Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-02-2021
Ran by casua (administrator) on LAPTOP-QAN6RVD0 (LENOVO 81D1) (27-02-2021 14:03:32)
Running from C:\Users\casua\OneDrive\Počítač
Loaded Profiles: casua
Platform: Windows 10 Home Version 20H2 19042.804 (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_523d41b353d185cf\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHeciSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{090392BF-22A3-4F53-A01A-25B95F7A7E27}\MicrosoftEdge_X64_88.0.705.81_88.0.705.74.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Temp\EDGEMITMP_5565D.tmp\setup.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2101.10.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.740_none_e752aa59261f271f\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [971256 2019-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [286064 2021-01-25] (IDSA Production signing key 2021 -> Intel)
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Uninstall 21.002.0104.0005\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\21.002.0104.0005\amd64"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Uninstall 21.002.0104.0005] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\21.002.0104.0005"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {016A4DBB-6A3C-4E4B-875C-085C16682ABD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {0C043269-E34D-4320-8FAA-13EF534C40D3} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe
Task: {1108BF79-25C7-43A4-80B1-139885E5360C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d4796e50-089a-4ead-ad1c-923809b8c2c5 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {1EA87A82-A5EC-4648-876B-4AD76CBAF43E} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {23E7A971-068D-403E-B6FE-9DDE17D2FE59} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {4388A143-12BE-4F48-BE47-081243D06662} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51D00A26-B457-465C-BBCA-65F4E31773A7} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9bc47a16-1abf-4c3f-abae-3affad32c848 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {693AEB92-7CA2-4C8D-9D1C-A83AD117BAA5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6D2203A3-C0A2-42B6-ABFD-A81EBC2889D8} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {74CDF648-E170-4AD9-96E6-7D83D2AB6303} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {7B09C2D3-65E8-4079-9957-A5B6BDD57AF9} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {886A360C-6237-4409-B587-5950339F24DE} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
Task: {A961DCD7-376E-40BC-B81D-A64B38AB289A} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {C26092C8-B358-4F6D-A180-E3104B450C4F} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {C860AFF7-EDFD-45A0-9BA8-5C3B8E207B58} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {CA6F329A-F307-4F74-9E4F-252AE41B3FCE} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {CB8DE8A5-320A-40D5-BDD9-017F54F1194A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\299daa3b-7770-47c6-88b4-01137527c7ab => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {E03BC41C-8B2A-402E-ABB5-F2A51489444F} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\ScheduleEventAction.exe
Task: {E6218C2F-3D20-4449-9C72-9F99AD8E4CFC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F0D4D47F-D2B3-4204-A366-69C2BBF79B12} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F257C5A5-6F2A-411C-9819-96D8DBEEB120} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\03318681-ba11-4792-b9ad-0e841ff6d39c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0d82e113-8304-4f0a-b79b-f21609811a35}: [DhcpNameServer] 150.201.1.2
Tcpip\..\Interfaces\{66ab52eb-fa83-4bb6-8941-9c2da4d06973}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-27]
Edge DownloadDir: C:\Users\casua\OneDrive\Počítač
Edge HomePage: Default -> hxxp://
www.google.sk/
Edge Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-01-30]
FireFox:
========
FF DefaultProfile: qwjwxy0a.default
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\qwjwxy0a.default [2021-02-13]
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release [2021-02-27]
FF DownloadDir: C:\Users\casua\OneDrive\Počítač
FF Homepage: Mozilla\Firefox\Profiles\3gs0gdpk.default-release ->
www.google.sk
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-02-13]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> )
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-15] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 LenovoVantageService; "C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\LenovoVantageService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R2 ekbdflt; C:\WINDOWS\System32\drivers\ekbdflt.sys [43720 2020-10-27] (ESET, spol. s r.o. -> ESET)
S3 usbscan; C:\WINDOWS\System32\drivers\usbscan.sys [49152 2019-12-07] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-27 14:16 - 2021-02-27 14:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-22 19:50 - 2021-02-22 19:50 - 000000000 ____D C:\Users\casua\Apple
2021-02-21 19:55 - 2021-02-27 14:05 - 000000000 ____D C:\FRST
2021-02-21 19:32 - 2021-02-21 19:32 - 000000000 ____D C:\ProgramData\Apple Computer
2021-02-21 19:31 - 2021-02-21 19:31 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 06:25 - 2021-02-19 06:25 - 000000000 ____D C:\Users\casua\AppData\Local\CEF
2021-02-19 06:14 - 2021-02-21 19:49 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-14 16:19 - 2021-02-14 16:19 - 000000000 ____D C:\Users\casua\AppData\Roaming\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Program Files\WinRAR
2021-02-14 09:03 - 2021-02-14 09:07 - 000000000 ____D C:\AdwCleaner
2021-02-13 22:23 - 2021-02-13 22:26 - 000000000 ____D C:\rsit
2021-02-13 22:23 - 2021-02-13 22:23 - 000000000 ____D C:\Program Files\trend micro
2021-02-13 22:15 - 2021-02-27 14:18 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Mozilla
2021-02-13 22:15 - 2021-02-27 14:18 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-13 22:15 - 2021-02-27 14:15 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-13 22:15 - 2021-02-25 18:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Local\Mozilla
2021-02-13 22:14 - 2021-02-25 18:26 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-12 21:25 - 2021-02-12 21:25 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 21:25 - 2021-02-12 21:25 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-07 21:18 - 2021-02-07 21:18 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-07 20:47 - 2021-02-07 20:47 - 000000000 ___HD C:\$WinREAgent
2021-02-02 20:10 - 2021-02-02 20:10 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-01-30 19:52 - 2021-02-12 21:40 - 000795802 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-30 19:52 - 2021-01-30 19:52 - 000000000 _SHDL C:\Documents and Settings
2021-01-30 19:51 - 2021-01-30 19:51 - 000022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-01-30 19:39 - 2021-01-30 19:39 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-01-30 19:37 - 2021-02-27 14:13 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-01-30 19:37 - 2021-02-09 16:50 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-01-30 19:37 - 2021-02-09 16:50 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-01-30 19:19 - 2021-02-23 20:20 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-01-30 19:19 - 2021-01-30 19:19 - 000000000 ____D C:\Program Files\Common Files\Dolby
2021-01-30 19:18 - 2021-02-23 20:20 - 000000000 ____D C:\Intel
2021-01-30 19:18 - 2021-01-30 19:44 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc
2021-01-30 19:18 - 2021-01-30 19:18 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-01-30 19:18 - 2021-01-30 12:23 - 000000000 ____D C:\ProgramData\Intel
2021-01-30 19:17 - 2021-02-12 19:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-01-30 19:16 - 2021-02-26 09:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-30 19:16 - 2021-02-23 20:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-30 19:15 - 2021-02-23 20:20 - 000008192 ___SH C:\DumpStack.log.tmp
2021-01-30 19:15 - 2021-02-12 21:36 - 000258088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-01-30 19:15 - 2021-01-30 19:16 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-01-30 13:30 - 2021-02-23 07:26 - 000000000 ____D C:\Users\casua\AppData\Roaming\vlc
2021-01-30 13:14 - 2021-01-30 13:14 - 000000000 ____D C:\Users\casua\AppData\Local\Apple
2021-01-30 13:10 - 2021-02-21 19:34 - 000000000 ____D C:\Program Files\Common Files\Apple
2021-01-30 13:07 - 2021-01-30 13:14 - 000000000 ____D C:\ProgramData\Apple
2021-01-30 12:29 - 2021-01-30 12:29 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2021-01-30 12:25 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\PlaceholderTileLogoFolder
2021-01-30 12:17 - 2021-01-30 12:17 - 000000000 ____D C:\Users\casua\AppData\Local\Comms
2021-01-30 12:03 - 2021-02-23 20:21 - 000000000 __SHD C:\Users\casua\IntelGraphicsProfiles
2021-01-30 12:02 - 2021-01-30 12:02 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Intel
2021-01-30 11:56 - 2021-01-30 12:34 - 000000000 ____D C:\Users\casua\AppData\Local\Lenovo
2021-01-30 11:56 - 2021-01-30 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2021-01-30 11:54 - 2021-01-30 11:54 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2021-01-30 11:52 - 2021-02-14 12:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-01-30 11:51 - 2021-01-30 11:52 - 000000869 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2021-01-30 11:51 - 2021-01-30 11:51 - 000000764 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-01-30 11:40 - 2021-01-30 11:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2021-01-30 11:29 - 2021-01-30 12:46 - 000000000 ____D C:\Users\casua\AppData\Local\Intel
2021-01-30 11:29 - 2021-01-30 11:29 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2021-01-30 11:29 - 2021-01-30 11:29 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2021-01-30 11:29 - 2021-01-30 11:29 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2021-01-30 11:29 - 2020-12-15 14:37 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2021-01-30 11:26 - 2021-01-30 11:28 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2021-01-30 11:23 - 2021-01-30 13:04 - 000000000 ____D C:\Users\casua\AppData\Local\D3DSCache
2021-01-30 11:19 - 2021-01-30 11:19 - 000000000 ___HD C:\OneDriveTemp
2021-01-30 11:18 - 2021-02-27 14:02 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3271678830-734790740-3617327906-1001
2021-01-30 11:18 - 2021-02-27 14:02 - 000000000 ___RD C:\Users\casua\OneDrive
2021-01-30 11:16 - 2021-02-11 05:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-01-30 11:10 - 2021-01-30 11:10 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-01-30 11:08 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Publishers
2021-01-30 11:07 - 2021-02-21 19:31 - 000000000 ____D C:\ProgramData\Packages
2021-01-30 11:07 - 2021-01-30 11:07 - 000000000 ___RD C:\Users\casua\3D Objects
2021-01-30 11:06 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Packages
2021-01-30 11:06 - 2021-01-30 12:24 - 000000000 ____D C:\Users\casua\AppData\Local\ConnectedDevicesPlatform
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Roaming\Adobe
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Local\VirtualStore
2021-01-30 11:03 - 2021-02-27 14:02 - 000002358 _____ C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-01-30 11:03 - 2021-02-23 01:34 - 000000000 ____D C:\Users\casua
2021-01-30 11:03 - 2021-01-30 11:03 - 000000020 ___SH C:\Users\casua\ntuser.ini
2021-01-30 10:05 - 2015-04-28 19:06 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2021-01-30 10:03 - 2021-01-30 19:53 - 000000000 ____D C:\WINDOWS\Panther
2021-01-30 09:49 - 2021-01-30 09:49 - 000000000 ____D C:\ProgramData\ssh
2021-01-30 09:39 - 2021-01-30 09:39 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-01-30 09:37 - 2021-01-30 09:37 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-01-30 09:37 - 2021-01-30 09:37 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-01-30 09:36 - 2021-01-30 09:36 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-01-30 09:35 - 2021-01-30 09:35 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-01-30 09:35 - 2021-01-30 09:35 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-01-30 09:34 - 2021-01-30 09:34 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-01-30 09:33 - 2021-01-30 09:33 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-01-30 09:32 - 2021-01-30 09:32 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-01-30 09:31 - 2021-01-30 09:31 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-01-30 09:31 - 2021-01-30 09:31 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-01-30 09:31 - 2021-01-30 09:31 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-01-30 09:13 - 2019-10-15 13:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2021-01-30 09:13 - 2019-04-18 18:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2021-01-30 09:04 - 2021-01-30 09:04 - 000000000 ____D C:\WINDOWS\Firmware
2021-01-30 09:02 - 2021-01-30 09:02 - 000000000 ____D C:\WINDOWS\Lenovo
2021-01-30 08:57 - 2021-01-30 08:57 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-01-30 08:26 - 2021-01-30 10:06 - 000000000 ___HD C:\$SysReset
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-02-27 14:19 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-27 14:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-02-27 14:07 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-25 23:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-02-25 21:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-23 20:16 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-02-23 20:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-21 19:48 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-02-19 06:19 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-02-14 09:10 - 2018-07-04 20:54 - 000000000 ____D C:\ProgramData\Lenovo
2021-02-14 09:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 21:32 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-03 06:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-01-30 19:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration
2021-01-30 19:44 - 2019-12-07 15:38 - 000000000 ____D C:\WINDOWS\OCR
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help
2021-01-30 19:43 - 2018-07-04 20:19 - 000000000 ____D C:\WINDOWS\Favicon_ICON
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-01-30 19:41 - 2018-07-04 20:50 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-01-30 19:41 - 2018-07-04 20:11 - 000000000 ___HD C:\UserGuidePDF
2021-01-30 19:40 - 2018-07-04 20:25 - 000000000 ____D C:\DRIVER
2021-01-30 19:18 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-01-30 12:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-01-30 12:22 - 2018-07-04 20:54 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-01-30 12:03 - 2018-07-04 20:29 - 000000000 ____D C:\Program Files (x86)\Intel
2021-01-30 12:03 - 2018-07-04 20:26 - 000000000 ____D C:\Program Files\Intel
2021-01-30 11:45 - 2018-07-04 20:25 - 000000000 ____D C:\ProgramData\Package Cache
2021-01-30 11:24 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-01-30 11:10 - 2017-10-03 17:48 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-01-30 11:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-01-30 11:01 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-01-30 10:02 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-01-30 09:47 - 2019-12-07 15:39 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-01-30 09:47 - 2019-12-07 15:39 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================