Author Topic: Computer Locking, freezing and often Not responding  (Read 286 times)

Offline ummzee

  • Jr. Member
  • **
  • Posts: 54
  • Karma: +0/-0
    • View Profile
Computer Locking, freezing and often Not responding
« on: September 13, 2018, 08:45:37 AM »
HELP!

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09.09.2018

Ran by Fatima (administrator) on FATIMA-PC (13-09-2018 09:15:27)

Running from C:\\Users\\Fatima\\Downloads

Loaded Profiles: Fatima (Available Profiles: Fatima & Mcx1-FATIMA-PC)

Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: Chrome)

Boot Mode: Normal


 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

(Two Pilots) C:\\Windows\\VPDAgent_x64.exe

(AMD) C:\\Windows\\System32\\atiesrxx.exe

(IDT, Inc.) C:\\Windows\\System32\\DriverStore\\FileRepository\\stwrt64.inf_amd64_neutral_0057cbec48a2d7cf\\stacsv64.exe

(Stardock Corporation) C:\\Program Files\\Dell\\DellDock\\DockLogin.exe

(AMD) C:\\Windows\\System32\\atieclxx.exe

(Microsoft Corporation) C:\\Windows\\System32\\wlanext.exe

(Adobe Systems Incorporated) C:\\Program Files (x86)\\Common Files\\Adobe\\Adobe Desktop Common\\ElevationManager\\AdobeUpdateService.exe

(Andrea Electronics Corporation) C:\\Program Files\\Realtek\\Audio\\HDA\\AERTSr64.exe

(Andrea Electronics Corporation) C:\\Windows\\System32\\DriverStore\\FileRepository\\stwrt64.inf_amd64_neutral_0057cbec48a2d7cf\\AESTSr64.exe

(Adobe Systems, Incorporated) C:\\Program Files (x86)\\Common Files\\Adobe\\AdobeGCClient\\AGMService.exe

(Adobe Systems, Incorporated) C:\\Program Files (x86)\\Common Files\\Adobe\\AdobeGCClient\\AGSService.exe

(Broadcom Corporation.) C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btwdins.exe

(Fork, Ltd.) C:\\Windows\\Prey\\wpxsvc.exe

(Dell Inc.) C:\\Program Files\\Dell Printers\\Additional Color Laser Software\\Status Monitor\\dlsdbnt.exe

(Intel(R) Corporation) C:\\Program Files\\Intel\\WiFi\\bin\\EvtEng.exe

(Synaptics Incorporated) C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe

(Intel(R) Corporation) C:\\Program Files\\Common Files\\Intel\\WirelessCommon\\iFrmewrk.exe

(Intel Corporation) C:\\Windows\\System32\\igfxtray.exe

(Intel Corporation) C:\\Windows\\System32\\hkcmd.exe

(Intel Corporation) C:\\Windows\\System32\\igfxpers.exe

(IDT, Inc.) C:\\Program Files\\IDT\\WDM\\sttray64.exe

() C:\\Program Files\\Google\\Drive\\googledrivesync.exe

(TechSmith Corporation) C:\\Program Files (x86)\\TechSmith\\Snagit 12\\Snagit32.exe

(Dropbox, Inc.) C:\\Users\\Fatima\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe

() C:\\Program Files (x86)\\Motorola\\MotoConnectService\\MotoConnectService.exe

(Brother Industries, Ltd.) C:\\Program Files (x86)\\Browny02\\Brother\\BrStMonW.exe

(Brother Industries, Ltd.) C:\\Program Files (x86)\\ControlCenter4\\BrCtrlCntr.exe

(The Neat Company) C:\\Program Files (x86)\\Neat\\exec\\NeatStartupService.exe

(Brother Industries, Ltd.) C:\\Program Files (x86)\\Brother\\Brother Help\\BrotherHelp.exe

(Motorola) C:\\Program Files (x86)\\Motorola\\MotoConnectService\\MotoConnect.exe

(Nuance Communications, Inc.) C:\\Program Files (x86)\\Nuance\\PaperPort\\pptd40nt.exe

(Oracle Corporation) C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe

(Dropbox, Inc.) C:\\Users\\Fatima\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe

(Dropbox, Inc.) C:\\Users\\Fatima\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe

(Symantec Corporation) C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\nortonsecurity.exe

(Novatel Wireless Inc.) C:\\Program Files (x86)\\Novatel Wireless\\Verizon\\Drivers\\NWHelper_001.exe

(O2Micro International) C:\\Windows\\System32\\drivers\\o2flash.exe

() C:\\Program Files (x86)\\HTC\\Internet Pass-Through\\PassThruSvr.exe

(Nuance Communications, Inc.) C:\\Program Files (x86)\\Nuance\\PaperPort\\PDFProFiltSrvPP.exe

(Symantec Corporation) C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\nortonsecurity.exe

(Brother Industries, Ltd.) C:\\Program Files (x86)\\ControlCenter4\\BrCcUxSys.exe

(Intel(R) Corporation) C:\\Program Files\\Common Files\\Intel\\WirelessCommon\\RegSrvc.exe

(Microsoft Corporation) C:\\Program Files (x86)\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe

(SoftThinks SAS) C:\\Program Files (x86)\\Dell DataSafe Local Backup\\SftService.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\GoogleCrashHandler.exe

(DEVGURU Co., LTD.) C:\\Program Files\\Samsung\\USB Drivers\\27_ssconn\\conn\\ss_conn_service.exe

(SoftThinks - Dell) C:\\Program Files (x86)\\Dell DataSafe Local Backup\\Toaster.exe

(TeamViewer GmbH) C:\\Program Files (x86)\\TeamViewer\\TeamViewer_Service.exe

(SoftThinks - Dell) C:\\Program Files (x86)\\Dell DataSafe Local Backup\\Components\\DSUpdate\\DSUpd.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\GoogleCrashHandler64.exe

() C:\\Program Files (x86)\\Dell DataSafe Local Backup\\Components\\Scheduler\\STService.exe

(TechSmith Corporation) C:\\Program Files (x86)\\Common Files\\TechSmith Shared\\Uploader\\UploaderService.exe

(Novatel Wireless Inc.) C:\\Program Files (x86)\\Novatel Wireless\\LTE Support\\VZWMSConfig.exe

(Microsoft Corp.) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVC.EXE

(Dell Inc.) C:\\Program Files\\Dell Printers\\Additional Color Laser Software\\Status Monitor\\dlpwdnt.exe

(Microsoft Corp.) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVCM.EXE

(Brother Industries, Ltd.) C:\\Program Files (x86)\\Browny02\\BrYNSvc.exe

(TechSmith Corporation) C:\\Program Files (x86)\\TechSmith\\Snagit 12\\SnagPriv.exe

(Synaptics Incorporated) C:\\Program Files\\Synaptics\\SynTP\\SynTPHelper.exe

(Intel(R) Corporation) C:\\Program Files\\Intel\\TurboBoost\\TurboBoost.exe

(Piriform Ltd) C:\\Program Files\\CCleaner\\CCleaner64.exe

() C:\\Program Files\\Google\\Drive\\googledrivesync.exe

(TechSmith Corporation) C:\\Program Files (x86)\\TechSmith\\Snagit 12\\TscHelp.exe

(Microsoft Corporation) C:\\Windows\\Microsoft.NET\\Framework64\\v3.0\\WPF\\PresentationFontCache.exe

(TechSmith Corporation) C:\\Program Files (x86)\\TechSmith\\Snagit 12\\SnagitEditor.exe

(Dell Inc.) C:\\Program Files\\Dell\\DellDataVault\\DDVRulesProcessor.exe

(Intuit Inc.) C:\\Program Files (x86)\\Common Files\\Intuit\\Update Service v4\\IntuitUpdateService.exe

(Intel Corporation) C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\LMS\\LMS.exe

(Dell Inc.) C:\\Program Files\\Dell\\SupportAssistAgent\\bin\\SupportAssistAgent.exe

(Dell Inc.) C:\\Program Files\\Dell\\DellDataVault\\DDVDataCollector.exe

(Dell Inc.) C:\\Program Files\\Dell\\DellDataVault\\DDVCollectorSvcApi.exe

(Intel Corporation) C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\UNS\\UNS.exe

(Dell Inc.) C:\\Program Files\\Dell\\DellDataVault\\atiw.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

(Piriform Ltd) C:\\Program Files\\CCleaner\\CCleaner64.exe

(Piriform Ltd) C:\\Program Files\\CCleaner\\CCleaner64.exe

(Google Inc.) C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe

 

==================== Registry (Whitelisted) ===========================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM\\...\\Run: [SynTPEnh] => C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe [1882920 2009-11-12] (Synaptics Incorporated)

HKLM\\...\\Run: [RtHDVCpl] => C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe [10144288 2010-04-13] (Realtek Semiconductor)

HKLM\\...\\Run: [IntelWireless] => C:\\Program Files\\Common Files\\Intel\\WirelessCommon\\iFrmewrk.exe [1926928 2009-09-21] (Intel(R) Corporation)

HKLM\\...\\Run: [IntelTBRunOnce] => wscript.exe //b //nologo \"C:\\Program Files\\Intel\\TurboBoost\\RunTBGadgetOnce.vbs\"

HKLM\\...\\Run: [SysTrayApp] => C:\\Program Files\\IDT\\WDM\\sttray64.exe [487424 2010-01-21] (IDT, Inc.)

HKLM\\...\\Run: [AdobeGCInvoker-1.0] => C:\\Program Files (x86)\\Common Files\\Adobe\\AdobeGCClient\\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)

HKLM-x32\\...\\Run: [PDF5 Registry Controller] => C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)

HKLM-x32\\...\\Run: [ControlCenter4] => C:\\Program Files (x86)\\ControlCenter4\\BrCcBoot.exe [146584 2017-11-07] (Brother Industries, Ltd.)

HKLM-x32\\...\\Run: [BrStsMon00] => C:\\Program Files (x86)\\Browny02\\Brother\\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.)

HKLM-x32\\...\\Run: [BrHelp] => C:\\Program Files (x86)\\Brother\\Brother Help\\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.)

HKLM-x32\\...\\Run: [VMM Mode Selection] => C:\\Program Files\\HTC\\ModeSelection\\VMMModeSelection.exe [83448 2013-05-02] ()

HKLM-x32\\...\\Run: [IndexSearch] => C:\\Program Files (x86)\\Nuance\\PaperPort\\IndexSearch.exe [47432 2013-08-15] (Nuance Communications, Inc.)

HKLM-x32\\...\\Run: [PaperPort PTD] => C:\\Program Files (x86)\\Nuance\\PaperPort\\pptd40nt.exe [31048 2013-08-15] (Nuance Communications, Inc.)

HKLM-x32\\...\\Run: [SunJavaUpdateSched] => C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe [601424 2018-07-07] (Oracle Corporation)

Winlogon\\Notify\\igfxcui: C:\\Windows\\system32\\igfxdev.dll (Intel Corporation)

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\Run: [Google Update] => C:\\Users\\Fatima\\AppData\\Local\\Google\\Update\\1.3.33.17\\GoogleUpdateCore.exe [601680 2018-05-18] (Google Inc.)

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\Run: [CCleaner Smart Cleaning] => C:\\Program Files\\CCleaner\\CCleaner64.exe [9105112 2016-11-15] (Piriform Ltd)

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\Run: [CCleaner Monitoring] => C:\\Program Files\\CCleaner\\CCleaner64.exe [9105112 2016-11-15] (Piriform Ltd)

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\Run: [GoogleDriveSync] => C:\\Program Files\\Google\\Drive\\googledrivesync.exe [46281248 2018-05-30] ()

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\MountPoints2: {06cd299e-10dd-11e0-88ad-f04da257da3c} - E:\\setup.exe -a

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\MountPoints2: {08eb830e-64d5-11e2-9207-f04da257da3c} - E:\\TL-Bootstrap.exe

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\MountPoints2: {0c5b8ee4-7adb-11e3-ba0e-f04da257da3c} - E:\\VZW_Software_upgrade_assistant.exe

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\...\\MountPoints2: {84ac383a-68ce-11e4-b6d9-f04da257da3c} - E:\\TL-Bootstrap.exe

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\Control Panel\\Desktop\\\\SCRNSAVE.EXE -> C:\\Windows\\System32\\ssText3d.scr [333824 2010-11-20] (Microsoft Corporation)

HKU\\S-1-5-18\\...\\Run: [CCleaner Monitoring] => C:\\Program Files\\CCleaner\\CCleaner64.exe [9105112 2016-11-15] (Piriform Ltd)

Startup: C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Snagit 12.lnk [2015-04-14]

ShortcutTarget: Snagit 12.lnk -> C:\\Program Files (x86)\\TechSmith\\Snagit 12\\Snagit32.exe (TechSmith Corporation)

Startup: C:\\Users\\Default\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dell Dock First Run.lnk [2010-11-13]

ShortcutTarget: Dell Dock First Run.lnk -> C:\\Program Files\\Dell\\DellDock\\DellDock.exe (Stardock Corporation)

Startup: C:\\Users\\Default User\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dell Dock First Run.lnk [2010-11-13]

ShortcutTarget: Dell Dock First Run.lnk -> C:\\Program Files\\Dell\\DellDock\\DellDock.exe (Stardock Corporation)

Startup: C:\\Users\\Fatima\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk [2018-09-11]

ShortcutTarget: Dropbox.lnk -> C:\\Users\\Fatima\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe (Dropbox, Inc.)

Startup: C:\\Users\\Fatima\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Intel(R) Turbo Boost Technology Monitor 2.6.lnk [2018-01-17]

ShortcutTarget: Intel(R) Turbo Boost Technology Monitor 2.6.lnk -> C:\\Program Files\\Intel\\TurboBoost\\SignalIslandUi.exe (Intel® Corporation)

Startup: C:\\Users\\Mcx1-FATIMA-PC\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dell Dock First Run.lnk [2010-11-13]

ShortcutTarget: Dell Dock First Run.lnk -> C:\\Program Files\\Dell\\DellDock\\DellDock.exe (Stardock Corporation)

GroupPolicy: Restriction - Chrome <==== ATTENTION

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Tcpip\\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76

Tcpip\\..\\Interfaces\\{0054C452-8CDD-4E7D-AAE8-8D84E725FA99}: [DhcpNameServer] 75.75.75.75 75.75.76.76

 

Internet Explorer:

==================

HKLM\\Software\\Wow6432Node\\Microsoft\\Internet Explorer\\Main,Start Page = hxxp://www.google.com

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = hxxps://www.google.com/?gws_rd=ssl

HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = g.msn.com/USCON/1

SearchScopes: HKLM -> {B0BFDAA2-3B59-4207-BC58-757731EB6BB8} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=DLCDF8&amp;pc=MDDC&amp;src=IE-SearchBox

SearchScopes: HKLM-x32 -> {84F18B67-49B4-480E-AAB9-1A8898F5CEC8} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=DLCDF8&amp;pc=MDDC&amp;src=IE-SearchBox

SearchScopes: HKU\\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

SearchScopes: HKU\\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

SearchScopes: HKU\\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

SearchScopes: HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001 -> {A98EC5E3-2197-4056-8F5D-81F7227F1A85} URL = hxxps://search.yahoo.com/search?p={searchTerms}&intl=us&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle

SearchScopes: HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11913&l=dis&prt=NGC&chn=1122&geo=US&ver=22.15.0.88&locale=en_US&guid=FF9C286D-3A2B-11E0-856B-F04DA257DA3C&doi=2016-09-01&gct=kwd&qsrc=2869

SearchScopes: HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001 -> {CA1E38D1-AFC7-4C63-8210-7925E82FB029} URL = hxxp://search.yahoo.com/search?p={searchterms}&ei=UTF-8&fr=w3i&type=W3i_DS,136,0_0,Search,20120519,17118,0,18,0

BHO: SnagIt Toolbar Loader -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> C:\\Program Files (x86)\\TechSmith\\Snagit 10\\DLLx64\\SnagitBHO64.dll [2011-11-08] (TechSmith Corporation)

BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\coIEPlg.dll [2018-08-05] (Symantec Corporation)

BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)

BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\\Program Files\\Microsoft Office\\Office14\\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File

BHO-x32: SnagIt Toolbar Loader -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> C:\\Program Files (x86)\\TechSmith\\Snagit 10\\SnagitBHO.dll [2011-11-08] (TechSmith Corporation)

BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\Bin\\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation)

BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\\Program Files (x86)\\Norton Security Suite\\Engine32\\22.15.0.88\\coIEPlg.dll [2018-08-05] (Symantec Corporation)

BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\\Program Files (x86)\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll [2010-09-22] (Microsoft Corporation)

BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\\Program Files (x86)\\Java\\jre1.8.0_181\\bin\\ssv.dll [2018-08-01] (Oracle Corporation)

BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)

BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\\Program Files (x86)\\Microsoft Office\\Office14\\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)

BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\\Program Files (x86)\\Java\\jre1.8.0_181\\bin\\jp2ssv.dll [2018-08-01] (Oracle Corporation)

Toolbar: HKLM - Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\\Program Files (x86)\\TechSmith\\Snagit 10\\DLLx64\\SnagitIEAddin64.dll [2011-11-08] (TechSmith Corporation)

Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\coIEPlg.dll [2018-08-05] (Symantec Corporation)

Toolbar: HKLM-x32 - Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\\Program Files (x86)\\TechSmith\\Snagit 10\\SnagitIEAddin.dll [2011-11-08] (TechSmith Corporation)

Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Security Suite\\Engine32\\22.15.0.88\\coIEPlg.dll [2018-08-05] (Symantec Corporation)

Toolbar: HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\coIEPlg.dll [2018-08-05] (Symantec Corporation)

DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} hxxp://office.microsoft.com/_layouts/ClientBin/ieawsdc32.cab

DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://qtinstall.apple.com/qtactivex/qtplugin.cab

DPF: HKLM-x32 {42D683F7-9C1B-11D7-A860-005056C00001} hxxp://1973-phmc.org/tprdpenn.cab

DPF: HKLM-x32 {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} hxxp://quickscan.bitdefender.com/qsax/qsax.cab

DPF: HKLM-x32 {682C59F5-478C-4421-9070-AD170D143B77} hxxp://www.dell.com/support/troubleshooting/Content/Ode/pcd86.cab

DPF: HKLM-x32 {8CFCF42C-1C64-47D6-AEEC-F9D001832ED3} hxxp://xserv.dell.com/DellDriverScanner/DellSystem.CAB

DPF: HKLM-x32 {BEA7310D-06C4-4339-A784-DC3804819809} hxxp://mywayphotos.riteaid.com/upload/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab

DPF: HKLM-x32 {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB

DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} hxxps://allscripts.webex.com/client/WBXclient-T27L10NSP25-10481/webex/ieatgpc1.cab

DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

 

FireFox:

========

FF DefaultProfile: j0d8ivs7.default-1500893193942

FF ProfilePath: C:\\Users\\Fatima\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\j0d8ivs7.default-1500893193942 [2018-09-13]

FF Homepage: Mozilla\\Firefox\\Profiles\\j0d8ivs7.default-1500893193942 -> hxxps://www.google.com/

FF Plugin: @adobe.com/FlashPlayer -> C:\\Windows\\system32\\Macromed\\Flash\\NPSWF64_31_0_0_108.dll [2018-09-11] ()

FF Plugin: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\\Program Files\\Microsoft Silverlight\\5.1.50907.0\\npctrl.dll [2017-05-03] ( Microsoft Corporation)

FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\\PROGRA~1\\MICROS~2\\Office14\\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)

FF Plugin: @microsoft.com/wpi,version=1.4 -> C:\\Program Files\\Microsoft\\Web Platform Installer\\\\npwpidetector.dll [2011-04-01] (Microsoft Corp)

FF Plugin: adobe.com/AdobeAAMDetect -> C:\\Program Files (x86)\\Adobe\\Adobe Creative Cloud\\Utils\\npAdobeAAMDetect64.dll [2017-06-04] (Adobe Systems)

FF Plugin: adobe.com/AdobeExManDetect -> C:\\Program Files (x86)\\Adobe\\Adobe Extension Manager CS6\\Win64Plugin\\npAdobeExManDetectX64.dll [2013-12-03] (Adobe Systems)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\\Windows\\SysWOW64\\Macromed\\Flash\\NPSWF32_31_0_0_108.dll [2018-09-11] ()

FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_181\\bin\\dtplugin\\npDeployJava1.dll [2018-08-01] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_181\\bin\\plugin2\\npjp2.dll [2018-08-01] (Oracle Corporation)

FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\\Program Files (x86)\\Microsoft Silverlight\\5.1.50907.0\\npctrl.dll [2017-05-03] ( Microsoft Corporation)

FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\\PROGRA~2\\MIF5BA~1\\Office14\\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\\PROGRA~2\\MIF5BA~1\\Office14\\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\\Program Files (x86)\\Windows Live\\Photo Gallery\\NPWLPG.dll [2012-09-12] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\\Program Files (x86)\\Windows Live\\Photo Gallery\\NPWLPG.dll [2012-09-12] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\\Program Files (x86)\\Windows Live\\Photo Gallery\\NPWLPG.dll [2012-09-12] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/wpi,version=1.4 -> C:\\Program Files\\Microsoft\\Web Platform Installer\\\\npwpidetector.dll [2011-04-01] (Microsoft Corp)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\npGoogleUpdate3.dll [2018-05-16] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\npGoogleUpdate3.dll [2018-05-16] (Google Inc.)

FF Plugin-x32: @videolan.org/vlc,version=2.0.2 -> C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll [2014-07-22] (VideoLAN)

FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll [2014-07-22] (VideoLAN)

FF Plugin-x32: Adobe Reader -> C:\\Program Files (x86)\\Adobe\\Acrobat Reader DC\\Reader\\AIR\\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)

FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\\Program Files (x86)\\Adobe\\Adobe Creative Cloud\\Utils\\npAdobeAAMDetect32.dll [2017-06-04] (Adobe Systems)

FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\\Program Files (x86)\\Adobe\\Adobe Extension Manager CS6\\npAdobeExManDetectX86.dll [2013-12-03] (Adobe Systems)

FF Plugin HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001: @talk.google.com/GoogleTalkPlugin -> C:\\Users\\Fatima\\AppData\\Roaming\\Mozilla\\plugins\\npgoogletalk.dll [2015-12-08] (Google)

FF Plugin HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001: @talk.google.com/O1DPlugin -> C:\\Users\\Fatima\\AppData\\Roaming\\Mozilla\\plugins\\npo1d.dll [2015-12-08] (Google)

FF Plugin HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001: @tools.google.com/Google Update;version=3 -> C:\\Users\\Fatima\\AppData\\Local\\Google\\Update\\1.3.33.17\\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)

FF Plugin HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001: @tools.google.com/Google Update;version=9 -> C:\\Users\\Fatima\\AppData\\Local\\Google\\Update\\1.3.33.17\\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\browser\\plugins\\npatgpc.dll [2017-01-05] (Cisco WebEx LLC)

FF Plugin ProgramFiles/Appdata: C:\\Users\\Fatima\\AppData\\Roaming\\mozilla\\plugins\\npatgpc.dll [2017-01-05] (Cisco WebEx LLC)

FF Plugin ProgramFiles/Appdata: C:\\Users\\Fatima\\AppData\\Roaming\\mozilla\\plugins\\npgoogletalk.dll [2015-12-08] (Google)

FF Plugin ProgramFiles/Appdata: C:\\Users\\Fatima\\AppData\\Roaming\\mozilla\\plugins\\npo1d.dll [2015-12-08] (Google)

 

Chrome: 

=======

CHR DefaultProfile: Default

CHR HomePage: Default -> hxxp://www.microsoftvirtualacademy.com/training-courses/html5-css3-fundamentals-development-for-absolute-beginners#?fbid=JquC4UGMzCZ

CHR StartupUrls: Default -> \"hxxps://www.udemy.com/discover/\",\"hxxp://start.mysearchdial.com/?f=1&a=dsites0101&cd=2XzuyEtN2Y1L1Qzu0FtDyE0D0AtByDyB0D0AtA0Czyzy0AzztN0D0Tzu0CyByDtCtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCtG1T&cr=1369991128&ir=\",\"hxxp://www.msn.com/?pc=U146&ocid=U146DHP\"

CHR NewTab: Default ->  Not-active:\"chrome-extension://aoeapomnofcbnaoahibkibpcihkgdomm/newtabproduct.html\"

CHR Session Restore: Default -> is enabled.

CHR Profile: C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default [2018-09-13]

CHR Extension: (YourTemplateFinder ) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\aoeapomnofcbnaoahibkibpcihkgdomm [2018-08-22]

CHR Extension: (Google Drive) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\apdfllckaahabafndbhieahigkjlhalf [2015-12-25]

CHR Extension: (YouTube) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-25]

CHR Extension: (Norton Security Toolbar) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\cjabmdjcfcfdmffimndhafhblfmpjdpe [2018-08-22]

CHR Extension: (Google Search) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-25]

CHR Extension: (Adobe Acrobat) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-03]

CHR Extension: (Google Docs Offline) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-21]

CHR Extension: (Norton Safe) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\hbmobhkkblcgdifigjglcjneplefbkmh [2018-07-26]

CHR Extension: (Yahoo Partner) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\hikeppggmbhdgodhakicedaejpleoigm [2018-05-04]

CHR Extension: (Cisco Webex Extension) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\jlhmfgmfgeifomenelglieieghnjghma [2018-07-07]

CHR Extension: (Skype) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2018-01-17]

CHR Extension: (Application Launcher for Drive (by Google)) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\lmjegmlicamnimmfhcmpkclmigmmcbeh [2018-09-01]

CHR Extension: (Chrome Web Store Payments) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]

CHR Extension: (Search Encrypt) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\onnfpbhkkijcalpbgblhjihnehkhdghg [2018-04-26]

CHR Extension: (Gmail) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-04]

CHR Extension: (Chrome Media Router) - C:\\Users\\Fatima\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-02]

CHR HKLM\\...\\Chrome\\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\Exts\\Chrome.crx <not found>

CHR HKLM\\...\\Chrome\\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx

CHR HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\SOFTWARE\\Google\\Chrome\\Extensions\\...\\Chrome\\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\\Users\\Fatima\\AppData\\Local\\Google\\Drive\\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-04]

CHR HKU\\S-1-5-21-3410903177-2367560781-3634912286-1001\\SOFTWARE\\Google\\Chrome\\Extensions\\...\\Chrome\\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx

CHR HKLM-x32\\...\\Chrome\\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\Exts\\Chrome.crx <not found>

CHR HKLM-x32\\...\\Chrome\\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

CHR HKLM-x32\\...\\Chrome\\Extension: [hikeppggmbhdgodhakicedaejpleoigm] - hxxps://clients2.google.com/service/update2/crx

CHR HKLM-x32\\...\\Chrome\\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx

CHR HKLM-x32\\...\\Chrome\\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx

 

==================== Services (Whitelisted) ====================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R2 AdobeUpdateService; C:\\Program Files (x86)\\Common Files\\Adobe\\Adobe Desktop Common\\ElevationManager\\AdobeUpdateService.exe [814688 2017-06-04] (Adobe Systems Incorporated)

R2 Agent; C:\\Windows\\VPDAgent_x64.exe [148480 2014-05-20] (Two Pilots) [File not signed]

R2 AGMService; C:\\Program Files (x86)\\Common Files\\Adobe\\AdobeGCClient\\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)

R2 AGSService; C:\\Program Files (x86)\\Common Files\\Adobe\\AdobeGCClient\\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)

R3 BrYNSvc; C:\\Program Files (x86)\\Browny02\\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [File not signed]

R2 CronService; c:\\Windows\\Prey\\wpxsvc.exe [611854 2015-10-09] (Fork, Ltd.) [File not signed]

R2 DDVCollectorSvcApi; C:\\Program Files\\Dell\\DellDataVault\\DDVCollectorSvcApi.exe [208792 2018-02-10] (Dell Inc.)

R2 DDVDataCollector; C:\\Program Files\\Dell\\DellDataVault\\DDVDataCollector.exe [3346320 2018-02-10] (Dell Inc.)

R2 DDVRulesProcessor; C:\\Program Files\\Dell\\DellDataVault\\DDVRulesProcessor.exe [217488 2018-02-10] (Dell Inc.)

S2 Dell Hardware Support; C:\\Program Files\\Dell\\SupportAssistAgent\\PCDr\\SupportAssist\\6.0.6992.1111\\DSAPI.exe [930112 2018-05-16] (PC-Doctor, Inc.)

R2 DLPWD; C:\\Program Files\\Dell Printers\\Additional Color Laser Software\\Status Monitor\\DLPWDNT.EXE [155496 2012-09-26] (Dell Inc.)

R2 DLSDB; C:\\Program Files\\Dell Printers\\Additional Color Laser Software\\Status Monitor\\DLSDBNT.EXE [343400 2012-09-26] (Dell Inc.)

S2 HPSupportSolutionsFrameworkService; C:\\Program Files (x86)\\Hp\\Common\\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company)

R2 MotoConnect Service; C:\\Program Files (x86)\\Motorola\\MotoConnectService\\MotoConnectService.exe [91456 2010-04-29] ()

S3 MyWiFiDHCPDNS; C:\\Program Files\\Intel\\WiFi\\bin\\PanDhcpDns.exe [315664 2009-09-21] ()

R2 Neat Startup Service; C:\\Program Files (x86)\\Neat\\exec\\NeatStartupService.exe [25600 2015-01-16] (The Neat Company) [File not signed]

R2 NortonSecurity; C:\\Program Files (x86)\\Norton Security Suite\\Engine\\22.15.0.88\\NortonSecurity.exe [328648 2018-08-05] (Symantec Corporation)

R2 NWVZHelper; C:\\Program Files (x86)\\Novatel Wireless\\Verizon\\Drivers\\NWHelper_001.exe [270848 2010-06-14] (Novatel Wireless Inc.) [File not signed]

R2 PassThru Service; C:\\Program Files (x86)\\HTC\\Internet Pass-Through\\PassThruSvr.exe [166912 2013-10-17] () [File not signed]

R2 PDFProFiltSrvPP; C:\\Program Files (x86)\\Nuance\\PaperPort\\PDFProFiltSrvPP.exe [145736 2013-08-15] (Nuance Communications, Inc.)

R2 ss_conn_service; C:\\Program Files\\Samsung\\USB Drivers\\27_ssconn\\conn\\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)

R2 STacSV; C:\\Windows\\System32\\DriverStore\\FileRepository\\stwrt64.inf_amd64_neutral_0057cbec48a2d7cf\\STacSV64.exe [244736 2010-01-21] (IDT, Inc.)

R2 SupportAssistAgent; C:\\Program Files\\Dell\\SupportAssistAgent\\bin\\SupportAssistAgent.exe [43480 2018-05-11] (Dell Inc.)

R2 TeamViewer; C:\\Program Files (x86)\\TeamViewer\\TeamViewer_Service.exe [10216688 2016-11-28] (TeamViewer GmbH)

R2 TechSmith Uploader Service; C:\\Program Files (x86)\\Common Files\\TechSmith Shared\\Uploader\\UploaderService.exe [3408384 2015-01-26] (TechSmith Corporation) [File not signed]

R2 VZWConfigService; C:\\Program Files (x86)\\Novatel Wireless\\LTE Support\\VZWMSConfig.exe [218160 2012-04-16] (Novatel Wireless Inc.)

R2 WinDefend; C:\\Program Files\\Windows Defender\\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

 

===================== Drivers (Whitelisted) ======================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R1 BHDrvx64; C:\\Program Files (x86)\\Norton Security Suite\\NortonData\\22.10.0.85\\Definitions\\BASHDefs\\20180910.001\\BHDrvx64.sys [1919568 2018-06-22] (Symantec Corporation)

S3 BrSerIf; C:\\Windows\\System32\\DRIVERS\\BrSerIf.sys [97280 2006-12-12] (Brother Industries Ltd.)

R1 ccSet_NGC; C:\\Windows\\system32\\drivers\\NGCx64\\160F000.058\\ccSetx64.sys [187464 2018-08-05] (Symantec Corporation)

R3 DDDriver; C:\\Windows\\System32\\drivers\\DDDriver64Dcsa.sys [41608 2017-12-14] (Dell Inc.)

R3 DellProf; C:\\Windows\\System32\\drivers\\DellProf.sys [41208 2017-12-14] (Dell Computer Corporation)

S3 dg_ssudbus; C:\\Windows\\System32\\DRIVERS\\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)

R1 eeCtrl; C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl64.sys [507984 2018-09-03] (Symantec Corporation)

R3 EraserUtilRebootDrv; C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys [153168 2018-03-24] (Symantec Corporation)

R1 IDSVia64; C:\\Program Files (x86)\\Norton Security Suite\\NortonData\\22.10.0.85\\Definitions\\IPSDefs\\20180912.061\\IDSvia64.sys [1306592 2018-08-13] (Symantec Corporation)

S4 LMIRfsClientNP; no ImagePath

S3 NWUSBModem_001; C:\\Windows\\System32\\DRIVERS\\nwusbmdm_001.sys [217856 2012-05-03] (Novatel Wireless Inc.)

S3 NWUSBPort2_001; C:\\Windows\\System32\\DRIVERS\\nwusbser2_001.sys [217856 2012-05-03] (Novatel Wireless Inc.)

S3 NWUSBPort_001; C:\\Windows\\System32\\DRIVERS\\nwusbser_001.sys [217856 2012-05-03] (Novatel Wireless Inc.)

S3 nwvzwmbnet_001; C:\\Windows\\System32\\DRIVERS\\nwvzwmbnet_001.sys [334848 2012-05-03] (Novatel Wireless Inc.)

R3 SRTSP; C:\\Windows\\System32\\Drivers\\NGCx64\\160F000.058\\SRTSP64.SYS [846928 2018-08-05] (Symantec Corporation)

R1 SRTSPX; C:\\Windows\\system32\\drivers\\NGCx64\\160F000.058\\SRTSPX64.SYS [49744 2018-08-05] (Symantec Corporation)

S3 ssudmdm; C:\\Windows\\System32\\DRIVERS\\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)

R3 swmsflt; C:\\Windows\\System32\\drivers\\swmsflt.sys [27912 2007-08-10] ()

R3 swmsflt; C:\\Windows\\SysWOW64\\drivers\\swmsflt.sys [27912 2007-08-10] ()

S3 SWMX00; C:\\Windows\\System32\\DRIVERS\\swmx00.sys [89216 2007-06-27] (Sierra Wireless Inc.) [File not signed]

S3 SWNC5E00; C:\\Windows\\System32\\DRIVERS\\SWNC5E00.sys [114688 2007-06-27] (Sierra Wireless Inc.) [File not signed]

R0 SymEFASI; C:\\Windows\\System32\\drivers\\NGCx64\\160F000.058\\SYMEFASI64.SYS [1968720 2018-08-05] (Symantec Corporation)

R3 SymEvent; C:\\Windows\\system32\\Drivers\\SYMEVENT64x86.SYS [99920 2018-06-14] (Symantec Corporation)

R1 SymIRON; C:\\Windows\\system32\\drivers\\NGCx64\\160F000.058\\Ironx64.SYS [307792 2018-08-05] (Symantec Corporation)

R1 SymNetS; C:\\Windows\\System32\\Drivers\\NGCx64\\160F000.058\\SYMNETS.SYS [566912 2018-08-05] (Symantec Corporation)

S3 wpCtrlDrv_NGC; C:\\Windows\\System32\\Drivers\\NGCx64\\160F000.058\\wpCtrlDrv.sys [1002840 2018-08-05] (Symantec Corporation)

S3 BCM43XX; system32\\DRIVERS\\bcmwl664.sys [X]

S2 LMIInfo; \\??\\C:\\Program Files (x86)\\LogMeIn\\x64\\RaInfo.sys [X]

S3 NAVENG; \\??\\C:\\Program Files (x86)\\Norton Security Suite\\NortonData\\22.5.2.15\\Definitions\\SDSDefs\\20170513.001\\NAVENG.SYS [X]

S3 NAVEX15; \\??\\C:\\Program Files (x86)\\Norton Security Suite\\NortonData\\22.5.2.15\\Definitions\\SDSDefs\\20170513.001\\NAVEX15.SYS [X]

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2018-09-13 09:10 - 2018-09-13 09:16 - 000036054 _____ C:\\Users\\Fatima\\Downloads\\FRST.txt

2018-09-13 09:06 - 2018-09-13 09:06 - 002413568 _____ (Farbar) C:\\Users\\Fatima\\Downloads\\FRST64.exe

2018-09-13 09:04 - 2018-09-13 09:04 - 000000000 ____D C:\\Windows\\System32\\Tasks\\Remediation

2018-09-12 22:24 - 2018-09-12 22:24 - 000000000 ____D C:\\Users\\Fatima\\Downloads\\New folder (2)

2018-09-12 21:22 - 2018-09-12 21:25 - 000000000 ____D C:\\Users\\Fatima\\receipts

2018-09-12 18:54 - 2018-09-12 18:54 - 000011855 _____ C:\\Users\\Fatima\\Desktop\\Janazah Supplies.xlsx

2018-09-12 18:46 - 2018-09-12 18:46 - 000012295 _____ C:\\Users\\Fatima\\Documents\\Janazah Supplies2.xlsx

2018-09-12 12:51 - 2018-09-12 18:52 - 000011854 _____ C:\\Users\\Fatima\\Documents\\Janazah Supplies.xlsx

2018-09-11 19:05 - 2018-08-31 11:08 - 001311744 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msjet40.dll

2018-09-11 19:05 - 2018-08-31 11:08 - 000340480 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msexcl40.dll

2018-09-11 19:05 - 2018-08-29 21:47 - 001230848 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\WindowsCodecs.dll

2018-09-11 19:05 - 2018-08-29 21:10 - 001424896 _____ (Microsoft Corporation) C:\\Windows\\system32\\WindowsCodecs.dll

2018-09-11 19:05 - 2018-08-28 01:50 - 000243200 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\ks.sys

2018-09-11 19:05 - 2018-08-24 15:47 - 000398424 _____ (Microsoft Corporation) C:\\Windows\\system32\\iedkcs32.dll

2018-09-11 19:05 - 2018-08-24 14:47 - 000350296 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\iedkcs32.dll

2018-09-11 19:05 - 2018-08-23 19:05 - 025736704 _____ (Microsoft Corporation) C:\\Windows\\system32\\mshtml.dll

2018-09-11 19:05 - 2018-08-23 18:34 - 005779456 _____ (Microsoft Corporation) C:\\Windows\\system32\\jscript9.dll

2018-09-11 19:05 - 2018-08-23 18:27 - 000969216 _____ (Microsoft Corporation) C:\\Windows\\system32\\MsSpellCheckingFacility.exe

2018-09-11 19:05 - 2018-08-23 17:40 - 001555456 _____ (Microsoft Corporation) C:\\Windows\\system32\\urlmon.dll

2018-09-11 19:05 - 2018-08-23 17:27 - 020279296 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\mshtml.dll

2018-09-11 19:05 - 2018-08-23 17:06 - 000662016 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\jscript.dll

2018-09-11 19:05 - 2018-08-23 16:51 - 004494848 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\jscript9.dll

2018-09-11 19:05 - 2018-08-23 16:27 - 001329664 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\urlmon.dll

2018-09-11 19:05 - 2018-08-13 11:54 - 014183936 _____ (Microsoft Corporation) C:\\Windows\\system32\\shell32.dll

2018-09-11 19:05 - 2018-08-13 11:54 - 002004480 _____ (Microsoft Corporation) C:\\Windows\\system32\\msxml6.dll

2018-09-11 19:05 - 2018-08-13 11:54 - 001888768 _____ (Microsoft Corporation) C:\\Windows\\system32\\msxml3.dll

2018-09-11 19:05 - 2018-08-13 11:54 - 000056832 _____ (Microsoft Corporation) C:\\Windows\\system32\\mf3216.dll

2018-09-11 19:05 - 2018-08-13 11:53 - 000405504 _____ (Microsoft Corporation) C:\\Windows\\system32\\gdi32.dll

2018-09-11 19:05 - 2018-08-13 11:41 - 000313344 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\gdi32.dll

2018-09-11 19:05 - 2018-08-13 11:40 - 012880896 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\shell32.dll

2018-09-11 19:05 - 2018-08-13 11:40 - 001390080 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msxml6.dll

2018-09-11 19:05 - 2018-08-13 11:40 - 001241088 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msxml3.dll

2018-09-11 19:05 - 2018-08-13 11:40 - 000043008 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\mf3216.dll

2018-09-11 19:05 - 2018-08-12 16:32 - 000378464 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\netio.sys

2018-09-11 19:05 - 2018-08-12 16:31 - 001894496 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\tcpip.sys

2018-09-11 19:05 - 2018-08-12 16:31 - 000289376 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\FWPKCLNT.SYS

2018-09-11 19:05 - 2018-08-10 11:59 - 005552816 _____ (Microsoft Corporation) C:\\Windows\\system32\\ntoskrnl.exe

2018-09-11 19:05 - 2018-08-10 11:59 - 000154800 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\ksecpkg.sys

2018-09-11 19:05 - 2018-08-10 11:58 - 000385120 _____ (Adobe Systems Incorporated) C:\\Windows\\system32\\atmfd.dll

2018-09-11 19:05 - 2018-08-10 11:58 - 000263776 _____ (Microsoft Corporation) C:\\Windows\\system32\\hal.dll

2018-09-11 19:05 - 2018-08-10 11:58 - 000096864 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\ksecdd.sys

2018-09-11 19:05 - 2018-08-10 11:57 - 000708272 _____ (Microsoft Corporation) C:\\Windows\\system32\\winload.efi

2018-09-11 19:05 - 2018-08-10 11:57 - 000631624 _____ (Microsoft Corporation) C:\\Windows\\system32\\winresume.efi

2018-09-11 19:05 - 2018-08-10 11:56 - 001664296 _____ (Microsoft Corporation) C:\\Windows\\system32\\ntdll.dll

2018-09-11 19:05 - 2018-08-10 11:55 - 000152064 _____ (Microsoft Corporation) C:\\Windows\\system32\\t2embed.dll

2018-09-11 19:05 - 2018-08-10 11:54 - 001211904 _____ (Microsoft Corporation) C:\\Windows\\system32\\rpcrt4.dll

2018-09-11 19:05 - 2018-08-10 11:53 - 000463872 _____ (Microsoft Corporation) C:\\Windows\\system32\\certcli.dll

2018-09-11 19:05 - 2018-08-10 11:45 - 004054192 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ntkrnlpa.exe

2018-09-11 19:05 - 2018-08-10 11:45 - 000309424 _____ (Adobe Systems Incorporated) C:\\Windows\\SysWOW64\\atmfd.dll

2018-09-11 19:05 - 2018-08-10 11:44 - 003961440 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ntoskrnl.exe

2018-09-11 19:05 - 2018-08-10 11:42 - 001315512 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ntdll.dll

2018-09-11 19:05 - 2018-08-10 11:41 - 000111616 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\t2embed.dll

2018-09-11 19:05 - 2018-08-10 11:40 - 000342528 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\certcli.dll

2018-09-11 19:05 - 2018-08-10 11:27 - 000077312 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\mpsdrv.sys

2018-09-11 19:05 - 2018-08-10 11:17 - 000338432 _____ (Microsoft Corporation) C:\\Windows\\system32\\conhost.exe

2018-09-11 19:05 - 2018-08-10 11:17 - 000296960 _____ (Microsoft Corporation) C:\\Windows\\system32\\rstrui.exe

2018-09-11 19:05 - 2018-08-10 11:13 - 000129536 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\mrxsmb20.sys

2018-09-11 19:05 - 2018-07-29 11:55 - 001110528 _____ (Microsoft Corporation) C:\\Windows\\system32\\schedsvc.dll

2018-09-11 19:05 - 2018-07-18 11:18 - 000090112 _____ (Microsoft Corporation) C:\\Windows\\system32\\Drivers\\bowser.sys

2018-09-11 19:04 - 2018-08-23 18:56 - 002724864 _____ (Microsoft Corporation) C:\\Windows\\system32\\mshtml.tlb

2018-09-11 19:04 - 2018-08-23 18:56 - 000004096 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieetwcollectorres.dll

2018-09-11 19:04 - 2018-08-23 18:45 - 002902016 _____ (Microsoft Corporation) C:\\Windows\\system32\\iertutil.dll

2018-09-11 19:04 - 2018-08-23 18:44 - 000066560 _____ (Microsoft Corporation) C:\\Windows\\system32\\iesetup.dll

2018-09-11 19:04 - 2018-08-23 18:43 - 000576512 _____ (Microsoft Corporation) C:\\Windows\\system32\\vbscript.dll

2018-09-11 19:04 - 2018-08-23 18:43 - 000417280 _____ (Microsoft Corporation) C:\\Windows\\system32\\html.iec

2018-09-11 19:04 - 2018-08-23 18:43 - 000088064 _____ (Microsoft Corporation) C:\\Windows\\system32\\MshtmlDac.dll

2018-09-11 19:04 - 2018-08-23 18:43 - 000048640 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieetwproxystub.dll

2018-09-11 19:04 - 2018-08-23 18:37 - 000054784 _____ (Microsoft Corporation) C:\\Windows\\system32\\jsproxy.dll

2018-09-11 19:04 - 2018-08-23 18:36 - 000034304 _____ (Microsoft Corporation) C:\\Windows\\system32\\iernonce.dll

2018-09-11 19:04 - 2018-08-23 18:34 - 000615936 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieui.dll

2018-09-11 19:04 - 2018-08-23 18:33 - 000814080 _____ (Microsoft Corporation) C:\\Windows\\system32\\jscript9diag.dll

2018-09-11 19:04 - 2018-08-23 18:33 - 000794624 _____ (Microsoft Corporation) C:\\Windows\\system32\\jscript.dll

2018-09-11 19:04 - 2018-08-23 18:33 - 000144384 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieUnatt.exe

2018-09-11 19:04 - 2018-08-23 18:33 - 000116224 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieetwcollector.exe

2018-09-11 19:04 - 2018-08-23 18:24 - 000489984 _____ (Microsoft Corporation) C:\\Windows\\system32\\dxtmsft.dll

2018-09-11 19:04 - 2018-08-23 18:19 - 000077824 _____ (Microsoft Corporation) C:\\Windows\\system32\\JavaScriptCollectionAgent.dll

2018-09-11 19:04 - 2018-08-23 18:18 - 000087552 _____ (Microsoft Corporation) C:\\Windows\\system32\\tdc.ocx

2018-09-11 19:04 - 2018-08-23 18:17 - 000107520 _____ (Microsoft Corporation) C:\\Windows\\system32\\inseng.dll

2018-09-11 19:04 - 2018-08-23 18:15 - 000199680 _____ (Microsoft Corporation) C:\\Windows\\system32\\msrating.dll

2018-09-11 19:04 - 2018-08-23 18:15 - 000092160 _____ (Microsoft Corporation) C:\\Windows\\system32\\mshtmled.dll

2018-09-11 19:04 - 2018-08-23 18:13 - 000315392 _____ (Microsoft Corporation) C:\\Windows\\system32\\dxtrans.dll

2018-09-11 19:04 - 2018-08-23 18:12 - 000152064 _____ (Microsoft Corporation) C:\\Windows\\system32\\occache.dll

2018-09-11 19:04 - 2018-08-23 18:03 - 000262144 _____ (Microsoft Corporation) C:\\Windows\\system32\\webcheck.dll

2018-09-11 19:04 - 2018-08-23 18:01 - 000809472 _____ (Microsoft Corporation) C:\\Windows\\system32\\msfeeds.dll

2018-09-11 19:04 - 2018-08-23 18:01 - 000728064 _____ (Microsoft Corporation) C:\\Windows\\system32\\ie4uinit.exe

2018-09-11 19:04 - 2018-08-23 18:00 - 015283712 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieframe.dll

2018-09-11 19:04 - 2018-08-23 17:59 - 002136064 _____ (Microsoft Corporation) C:\\Windows\\system32\\inetcpl.cpl

2018-09-11 19:04 - 2018-08-23 17:59 - 001359360 _____ (Microsoft Corporation) C:\\Windows\\system32\\mshtmlmedia.dll

2018-09-11 19:04 - 2018-08-23 17:52 - 004510720 _____ (Microsoft Corporation) C:\\Windows\\system32\\wininet.dll

2018-09-11 19:04 - 2018-08-23 17:28 - 000800768 _____ (Microsoft Corporation) C:\\Windows\\system32\\ieapfltr.dll

2018-09-11 19:04 - 2018-08-23 17:25 - 002724864 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\mshtml.tlb

2018-09-11 19:04 - 2018-08-23 17:15 - 000497664 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\vbscript.dll

2018-09-11 19:04 - 2018-08-23 17:14 - 000341504 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\html.iec

2018-09-11 19:04 - 2018-08-23 17:14 - 000062464 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\iesetup.dll

2018-09-11 19:04 - 2018-08-23 17:14 - 000047616 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ieetwproxystub.dll

2018-09-11 19:04 - 2018-08-23 17:13 - 000064000 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\MshtmlDac.dll

2018-09-11 19:04 - 2018-08-23 17:12 - 002295808 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\iertutil.dll

2018-09-11 19:04 - 2018-08-23 17:09 - 000047104 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\jsproxy.dll

2018-09-11 19:04 - 2018-08-23 17:09 - 000030720 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\iernonce.dll

2018-09-11 19:04 - 2018-08-23 17:07 - 000476160 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ieui.dll

2018-09-11 19:04 - 2018-08-23 17:06 - 000620032 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\jscript9diag.dll

2018-09-11 19:04 - 2018-08-23 17:06 - 000115712 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ieUnatt.exe

2018-09-11 19:04 - 2018-08-23 17:00 - 000416256 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\dxtmsft.dll

2018-09-11 19:04 - 2018-08-23 16:56 - 000073216 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\tdc.ocx

2018-09-11 19:04 - 2018-08-23 16:56 - 000060416 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\JavaScriptCollectionAgent.dll

2018-09-11 19:04 - 2018-08-23 16:55 - 000091136 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\inseng.dll

2018-09-11 19:04 - 2018-08-23 16:54 - 000168960 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msrating.dll

2018-09-11 19:04 - 2018-08-23 16:53 - 000076288 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\mshtmled.dll

2018-09-11 19:04 - 2018-08-23 16:52 - 000279040 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\dxtrans.dll

2018-09-11 19:04 - 2018-08-23 16:51 - 000130048 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\occache.dll

2018-09-11 19:04 - 2018-08-23 16:48 - 013679616 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ieframe.dll

2018-09-11 19:04 - 2018-08-23 16:46 - 000230400 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\webcheck.dll

2018-09-11 19:04 - 2018-08-23 16:44 - 002059776 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\inetcpl.cpl

2018-09-11 19:04 - 2018-08-23 16:44 - 001155072 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\mshtmlmedia.dll

2018-09-11 19:04 - 2018-08-23 16:44 - 000696320 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msfeeds.dll

2018-09-11 19:04 - 2018-08-23 16:30 - 004037632 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\wininet.dll

2018-09-11 19:04 - 2018-08-23 16:24 - 000710144 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ieapfltr.dll

2018-09-11 19:04 - 2018-08-13 11:54 - 000008192 _____ (Microsoft Corporation) C:\\Windows\\system32\\msimg32.dll

2018-09-11 19:04 - 2018-08-13 11:54 - 000002048 _____ (Microsoft Corporation) C:\\Windows\\system32\\msxml6r.dll

2018-09-11 19:04 - 2018-08-13 11:54 - 000002048 _____ (Microsoft Corporation) C:\\Windows\\system32\\msxml3r.dll

2018-09-11 19:04 - 2018-08-13 11:53 - 001867776 _____ (Microsoft Corporation) C:\\Windows\\system32\\ExplorerFrame.dll

2018-09-11 19:04 - 2018-08-13 11:40 - 001499648 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\ExplorerFrame.dll

2018-09-11 19:04 - 2018-08-13 11:40 - 000004608 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msimg32.dll

2018-09-11 19:04 - 2018-08-13 11:40 - 000002048 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msxml6r.dll

2018-09-11 19:04 - 2018-08-13 11:40 - 000002048 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\msxml3r.dll

2018-09-11 19:04 - 2018-08-12 16:28 - 000018944 _____ (Microsoft Corporation) C:\\Windows\\system32\\netevent.dll

2018-09-11 19:04 - 2018-08-12 16:14 - 000018944 _____ (Microsoft Corporation) C:\\Windows\\SysWOW64\\netevent.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000503808 _____ (Microsoft Corporation) C:\\Windows\\system32\\srcore.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000361984 _____ (Microsoft Corporation) C:\\Windows\\system32\\wow64win.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000243712 _____ (Microsoft Corporation) C:\\Windows\\system32\\wow64.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000215552 _____ (Microsoft Corporation) C:\\Windows\\system32\\winsrv.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000210432 _____ (Microsoft Corporation) C:\\Windows\\system32\\wdigest.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000135680 _____ (Microsoft Corporation) C:\\Windows\\system32\\sspicli.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000094208 _____ (Microsoft Corporation) C:\\Windows\\system32\\TSpkg.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000050176 _____ (Microsoft Corporation) C:\\Windows\\system32\\srclient.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000028672 _____ (Microsoft Corporation) C:\\Windows\\system32\\sspisrv.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000022528 _____ (Microsoft Corporation) C:\\Windows\\system32\\wfapigp.dll

2018-09-11 19:04 - 2018-08-10 11:55 - 000013312 _____ (Microsoft Corporation) C:\\Windows\\system32\\wow64cpu.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 001461760 _____ (Microsoft Corporation) C:\\Windows\\system32\\lsasrv.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 001163264 _____ (Microsoft Corporation) C:\\Windows\\system32\\kernel32.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000828928 _____ (Microsoft Corporation) C:\\Windows\\system32\\MPSSVC.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000749568 _____ (Microsoft Corporation) C:\\Windows\\system32\\FirewallAPI.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000731648 _____ (Microsoft Corporation) C:\\Windows\\system32\\kerberos.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000419840 _____ (Microsoft Corporation) C:\\Windows\\system32\\KernelBase.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000345600 _____ (Microsoft Corporation) C:\\Windows\\system32\\schannel.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000316928 _____ (Microsoft Corporation) C:\\Windows\\system32\\msv1_0.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000312320 _____ (Microsoft Corporation) C:\\Windows\\system32\\ncrypt.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000190464 _____ (Microsoft Corporation) C:\\Windows\\system32\\rpchttp.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000146432 _____ (Microsoft Corporation) C:\\Windows\\system32\\msaudite.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000108544 _____ (Microsoft Corporation) C:\\Windows\\system32\\icfupgd.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000100864 _____ (Microsoft Corporation) C:\\Windows\\system32\\fontsub.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000063488 _____ (Microsoft Corporation) C:\\Windows\\system32\\setbcdlocale.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000060416 _____ (Microsoft Corporation) C:\\Windows\\system32\\msobjs.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000041472 _____ (Microsoft Corporation) C:\\Windows\\system32\\lpk.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000028160 _____ (Microsoft Corporation) C:\\Windows\\system32\\secur32.dll

2018-09-11 19:04 - 2018-08-10 11:54 - 000016384 _____ (Microsoft Corporation) C:\\Windows\\system32\\ntvdm64.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000880640 _____ (Microsoft Corporation) C:\\Windows\\system32\\advapi32.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000690688 _____ (Microsoft Corporation) C:\\Windows\\system32\\adtschema.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000123904 _____ (Microsoft Corporation) C:\\Windows\\system32\\bcrypt.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000059904 _____ (Microsoft Corporation) C:\\Windows\\system32\\appidapi.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000046080 _____ (Adobe Systems) C:\\Windows\\system32\\atmlib.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000044032 _____ (Microsoft Corporation) C:\\Windows\\system32\\csrsrv.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000043520 _____ (Microsoft Corporation) C:\\Windows\\system32\\cryptbase.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000034816 _____ (Microsoft Corporation) C:\\Windows\\system32\\appidsvc.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000022016 _____ (Microsoft Corporation) C:\\Windows\\system32\\credssp.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000014336 _____ (Microsoft Corporation) C:\\Windows\\system32\\dciman32.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000006656 _____ (Microsoft Corporation) C:\\Windows\\system32\\apisetschema.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000006144 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-security-base-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000005120 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-file-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004608 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-threadpool-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004608 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-processthreads-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004096 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-sysinfo-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004096 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-synch-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004096 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-localregistry-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000004096 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-localization-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-rtlsupport-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-processenvironment-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-namedpipe-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-misc-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-memory-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-libraryloader-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003584 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-heap-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003072 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-xstate-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003072 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-util-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003072 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-string-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003072 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-profile-l1-1-0.dll

2018-09-11 19:04 - 2018-08-10 11:53 - 000003072 ____H (Microsoft Corporation) C:\\Windows\\system32\\api-ms-win-core-io-l1-1-0.dll

2018-09-11 19:04 - 20