Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-12-2020
Ran by Leech (administrator) on DESKTOP-MG0SPMK (FUJITSU LIFEBOOK AH512) (11-12-2020 12:16:12)
Running from C:\Users\Leech\Downloads
Loaded Profiles: Leech
Platform: Windows 10 Home Version 2004 19041.630 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\VirusTotalUploader2\VirusTotalUploader2.2.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe
(FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED) C:\Windows\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_1c41b5ae1124caab\fuj02e3-utility.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <29>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Leech\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.549981c3f5f10_1.1911.21713.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CredentialEnrollmentManager.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.680_none_e72768c3263f99bc\TiWorker.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\microsoft.skypeapp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\microsoft.skypeapp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Trend Micro Inc.) [File not signed] C:\Users\Leech\Downloads\HijackThis.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [FUJ02B1_Apps] => C:\Program Files (x86)\Fujitsu\FUJ02B1\CheckBatteryPack.exe [385984 2020-12-07] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)
HKLM\...\Run: [FUJ02E3_BatteryChargingControlUpdate] => C:\Program Files (x86)\Fujitsu\FUJ02E3_BatteryChargingControlUpdate\CheckBatteryFW.exe [437376 2019-09-05] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU LIMITED)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391120 2020-12-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2020-12-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS_SWVOL] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2020-12-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM-x32\...\Run: [FUJ02B1_Apps] => C:\Program Files (x86)\Fujitsu\FUJ02B1\CheckBatteryPack.exe [385984 2020-12-07] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {3F7F0E4F-7D0C-402E-9C52-38504ABFDE96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6BDE8768-89EC-4B7A-A8AA-3B44D44473F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9A95EDB7-DCBF-4AC9-B160-581FC206555D} - System32\Tasks\Agent Activation Runtime\S-1-5-21-1439957502-2935426713-272453069-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-10-02] (Microsoft Windows -> )
Task: {B39D6566-CD7F-4B5E-95E1-FD57601C42D7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F23CD036-989D-42EB-8555-EA6C28BE05F4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 212.111.1.10
Tcpip\..\Interfaces\{a2a63bc4-e1cc-4ebf-a293-1204e39ad7dd}: [DhcpNameServer] 212.111.1.10

Edge: 
======
Edge Profile: C:\Users\Leech\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-11]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [105240 2020-10-01] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
R2 Fuj02e3DriverUtilityService; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_1c41b5ae1124caab\fuj02e3-utility.exe [146536 2020-10-01] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AirModeBtn; C:\WINDOWS\System32\drivers\AirModeBtn.sys [49680 2020-12-07] (LG Electronics Inc. -> LG Electroncis)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R3 FUJ02B1; C:\WINDOWS\System32\drivers\FUJ02B1.sys [67728 2020-12-07] (FUJITSU LIMITED -> FUJITSU LIMITED)
R3 fuj02e3; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_1c41b5ae1124caab\fuj02e3.sys [42592 2020-10-01] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)
R3 gFilterMouUsb; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [30568 2020-12-07] (KYE SYSTEMS CORP. -> KYE Systems Corp.)
R3 JmUsbCcgp; C:\WINDOWS\System32\drivers\jmccgp.sys [17136 2020-12-07] (JMicron Technology Corp. -> JMicron Technology Corp.)
R3 SNP2UVCW10; C:\WINDOWS\system32\DRIVERS\snp2uvcW10.sys [1819240 2016-08-02] (Sonix Technology CO., LTD -> )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-11] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-11 12:19 - 2020-12-11 12:19 - 004050424 _____ (Don HO don.h@free.fr) C:\Users\Leech\Downloads\npp.7.8.8.Installer.x64.exe
2020-12-11 12:16 - 2020-12-11 12:18 - 000009794 _____ C:\Users\Leech\Downloads\FRST.txt
2020-12-11 12:10 - 2020-12-11 12:17 - 000000000 ____D C:\FRST
2020-12-11 12:10 - 2020-12-11 12:10 - 002288640 _____ (Farbar) C:\Users\Leech\Downloads\FRST64.exe
2020-12-11 12:05 - 2020-12-11 12:06 - 000000000 ____D C:\Program Files (x86)\VirusTotalUploader2
2020-12-11 12:05 - 2020-12-11 12:05 - 000002144 _____ C:\Users\Leech\Desktop\VirusTotal Uploader 2.2.lnk
2020-12-11 12:05 - 2020-12-11 12:05 - 000000000 ____D C:\Users\Leech\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirusTotal Uploader 2.2
2020-12-11 12:03 - 2020-12-11 12:03 - 000142744 _____ C:\Users\Leech\Downloads\vtuploader2.2.exe
2020-12-11 11:51 - 2020-12-11 11:51 - 000388608 _____ (Trend Micro Inc.) C:\Users\Leech\Downloads\HijackThis.exe
2020-12-11 11:43 - 2020-12-11 11:43 - 000000000 ___HD C:\$WinREAgent
2020-12-11 11:42 - 2020-12-11 11:47 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-12-11 11:40 - 2020-12-11 12:01 - 000000000 ____D C:\Users\Leech\AppData\Local\PlaceholderTileLogoFolder
2020-12-11 11:09 - 2020-12-11 11:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2020-12-11 11:01 - 2020-12-11 11:01 - 000000000 ____D C:\Users\Leech\AppData\Local\Comms
2020-12-11 10:48 - 2020-12-11 10:48 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1439957502-2935426713-272453069-1001
2020-12-11 10:48 - 2020-12-11 10:48 - 000000000 ___RD C:\Users\Leech\OneDrive
2020-12-11 10:46 - 2020-12-11 10:46 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-12-11 10:44 - 2020-12-11 11:57 - 000000000 ____D C:\ProgramData\Packages
2020-12-11 10:44 - 2020-12-11 10:44 - 000000000 ____D C:\Users\Leech\AppData\Local\VirtualStore
2020-12-11 10:44 - 2020-12-11 10:44 - 000000000 ____D C:\Users\Leech\AppData\Local\Publishers
2020-12-11 10:43 - 2020-12-11 11:57 - 000000000 ____D C:\Users\Leech\AppData\Local\Packages
2020-12-11 10:43 - 2020-12-11 10:44 - 000000000 ____D C:\Users\Leech\AppData\Local\ConnectedDevicesPlatform
2020-12-11 10:43 - 2020-12-11 10:43 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-12-11 10:43 - 2020-12-11 10:43 - 000000000 ___RD C:\Users\Leech\3D Objects
2020-12-11 10:42 - 2020-12-11 10:48 - 000002361 _____ C:\Users\Leech\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-12-11 10:42 - 2020-12-11 10:48 - 000000000 ____D C:\Users\Leech
2020-12-11 10:42 - 2020-12-11 10:42 - 000000020 ___SH C:\Users\Leech\ntuser.ini
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Šablony
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Soubory cookie
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Poslední
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Okolní tiskárny
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Okolní síť
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Nabídka Start
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Dokumenty
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Documents\Obrázky
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Documents\Hudba
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Documents\Filmy
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\Data aplikací
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-11 10:42 - 2020-12-11 10:42 - 000000000 _SHDL C:\Users\Leech\AppData\Local\Data aplikací
2020-12-11 10:27 - 2020-12-11 10:27 - 001605602 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Šablony
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Poslední
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Okolní síť
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Dokumenty
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\Data aplikací
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Šablony
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Soubory cookie
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Poslední
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Okolní tiskárny
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Okolní síť
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Nabídka Start
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Dokumenty
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\Data aplikací
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\Default User
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Users\All Users
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Šablony
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Plocha
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Dokumenty
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\ProgramData\Data aplikací
2020-12-11 10:22 - 2020-12-11 10:22 - 000000000 _SHDL C:\Documents and Settings
2020-12-11 10:20 - 2020-12-11 11:44 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-12-11 10:20 - 2020-12-11 11:44 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-12-11 10:20 - 2020-12-11 11:44 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-12-11 10:20 - 2020-12-11 11:44 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-12-11 10:15 - 2020-12-11 10:15 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-12-11 10:15 - 2020-12-11 10:15 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Apfiltr_01011.Wdf
2020-12-11 10:15 - 2020-12-11 10:15 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2020-12-11 10:15 - 2020-12-11 10:15 - 000000000 ____D C:\Intel
2020-12-11 10:14 - 2020-12-11 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2020-12-11 10:14 - 2020-12-11 10:14 - 000000000 ____D C:\WINDOWS\system32\DAX2
2020-12-11 10:14 - 2020-12-11 10:14 - 000000000 ____D C:\Program Files\Realtek
2020-12-11 10:13 - 2020-12-11 11:46 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-12-11 10:12 - 2020-12-11 11:00 - 000008192 ___SH C:\DumpStack.log.tmp
2020-12-11 10:12 - 2020-12-11 10:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-12-11 10:12 - 2020-12-11 10:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-12-11 10:12 - 2020-12-11 10:12 - 000258960 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-12-11 10:12 - 2020-12-11 10:12 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2020-12-11 07:51 - 2020-12-11 10:23 - 000000000 ____D C:\WINDOWS\Panther
2020-12-11 07:48 - 2020-12-11 10:23 - 000000000 ____D C:\Windows.old
2020-12-11 07:47 - 2020-12-11 07:47 - 000000000 ____D C:\Program Files\Apoint2K
2020-12-11 07:47 - 2020-12-11 07:47 - 000000000 ____D C:\Program Files (x86)\Fujitsu
2020-12-11 07:46 - 2020-12-11 07:46 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2020-12-11 07:45 - 2020-12-11 07:45 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2020-12-11 07:45 - 2020-12-11 07:45 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2020-12-11 07:45 - 2020-12-11 07:45 - 000000000 ____D C:\WINDOWS\Setup
2020-12-11 07:45 - 2020-12-11 07:45 - 000000000 ____D C:\WINDOWS\OCR
2020-12-11 07:44 - 2020-12-11 10:27 - 000683426 _____ C:\WINDOWS\system32\perfh005.dat
2020-12-11 07:44 - 2020-12-11 10:27 - 000137206 _____ C:\WINDOWS\system32\perfc005.dat
2020-12-11 07:44 - 2020-12-11 07:44 - 000296964 _____ C:\WINDOWS\system32\perfi005.dat
2020-12-11 07:44 - 2020-12-11 07:44 - 000038778 _____ C:\WINDOWS\system32\perfd005.dat
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\winrm
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\WCN
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\slmgr
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\cs
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\0409
2020-12-11 07:44 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\DigitalLocker
2020-12-11 07:42 - 2020-10-03 01:33 - 000835472 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2020-12-11 07:42 - 2020-10-03 01:33 - 000179608 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2020-12-11 07:39 - 2020-12-11 12:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-12-11 07:39 - 2020-12-11 12:05 - 000000000 ___RD C:\Program Files (x86)
2020-12-11 07:39 - 2020-12-11 11:56 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-11 07:39 - 2020-12-11 11:46 - 000000000 ____D C:\Program Files\Windows Defender
2020-12-11 07:39 - 2020-12-11 11:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-11 07:39 - 2020-12-11 11:17 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-12-11 07:39 - 2020-12-11 11:02 - 000000000 ____D C:\WINDOWS\ServiceState
2020-12-11 07:39 - 2020-12-11 10:49 - 000000000 ____D C:\ProgramData\USOPrivate
2020-12-11 07:39 - 2020-12-11 10:42 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2020-12-11 07:39 - 2020-12-11 10:25 - 000000000 ____D C:\WINDOWS\system32\spool
2020-12-11 07:39 - 2020-12-11 10:22 - 000000000 ____D C:\Program Files\Windows NT
2020-12-11 07:39 - 2020-12-11 10:16 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-12-11 07:39 - 2020-12-11 10:16 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-12-11 07:39 - 2020-12-11 10:15 - 000000000 ____D C:\WINDOWS\appcompat
2020-12-11 07:39 - 2020-12-11 07:50 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ___SD C:\WINDOWS\system32\F12
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ___SD C:\WINDOWS\system32\dsc
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\setup
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\MUI
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\system32\Com
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\IME
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\WINDOWS\Help
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files\Common Files\System
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files (x86)\Windows NT
2020-12-11 07:39 - 2020-12-11 07:44 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 __SHD C:\Program Files\Windows Sidebar
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 __RSD C:\WINDOWS\Media
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 __RHD C:\Users\Public\Libraries
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\system32\Nui
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\system32\Configuration
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Web
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\WaaS
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Vss
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\tracing
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\TAPI
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SystemResources
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SystemApps
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\winevt
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ti-et
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ta-lk
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ta-in
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\si-lk
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ras
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\PointOfService
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\my-mm
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Keywords
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Ipmi
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\IME
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\icsxml
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ias
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\DriverState
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\downlevel
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\DDFs
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\config\TxR
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\config\Journal
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\Bthprops
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\am-et
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\System
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SKB
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\schemas
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\SchCache
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\security
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Resources
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\rescache
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Registration
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Provisioning
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\PLA
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Performance
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\ModemLogs
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\L2Schemas
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\InputMethod
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\IdentityCRL
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Globalization
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\DiagTrack
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Cursors
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Containers
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\Branding
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\ProgramData\USOShared
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files\Windows Security
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files\Windows Portable Devices
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files\ModifiableWindowsApps
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files\Common Files\Services
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2020-12-11 07:39 - 2020-12-11 07:39 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2020-12-11 07:39 - 2020-12-11 07:36 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2020-12-11 07:39 - 2020-12-11 07:36 - 000215943 _____ C:\WINDOWS\system32\dssec.dat
2020-12-11 07:39 - 2020-12-11 07:36 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-12-11 07:39 - 2020-12-11 07:36 - 000017635 _____ C:\WINDOWS\system32\Drivers\etc\services
2020-12-11 07:39 - 2020-12-11 07:36 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2020-12-11 07:39 - 2020-12-11 07:36 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config
2020-12-11 07:39 - 2020-12-11 07:36 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config
2020-12-11 07:39 - 2020-12-11 07:36 - 000001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2020-12-11 07:39 - 2020-12-11 07:36 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2020-12-11 07:39 - 2020-12-11 07:36 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2020-12-11 07:39 - 2020-12-11 07:36 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT
2020-12-11 07:39 - 2020-12-11 07:36 - 000000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2020-12-11 07:39 - 2020-12-11 07:36 - 000000219 _____ C:\WINDOWS\system.ini
2020-12-11 07:39 - 2020-12-11 07:36 - 000000092 _____ C:\WINDOWS\win.ini
2020-12-11 07:37 - 2020-12-11 11:49 - 000000000 ____D C:\WINDOWS\INF
2020-12-11 07:30 - 2020-12-11 11:47 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-12-11 07:27 - 2020-12-11 11:44 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-12-11 07:27 - 2020-12-11 10:49 - 000000000 ____D C:\WINDOWS\servicing
2020-12-11 07:27 - 2020-12-11 10:21 - 067633152 _____ C:\WINDOWS\system32\config\SOFTWARE
2020-12-11 07:27 - 2020-12-11 10:21 - 013369344 _____ C:\WINDOWS\system32\config\SYSTEM
2020-12-11 07:27 - 2020-12-11 10:21 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT
2020-12-11 07:27 - 2020-12-11 10:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-12-11 07:27 - 2020-12-11 10:21 - 000065536 _____ C:\WINDOWS\system32\config\SAM
2020-12-11 07:27 - 2020-12-11 10:21 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY
2020-12-11 07:27 - 2020-12-11 07:39 - 000000000 ____D C:\WINDOWS\system32\SMI
2020-12-11 07:24 - 2020-12-11 10:11 - 000000000 ___HD C:\$SysReset
2020-12-07 19:13 - 2020-12-07 19:13 - 000030568 _____ (KYE Systems Corp.) C:\WINDOWS\system32\Drivers\gFilterMouUsb.sys
2020-12-07 15:41 - 2020-12-07 15:41 - 000266240 ____N C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-07 15:41 - 2020-12-07 15:41 - 000152576 ____N C:\WINDOWS\system32\EoAExperiences.exe
2020-12-07 15:41 - 2020-12-07 15:41 - 000009265 ____N C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-12-07 15:40 - 2020-12-07 15:40 - 000363520 ____N C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-07 15:40 - 2020-12-07 15:40 - 000197632 ____N C:\WINDOWS\system32\IHDS.dll
2020-12-07 13:08 - 2020-12-07 13:08 - 000049680 _____ (LG Electroncis) C:\WINDOWS\system32\Drivers\AirModeBtn.sys
2020-12-07 13:05 - 2020-12-07 13:05 - 000614000 _____ (JMicron Technology Corp.) C:\WINDOWS\system32\jmccgpInst.dll
2020-12-07 13:05 - 2020-12-07 13:05 - 000017136 _____ (JMicron Technology Corp.) C:\WINDOWS\system32\Drivers\jmccgp.sys
2020-12-07 11:47 - 2020-12-07 11:47 - 072520816 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2020-12-07 11:47 - 2020-12-07 11:47 - 024335604 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2020-12-07 11:47 - 2020-12-07 11:47 - 007178576 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 007101832 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 006486608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2020-12-07 11:47 - 2020-12-07 11:47 - 006270280 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 005804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2020-12-07 11:47 - 2020-12-07 11:47 - 005347096 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003762704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003677264 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2020-12-07 11:47 - 2020-12-07 11:47 - 003417904 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003319520 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003306904 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003283864 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003159512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 003128704 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 002930256 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 002444816 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 002198064 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001971472 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001965256 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001788064 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001598504 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001516376 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001435232 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001396064 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001382320 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001353424 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001337728 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001318744 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001282448 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001180416 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001159272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001073560 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 001027720 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000994576 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000964920 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000884576 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000873552 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000852224 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000751408 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000734880 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000715752 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000692264 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000604888 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000541208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000511752 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000467248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000453384 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000452840 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000448712 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000447264 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000392976 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000381496 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000378472 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000367720 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000343600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000341240 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000341240 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000333112 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000327376 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000327376 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000316088 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000278376 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000266656 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000261344 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000261304 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000260312 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000231808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000230792 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000220496 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000218360 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000193088 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000175856 _____ (ASUSTeK COMPUTER INC.) C:\WINDOWS\system32\ATKWMI.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000175032 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000158784 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000157448 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000139856 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000122408 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000118680 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000116648 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000105392 _____ C:\WINDOWS\system32\audioLibVc.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000094008 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000090808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000090272 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000088216 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000083520 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000075624 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2020-12-07 11:47 - 2020-12-07 11:47 - 000023800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2020-12-07 11:46 - 2020-12-07 11:46 - 000067728 _____ (FUJITSU LIMITED) C:\WINDOWS\system32\Drivers\fuj02b1.sys
2020-12-07 11:45 - 2020-12-07 11:45 - 009917448 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2020-12-07 11:45 - 2020-12-07 11:45 - 000456712 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2020-12-07 11:44 - 2020-12-07 11:44 - 000039704 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ICCWDT.sys
2020-12-07 11:43 - 2020-12-07 11:43 - 000646408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)


==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================