Sorry for the delay
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-02-2022
Ran by Olivkittie (administrator) on DESKTOP-N6TFA54 (12-02-2022 17:29:20)
Running from C:\Users\Olivkittie\Downloads
Loaded Profiles: Olivkittie
Platform: Microsoft Windows 10 Pro Version 21H2 19044.1526 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\AutoHotkey\AutoHotkey.exe
(Adobe Inc. -> Adobe Systems Inc.) [File not signed] E:\Adobe everything\Acrobat DC\Acrobat\acrotray.exe
(Alexander Drozdov) [File not signed] D:\New folder (2)\Awakened PoE Trade\Awakened PoE Trade.exe <4>
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(BUREL VINCENT -> VB-AUDIO Software) C:\Program Files (x86)\VB\Voicemeeter\voicemeeterpro.exe
(Discord Inc. -> Discord Inc.) C:\Users\Olivkittie\AppData\Local\Discord\app-1.0.9003\Discord.exe <6>
(GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
(GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GWIdlMon.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <48>
(Guangzhou Ugee Computers Technology Co.,Ltd -> ) C:\Program Files\Pentablet\PenTablet.exe
(Guangzhou Ugee Computers Technology Co.,Ltd -> UGEE) C:\Program Files\Pentablet\PentabletService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Notion Labs, Inc. -> Notion Labs, Incorporated) C:\Users\Olivkittie\AppData\Local\Programs\Notion\Notion.exe <8>
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_015fa42d67826549\Display.NvContainer\NVDisplay.Container.exe <2>
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(Razer USA Ltd. -> Razer) C:\Program Files (x86)\Razer\RzUpdateEngineService\RzUpdateEngineService.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(Valve Corp. -> Valve Corporation) E:\Program Files\Steam2\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(Valve Corp. -> Valve Corporation) E:\Program Files\Steam2\steam.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2021-08-19] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [KeePass 2 PreLoad] => D:\KeePass Password Safe 2\KeePass.exe [3190384 2021-09-10] (Open Source Developer, Dominik Reichl -> Dominik Reichl)
HKLM\...\Run: [iTunesHelper] => E:\Program Files\iTunesHelper.exe [339000 2021-10-26] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [RZTHXHelper] => C:\WINDOWS\system32\RZTHXHelper.exe (No File)
HKLM\...\Run: [CL-26-F227840A-25B6-4AF8-B9AB-75F30F310594] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-26-F227840A-25B6-4AF8-B9AB-75F30F310594\setuplauncher.exe" /run:Installer.exe /args:"/setup-folder:"CL-26-F227840A-25B6-4AF8-B9AB-75F30F3 (the data entry has 7 more characters). (No File)
HKLM\...\Run: [PentabletService] => C:\Program Files\Pentablet\PentabletService.exe [198096 2017-09-05] (Guangzhou Ugee Computers Technology Co.,Ltd -> UGEE)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> )
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [114824 2020-06-05] (Adobe Inc. -> )
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => E:\Adobe everything\Acrobat DC\Acrobat\Acrotray.exe [5866032 2020-11-19] (Adobe Inc. -> Adobe Systems Inc.) [File not signed]
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Steam] => E:\Program Files\Steam2\steam.exe [4268456 2022-01-16] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Discord] => C:\Users\Olivkittie\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1087376 2022-01-15] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [electron.app.Descript] => C:\Users\Olivkittie\AppData\Local\Programs\Descript\Descript.exe [136710768 2021-10-18] (Descript, Inc. -> Descript, Inc.)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Overwolf] => D:\Overwolf\OverwolfLauncher.exe [1802072 2022-02-08] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Spotify] => C:\Users\Olivkittie\AppData\Roaming\Spotify\Spotify.exe [19347384 2022-02-07] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3524216 2021-12-09] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [RzAppEngine] => C:\Program Files\Razer\RzAppEngine\rzappengine.exe [1641840 2021-10-06] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\Run: [GlassWire] => C:\Program Files (x86)\GlassWire\glasswire.exe [9700808 2021-12-07] (GlassWire -> SecureMix LLC)
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\Razer\RzAppEngine\rzappengine.exe [1641840 2021-10-06] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3524216 2021-12-09] (Razer USA Ltd. -> Razer Inc.)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65496 2020-11-19] (Adobe Inc. -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-07] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\98.1.35.101\Installer\chrmstp.exe [2022-02-10] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
HKU\S-1-5-21-4101733155-2478866902-278870721-1001\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {005B1986-DCCF-4750-BDB8-492A9AACB527} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {01FD4D06-7C00-417A-808E-9F2EA14CA733} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-08-25] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {0887D366-E7D8-4412-8A60-FB8A45DCEE81} - System32\Tasks\Start FFXIV MarketSense on user {0} logon => C:\WINDOWS\system32\cmd.exe" "/c" start "" "C:\Program Files (x86)\Purveyor\FFXIV MarketSense\FFXIVMarketSense.exe" "minimized"
Task: {1454C1AD-097C-4456-891A-803FEB9F2821} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {17C0477F-74ED-4F63-8F57-89D1DBF914D3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {202E1453-CB6E-43E2-B56B-AD87D1892CB1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (No File)
Task: {2A9CB3E3-92FC-4F4A-AAEF-F4E760FE29CE} - System32\Tasks\Overwolf Updater Task => D:\Overwolf\OverwolfUpdater.exe [2539864 2022-02-08] (Overwolf Ltd -> Overwolf LTD)
Task: {31796D6F-6BFA-47F4-B179-0DBF042FCDBA} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {5A9DA939-214B-443B-998C-2C21AE24DCE3} - System32\Tasks\GoogleUpdateTaskMachineUA{11CA08C4-FF7A-46DE-941C-6885089ED7EF} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-07] (Google LLC -> Google LLC)
Task: {684A80EB-1EE4-4D23-A9B0-07CCCDBB859A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {8E1B0301-2355-4892-A15A-3FAB1F6CD420} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {9103D20D-7EB6-4E81-9289-C01E933524BE} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341312 2021-12-09] (Nvidia Corporation -> NVIDIA Corporation)
Task: {951D589B-DD4F-4103-9368-E898FC4B7672} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [1145 2020-12-04] () [File not signed]
Task: {A2FD1227-5099-4E0B-AD5F-70A2D0404729} - System32\Tasks\update-S-1-5-21-4101733155-2478866902-278870721-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {A465EA5B-1705-450B-8D44-8D534F2AF26C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {A9C8797B-49A6-423E-852B-E539D827921B} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {B5540F5E-045B-4501-BADD-7994F9F13893} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-08-25] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {C5C6A70D-321F-41E3-AAC3-4257D42023D5} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {C8127C89-0811-447B-8707-3F975CEE8E9D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {CF5997F1-FB4C-48D7-89A0-D77C00430233} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65448 2021-08-21] (Microsoft Corporation -> Microsoft)
Task: {DF67D757-1E0F-4DF5-B6CF-079BF9ED2B2C} - System32\Tasks\GoogleUpdateTaskMachineCore{EF74BF38-2925-40F5-88CD-8F96FF65D7BE} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-07] (Google LLC -> Google LLC)
Task: {E6F84AB8-C6E1-4A28-A736-B9F525EBDC5E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {F0AA9865-A421-48B5-BCBB-A60C0F884899} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649216 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {FE13C0CA-689E-4FAD-8B99-08710B2E1FB0} - System32\Tasks\Start FFXIV MarketSense on user Olivkittie logon => C:\WINDOWS\system32\cmd.exe" "/c" start "" "C:\Program Files (x86)\Purveyor\FFXIV MarketSense\FFXIVMarketSense.exe" "minimized"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\update-S-1-5-21-4101733155-2478866902-278870721-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{43658bb5-246d-4b69-9c39-63876f9ded2a}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{4d2d523d-4582-4517-b8b2-0e0c6e02f814}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Olivkittie\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-11]
FireFox:
========
FF HKLM\...\Firefox\Extensions: [
web2pdfextension.17@acrobat.adobe.com] - E:\Adobe everything\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - E:\Adobe everything\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-11-18]
FF HKLM-x32\...\Firefox\Extensions: [
web2pdfextension.17@acrobat.adobe.com] - E:\Adobe everything\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-09-20] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [No File]
FF Plugin-x32: Adobe Acrobat -> E:\Adobe everything\Acrobat DC\Acrobat\Air\nppdf32.dll [2020-11-19] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-09-20] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR Profile: C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default [2022-02-12]
CHR Extension: (Slides) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-02-07]
CHR Extension: (BetterTTV) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2022-02-11]
CHR Extension: (Rose) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aobcgffnbkbipbflopponndoiommhnch [2022-02-10]
CHR Extension: (Docs) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2022-02-07]
CHR Extension: (Google Drive) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-02-07]
CHR Extension: (YouTube) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-02-07]
CHR Extension: (PoE Impact Trading) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckfnddafphjahhiadjogilncdegmbpkm [2022-02-11]
CHR Extension: (Adblock for Youtube™) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2022-02-07]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-02-07]
CHR Extension: (Sheets) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-02-07]
CHR Extension: (Better PathOfExile Trading) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhlinfpmdlijegjlpgedcmglkakaghnk [2022-02-11]
CHR Extension: (Google Docs Offline) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-07]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-02-07]
CHR Extension: (Path of Exile Trade - Fuzzy Search) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkbkmkampdnnbehdldipgjhbablkmfba [2022-02-11]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-07]
CHR Extension: (Gmail) - C:\Users\Olivkittie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-02-07]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
Brave:
=======
BRA Profile: C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-02-10]
BRA Extension: (Safe Torrent Scanner) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-01-17]
BRA Extension: (BetterTTV) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2022-02-07]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-02-10]
BRA Extension: (Brave NTP background images) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-01-17]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2021-12-02]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-02-10]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\gccbbckogglekeggclmmekihdgdpdgoe [2022-02-10]
BRA Extension: (Brave Ads Resources) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\iblokdlgekdjophgeonmanpnjihcjkjj [2021-08-26]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2021-09-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\ocilmpijebaopmdifcomolmpigakocmo [2021-08-26]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Olivkittie\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-02-10]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [1087736 2022-02-11] (ASUSTeK Computer Inc. -> )
S4 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-08-25] (Brave Software, Inc. -> BraveSoftware Inc.)
S4 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-08-25] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2021-12-20] (EasyAntiCheat Oy -> Epic Games, Inc)
R2 GlassWire; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [7307720 2021-12-07] (GlassWire -> SecureMix LLC)
S4 MariaDB; C:\Program Files\MariaDB 10.5\bin\mysqld.exe [32744 2021-08-03] (MariaDB Corporation Ab -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7972536 2022-02-10] (Malwarebytes Inc -> Malwarebytes)
S4 NoIPDUCService4; D:\No-IP\ducservice.exe [12288 2015-07-20] () [File not signed]
S4 OverwolfUpdater; D:\Overwolf\OverwolfUpdater.exe [2539864 2022-02-08] (Overwolf Ltd -> Overwolf LTD)
S4 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1142808 2021-10-19] (Razer USA Ltd. -> Razer Inc.)
S4 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [451608 2021-11-17] (Razer USA Ltd. -> Razer Inc.)
S4 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1347640 2021-10-19] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [254224 2021-11-16] (Razer USA Ltd. -> Razer Inc)
S2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [294520 2021-12-09] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Update Service; C:\Program Files (x86)\Razer\RzUpdateEngineService\RzUpdateEngineService.exe [408912 2020-04-02] (Razer USA Ltd. -> Razer)
S4 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [533824 2021-10-21] (Razer USA Ltd. -> Razer Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6136536 2022-02-04] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; E:\Program Files\VisualStudio\SDKs\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_015fa42d67826549\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_015fa42d67826549\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
S4 uhssvc; "C:\Program Files\Microsoft Update Health Tools\uhssvc.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2018-07-20] (ASUSTeK Computer Inc. -> )
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [160176 2022-02-10] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 gwdrv; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [33152 2015-05-29] (GlassWire -> SecureMix LLC)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220568 2022-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2022-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [194480 2022-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [69040 2022-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2022-02-10] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [156792 2022-02-11] (Malwarebytes Inc -> Malwarebytes)
R1 ndextlag; C:\WINDOWS\system32\DRIVERS\ndextlag.sys [48640 2018-04-11] (Mainline Net Holdings Limited -> SKOWSAND SERVICOS DE PROVEDORES E INTERNET LTDA - ME)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [74616 2020-12-11] (Insecure.Com LLC -> Insecure.Com LLC.)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [54632 2021-03-30] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0067; C:\WINDOWS\System32\drivers\RzDev_0067.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0520; C:\WINDOWS\System32\drivers\RzDev_0520.sys [53144 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 sTHXVAD; C:\WINDOWS\System32\drivers\THXVAD.sys [162184 2019-09-17] (Razer USA Ltd. -> Windows (R) Win 7 DDK provider)
R3 VBAudioVACMME; C:\WINDOWS\System32\drivers\vbaudio_cable64_win7.sys [41192 2021-06-14] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVMAUXVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmauxvaio64_win10.sys [71920 2021-09-30] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmvaio64_win10.sys [71712 2021-09-30] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [19472 2017-06-22] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2022-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [438520 2022-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-10] (Microsoft Windows -> Microsoft Corporation)
U4 npcap_wifi; no ImagePath
S3 R0RazerSynapseService; \??\C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.sys [X]
U3 TrueSight; \??\C:\Windows\System32\drivers\truesight.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-02-12 17:28 - 2022-02-12 17:28 - 002311680 _____ (Farbar) C:\Users\Olivkittie\Downloads\FRST64 (1).exe
2022-02-12 15:05 - 2022-02-12 15:06 - 000000000 ____D C:\Program Files\Pentablet
2022-02-12 15:05 - 2022-02-12 15:05 - 000000000 ____D C:\Users\Olivkittie\AppData\Roaming\Pentablet
2022-02-11 16:00 - 2022-02-11 16:00 - 000194480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2022-02-11 16:00 - 2022-02-11 16:00 - 000156792 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2022-02-11 16:00 - 2022-02-11 16:00 - 000069040 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2022-02-11 15:11 - 2022-02-11 15:11 - 000220568 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2022-02-11 09:35 - 2022-02-11 09:35 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-02-11 09:31 - 2022-02-11 09:31 - 000000000 ___HD C:\$WinREAgent
2022-02-10 17:53 - 2022-02-10 17:52 - 015594165 ____T C:\Users\Olivkittie\Documents\Lithuanian, A Short Grammar of (Mathiassen).pdf
2022-02-10 17:29 - 2022-02-10 17:29 - 008540344 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\AdwCleaner (2).exe
2022-02-10 17:29 - 2022-02-10 17:29 - 002911928 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\MBSetup-10789.10789-consumer (2).exe
2022-02-10 17:26 - 2022-02-10 17:26 - 000001497 _____ C:\Users\Olivkittie\Documents\AdwCleaner[S00].txt
2022-02-10 17:25 - 2022-02-10 17:25 - 008540344 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\AdwCleaner (1).exe
2022-02-10 17:25 - 2022-02-10 17:25 - 002911928 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\MBSetup-10789.10789-consumer (1).exe
2022-02-10 17:25 - 2022-02-10 17:25 - 000001667 _____ C:\Users\Olivkittie\Documents\AdwCleaner[C00].txt
2022-02-10 17:22 - 2022-02-10 17:24 - 000000000 ____D C:\AdwCleaner
2022-02-10 17:22 - 2022-02-10 17:22 - 008540344 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\AdwCleaner.exe
2022-02-10 17:22 - 2022-02-10 17:22 - 000001238 _____ C:\Users\Olivkittie\Documents\ReportMB210.txt
2022-02-10 17:13 - 2022-02-10 17:13 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-02-10 17:13 - 2022-02-10 17:13 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2022-02-10 17:13 - 2022-02-10 17:13 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2022-02-10 17:13 - 2022-02-10 17:13 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-02-10 17:13 - 2022-02-10 17:13 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2022-02-10 17:13 - 2022-02-10 17:13 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-02-10 17:13 - 2022-02-10 17:13 - 000000000 ____D C:\Program Files\Malwarebytes
2022-02-10 17:12 - 2022-02-10 17:12 - 002911928 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\MBSetup-10789.10789-consumer.exe
2022-02-10 17:06 - 2022-02-10 17:06 - 000003500 _____ C:\Users\Olivkittie\Documents\Report210.txt
2022-02-10 16:42 - 2022-02-10 16:42 - 042051760 _____ (Adlice Software ) C:\Users\Olivkittie\Downloads\RogueKiller_setup.exe
2022-02-09 19:21 - 2022-02-09 19:32 - 000064641 _____ C:\Users\Olivkittie\Downloads\Addition.txt
2022-02-09 19:20 - 2022-02-12 17:29 - 000031315 _____ C:\Users\Olivkittie\Downloads\FRST.txt
2022-02-09 19:19 - 2022-02-12 17:29 - 000000000 ____D C:\FRST
2022-02-09 19:18 - 2022-02-09 19:19 - 002311680 _____ (Farbar) C:\Users\Olivkittie\Downloads\FRST64.exe
2022-02-09 19:18 - 2022-02-09 19:18 - 000002259 _____ C:\WINDOWS\epplauncher.mif
2022-02-08 12:24 - 2022-02-08 12:24 - 000426032 _____ C:\ProgramData\cl.uninstall.1644315847.bdinstall.v2.bin
2022-02-08 12:24 - 2022-02-08 12:24 - 000089372 _____ C:\ProgramData\agent.uninstall.1644315886.bdinstall.v2.bin
2022-02-08 12:22 - 2022-02-08 12:22 - 002336200 _____ C:\Users\Olivkittie\Downloads\MiqoCrafter.Binaries.Windows.refs.tags.V2.2.9.zip
2022-02-08 11:14 - 2022-02-08 11:14 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2022-02-08 00:32 - 2022-02-08 11:07 - 000000000 ____D C:\ProgramData\SecTaskMan
2022-02-08 00:32 - 2022-02-08 00:32 - 000001227 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spy Protector.lnk
2022-02-08 00:32 - 2022-02-08 00:32 - 000001216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager.lnk
2022-02-08 00:32 - 2022-02-08 00:32 - 000001204 _____ C:\Users\Public\Desktop\Security Task Manager.lnk
2022-02-08 00:32 - 2022-02-08 00:32 - 000000000 ____D C:\Program Files (x86)\Security Task Manager
2022-02-07 17:50 - 2022-02-07 17:56 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-02-07 17:50 - 2022-02-07 17:56 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-02-07 17:50 - 2022-02-07 17:50 - 000003496 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{11CA08C4-FF7A-46DE-941C-6885089ED7EF}
2022-02-07 17:50 - 2022-02-07 17:50 - 000003372 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{EF74BF38-2925-40F5-88CD-8F96FF65D7BE}
2022-02-07 17:50 - 2022-02-07 17:50 - 000000000 ____D C:\Program Files\Google
2022-02-07 17:21 - 2022-02-07 17:21 - 000629424 _____ C:\ProgramData\cl.1644247156.bdinstall.v2.bin
2022-02-07 17:21 - 2022-02-07 17:21 - 000109244 _____ C:\ProgramData\cl.kit.1644247154.bdinstall.v2.bin
2022-02-07 17:21 - 2022-02-07 17:21 - 000000000 ____D C:\ProgramData\Gemma
2022-02-07 17:21 - 2022-02-07 17:21 - 000000000 ____D C:\ProgramData\Atc
2022-02-07 17:20 - 2022-02-07 17:20 - 000000000 ____D C:\WINDOWS\system32\elambkup
2022-02-07 17:20 - 2022-02-07 17:20 - 000000000 ____D C:\ProgramData\BDLogging
2022-02-07 17:17 - 2022-02-07 17:17 - 000225852 _____ C:\ProgramData\agent.1644247069.bdinstall.v2.bin
2022-02-07 17:17 - 2022-02-07 17:17 - 000095544 _____ C:\ProgramData\agent.update.1644247072.bdinstall.v2.bin
2022-02-07 17:17 - 2022-02-07 17:17 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\Bitdefender
2022-02-07 17:17 - 2022-02-07 17:17 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2022-02-07 16:26 - 2022-02-07 16:26 - 000000000 ___HD C:\$SysReset
2022-02-07 11:46 - 2022-02-07 11:46 - 002087332 _____ C:\WINDOWS\Minidump\020722-9781-01.dmp
2022-02-04 20:38 - 2022-02-11 15:12 - 120586240 _____ C:\WINDOWS\system32\config\SOFTWARE
2022-02-04 20:35 - 2022-02-04 20:38 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2022-02-04 20:31 - 2022-02-04 20:32 - 060862335 _____ (Alexander Drozdov) C:\Users\Olivkittie\Downloads\Awakened-PoE-Trade-Setup-2.15.0 (1).exe
2022-02-04 20:31 - 2022-02-04 20:31 - 060862335 _____ (Alexander Drozdov) C:\Users\Olivkittie\Downloads\Awakened-PoE-Trade-Setup-2.15.0.exe
2022-02-04 20:10 - 2022-02-04 20:10 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\mbam
2022-02-04 20:08 - 2022-02-04 20:08 - 002911928 _____ (Malwarebytes) C:\Users\Olivkittie\Downloads\MBSetup.exe
2022-02-04 18:52 - 2022-02-04 18:52 - 000000000 ____D C:\Users\Olivkittie\Downloads\Filter_Sounds_v3_2
2022-02-04 18:33 - 2022-02-04 18:33 - 000917277 _____ C:\Users\Olivkittie\Downloads\Filter_Sounds_v3_2.rar
2022-02-04 12:54 - 2022-02-04 12:54 - 000000277 _____ C:\Users\Olivkittie\Downloads\seb-appointment.ics
2022-02-04 10:50 - 2022-02-04 10:50 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-02-04 10:50 - 2022-02-04 10:50 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2022-02-04 10:50 - 2022-02-04 10:50 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-02-04 10:50 - 2022-02-04 10:50 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-02-04 10:34 - 2022-02-04 10:34 - 000000000 ____D C:\WINDOWS\Panther
2022-02-04 10:30 - 2022-02-04 10:30 - 000001970 _____ C:\Users\Public\Desktop\GlassWire.lnk
2022-02-04 10:29 - 2022-02-04 10:30 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\glasswire
2022-02-04 10:29 - 2022-02-04 10:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GlassWire
2022-02-04 10:29 - 2022-02-04 10:30 - 000000000 ____D C:\Program Files (x86)\GlassWire
2022-02-04 10:29 - 2022-02-04 10:29 - 000000000 ____D C:\ProgramData\GlassWire
2022-02-04 10:29 - 2015-05-29 09:30 - 000008392 _____ C:\WINDOWS\system32\Drivers\gwdrv.cat
2022-02-04 10:29 - 2015-05-29 09:15 - 000033152 _____ (SecureMix LLC) C:\WINDOWS\system32\Drivers\gwdrv.sys
2022-02-04 10:28 - 2022-02-04 10:28 - 069142920 _____ (SecureMix LLC) C:\Users\Olivkittie\Downloads\GlassWireSetup.exe
2022-02-04 10:15 - 2022-02-04 10:15 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\Solvusoft_Corporation
2022-02-04 10:15 - 2022-02-04 10:15 - 000000000 ____D C:\ProgramData\IsolatedStorage
2022-02-04 10:14 - 2022-02-04 10:14 - 001292488 _____ (Solvusoft Corporation) C:\Users\Olivkittie\Downloads\Setup_File_Magic_2021.exe
2022-01-31 20:17 - 2022-01-31 20:17 - 005079928 _____ C:\Users\Olivkittie\Downloads\Character_Reference_-_Emberlite_Mantear (1).pdf
2022-01-31 15:23 - 2022-01-31 15:23 - 002240820 _____ C:\Users\Olivkittie\Downloads\Resume.pdf
2022-01-31 00:26 - 2022-01-31 00:26 - 005079928 _____ C:\Users\Olivkittie\Downloads\Character_Reference_-_Emberlite_Mantear.pdf
2022-01-27 23:44 - 2022-01-27 23:44 - 000003426 _____ C:\Users\Olivkittie\Downloads\Channel Analytics and Revenue by day from Dec_29_2021 to Jan_27_2022.csv
2022-01-27 12:53 - 2022-01-27 12:53 - 000000362 _____ C:\Users\Olivkittie\Documents\Verb Conjugating Base
2022-01-26 18:38 - 2022-01-26 18:38 - 000005091 _____ C:\Users\Olivkittie\Downloads\334.xlsx
2022-01-26 15:22 - 2022-01-26 15:22 - 010852186 _____ C:\Users\Olivkittie\Documents\LitKalba (1).pdf
2022-01-23 14:44 - 2022-01-11 01:54 - 000039080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 001879784 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-01-23 14:43 - 2022-01-11 14:28 - 001879784 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-01-23 14:43 - 2022-01-11 14:28 - 001467872 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 001454824 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-01-23 14:43 - 2022-01-11 14:28 - 001454824 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-01-23 14:43 - 2022-01-11 14:28 - 001206400 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 001115368 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 001115368 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 000969448 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-01-23 14:43 - 2022-01-11 14:28 - 000969448 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-01-23 14:43 - 2022-01-11 14:25 - 001529512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2022-01-23 14:43 - 2022-01-11 14:25 - 001179096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2022-01-23 14:43 - 2022-01-11 14:25 - 000797096 _____ C:\WINDOWS\system32\nvofapi64.dll
2022-01-23 14:43 - 2022-01-11 14:25 - 000710824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2022-01-23 14:43 - 2022-01-11 14:25 - 000710776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2022-01-23 14:43 - 2022-01-11 14:25 - 000637864 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2022-01-23 14:43 - 2022-01-11 14:24 - 002119792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2022-01-23 14:43 - 2022-01-11 14:24 - 001601144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2022-01-23 14:43 - 2022-01-11 14:24 - 000983208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2022-01-23 14:43 - 2022-01-11 14:24 - 000455792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2022-01-23 14:43 - 2022-01-11 14:23 - 008609920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2022-01-23 14:43 - 2022-01-11 14:23 - 007713392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2022-01-23 14:43 - 2022-01-11 14:23 - 005734568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2022-01-23 14:43 - 2022-01-11 14:23 - 005099176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2022-01-23 14:43 - 2022-01-11 14:23 - 002934696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2022-01-23 14:43 - 2022-01-11 14:22 - 000850088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2022-01-23 14:43 - 2022-01-11 01:54 - 000089178 _____ C:\WINDOWS\system32\nvinfo.pb
2022-01-21 12:40 - 2022-01-21 12:40 - 001805350 _____ (JimsApps ) C:\Users\Olivkittie\Downloads\SnazSetup.exe
2022-01-21 12:40 - 2022-01-21 12:40 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\JimsApps
2022-01-16 19:45 - 2022-01-16 19:45 - 000007598 _____ C:\Users\Olivkittie\AppData\Local\Resmon.ResmonCfg
2022-01-15 23:11 - 2022-01-15 23:13 - 000000000 ____D C:\Users\Olivkittie\AppData\Roaming\Vortex
2022-01-15 23:11 - 2022-01-15 23:11 - 000002056 _____ C:\Users\Public\Desktop\Vortex.lnk
2022-01-15 23:11 - 2022-01-15 23:11 - 000000000 ____D C:\ProgramData\Vortex
2022-01-15 23:11 - 2022-01-15 23:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Tree Gaming Ltd
2022-01-15 23:11 - 2022-01-15 23:11 - 000000000 ____D C:\Program Files\Black Tree Gaming Ltd
2022-01-15 20:09 - 2022-01-15 20:21 - 091611696 _____ (Black Tree Gaming Ltd.) C:\Users\Olivkittie\Downloads\Vortex-1-1-4-16-1633352164.exe
2022-01-15 16:37 - 2022-01-15 16:37 - 000000976 _____ C:\Users\Olivkittie\Desktop\Skyrim (SKSE).lnk
2022-01-15 16:20 - 2022-01-15 18:06 - 000000000 ____D C:\Users\Olivkittie\AppData\Local\Skyrim Special Edition
2022-01-15 00:07 - 2022-01-15 00:07 - 000362812 _____ C:\Users\Olivkittie\Downloads\skse_1_07_03_installer.exe
2022-01-14 23:40 - 2022-01-27 23:24 - 000000000 ____D C:\Users\Olivkittie\AppData\LocalLow\uTorrent
2022-01-14 23:16 - 2022-01-14 23:16 - 000000881 _____ C:\Users\Olivkittie\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2022-01-14 09:21 - 2022-01-14 09:21 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-01-14 09:21 - 2022-01-14 09:21 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe