Here i am attaching the FRST log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-07-2020 01
Ran by pvsam (administrator) on DESKTOP-4RH6A7H (Sony Corporation SVE15113ENB) (15-07-2020 12:31:17)
Running from C:\Users\pvsam\Desktop
Loaded Profiles: pvsam
Platform: Windows 10 Pro Version 2004 19041.329 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzPreloader.exe
(Elaborate Bytes AG -> Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(eVenture Limited -> eVenture Limited) C:\Program Files (x86)\hide.me VPN\Hide.me.exe
(eVenture Limited -> eVenture Limited) C:\Program Files (x86)\hide.me VPN\hidemesvc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\pvsam\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\pvsam\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2005.5739.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2006.10-0\MsMpEng.exe
(Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Nero 2020\Nero BackItUp\NBService.exe
(Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Transfer\Transfer.exe
(Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Qualcomm Atheros -> ) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(SEAGATE TECHNOLOGY LLC -> Seagate Technology LLC) C:\Program Files (x86)\Toolkit\Toolkit.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe <5>
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Tonec Inc. -> Internet Download Manager, Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMIntegrator64.exe
(Tonec Inc. -> Tonec Inc.) [File not signed] C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(UiPath, Inc. -> UiPath) C:\Users\pvsam\AppData\Local\UiPath\app-20.4.0\Robot JS Add-on\UiPath.RobotJS.UserHost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2019-08-30] (Corel Corporation -> Corel Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954368 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1381744 2014-02-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1870928 2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -> Elaborate Bytes AG)
HKLM-x32\...\Run: [Nero BackItUp] => C:\Program Files (x86)\Nero\Nero 2020\Nero BackItUp\BackItUp.exe [1156376 2019-11-07] (Nero AG -> Nero AG)
HKLM-x32\...\Run: [DriveSpan] => C:\Program Files (x86)\Nero\Transfer\Transfer.exe [138520 2019-06-24] (Nero AG -> Nero AG)
HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [353064 2020-03-16] (RealNetworks, Inc. -> RealNetworks, Inc.)
HKLM-x32\...\Run: [RealDownloader] => c:\program files (x86)\real\RealDownloader\downloader2.exe [1272104 2020-03-04] (RealNetworks, Inc. -> )
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5451576 2020-04-17] (Tonec Inc. -> Tonec Inc.) [File not signed]
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [886352 2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Run: [uTorrent] => C:\Users\pvsam\AppData\Roaming\uTorrent\uTorrent.exe [1893104 2020-05-18] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Run: [Toolkit] => "C:\Program Files (x86)\Toolkit\Toolkit.exe" /WinStart**퓛㑋⤀耀C:\ProgramData\Microsoft\Windows\Start Menu\Progra
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [54944 2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.116\Installer\chrmstp.exe [2020-06-25] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
IFEO\osppsvc.exe: [Debugger] rundll32.exe SppExtComObjHook.dll,PatcherMain
IFEO\SppExtComObj.exe: [Debugger] rundll32.exe SppExtComObjHook.dll,PatcherMain
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2020-03-16]
ShortcutTarget: RealTimes.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc. -> RealNetworks, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk [2019-10-11]
ShortcutTarget: WinZip Preloader.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing)
Startup: C:\Users\pvsam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hide.me VPN.lnk [2020-07-15]
ShortcutTarget: hide.me VPN.lnk -> C:\Program Files (x86)\hide.me VPN\Hide.me.exe (eVenture Limited -> eVenture Limited)
CHR HKU\S-1-5-21-2953840584-32695445-2838772337-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0288C0E9-4967-445B-ABC2-56535B09DC39} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {0F5AD7CC-3B65-4980-858C-FF00B3E99105} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1472AABD-9FC7-45C0-A99D-30AB003F548A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {198829D2-BADD-42AA-BBFA-5348987C11B6} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2953840584-32695445-2838772337-1001 => C:\program files (x86)\real\RealDownloader\RealUpgrade.exe [135464 2020-03-04] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {1A615AE6-4F51-4724-9406-6CE2C212CC09} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2019-08-30] (Corel Corporation -> Corel Corporation)
Task: {207735CF-45AE-410F-9589-C10EC24DFEF8} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2953840584-32695445-2838772337-1001 => C:\program files (x86)\real\RealDownloader\RealUpgrade.exe [135464 2020-03-04] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {2B506DC7-3CD0-4ABA-9C6F-2F5B3BDA595D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4569496 2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {37BE11AC-D196-4295-AE29-1CD4919DC230} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {473295B5-8E0D-4D26-A8D7-31CD546EE8DB} - System32\Tasks\RealDownloader Update Check => c:\program files (x86)\real\RealDownloader\downloader2.exe [1272104 2020-03-04] (RealNetworks, Inc. -> )
Task: {4A69AB32-E25A-45EF-B276-AE48A6839BB1} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2953840584-32695445-2838772337-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-12] (Microsoft Windows -> )
Task: {4DECB667-DC1A-44D1-A987-0467539EF9B0} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [124112 2020-07-10] (Mozilla Corporation -> Mozilla Foundation)
Task: {52B13C2F-376B-4459-9C5C-D4C35F1E2887} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [123744 2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DD22F65-2EAE-49D1-8BF9-F6B336E4AD8C} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {6ECE3CB8-FAA8-40B1-8303-9D813F9A75D1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1331792 2020-05-07] (Adobe Inc. -> Adobe Inc.)
Task: {71668F7B-0AC5-49D7-BFAD-12E513AD97C0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7BC7CAB8-4EEA-448C-969A-C409FC29B286} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2019-08-30] (Corel Corporation -> Corel Corporation)
Task: {7E575AEA-988C-475B-AF8F-7DBB4B3D2106} - System32\Tasks\UiPath RobotJS => C:\Users\pvsam\AppData\Local\UiPath\app-20.4.0\Robot JS Add-on\UiPath.RobotJS.UserHost.exe [74368 2020-05-09] (UiPath, Inc. -> UiPath)
Task: {8595BAF8-5131-451D-A9EA-8007D231106C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-03] (Google Inc -> Google LLC)
Task: {8FFCB64D-6971-4614-947C-B267FE7E54EA} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-06-09] (Adobe Inc. -> Adobe)
Task: {9F6AAC59-30A6-4CA3-8741-A2A59982A78D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe [1459256 2020-06-09] (Adobe Inc. -> Adobe)
Task: {9FAA6B37-F563-42D8-B3E6-3EA455480E48} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {A5E67EBC-58A3-4B5C-BFAA-B6A73613BCF7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {A8CE9D26-ADE5-4BA9-9EB3-A165BEBD26C1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {B94D2B65-C19B-4AE5-B712-1BCFAE970356} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2019-08-30] (Corel Corporation -> Corel Corporation)
Task: {C8A5504E-3D0B-4B36-A60F-487A47B799E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-03] (Google Inc -> Google LLC)
Task: {DBF15E71-904B-4F84-BE91-35A7E37D9198} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4569496 2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {EF5A3185-AA52-418E-B88E-E16DC31FC9AC} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [7071000 2019-11-10] (Nero AG -> Nero AG)
Task: {F876EE3E-7064-4B33-88D5-16E6DC7DF1D1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [123744 2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {F9C0D174-CD71-4765-93D4-0AF7F73A223A} - System32\Tasks\NCH Software\InventoriaSchedBackup => C:\Program Files (x86)\NCH Software\Inventoria\Inventoria.exe [1725472 2018-10-17] (NCH Software Pty Ltd -> NCH Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{02b9c437-413a-489e-9076-b76ffe1753a5}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{048acda3-11fc-4348-b943-c9884bf7d0ff}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{1fbc7e30-effa-4c31-8a63-80a7663260fb}: [NameServer] 209.250.251.37 217.182.206.81
Tcpip\..\Interfaces\{7ee77e4d-e4fa-4135-9fa5-11f4f5776419}: [NameServer] 209.58.169.88 209.58.169.90
Tcpip\..\Interfaces\{91e9e8fe-4fa1-406b-91cb-3eaf17e137db}: [NameServer] 209.250.251.37 217.182.206.81
Tcpip\..\Interfaces\{b17686ac-cbbb-443a-8c43-130c5994f370}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{b92df347-225a-4242-bc90-b2daec55e38d}: [NameServer] 209.250.251.37,217.182.206.81
Tcpip\..\Interfaces\{b92df347-225a-4242-bc90-b2daec55e38d}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{d118079d-9af3-4212-929a-a365f73e2d78}: [NameServer] 10.128.62.1
Tcpip\..\Interfaces\{d118079d-9af3-4212-929a-a365f73e2d78}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{d5562602-4af2-4d3f-a0df-062047793184}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{e89205b6-4901-46b2-85e7-8ef4ff7e659f}: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{EB2D6FDC-2AA1-476D-9EA0-3457D0E32481}: [DhcpNameServer] 209.58.169.88 209.58.169.90
Internet Explorer:
==================
HKU\S-1-5-21-2953840584-32695445-2838772337-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2020-01-21] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2020-03-04] (RealNetworks, Inc. -> RealDownloader)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2020-01-21] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2020-03-04] (RealNetworks, Inc. -> RealDownloader)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2953840584-32695445-2838772337-1001 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-07] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Notifications: HKU\S-1-5-21-2953840584-32695445-2838772337-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> EdgeExtension_TonecIncIDMIntegrationModule_e7b5mm5d3r6v2 => C:\Program Files\WindowsApps\TonecInc.IDMIntegrationModule_6.36.5.0_neutral__e7b5mm5d3r6v2 [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\pvsam\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-11]
Edge Notifications: Default -> hxxps://www.facebook.com
Edge Extension: (IDM Integration Module) - C:\Users\pvsam\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2020-07-04]
Edge Extension: (IDM Integration Module) - C:\Users\pvsam\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2020-03-14]
Edge HKU\S-1-5-21-2953840584-32695445-2838772337-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2020-04-17]
FireFox:
========
FF DefaultProfile: 3nnmfxy3.default-1563947810795
FF ProfilePath: C:\Users\pvsam\AppData\Roaming\Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795 [2020-07-15]
FF Session Restore: Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795 -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795 -> hxxps://ww1.ouo.today
FF Extension: (Hoxx VPN Proxy) - C:\Users\pvsam\AppData\Roaming\Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795\Extensions\@hoxx-vpn.xpi [2020-07-10]
FF Extension: (IDM Integration Module) - C:\Users\pvsam\AppData\Roaming\Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795\Extensions\mozilla_cc3@internetdownloadmanager.com.xpi [2020-06-24]
FF Extension: (Cookie-Editor) - C:\Users\pvsam\AppData\Roaming\Mozilla\Firefox\Profiles\3nnmfxy3.default-1563947810795\Extensions\{c3c10168-4186-445c-9c5b-63f12b8e2c87}.xpi [2020-03-16]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat DC - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn [2020-07-12] [Legacy]
FF HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\Firefox\Extensions: [mozilla_cc3@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi
FF Extension: (IDM Integration Module) - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2020-03-04]
FF HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\pvsam\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\pvsam\AppData\Roaming\IDM\idmmzcc5 [2019-04-03] [Legacy] [not signed]
FF HKU\S-1-5-21-2953840584-32695445-2838772337-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_387.dll [2020-06-09] (Adobe Inc. -> )
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.9.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-01-23] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_387.dll [2020-06-09] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=18.1.20.206 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2020-03-16] (RealNetworks, Inc. -> RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=18.1.20.206 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2020-03-16] (RealNetworks, Inc. -> RealPlayer)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2017-02-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-01-23] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR Profile: C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default [2020-07-14]
CHR Session Restore: Default -> is enabled.
CHR Extension: (Slides) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-03]
CHR Extension: (Flash Video Downloader) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2020-05-19]
CHR Extension: (Docs) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-03]
CHR Extension: (Google Drive) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-03]
CHR Extension: (YouTube) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-03]
CHR Extension: (UiPath Web Automation) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkgencfabioofgdmhhjljpkbbchbikbh [2020-05-19]
CHR Extension: (Adobe Acrobat) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-06-25]
CHR Extension: (Sheets) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-03]
CHR Extension: (EditThisCookie) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-05-05]
CHR Extension: (Google Docs Offline) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-02]
CHR Extension: (Chrome Web Store Payments) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-30]
CHR Extension: (Gmail) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-03]
CHR Extension: (Chrome Media Router) - C:\Users\pvsam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-02]
CHR HKU\S-1-5-21-2953840584-32695445-2838772337-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dkgencfabioofgdmhhjljpkbbchbikbh] - C:\Users\pvsam\AppData\Local\UiPath\app-20.4.0\UiPath\BrowserExtension\uipath_extension_for_chrome.crx [2020-05-09]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-06-09] (Adobe Inc. -> Adobe)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10574728 2020-06-23] (Microsoft Corporation -> Microsoft Corporation)
R2 hmevpnsvc; C:\Program Files (x86)\hide.me VPN\hidemesvc.exe [140960 2020-06-20] (eVenture Limited -> eVenture Limited)
S3 InventoriaService; C:\Program Files (x86)\NCH Software\Inventoria\inventoria.exe [1725472 2018-10-17] (NCH Software Pty Ltd -> NCH Software)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6933272 2020-03-08] (Malwarebytes Inc -> Malwarebytes)
R2 NeroBackItUpBackgroundService2021; C:\Program Files (x86)\Nero\Nero 2020\Nero BackItUp\NBService.exe [287000 2019-11-07] (Nero AG -> Nero AG)
R2 RealPlayerUpdateSvc; C:\program files (x86)\real\UpdateService\RealPlayerUpdateSvc.exe [38024 2020-03-04] (RealNetworks, Inc. -> RealNetworks, Inc.)
R2 RealTimes Desktop Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [990856 2020-03-16] (RealNetworks, Inc. -> RealNetworks, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4956856 2020-05-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255168 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13109776 2020-07-02] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 uSHAREitSvc; C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe [33224 2017-09-11] (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\NisSrv.exe [2496144 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MsMpEng.exe [104192 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\WINDOWS\System32\drivers\athwbx.sys [3892224 2014-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-04-21] (Malwarebytes Corporation -> Malwarebytes)
R1 hideFirewall; C:\WINDOWS\System32\drivers\hideFirewall.sys [79488 2019-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [216056 2020-07-13] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197264 2020-07-13] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73368 2020-07-13] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-06-03] (Malwarebytes Inc -> Malwarebytes)
S3 MonitorFunction; C:\WINDOWS\System32\drivers\lockscr.sys [24560 2019-01-21] (Remote Utilities LLC -> )
R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824 2019-07-03] (SoftEther Corporation -> SoftEther Corporation)
R3 SFEP; C:\WINDOWS\System32\drivers\SFEP.sys [15360 2013-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Sony Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51392 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-11-18] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45976 2020-07-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [408816 2020-07-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [64224 2020-07-02] (Microsoft Windows -> Microsoft Corporation)
S3 BTATH_VDP; \SystemRoot\system32\drivers\btath_vdp.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-07-15 12:31 - 2020-07-15 12:36 - 000035834 _____ C:\Users\pvsam\Desktop\FRST.txt
2020-07-15 12:14 - 2020-07-15 12:34 - 000000000 ____D C:\FRST
2020-07-15 12:09 - 2020-07-15 12:12 - 002292736 _____ (Farbar) C:\Users\pvsam\Desktop\FRST64.exe
2020-07-15 12:05 - 2020-07-15 12:08 - 000899584 _____ C:\Users\pvsam\Desktop\RGSA.exe
2020-07-15 12:05 - 2020-07-15 12:05 - 000001231 _____ C:\Users\pvsam\Downloads\Malware Bytes.txt
2020-07-14 23:24 - 2020-07-14 23:24 - 000000000 ___HD C:\OneDriveTemp
2020-07-14 23:17 - 2020-07-14 23:19 - 000464368 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-07-13 20:01 - 2020-07-13 20:01 - 000002750 _____ C:\Users\pvsam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UiPath Assistant.lnk
2020-07-13 12:08 - 2020-07-13 12:08 - 000216056 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-07-13 12:08 - 2020-07-13 12:08 - 000197264 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2020-07-13 12:08 - 2020-07-13 12:08 - 000073368 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2020-07-11 10:35 - 2020-07-11 10:37 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\TechSmith
2020-07-11 10:34 - 2019-12-16 13:31 - 000000987 ____R C:\WINDOWS\system32\Drivers\etc\hosts.BAK
2020-07-11 10:30 - 2020-07-11 10:30 - 000000000 ____D C:\Users\pvsam\OneDrive\Documents\Camtasia
2020-07-11 10:30 - 2020-07-11 10:30 - 000000000 ____D C:\Users\pvsam\AppData\Local\TechSmith
2020-07-11 10:29 - 2020-07-11 10:29 - 000001171 _____ C:\Users\Public\Desktop\Camtasia 2019.lnk
2020-07-11 10:29 - 2020-07-11 10:29 - 000001171 _____ C:\ProgramData\Desktop\Camtasia 2019.lnk
2020-07-11 10:29 - 2020-07-11 10:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2020-07-11 10:27 - 2020-07-11 10:28 - 000000000 ____D C:\ProgramData\TechSmith
2020-07-11 10:27 - 2020-07-11 10:27 - 000000000 ____D C:\Program Files\TechSmith
2020-07-11 10:27 - 2020-07-11 10:27 - 000000000 ____D C:\Program Files\Common Files\TechSmith Shared
2020-07-11 10:09 - 2020-07-11 10:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-07-11 10:09 - 2020-07-11 10:09 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\Skype
2020-07-10 23:02 - 2020-07-10 23:02 - 000000000 ____D C:\Users\pvsam\AppData\LocalLow\uTorrent
2020-07-10 11:26 - 2020-07-11 18:51 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-07-05 21:03 - 2020-07-05 21:03 - 000000000 ____D C:\Users\pvsam\OneDrive\Documents\RPA
2020-07-04 22:54 - 2020-07-04 22:54 - 000000000 ____D C:\Program Files (x86)\Realtek
2020-07-04 22:54 - 2014-02-14 14:18 - 000945880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2020-07-04 22:54 - 2014-02-14 14:06 - 054936576 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2020-07-04 22:54 - 2014-02-13 13:18 - 000747989 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2020-07-04 22:54 - 2014-02-07 14:52 - 002157704 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2020-07-04 22:54 - 2014-02-06 11:49 - 002787544 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2020-07-04 22:54 - 2014-02-06 08:58 - 005804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2020-07-04 22:54 - 2014-02-05 06:53 - 002319960 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 028310104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnA64.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 014737496 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 012793944 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 003923032 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnN64.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 002101848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 002037336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 001932888 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll
2020-07-04 22:54 - 2014-02-03 22:15 - 001033304 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2020-07-04 22:54 - 2014-01-31 14:58 - 000938608 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2020-07-04 22:54 - 2014-01-31 14:57 - 001313904 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2020-07-04 22:54 - 2014-01-31 14:53 - 001419376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2020-07-04 22:54 - 2014-01-31 14:52 - 001419376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2020-07-04 22:54 - 2014-01-28 09:18 - 001286872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2020-07-04 22:54 - 2014-01-20 16:41 - 002080472 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2020-07-04 22:54 - 2014-01-16 23:32 - 000942384 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOSettingsIPC.dll
2020-07-04 22:54 - 2014-01-16 23:29 - 005752072 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2020-07-04 22:54 - 2014-01-10 04:22 - 000899320 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2020-07-04 22:54 - 2014-01-10 04:22 - 000724728 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2020-07-04 22:54 - 2014-01-10 04:21 - 001045752 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2020-07-04 22:54 - 2014-01-10 04:21 - 000245496 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2020-07-04 22:54 - 2014-01-03 13:32 - 001022680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2020-07-04 22:54 - 2013-12-31 08:46 - 002825432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2020-07-04 22:54 - 2013-12-27 12:28 - 000624344 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2020-07-04 22:54 - 2013-12-04 13:57 - 001958616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2020-07-04 22:54 - 2013-10-16 01:13 - 000209096 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2020-07-04 22:54 - 2013-10-11 10:17 - 000113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2020-07-04 22:54 - 2013-10-06 21:56 - 000501184 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll
2020-07-04 22:54 - 2013-10-06 21:56 - 000487360 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll
2020-07-04 22:54 - 2013-10-06 21:56 - 000415680 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll
2020-07-04 22:54 - 2013-10-01 14:41 - 002770976 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2020-07-04 22:54 - 2013-09-10 01:32 - 006217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2020-07-04 22:54 - 2013-09-10 01:32 - 000313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2020-07-04 22:54 - 2013-09-10 01:31 - 001938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2020-07-04 22:54 - 2013-09-10 01:31 - 000260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2020-07-04 22:54 - 2013-08-20 15:07 - 000605496 _____ C:\WINDOWS\system32\audioLibVc.dll
2020-07-04 22:54 - 2013-08-14 13:06 - 000662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2020-07-04 22:54 - 2013-08-14 13:05 - 000663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2020-07-04 22:54 - 2013-07-23 13:09 - 000790272 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxAudioAPOShell.dll
2020-07-04 22:54 - 2013-06-25 10:17 - 000871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll
2020-07-04 22:54 - 2013-06-25 10:17 - 000162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll
2020-07-04 22:54 - 2013-06-25 10:16 - 000582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll
2020-07-04 22:54 - 2013-06-21 08:31 - 000109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2020-07-04 22:54 - 2013-04-30 11:58 - 000916016 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2020-07-04 22:54 - 2013-04-03 11:43 - 000906800 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll
2020-07-04 22:54 - 2012-08-31 16:48 - 007164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2020-07-04 22:54 - 2012-08-31 16:47 - 000434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2020-07-04 22:54 - 2012-08-31 16:47 - 000141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2020-07-04 22:54 - 2012-08-31 16:47 - 000124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2020-07-04 22:54 - 2012-08-31 16:47 - 000075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2020-07-04 22:54 - 2012-03-08 09:17 - 000108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2020-07-04 22:54 - 2012-01-30 09:13 - 000836544 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2020-07-04 22:54 - 2012-01-10 07:50 - 000065944 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2020-07-04 22:54 - 2011-12-20 13:02 - 000331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2020-07-04 22:54 - 2011-09-02 11:51 - 000221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2020-07-04 22:54 - 2011-09-02 11:51 - 000081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2020-07-04 22:54 - 2011-09-02 11:51 - 000078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2020-07-04 22:54 - 2011-08-23 14:30 - 000603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 001756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 001568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 001486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2020-07-04 22:54 - 2011-05-31 07:12 - 000241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2020-07-04 22:54 - 2011-03-17 09:47 - 001361336 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2020-07-04 22:54 - 2011-03-07 14:41 - 000148416 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2020-07-04 22:54 - 2010-11-08 05:01 - 000078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2020-07-04 22:54 - 2010-11-03 16:00 - 000149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2020-07-04 22:54 - 2010-09-27 07:04 - 000318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2020-07-04 22:54 - 2010-07-22 14:18 - 000074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2020-07-04 22:54 - 2009-11-24 07:25 - 000518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2020-07-04 22:54 - 2009-11-24 07:25 - 000211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2020-07-04 22:54 - 2009-11-24 07:25 - 000198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2020-07-04 22:54 - 2009-11-24 07:25 - 000155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2020-07-04 22:47 - 2020-07-04 22:56 - 000000000 ___HD C:\Program Files (x86)\Temp
2020-07-04 22:36 - 2020-07-04 22:37 - 000000000 ____D C:\ProgramData\Atheros
2020-07-04 22:36 - 2020-07-04 22:36 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\Atheros
2020-07-04 22:27 - 2020-07-04 22:29 - 000000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
2020-07-03 17:57 - 2020-07-03 17:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mylio
2020-07-03 17:57 - 2020-07-03 17:57 - 000000000 ____D C:\Program Files\Mylio
2020-07-03 17:46 - 2020-07-03 17:47 - 000000000 ____D C:\Users\pvsam\Mylio
2020-07-03 17:45 - 2020-07-03 17:57 - 000000000 ____D C:\Users\pvsam\AppData\Local\Mylio
2020-07-03 13:32 - 2020-07-15 12:23 - 000001192 _____ C:\Users\pvsam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Toolkit.lnk
2020-07-03 13:32 - 2020-07-03 13:32 - 000001010 _____ C:\Users\Public\Desktop\Toolkit.lnk
2020-07-03 13:32 - 2020-07-03 13:32 - 000001010 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toolkit.lnk
2020-07-03 13:32 - 2020-07-03 13:32 - 000001010 _____ C:\ProgramData\Desktop\Toolkit.lnk
2020-07-03 13:32 - 2020-07-03 13:32 - 000000000 ____D C:\Program Files (x86)\Toolkit
2020-07-03 13:29 - 2020-07-15 12:34 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\Toolkit
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-07-15 12:28 - 2019-12-07 14:44 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-07-15 12:23 - 2020-05-30 15:07 - 000840598 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-07-15 12:23 - 2019-04-03 16:21 - 000000000 ___RD C:\Users\pvsam\OneDrive
2020-07-15 12:22 - 2019-12-07 14:43 - 000000000 ____D C:\WINDOWS\INF
2020-07-15 12:18 - 2020-05-30 15:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-07-15 12:18 - 2020-05-30 14:46 - 000008192 ___SH C:\DumpStack.log.tmp
2020-07-15 12:18 - 2020-05-30 14:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-07-15 12:18 - 2019-12-07 14:44 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-07-15 12:18 - 2019-05-03 10:13 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-07-15 11:37 - 2019-04-03 16:28 - 000000000 ____D C:\Users\pvsam\AppData\LocalLow\Mozilla
2020-07-15 11:33 - 2020-05-30 14:55 - 000000000 ____D C:\Users\pvsam
2020-07-15 09:50 - 2020-03-14 14:02 - 000002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-07-15 09:50 - 2020-03-14 14:02 - 000002259 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-07-15 09:50 - 2020-03-14 14:02 - 000002259 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-07-15 09:41 - 2020-05-30 15:22 - 000004164 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{DB785866-6B07-4009-A38C-9F12204A5356}
2020-07-15 09:38 - 2020-05-30 15:22 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-07-15 09:37 - 2020-06-07 10:20 - 000000000 ____D C:\Users\pvsam\AppData\Local\CrashDumps
2020-07-14 23:28 - 2019-04-03 16:45 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\DMCache
2020-07-14 23:14 - 2019-04-03 16:51 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\vlc
2020-07-14 20:04 - 2019-05-19 10:27 - 000000000 ____D C:\Users\pvsam\AppData\Local\ElevatedDiagnostics
2020-07-14 20:04 - 2019-04-29 22:28 - 000000000 ____D C:\Users\pvsam\AppData\LocalLow\Temp
2020-07-14 16:04 - 2019-12-07 14:44 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-07-14 13:50 - 2020-05-09 10:30 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\robot-agent
2020-07-13 20:01 - 2019-07-12 10:53 - 000002230 _____ C:\Users\pvsam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UiPath Studio.lnk
2020-07-13 20:01 - 2019-07-12 10:51 - 000000000 ____D C:\Users\pvsam\AppData\Local\UiPath
2020-07-12 22:04 - 2020-05-30 15:22 - 000003478 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-12 22:04 - 2020-05-30 15:22 - 000003354 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-12 17:14 - 2019-04-03 16:45 - 000000000 ____D C:\Users\pvsam\Downloads\Video
2020-07-12 13:34 - 2019-12-07 14:33 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-07-11 19:27 - 2019-04-03 16:34 - 000000000 ____D C:\Users\pvsam\OneDrive\Documents\Bluetooth Folder
2020-07-11 18:51 - 2019-07-24 11:24 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-07-11 18:50 - 2019-12-07 14:33 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-07-11 10:51 - 2019-04-03 17:22 - 000000000 ____D C:\Program Files\CCleaner
2020-07-11 10:49 - 2019-04-21 08:59 - 000000000 ____D C:\Users\pvsam\OneDrive\Documents\CC
2020-07-11 10:43 - 2020-04-19 11:53 - 000001553 _____ C:\Users\pvsam\Desktop\Duplicate File Remover.lnk
2020-07-11 10:42 - 2019-04-03 16:45 - 000000000 ____D C:\Users\pvsam\Downloads\Compressed
2020-07-11 10:36 - 2020-01-04 09:28 - 000000000 ____D C:\Program Files\Remo Duplicate File Remover 1.0
2020-07-11 10:25 - 2019-04-26 13:25 - 000000000 ____D C:\ProgramData\Package Cache
2020-07-11 10:08 - 2019-07-24 11:24 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-07-10 23:48 - 2019-04-03 17:28 - 000000000 ____D C:\Users\pvsam\AppData\Roaming\uTorrent
2020-07-10 23:02 - 2019-04-03 17:28 - 000000000 ____D C:\Users\pvsam\AppData\Local\BitTorrentHelper
2020-07-10 15:01 - 2018-09-15 13:01 - 000000155 _____ C:\WINDOWS\win.ini
2020-07-10 11:02 - 2019-12-07 14:44 - 000000000 ___HD C:\Program Files\WindowsApps
2020-07-09 12:46 - 2020-05-30 15:22 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-07-07 13:54 - 2019-04-03 16:14 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-07-04 22:55 - 2019-04-03 15:57 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2020-07-04 22:54 - 2020-06-08 12:15 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-07-04 22:30 - 2020-06-08 12:15 - 000000000 ____D C:\Program Files (x86)\Qualcomm Atheros
2020-07-04 09:54 - 2019-08-17 14:06 - 000000000 ____D C:\Users\pvsam\OneDrive\Documents\Publications
2020-07-03 13:38 - 2019-04-03 15:54 - 000000000 ____D C:\Users\pvsam\AppData\Local\Packages
2020-07-02 08:42 - 2019-04-04 04:03 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-06-25 19:14 - 2020-05-30 15:22 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2953840584-32695445-2838772337-1001
2020-06-25 19:14 - 2020-05-30 14:55 - 000002363 _____ C:\Users\pvsam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-06-25 09:22 - 2019-04-03 16:31 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-06-25 09:22 - 2019-04-03 16:31 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-06-25 09:22 - 2019-04-03 16:31 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-06-20 13:12 - 2019-12-07 13:03 - 000000000 ____D C:\Program Files (x86)\hide.me VPN
2020-06-19 10:12 - 2019-04-03 16:19 - 000000000 ____D C:\Users\pvsam\AppData\Local\PlaceholderTileLogoFolder
2020-06-18 13:28 - 2019-12-16 12:27 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2020-06-18 13:28 - 2019-12-16 12:27 - 000000916 _____ C:\ProgramData\Desktop\VLC media player.lnk
==================== Files in the root of some directories ========
2019-04-06 20:09 - 2019-04-06 20:09 - 000000000 _____ () C:\Users\pvsam\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================