FireFox:
========
FF DefaultProfile: m786g6em.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\m786g6em.default [2020-06-12]
FF NewTab: Mozilla\Firefox\Profiles\m786g6em.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2019-12-06 10:48:11&bName=&bitmask=0600
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release [2021-02-26]
FF Homepage: Mozilla\Firefox\Profiles\0g1pbg6h.default-release -> hxxps://www.google.ca/?gws_rd=ssl
FF NewTab: Mozilla\Firefox\Profiles\0g1pbg6h.default-release -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2019-12-06 10:48:11&bName=&bitmask=0600
FF Extension: (Grammarly for Firefox) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\87677a2c52b84ad3a151a4a72f5bd3c4@jetpack.xpi [2021-02-23]
FF Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\@windscribeff.xpi [2021-02-08]
FF Extension: (AdBlocker Ultimate) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2020-12-08]
FF Extension: (Bitdefender Anti-tracker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\bdtbe@bitdefender.com.xpi [2020-09-18] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF Extension: (Honey) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\jid1-93CWPmRbVPjRQA@jetpack.xpi [2020-10-29]
FF Extension: (Twitch Channel Points Autoclicker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\{3c9b993f-29b9-44c2-a913-def7b93a70b1}.xpi [2020-08-08]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
Chrome:
=======
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2021-02-05]
CHR DefaultSearchURL: Default -> hxxps://q.eadblock.com/?vnd=1&q={searchTerms}
CHR DefaultSearchKeyword: Default -> q.eadblock.com
CHR Extension: (eAdBlock Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojhhmecfdlobchoejlbonoabacfnaap [2020-02-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-03]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
Opera:
=======
OPR Profile: C:\Users\User\AppData\Roaming\Opera Software\Opera Stable [2021-02-05]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-12-22]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8477080 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [621728 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [351848 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [58048 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8402648 2020-01-13] (BattlEye Innovations e.K. -> )
S3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe [6950256 2018-11-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2021-01-07] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA)
S4 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1325352 2017-05-15] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\AppHelperCap.exe [693760 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\NetworkCap.exe [692736 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPOmenCap; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_b6eaa96b215eb9da\x64\OmenCap.exe [523544 2020-06-14] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\SysInfoCap.exe [693760 2021-01-06] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f98b15466093b28e\x64\TouchpointAnalyticsClientService.exe [479504 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [621568 2017-06-27] (HP Inc.) [File not signed]
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10496928 2021-02-24] (Logitech Inc -> Logitech, Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2533952 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3479624 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 RtkBtAudioServ; C:\Windows\RtkBtAudioServ.exe [198512 2019-12-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesUpdateService.exe [32648 2021-01-20] (SteelSeries ApS -> )
R2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [350712 2020-06-22] (Kristjan Skutta -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-11] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [36792 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [208672 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [332880 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [247888 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [97360 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S0 aswElam; C:\Windows\System32\drivers\aswElam.sys [16832 2021-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42424 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [176384 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [522480 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [108928 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84496 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851256 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [468888 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [214808 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [324904 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30264 2020-01-30] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtultrausbbus; C:\Windows\System32\drivers\dtultrausbbus.sys [47672 2020-01-30] (Disc Soft Ltd -> Disc Soft Ltd)
R3 HPCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [33352 2018-12-18] (HP Inc. -> HP Inc.)
R3 HPOmenCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [33464 2018-12-19] (HP Inc. -> HP Inc.)
R2 HpPortIo; C:\Windows\System32\drivers\HpPortIox64.sys [31488 2020-09-18] (HP Inc. -> )
R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [25448 2021-02-24] (Logitech Inc. -> Logitech)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44096 2021-02-24] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [38136 2019-06-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [26672 2020-05-21] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66808 2019-06-04] (Logitech Inc -> Logitech)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
R1 rtf64; C:\Windows\system32\DRIVERS\rtf64x64.sys [70560 2020-09-18] (Realtek Semiconductor Corp. -> Realtek)
R3 RtkA2dp; C:\Windows\System32\drivers\RtkA2dp.sys [217032 2019-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RtkAvrcp; C:\Windows\System32\drivers\RtkAvrcp.sys [96984 2019-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-19] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tap-tb-0901; C:\Windows\System32\drivers\tap-tb-0901.sys [38656 2019-06-19] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901cn; C:\Windows\System32\drivers\tap0901cn.sys [47448 2020-07-09] (Connectify (Connectify, Inc.) -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 tap_ovpnconnect; C:\Windows\System32\drivers\tap_ovpnconnect.sys [40128 2020-08-21] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tesrsdt; C:\WINDOWS\system32\drivers\tesrsdt.sys [442128 2019-10-26] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 TesSafe; C:\WINDOWS\system32\TesSafe.sys [555064 2019-10-26] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2019-04-03] (Apple, Inc.) [File not signed]
R3 ViGEmBus; C:\Windows\System32\DriverStore\FileRepository\vigembus.inf_amd64_e84845c70c38fbe7\x64\ViGEmBus.sys [74648 2018-08-01] (HP Inc. -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49552 2021-02-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [419040 2021-02-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-11] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Program Files (x86)\AnVir Task Manager Free\OpenHardwareMonitor\OpenHardwareMonitorLib.sys [14544 2021-02-26] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
S3 cpuz150; \??\C:\Windows\temp\cpuz150\cpuz150_x64.sys [X]
U4 npcap_wifi; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-26 04:36 - 2021-02-26 04:36 - 000013770 _____ C:\Users\User\Desktop\FRST.txt
2021-02-26 04:30 - 2021-02-26 04:36 - 000000000 ____D C:\FRST
2021-02-26 04:30 - 2021-02-26 04:30 - 000000000 ____D C:\Users\User\AppData\Roaming\Avast Software
2021-02-26 04:29 - 2021-02-26 04:30 - 002301440 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2021-02-26 04:29 - 2021-02-26 04:29 - 000851256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000522480 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000468888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000340576 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2021-02-26 04:29 - 2021-02-26 04:29 - 000332880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000324904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000247888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000214808 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000208672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000176384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000108928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000097360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000084496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000042424 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000036792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000016832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2021-02-26 04:29 - 2021-02-26 04:29 - 000001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000001974 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000001974 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Program Files\Avast Software
2021-02-26 04:28 - 2021-02-26 04:30 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-26 04:28 - 2021-02-26 04:28 - 531178792 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_offline.exe
2021-02-26 04:21 - 2021-02-26 04:21 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-02-26 04:21 - 2021-02-26 04:21 - 000000650 _____ C:\ProgramData\Desktop\Logitech G HUB.lnk
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Windows\LastGood
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Program Files\LGHUB
2021-02-25 17:55 - 2021-02-25 17:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-24 01:12 - 2021-02-24 01:12 - 004451384 _____ (Logitech) C:\Windows\system32\logi_audio_headset_render_apo.dll
2021-02-24 01:12 - 2021-02-24 01:12 - 002174656 _____ (Logitech) C:\Windows\system32\logi_audio_headset_capture_apo.dll
2021-02-23 02:20 - 2021-02-23 02:20 - 000000314 _____ C:\Users\User\Desktop\Fortnite.url
2021-02-18 22:45 - 2021-02-18 22:45 - 027255216 _____ (Acresso Software Inc.) C:\Users\User\Downloads\InstallWizard101.exe
2021-02-18 20:53 - 2021-02-18 20:53 - 000000009 _____ C:\Users\User\Desktop\EI.txt
2021-02-12 18:30 - 2021-02-12 18:30 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-02-12 18:30 - 2021-02-12 18:30 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth18.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth17.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth16.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth15.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2021-02-12 18:29 - 2021-02-12 18:29 - 000232752 _____ C:\Windows\system32\containerdevicemanagement.dll
2021-02-07 16:29 - 2021-02-07 20:29 - 000000000 ____D C:\Program Files (x86)\Overwolf
2021-02-07 16:29 - 2021-02-07 16:29 - 000002173 _____ C:\Users\User\Desktop\CurseForge.lnk
2021-02-07 16:28 - 2021-02-07 16:28 - 001386784 _____ (Overwolf Ltd.) C:\Users\User\Downloads\CurseForge - LP-Installer.exe
2021-02-05 20:38 - 2021-02-05 20:38 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
2021-02-05 20:38 - 2021-02-05 20:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
2021-02-05 20:33 - 2021-02-05 20:50 - 000000000 ____D C:\Users\User\AppData\Local\AnVir
2021-02-05 20:33 - 2021-02-05 20:34 - 000003220 _____ C:\Windows\system32\Tasks\AnVir Task Manager
2021-02-05 20:33 - 2021-02-05 20:33 - 004450288 _____ C:\Users\User\Downloads\taskfree.exe
2021-02-05 20:33 - 2021-02-05 20:33 - 000003366 _____ C:\Windows\system32\Tasks\Anvirlauncher
2021-02-05 20:33 - 2021-02-05 20:33 - 000001189 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\AnVir Task Manager Free.lnk
2021-02-05 20:33 - 2021-02-05 20:33 - 000001165 _____ C:\Users\User\Desktop\AnVir Task Manager Free.lnk
2021-02-05 20:33 - 2021-02-05 20:33 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnVir Task Manager Free
2021-02-05 20:33 - 2021-02-05 20:33 - 000000000 ____D C:\Program Files (x86)\AnVir Task Manager Free
2021-02-05 20:14 - 2021-02-05 20:14 - 004863280 _____ C:\Users\User\Downloads\SystemMechanicStd_DM.exe
2021-02-05 20:10 - 2021-02-05 20:10 - 000585912 _____ C:\Users\User\Downloads\smfree_dm.exe
2021-02-05 20:10 - 2021-02-05 20:10 - 000074703 _____ C:\Windows\SysWOW64\mfc45.dll
2021-02-05 20:10 - 2021-02-05 20:10 - 000000000 ____D C:\Users\User\AppData\Roaming\iolo
2021-02-04 19:38 - 2021-02-04 19:38 - 000001198 _____ C:\Users\Public\Desktop\Apex Legends.lnk
2021-02-04 19:38 - 2021-02-04 19:38 - 000001198 _____ C:\ProgramData\Desktop\Apex Legends.lnk
2021-02-04 19:38 - 2021-02-04 19:38 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2021-02-04 19:24 - 2021-02-06 20:51 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-02-04 19:22 - 2021-02-23 14:40 - 000000000 ____D C:\Program Files (x86)\Origin
2021-02-04 19:22 - 2021-02-04 19:22 - 000001065 _____ C:\Users\Public\Desktop\Origin.lnk
2021-02-04 19:22 - 2021-02-04 19:22 - 000001065 _____ C:\ProgramData\Desktop\Origin.lnk
2021-02-04 19:22 - 2021-02-04 19:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2021-02-04 19:21 - 2021-02-07 16:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Origin
2021-02-04 19:21 - 2021-02-06 20:51 - 000000000 ____D C:\Users\User\AppData\Local\Origin
2021-02-04 19:21 - 2021-02-04 19:21 - 069192266 _____ (Electronic Arts) C:\Users\User\Downloads\ApexLegendsInstaller.exe
2021-02-01 20:46 - 2021-02-01 20:46 - 000001062 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2021-02-01 20:46 - 2021-02-01 20:46 - 000001062 _____ C:\ProgramData\Desktop\World of Warcraft.lnk
2021-02-01 20:46 - 2021-02-01 20:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2021-02-01 20:44 - 2021-02-04 06:02 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2021-02-01 20:07 - 2021-02-01 20:07 - 004950512 _____ (Blizzard Entertainment) C:\Users\User\Downloads\World-of-Warcraft-Setup.exe
2021-01-30 19:17 - 2021-01-30 19:17 - 000000000 ____D C:\Users\User\AppData\Roaming\twitch-desktop-electron-platform
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-26 04:29 - 2019-03-19 00:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-02-26 04:27 - 2019-07-11 20:36 - 000936976 _____ C:\Windows\system32\PerfStringBackup.INI
2021-02-26 04:27 - 2019-03-19 00:50 - 000000000 ____D C:\Windows\INF
2021-02-26 04:24 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\AppReadiness
2021-02-26 04:22 - 2019-11-23 12:11 - 000000000 ____D C:\Users\User\AppData\Local\LGHUB
2021-02-26 04:22 - 2019-06-04 22:21 - 000000000 ____D C:\Users\User\AppData\Roaming\LGHUB
2021-02-26 04:21 - 2019-07-11 20:38 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-02-26 04:21 - 2019-06-04 22:20 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-26 04:21 - 2019-05-28 15:53 - 000000000 ____D C:\ProgramData\NVIDIA
2021-02-26 04:21 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-26 04:20 - 2019-06-11 00:50 - 000000000 ____D C:\Users\User\AppData\Roaming\Discord
2021-02-26 04:20 - 2019-03-19 00:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-02-26 04:20 - 2019-03-19 00:37 - 000786432 _____ C:\Windows\system32\config\BBI
2021-02-26 04:19 - 2019-05-28 16:55 - 000000000 ____D C:\Users\User\AppData\Local\Packages
2021-02-26 04:18 - 2019-03-19 00:52 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-26 04:15 - 2019-05-28 15:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2021-02-26 04:15 - 2019-05-28 15:52 - 000000000 ____D C:\Program Files (x86)\Intel
2021-02-26 04:15 - 2017-09-25 06:19 - 000000000 ____D C:\ProgramData\Package Cache
2021-02-26 03:54 - 2019-07-11 20:24 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-02-25 04:51 - 2019-06-07 01:48 - 000000000 ____D C:\ProgramData\Riot Games
2021-02-24 01:12 - 2019-10-05 16:56 - 000044096 _____ (Logitech) C:\Windows\system32\Drivers\logi_audio_surround.sys
2021-02-23 01:42 - 2020-12-25 02:31 - 000000000 ____D C:\Program Files\Epic Games
2021-02-23 01:39 - 2019-03-19 00:37 - 000000000 ____D C:\Windows\CbsTemp
2021-02-19 15:32 - 2020-09-21 04:20 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 15:07 - 2020-07-07 17:13 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-19 15:07 - 2020-07-07 17:13 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-02-19 15:07 - 2020-07-07 17:13 - 000002283 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-02-18 20:50 - 2019-06-07 02:04 - 000000000 ____D C:\Users\User\AppData\Roaming\NexonLauncher
2021-02-18 19:35 - 2019-06-04 22:55 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2021-02-14 19:12 - 2020-02-11 19:07 - 000485336 _____ C:\Windows\system32\FNTCACHE.DAT
2021-02-14 19:12 - 2019-07-11 20:40 - 000000000 ___RD C:\Users\User\3D Objects
2021-02-14 19:12 - 2017-03-17 23:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\SystemResources
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\oobe
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\es-MX
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\Dism
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\ShellExperiences
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\bcastdvr
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 21:53 - 2020-04-24 17:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2021-02-12 21:53 - 2019-07-11 20:43 - 001615824 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2021-02-12 21:52 - 2019-12-12 00:30 - 000198088 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2021-02-12 21:52 - 2019-10-10 19:45 - 000038352 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe
2021-02-12 21:52 - 2019-07-11 20:43 - 000167368 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll
2021-02-12 21:52 - 2019-07-11 20:43 - 000159176 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2021-02-12 18:31 - 2019-03-19 02:20 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2021-02-12 18:31 - 2019-03-19 02:20 - 000019469 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2021-02-11 18:17 - 2019-07-11 20:38 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-02-11 00:49 - 2020-07-07 17:13 - 000003480 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-11 00:49 - 2020-07-07 17:13 - 000003356 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-10 16:44 - 2020-12-22 22:11 - 000004202 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1608689482
2021-02-10 16:44 - 2020-12-22 22:11 - 000001405 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2021-02-10 08:06 - 2019-06-05 00:35 - 000000000 ____D C:\Windows\system32\MRT
2021-02-10 08:05 - 2019-06-05 00:35 - 130141752 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-02-08 08:41 - 2019-07-11 20:38 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1957907147-79231427-402788363-1001
2021-02-08 08:41 - 2019-07-11 20:08 - 000002363 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-08 08:41 - 2019-05-28 16:58 - 000000000 ___RD C:\Users\User\OneDrive
2021-02-07 21:07 - 2020-10-29 15:11 - 000000000 ____D C:\Users\User\AppData\Local\Battle.net
2021-02-07 16:31 - 2020-07-25 00:29 - 000000000 ____D C:\ProgramData\Origin
2021-02-07 16:29 - 2020-10-06 23:49 - 000004382 _____ C:\Windows\system32\Tasks\Overwolf Updater Task
2021-02-07 16:29 - 2020-10-06 23:49 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2021-02-07 16:29 - 2020-10-06 23:48 - 000000000 ____D C:\Users\User\AppData\Local\Overwolf
2021-02-06 21:16 - 2019-07-12 16:25 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
2021-02-05 20:30 - 2020-09-21 04:20 - 000916288 _____ (Microsoft Corporation) C:\Windows\system32\sedplugins.dll
2021-02-05 20:30 - 2020-09-21 04:20 - 000437056 _____ (Microsoft Corporation) C:\Windows\system32\QualityUpdateAssistant.dll
2021-02-05 20:13 - 2019-12-17 22:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2021-02-05 20:13 - 2017-09-25 06:21 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2021-02-04 19:56 - 2020-10-14 01:45 - 000000000 ____D C:\Users\User\AppData\Roaming\Twitch
2021-02-04 19:55 - 2020-10-24 10:34 - 000000000 ____D C:\Users\User\AppData\Roaming\EasyAntiCheat
2021-02-04 07:23 - 2019-06-04 22:33 - 000000000 ____D C:\Program Files (x86)\Steam
2021-02-02 02:16 - 2020-09-18 07:32 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2021-02-01 20:44 - 2019-12-06 21:47 - 000000000 ____D C:\Users\User\AppData\Local\cache
2021-02-01 20:09 - 2020-10-29 15:10 - 000000000 ____D C:\Program Files (x86)\Battle.net
==================== Files in the root of some directories ========
2020-10-25 13:34 - 2020-10-25 14:13 - 000000128 _____ () C:\Users\User\AppData\Local\PUTTY.RND
2019-07-12 16:26 - 2021-01-02 00:28 - 000007600 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
========
FF DefaultProfile: m786g6em.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\m786g6em.default [2020-06-12]
FF NewTab: Mozilla\Firefox\Profiles\m786g6em.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2019-12-06 10:48:11&bName=&bitmask=0600
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release [2021-02-26]
FF Homepage: Mozilla\Firefox\Profiles\0g1pbg6h.default-release -> hxxps://www.google.ca/?gws_rd=ssl
FF NewTab: Mozilla\Firefox\Profiles\0g1pbg6h.default-release -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2019-12-06 10:48:11&bName=&bitmask=0600
FF Extension: (Grammarly for Firefox) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\87677a2c52b84ad3a151a4a72f5bd3c4@jetpack.xpi [2021-02-23]
FF Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\@windscribeff.xpi [2021-02-08]
FF Extension: (AdBlocker Ultimate) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2020-12-08]
FF Extension: (Bitdefender Anti-tracker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\bdtbe@bitdefender.com.xpi [2020-09-18] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF Extension: (Honey) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\jid1-93CWPmRbVPjRQA@jetpack.xpi [2020-10-29]
FF Extension: (Twitch Channel Points Autoclicker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0g1pbg6h.default-release\Extensions\{3c9b993f-29b9-44c2-a913-def7b93a70b1}.xpi [2020-08-08]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
Chrome:
=======
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2021-02-05]
CHR DefaultSearchURL: Default -> hxxps://q.eadblock.com/?vnd=1&q={searchTerms}
CHR DefaultSearchKeyword: Default -> q.eadblock.com
CHR Extension: (eAdBlock Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojhhmecfdlobchoejlbonoabacfnaap [2020-02-03]
CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-03]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
Opera:
=======
OPR Profile: C:\Users\User\AppData\Roaming\Opera Software\Opera Stable [2021-02-05]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-12-22]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8477080 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [621728 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [351848 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [58048 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8402648 2020-01-13] (BattlEye Innovations e.K. -> )
S3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe [6950256 2018-11-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2021-01-07] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA)
S4 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1325352 2017-05-15] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\AppHelperCap.exe [693760 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\NetworkCap.exe [692736 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPOmenCap; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_b6eaa96b215eb9da\x64\OmenCap.exe [523544 2020-06-14] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_5544a2e7dfd0f875\x64\SysInfoCap.exe [693760 2021-01-06] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f98b15466093b28e\x64\TouchpointAnalyticsClientService.exe [479504 2021-01-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [621568 2017-06-27] (HP Inc.) [File not signed]
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10496928 2021-02-24] (Logitech Inc -> Logitech, Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2533952 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3479624 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 RtkBtAudioServ; C:\Windows\RtkBtAudioServ.exe [198512 2019-12-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesUpdateService.exe [32648 2021-01-20] (SteelSeries ApS -> )
R2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [350712 2020-06-22] (Kristjan Skutta -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-11] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [36792 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [208672 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [332880 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [247888 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [97360 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S0 aswElam; C:\Windows\System32\drivers\aswElam.sys [16832 2021-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42424 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [176384 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [522480 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [108928 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84496 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851256 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [468888 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [214808 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [324904 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30264 2020-01-30] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtultrausbbus; C:\Windows\System32\drivers\dtultrausbbus.sys [47672 2020-01-30] (Disc Soft Ltd -> Disc Soft Ltd)
R3 HPCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [33352 2018-12-18] (HP Inc. -> HP Inc.)
R3 HPOmenCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [33464 2018-12-19] (HP Inc. -> HP Inc.)
R2 HpPortIo; C:\Windows\System32\drivers\HpPortIox64.sys [31488 2020-09-18] (HP Inc. -> )
R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [25448 2021-02-24] (Logitech Inc. -> Logitech)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44096 2021-02-24] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [38136 2019-06-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [26672 2020-05-21] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66808 2019-06-04] (Logitech Inc -> Logitech)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
R1 rtf64; C:\Windows\system32\DRIVERS\rtf64x64.sys [70560 2020-09-18] (Realtek Semiconductor Corp. -> Realtek)
R3 RtkA2dp; C:\Windows\System32\drivers\RtkA2dp.sys [217032 2019-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RtkAvrcp; C:\Windows\System32\drivers\RtkAvrcp.sys [96984 2019-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-19] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tap-tb-0901; C:\Windows\System32\drivers\tap-tb-0901.sys [38656 2019-06-19] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901cn; C:\Windows\System32\drivers\tap0901cn.sys [47448 2020-07-09] (Connectify (Connectify, Inc.) -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 tap_ovpnconnect; C:\Windows\System32\drivers\tap_ovpnconnect.sys [40128 2020-08-21] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tesrsdt; C:\WINDOWS\system32\drivers\tesrsdt.sys [442128 2019-10-26] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 TesSafe; C:\WINDOWS\system32\TesSafe.sys [555064 2019-10-26] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2019-04-03] (Apple, Inc.) [File not signed]
R3 ViGEmBus; C:\Windows\System32\DriverStore\FileRepository\vigembus.inf_amd64_e84845c70c38fbe7\x64\ViGEmBus.sys [74648 2018-08-01] (HP Inc. -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49552 2021-02-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [419040 2021-02-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-11] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Program Files (x86)\AnVir Task Manager Free\OpenHardwareMonitor\OpenHardwareMonitorLib.sys [14544 2021-02-26] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
S3 cpuz150; \??\C:\Windows\temp\cpuz150\cpuz150_x64.sys [X]
U4 npcap_wifi; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-26 04:36 - 2021-02-26 04:36 - 000013770 _____ C:\Users\User\Desktop\FRST.txt
2021-02-26 04:30 - 2021-02-26 04:36 - 000000000 ____D C:\FRST
2021-02-26 04:30 - 2021-02-26 04:30 - 000000000 ____D C:\Users\User\AppData\Roaming\Avast Software
2021-02-26 04:29 - 2021-02-26 04:30 - 002301440 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2021-02-26 04:29 - 2021-02-26 04:29 - 000851256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000522480 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000468888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000340576 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2021-02-26 04:29 - 2021-02-26 04:29 - 000332880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000324904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000247888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000214808 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000208672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000176384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000108928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000097360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000084496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000042424 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000036792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000016832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2021-02-26 04:29 - 2021-02-26 04:29 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2021-02-26 04:29 - 2021-02-26 04:29 - 000001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000001974 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000001974 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2021-02-26 04:29 - 2021-02-26 04:29 - 000000000 ____D C:\Program Files\Avast Software
2021-02-26 04:28 - 2021-02-26 04:30 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-26 04:28 - 2021-02-26 04:28 - 531178792 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_offline.exe
2021-02-26 04:21 - 2021-02-26 04:21 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-02-26 04:21 - 2021-02-26 04:21 - 000000650 _____ C:\ProgramData\Desktop\Logitech G HUB.lnk
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Windows\LastGood
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-02-26 04:21 - 2021-02-26 04:21 - 000000000 ____D C:\Program Files\LGHUB
2021-02-25 17:55 - 2021-02-25 17:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-24 01:12 - 2021-02-24 01:12 - 004451384 _____ (Logitech) C:\Windows\system32\logi_audio_headset_render_apo.dll
2021-02-24 01:12 - 2021-02-24 01:12 - 002174656 _____ (Logitech) C:\Windows\system32\logi_audio_headset_capture_apo.dll
2021-02-23 02:20 - 2021-02-23 02:20 - 000000314 _____ C:\Users\User\Desktop\Fortnite.url
2021-02-18 22:45 - 2021-02-18 22:45 - 027255216 _____ (Acresso Software Inc.) C:\Users\User\Downloads\InstallWizard101.exe
2021-02-18 20:53 - 2021-02-18 20:53 - 000000009 _____ C:\Users\User\Desktop\EI.txt
2021-02-12 18:30 - 2021-02-12 18:30 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-02-12 18:30 - 2021-02-12 18:30 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth18.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth17.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth16.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth15.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2021-02-12 18:30 - 2021-02-12 18:30 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2021-02-12 18:29 - 2021-02-12 18:29 - 000232752 _____ C:\Windows\system32\containerdevicemanagement.dll
2021-02-07 16:29 - 2021-02-07 20:29 - 000000000 ____D C:\Program Files (x86)\Overwolf
2021-02-07 16:29 - 2021-02-07 16:29 - 000002173 _____ C:\Users\User\Desktop\CurseForge.lnk
2021-02-07 16:28 - 2021-02-07 16:28 - 001386784 _____ (Overwolf Ltd.) C:\Users\User\Downloads\CurseForge - LP-Installer.exe
2021-02-05 20:38 - 2021-02-05 20:38 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
2021-02-05 20:38 - 2021-02-05 20:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
2021-02-05 20:33 - 2021-02-05 20:50 - 000000000 ____D C:\Users\User\AppData\Local\AnVir
2021-02-05 20:33 - 2021-02-05 20:34 - 000003220 _____ C:\Windows\system32\Tasks\AnVir Task Manager
2021-02-05 20:33 - 2021-02-05 20:33 - 004450288 _____ C:\Users\User\Downloads\taskfree.exe
2021-02-05 20:33 - 2021-02-05 20:33 - 000003366 _____ C:\Windows\system32\Tasks\Anvirlauncher
2021-02-05 20:33 - 2021-02-05 20:33 - 000001189 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\AnVir Task Manager Free.lnk
2021-02-05 20:33 - 2021-02-05 20:33 - 000001165 _____ C:\Users\User\Desktop\AnVir Task Manager Free.lnk
2021-02-05 20:33 - 2021-02-05 20:33 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnVir Task Manager Free
2021-02-05 20:33 - 2021-02-05 20:33 - 000000000 ____D C:\Program Files (x86)\AnVir Task Manager Free
2021-02-05 20:14 - 2021-02-05 20:14 - 004863280 _____ C:\Users\User\Downloads\SystemMechanicStd_DM.exe
2021-02-05 20:10 - 2021-02-05 20:10 - 000585912 _____ C:\Users\User\Downloads\smfree_dm.exe
2021-02-05 20:10 - 2021-02-05 20:10 - 000074703 _____ C:\Windows\SysWOW64\mfc45.dll
2021-02-05 20:10 - 2021-02-05 20:10 - 000000000 ____D C:\Users\User\AppData\Roaming\iolo
2021-02-04 19:38 - 2021-02-04 19:38 - 000001198 _____ C:\Users\Public\Desktop\Apex Legends.lnk
2021-02-04 19:38 - 2021-02-04 19:38 - 000001198 _____ C:\ProgramData\Desktop\Apex Legends.lnk
2021-02-04 19:38 - 2021-02-04 19:38 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2021-02-04 19:24 - 2021-02-06 20:51 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-02-04 19:22 - 2021-02-23 14:40 - 000000000 ____D C:\Program Files (x86)\Origin
2021-02-04 19:22 - 2021-02-04 19:22 - 000001065 _____ C:\Users\Public\Desktop\Origin.lnk
2021-02-04 19:22 - 2021-02-04 19:22 - 000001065 _____ C:\ProgramData\Desktop\Origin.lnk
2021-02-04 19:22 - 2021-02-04 19:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2021-02-04 19:21 - 2021-02-07 16:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Origin
2021-02-04 19:21 - 2021-02-06 20:51 - 000000000 ____D C:\Users\User\AppData\Local\Origin
2021-02-04 19:21 - 2021-02-04 19:21 - 069192266 _____ (Electronic Arts) C:\Users\User\Downloads\ApexLegendsInstaller.exe
2021-02-01 20:46 - 2021-02-01 20:46 - 000001062 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2021-02-01 20:46 - 2021-02-01 20:46 - 000001062 _____ C:\ProgramData\Desktop\World of Warcraft.lnk
2021-02-01 20:46 - 2021-02-01 20:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2021-02-01 20:44 - 2021-02-04 06:02 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2021-02-01 20:07 - 2021-02-01 20:07 - 004950512 _____ (Blizzard Entertainment) C:\Users\User\Downloads\World-of-Warcraft-Setup.exe
2021-01-30 19:17 - 2021-01-30 19:17 - 000000000 ____D C:\Users\User\AppData\Roaming\twitch-desktop-electron-platform
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-26 04:29 - 2019-03-19 00:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-02-26 04:27 - 2019-07-11 20:36 - 000936976 _____ C:\Windows\system32\PerfStringBackup.INI
2021-02-26 04:27 - 2019-03-19 00:50 - 000000000 ____D C:\Windows\INF
2021-02-26 04:24 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\AppReadiness
2021-02-26 04:22 - 2019-11-23 12:11 - 000000000 ____D C:\Users\User\AppData\Local\LGHUB
2021-02-26 04:22 - 2019-06-04 22:21 - 000000000 ____D C:\Users\User\AppData\Roaming\LGHUB
2021-02-26 04:21 - 2019-07-11 20:38 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-02-26 04:21 - 2019-06-04 22:20 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-26 04:21 - 2019-06-04 22:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-26 04:21 - 2019-05-28 15:53 - 000000000 ____D C:\ProgramData\NVIDIA
2021-02-26 04:21 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-26 04:20 - 2019-06-11 00:50 - 000000000 ____D C:\Users\User\AppData\Roaming\Discord
2021-02-26 04:20 - 2019-03-19 00:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-02-26 04:20 - 2019-03-19 00:37 - 000786432 _____ C:\Windows\system32\config\BBI
2021-02-26 04:19 - 2019-05-28 16:55 - 000000000 ____D C:\Users\User\AppData\Local\Packages
2021-02-26 04:18 - 2019-03-19 00:52 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-26 04:15 - 2019-05-28 15:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2021-02-26 04:15 - 2019-05-28 15:52 - 000000000 ____D C:\Program Files (x86)\Intel
2021-02-26 04:15 - 2017-09-25 06:19 - 000000000 ____D C:\ProgramData\Package Cache
2021-02-26 03:54 - 2019-07-11 20:24 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-02-25 04:51 - 2019-06-07 01:48 - 000000000 ____D C:\ProgramData\Riot Games
2021-02-24 01:12 - 2019-10-05 16:56 - 000044096 _____ (Logitech) C:\Windows\system32\Drivers\logi_audio_surround.sys
2021-02-23 01:42 - 2020-12-25 02:31 - 000000000 ____D C:\Program Files\Epic Games
2021-02-23 01:39 - 2019-03-19 00:37 - 000000000 ____D C:\Windows\CbsTemp
2021-02-19 15:32 - 2020-09-21 04:20 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 15:07 - 2020-07-07 17:13 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-19 15:07 - 2020-07-07 17:13 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-02-19 15:07 - 2020-07-07 17:13 - 000002283 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-02-18 20:50 - 2019-06-07 02:04 - 000000000 ____D C:\Users\User\AppData\Roaming\NexonLauncher
2021-02-18 19:35 - 2019-06-04 22:55 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2021-02-14 19:12 - 2020-02-11 19:07 - 000485336 _____ C:\Windows\system32\FNTCACHE.DAT
2021-02-14 19:12 - 2019-07-11 20:40 - 000000000 ___RD C:\Users\User\3D Objects
2021-02-14 19:12 - 2017-03-17 23:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\SystemResources
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\oobe
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\es-MX
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\system32\Dism
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\ShellExperiences
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Windows\bcastdvr
2021-02-14 19:11 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 21:53 - 2020-04-24 17:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2021-02-12 21:53 - 2019-07-11 20:43 - 001615824 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2021-02-12 21:52 - 2019-12-12 00:30 - 000198088 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2021-02-12 21:52 - 2019-10-10 19:45 - 000038352 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe
2021-02-12 21:52 - 2019-07-11 20:43 - 000167368 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll
2021-02-12 21:52 - 2019-07-11 20:43 - 000159176 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2021-02-12 18:31 - 2019-03-19 02:20 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2021-02-12 18:31 - 2019-03-19 02:20 - 000019469 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2021-02-11 18:17 - 2019-07-11 20:38 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-02-11 00:49 - 2020-07-07 17:13 - 000003480 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-11 00:49 - 2020-07-07 17:13 - 000003356 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-10 16:44 - 2020-12-22 22:11 - 000004202 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1608689482
2021-02-10 16:44 - 2020-12-22 22:11 - 000001405 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2021-02-10 08:06 - 2019-06-05 00:35 - 000000000 ____D C:\Windows\system32\MRT
2021-02-10 08:05 - 2019-06-05 00:35 - 130141752 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-02-08 08:41 - 2019-07-11 20:38 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1957907147-79231427-402788363-1001
2021-02-08 08:41 - 2019-07-11 20:08 - 000002363 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-08 08:41 - 2019-05-28 16:58 - 000000000 ___RD C:\Users\User\OneDrive
2021-02-07 21:07 - 2020-10-29 15:11 - 000000000 ____D C:\Users\User\AppData\Local\Battle.net
2021-02-07 16:31 - 2020-07-25 00:29 - 000000000 ____D C:\ProgramData\Origin
2021-02-07 16:29 - 2020-10-06 23:49 - 000004382 _____ C:\Windows\system32\Tasks\Overwolf Updater Task
2021-02-07 16:29 - 2020-10-06 23:49 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2021-02-07 16:29 - 2020-10-06 23:48 - 000000000 ____D C:\Users\User\AppData\Local\Overwolf
2021-02-06 21:16 - 2019-07-12 16:25 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
2021-02-05 20:30 - 2020-09-21 04:20 - 000916288 _____ (Microsoft Corporation) C:\Windows\system32\sedplugins.dll
2021-02-05 20:30 - 2020-09-21 04:20 - 000437056 _____ (Microsoft Corporation) C:\Windows\system32\QualityUpdateAssistant.dll
2021-02-05 20:13 - 2019-12-17 22:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2021-02-05 20:13 - 2017-09-25 06:21 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2021-02-04 19:56 - 2020-10-14 01:45 - 000000000 ____D C:\Users\User\AppData\Roaming\Twitch
2021-02-04 19:55 - 2020-10-24 10:34 - 000000000 ____D C:\Users\User\AppData\Roaming\EasyAntiCheat
2021-02-04 07:23 - 2019-06-04 22:33 - 000000000 ____D C:\Program Files (x86)\Steam
2021-02-02 02:16 - 2020-09-18 07:32 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2021-02-01 20:44 - 2019-12-06 21:47 - 000000000 ____D C:\Users\User\AppData\Local\cache
2021-02-01 20:09 - 2020-10-29 15:10 - 000000000 ____D C:\Program Files (x86)\Battle.net
==================== Files in the root of some directories ========
2020-10-25 13:34 - 2020-10-25 14:13 - 000000128 _____ () C:\Users\User\AppData\Local\PUTTY.RND
2019-07-12 16:26 - 2021-01-02 00:28 - 000007600 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================