Again and Again adding a suspicious extension to my browsers

So Farrare

Thanks for the support .Below are the logs you asked. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-07-2021Ran by CHAITANYA (administrator) on CHAITANYA-PC (Dell Inc. Studio 1458) (07-07-2021 20:38:11)Running from C:UsersCHAITANYAOneDriveDesktopLoaded Profiles: CHAITANYAPlatform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)Default browser: EdgeBoot Mode: […]

Thanks for the support .Below are the logs you asked.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-07-2021
Ran by CHAITANYA (administrator) on CHAITANYA-PC (Dell Inc. Studio 1458) (07-07-2021 20:38:11)
Running from C:UsersCHAITANYAOneDriveDesktop
Loaded Profiles: CHAITANYA
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:Program Files (x86)AMDATI.ACECore-StaticCCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:Program Files (x86)AMDATI.ACECore-StaticMOM.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:Program FilesAMDCNextCNextcnext.exe
(Advanced Micro Devices, Inc. -> AMD) C:WindowsSystem32atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:WindowsSystem32atiesrxx.exe
(Google LLC -> ) C:Program FilesGoogleDrivegoogledrivesync.exe <2>
(Google LLC -> Google LLC) C:Program Files (x86)GoogleUpdate1.3.36.82GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:Program Files (x86)GoogleUpdate1.3.36.82GoogleCrashHandler64.exe
(Greatis Software LLC -> Greatis Software) C:Program Files (x86)UnHackMehackmon.exe
(IObit CO., LTD -> IObit) C:Program Files (x86)IObitAdvanced SystemCareASCService.exe
(IObit CO., LTD -> IObit) C:Program Files (x86)IObitAdvanced SystemCareASCTray.exe
(IObit CO., LTD -> IObit) C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe
(IObit CO., LTD -> IObit) C:Program Files (x86)IObitAdvanced SystemCareRealTimeProtector.exe
(Microsoft Corporation -> Microsoft Corporation) C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:UsersCHAITANYAAppDataLocalMicrosoftOneDriveOneDrive.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsMicrosoft.NETFrameworkv2.0.50727RegAsm.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSysWOW64rundll32.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:WindowsSysWOW64svchost.exe <3>
(Quick Heal Technologies Limited -> ) C:Program FilesGuardianGuardian NetSecureBSSISS.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureARWSRVC.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureBDSSVC.exe
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureemlproxy.exe
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureONLINENT.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureOPSSVC.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureQHPISVR.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureQUHLPSVC.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureREPRSVC.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureSAPISSVC.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureSCANWSCS.EXE
(Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.) C:Program FilesGuardianGuardian NetSecureSCSECSVC.EXE
(SeriousBit Srl -> SeriousBit) C:Program FilesNetBalancerSeriousBit.NetBalancer.Service.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:Program FilesSynapticsSynTPSynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:Program FilesSynapticsSynTPSynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:Program FilesSynapticsSynTPSynTPHelper.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:Program Files (x86)Common FilesWondershareWondershare Helper CompactWSHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM…Run: [Guardian Core UI] => C:Program FilesGuardianGuardian NetSecurestrtupap.exe [265240 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
HKLM…Run: [StartCN] => C:Program FilesAMDCNextCNextcnext.exe [4926664 2016-02-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32…Run: [Wondershare Helper Compact.exe] => C:Program Files (x86)Common FilesWondershareWondershare Helper CompactWSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32…Run: [TeamsMachineUninstallerLocalAppData] => C:UsersCHAITANYAAppDataLocalMicrosoftTeamsUpdate.exe [2453704 2021-05-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32…Run: [StartCCC] => C:Program Files (x86)AMDATI.ACECore-Staticamd64CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLMSOFTWAREPoliciesMicrosoftWindows Defender: Restriction <==== ATTENTION
HKUS-1-5-21-585299867-3638530553-3281382602-1001…Run: [GoogleDriveSync] => C:Program FilesGoogleDrivegoogledrivesync.exe [49925280 2021-06-18] (Google LLC -> )
HKUS-1-5-21-585299867-3638530553-3281382602-1001…Run: [Advanced SystemCare] => C:Program Files (x86)IObitAdvanced SystemCareASCTray.exe [3724824 2021-05-10] (IObit CO., LTD -> IObit)
HKUS-1-5-21-585299867-3638530553-3281382602-1001…Run: [NetBalancer] => C:Program FilesNetBalancerSeriousBit.NetBalancer.Tray.exe [1914544 2021-06-08] (SeriousBit Srl -> SeriousBit)
HKLMSoftwareMicrosoftActive SetupInstalled Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -> C:Program FilesGoogleChromeApplication91.0.4472.124Installerchrmstp.exe [2021-07-03] (Google LLC -> Google LLC)
HKLMSoftware…AuthenticationCredential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -> C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDCREDPROV.DLL [2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
BootExecute: autocheck autochk * Partizan

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: 12BF24A5-F8BD-415C-976C-7480D9981FBF – PC HelpSoft Driver Updater automatic scan and new device notifications -> No File <==== ATTENTION
Task: 17E6394B-CEB0-4748-A4B5-53B183A1D157 – System32TasksGoogleUpdateTaskMachineCore => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [154456 2021-05-25] (Google LLC -> Google LLC)
Task: 18177C84-24BD-40AB-B775-D07C430F6065 – System32Tasks20356C7E-AC5C-49C1-9A4D-3498F3205AC0 => C:Windowssystem32pcalua.exe -a C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021vcredist2008_x64.exe -d C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021 -c /qb
Task: 2B6B07BD-A7E4-44C8-8929-7067C7E7EDA2 – System32TasksMicrosoftOfficeOffice Automatic Updates 2.0 => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [24613240 2021-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: 3F825AAB-5257-4D57-9FA2-B70BA6B49ACF – MicrosoftWindowsEnd Of SupportNotify2 -> No File <==== ATTENTION
Task: 4AEB762C-60D9-4332-A634-B4D50899DC03 – System32TasksF638C117-F8FD-4148-B558-309937E7485E => C:Windowssystem32pcalua.exe -a C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021vcredist2008_x86.exe -d C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021 -c /qb
Task: 59E86FAB-2868-4689-BFE6-0C6EB43F395D – System32TasksMicrosoftOfficeOffice Feature Updates Logon => C:Program FilesMicrosoft OfficerootOffice16sdxhelper.exe [158576 2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Task: 63A530FE-9943-4D24-A85F-C0EF0EA5F9AD – System32TasksMicrosoftOfficeOfficeTelemetryAgentFallBack2016 => C:Program FilesMicrosoft OfficerootOffice16msoia.exe [6158776 2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Task: 7A9135D9-2F2E-42E0-A210-0B8427FFABC1 – System32TasksResume Quickup Download => C:Program FilesGuardianGuardian NetSecureACAPPAA.EXE [395288 2020-12-15] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
Task: 90724B8A-5ADC-47FF-B388-9B86443FCA5D – System32TasksMicrosoftWindowsMUINlsLexicons0rialization.Formatters.Soap.ni => C:WindowsMicrosoft.NETFrameworkv2.0.50727RegAsm.exe /U C:UsersCHAITA~1AppDataLocalCommandThumbnailRfrphGhostyasack_sprxs.dll
Task: 9309F517-979E-4C07-BFCA-37027B075133 – System32TasksUnHackMe Task Scheduler => C:Program Files (x86)UnHackMehackmon.exe [4781408 2021-06-08] (Greatis Software LLC -> Greatis Software)
Task: 9CC2890E-CCBB-44C5-8CD2-F132C714E520 – System32TasksMicrosoftOfficeOffice Feature Updates => C:Program FilesMicrosoft OfficerootOffice16sdxhelper.exe [158576 2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Task: A7F3AB28-D29E-4F21-BD52-AEA17EBD0C9A – System32TasksD4DADBD1-6646-4A44-9CCF-DF01CF3BC2DA => msiexec.exe /package “C:UsersCHAITANYADownloadsWindowsPCHealthCheckSetup.msi”
Task: AD8EBF26-8F88-4D4D-8340-120039C625C6 – System32TasksASC_PerformanceMonitor => C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe [4546072 2021-06-30] (IObit CO., LTD -> IObit)
Task: AF0C8E4B-3BAD-44EA-9D99-A4B3B01BD6BA – System32TasksMicrosoftOfficeOffice ClickToRun Service Monitor => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [24613240 2021-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: B00439BC-11E3-4FF9-A2A0-D8940603B684 – System32TasksAMD Updater => C:Program FilesAMDCIM\Bin64InstallManagerApp.exe [10219208 2016-02-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: B9A14F7B-76F4-49BB-A4A5-8FB4277463CA – MicrosoftWindowsEnd Of SupportNotify1 -> No File <==== ATTENTION
Task: BA2F6EA5-61A8-48F6-9B7C-5BF9060051FE – System32TasksA617CEF-F1F6-4752-926D-C7AA6F6E5677 => C:Windowssystem32pcalua.exe -a C:UsersCHAITA~1AppDataLocalTempRar$EXa7788.4380DeskthemepackInstaller.exe -d C:UsersCHAITANYADownloads -c “C:UsersCHAITANYADownloadsnorway.deskthemepack” <==== ATTENTION
Task: C23449AA-AB12-4323-A22D-888AD645874D – System32TasksGuardian AntiMalware Scan => C:Program FilesGuardianGuardian NetSecureASMAIN.EXE [410648 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
Task: C358D866-5E48-4CC7-B303-90514C1B6108 – MicrosoftWindowsSetupEOSNotify2 -> No File <==== ATTENTION
Task: C95BB59C-82F9-42EC-9481-155061E6BC72 – System32Tasks7C40BF69-0F24-4F1E-B3B0-2386D8904169 => C:Windowssystem32pcalua.exe -a C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021vcredist2010_x64.exe -d C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021 -c /passive /norestart
Task: C97F93AD-F271-450D-AE94-61CCD809AEB0 – System32TasksAE4C4794-07F3-41EB-848B-4F8C7386A3F3 => C:Windowssystem32pcalua.exe -a C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021vcredist2010_x86.exe -d C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021 -c /passive /norestart
Task: D30613EB-9DE0-4FF3-BC1A-051EC8B61F1E – System32TasksASC_SkipUac_CHAITANYA => C:Program Files (x86)IObitAdvanced SystemCareASC.exe [9578520 2021-06-30] (IObit CO., LTD -> IObit)
Task: D4E29932-8CC6-423C-A134-09A28B6D9E7A – MicrosoftWindowsSetupEOSNotify -> No File <==== ATTENTION
Task: E1611BB3-C6C5-40C9-B5AC-B2AE55C8FAD3 – System32TasksGoogleUpdateTaskMachineUA => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [154456 2021-05-25] (Google LLC -> Google LLC)
Task: FAA7D61C-CC3A-49D7-B2F7-FA7DA67D3C48 – System32TasksMicrosoftOfficeOfficeTelemetryAgentLogOn2016 => C:Program FilesMicrosoft OfficerootOffice16msoia.exe [6158776 2021-05-26] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:WindowsTasksGuardian AntiMalware Scan.job => C:Program FilesGuardianGuardian NetSecureASMAIN.EXE
Task: C:WindowsTasksResume Quickup Download.job => C:Program FilesGuardianGuardian NetSecureACAPPAA.EXE

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 07 C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [134528 2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
Winsock: Catalog5 08 C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [134528 2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
Winsock: Catalog5-x64 07 C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [168304 2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
Winsock: Catalog5-x64 08 C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [168304 2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
TcpipParameters: [DhcpNameServer] 192.168.252.253
Tcpip..Interfaces67513845-19EC-4AD2-A8D4-305118788441: [DhcpNameServer] 192.168.252.253

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:UsersCHAITANYAAppDataLocalMicrosoftEdgeUser DataDefault [2021-07-07]
Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157
Edge Extension: (Microsoft Bing Quick Search) – C:UsersCHAITANYAAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsekccfocemkpmljfcnhhlinkeafbeocco [2021-05-25]
Edge Extension: (Office) – C:UsersCHAITANYAAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsgggmmkjegpiggikcnhidnjjhmicpibll [2021-05-25]
Edge Extension: (IObit Surfing Protection) – C:UsersCHAITANYAAppDataLocalMicrosoftEdgeUser DataDefaultExtensionsimgpenhngnbnmhdkpdfnfhdpmfgmihdn [2021-05-25]
Edge Extension: (vSpeedNews) – C:ProgramDataUuulcIvgcgjB67192A9 [2021-07-07]
Edge Profile: C:UsersCHAITANYAAppDataLocalMicrosoftEdgeUser DataProfile 1 [2021-07-07]
Edge HKUS-1-5-21-585299867-3638530553-3281382602-1001SOFTWAREMicrosoftEdgeExtensions…EdgeExtension: [llbjbkhnmlidjebalopleeepgdfgcpec] – C:Program Files (x86)Internet Download ManagerIDMEdgeExt.crx <not found>

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:Program FilesMicrosoft Silverlight5.1.50918.0npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:Program FilesMicrosoft OfficerootOffice16NPSPWRAP.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:Program FilesVideoLANVLCnpvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:Program FilesVideoLANVLCnpvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Mozilla Firefoxpluginsnpmeetingjoinpluginoc.dll [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:Program Files (x86)Microsoft Silverlight5.1.50918.0npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16NPSPWRAP.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataGuest Profile [2021-07-06]
CHR Profile: C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1 [2021-07-06]
CHR HomePage: Profile 1 -> hxxps://in.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87nptdwxol012520&param1=y6bdVFVIsvuYsgEClQfz8B3zzGW%2BMXjYap41VPqwQlKxkIwD5zyoZaVFc3TlSNwZoJkzOalBTouV%2BtnZ6wezPnKTasSVyQU5OF97ZPisWcIczFw7qS2ecs1Tb9DMnDTWfSBMHnk58ikE6FLiK%2BxPho32F8VID0hBGlNHulSqHAvyhwbeMJC4G%2BiFT4jFx8ib2uE7fuOVDHI71py9pzr7eTK%2BrwEjmpAuEwb56%2FlW%2Bgd6kiQTYn7sy5qcV0EBl1UfFBjpEvt73WdCMKBJ3xBE6DuJ6%2BOeTaKZrqNaDBtUi2qk17uIeiPBxqxaTwkc1Dmf0R7qCAgyZ3jejJm8lxX29RTOchOfcAtv5yP995cQg0Cm%2BwAK62fSzbjd9szuBbInocq4lDr8fXSDdAFPt%2B%2B9Aw%3D%3D
CHR StartupUrls: Profile 1 -> “chrome://new-tab-page/”
CHR Extension: (Slides) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsaapocclcgogkmnckokdopfmhonfmgoek [2021-07-05]
CHR Extension: (Docs) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsaohghmighlieiainnegkcijnfilokake [2021-07-05]
CHR Extension: (MEGA) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsbigefpfhnfcobdlfbedofhhaibnlghod [2021-07-05]
CHR Extension: (YouTube) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2021-07-05]
CHR Extension: (File Converter – By Online-Convert.com) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsdicgkflojhbopmagcacdklcpdfdcnhko [2021-07-05]
CHR Extension: (Snapstream) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsdlnjhhlajeiekdbohajefckgejliidek [2021-07-05]
CHR Extension: (Sheets) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsfelcaaldnbdncclmgdcncolpebgiejap [2021-07-05]
CHR Extension: (Google Docs Offline) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-07-05]
CHR Extension: (Video Downloader Plus) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionshkdmdpdhfaamhgaojpelccmeehpfljgf [2021-07-05]
CHR Extension: (IObit Surfing Protection) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsimgpenhngnbnmhdkpdfnfhdpmfgmihdn [2021-07-05]
CHR Extension: (Block Site) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionslebiggkccaodkkmjeimmbogdedcpnmfb [2021-07-05]
CHR Extension: (Colors) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionslhbgjlhhonbdjfdoiklbbkejcipkbnac [2021-07-06]
CHR Extension: (Application Launcher For Drive (by Google)) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2021-07-05]
CHR Extension: (Office) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsndjpnladcallmjemlbaebfadecfhkepb [2021-07-05]
CHR Extension: (Chrome Web Store Payments) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsnmmhkkegccagdldgiimedpiccmgmieda [2021-07-05]
CHR Extension: (Sendy (For Chrome, Gmail, Slack and Chatwork)) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionspagahecnnmjjlpoakhagcpnalaodfbkk [2021-07-05]
CHR Extension: (Chrome Media Router) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-05]
CHR Extension: (Enhancer for YouTube™) – C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataProfile 1Extensionsponfpcnoihfmfllpaingbgckeeldkhle [2021-07-05]
CHR Profile: C:UsersCHAITANYAAppDataLocalGoogleChromeUser DataSystem Profile [2021-07-06]
CHR HKLM…ChromeExtension: [kaebhgioafceeldhgjmendlfhbfjefmo] – C:Program Files (x86)[email protected] <not found>
CHR HKUS-1-5-21-585299867-3638530553-3281382602-1001SOFTWAREGoogleChromeExtensions…ChromeExtension: [apdfllckaahabafndbhieahigkjlhalf] – C:UsersCHAITA~1AppDataLocalGoogleDriveuser_defaultapdfllckaahabafndbhieahigkjlhalf_live.crx [2021-05-30]
CHR HKUS-1-5-21-585299867-3638530553-3281382602-1001SOFTWAREGoogleChromeExtensions…ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

Brave:
=======
BRA Profile: C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefault [2021-06-01]
BRA Extension: (MEGA) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionsbigefpfhnfcobdlfbedofhhaibnlghod [2021-05-26]
BRA Extension: (File Converter – By Online-Convert.com) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionsdicgkflojhbopmagcacdklcpdfdcnhko [2021-05-26]
BRA Extension: (Snapstream) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionsdlnjhhlajeiekdbohajefckgejliidek [2021-05-26]
BRA Extension: (Avast Online Security) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionsgomekmidlodglbbmalcneegieacbdmki [2021-05-26]
BRA Extension: (Video Downloader Plus) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionshkdmdpdhfaamhgaojpelccmeehpfljgf [2021-05-26]
BRA Extension: (Block Site) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionslebiggkccaodkkmjeimmbogdedcpnmfb [2021-05-26]
BRA Extension: (Application Launcher For Drive (by Google)) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2021-05-26]
BRA Extension: (Office) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionsndjpnladcallmjemlbaebfadecfhkepb [2021-05-26]
BRA Extension: (Sendy (For Chrome, Gmail, Slack and Chatwork)) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionspagahecnnmjjlpoakhagcpnalaodfbkk [2021-05-26]
BRA Extension: (Lunar Reader – Dark Theme & Night Shift Mode) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser DataDefaultExtensionspifalnbglchfojkfmechjalgbjoodlpg [2021-05-26]
BRA Extension: (Brave Local Data Files Updater) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Dataafalakplffnnnlkncjhbmahjfjhmlkal [2021-05-26]
BRA Extension: (Brave Ad Block Updater (Default)) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Datacffkpbalmllkdoenhmdmpbkajipdjfam [2021-05-31]
BRA Extension: (Brave Tor Client Updater (Windows)) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Datacpoalefficncklhjfpglfiplenlpccdb [2021-05-26]
BRA Extension: (Brave Ads Resources) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Dataemgmepnebbddgnkhfmhdhmjifkglkamo [2021-05-26]
BRA Extension: (Brave NTP sponsored images) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Datagccbbckogglekeggclmmekihdgdpdgoe [2021-05-31]
BRA Extension: (Brave Ads Resources) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Dataiblokdlgekdjophgeonmanpnjihcjkjj [2021-05-29]
BRA Extension: (Brave SpeedReader Updater) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Datajicbkmdloagakknpihibphagfckhjdih [2021-05-26]
BRA Extension: (Brave Ads Resources) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Datakkjipiepeooghlclkedllogndmohhnhi [2021-05-26]
BRA Extension: (Brave Ads Resources) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Dataocilmpijebaopmdifcomolmpigakocmo [2021-05-29]
BRA Extension: (Brave HTTPS Everywhere Updater) – C:UsersCHAITANYAAppDataLocalBraveSoftwareBrave-BrowserUser Dataoofiananboodjbbmdelgdommihjbkfag [2021-05-26]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService14; C:Program Files (x86)IObitAdvanced SystemCareASCService.exe [1295384 2021-04-28] (IObit CO., LTD -> IObit)
R2 arwsrvc; C:Program FilesGuardianGuardian NetSecurearwsrvc.exe [85536 2021-05-25] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 Behavior Detection System; C:Program FilesGuardianGuardian NetSecurebdssvc.exe [53880 2021-05-31] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S2 ClickToRunSvc; C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeClickToRun.exe [11137448 2021-05-09] (Microsoft Corporation -> Microsoft Corporation)
R2 Core Mail Protection; C:Program FilesGuardianGuardian NetSecureEMLPROXY.EXE [138776 2021-06-16] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 Core Scanning Server; C:Program FilesGuardianGuardian NetSecureSAPISSVC.EXE [338456 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S3 Core Scanning ServerEx; C:Program FilesGuardianGuardian NetSecureSAPISSVC.EXE [338456 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 NetBalancerService; C:Program FilesNetBalancerSeriousBit.NetBalancer.Service.exe [189104 2021-06-08] (SeriousBit Srl -> SeriousBit)
R2 Online Protection System; C:Program FilesGuardianGuardian NetSecureopssvc.exe [158232 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 Quick Update Service; C:Program FilesGuardianGuardian NetSecurequhlpsvc.exe [264216 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 RepairService; C:Program FilesGuardianGuardian NetSecurereprsvc.exe [90136 2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 ScanWscS; C:Program FilesGuardianGuardian NetSecureSCANWSCS.EXE [438800 2020-05-13] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R2 ScSecSvc; C:Program FilesGuardianGuardian NetSecureScSecSvc.exe [643184 2019-08-22] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [746688 2021-04-28] (Oracle Corporation -> Oracle Corporation)
R2 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2020-08-15] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2291568 2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
S3 wuauserv; C:Windowssystem32wuaueng2.dll [2651136 2020-08-16] (Microsoft Corporation) [File not signed]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 arwflt; C:WindowsSystem32DRIVERSarwflt.sys [181032 2021-05-25] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R3 AscFileControl; C:Program Files (x86)IObitAdvanced SystemCaredriverswin7_amd64AscFileControl.sys [22440 2020-06-03] (IObit Information Technology -> IObit)
R3 AscFileFilter; C:Program Files (x86)IObitAdvanced SystemCaredriverswin7_amd64AscFileFilter.sys [29272 2020-07-21] (IObit CO., LTD -> IObit)
R3 AscRegistryFilter; C:Program Files (x86)IObitAdvanced SystemCaredriverswin7_amd64AscRegistryFilter.sys [28064 2020-06-03] (IObit CO., LTD -> IObit)
R3 atkldrvr; C:WindowsSystem32DRIVERSatkldrvr.sys [57144 2019-11-18] (Quick Heal Technologies Private Limited -> Quick Heal Technologies Ltd.)
S3 b06diag; C:Windowssystem32driversbxdiaga.sys [88104 2012-03-08] (Broadcom Corporation -> Broadcom Corporation)
R1 bdsflt; C:WindowsSystem32DRIVERSbdsflt.sys [136664 2021-05-31] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S3 BFN7x64; C:Windowssystem32driversXeno7x64.sys [157288 2012-02-22] (Bigfoot Networks, Inc. -> Bigfoot Networks, Inc.)
S3 bxfcoe; C:Windowssystem32driversbxfcoe.sys [178216 2012-02-22] (Broadcom Corporation -> Broadcom Corporation)
S3 bxois; C:Windowssystem32driversbxois.sys [539176 2012-02-22] (Broadcom Corporation -> Broadcom Corporation)
R2 catflt; C:WindowsSystem32DRIVERScatflt.sys [288104 2021-05-25] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R3 cpuz145; C:Windowstempcpuz145cpuz145_x64.sys [49968 2021-07-07] (CPUID -> CPUID)
R2 EMLSS; C:WindowsSystem32driversemltdi.sys [30248 2019-11-18] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R3 EtmDevPch; C:WindowsSystem32DRIVERSEtmDevPch.sys [67392 2012-10-13] (Intel Corporation -> Intel Corporation)
R1 ggc; C:WindowsSystem32DRIVERSggc.sys [98136 2020-03-20] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R3 kbfltr; C:WindowsSystem32DRIVERSkbfltr.sys [39152 2019-11-18] (Quick Heal Technologies Private Limited -> Quick Heal Technologies Ltd.)
S3 llio; C:Windowssystem32DRIVERSllio.sys [91200 2019-11-18] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S0 mscank; C:WindowsSystem32DRIVERSmscank.sys [62192 2019-11-18] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
S3 mtinvme; C:Windowssystem32driversmtinvme.sys [124072 2016-05-10] (Micron Technology, Inc. -> Micron Technology, Inc.)
R1 nbdrv; C:WindowsSystem32DRIVERSnbdrv.sys [40976 2016-01-15] (SeriousBit Srl -> SeriousBit)
S3 nvme; C:Windowssystem32driversnvme.sys [77488 2016-08-17] (Lite-On Technology Corporation -> Windows ® Win 7 DDK provider)
R3 OA008Ufd; C:WindowsSystem32DRIVERSOA008Ufd.sys [159840 2009-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R3 OA008Vid; C:WindowsSystem32DRIVERSOA008Vid.sys [313696 2009-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
S3 ocznvme; C:Windowssystem32driversocznvme.sys [99592 2016-06-10] (Toshiba America Electronic Components, Inc. -> TOSHIBA CORPORATION)
R0 ocztrimfilter; C:WindowsSystem32driversocztrimfilter.sys [29064 2016-06-10] (Toshiba America Electronic Components, Inc. -> TOSHIBA CORPORATION)
R3 oraydpms; C:WindowsSystem32DRIVERSoraydpms.sys [33072 2017-09-05] (Shanghai Best Oray Information Technology Co., Ltd. -> Oray)
S3 secnvme; C:Windowssystem32driverssecnvme.sys [90704 2019-09-27] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R0 secnvmeF; C:WindowsSystem32driverssecnvmeF.sys [30512 2019-09-27] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R0 stdcfltn; C:WindowsSystem32DRIVERSstdcfltn.sys [23216 2015-01-09] (STMicroelectronics -> ST Microelectronics)
S3 UASPStor; C:Windowssystem32driversuaspstor.sys [101832 2012-07-26] (Edgard Roberto Viera -> Microsoft Corporation)
S3 UCX01000; C:Windowssystem32driversucx01000.sys [216520 2018-05-02] (Edgard Roberto Viera -> Microsoft Corporation)
S3 USBHUB3; C:Windowssystem32driversUsbHub3.sys [452040 2014-07-24] (Edgard Roberto Viera -> Microsoft Corporation)
S3 USBXHCI; C:Windowssystem32driversUSBXHCI.SYS [342472 2017-02-13] (Edgard Roberto Viera -> Microsoft Corporation)
R3 VBoxNetAdp; C:WindowsSystem32DRIVERSVBoxNetAdp6.sys [239616 2021-04-28] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:WindowsSystem32DRIVERSVBoxNetLwf.sys [249536 2021-04-28] (Oracle Corporation -> Oracle Corporation)
R0 webssx; C:WindowsSystem32driverswebssx.sys [84664 2021-06-16] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
R1 wsnf; C:WindowsSystem32DRIVERSwsnf.sys [51368 2018-11-21] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
U3 aswbdisk; no ImagePath
U4 dmwappushservice; no ImagePath
U0 Partizan; system32driversPartizan.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-07-07 20:37 – 2021-07-07 20:37 – 000000000 ___HD C:ProgramDataUuulc
2021-07-07 20:29 – 2021-07-07 20:29 – 000000000 ___HD C:UsersCHAITANYAScStore
2021-07-07 15:54 – 2021-07-07 15:54 – 001804688 _____ (Microsoft Corporation) C:Windowssystem32SETC286.tmp
2021-07-07 15:54 – 2021-07-07 15:54 – 000051808 _____ (Synaptics Incorporated) C:Windowssystem32DriversSmb_driver_Intel.sys
2021-07-07 15:09 – 2021-07-07 15:09 – 000103424 _____ (Advanced Micro Devices) C:Windowssystem32DelayAPO.dll
2021-07-07 15:09 – 2021-07-07 15:09 – 000096256 _____ (Advanced Micro Devices) C:Windowssystem32DriversAtihdW76.sys
2021-07-07 15:07 – 2021-07-07 15:09 – 000000000 ____D C:UsersCHAITANYAAppDataRoaminginstinfo
2021-07-07 15:07 – 2021-07-07 15:07 – 000000000 ____D C:ProgramDataE0224FF9-7AE3-4F9E-991A-2F004F7E3952
2021-07-07 15:04 – 2021-07-07 15:04 – 027092528 _____ (IObit ) C:UsersCHAITANYADownloadsdriver_booster_setup_trial.exe
2021-07-07 14:13 – 2021-07-07 14:14 – 051737712 _____ (IObit ) C:UsersCHAITANYADownloadsadvanced-systemcare-setup.exe
2021-07-07 14:11 – 2021-07-07 14:16 – 000003032 _____ C:Windowssystem32TasksASC_SkipUac_CHAITANYA
2021-07-07 10:00 – 2021-07-07 10:00 – 000000000 ____D C:ProgramDataWondershare
2021-07-06 21:39 – 2021-07-06 21:41 – 000000000 ____D C:UsersCHAITANYAAppDataLocalMicrosoft Games
2021-07-06 21:37 – 2021-07-07 20:28 – 000000248 _____ C:WindowsSysWOW64PARTIZAN.TXT
2021-07-06 18:37 – 2021-07-06 18:37 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsUniversal Extractor
2021-07-06 18:37 – 2021-07-06 18:37 – 000000000 ____D C:Program Files (x86)Universal Extractor
2021-07-06 17:20 – 2021-07-06 17:20 – 005556306 _____ (Jared Breland ) C:UsersCHAITANYADownloadsuniextract161.exe
2021-07-06 17:02 – 2021-07-06 17:02 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingKRyLack Software
2021-07-06 12:05 – 2021-07-06 12:05 – 000153725 _____ C:UsersCHAITANYADownloadsGmail – Booking Confirmation on IRCTC, Train_ 04211, 07-Jul-2021, 2S, AGC – NDLS.pdf
2021-07-06 12:00 – 2021-07-06 12:00 – 014114816 _____ C:UsersCHAITANYADownloadsWindowsPCHealthCheckSetup (1).msi
2021-07-06 10:30 – 2021-07-06 10:30 – 003073985 _____ (eSoftTools Software ) C:UsersCHAITANYADownloadsesoft7zpassword.exe
2021-07-06 10:10 – 2021-07-06 19:14 – 000377047 _____ C:UsersCHAITANYADownloads7za910.zip
2021-07-06 10:07 – 2021-07-06 10:07 – 000007622 _____ C:UsersCHAITANYADownloads7zcracker.zip
2021-07-04 20:20 – 2021-07-04 20:20 – 000000000 ____D C:UsersDefaultAppDataLocalGoogle
2021-07-01 10:18 – 2021-07-01 10:18 – 001795825 _____ C:UsersCHAITANYADownloadsbootlogger.zip
2021-07-01 10:18 – 2021-07-01 10:18 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom
2021-07-01 10:17 – 2021-07-01 10:18 – 016411840 _____ (Zoom Video Communications, Inc.) C:UsersCHAITANYADownloadsZoomInstaller.exe
2021-06-27 16:50 – 2021-07-06 12:01 – 000001304 _____ C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsPC Health Check.lnk
2021-06-27 16:50 – 2021-07-06 12:01 – 000000000 ____D C:UsersCHAITANYAAppDataLocalPCHealthCheck
2021-06-27 16:48 – 2021-06-27 16:48 – 000002569 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsOrca.lnk
2021-06-27 16:48 – 2021-06-27 16:48 – 000000000 ____D C:Program Files (x86)Orca
2021-06-27 15:57 – 2021-06-27 15:57 – 000000010 _____ C:UsersCHAITANYAOneDriveDocumentsFile Id.txt
2021-06-27 13:40 – 2021-07-07 15:59 – 000000000 ____D C:ProgramDataProductData
2021-06-27 13:30 – 2021-07-06 18:16 – 000000246 _____ C:WindowsSysWOW64PARTIZAN.EXE
2021-06-26 23:21 – 2021-06-26 20:17 – 000001029 _____ C:Windowssystem32Driversetchosts.old
2021-06-26 23:14 – 2021-07-07 18:27 – 000000000 ____D C:@RestoreQuarantine
2021-06-26 22:31 – 2021-07-07 18:19 – 000000000 ____D C:UsersCHAITANYAOneDriveDocumentsRegRun2
2021-06-26 22:31 – 2021-06-26 22:31 – 000003340 _____ C:Windowssystem32TasksUnHackMe Task Scheduler
2021-06-26 22:31 – 2021-06-26 22:31 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsUnHackMe
2021-06-26 22:31 – 2021-06-08 17:16 – 000015440 _____ (Greatis Software, LLC.) C:WindowsSysWOW64DriversUnHackMeDrv.sys
2021-06-26 22:31 – 2015-12-28 11:32 – 000049968 _____ (Greatis Software) C:Windowssystem32partizan.exe
2021-06-26 22:30 – 2021-07-07 20:34 – 000000000 ____D C:Program Files (x86)UnHackMe
2021-06-26 22:29 – 2021-06-26 22:30 – 043790046 _____ C:UsersCHAITANYADownloadsunhackme.zip
2021-06-25 16:20 – 2021-06-25 16:20 – 000000639 _____ C:UsersCHAITANYADownloadsWindowsUpdateDiagnostic.diagcab
2021-06-25 00:30 – 2021-06-25 00:30 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingSeriousBit
2021-06-24 23:15 – 2021-06-24 23:15 – 000000000 ___RD C:UsersCHAITANYAOneDriveDocumentsScanned Documents
2021-06-24 23:15 – 2021-06-24 23:15 – 000000000 ____D C:UsersCHAITANYAOneDriveDocumentsFax
2021-06-24 23:07 – 2021-06-24 23:07 – 001636177 _____ C:UsersCHAITANYADownloadsOrcaMSI.zip
2021-06-24 22:46 – 2021-06-24 22:46 – 000003104 _____ C:Windowssystem32TasksD4DADBD1-6646-4A44-9CCF-DF01CF3BC2DA
2021-06-24 22:15 – 2021-07-07 10:07 – 014118912 _____ C:UsersCHAITANYADownloadsWindowsPCHealthCheckSetup.msi
2021-06-24 12:47 – 2021-06-24 12:47 – 000000000 ___HD C:OneDriveTemp
2021-06-24 00:09 – 2021-06-24 00:09 – 000000000 ____D C:ProgramDataSeriousBit
2021-06-24 00:08 – 2021-06-24 00:09 – 000000000 ____D C:Program FilesNetBalancer
2021-06-24 00:08 – 2021-06-24 00:08 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsNetBalancer
2021-06-24 00:08 – 2016-01-15 09:41 – 000040976 _____ (SeriousBit) C:Windowssystem32Driversnbdrv.sys
2021-06-23 23:50 – 2021-06-23 23:53 – 007975824 _____ (SeriousBit ) C:UsersCHAITANYADownloadsNetBalancerSetup.exe
2021-06-23 22:58 – 2021-07-07 20:38 – 000000000 ____D C:FRST
2021-06-23 12:49 – 2021-06-23 12:49 – 000000000 ____D C:ProgramDataATI
2021-06-23 12:48 – 2021-06-23 12:48 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAMD Catalyst Control Center
2021-06-23 09:46 – 2021-06-24 22:29 – 000000000 ____D C:temp
2021-06-22 23:56 – 2021-06-22 23:57 – 078671159 _____ C:UsersCHAITANYADownloads20740224_624783afb3299423407f72f6667891094ff10721.cab
2021-06-22 23:49 – 2021-06-22 23:49 – 000015344 _____ (Wacom Technology) C:Windowssystem32Driverswacomrouterfilter.sys
2021-06-22 23:49 – 2021-06-22 23:49 – 000000000 ____H C:Windowssystem32DriversMsft_Kernel_wacomrouterfilter_01009.Wdf
2021-06-22 23:47 – 2021-06-22 23:49 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingPC HelpSoft Driver Updater
2021-06-22 23:24 – 2021-06-22 23:24 – 000000000 ____D C:Dell
2021-06-22 22:31 – 2021-06-22 22:31 – 000004224 _____ C:Windowssystem32TasksAMD Updater
2021-06-22 22:30 – 2021-06-22 22:30 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAMD Problem Report Wizard
2021-06-22 22:30 – 2021-06-22 22:30 – 000000000 ____D C:Program Files (x86)ATI Technologies
2021-06-22 22:25 – 2016-02-27 02:30 – 011108696 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atidxx32.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 008089248 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atiumdva.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 001237200 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64aticfx32.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000133016 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atiuxpag.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000120656 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atiu9p64.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000102616 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atiu9pag.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000078432 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atimpc64.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000078432 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32amdpcom64.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000071704 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atimpc32.dll
2021-06-22 22:25 – 2016-02-27 02:30 – 000071704 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64amdpcom32.dll
2021-06-22 22:25 – 2016-02-27 02:29 – 010963496 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atiumd64.dll
2021-06-22 22:25 – 2016-02-27 02:29 – 009176928 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atiumdag.dll
2021-06-22 22:25 – 2016-02-27 02:29 – 009017808 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atiumd6a.dll
2021-06-22 22:25 – 2016-02-27 02:27 – 000296648 _____ (Advanced Micro Devices) C:Windowssystem32Driversamdacpksd.sys
2021-06-22 22:25 – 2016-02-27 02:23 – 023981568 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32Driversatikmdag.sys
2021-06-22 22:25 – 2016-02-27 02:18 – 049988096 _____ (Advanced Micro Devices Inc.) C:Windowssystem32amdocl64.dll
2021-06-22 22:25 – 2016-02-27 02:18 – 000235008 _____ C:Windowssystem32clinfo.exe
2021-06-22 22:25 – 2016-02-27 02:17 – 041510400 _____ (Advanced Micro Devices Inc.) C:WindowsSysWOW64amdocl.dll
2021-06-22 22:25 – 2016-02-27 02:15 – 000065024 _____ (Khronos Group) C:Windowssystem32OpenCL.dll
2021-06-22 22:25 – 2016-02-27 02:15 – 000059392 _____ (Khronos Group) C:WindowsSysWOW64OpenCL.dll
2021-06-22 22:25 – 2016-02-27 02:14 – 027596288 _____ (Advanced Micro Devices Inc.) C:Windowssystem32amdocl12cl64.dll
2021-06-22 22:25 – 2016-02-27 02:14 – 022348288 _____ (Advanced Micro Devices Inc.) C:WindowsSysWOW64amdocl12cl.dll
2021-06-22 22:25 – 2016-02-27 01:53 – 000693248 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32amdlvr64.dll
2021-06-22 22:25 – 2016-02-27 01:53 – 000574464 _____ (Advanced Micro Devices, Inc.) C:WindowsSysWOW64amdlvr32.dll
2021-06-22 22:25 – 2016-02-27 01:53 – 000127488 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32mantle64.dll
2021-06-22 22:25 – 2016-02-27 01:52 – 006644224 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32amdmantle64.dll
2021-06-22 22:25 – 2016-02-27 01:52 – 000113664 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64mantle32.dll
2021-06-22 22:25 – 2016-02-27 01:48 – 005223936 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64amdmantle32.dll
2021-06-22 22:25 – 2016-02-27 01:44 – 031378944 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32atio6axx.dll
2021-06-22 22:25 – 2016-02-27 01:44 – 000096256 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32mantleaxl64.dll
2021-06-22 22:25 – 2016-02-27 01:44 – 000089088 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64mantleaxl32.dll
2021-06-22 22:25 – 2016-02-27 01:41 – 000865280 _____ (AMD) C:Windowssystem32coinst_15.30.dll
2021-06-22 22:25 – 2016-02-27 01:41 – 000686208 _____ C:WindowsSysWOW64atiapfxx.blb
2021-06-22 22:25 – 2016-02-27 01:41 – 000686208 _____ C:Windowssystem32atiapfxx.blb
2021-06-22 22:25 – 2016-02-27 01:41 – 000367104 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32atiapfxx.exe
2021-06-22 22:25 – 2016-02-27 01:41 – 000062464 _____ (Advanced Micro Devices Inc.) C:Windowssystem32aticalrt64.dll
2021-06-22 22:25 – 2016-02-27 01:40 – 015711744 _____ (Advanced Micro Devices Inc.) C:Windowssystem32aticaldd64.dll
2021-06-22 22:25 – 2016-02-27 01:40 – 000055808 _____ (Advanced Micro Devices Inc.) C:Windowssystem32aticalcl64.dll
2021-06-22 22:25 – 2016-02-27 01:40 – 000052224 _____ (Advanced Micro Devices Inc.) C:WindowsSysWOW64aticalrt.dll
2021-06-22 22:25 – 2016-02-27 01:40 – 000049152 _____ (Advanced Micro Devices Inc.) C:WindowsSysWOW64aticalcl.dll
2021-06-22 22:25 – 2016-02-27 01:39 – 025841152 _____ (Advanced Micro Devices, Inc.) C:WindowsSysWOW64atioglxx.dll
2021-06-22 22:25 – 2016-02-27 01:39 – 014302208 _____ (Advanced Micro Devices Inc.) C:WindowsSysWOW64aticaldd.dll
2021-06-22 22:25 – 2016-02-27 01:38 – 000050688 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32amdmmcl6.dll
2021-06-22 22:25 – 2016-02-27 01:38 – 000039424 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64amdmmcl.dll
2021-06-22 22:25 – 2016-02-27 01:36 – 003437632 _____ C:Windowssystem32atiumd6a.cap
2021-06-22 22:25 – 2016-02-27 01:34 – 000442368 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32atidemgy.dll
2021-06-22 22:25 – 2016-02-27 01:34 – 000224256 _____ C:Windowssystem32dgtrayicon.exe
2021-06-22 22:25 – 2016-02-27 01:34 – 000209920 _____ C:Windowssystem32GameManager64.dll
2021-06-22 22:25 – 2016-02-27 01:34 – 000204800 _____ C:Windowssystem32amdgfxinfo64.dll
2021-06-22 22:25 – 2016-02-27 01:34 – 000189952 _____ C:WindowsSysWOW64amdgfxinfo32.dll
2021-06-22 22:25 – 2016-02-27 01:34 – 000186368 _____ C:WindowsSysWOW64GameManager32.dll
2021-06-22 22:25 – 2016-02-27 01:34 – 000162304 _____ C:Windowssystem32atieah64.exe
2021-06-22 22:25 – 2016-02-27 01:34 – 000145408 _____ C:WindowsSysWOW64atieah32.exe
2021-06-22 22:25 – 2016-02-27 01:34 – 000078336 _____ (AMD) C:Windowssystem32atimuixx.dll
2021-06-22 22:25 – 2016-02-27 01:33 – 000562688 _____ (AMD) C:Windowssystem32atieclxx.exe
2021-06-22 22:25 – 2016-02-27 01:33 – 000249344 _____ (AMD) C:Windowssystem32atiesrxx.exe
2021-06-22 22:25 – 2016-02-27 01:33 – 000190976 _____ (AMD) C:Windowssystem32atitmm64.dll
2021-06-22 22:25 – 2016-02-27 01:32 – 003471376 _____ C:WindowsSysWOW64atiumdva.cap
2021-06-22 22:25 – 2016-02-27 01:28 – 001272832 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32atiadlxx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000941568 _____ (Advanced Micro Devices, Inc.) C:WindowsSysWOW64atiadlxy.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000941568 _____ (Advanced Micro Devices, Inc.) C:WindowsSysWOW64atiadlxx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000674816 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32Driversatikmpag.sys
2021-06-22 22:25 – 2016-02-27 01:28 – 000157696 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atig6txx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000142336 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atigktxx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000075776 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atig6pxx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000070144 _____ (Advanced Micro Devices, Inc. ) C:WindowsSysWOW64atiglpxx.dll
2021-06-22 22:25 – 2016-02-27 01:28 – 000070144 _____ (Advanced Micro Devices, Inc. ) C:Windowssystem32atiglpxx.dll
2021-06-22 22:25 – 2016-02-27 01:27 – 000195072 _____ C:Windowssystem32hsa-thunk64.dll
2021-06-22 22:25 – 2016-02-27 01:27 – 000043520 _____ (Advanced Micro Devices, Inc.) C:Windowssystem32Driversati2erec.dll
2021-06-22 22:25 – 2016-02-27 01:26 – 000174592 _____ C:WindowsSysWOW64hsa-thunk.dll
2021-06-22 22:25 – 2016-02-01 12:49 – 000853477 _____ C:Windowssystem32amdicdxx.dat
2021-06-22 22:25 – 2015-10-20 21:44 – 000007112 _____ C:Windowssystem32AMDKernelEvents.man
2021-06-22 22:25 – 2015-10-16 23:49 – 000166560 _____ C:Windowssystem32amde34a.dat
2021-06-22 22:25 – 2015-10-16 02:38 – 000100832 _____ C:Windowssystem32ativce02.dat
2021-06-22 22:25 – 2015-10-16 02:34 – 000177344 _____ C:Windowssystem32ativce03.dat
2021-06-22 22:25 – 2015-10-16 02:29 – 000175648 _____ C:Windowssystem32amde31a.dat
2021-06-22 22:25 – 2015-10-15 00:20 – 000261920 _____ C:Windowssystem32ativvaxy_stn_nd.dat
2021-06-22 22:25 – 2015-10-15 00:18 – 000258464 _____ C:Windowssystem32ativvaxy_cz_nd.dat
2021-06-22 22:25 – 2015-10-15 00:16 – 000252628 _____ C:Windowssystem32ativvaxy_FJ.dat
2021-06-22 22:25 – 2015-10-15 00:14 – 000249680 _____ C:Windowssystem32ativvaxy_FJ_nd.dat
2021-06-22 22:25 – 2015-09-23 00:51 – 000323588 _____ C:Windowssystem32ativvaxy_el.dat
2021-06-22 22:25 – 2015-09-23 00:49 – 000320992 _____ C:Windowssystem32ativvaxy_el_nd.dat
2021-06-22 22:25 – 2015-09-22 23:08 – 000322740 _____ C:Windowssystem32ativvaxy_vi.dat
2021-06-22 22:25 – 2015-09-22 23:06 – 000321072 _____ C:Windowssystem32ativvaxy_vi_nd.dat
2021-06-22 22:25 – 2015-09-22 22:58 – 000234292 _____ C:Windowssystem32ativvaxy_cik.dat
2021-06-22 22:25 – 2015-09-22 22:57 – 000232624 _____ C:Windowssystem32ativvaxy_cik_nd.dat
2021-06-22 20:00 – 2021-06-22 20:00 – 000000000 ____D C:Program FilesATI Technologies
2021-06-22 20:00 – 2021-06-22 20:00 – 000000000 ____D C:Program FilesATI
2021-06-22 19:19 – 2021-06-22 19:20 – 207485208 _____ (Advanced Micro Devices, Inc.) C:UsersCHAITANYADownloads13-9_win7_win8_64_dd_ccc_whql.exe
2021-06-22 19:14 – 2021-06-22 19:14 – 000000000 ____D C:UsersCHAITANYAAppDataLocalRadeonInstaller
2021-06-22 19:14 – 2021-06-22 19:14 – 000000000 ____D C:ProgramDataAMD
2021-06-22 19:10 – 2021-06-22 19:10 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingATI
2021-06-22 19:10 – 2021-06-22 19:10 – 000000000 ____D C:UsersCHAITANYAAppDataLocalATI
2021-06-22 19:09 – 2021-06-22 22:30 – 000000000 ____D C:Program Files (x86)AMD
2021-06-22 19:06 – 2021-06-24 22:16 – 000000000 ____D C:AMD
2021-06-22 18:00 – 2021-03-29 14:27 – 000081632 _____ (Avast Software) C:Windowssystem32icarus_rvrt.exe.to_delete.b8693e6b.tmp
2021-06-22 17:57 – 2021-06-22 17:57 – 000000000 ____D C:UsersCHAITANYAAppDataLocalAVAST Software
2021-06-22 16:51 – 2021-06-24 00:14 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingIDM
2021-06-22 16:51 – 2021-06-23 15:05 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingDMCache
2021-06-22 16:50 – 2021-06-22 16:50 – 011775324 _____ C:UsersCHAITANYADownloads_Getintopc.com_Internet_Download_Manager_6.38_Build_18.rar
2021-06-22 16:10 – 2021-06-22 16:10 – 000003370 _____ C:Windowssystem32TasksAE4C4794-07F3-41EB-848B-4F8C7386A3F3
2021-06-22 16:10 – 2021-06-22 16:10 – 000003370 _____ C:Windowssystem32Tasks7C40BF69-0F24-4F1E-B3B0-2386D8904169
2021-06-22 16:10 – 2021-06-22 16:10 – 000003338 _____ C:Windowssystem32TasksF638C117-F8FD-4148-B558-309937E7485E
2021-06-22 16:10 – 2021-06-22 16:10 – 000003338 _____ C:Windowssystem32Tasks20356C7E-AC5C-49C1-9A4D-3498F3205AC0
2021-06-22 15:56 – 2021-06-22 16:08 – 099735013 _____ C:UsersCHAITANYADownloadsVisual-C-Runtimes-All-in-One-May-2021.zip
2021-06-22 15:53 – 2021-06-26 00:50 – 000000000 ____D C:WindowsSysWOW64directx
2021-06-22 15:38 – 2021-06-22 15:52 – 100807972 _____ C:UsersCHAITANYADownloads_Getintopc.com_DirectX_9.rar
2021-06-22 15:33 – 2021-06-22 15:33 – 030269077 _____ C:UsersCHAITANYADownloads_Solvettube.com_Important_PreRequisits-for-games.mp4
2021-06-22 15:26 – 2021-06-22 15:29 – 028443626 _____ C:UsersCHAITANYADownloads_Solvettube.com_Resident_Evil_7_Biohazard_Gold_Edition_12_DLCs.mp4
2021-06-19 14:46 – 2021-06-19 14:46 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsOracle VM VirtualBox
2021-06-19 14:46 – 2021-06-19 14:46 – 000000000 ____D C:Program FilesOracle
2021-06-19 14:46 – 2021-04-28 14:27 – 000187648 _____ (Oracle Corporation) C:Windowssystem32DriversVBoxUSBMon.sys
2021-06-19 14:46 – 2021-04-28 14:26 – 001038080 _____ (Oracle Corporation) C:Windowssystem32DriversVBoxDrv.sys
2021-06-19 12:35 – 2021-06-19 15:08 – 000000000 ____D C:UsersCHAITANYAVirtualBox VMs
2021-06-19 12:34 – 2021-07-07 18:08 – 000000000 ____D C:UsersCHAITANYA.VirtualBox
2021-06-19 12:34 – 2021-07-07 16:41 – 000000000 ____D C:ProgramDataVirtualBox
2021-06-19 12:32 – 2021-06-19 12:33 – 108114104 _____ (Oracle Corporation) C:UsersCHAITANYADownloadsVirtualBox-6.1.22-144080-Win.exe
2021-06-18 13:51 – 2021-06-18 17:26 – 000001908 _____ C:Windowsdiagwrn.xml
2021-06-18 13:51 – 2021-06-18 17:26 – 000001908 _____ C:Windowsdiagerr.xml
2021-06-18 12:54 – 2021-06-18 13:46 – 579586048 _____ C:UsersCHAITANYADownloadsWINDOWS-11.21996.1.210529-1541.co_release_CLIENT_CONSUMER_x64FRE_en-us.iso
2021-06-17 14:22 – 2021-06-17 14:22 – 000003304 ____N C:bootsqm.dat
2021-06-17 14:21 – 2021-06-17 14:21 – 000000000 __SHD C:found.000
2021-06-17 00:55 – 2021-06-17 00:55 – 000000000 ____D C:UsersCHAITANYAAppDataLocalCEF
2021-06-17 00:42 – 2021-06-17 00:42 – 000003344 _____ C:Windowssystem32TasksA617CEF-F1F6-4752-926D-C7AA6F6E5677
2021-06-16 12:20 – 2021-06-16 12:20 – 000002382 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsWord.lnk
2021-06-15 00:35 – 2021-06-15 00:36 – 006810226 _____ C:UsersCHAITANYADownloadsvbook.pub_rmoinmobookletpdf (1).pdf
2021-06-14 21:56 – 2021-06-14 21:58 – 060013629 _____ C:UsersCHAITANYADownloadsScience for Tenth Class 10 X standard Chemistry CCE pattern Part 2 CBSE NCERT Value Based Question Answers Lakhmir Singh Manjit Kaur S Chand by Lakhmir Singh Manjit Kaur (z-lib.org).pdf
2021-06-11 21:49 – 2021-06-11 21:49 – 000000000 ____D C:UsersCHAITANYAAppDataLocalcache
2021-06-08 18:22 – 2021-06-08 18:22 – 000000000 ____D C:UsersCHAITANYAAppDataLocalHelp

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-07-07 20:38 – 2009-07-14 10:15 – 000031872 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-07-07 20:38 – 2009-07-14 10:15 – 000031872 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-07-07 20:33 – 2021-05-26 00:00 – 000000000 ___RD C:UsersCHAITANYAGoogle Drive
2021-07-07 20:30 – 2021-05-26 11:17 – 000000000 ___RD C:UsersCHAITANYAOneDrive
2021-07-07 20:29 – 2021-05-25 17:12 – 000000000 ____D C:UsersCHAITANYA
2021-07-07 20:28 – 2009-07-14 10:38 – 000000006 ____H C:WindowsTasksSA.DAT
2021-07-07 20:10 – 2009-07-14 08:50 – 000000000 ____D C:Windowsinf
2021-07-07 17:37 – 2021-05-25 21:37 – 000000434 _____ C:WindowsTasksGuardian AntiMalware Scan.job
2021-07-07 17:37 – 2021-05-25 21:37 – 000000414 _____ C:WindowsTasksResume Quickup Download.job
2021-07-07 16:29 – 2021-05-25 20:11 – 000000000 ____D C:ProgramDataIObit
2021-07-07 15:59 – 2021-05-25 20:11 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingIObit
2021-07-07 15:59 – 2021-05-25 20:11 – 000000000 ____D C:Program Files (x86)IObit
2021-07-07 15:25 – 2021-05-27 18:14 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingTelegram Desktop
2021-07-07 15:05 – 2021-05-26 00:36 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAdvanced SystemCare
2021-07-07 14:16 – 2021-05-26 00:36 – 000003232 _____ C:Windowssystem32TasksASC_PerformanceMonitor
2021-07-07 14:12 – 2021-05-25 17:20 – 000000000 ____D C:UsersCHAITANYAAppDataLocalVirtualStore
2021-07-07 10:21 – 2021-05-26 17:20 – 000000000 ____D C:UsersCHAITANYAOneDriveDocumentsZoom
2021-07-06 12:50 – 2021-06-05 14:20 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingvlc
2021-07-06 12:08 – 2021-05-26 10:47 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingWhatsApp
2021-07-05 11:01 – 2021-05-25 20:21 – 000000000 ____D C:Program FilesAMD
2021-07-04 20:21 – 2021-05-25 23:45 – 000002006 _____ C:UsersPublicDesktopGoogle Slides.lnk
2021-07-04 20:21 – 2021-05-25 23:45 – 000002004 _____ C:UsersPublicDesktopGoogle Sheets.lnk
2021-07-04 20:21 – 2021-05-25 23:45 – 000001994 _____ C:UsersPublicDesktopGoogle Docs.lnk
2021-07-04 20:21 – 2021-05-25 23:45 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsBackup and Sync from Google
2021-07-04 20:18 – 2021-06-01 19:27 – 000002225 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Edge.lnk
2021-07-04 20:18 – 2021-06-01 19:27 – 000002184 _____ C:UsersPublicDesktopMicrosoft Edge.lnk
2021-07-03 16:38 – 2021-06-01 19:23 – 000002172 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk
2021-07-03 16:38 – 2021-06-01 19:23 – 000002167 _____ C:UsersPublicDesktopGoogle Chrome.lnk
2021-07-03 13:37 – 2021-05-25 21:36 – 000000000 ____D C:Windowssystem32gprodat
2021-07-02 13:13 – 2021-06-05 13:56 – 000000871 _____ C:UsersPublicDesktopVLC media player.lnk
2021-07-02 11:05 – 2021-05-25 19:48 – 000000000 ____D C:Program FilesWinRAR
2021-07-02 11:00 – 2021-06-01 19:25 – 000003380 _____ C:Windowssystem32TasksMicrosoftEdgeUpdateTaskMachineUA
2021-07-02 11:00 – 2021-06-01 19:25 – 000003252 _____ C:Windowssystem32TasksMicrosoftEdgeUpdateTaskMachineCore
2021-07-01 10:56 – 2021-05-26 10:46 – 000000000 ____D C:UsersCHAITANYAAppDataLocalWhatsApp
2021-07-01 10:55 – 2021-05-26 10:46 – 000000000 ____D C:UsersCHAITANYAAppDataLocalSquirrelTemp
2021-07-01 10:19 – 2021-05-26 01:02 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingZoom
2021-07-01 10:01 – 2021-05-26 11:17 – 000003190 _____ C:Windowssystem32TasksOneDrive Standalone Update Task-S-1-5-21-585299867-3638530553-3281382602-1001
2021-07-01 10:01 – 2021-05-26 11:17 – 000002172 _____ C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsMicrosoft OneDrive.lnk
2021-06-26 22:32 – 2021-05-31 19:42 – 000007606 _____ C:UsersCHAITANYAAppDataLocalResmon.ResmonCfg
2021-06-25 21:52 – 2021-06-02 18:13 – 000000000 ____D C:UsersCHAITANYAAppDataLocalElevatedDiagnostics
2021-06-25 19:23 – 2020-08-16 03:55 – 000808076 _____ C:WindowsSysWOW64PerfStringBackup.INI
2021-06-25 19:23 – 2009-07-14 10:43 – 000808076 _____ C:Windowssystem32PerfStringBackup.INI
2021-06-25 19:18 – 2021-05-26 10:57 – 000002381 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsPowerPoint.lnk
2021-06-25 18:51 – 2009-07-14 10:15 – 000431264 _____ C:Windowssystem32FNTCACHE.DAT
2021-06-25 18:47 – 2020-08-15 18:30 – 000000000 ___SD C:Windowssystem32CompatTel
2021-06-25 18:47 – 2009-07-14 08:50 – 000000000 ____D C:WindowsSysWOW64Setup
2021-06-25 18:47 – 2009-07-14 08:50 – 000000000 ____D C:Windowssystem32Setup
2021-06-25 18:47 – 2009-07-14 08:50 – 000000000 ____D C:WindowsPolicyDefinitions
2021-06-25 18:47 – 2009-07-14 08:50 – 000000000 ____D C:Program FilesCommon FilesSystem
2021-06-25 15:41 – 2021-05-26 05:33 – 000000000 ____D C:Windowssoftwaredistribution.bak
2021-06-24 19:23 – 2009-07-14 08:50 – 000000000 ____D C:Windowsrescache
2021-06-24 00:15 – 2021-05-29 19:45 – 000001186 _____ C:ProgramDataMicrosoftWindowsStart MenuWinRAR.lnk
2021-06-24 00:15 – 2021-05-25 19:48 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsWinRAR
2021-06-24 00:15 – 2021-05-25 19:48 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsWinRAR
2021-06-23 14:39 – 2009-07-14 08:50 – 000000000 ____D C:WindowsLiveKernelReports
2021-06-22 22:35 – 2021-06-06 22:03 – 000000000 ____D C:UsersCHAITANYAAppDataLocalAMD
2021-06-22 22:34 – 2009-07-14 10:38 – 000032548 _____ C:WindowsTasksSCHEDLGU.TXT
2021-06-22 16:11 – 2021-05-25 20:43 – 000000000 ____D C:ProgramDataPackage Cache
2021-06-21 19:53 – 2021-05-26 10:57 – 000002344 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsExcel.lnk
2021-06-20 08:51 – 2021-05-26 10:57 – 000002338 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsOutlook.lnk
2021-06-18 17:25 – 2020-08-16 04:53 – 000000000 ____D C:WindowsPanther
2021-06-17 11:54 – 2021-05-26 00:42 – 090173440 _____ C:Windowssystem32configSOFTWARE.iobit
2021-06-17 11:54 – 2021-05-26 00:42 – 000442368 _____ C:Windowssystem32configDEFAULT.iobit
2021-06-17 11:54 – 2021-05-26 00:42 – 000065536 _____ C:Windowssystem32configSAM.iobit
2021-06-17 11:54 – 2021-05-26 00:42 – 000024576 _____ C:Windowssystem32configSECURITY.iobit
2021-06-16 17:26 – 2021-05-25 21:37 – 000124400 _____ (Quick Heal Technologies Ltd.) C:Windowssystem32Driverswsfilter.sys
2021-06-16 17:26 – 2021-05-25 21:37 – 000084664 _____ (Quick Heal Technologies Ltd.) C:Windowssystem32Driverswebssx.sys
2021-06-16 12:01 – 2021-05-26 10:52 – 000000000 ____D C:Program FilesMicrosoft Office
2021-06-07 22:16 – 2021-05-26 13:25 – 000000000 ____D C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome Apps

==================== Files in the root of some directories ========

2021-05-26 15:28 – 2021-05-26 15:28 – 000000000 _____ () C:UsersCHAITANYAAppDataRoaming61A0.tmp
2021-05-26 15:28 – 2021-05-26 15:28 – 000000000 _____ () C:UsersCHAITANYAAppDataRoaming7705.tmp
2021-05-26 15:28 – 2021-05-26 15:28 – 000000000 _____ () C:UsersCHAITANYAAppDataRoaming7A31.tmp
2021-05-31 19:42 – 2021-06-26 22:32 – 000007606 _____ () C:UsersCHAITANYAAppDataLocalResmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

LastRegBack: 2021-06-24 19:15
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-07-2021
Ran by CHAITANYA (07-07-2021 20:39:58)
Running from C:UsersCHAITANYAOneDriveDesktop
Windows 7 Ultimate Service Pack 1 (X64) (2021-05-25 11:42:19)
Boot Mode: Normal
==========================================================

==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-585299867-3638530553-3281382602-500 – Administrator – Disabled)
CHAITANYA (S-1-5-21-585299867-3638530553-3281382602-1001 – Administrator – Enabled) => C:UsersCHAITANYA
Guest (S-1-5-21-585299867-3638530553-3281382602-501 – Limited – Disabled)
HomeGroupUser$ (S-1-5-21-585299867-3638530553-3281382602-1002 – Limited – Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Guardian NetSecure (Enabled – Up to date) 01EE101D-F008-6F2B-F147-BD7E5C2CD4BC
AS: Guardian NetSecure (Enabled – Up to date) BA8FF1F9-D632-60A5-CBF7-860C27AB9E01
AS: Windows Defender (Enabled – Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
FW: Guardian Firewall (Enabled) 39D59138-BA67-6E73-DA18-144BA2FF93C7

==================== Installed Programs ======================

(Only the adware programs with “Hidden” flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Advanced SystemCare (HKLM-x32…Advanced SystemCare_is1) (Version: 14.5.0 – IObit)
AMD Install Manager (HKLM…AMD Catalyst Install Manager) (Version: 5.00 – Advanced Micro Devices, Inc.)
Backup and Sync from Google (HKLM…A0397FA8-34ED-4A41-A8C9-30EE0B89C464) (Version: 3.56.3802.7766 – Google, Inc.)
Google Chrome (HKLM-x32…Google Chrome) (Version: 91.0.4472.124 – Google LLC)
Guardian NetSecure (HKLM…75DEED91-7B14-49DC-A5F3-B60E633AC4A5) (Version: 19.00 – Guardian) Hidden
Guardian NetSecure (HKLM…Guardian NetSecure) (Version: 19.00 – Quick Heal Technologies Ltd.)
Integrated Webcam Driver (1.05.01.0713) (HKLM…Creative OA008) (Version: 1.05.01.0713 – Creative Technology Ltd.)
Microsoft .NET Framework 4.8 (HKLM…92FB6C44-E685-45AD-9B20-CADF4CABA132 – 1033) (Version: 4.8.03761 – Microsoft Corporation)
Microsoft Edge (HKLM-x32…Microsoft Edge) (Version: 91.0.864.64 – Microsoft Corporation)
Microsoft Office Professional Plus 2016 – en-us (HKLM…ProplusRetail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft Office Professional Plus 2019 – en-us (HKLM…ProPlus2019Retail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft OneDrive (HKUS-1-5-21-585299867-3638530553-3281382602-1001…OneDriveSetup.exe) (Version: 21.124.0620.0001 – Microsoft Corporation)
Microsoft Project Professional 2016 – en-us (HKLM…ProjectProRetail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft Project Professional 2019 – en-us (HKLM…ProjectPro2019Retail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft Silverlight (HKLM…89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 – Microsoft Corporation)
Microsoft Visio Professional 2016 – en-us (HKLM…VisioProRetail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft Visio Professional 2019 – en-us (HKLM…VisioPro2019Retail – en-us) (Version: 16.0.12527.21912 – Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32…710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 – Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM…ad8a2fa1-06e7-4b0d-927d-6e54b3d31028) (Version: 8.0.61000 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x64 9.0.30729.4148 (HKLM…4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x64 9.0.30729.6161 (HKLM…5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.4148 (HKLM-x32…1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.6161 (HKLM-x32…9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 – Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable – 10.0.40219 (HKLM…1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable – 10.0.40219 (HKLM-x32…F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) – 11.0.61030 (HKLM-x32…ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) – 11.0.61030 (HKLM-x32…33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) – 12.0.40664 (HKLM-x32…42d26ef-3dbe-4c25-95d3-4c1b11b235a7) (Version: 12.0.40664.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) – 12.0.40664 (HKLM-x32…9dff3540-fc85-4ed5-ac84-9e3c7fd8bece) (Version: 12.0.40664.0 – Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) – 14.29.30129 (HKLM-x32…b8c00579-2fe5-46b7-9752-8a13e5be7155) (Version: 14.29.30129.1 – Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) – 14.29.30129 (HKLM-x32…b5520083-4b31-4537-a82f-e74d5e34633a) (Version: 14.29.30129.1 – Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.0 (HKLM-x32…3898934B-05AE-41CD-96BE-70DA9BFBCE1F) (Version: 3.0.11010.0 – Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32…19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20) (Version: 3.1.10527.0 – Microsoft Corporation)
NetBalancer (HKLM…NetBalancer_is1) (Version: – SeriousBit)
Office 16 Click-to-Run Extensibility Component (HKLM…90160000-008C-0000-1000-0000000FF1CE) (Version: 16.0.12527.21912 – Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM…90160000-007E-0000-1000-0000000FF1CE) (Version: 16.0.12527.21912 – Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM…90160000-008C-0409-1000-0000000FF1CE) (Version: 16.0.12527.21912 – Microsoft Corporation) Hidden
OpenAL (HKLM-x32…OpenAL) (Version: – )
Oracle VM VirtualBox 6.1.22 (HKLM…573CC601-ED8D-450F-BE6F-A313DD77A4A0) (Version: 6.1.22 – Oracle Corporation)
Orca (HKLM-x32…85F4CBCB-9BBC-4B50-A7D8-E1106771498D) (Version: 3.1.3790.0000 – Microsoft Corporation)
Synaptics Pointing Device Driver (HKLM…SynTPDeinstKey) (Version: 19.2.17.55 – Synaptics Incorporated)
Telegram Desktop version 2.7.10 (HKUS-1-5-21-585299867-3638530553-3281382602-1001…53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 2.7.10 – Telegram FZ-LLC)
UnHackMe 12.60 (HKLM-x32…UnHackMe_is1) (Version: – Greatis Software, LLC.)
Universal Extractor 1.6.1 (HKLM-x32…Universal Extractor_is1) (Version: 1.6.1 – Jared Breland)
VLC media player (HKLM…VLC media player) (Version: 3.0.16 – VideoLAN)
WhatsApp (HKUS-1-5-21-585299867-3638530553-3281382602-1001…WhatsApp) (Version: 2.2123.8 – WhatsApp)
Windows Driver Package – AMD (amdkmpfd) System (02/02/2021 21.10.0.0001) (HKLM…85940EC524A7652788E97F4378F456C7B037AAB1) (Version: 02/02/2021 21.10.0.0001 – AMD)
Windows Driver Package – Broadcom (BCM43XX) Net (03/13/2015 6.30.223.262) (HKLM…890BBB72FF31B2615E1FB80363103CB7EA52377B) (Version: 03/13/2015 6.30.223.262 – Broadcom)
Windows Driver Package – Broadcom HIDClass (09/11/2009 6.3.0.1500) (HKLM…3366905E6EFF86120E12E2DB3F8F2EDC3B7F5003) (Version: 09/11/2009 6.3.0.1500 – Broadcom)
Windows Driver Package – Creative Technology Ltd. (OA008Vid) Image (07/13/2009 1.05.01.0713) (HKLM…A5F9B90472EFBB4ABC1D25E0636FDEEFC1043683) (Version: 07/13/2009 1.05.01.0713 – Creative Technology Ltd.)
Windows Driver Package – Intel (ETMService) System (10/12/2012 04.00.01.1025) (HKLM…447A4C63640268813B6685C4C1E305D1A49D439C) (Version: 10/12/2012 04.00.01.1025 – Intel)
Windows Driver Package – Oray (oraydpms) Monitor (01/11/2012 3.5.0.0) (HKLM…A93583A75980E1C871FE187D6E07EE743F32EE4D) (Version: 01/11/2012 3.5.0.0 – Oray)
Windows Driver Package – Realtek Semiconductor Corp. (RTSUER) USB (12/10/2019 10.0.18362.31255) (HKLM…F1CA3EFEB659340D2FC0FA5547782D4C6625D97D) (Version: 12/10/2019 10.0.18362.31255 – Realtek Semiconductor Corp.)
Windows Driver Package – STMicroelectronics (ST_Accel) System (02/17/2016 2.2.3.11) (HKLM…5466ABE69B0774EF3A6EC25BB0C6BA388A4622D5) (Version: 02/17/2016 2.2.3.11 – STMicroelectronics)
Windows Driver Package – Synaptics (SynTP) Mouse (12/16/2010 15.2.6.0) (HKLM…99355C07B99D30166111D171B5C37E1F4B03A0DA) (Version: 12/16/2010 15.2.6.0 – Synaptics)
Windows Live ID Sign-in Assistant (HKLM…9B48B0AC-C813-4174-9042-476A887592C7) (Version: 6.500.3165.0 – Microsoft Corporation)
Windows PC Health Check (HKLM…0DC4B60-5FC9-4629-8147-EF81ADF0EEA6) (Version: 2.3.2106.25001 – Microsoft Corporation)
WinRAR 6.02 (64-bit) (HKLM…WinRAR archiver) (Version: 6.02.0 – win.rar GmbH)
Wondershare Helper Compact 2.6.0 (HKLM-x32…5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.6.0 – Wondershare)
Zoom (HKUS-1-5-21-585299867-3638530553-3281382602-1001…ZoomUMX) (Version: 5.7.1 (543) – Zoom Video Communications, Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 => C:Program FilesGoogleDrivegoogledrivesync64.dll [2021-06-18] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 => C:Program FilesGoogleDrivegoogledrivesync64.dll [2021-06-18] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 => C:Program FilesGoogleDrivegoogledrivesync64.dll [2021-06-18] (Google LLC -> Google)
ContextMenuHandlers1: [Advanced SystemCare] -> 2803063F-4B8D-4dc6-8874-D1802487FE2D => C:Program Files (x86)IObitAdvanced SystemCareASCExtMenu_64.dll [2021-03-25] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [GDContextMenu] -> BB02B294-8425-42E5-983F-41A1FA970CD6 => C:Program FilesGoogleDrivecontextmenu64.dll [2021-06-18] (Google LLC -> Google)
ContextMenuHandlers1: [RCScan] -> 362A3A82-5EF4-422F-817F-A17EBA53E67C => C:Program FilesGuardianGuardian NetSecureRCSCAN.DLL [2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
ContextMenuHandlers1: [WinRAR] -> B41DB860-64E4-11D2-9906-E49FADC173CA => C:Program FilesWinRARrarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => C:Program FilesWinRARrarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> 2803063F-4B8D-4dc6-8874-D1802487FE2D => C:Program Files (x86)IObitAdvanced SystemCareASCExtMenu_64.dll [2021-03-25] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [Advanced SystemCare] -> 2803063F-4B8D-4dc6-8874-D1802487FE2D => C:Program Files (x86)IObitAdvanced SystemCareASCExtMenu_64.dll [2021-03-25] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [GDContextMenu] -> BB02B294-8425-42E5-983F-41A1FA970CD6 => C:Program FilesGoogleDrivecontextmenu64.dll [2021-06-18] (Google LLC -> Google)
ContextMenuHandlers5: [ACE] -> 5E2121EE-0300-11D4-8D3B-444553540000 => C:Program Files (x86)AMDATI.ACECore-Staticatiacm64.dll [2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [RCScan] -> 362A3A82-5EF4-422F-817F-A17EBA53E67C => C:Program FilesGuardianGuardian NetSecureRCSCAN.DLL [2020-09-03] (Quick Heal Technologies Limited -> Quick Heal Technologies Ltd.)
ContextMenuHandlers6: [WinRAR] -> B41DB860-64E4-11D2-9906-E49FADC173CA => C:Program FilesWinRARrarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => C:Program FilesWinRARrarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription__FilterToConsumerBinding->CommandLineEventConsumer.Name=”BVTConsumer””,Filter=”__EventFilter.Name=”BVTFilter”::
WMI:subscription__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99]
WMI:subscriptionCommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\tools\kernrate]
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopGmail.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopPersonal – Edge.lnk -> C:Program Files (x86)MicrosoftEdgeApplicationmsedge.exe (Microsoft Corporation) -> –profile-directory=”Default”
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopPrepleaf Preparation Portal.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=nhkibnlhhppekogelpndnnmondmcoobe
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopReliable Batch Progress Monitoring System.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=mlmfjdggijpdkhlfjldelokghopjpacj
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopWork – Edge.lnk -> C:Program Files (x86)MicrosoftEdgeApplicationmsedge.exe (Microsoft Corporation) -> –profile-directory=”Profile 1″
ShortcutWithArgument: C:UsersCHAITANYAOneDriveDesktopYouTube.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=agimnkijcaahngcdmfeangaknmldooml –force-dark-mode
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsGmail.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsPrepleaf Preparation Portal.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=nhkibnlhhppekogelpndnnmondmcoobe
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsReliable Batch Progress Monitoring System.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=mlmfjdggijpdkhlfjldelokghopjpacj
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsStart MenuProgramsChrome AppsYouTube.lnk -> C:Program FilesGoogleChromeApplicationchrome_proxy.exe (Google LLC) -> –profile-directory=”Profile 1″ –app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftInternet ExplorerQuick LaunchUser PinnedTaskBarPersonal – Edge.lnk -> C:Program Files (x86)MicrosoftEdgeApplicationmsedge.exe (Microsoft Corporation) -> –profile-directory=”Default”
ShortcutWithArgument: C:UsersCHAITANYAAppDataRoamingMicrosoftInternet ExplorerQuick LaunchUser PinnedImplicitAppShortcuts69639df789022856Google Chrome.lnk -> C:Program FilesGoogleChromeApplicationchrome.exe (Google LLC) -> –profile-directory=”Profile 1″

==================== Loaded Modules (Whitelisted) =============

2021-06-06 22:03 – 2016-07-21 10:54 – 000137728 _____ () [File not signed] C:Program Files (x86)Common FilesWondershareWondershare Helper CompactCBSCreateVC.dll
2021-06-06 22:03 – 2017-09-12 10:34 – 001506304 _____ () [File not signed] C:Program Files (x86)Common FilesWondershareWondershare Helper CompactDAQExp.dll
2015-06-25 16:53 – 2015-06-25 16:53 – 000011776 _____ () [File not signed] C:Program FilesAMDCNextCNextlibEGL.dll
2015-06-25 16:51 – 2015-06-25 16:51 – 002013696 _____ () [File not signed] C:Program FilesAMDCNextCNextlibGLESv2.dll
2015-06-25 17:34 – 2015-06-25 17:34 – 000014336 _____ () [File not signed] C:Program FilesAMDCNextCNextQtQuick.2qtquick2plugin.dll
2015-06-25 17:37 – 2015-06-25 17:37 – 000739840 _____ () [File not signed] C:Program FilesAMDCNextCNextQtQuickControlsqtquickcontrolsplugin.dll
2015-06-25 17:38 – 2015-06-25 17:38 – 000071168 _____ () [File not signed] C:Program FilesAMDCNextCNextQtQuickLayoutsqquicklayoutsplugin.dll
2015-06-25 17:35 – 2015-06-25 17:35 – 000014336 _____ () [File not signed] C:Program FilesAMDCNextCNextQtQuickWindow.2windowplugin.dll
2021-06-24 00:08 – 2021-06-08 11:07 – 000463360 _____ () [File not signed] C:Program FilesNetBalancernDPI.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000114176 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_ctypes.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000172544 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_elementtree.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 002255872 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_hashlib.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000032256 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_multiprocessing.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000046080 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_psutil_windows.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000047616 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_socket.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 002825216 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_ssl.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000026112 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162_yappi.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000080896 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162bz2.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000015872 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162common.time34.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000007680 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162hashobjs_ext.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000301568 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162PIL._imaging.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000168448 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162pyexpat.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 001084416 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162pysqlite2._sqlite.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000548864 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162pythoncom27.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000137728 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162pywintypes27.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000010752 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162select.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000020992 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162thumbnails_ext.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000689664 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162unicodedata.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000119808 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162usb_ext.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000128512 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32api.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000438784 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32com.shell.shell.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000011776 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32crypt.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000023040 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32event.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000149504 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32file.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000223232 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32gui.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000048128 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32inet.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000029696 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32pdh.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000027648 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32pipe.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000044032 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32process.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000020480 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32profile.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000136192 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32security.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000026624 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162win32ts.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000034304 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162windows.conditional.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000037888 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162windows.connectivity.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000071680 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162windows.device_monitor.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000103936 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162windows.volumes.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000019968 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162windows.winwrap.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 001325056 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._controls_.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 001489408 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._core_.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 001007104 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._gdi_.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000103424 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._html2.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 000916992 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._misc_.pyd
2021-07-07 20:29 – 2021-07-07 20:29 – 001039872 _____ () [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wx._windows_.pyd
0000-00-00 00:00 – 0000-00-00 00:00 – 000000000 _____ (Access Denied) C:UsersCHAITANYAAppDataLocalCommandThumbnailRfrphGhostyasack_sprxs.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64A4.Foundationaf1a0b4a2ad02b095cc499daf261552A4.Foundation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Actions5dc83b46#94c6f7cf7800f40b595c64b981572afaAEM.Actions.CCAA.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.0a1309f7#7dcd722e4995f4b10d229406e480e3edAEM.Plugin.EEU.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.2b6a6775#d664e0813e75c931788eee6b85fa4e1aAEM.Plugin.Hotkeys.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.54d8abe3#f5dc98db8f6b4b2981ff2aa184554222AEM.Plugin.DPPE.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.5d945b6b#483e2f70209ac8d17102426ccdce09ffAEM.Plugin.Source.Kit.Server.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.674d2b8a#9bfb846a0e24eb9876e8634e424cd1c2AEM.Plugin.WinMessages.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.88aba5d2#666563dafe3d97ff85705a52f804b05cAEM.Plugin.REG.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Plugin.GD.Sharedbff4858adb4ef789211f10843d2cf675AEM.Plugin.GD.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Server.Shared4ebc4ad49150b4051e09b8d60bdd14dfAEM.Server.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64AEM.Server459697ed02e15962504903849b946f6bAEM.Server.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64APM.Foundation7f9ef7c05215ea88965fc0a1c4db04eAPM.Foundation.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64ATICCComcc7639ffb994630a7ffd6f4367990329ATICCCom.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CCC.Implementation1be156d89030ce6fc28b482037065f88CCC.Implementation.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.21d2ac78#1ec81ef6cfe96b08390b72fea1ab43cdCLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.3399d0ec#76f5ca03d767f949d4bff2f6041fc7e9CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.37d3d968#e17faca9b37af46b1332da34659fbe94CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.382a3def#5505be7e80bfadf63b69ce06169b7482CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.3a6f1658#9386891655149f772e15cea58a52730eCLI.Aspect.TransCode.Graphics.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.4542c692#fe9088a19b284b4c421473d80b84346cCLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.46819220#a623f8a163e522c806a277822326fdd7CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.4bbb0755#eb978f4750e8110e693e3f20c3484613CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.52c6dbaa#bbf0f22d2df1dce2df3f24b7e30e51b9CLI.Aspect.FPS.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.59a12d95#81e196fcfeb36e3ae085da5266e06888CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.73911eb5#fce94c8c6f8f3ce0d586600a244f0331CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.7ec2db45#939e733e4a463ae42b70676ebb4b0e89CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.8350f5c6#d92a00b4f4a8790aba0d211cd76e71cfCLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.846fa813#2de0b79116ee6ec003e7ace98bd00eb6CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.8d333b6b#cdeddfd36449e71725304bb80e06591bCLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.8e996306#a215d85073a9bb276158f671c33760baCLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.9cd1e9e7#4ab53583a0e136776c5cd1fb51dae96eCLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.a0ae52bc#e6a74fc1753c8591b6a4b8560b0c831fCLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.a6cd7fff#b1d946bd3ffb7a4f40fe19fb0e86a587CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.a765109e#910fc862c1087e9964ade4fff70dc464CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.acb9d930#c1eb0c78d21599952c2d1f339b0be48eCLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.ae5e117c#d8ef9672e31c475a3e863ff4312af728CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.b0a7c1fb#abf301b027215e3135645a7ddf10f907CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.c7aaa0f8#bb8b42a608ac50c9ba1bd00424136734CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.c854b457#9ad8d649980f6aae391c5d478707271CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.e8635fc7#d5d59efc6fcc8106435338c0780c070fCLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.e9fd7406#610315750e0b8aed8efd8d7d7f26f1a4CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.eda8935e#11cf665357603946f845ae6928f58cedCLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.ef3eaa4d#59b714dc3bf7926c6e8a7adb572eb0d6CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.f480a2f3#fe27c0a96b38ca3c9e1991d8d2773e24CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.A4.Runtime28c885005dfc1de2b7ce42a979a38631CLI.Caste.A4.Runtime.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.A4.Shared47a9a2bff1e32a7031254325e2290575CLI.Caste.A4.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Af820fedc#3afc2394a66822ce8a6a59ef32c3f3fCLI.Caste.A4.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.F24de14fe#7523b18081c81de174496af3ecc1111dCLI.Caste.Fuel.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.F36b07a2b#65388cc10b8aec877c0dc2f73892fc56CLI.Caste.Fuel.Runtime.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Ff3085433#982936e52a47a0dbcac57adc3dda7e1aCLI.Caste.Fuel.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.G60338cc0#a150fb169c3090d970a12dd956b3443fCLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Gd9d9b43b#b622afa84f78f36d3d76bf31df096aedCLI.Caste.Graphics.Dashboard.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Gee7d2dbc#5954818970518943fb5ebbc684002d4CLI.Caste.Graphics.Dashboard.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.H18c99613#9dc05cfeeaf37b961f8fef09e466e917CLI.Caste.HydraVision.Runtime.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.H92ba4e46#e16ea31991ec551d3511731506f38d1cCLI.Caste.HydraVision.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Hbb906c0b#16cdfa6f6d2ecb44cd06dd1c5675bf2eCLI.Caste.HydraVision.Dashboard.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Pac40511b#8af71fe75c520bd5baabd246c0863f12CLI.Caste.Platform.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Pdb36d56e#874ddc067cb217ac3abf3496cbd47f0fCLI.Caste.Platform.Runtime.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.Pfeefa2b6#30184ded95220f57489e82e53965cccCLI.Caste.Platform.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone1b4a8c97#937cdee80ce2384fff861c88321d0df7CLI.Component.Runtime.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone26c9c557#8c99337a5630aa5d3c77ca6eb20629bdCLI.Component.Systemtray.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone29e547cc#167ddd4d52a81d1e694921a74651caa6CLI.Component.Dashboard.ProfileManager2.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone59f353b4#2258084f3c915506260a9e558ee26f1dCLI.Component.Runtime.Shared.Private.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Componeb4d0485c#97bb205bea2ebdf78c2e8661b3764304CLI.Component.Runtime.Extension.EEU.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Componec89c3bec#aea9dc5ddb883e5e6b2d9917af0da9a5CLI.Component.Dashboard.Shared.Private.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Componef1fd67b2#dac4a648d9199ae35ecccfd8175aeba5CLI.Component.Client.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Componef4cf054f#dc7bada8439670366245ab3e11839930CLI.Component.Dashboard.Shared.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Foundat3d5d3945#1e78c60d3baa7a4772d9daeb8a17043dCLI.Foundation.Private.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Foundat60cdf5df#4611fba8f0659bd730b127125d4becaCLI.Foundation.XManifest.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Foundat619559bd#c444e3a56492dc0f3dbfd05558797aecCLI.Foundation.CoreAudioAPI.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 001079296 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Foundatd3771151#ba85a1f5b49d733eed43dd0bc180b4b8CLI.Foundation.Client.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Foundation9ee65df7d24c281e4ce68ffff87a8c51CLI.Foundation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Foundationf289f8d8d650c55f0b81e60b7f5adcd5DEM.Foundation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I0601fb778dad37923d0d127bee9dcd38f5baDEM.Graphics.I0601.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics7fb78a000631199322a991e99501ddaeDEM.Graphics.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64Fuel.Foundationf04152c164353eb74df76b25997ce99cFuel.Foundation.ni.dll
2021-06-24 00:46 – 2021-06-24 00:46 – 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64LOG.Foundat03490438#138d5747187e54f66e3ba60f3e1bc745LOG.Foundation.Implementation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64LOG.Foundat5023f8e7#c1635128602e93f3fa58a0b941722d77LOG.Foundation.Private.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64LOG.Foundatcaafa75b#acf01fa381b81ee49e422a19947d01c6LOG.Foundation.Implementation.Private.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64LOG.Foundation57574701e9e262238de89b8f0ad0d259LOG.Foundation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64MOM.Foundation901e151ec06b74e4eb7cd98a9393a300MOM.Foundation.ni.dll
2021-06-24 00:46 – 2021-06-24 00:46 – 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64MOM.Implementation438f19c695ba71a67908963ecb52bf0eMOM.Implementation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64NEWAEM.Foundation96d1e94341ac4ab49b2b57850314b135NEWAEM.Foundation.ni.dll
2015-08-04 00:14 – 2015-08-04 00:14 – 000004608 _____ (Advanced Micro Devices, Inc.) [File not signed] C:Program Files (x86)AMDATI.ACECore-Staticatiamenu.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64ADL.Foundation862fd0ef8582db0dca584ff36fa79675ADL.Foundation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64APM.Server80c1adc1c7c752e455a5f82c9f48aa26APM.Server.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.9b707b25#faf8f15f5d009d96975cb88312527b8aCLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.aa59351a#904c2e4324fd7004a842295aedd4fa0dCLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.e6d9f3a8#e365fb989c6a0fd22be6eecd1310ed5CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Combine0616f305#669d245bfb6091201a38abe5d2f622d9CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Combine7332395e#a5ab604455eb9c91a87c4f97bbc92e48CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone168638d1#22e5c6f6b2b1ceb941d8682949463028CLI.Component.Client.Shared.Private.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone6692ca50#51060627713d2a0a6e3d2b9b15a80aecCLI.Component.Runtime.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Compone6bf88b08#4d58e036df17a70678f418cb109177f2CLI.Component.Dashboard.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I07062e1498b97bf6a03bc9fa20092127d3afDEM.Graphics.I0706.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I07099ed7debd1872dd6168f4e5b734b74165DEM.Graphics.I0709.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I0712147e20049694132251c2aaa16285ef85DEM.Graphics.I0712.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I0804d995792d611867b4059d0d4b60aa4aa4DEM.Graphics.I0804.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I0805e65f45482b125cbac3eeabade875872fDEM.Graphics.I0805.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I081291345b7fcaa89f471cd92c346cdfa76bDEM.Graphics.I0812.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I0906ebdcfef53cf5f0c0b84bc99302595693DEM.Graphics.I0906.ni.dll
2021-06-24 00:44 – 2021-06-24 00:44 – 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I091271e56a9ed5e19943486f5a5e7d98ac4eDEM.Graphics.I0912.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64DEM.Graphics.I10108b8264140ce2ace660218cdf5483fe57DEM.Graphics.I1010.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64Localizatio01dbc1c0#b2dc61678a6a40495536019aea189417Localization.Foundation.Private.ni.dll
2021-06-24 00:46 – 2021-06-24 00:46 – 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64ResourceMan446ca0e5#18ccf1acb15e13de4206bc61e50362a8ResourceManagement.Foundation.Implementation.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64ResourceManf163905a#c59b542afe62ea1d04cd7081fe4199f1ResourceManagement.Foundation.Private.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Aspect.ec8786e5#fd55bead9fda7e19b5ab8802cb566201CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.G60a7b4d1#e607c28df2be1bf7c50ae3e81d999c33CLI.Caste.Graphics.Shared.ni.dll
2021-06-24 00:45 – 2021-06-24 00:45 – 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64CLI.Caste.G962aa464#df6fa3be0fd4659cfc3bdb5f932c1933CLI.Caste.Graphics.Runtime.ni.dll
2020-08-15 18:30 – 2019-03-28 02:04 – 000130560 _____ (Microsoft Corporation) [File not signed] [File is in use] C:WindowsMicrosoft.NetassemblyGAC_64System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll
2009-08-18 11:24 – 2009-08-18 11:24 – 000167424 _____ (Microsoft Corporation) [File not signed] C:Program FilesCommon FilesMicrosoft SharedWindows Livesqmapi.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 000335360 _____ (Microsoft) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64Microsoft.W8090224c#c5c2b2f0f8481d4f917d5e4ad638300aMicrosoft.WindowsAPICodePack.ni.dll
2021-06-24 00:43 – 2021-06-24 00:43 – 002546688 _____ (Microsoft) [File not signed] C:WindowsassemblyNativeImages_v4.0.30319_64Microsoft.Wfbf9373c#77c56a1d6bd3077d27de0dc36e5a90c3Microsoft.WindowsAPICodePack.Shell.ni.dll
2021-06-24 00:08 – 2015-12-10 10:08 – 000091648 _____ (NT Kernel Resources) [File not signed] C:Program FilesNetBalancerndisapi.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 003043328 _____ (Python Software Foundation) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162python27.dll
2021-06-24 00:08 – 2020-04-05 18:14 – 001662976 _____ (Robert Simpson, et al.) [File not signed] C:Program FilesNetBalancerSQLite.Interop.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000049664 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqdds.dll
2015-06-25 17:15 – 2015-06-25 17:15 – 000029696 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqgif.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000037376 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqicns.dll
2015-06-25 17:15 – 2015-06-25 17:15 – 000030208 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqico.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000459776 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqjp2.dll
2015-06-25 17:15 – 2015-06-25 17:15 – 000236544 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqjpeg.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000275456 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqmng.dll
2015-06-25 17:17 – 2015-06-25 17:17 – 000023552 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqsvg.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000022528 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqtga.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000351744 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqtiff.dll
2015-06-25 17:20 – 2015-06-25 17:20 – 000021504 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqwbmp.dll
2015-06-25 17:21 – 2015-06-25 17:21 – 000374784 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextimageformatsqwebp.dll
2015-06-25 17:14 – 2015-06-25 17:14 – 001212416 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextplatformsqwindows.dll
2015-07-02 12:58 – 2015-07-02 12:58 – 005496320 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Core.dll
2015-06-25 17:03 – 2015-06-25 17:03 – 005804544 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Gui.dll
2015-06-25 17:00 – 2015-06-25 17:00 – 001061376 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Network.dll
2015-06-25 17:23 – 2015-06-25 17:23 – 003187712 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Qml.dll
2015-06-25 17:28 – 2015-06-25 17:28 – 002924544 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Quick.dll
2015-06-25 17:16 – 2015-06-25 17:16 – 000310784 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Svg.dll
2015-06-25 17:08 – 2015-06-25 17:08 – 005444608 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Widgets.dll
2015-06-25 17:58 – 2015-06-25 17:58 – 000277504 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5WinExtras.dll
2015-06-25 16:59 – 2015-06-25 16:59 – 000193024 _____ (The Qt Company Ltd) [File not signed] C:Program FilesAMDCNextCNextQt5Xml.dll
2021-06-06 22:03 – 2017-09-12 10:36 – 000708608 _____ (Wondershare) [File not signed] C:Program Files (x86)Common FilesWondershareWondershare Helper CompactCBSProducstInfo.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000202240 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxbase30u_net_vc90_x64.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 002831872 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxbase30u_vc90_x64.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 001654784 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxmsw30u_adv_vc90_x64.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 006542336 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxmsw30u_core_vc90_x64.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000773632 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxmsw30u_html_vc90_x64.dll
2021-07-07 20:29 – 2021-07-07 20:29 – 000137216 _____ (wxWidgets development team) [File not signed] C:UsersCHAITANYAAppDataLocalTemp_MEI37162wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Version 11) (Whitelisted) ==========

HKUS-1-5-21-585299867-3638530553-3281382602-1001SoftwareMicrosoftInternet ExplorerMain,Start Page Redirect Cache = hxxps://www.msn.com/en-in/?ocid=iehp
BHO: Skype for Business Browser Helper -> 31D09BA0-12F5-4CCE-BE8A-2923E76605DA -> C:Program FilesMicrosoft OfficerootOffice16OCHelper.dll [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> 9030D464-4C02-4ABF-8ECC-5164760863C6 -> C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> B4F3A835-0E21-4959-BA22-42B3008E02FF -> C:Program FilesMicrosoft OfficerootOffice16URLREDIR.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF -> C:Program FilesMicrosoft OfficerootOffice16GROOVEEX.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> 31D09BA0-12F5-4CCE-BE8A-2923E76605DA -> C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16OCHelper.dll [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> 9030D464-4C02-4ABF-8ECC-5164760863C6 -> C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> B4F3A835-0E21-4959-BA22-42B3008E02FF -> C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16URLREDIR.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IObit Surfing Protection -> BA0C978D-D909-49B6-AFE2-8BDE245DC7E6 -> C:Program Files (x86)IObitAdvanced SystemCareSurfing ProtectionBrowerProtectASCPlugin_Protection.dll [2021-03-22] (IObit Information Technology -> IObit)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF -> C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16GROOVEEX.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 – 83C25742-A9F7-49FB-9138-434302C88D07 – C:Program FilesMicrosoft OfficerootOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 – 83C25742-A9F7-49FB-9138-434302C88D07 – C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 – 42089D2D-912D-4018-9087-2B87803E93FB – C:Program FilesMicrosoft OfficerootOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 – 42089D2D-912D-4018-9087-2B87803E93FB – C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 – 42089D2D-912D-4018-9087-2B87803E93FB – C:Program FilesMicrosoft OfficerootOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 – 42089D2D-912D-4018-9087-2B87803E93FB – C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 – 5504BE45-A83B-4808-900A-3A5C36E7F77A – C:Program FilesMicrosoft OfficerootOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 – 5504BE45-A83B-4808-900A-3A5C36E7F77A – C:Program FilesMicrosoft OfficerootVFSProgramFilesX86Microsoft OfficeOffice16MSOSB.DLL [2021-05-26] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKUS-1-5-21-585299867-3638530553-3281382602-1001…sharepoint.com -> hxxps://chgupta7-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 08:04 – 2021-07-07 20:41 – 000030437 _____ C:Windowssystem32driversetchosts
127.0.0.1 cbs.wondershare.com
127.0.0.1 www.cbs.wondershare.com
127.0.0.1 platform.wondershare.com
127.0.0.1 www.wondershare.com
0.0.0.0 0x1f4b0.com
0.0.0.0 1q2w3.fun
0.0.0.0 1q2w3.life
0.0.0.0 1q2w3.website
0.0.0.0 2giga.dowload
0.0.0.0 2giga.link
0.0.0.0 8jd2lfsq.me
0.0.0.0 aalbbh84.info
0.0.0.0 acbp0020171456.page.tl
0.0.0.0 adless.io
0.0.0.0 ad-miner.com
0.0.0.0 adplusplus.fr
0.0.0.0 adrenali.gq
0.0.0.0 afflow.18-plus.net
0.0.0.0 afminer.com
0.0.0.0 ajcryptominer.com
0.0.0.0 ajplugins.com
0.0.0.0 akvideo.stream
0.0.0.0 allfontshere.press
0.0.0.0 altavista.ovh
0.0.0.0 amhixwqagiz.ru
0.0.0.0 analytics.blue
0.0.0.0 andlache.com
0.0.0.0 anime.reactor.cc
0.0.0.0 a-o.ninja
0.0.0.0 apdrive.win

There are 1157 more lines.

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLMSystemCurrentControlSetControlSession ManagerEnvironment\Path -> %CommonProgramFiles%Microsoft SharedWindows Live;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program Files (x86)AMDATI.ACECore-Static;C:Program Files (x86)Universal Extractor;C:Program Files (x86)Universal Extractorbin
HKUS-1-5-21-585299867-3638530553-3281382602-1001Control PanelDesktop\Wallpaper -> C:UsersCHAITANYAAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg
DNS Servers: 192.168.252.253
HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIGstartupfolder: C:^Users^CHAITANYA^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Send to OneNote.lnk => C:WindowspssSend to OneNote.lnk.Startup
MSCONFIGstartupreg: TeamsMachineInstaller => %ProgramFiles%Teams InstallerTeams.exe –checkInstall –source=PROPLUS

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [C874BA1E-973E-4337-BA5E-33A31AF79C8C] => (Allow) C:UsersCHAITANYAAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [ABF97CAF-6F82-4576-BDA7-2931A941E488] => (Allow) C:Program FilesMicrosoft OfficerootOffice16Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [F638A138-4DD7-4F71-81CE-50770702D897] => (Allow) C:Program FilesMicrosoft OfficerootOffice16UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [A45B0ADF-D000-428A-974F-5B8582D195FE] => (Allow) C:Program FilesMicrosoft OfficerootOffice16outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [0F1B93DD-7A1D-4F24-943D-91235024D61C] => (Allow) C:Program FilesMicrosoft OfficerootOffice16Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [682B926C-2AFB-48E9-8809-3F223DE28F05] => (Allow) C:Program FilesMicrosoft OfficerootOffice16UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [82260098-9FA7-4AE2-957E-ACBA13126706] => (Allow) C:UsersCHAITANYAAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [2EBD6AB3-C2E9-427C-9F41-684263115F2F] => (Allow) C:UsersCHAITANYAAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [FE4620BC-BE16-4923-A98C-FDBEF78EBC19] => (Allow) C:UsersCHAITANYAAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [82DFE7EE-3128-4AE3-A670-4F4A2220D809] => (Allow) C:UsersCHAITANYAAppDataRoamingZoombinZoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [4FB402AB-612B-4DAE-9985-27BAF9E3FA16] => (Allow) C:Program FilesGoogleChromeApplicationchrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

07-07-2021 15:08:45 Driver Booster : AMD High Definition Audio Device
07-07-2021 18:26:44 UnHackMe Malware Removal

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (07/07/2021 08:30:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99″ could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/07/2021 08:11:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99″ could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/07/2021 06:26:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service Avast Driver Updater since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (07/07/2021 03:52:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Monitor.exe, version: 14.5.0.382, time stamp: 0x60da8585
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc00000fd
Fault offset: 0x74a9e724
Faulting process id: 0x1bbc
Faulting application start time: 0x01d7730c9e6b93d4
Faulting application path: C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe
Faulting module path: unknown
Report Id: 43248479-df0d-11eb-b973-0024e88474f4

Error: (07/07/2021 02:06:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Monitor.exe, version: 14.4.0.371, time stamp: 0x609905f8
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x123db53c
Faulting process id: 0xe6c
Faulting application start time: 0x01d7730ad471f2c7
Faulting application path: C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe
Faulting module path: unknown
Report Id: 5e70fcbd-defe-11eb-b973-0024e88474f4

Error: (07/07/2021 02:02:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99″ could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/07/2021 10:06:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Monitor.exe, version: 14.4.0.371, time stamp: 0x609905f8
Faulting module name: Monitor.exe, version: 14.4.0.371, time stamp: 0x609905f8
Exception code: 0xc0000005
Fault offset: 0x00250078
Faulting process id: 0x10c4
Faulting application start time: 0x01d772e8aebb3c44
Faulting application path: C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe
Faulting module path: C:Program Files (x86)IObitAdvanced SystemCareMonitor.exe
Report Id: e9fdc94f-dedc-11eb-8fb5-0024e88474f4

Error: (07/07/2021 09:59:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99″ could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

System errors:
=============
Error: (07/07/2021 08:31:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535

Error: (07/07/2021 08:31:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535

Error: (07/07/2021 08:31:28 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801.

Error: (07/07/2021 08:31:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535

Error: (07/07/2021 08:31:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535

Error: (07/07/2021 08:31:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535

Error: (07/07/2021 08:31:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535

Error: (07/07/2021 08:31:15 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801.

Windows Defender:
================
Date: 2021-06-22 18:51:10.628
Description:
Windows Defender has detected spyware or other potentially unwanted software.
For more information please see the following:
http://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849
Name:Misleading:Win32/Lodi
Severity:High
Category:Potentially Unwanted Software
Path Found:file:C:UsersCHAITANYADownloadsProgramsDriverPack-17-Online.exe
Detection Type:Concrete
Detection Source:Real-Time Protection
Status:Unknown
Process Name:

Date: 2021-06-21 17:18:38.514
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:1.341.1023.0
Previous Signature Version:1.339.1353.0
Update Source:User
Signature Type:AntiSpyware
Update Type:Delta
Current Engine Version:1.1.18200.4
Previous Engine Version:1.1.18100.6
Error code:0x80070666
Error description:Another version of this product is already installed. Installation of this version cannot continue. To configure or remove the existing version of this product, use Add/Remove Programs on the Control Panel.

Date: 2021-06-21 17:18:38.514
Description:
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.18200.4
Previous Engine Version:1.1.18100.6
Update Source:User
Error Code:0x80070666
Error description:Another version of this product is already installed. Installation of this version cannot continue. To configure or remove the existing version of this product, use Add/Remove Programs on the Control Panel.

==================== Memory info ===========================

BIOS: Dell Inc. A06 07/27/2010
Motherboard: Dell Inc. 0133D9
Processor: Intel® Core™ i5 CPU M 450 @ 2.40GHz
Percentage of memory in use: 47%
Total physical RAM: 8052.52 MB
Available physical RAM: 4194.73 MB
Total Virtual: 16103.19 MB
Available Virtual: 11956.24 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:101.07 GB) (Free:15.65 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:176.27 GB) (Free:152.24 GB) NTFS
Drive e: () (Fixed) (Total:188.42 GB) (Free:64.01 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 62965045)
Partition 1: (Active) – (Size=101.1 GB) – (Type=07 NTFS)
Partition 2: (Not Active) – (Size=176.3 GB) – (Type=07 NTFS)
Partition 3: (Not Active) – (Size=188.4 GB) – (Type=07 NTFS)

==================== End of Addition.txt =======================

Edited by Oh My!, Yesterday, 01:36 PM.

Next Post

McAfee XDR and Remote Browser Isolation Technology Safe Globees in the 16th Once-a-year 2021 IT Globe Awards | Organization

SAN JOSE, Calif.–(Business WIRE)–Jul 8, 2021– McAfee Corp. (Nasdaq: MCFE) these days announced it was regarded as a recipient of the Globee® Awards in two organization protection categories: Gold in Endpoint Safety with MVISION XDR and Silver for “Hot Technologies of the Year” with its Remote Browser Isolation (RBI) capabilities […]