Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-03-2025
- Ran by User (administrator) on SUFIYAN (Micro-Star International Co., Ltd. MS-7D75) (07-03-2025 14:28:46)
- Running from C:\Users\User\Desktop\FRST64.exe
- Loaded Profiles: User
- Platform: Microsoft Windows 11 Pro Version 24H2 26100.3194 (X64) Language: English (United Kingdom)
- Default browser: Chrome
- Boot Mode: Normal
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.1301.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.92\msedgewebview2.exe <6>
- (DriverStore\FileRepository\u0401611.inf_amd64_fdc4605155615ab7\B399690\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0401611.inf_amd64_fdc4605155615ab7\B399690\atieclxx.exe
- (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <55>
- (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
- (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\osk.exe
- (explorer.exe ->) (Open-Shell) [File not signed] C:\Program Files\Open-Shell\StartMenu.exe
- (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
- (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0401611.inf_amd64_fdc4605155615ab7\B399690\atiesrxx.exe
- (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe
- (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe <2>
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
- ==================== Registry (Whitelisted) ===================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [Open-Shell Start Menu] => C:\Program Files\Open-Shell\StartMenu.exe [267776 2025-01-04] (Open-Shell) [File not signed]
- HKU\S-1-5-21-3909807573-460586846-2225813105-1001\...\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4088392 2025-02-27] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-3909807573-460586846-2225813105-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5007376 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-3909807573-460586846-2225813105-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4435552 2025-01-28] (Valve Corp. -> Valve Corporation)
- HKU\S-1-5-21-3909807573-460586846-2225813105-1001\...\Run: [Discord] => C:\Users\User\AppData\Local\Discord\Update.exe [1516408 2025-02-24] (Discord Inc. -> Discord Inc.)
- HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [203936 2024-09-06] (Adobe Inc. -> Adobe Systems Inc)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\133.0.6943.143\Installer\chrmstp.exe [2025-03-04] (Google LLC -> Google LLC)
- ==================== Scheduled Tasks (Whitelisted) =================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {8D6B6E79-798B-4A1D-AA76-A33344796C7F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.)
- Task: {7DF77240-83C6-4D2F-A9BC-942822A03D58} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{1FCD8634-940C-4ED6-959C-136C1CFB90AC} => C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe [5745760 2025-02-19] (Google LLC -> Google LLC)
- Task: {87E15338-B97B-4DAE-B822-1E23ABEC1EAE} - System32\Tasks\Microsoft\Office\Office Apps Prewarm => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312440 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {2B47B327-E22A-421B-A32D-D8B104250E18} - System32\Tasks\Microsoft\Office\Office Apps Prewarm Recurring => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312440 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {A1CDB3DA-FBD6-4AFF-BE83-47306725D080} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28752616 2025-02-08] (Microsoft Corporation -> Microsoft Corporation)
- Task: {04EB03D1-675D-4C19-9C64-10C71A272DE5} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [67248 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {D3D0CA5C-D227-428A-8F1B-3E92CBBC3E5A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28752616 2025-02-08] (Microsoft Corporation -> Microsoft Corporation)
- Task: {818B7A35-3CFB-43BC-80DD-1C661DA19B8F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312440 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {99254C5E-935D-43C6-A267-A11CA0A75889} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312440 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {9BE71DD0-2C3B-4361-8313-8A57E06E7367} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [194672 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
- Task: {EA2EF216-A5B8-4293-9501-E3F912755897} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {D4A836EE-DA98-485F-9F11-9CA8CB59B128} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {6A37EE4D-EB70-429A-A690-33B649F98662} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {8D1B1C20-02D4-4349-85BC-11713283487B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {AA1995C1-ADFF-4FEF-931F-87670EAC079E} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222504 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {994F000E-5799-413A-8B81-78A6FFD35796} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3909807573-460586846-2225813105-1000 => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File)
- Task: {68774294-5734-4F0F-81AA-2D775155BCE2} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3909807573-460586846-2225813105-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222504 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Task: {6C84A3D1-5919-416C-902A-E7F81AA85D79} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3909807573-460586846-2225813105-1001 => C:\Program Files\Microsoft OneDrive\25.020.0202.0001\OneDriveLauncher.exe [669200 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{0ab6649b-e5fd-408f-8de3-49628ca35583}: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{0ab6649b-e5fd-408f-8de3-49628ca35583}: [DhcpDomain] communityfibre.co.uk
- Edge:
- =======
- Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2025-03-01]
- Edge Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- Edge Extension: (Edge relevant text changes) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-02-28]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
- FireFox:
- ========
- FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01]
- FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
- FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-09-06] (Adobe Inc. -> Adobe Systems Inc.)
- FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2025-03-07]
- CHR HomePage: Default -> hxxp://www.google.com/
- CHR StartupUrls: Default -> "search.mpc.am"
- CHR NewTab: Default -> Not-active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/override.html"
- CHR Session Restore: Default -> is enabled.
- CHR Extension: (Easy Auto Refresh) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aabcgdmkeabbnleenpncegpcngjpnjkc [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Turn Off the Lights) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Honey: Automatic Coupons & Rewards) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2025-03-07]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (OpenVideo – ad-free streaming) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dadggmdmhmfkpglkfpkjdmlendbkehoh [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Dark Theme v3) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\djlgdeklopcjagknhlchbdjekgpgenad [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Gyazo - Share new screenshots. Instantly.) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdaeeijbbijklfcpahbghahojgfgebo [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Vysor) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gidgenkbbabolejbgbpnhbimgjbffefm [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Hola VPN - Your Website Unblocker) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Pixlr Express) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Speed Dial 2 New tab) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2025-03-07]hxxp://clients2.google.com/service/update2/crx
- CHR Extension: (Stream Cleaner) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lehcglgkjkamolcflammloedahjocbbg [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Fakespot Fake Amazon Reviews and eBay Sellers) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nakplnnackehceedgkgkokbgbmfghain [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1 [2025-03-06]
- CHR Extension: (RoPro - Enhance Your Roblox Experience) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\adbacgifemdbhdkfppmeilbgppmhaobf [2025-03-02]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Roblox Wallpaper) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ankmhnbjbelldifhhpfajidadjcammkg [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Roblox with extras! - RoBox) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfllfglbkmnbkcibbjoghimalbileaic [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Return YouTube Dislike) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gebbhagfogifgggkldgodflihgfeippi [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Roblox+) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jfbnmfgkohlfclfnplnlenbalpppohkm [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (SponsorBlock for YouTube - Skip Sponsorships) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2025-03-05]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Extension: (Enhancer for YouTube™) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ponfpcnoihfmfllpaingbgckeeldkhle [2025-02-28]hxxps://clients2.google.com/service/update2/crx
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\System Profile [2025-03-07]
- CHR HKU\S-1-5-21-3909807573-460586846-2225813105-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
- ==================== Services (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.)
- S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3318400 2025-02-28] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13617384 2025-02-08] (Microsoft Corporation -> Microsoft Corporation)
- S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.020.0202.0001\FileSyncHelper.exe [3532816 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe [9903656 2024-04-18] (Logitech Inc -> Logitech, Inc.)
- R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe [1926976 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-16] (NVIDIA Corporation -> NVIDIA Corporation)
- S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.020.0202.0001\OneDriveUpdaterService.exe [3879952 2025-02-28] (Microsoft Corporation -> Microsoft Corporation)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559304 2025-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe [4352456 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe [270056 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation)
- ===================== Drivers (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [56416 2024-03-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-15] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
- R3 amduw23g; C:\WINDOWS\System32\DriverStore\FileRepository\u0401611.inf_amd64_fdc4605155615ab7\B399690\amdkmdag.sys [100084648 2024-03-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [9055040 2025-02-28] (Activision Publishing Inc -> Activision Blizzard, Inc.)
- R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [278944 2025-03-06] (Microsoft Windows -> Microsoft Corporation)
- R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray.sys [98864 2024-04-18] (Logitech Inc -> Logitech, Inc.)
- R3 MTKBTFilterx64; C:\WINDOWS\System32\drivers\mtkbtfilterx.sys [345056 2022-06-26] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
- R3 mtkwlex; C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1587680 2022-06-26] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
- S3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_feec7a9662e785f0\rtcx21x64.sys [539648 2024-03-28] (Microsoft Windows -> Realtek)
- S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20016 2025-03-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [601520 2025-03-06] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100768 2025-03-06] (Microsoft Windows -> Microsoft Corporation)
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One month (created) (Whitelisted) =========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2025-03-07 14:28 - 2025-03-07 14:29 - 000023360 _____ C:\Users\User\Desktop\FRST.txt
- 2025-03-07 14:27 - 2025-03-07 14:28 - 000000000 ____D C:\FRST
- 2025-03-07 14:27 - 2025-03-07 14:27 - 002404352 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
- 2025-03-07 14:13 - 2025-03-07 14:13 - 000000000 ____D C:\Users\User\Downloads\Autoruns
- 2025-03-07 14:12 - 2025-03-07 14:12 - 002932380 _____ C:\Users\User\Downloads\Autoruns.zip
- 2025-03-07 14:11 - 2025-03-07 14:15 - 000000000 ____D C:\ProgramData\HitmanPro
- 2025-03-07 14:11 - 2025-03-07 14:11 - 000000000 ____D C:\Program Files\HitmanPro
- 2025-03-07 14:10 - 2025-03-07 14:11 - 014290976 _____ (Sophos B.V.) C:\Users\User\Downloads\HitmanPro_x64.exe
- 2025-03-04 18:18 - 2025-03-04 18:18 - 005646913 _____ C:\Users\User\Downloads\cc 5.mp4
- 2025-03-02 15:26 - 2025-03-02 15:26 - 000003851 _____ C:\Users\User\Downloads\Susta1nz_cEkhpz.zip
- 2025-03-02 12:55 - 2025-03-02 12:55 - 000000000 ____D C:\Users\User\AppData\Local\NVIDIA
- 2025-03-01 13:06 - 2025-03-01 13:06 - 000000222 _____ C:\Users\User\Desktop\Quake Live.url
- 2025-03-01 13:06 - 2025-03-01 13:06 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2025-03-01 12:53 - 2025-03-06 21:50 - 000002238 _____ C:\Users\User\Desktop\Discord.lnk
- 2025-03-01 12:52 - 2025-03-06 22:44 - 000000000 ____D C:\Users\User\AppData\Roaming\discord
- 2025-03-01 12:52 - 2025-03-06 21:50 - 000000000 ____D C:\Users\User\AppData\Local\Discord
- 2025-03-01 12:52 - 2025-03-02 13:52 - 000000000 ____D C:\Users\User\AppData\Local\Steam
- 2025-03-01 12:52 - 2025-03-01 12:53 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
- 2025-03-01 12:52 - 2025-03-01 12:53 - 000000000 ____D C:\Users\User\AppData\Local\SquirrelTemp
- 2025-03-01 04:48 - 2025-03-01 04:48 - 000000000 ____D C:\Users\User\AppData\Local\OneDrive
- 2025-03-01 04:40 - 2025-03-01 04:40 - 000000000 ____D C:\Program Files (x86)\MSI
- 2025-03-01 04:34 - 2025-03-01 04:35 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2025-02-28 22:46 - 2025-03-03 19:39 - 000000000 ____D C:\Users\User\Desktop\Recordings
- 2025-02-28 22:45 - 2025-03-03 21:01 - 000000000 ____D C:\Users\User\AppData\Roaming\obs-studio
- 2025-02-28 22:45 - 2025-02-28 22:45 - 000001052 _____ C:\Users\Public\Desktop\OBS Studio.lnk
- 2025-02-28 22:45 - 2025-02-28 22:45 - 000000000 ____D C:\ProgramData\obs-studio-hook
- 2025-02-28 22:45 - 2025-02-28 22:45 - 000000000 ____D C:\ProgramData\obs-studio
- 2025-02-28 22:45 - 2025-02-28 22:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
- 2025-02-28 22:45 - 2025-02-28 22:45 - 000000000 ____D C:\Program Files\obs-studio
- 2025-02-28 22:44 - 2025-02-28 22:44 - 000000000 ____D C:\Users\User\AppData\Local\Bytedance
- 2025-02-28 22:42 - 2025-02-28 22:42 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CapCut
- 2025-02-28 22:41 - 2025-02-28 22:41 - 000000000 ____D C:\Users\User\AppData\Roaming\NVIDIA
- 2025-02-28 22:41 - 2025-02-28 22:41 - 000000000 ____D C:\Users\User\AppData\Local\VEDetector
- 2025-02-28 22:40 - 2025-03-03 19:26 - 000000000 ____D C:\Users\User\AppData\Local\CapCut
- 2025-02-28 22:40 - 2025-02-28 22:42 - 000001356 _____ C:\Users\User\Desktop\CapCut.lnk
- 2025-02-28 22:40 - 2025-02-28 22:40 - 000000000 ____D C:\Users\User\AppData\Roaming\mssdk
- 2025-02-28 22:25 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\AppData\Roaming\com.adobe.dunamis
- 2025-02-28 22:25 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\AppData\LocalLow\Adobe
- 2025-02-28 22:25 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\AppData\Local\SolidDocuments
- 2025-02-28 22:25 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\AppData\Local\Adobe
- 2025-02-28 22:25 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\.ms-ad
- 2025-02-28 22:21 - 2025-02-28 23:16 - 000023251 _____ C:\Users\User\Downloads\Fisch Macro V12.ahk
- 2025-02-28 22:21 - 2025-02-28 22:21 - 000000000 ____D C:\WINDOWS\ShellNew
- 2025-02-28 22:21 - 2025-02-28 22:21 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\HTML Help
- 2025-02-28 22:21 - 2025-02-28 22:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
- 2025-02-28 22:21 - 2025-02-28 22:21 - 000000000 ____D C:\Program Files\AutoHotkey
- 2025-02-28 22:16 - 2025-02-28 22:16 - 000000000 ____D C:\ProgramData\Package Cache
- 2025-02-28 22:16 - 2025-02-28 22:16 - 000000000 ____D C:\Program Files\dotnet
- 2025-02-28 22:13 - 2025-03-02 11:53 - 000000000 ____D C:\Program Files\Microsoft OneDrive
- 2025-02-28 22:13 - 2025-02-28 22:13 - 000003546 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3909807573-460586846-2225813105-1001
- 2025-02-28 22:13 - 2025-02-28 22:13 - 000000000 ____D C:\WINDOWS\system32\%userprofile%
- 2025-02-28 19:09 - 2025-02-28 19:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty
- 2025-02-28 19:08 - 2025-03-06 16:41 - 000001390 _____ C:\Users\User\Desktop\Roblox Player.lnk
- 2025-02-28 19:07 - 2025-03-06 17:32 - 000000000 ____D C:\Users\User\AppData\Local\Roblox
- 2025-02-28 19:07 - 2025-03-06 16:41 - 000001218 _____ C:\Users\User\Desktop\Roblox Studio.lnk
- 2025-02-28 19:07 - 2025-03-06 16:41 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
- 2025-02-28 18:56 - 2025-03-04 18:18 - 000000000 ____D C:\Users\User\AppData\Roaming\vlc
- 2025-02-28 18:55 - 2025-02-28 18:55 - 000000000 ____D C:\Users\User\AppData\Local\PeerDistRepub
- 2025-02-28 18:50 - 2025-03-04 18:00 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
- 2025-02-28 18:50 - 2025-02-28 22:25 - 000000000 ____D C:\ProgramData\Adobe
- 2025-02-28 18:50 - 2025-02-28 19:09 - 000000000 ____D C:\Program Files (x86)\Call of Duty
- 2025-02-28 18:50 - 2025-02-28 18:53 - 000002084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller.lnk
- 2025-02-28 18:50 - 2025-02-28 18:53 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
- 2025-02-28 18:50 - 2025-02-28 18:50 - 000000000 ____D C:\Program Files\Common Files\Adobe
- 2025-02-28 18:50 - 2025-02-28 18:50 - 000000000 ____D C:\Program Files\Adobe
- 2025-02-28 18:49 - 2025-03-02 12:26 - 000000000 ____D C:\Users\User\AppData\Local\Battle.net
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000936 _____ C:\Users\Public\Desktop\Battle.net.lnk
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\Users\User\AppData\Roaming\Battle.net
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\Users\User\AppData\Local\CEF
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\Users\User\AppData\Local\Blizzard Entertainment
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
- 2025-02-28 18:49 - 2025-02-28 18:49 - 000000000 ____D C:\Program Files (x86)\Battle.net
- 2025-02-28 18:48 - 2025-03-06 22:43 - 000000000 ____D C:\Program Files (x86)\Steam
- 2025-02-28 18:48 - 2025-02-28 18:50 - 000000000 ____D C:\ProgramData\Battle.net_components
- 2025-02-28 18:48 - 2025-02-28 18:48 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk
- 2025-02-28 18:48 - 2025-02-28 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
- 2025-02-28 18:48 - 2025-02-28 18:48 - 000000000 ____D C:\ProgramData\Battle.net
- 2025-02-28 18:46 - 2025-02-28 18:50 - 000000000 ____D C:\Users\Public\Documents\AdobeGCInfo
- 2025-02-28 18:44 - 2025-02-28 18:48 - 000000000 ____D C:\Users\User\Desktop\Wedding Stuff
- 2025-02-28 18:43 - 2025-03-01 00:13 - 000000000 ____D C:\Users\User\AppData\Local\PlaceholderTileLogoFolder
- 2025-02-28 18:43 - 2025-02-28 18:43 - 000000000 ____D C:\Users\User\AppData\Local\Comms
- 2025-02-28 18:39 - 2025-02-28 18:39 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Word
- 2025-02-28 18:39 - 2025-02-28 18:39 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Office
- 2025-02-28 18:39 - 2025-02-28 18:39 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\AddIns
- 2025-02-28 18:30 - 2025-03-07 14:29 - 000000000 ____D C:\Users\User\AppData\Local\OpenShell
- 2025-02-28 18:30 - 2025-02-28 22:13 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
- 2025-02-28 18:30 - 2025-02-28 22:13 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2025-02-28 18:30 - 2025-02-28 22:13 - 000000000 ___RD C:\Users\Default\OneDrive
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000003604 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3909807573-460586846-2225813105-1000
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
- 2025-02-28 18:30 - 2025-02-28 18:30 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
- 2025-02-28 18:30 - 2025-02-28 18:29 - 000002068 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\startscreen.lnk
- 2025-02-28 18:29 - 2025-02-28 18:30 - 000000000 ____D C:\Program Files\Microsoft Office
- 2025-02-28 18:29 - 2025-02-28 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
- 2025-02-28 18:29 - 2025-02-28 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open-Shell
- 2025-02-28 18:29 - 2025-02-28 18:29 - 000000000 ____D C:\Program Files\Open-Shell
- 2025-02-28 18:29 - 2025-02-28 18:29 - 000000000 ____D C:\Program Files\Microsoft Office 15
- 2025-02-28 18:28 - 2025-02-28 18:28 - 000000000 ____D C:\Program Files\VideoLAN
- 2025-02-28 18:27 - 2025-02-28 18:27 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
- 2025-02-28 18:25 - 2025-03-04 21:45 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2025-02-28 18:25 - 2025-03-04 21:45 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2025-02-28 18:25 - 2025-02-28 18:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem
- 2025-02-28 18:25 - 2025-02-28 18:25 - 000000000 ____D C:\Users\User\AppData\Local\Google
- 2025-02-28 18:25 - 2025-02-28 18:25 - 000000000 ____D C:\Program Files\Google
- 2025-02-28 18:25 - 2025-02-28 18:25 - 000000000 ____D C:\Program Files (x86)\Google
- 2025-02-28 18:24 - 2025-02-28 22:13 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3909807573-460586846-2225813105-1001
- 2025-02-28 18:24 - 2025-02-28 18:24 - 000000000 ___RD C:\Users\User\OneDrive
- 2025-02-28 18:23 - 2025-02-28 18:23 - 000000000 ____D C:\Users\User\AppData\Local\Publishers
- 2025-02-28 18:23 - 2025-02-28 18:23 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
- 2025-02-28 18:22 - 2025-03-06 21:50 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
- 2025-02-28 18:22 - 2025-03-02 15:48 - 000000000 ____D C:\Users\User\AppData\Local\Packages
- 2025-02-28 18:22 - 2025-03-02 12:55 - 000000000 ____D C:\Users\User\AppData\Local\AMD
- 2025-02-28 18:22 - 2025-02-28 22:25 - 000000000 ____D C:\Users\User\AppData\Roaming\Adobe
- 2025-02-28 18:22 - 2025-02-28 18:39 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Spelling
- 2025-02-28 18:22 - 2025-02-28 18:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000020 ___SH C:\Users\User\ntuser.ini
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 __RHD C:\Users\Public\AccountPictures
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ___SD C:\Users\User\AppData\Roaming\Microsoft\SystemCertificates
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ___SD C:\Users\User\AppData\Roaming\Microsoft\Protect
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ___SD C:\Users\User\AppData\Roaming\Microsoft\Crypto
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ___SD C:\Users\User\AppData\Roaming\Microsoft\Credentials
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Vault
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Network
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ____D C:\Users\User\AppData\LocalLow\NVIDIA
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ____D C:\Users\User\AppData\Local\VirtualStore
- 2025-02-28 18:22 - 2025-02-28 18:22 - 000000000 ____D C:\Users\User\AppData\Local\ConnectedDevicesPlatform
- 2025-02-28 18:09 - 2025-03-06 18:41 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2025-02-28 18:08 - 2025-02-28 18:08 - 000000998 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
- 2025-02-28 18:07 - 2025-02-28 18:07 - 000027617 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
- 2025-02-28 18:07 - 2025-02-28 18:07 - 000027617 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
- 2025-02-28 18:03 - 2025-02-28 18:03 - 000000000 ____D C:\WINDOWS\SysWOW64\NV
- 2025-02-28 18:03 - 2025-02-28 18:03 - 000000000 ____D C:\WINDOWS\system32\NV
- 2025-02-28 18:02 - 2025-02-28 18:02 - 000000000 ____D C:\WINDOWS\system32\AMD
- 2025-02-28 18:02 - 2025-02-28 18:02 - 000000000 ____D C:\Program Files\AMD
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000608272 _____ C:\WINDOWS\system32\GameManager64.dll
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000503832 _____ C:\WINDOWS\system32\EEURestart.exe
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000462976 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000196112 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000184336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
- 2025-02-28 18:02 - 2024-03-26 06:16 - 000148496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 002129424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 001639440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 001639440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000998928 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000537104 _____ C:\WINDOWS\system32\atieah64.exe
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000473104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000405920 _____ C:\WINDOWS\SysWOW64\atieah32.exe
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000266664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000228880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000142248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000138664 _____ C:\WINDOWS\system32\amdxc64.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000118176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000114600 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
- 2025-02-28 18:02 - 2024-03-26 06:15 - 000074768 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 011526160 _____ C:\WINDOWS\system32\amdsmi.exe
- 2025-02-28 18:02 - 2024-03-26 06:14 - 002255272 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 001338384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 001254312 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 001059232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 001055248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
- 2025-02-28 18:02 - 2024-03-26 06:14 - 000569872 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 007559296 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 007339136 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000801304 _____ C:\WINDOWS\system32\Rapidfire64.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000678416 _____ C:\WINDOWS\SysWOW64\Rapidfire.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000621320 _____ C:\WINDOWS\system32\amdfendrsr.etz
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000543144 _____ C:\WINDOWS\system32\dgtrayicon.exe
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000471160 _____ C:\WINDOWS\system32\amdlogum.exe
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000433680 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000374880 _____ C:\WINDOWS\system32\amdfendr.stz
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000374880 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendr.sys
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000056416 _____ C:\WINDOWS\system32\amdfendrmgr.stz
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000056416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendrmgr.sys
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000051320 _____ C:\WINDOWS\system32\RapidFireServer64.dll
- 2025-02-28 18:02 - 2024-03-26 06:13 - 000048144 _____ C:\WINDOWS\SysWOW64\RapidFireServer.dll
- 2025-02-28 18:02 - 2024-03-26 06:12 - 105442424 _____ C:\WINDOWS\system32\amd_comgr_2.dll
- 2025-02-28 18:02 - 2024-03-26 06:12 - 105432704 _____ C:\WINDOWS\system32\amd_comgr.dll
- 2025-02-28 18:02 - 2024-03-26 06:12 - 088636032 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
- 2025-02-28 18:02 - 2024-03-26 06:12 - 000360576 _____ C:\WINDOWS\system32\clinfo.exe
- 2025-02-28 18:02 - 2024-03-26 06:12 - 000176656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
- 2025-02-28 18:02 - 2024-03-26 06:12 - 000145528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 021762168 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 018723344 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64_6.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000572032 _____ C:\WINDOWS\system32\amdmiracast.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000177672 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000167240 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000167136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000158856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000152224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000138312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000138216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
- 2025-02-28 18:02 - 2024-03-26 06:11 - 000132384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
- 2025-02-28 18:02 - 2024-03-26 05:33 - 105651024 _____ C:\WINDOWS\system32\amdxc64.so
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000154384 _____ C:\WINDOWS\system32\samu_krnl_ci.sbin
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000138832 _____ C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000128048 _____ C:\WINDOWS\system32\kapp_ci.sbin
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000121168 _____ C:\WINDOWS\system32\kapp_si.sbin
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000012214 _____ C:\WINDOWS\system32\amdfendr.ctz
- 2025-02-28 18:02 - 2024-03-26 05:33 - 000002883 _____ C:\WINDOWS\system32\amdfendr.itz
- 2025-02-28 18:01 - 2025-03-06 22:44 - 000000000 ____D C:\ProgramData\NVIDIA
- 2025-02-28 18:01 - 2025-03-01 07:10 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2025-02-28 18:01 - 2025-02-28 22:58 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2025-02-28 18:01 - 2025-02-28 18:01 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
- 2025-02-28 18:01 - 2025-02-28 18:01 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2025-02-28 18:01 - 2024-09-16 01:28 - 025312776 _____ C:\WINDOWS\system32\nvidia-pcc.exe
- 2025-02-28 18:01 - 2024-09-16 01:28 - 002040680 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
- 2025-02-28 18:01 - 2024-09-16 01:28 - 002040680 _____ C:\WINDOWS\system32\vulkaninfo.exe
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001583976 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001583976 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001446760 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001446760 _____ C:\WINDOWS\system32\vulkan-1.dll
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001296744 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
- 2025-02-28 18:01 - 2024-09-16 01:28 - 001296744 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
- 2025-02-28 18:01 - 2024-09-16 01:28 - 000477704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
- 2025-02-28 18:01 - 2024-09-16 01:28 - 000374816 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
- 2025-02-28 18:01 - 2024-09-16 01:25 - 001547400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2025-02-28 18:01 - 2024-09-16 01:25 - 001202808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2025-02-28 18:01 - 2024-09-16 01:25 - 001078928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
- 2025-02-28 18:01 - 2024-09-16 01:25 - 000856696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
- 2025-02-28 18:01 - 2024-09-16 01:25 - 000669840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
- 2025-02-28 18:01 - 2024-09-16 01:25 - 000505992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 016200352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 014270096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 006914168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 005348872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 003788432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 002178696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 001629296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 001034248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 000796792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2025-02-28 18:01 - 2024-09-16 01:24 - 000461984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
- 2025-02-28 18:01 - 2024-09-16 01:24 - 000131656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
- 2025-02-28 18:01 - 2024-09-16 01:23 - 005910024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
- 2025-02-28 18:01 - 2024-09-16 01:23 - 000853136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
- 2025-02-28 18:01 - 2024-09-16 01:22 - 007133144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
- 2025-02-28 18:01 - 2024-09-16 01:22 - 006212848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2025-02-28 18:01 - 2024-09-16 00:53 - 000127247 _____ C:\WINDOWS\system32\nvinfo.pb
- 2025-02-28 17:54 - 2025-02-28 22:14 - 000000000 ____D C:\ProgramData\Packages
- 2025-02-28 17:54 - 2025-02-28 17:54 - 000000000 _SHDL C:\Documents and Settings
- 2025-02-28 17:54 - 2025-02-28 17:54 - 000000000 ____D C:\WINDOWS\CSC
- 2025-02-28 17:53 - 2025-03-01 07:03 - 000001460 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
- 2025-02-28 17:53 - 2025-02-28 17:54 - 000003612 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{007883D1-A823-4B29-9180-96A65D8132D7}
- 2025-02-28 17:53 - 2025-02-28 17:54 - 000003488 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{948626C0-11EF-4EDE-B758-43F8478A76F4}
- 2025-02-28 17:53 - 2025-02-28 17:54 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2025-02-28 17:53 - 2025-02-28 17:53 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
- 2025-02-28 17:52 - 2025-03-06 16:56 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
- 2025-02-28 17:52 - 2025-03-01 07:03 - 000476112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2025-02-28 17:52 - 2025-03-01 07:03 - 000012288 ___SH C:\DumpStack.log.tmp
- 2025-02-28 17:52 - 2025-03-01 07:03 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
- 2025-02-28 17:52 - 2025-03-01 07:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2025-02-28 17:52 - 2025-02-28 18:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2025-02-28 17:52 - 2025-02-28 17:54 - 000000000 ___DC C:\WINDOWS\Panther
- 2025-02-28 17:52 - 2025-02-28 17:52 - 000000000 ____D C:\WINDOWS\system32\config\BFS
- 2025-02-28 17:52 - 2025-02-28 17:52 - 000000000 ____D C:\WINDOWS\ServiceProfiles
- 2025-02-28 17:51 - 2025-02-28 17:51 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
- ==================== One month (modified) ==================
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2025-03-07 14:29 - 2024-04-01 07:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2025-03-07 14:14 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SystemTemp
- 2025-03-06 21:50 - 2024-04-01 07:26 - 000000000 ___HD C:\Program Files\WindowsApps
- 2025-03-06 21:50 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2025-03-01 13:08 - 2024-04-01 07:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
- 2025-03-01 07:10 - 2024-04-01 07:24 - 000000000 ____D C:\WINDOWS\INF
- 2025-03-01 07:03 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\ServiceState
- 2025-03-01 04:53 - 2024-04-01 07:21 - 000262144 _____ C:\WINDOWS\system32\config\BBI
- 2025-03-01 04:44 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
- 2025-02-28 23:02 - 2024-04-01 07:26 - 000000000 ___RD C:\Program Files\Windows Defender
- 2025-02-28 22:37 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\appcompat
- 2025-02-28 22:13 - 2024-04-01 07:21 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2025-02-28 18:37 - 2024-04-01 07:26 - 000000000 ____D C:\ProgramData\USOPrivate
- 2025-02-28 18:14 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\spool
- 2025-02-28 18:11 - 2024-04-01 16:16 - 000000000 ___SD C:\WINDOWS\system32\AppV
- 2025-02-28 18:11 - 2024-04-01 16:16 - 000000000 ____D C:\WINDOWS\InboxApps
- 2025-02-28 18:11 - 2024-04-01 16:16 - 000000000 ____D C:\Program Files\Windows Photo Viewer
- 2025-02-28 18:11 - 2024-04-01 16:16 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
- 2025-02-28 18:11 - 2024-04-01 16:16 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
- 2025-02-28 18:11 - 2024-04-01 16:15 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
- 2025-02-28 18:11 - 2024-04-01 16:15 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
- 2025-02-28 18:11 - 2024-04-01 16:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
- 2025-02-28 18:11 - 2024-04-01 16:12 - 000000000 ____D C:\WINDOWS\en-GB
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ___SD C:\WINDOWS\system32\UNP
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ___SD C:\WINDOWS\system32\F12
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\UUS
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SystemResources
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\SystemApps
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\setup
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\Dism
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\ShellComponents
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\Provisioning
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\IME
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\BrowserCore
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2025-02-28 18:11 - 2024-04-01 07:26 - 000000000 ____D C:\Program Files\Common Files\System
- 2025-02-28 18:11 - 2024-04-01 07:21 - 000000000 ____D C:\WINDOWS\servicing
- 2025-02-28 18:10 - 2024-04-01 07:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
- 2025-02-28 18:10 - 2024-04-01 07:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
- 2025-02-28 17:56 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker
- 2025-02-28 17:54 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
- 2025-02-28 17:52 - 2024-04-01 07:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
- 2025-02-28 17:52 - 2024-04-01 07:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
- ==================== SigCheck ============================
- (There is no automatic fix for files that do not pass verification.)
- ==================== End of FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement