2019-12-13 11:20 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
  247. 2019-12-13 11:20 - 2019-12-13 11:20 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
  248. 2019-12-13 11:20 - 2019-12-13 11:20 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
  249. 2019-12-13 11:20 - 2019-12-13 11:20 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
  250. 2019-12-13 11:20 - 2019-12-13 11:20 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
  251. 2019-12-13 11:20 - 2019-12-13 11:20 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
  252. 2019-12-13 11:20 - 2019-12-13 11:20 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
  253. 2019-12-13 11:20 - 2019-12-13 11:20 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
  254. 2019-12-13 11:20 - 2019-12-13 11:20 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
  255. 2019-12-13 11:20 - 2019-12-13 11:20 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
  256. 2019-12-13 11:20 - 2019-12-13 11:20 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
  257. 2019-12-13 11:20 - 2019-12-13 11:20 - 002494432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
  258. 2019-12-13 11:20 - 2019-12-13 11:20 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
  259. 2019-12-13 11:20 - 2019-12-13 11:20 - 002188816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
  260. 2019-12-13 11:20 - 2019-12-13 11:20 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
  261. 2019-12-13 11:20 - 2019-12-13 11:20 - 002082208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
  262. 2019-12-13 11:20 - 2019-12-13 11:20 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
  263. 2019-12-13 11:20 - 2019-12-13 11:20 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
  264. 2019-12-13 11:20 - 2019-12-13 11:20 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
  265. 2019-12-13 11:20 - 2019-12-13 11:20 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
  266. 2019-12-13 11:20 - 2019-12-13 11:20 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
  267. 2019-12-13 11:20 - 2019-12-13 11:20 - 001656600 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
  268. 2019-12-13 11:20 - 2019-12-13 11:20 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
  269. 2019-12-13 11:20 - 2019-12-13 11:20 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
  270. 2019-12-13 11:20 - 2019-12-13 11:20 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
  271. 2019-12-13 11:20 - 2019-12-13 11:20 - 001512528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
  272. 2019-12-13 11:20 - 2019-12-13 11:20 - 001496080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
  273. 2019-12-13 11:20 - 2019-12-13 11:20 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
  274. 2019-12-13 11:20 - 2019-12-13 11:20 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
  275. 2019-12-13 11:20 - 2019-12-13 11:20 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
  276. 2019-12-13 11:20 - 2019-12-13 11:20 - 001399312 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
  277. 2019-12-13 11:20 - 2019-12-13 11:20 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
  278. 2019-12-13 11:20 - 2019-12-13 11:20 - 001261464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
  279. 2019-12-13 11:20 - 2019-12-13 11:20 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
  280. 2019-12-13 11:20 - 2019-12-13 11:20 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
  281. 2019-12-13 11:20 - 2019-12-13 11:20 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
  282. 2019-12-13 11:20 - 2019-12-13 11:20 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
  283. 2019-12-13 11:20 - 2019-12-13 11:20 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
  284. 2019-12-13 11:20 - 2019-12-13 11:20 - 001054864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
  285. 2019-12-13 11:20 - 2019-12-13 11:20 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
  286. 2019-12-13 11:20 - 2019-12-13 11:20 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
  287. 2019-12-13 11:20 - 2019-12-13 11:20 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
  288. 2019-12-13 11:20 - 2019-12-13 11:20 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
  289. 2019-12-13 11:20 - 2019-12-13 11:20 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
  290. 2019-12-13 11:20 - 2019-12-13 11:20 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
  291. 2019-12-13 11:20 - 2019-12-13 11:20 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
  292. 2019-12-13 11:20 - 2019-12-13 11:20 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
  293. 2019-12-13 11:20 - 2019-12-13 11:20 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
  294. 2019-12-13 11:20 - 2019-12-13 11:20 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
  295. 2019-12-13 11:20 - 2019-12-13 11:20 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
  296. 2019-12-13 11:20 - 2019-12-13 11:20 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
  297. 2019-12-13 11:20 - 2019-12-13 11:20 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
  298. 2019-12-13 11:20 - 2019-12-13 11:20 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
  299. 2019-12-13 11:20 - 2019-12-13 11:20 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
  300. 2019-12-13 11:20 - 2019-12-13 11:20 - 000593128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
  301. 2019-12-13 11:20 - 2019-12-13 11:20 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
  302. 2019-12-13 11:20 - 2019-12-13 11:20 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
  303. 2019-12-13 11:20 - 2019-12-13 11:20 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
  304. 2019-12-13 11:20 - 2019-12-13 11:20 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
  305. 2019-12-13 11:20 - 2019-12-13 11:20 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
  306. 2019-12-13 11:20 - 2019-12-13 11:20 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
  307. 2019-12-13 11:20 - 2019-12-13 11:20 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
  308. 2019-12-13 11:20 - 2019-12-13 11:20 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
  309. 2019-12-13 11:20 - 2019-12-13 11:20 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
  310. 2019-12-13 11:20 - 2019-12-13 11:20 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
  311. 2019-12-13 11:20 - 2019-12-13 11:20 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
  312. 2019-12-13 11:20 - 2019-12-13 11:20 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
  313. 2019-12-13 11:20 - 2019-12-13 11:20 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
  314. 2019-12-13 11:20 - 2019-12-13 11:20 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
  315. 2019-12-13 11:20 - 2019-12-13 11:20 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
  316. 2019-12-13 11:20 - 2019-12-13 11:20 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
  317. 2019-12-13 11:20 - 2019-12-13 11:20 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
  318. 2019-12-13 11:20 - 2019-12-13 11:20 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
  319. 2019-12-13 11:20 - 2019-12-13 11:20 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
  320. 2019-12-13 11:20 - 2019-12-13 11:20 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
  321. 2019-12-13 11:20 - 2019-12-13 11:20 - 000127272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
  322. 2019-12-13 11:20 - 2019-12-13 11:20 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
  323. 2019-12-13 11:20 - 2019-12-13 11:20 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
  324. 2019-12-13 11:20 - 2019-12-13 11:20 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
  325. 2019-12-13 11:20 - 2019-12-13 11:20 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
  326. 2019-12-13 11:20 - 2019-12-13 11:20 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
  327. 2019-12-13 11:20 - 2019-12-13 11:20 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
  328. 2019-12-13 11:20 - 2019-12-13 11:20 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
  329. 2019-12-13 11:20 - 2019-12-13 11:20 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
  330. 2019-12-13 11:20 - 2019-12-13 11:20 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
  331. 2019-12-13 11:20 - 2019-12-13 11:20 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
  332. 2019-12-13 11:20 - 2019-12-13 11:20 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
  333. 2019-12-13 11:20 - 2019-12-13 11:20 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
  334. 2019-12-13 11:20 - 2019-12-13 11:20 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
  335. 2019-12-13 11:20 - 2019-12-13 11:20 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
  336. 2019-12-13 11:20 - 2019-12-13 11:20 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
  337. 2019-12-13 11:20 - 2019-12-13 11:20 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
  338. 2019-12-13 11:20 - 2019-12-13 11:20 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
  339. 2019-12-13 11:20 - 2019-12-13 11:20 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
  340. 2019-12-13 11:20 - 2019-12-13 11:20 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
  341. 2019-12-13 11:20 - 2019-12-13 11:20 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
  342. 2019-12-13 11:20 - 2019-12-13 11:20 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
  343. 2019-12-13 11:20 - 2019-12-13 11:20 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
  344. 2019-12-12 19:16 - 2019-12-12 12:04 - 000052152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
  345. 2019-12-06 12:29 - 2019-12-14 11:59 - 000000000 ____D C:\Program Files\Mozilla Firefox
  346. 2019-12-04 19:49 - 2019-12-04 20:06 - 000000000 ____D C:\Users\Rzychu\Desktop\New folder
  347.  
  348. ==================== One month (modified) ==================
  349.  
  350. (If an entry is included in the fixlist, the file/folder will be moved.)
  351.  
  352. 2020-01-01 19:52 - 2019-07-27 10:14 - 000151780 _____ C:\WINDOWS\ZAM.krnl.trace
  353. 2020-01-01 19:52 - 2019-07-27 10:14 - 000117075 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
  354. 2020-01-01 19:52 - 2018-11-29 20:40 - 000000000 ____D C:\Users\Rzychu\AppData\LocalLow\Mozilla
  355. 2020-01-01 19:43 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
  356. 2020-01-01 19:25 - 2019-06-14 21:16 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
  357. 2020-01-01 17:37 - 2019-06-14 21:24 - 001776936 _____ C:\WINDOWS\system32\PerfStringBackup.INI
  358. 2020-01-01 17:37 - 2019-06-14 20:59 - 000789010 _____ C:\WINDOWS\system32\perfh015.dat
  359. 2020-01-01 17:37 - 2019-06-14 20:59 - 000154348 _____ C:\WINDOWS\system32\perfc015.dat
  360. 2020-01-01 17:37 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
  361. 2020-01-01 17:34 - 2018-11-23 19:56 - 000000000 ____D C:\ProgramData\NVIDIA
  362. 2020-01-01 12:03 - 2019-06-14 21:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
  363. 2020-01-01 12:03 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
  364. 2020-01-01 12:02 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
  365. 2020-01-01 12:01 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
  366. 2020-01-01 11:20 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
  367. 2020-01-01 11:20 - 2018-11-29 13:04 - 000000000 ____D C:\Users\Rzychu\AppData\Local\ElevatedDiagnostics
  368. 2019-12-31 16:24 - 2018-11-27 19:08 - 000000000 ____D C:\Users\Rzychu\AppData\Roaming\Spotify
  369. 2019-12-30 22:16 - 2019-11-08 01:40 - 000000000 ____D C:\Users\Rzychu\AppData\Local\Battle.net
  370. 2019-12-30 11:35 - 2019-01-12 19:34 - 000000000 ____D C:\Users\Rzychu\AppData\Local\CrashDumps
  371. 2019-12-30 10:16 - 2019-10-29 14:13 - 000000000 ____D C:\Users\Rzychu\Zomboid
  372. 2019-12-30 01:01 - 2019-03-09 16:44 - 000000000 ____D C:\Users\Rzychu\AppData\Local\babl-0.1
  373. 2019-12-30 00:59 - 2019-03-09 16:44 - 000000000 ____D C:\Users\Rzychu\AppData\Local\gtk-2.0
  374. 2019-12-29 13:59 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
  375. 2019-12-26 09:52 - 2018-11-27 19:09 - 000000000 ____D C:\Users\Rzychu\AppData\Local\Spotify
  376. 2019-12-23 22:43 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
  377. 2019-12-23 22:43 - 2018-11-24 11:56 - 000000000 ____D C:\Users\Rzychu\AppData\Local\PlaceholderTileLogoFolder
  378. 2019-12-23 22:43 - 2018-11-24 00:24 - 000000000 ____D C:\Users\Rzychu\AppData\Local\Packages
  379. 2019-12-22 09:53 - 2018-11-23 19:46 - 000000000 ____D C:\Users\Rzychu\AppData\Roaming\discord
  380. 2019-12-21 14:16 - 2019-01-19 18:56 - 000000000 ____D C:\Users\Rzychu\AppData\Local\Rockstar Games
  381. 2019-12-21 14:16 - 2018-11-24 12:20 - 000000000 ____D C:\Users\Rzychu\AppData\Local\D3DSCache
  382. 2019-12-21 14:15 - 2018-12-14 23:41 - 000000000 ____D C:\Users\Rzychu\Documents\Rockstar Games
  383. 2019-12-21 14:11 - 2018-12-14 23:40 - 000000000 ____D C:\Program Files\Rockstar Games
  384. 2019-12-21 14:11 - 2018-12-14 23:39 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
  385. 2019-12-21 14:10 - 2018-11-23 19:56 - 000000000 ____D C:\ProgramData\Package Cache
  386. 2019-12-20 13:47 - 2019-08-23 16:44 - 000000000 ____D C:\Users\Rzychu\Desktop\TWD RPG
  387. 2019-12-20 11:46 - 2018-11-24 12:11 - 000000000 ____D C:\ProgramData\Packages
  388. 2019-12-14 11:59 - 2019-07-27 10:29 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
  389. 2019-12-14 11:59 - 2019-06-14 21:16 - 000302704 _____ C:\WINDOWS\system32\FNTCACHE.DAT
  390. 2019-12-14 11:59 - 2018-11-24 11:54 - 000000000 ___RD C:\Users\Rzychu\3D Objects
  391. 2019-12-14 11:59 - 2018-11-24 00:24 - 000000000 __RHD C:\Users\Public\AccountPictures
  392. 2019-12-13 23:11 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
  393. 2019-12-13 23:11 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
  394. 2019-12-13 23:11 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
  395. 2019-12-13 11:22 - 2018-11-23 19:29 - 000000000 ____D C:\WINDOWS\system32\MRT
  396. 2019-12-13 11:21 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
  397. 2019-12-13 11:21 - 2018-11-23 19:29 - 129221664 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
  398. 2019-12-12 12:04 - 2019-10-11 22:38 - 000031880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
  399. 2019-12-12 12:04 - 2019-06-14 21:23 - 001320376 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
  400. 2019-12-12 12:04 - 2019-06-14 21:23 - 000149432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
  401. 2019-12-12 12:04 - 2019-06-14 21:23 - 000088200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
  402. 2019-12-07 09:12 - 2019-07-27 10:29 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
  403. 2019-12-04 18:59 - 2018-11-24 11:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
  404.  
  405. ==================== Files in the root of some directories ========
  406.  
  407. 2019-12-30 00:59 - 2019-12-30 00:59 - 000047070 _____ () C:\Users\Rzychu\AppData\Local\recently-used.xbel
  408.  
  409. ==================== SigCheck ============================
  410.  
  411. (There is no automatic fix for files that do not pass verification.)
  412.  
  413. ==================== End of FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement