OTL.txt
OTL Logfile: Code:
OTL logfile created on: 11.12.2020 17:26:04 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = H:\Downloads\Programs
64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.19041.0)
Locale: 00000407 | Country: | Language: DEU | Date Format: dd.MM.yyyy
15,95 Gb Total Physical Memory | 8,96 Gb Available Physical Memory | 56,16% Memory free
25,95 Gb Paging File | 16,04 Gb Available in Paging File | 61,83% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 231,56 Gb Total Space | 124,38 Gb Free Space | 53,71% Space Free | Partition Type: NTFS
Drive G: | 1863,01 Gb Total Space | 66,30 Gb Free Space | 3,56% Space Free | Partition Type: NTFS
Drive H: | 931,51 Gb Total Space | 14,59 Gb Free Space | 1,57% Space Free | Partition Type: NTFS
Computer Name: X | User Name: Y | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 1 Day
========== Processes (SafeList) ==========
PRC - File not found
PRC - H:\Downloads\Programs\OTL.exe (OldTimer Tools)
PRC - H:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe (GOG.com)
PRC - H:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe (GOG.com)
PRC - H:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe (GOG.com)
PRC - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe (GOG.com)
PRC - H:\Program Files (x86)\GOG Galaxy\python\python.exe (Python Software Foundation)
PRC - H:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe ()
PRC - H:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe (Plex, Inc.)
PRC - H:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Python Software Foundation)
PRC - H:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc.)
PRC - G:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH)
PRC - G:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH)
PRC - G:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer Germany GmbH)
PRC - G:\Program Files (x86)\GIGABYTE\AORUS ENGINE\AORUS.exe (GIGABYTE Technology Co.,Ltd.)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc.)
PRC - C:\Program Files (x86)\IObit\Advanced SystemCare\Pub\PubPlatform.exe (IObit)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Node.js)
PRC - C:\Windows\SysWOW64\fontdrvhost.exe (Microsoft Corporation)
PRC - G:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Razer Inc.)
PRC - G:\Program Files (x86)\PDF24\pdf24.exe (geek software GmbH)
PRC - C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (Razer Inc.)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\GIGABYTE\RGBFusion\RGBFusion.exe ()
PRC - C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
PRC - C:\Programme\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (DEVGURU Co., LTD.)
PRC - C:\Programme\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (DEVGURU Co., LTD.)
PRC - C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (Razer Inc)
PRC - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (IObit)
PRC - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe (IObit)
PRC - C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe (IObit)
PRC - G:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe (IObit)
PRC - C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe ()
PRC - H:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
PRC - C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
PRC - C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngine.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
PRC - C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
PRC - C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
PRC - G:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc.)
PRC - C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (Microsoft)
PRC - C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe ()
========== Modules (No Company Name) ==========
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\yarl\_quoting.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\multidict\_multidict.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\aiohttp\_helpers.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\psn_38087aea-3c30-439f-867d-ddf9fae8fe6f\aiohttp\_websocket.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\lxml\etree.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\google\protobuf\pyext\_message.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\lxml\html\clean.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\lxml\_elementpath.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\yarl\_quoting_c.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\multidict\_multidict.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\google\protobuf\internal\_api_implementation.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\websockets\speedups.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\aiohttp\_helpers.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\steam_ca27391f-2675-49b1-92c0-896d43afa4f8\aiohttp\_websocket.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\_yaml.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\yarl\_quoting_c.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\psutil\_psutil_windows.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\aiohttp\_helpers.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\aiohttp\_websocket.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\uplay_afb5a69c-b2ee-4d58-b916-f4cd75d4999a\multidict\_multidict.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\yarl\_quoting_c.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\multidict\_multidict.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\aiohttp\_helpers.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - C:\Users\Y\AppData\Local\GOG.com\Galaxy\plugins\installed\origin_7f53219b-4e2b-4591-9f4f-dfc5f4ba9eb0\aiohttp\_websocket.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\libcef.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\libGLESv2.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\swiftshader\libGLESv2.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\sqlite.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\pcre.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\aiohttp\_http_parser.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\expat.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\xdelta3.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\swiftshader\libEGL.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\libEGL.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\zlib.dll ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\yarl\_quoting.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\yarl\_quoting.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\psutil\_psutil_windows.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\aiohttp\_helpers.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\aiohttp\_frozenlist.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\aiohttp\_helpers.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\aiohttp\_websocket.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\multidict\_multidict.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginEpic\multidict\_multidict.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\aiohttp\_http_writer.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\GOG Galaxy\plugins\GalaxyPluginXbox\aiohttp\_websocket.cp37-win32.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\bz2.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\sqlite3_plex.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\tag.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\TeVii.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc310.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\opencv_core310.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\pion.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\soci_core.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\miniupnpc.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\hdhomerun.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_thread.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\fmt.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_timer.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_regex.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_locale.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_iostreams.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_filesystem.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_date_time.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\boost_chrono.dll ()
MOD - H:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\mpeg4_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\mp3_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\libx264_encoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\hevc_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\h264_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\flv_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\dca_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\aac_decoder.dll ()
MOD - \\?\C:\Users\Y\AppData\Local\Plex Media Server\Codecs\7c50c14-3596-windows-x86\ac3_encoder.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\23e9ba92b02663afc33f1a7e4f49545b\System.ServiceProcess.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\1fe1464b2cb159c9fbe49db59596be77\UIAutomationProvider.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Web\21c3dfc5500d46cdaca3c8fd49129f5e\System.Web.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\c53a93e360cdec5a6b2422401e7a8c32\System.Windows.Forms.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\12a0b8a4c9e37033f96c2892b3b19eac\UIAutomationTypes.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\c0e32ab5785c5df139bab7755ccf80a0\System.Xml.Linq.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xaml\09314f84b0a7bec5fc70f721fa5b05b9\System.Xaml.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\1cc2deb740912c523a0155a5b0c5c7f6\System.Configuration.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\d15ddac8ada82d7c24bc4c5adc861335\PresentationFramework.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\a81d76da54869a9af6dbcaac7e168224\PresentationFramework.Aero2.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationCore\71b50bc60de4b8c052e9a5b1a7b79af2\PresentationCore.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsBase\00359ca24f0d0c417315ea525a3f0bd8\WindowsBase.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\2f1746ab1f00e550090146d74890c4ce\System.Core.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\292491532cd5f50586e378cc6f62f970\System.Drawing.ni.dll ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSDKAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvShadowPlayAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvBackendAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameStreamAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvUtil.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node ()
MOD - \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvABHubAPI.node ()
MOD - C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\0a22e17ee5c73cdab64fc5e3f8ed7e56\System.Management.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\48fbd098873eae92cf4bda5b7cf7a6ba\System.Xml.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\a94f452eecde0f07e988ad14497426a5\System.ni.dll ()
MOD - C:\Windows\SysWOW64\umpdc.dll ()
MOD - C:\Windows\SysWOW64\WindowManagementAPI.dll ()
MOD - C:\Windows\SysWOW64\TextShaping.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\1c960778124fb2c275142764edfbee19\mscorlib.ni.dll ()
MOD - C:\Program Files (x86)\GIGABYTE\RGBFusion\RGBFusion.exe ()
MOD - C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe ()
MOD - C:\Program Files (x86)\GIGABYTE\AppCenter\BDR_info.dll ()
MOD - G:\Program Files (x86)\IObit\IObit Uninstaller\madexcept_.bpl ()
MOD - G:\Program Files (x86)\IObit\IObit Uninstaller\madbasic_.bpl ()
MOD - G:\Program Files (x86)\IObit\IObit Uninstaller\maddisAsm_.bpl ()
MOD - C:\Programme\Patriot\Aac_Patriot Viper M2 SSD RGB\AacHal_x86.dll ()
MOD - C:\Programme\Patriot\Aac_Patriot Viper M2 SSD RGB\pcie_dll_x86.dll ()
MOD - C:\Program Files (x86)\GIGABYTE\RGBFusion\Phison.dll ()
MOD - G:\Program Files (x86)\GIGABYTE\AORUS ENGINE\GvFireware.dll ()
MOD - G:\Program Files (x86)\GIGABYTE\AORUS ENGINE\BSL430.dll ()
========== Services (SafeList) ==========
SRV:64bit: - (nvagent) -- C:\Windows\SysNative\NvAgent.dll (Microsoft Corporation)
SRV:64bit: - (NVDisplay.ContainerLocalSystem) -- C:\Windows\SysNative\DriverStore\FileRepository\nv_dispi.inf_amd64_8e68f77150e57b50\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation)
SRV:64bit: - (AVG Tools) -- C:\Program Files\AVG\Antivirus\avgToolsSvc.exe (AVG Technologies CZ, s.r.o.)
SRV:64bit: - (AVG Antivirus) -- C:\Program Files\AVG\Antivirus\AVGSvc.exe (AVG Technologies CZ, s.r.o.)
SRV:64bit: - (AvgWscReporter) -- C:\Program Files\AVG\Antivirus\wsc_proxy.exe (AVG Technologies CZ, s.r.o.)
SRV:64bit: - (WalletService) -- C:\Windows\SysNative\WalletService.dll (Microsoft Corporation)
SRV:64bit: - (hns) -- C:\Windows\SysNative\HostNetSvc.dll (Microsoft Corporation)
SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
SRV:64bit: - (DiagTrack) -- C:\Windows\SysNative\diagtrack.dll (Microsoft Corporation)
SRV:64bit: - (AppXSvc) -- C:\Windows\SysNative\AppXDeploymentServer.dll (Microsoft Corporation)
SRV:64bit: - (DoSvc) -- C:\Windows\SysNative\dosvc.dll (Microsoft Corporation)
SRV:64bit: - (UsoSvc) -- C:\Windows\SysNative\usosvc.dll (Microsoft Corporation)
SRV:64bit: - (WaaSMedicSvc) -- C:\Windows\SysNative\WaaSMedicSvc.dll (Microsoft Corporation)
SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV:64bit: - (WebManagement) -- C:\Windows\SysNative\WebManagement.exe (Microsoft Corporation)
SRV:64bit: - (vmcompute) -- C:\Windows\SysNative\vmcompute.exe (Microsoft Corporation)
SRV:64bit: - (LxssManagerUser) -- C:\Windows\SysNative\lxss\LxssManager.dll (Microsoft Corporation)
SRV:64bit: - (LxssManager) -- C:\Windows\SysNative\lxss\LxssManager.dll (Microsoft Corporation)
SRV:64bit: - (ScDeviceEnum) -- C:\Windows\SysNative\ScDeviceEnum.dll (Microsoft Corporation)
SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
SRV:64bit: - (CoreMessagingRegistrar) -- C:\Windows\SysNative\CoreMessaging.dll (Microsoft Corporation)
SRV:64bit: - (SecurityHealthService) -- C:\Windows\SysNative\SecurityHealthService.exe (Microsoft Corporation)
SRV:64bit: - (DevicesFlowUserSvc) -- C:\Windows\SysNative\DevicesFlowBroker.dll (Microsoft Corporation)
SRV:64bit: - (shpamsvc) -- C:\Windows\SysNative\Windows.SharedPC.AccountManager.dll (Microsoft Corporation)
SRV:64bit: - (AarSvc) -- C:\Windows\SysNative\AarSvc.dll (Microsoft Corporation)
SRV:64bit: - (AppReadiness) -- C:\Windows\SysNative\AppReadiness.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (spectrum) -- C:\Windows\SysNative\Spectrum.exe (Microsoft Corporation)
SRV:64bit: - (DispBrokerDesktopSvc) -- C:\Windows\SysNative\DispBroker.Desktop.dll (Microsoft Corporation)
SRV:64bit: - (SgrmBroker) -- C:\Windows\SysNative\SgrmBroker.exe (Microsoft Corporation)
SRV:64bit: - (UserManager) -- C:\Windows\SysNative\usermgr.dll (Microsoft Corporation)
SRV:64bit: - (NetSetupSvc) -- C:\Windows\SysNative\NetSetupSvc.dll (Microsoft Corporation)
SRV:64bit: - (WpnUserService_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UserDataSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UnistoreSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UdkUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (PrintWorkflowUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (PimIndexMaintenanceSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (OneSyncSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (MessagingService_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (LxssManagerUser_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DevicesFlowUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DevicePickerUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationBrokerSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (ConsentUxUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (CDPUserSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (cbdhsvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (CaptureService_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (BluetoothUserService_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (BcastDVRUserService_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (AarSvc_e5bc6) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (EntAppSvc) -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll (Microsoft Corporation)
SRV:64bit: - (StateRepository) -- C:\Windows\SysNative\Windows.StateRepository.dll (Microsoft Corporation)
SRV:64bit: - (NcbService) -- C:\Windows\SysNative\ncbservice.dll (Microsoft Corporation)
SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\psmsrv.dll (Microsoft Corporation)
SRV:64bit: - (TimeBrokerSvc) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (InstallService) -- C:\Windows\SysNative\InstallService.dll (Microsoft Corporation)
SRV:64bit: - (PushToInstall) -- C:\Windows\SysNative\PushToInstall.dll (Microsoft Corporation)
SRV:64bit: - (LicenseManager) -- C:\Windows\SysNative\LicenseManagerSvc.dll (Microsoft Corporation)
SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
SRV:64bit: - (ClipSVC) -- C:\Windows\SysNative\ClipSVC.dll (Microsoft Corporation)
SRV:64bit: - (TokenBroker) -- C:\Windows\SysNative\TokenBroker.dll (Microsoft Corporation)
SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
SRV:64bit: - (CredentialEnrollmentManagerUserSvc_e5bc6) -- C:\Windows\SysNative\CredentialEnrollmentManager.exe (Microsoft Corporation)
SRV:64bit: - (CredentialEnrollmentManagerUserSvc) -- C:\Windows\SysNative\CredentialEnrollmentManager.exe (Microsoft Corporation)
SRV:64bit: - (wisvc) -- C:\Windows\SysNative\FlightSettings.dll (Microsoft Corporation)
SRV:64bit: - (PhoneSvc) -- C:\Windows\SysNative\PhoneService.dll (Microsoft Corporation)
SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
SRV:64bit: - (DevicePickerUserSvc) -- C:\Windows\SysNative\Windows.Devices.Picker.dll (Microsoft Corporation)
SRV:64bit: - (SshdBroker) -- C:\Windows\SysNative\SshdBroker.dll (Microsoft Corporation)
SRV:64bit: - (AssignedAccessManagerSvc) -- C:\Windows\SysNative\assignedaccessmanagersvc.dll (Microsoft Corporation)
SRV:64bit: - (UevAgentService) -- C:\Windows\SysNative\AgentService.exe (Microsoft Corporation)
SRV:64bit: - (XboxNetApiSvc) -- C:\Windows\SysNative\XboxNetApiSvc.dll (Microsoft Corporation)
SRV:64bit: - (DmEnrollmentSvc) -- C:\Windows\SysNative\Windows.Internal.Management.dll (Microsoft Corporation)
SRV:64bit: - (diagnosticshub.standardcollector.service) -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
SRV:64bit: - (UdkUserSvc) -- C:\Windows\SysNative\windowsudk.shellcommon.dll (Microsoft Corporation)
SRV:64bit: - (CDPSvc) -- C:\Windows\SysNative\cdpsvc.dll (Microsoft Corporation)
SRV:64bit: - (CDPUserSvc) -- C:\Windows\SysNative\cdpusersvc.dll (Microsoft Corporation)
SRV:64bit: - (WpcMonSvc) -- C:\Windows\SysNative\WpcDesktopMonSvc.dll (Microsoft Corporation)
SRV:64bit: - (BTAGService) -- C:\Windows\SysNative\BTAGService.dll (Microsoft Corporation)
SRV:64bit: - (WManSvc) -- C:\Windows\SysNative\Windows.Management.Service.dll (Microsoft Corporation)
SRV:64bit: - (icssvc) -- C:\Windows\SysNative\tetheringservice.dll (Microsoft Corporation)
SRV:64bit: - (FrameServer) -- C:\Windows\SysNative\FrameServer.dll (Microsoft Corporation)
SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
SRV:64bit: - (RmSvc) -- C:\Windows\SysNative\RMapi.dll (Microsoft Corporation)
SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
SRV:64bit: - (NgcSvc) -- C:\Windows\SysNative\ngcsvc.dll (Microsoft Corporation)
SRV:64bit: - (NgcCtnrSvc) -- C:\Windows\SysNative\NgcCtnrSvc.dll (Microsoft Corporation)
SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
SRV:64bit: - (wlpasvc) -- C:\Windows\SysNative\lpasvc.dll (Microsoft Corporation)
SRV:64bit: - (XblAuthManager) -- C:\Windows\SysNative\XblAuthManager.dll (Microsoft Corporation)
SRV:64bit: - (OneSyncSvc) -- C:\Windows\SysNative\APHostService.dll (Microsoft Corporation)
SRV:64bit: - (diagsvc) -- C:\Windows\SysNative\DiagSvc.dll (Microsoft Corporation)
SRV:64bit: - (cbdhsvc) -- C:\Windows\SysNative\CBDHSvc.dll (Microsoft Corporation)
SRV:64bit: - (PrintWorkflowUserSvc) -- C:\Windows\SysNative\PrintWorkflowService.dll (Microsoft Corporation)
SRV:64bit: - (CaptureService) -- C:\Windows\SysNative\CaptureService.dll (Microsoft Corporation)
SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
SRV:64bit: - (SEMgrSvc) -- C:\Windows\SysNative\SEMgrSvc.dll (Microsoft Corporation)
SRV:64bit: - (ss_conn_launcher_service) -- C:\Windows\SysNative\Samsung\EasySetup\ss_conn_launcher.exe (Samsung Electronics Co., Ltd.)
SRV:64bit: - (workfolderssvc) -- C:\Windows\SysNative\workfolderssvc.dll (Microsoft Corporation)
SRV:64bit: - (camsvc) -- C:\Windows\SysNative\CapabilityAccessManager.dll (Microsoft Corporation)
SRV:64bit: - (AppVClient) -- C:\Windows\SysNative\AppVClient.exe (Microsoft Corporation)
SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvcext.dll (Microsoft Corporation)
SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvcext.dll (Microsoft Corporation)
SRV:64bit: - (ConsentUxUserSvc) -- C:\Windows\SysNative\ConsentUxClient.dll (Microsoft Corporation)
SRV:64bit: - (BcastDVRUserService) -- C:\Windows\SysNative\bcastdvruserservice.dll (Microsoft Corporation)
SRV:64bit: - (DisplayEnhancementService) -- C:\Windows\SysNative\Microsoft.Graphics.Display.DisplayEnhancementService.dll (Microsoft Corporation)
SRV:64bit: - (perceptionsimulation) -- C:\Windows\SysNative\PerceptionSimulation\PerceptionSimulationService.exe (Microsoft Corporation)
SRV:64bit: - (SensorService) -- C:\Windows\SysNative\SensorService.dll (Microsoft Corporation)
SRV:64bit: - (UserDataSvc) -- C:\Windows\SysNative\UserDataService.dll (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationBrokerSvc) -- C:\Windows\SysNative\deviceaccess.dll (Microsoft Corporation)
SRV:64bit: - (DsSvc) -- C:\Windows\SysNative\dssvc.dll (Microsoft Corporation)
SRV:64bit: - (NaturalAuthentication) -- C:\Windows\SysNative\NaturalAuth.dll (Microsoft Corporation)
SRV:64bit: - (XblGameSave) -- C:\Windows\SysNative\XblGameSave.dll (Microsoft Corporation)
SRV:64bit: - (BluetoothUserService) -- C:\Windows\SysNative\Microsoft.Bluetooth.UserService.dll (Microsoft Corporation)
SRV:64bit: - (TroubleshootingSvc) -- C:\Windows\SysNative\MitigationClient.dll (Microsoft Corporation)
SRV:64bit: - (BthAvctpSvc) -- C:\Windows\SysNative\BthAvctpSvc.dll (Microsoft Corporation)
SRV:64bit: - (VacSvc) -- C:\Windows\SysNative\vac.dll (Microsoft Corporation)
SRV:64bit: - (RtkAudioUniversalService) -- C:\Windows\SysNative\RtkAudUService64.exe (Realtek Semiconductor)
SRV:64bit: - (MixedRealityOpenXRSvc) -- C:\Windows\SysNative\MixedRealityRuntime.dll (Microsoft Corporation)
SRV:64bit: - (RetailDemo) -- C:\Windows\SysNative\RDXService.dll (Microsoft Corporation)
SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
SRV:64bit: - (SharedRealitySvc) -- C:\Windows\SysNative\SharedRealitySvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicvmsession) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicguestinterface) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
SRV:64bit: - (TieringEngineService) -- C:\Windows\SysNative\TieringEngineService.exe (Microsoft Corporation)
SRV:64bit: - (WEPHOSTSVC) -- C:\Windows\SysNative\wephostsvc.dll (Microsoft Corporation)
SRV:64bit: - (smphost) -- C:\Windows\SysNative\smphost.dll (Microsoft Corporation)
SRV:64bit: - (DusmSvc) -- C:\Windows\SysNative\dusmsvc.dll (Microsoft Corporation)
SRV:64bit: - (HvHost) -- C:\Windows\SysNative\hvhostsvc.dll (Microsoft Corporation)
SRV:64bit: - (SmsRouter) -- C:\Windows\SysNative\SmsRouterSvc.dll (Microsoft Corporation)
SRV:64bit: - (autotimesvc) -- C:\Windows\SysNative\autotimesvc.dll (Microsoft Corporation)
SRV:64bit: - (SensorDataService) -- C:\Windows\SysNative\SensorDataService.exe (Microsoft Corporation)
SRV:64bit: - (lfsvc) -- C:\Windows\SysNative\lfsvc.dll (Microsoft Corporation)
SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
SRV:64bit: - (dmwappushservice) -- C:\Windows\SysNative\dmwappushsvc.dll (Microsoft Corporation)
SRV:64bit: - (WpnService) -- C:\Windows\SysNative\wpnservice.dll (Microsoft Corporation)
SRV:64bit: - (WpnUserService) -- C:\Windows\SysNative\WpnUserService.dll (Microsoft Corporation)
SRV:64bit: - (UnistoreSvc) -- C:\Windows\SysNative\Unistore.dll (Microsoft Corporation)
SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (PimIndexMaintenanceSvc) -- C:\Windows\SysNative\PimIndexMaintenance.dll (Microsoft Corporation)
SRV:64bit: - (DevQueryBroker) -- C:\Windows\SysNative\DevQueryBroker.dll (Microsoft Corporation)
SRV:64bit: - (GraphicsPerfSvc) -- C:\Windows\SysNative\GraphicsPerfSvc.dll (Microsoft Corporation)
SRV:64bit: - (MapsBroker) -- C:\Windows\SysNative\moshost.dll (Microsoft Corporation)
SRV:64bit: - (WarpJITSvc) -- C:\Windows\SysNative\Windows.WARP.JITService.dll (Microsoft Corporation)
SRV:64bit: - (tzautoupdate) -- C:\Windows\SysNative\tzautoupdate.dll (Microsoft Corporation)
SRV:64bit: - (AJRouter) -- C:\Windows\SysNative\AJRouter.dll (Microsoft Corporation)
SRV:64bit: - (embeddedmode) -- C:\Windows\SysNative\embeddedmodesvc.dll (Microsoft Corporation)
SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
SRV:64bit: - (WFDSConMgrSvc) -- C:\Windows\SysNative\WFDSConMgrSvc.dll (Microsoft Corporation)
SRV:64bit: - (LxpSvc) -- C:\Windows\SysNative\LanguageOverlayServer.dll (Microsoft Corporation)
SRV:64bit: - (MessagingService) -- C:\Windows\SysNative\MessagingService.dll (Microsoft Corporation)
SRV:64bit: - (XboxGipSvc) -- C:\Windows\SysNative\xboxgipsvc.dll (Microsoft Corporation)
SRV:64bit: - (IpxlatCfgSvc) -- C:\Windows\SysNative\ipxlatcfg.dll (Microsoft Corporation)
SRV:64bit: - (debugregsvc) -- C:\Windows\SysNative\debugregsvc.dll (Microsoft Corporation)
SRV:64bit: - (DeveloperToolsService) -- C:\Windows\SysNative\DeveloperToolsSvc.exe (Microsoft Corporation)
SRV:64bit: - (ssh-agent) -- C:\Windows\SysNative\OpenSSH\ssh-agent.exe ()
SRV:64bit: - (sshd) -- C:\Windows\SysNative\OpenSSH\sshd.exe ()
SRV:64bit: - (Intel(R) -- C:\Windows\SysNative\IPROSetMonitor.exe (Intel Corporation)
SRV - (GalaxyClientService) -- H:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe (GOG.com)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (MicrosoftEdgeElevationService) -- C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.57\elevation_service.exe (Microsoft Corporation)
SRV - (NVDisplay.ContainerLocalSystem) -- C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_8e68f77150e57b50\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation)
SRV - (GalaxyCommunication) -- C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe (GOG.com)
SRV - (GoogleChromeElevationService) -- C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\elevation_service.exe (Google LLC)
SRV - (CleanupPSvc) -- C:\Programme\AVG\TuneUp\TuneupSvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (PlexUpdateService) -- H:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe (Plex, Inc.)
SRV - (BEService) -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe ()
SRV - (Rockstar Service) -- H:\Programme\Rockstar Games\Launcher\RockstarService.exe (Rockstar Games)
SRV - (avgbIDSAgent) -- C:\Programme\AVG\Antivirus\aswidsagent.exe (AVG Technologies CZ, s.r.o.)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (TeamViewer) -- G:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH)
SRV - (PrintNotify) -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV - (ProtonVPN Service) -- H:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe ()
SRV - (ProtonVPN Update Service) -- H:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe ()
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc.)
SRV - (StateRepository) -- C:\Windows\SysWOW64\Windows.StateRepository.dll (Microsoft Corporation)
SRV - (AarSvc) -- C:\Windows\SysWOW64\AarSvc.dll (Microsoft Corporation)
SRV - (edgeupdatem) -- C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation)
SRV - (edgeupdate) -- C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation)
SRV - (FvSvc) -- C:\Programme\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe (NVIDIA)
SRV - (NvContainerLocalSystem) -- C:\Programme\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
SRV - (CoreMessagingRegistrar) -- C:\Windows\SysWOW64\CoreMessaging.dll (Microsoft Corporation)
SRV - (InstallService) -- C:\Windows\SysWOW64\InstallService.dll (Microsoft Corporation)
SRV - (TokenBroker) -- C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation)
SRV - (wisvc) -- C:\Windows\SysWOW64\FlightSettings.dll (Microsoft Corporation)
SRV - (RzKLService) -- G:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Razer Inc.)
SRV - (PDF24) -- G:\Program Files (x86)\PDF24\pdf24.exe (geek software GmbH)
SRV - (RzActionSvc) -- C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (Razer Inc.)
SRV - (EasyAntiCheat) -- C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe (EasyAntiCheat Ltd)
SRV - (DmEnrollmentSvc) -- C:\Windows\SysWOW64\Windows.Internal.Management.dll (Microsoft Corporation)
SRV - (BTAGService) -- C:\Windows\SysWOW64\BTAGService.dll (Microsoft Corporation)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (DevicePickerUserSvc) -- C:\Windows\SysWOW64\Windows.Devices.Picker.dll (Microsoft Corporation)
SRV - (PrintWorkflowUserSvc) -- C:\Windows\SysWOW64\PrintWorkflowService.dll (Microsoft Corporation)
SRV - (EasyTuneEngineService) -- C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
SRV - (ss_conn_service) -- C:\Programme\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (DEVGURU Co., LTD.)
SRV - (ss_conn_service2) -- C:\Programme\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (DEVGURU Co., LTD.)
SRV - (Razer Game Manager Service) -- C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (Razer Inc)
SRV - (AdvancedSystemCareService13) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe (IObit)
SRV - (ucldr_battlegrounds_gl) -- C:\Programme\Common Files\Uncheater\ucldr_battlegrounds_gl.exe (Wellbia.com Co., Ltd.)
SRV - (WdNisSvc) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2005.4-0\NisSrv.exe (Microsoft Corporation)
SRV - (WinDefend) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2005.4-0\MsMpEng.exe (Microsoft Corporation)
SRV - (IObitUnSvr) -- G:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe (IObit)
SRV - (DeviceAssociationBrokerSvc) -- C:\Windows\SysWOW64\deviceaccess.dll (Microsoft Corporation)
SRV - (OpenVPNServiceLegacy) -- C:\Programme\OpenVPN\bin\openvpnserv.exe (The OpenVPN Project)
SRV - (OpenVPNServiceInteractive) -- C:\Programme\OpenVPN\bin\openvpnserv.exe (The OpenVPN Project)
SRV - (HwmRecordService) -- C:\Program Files (x86)\GIGABYTE\SIV\HwmRecordService.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
SRV - (MixedRealityOpenXRSvc) -- C:\Windows\SysWOW64\MixedRealityRuntime.dll (Microsoft Corporation)
SRV - (smphost) -- C:\Windows\SysWOW64\smphost.dll (Microsoft Corporation)
SRV - (tzautoupdate) -- C:\Windows\SysWOW64\tzautoupdate.dll (Microsoft Corporation)
SRV - (UnistoreSvc) -- C:\Windows\SysWOW64\Unistore.dll (Microsoft Corporation)
SRV - (OcButtonService) -- C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe (GIGA-BYTE TECHNOLOGY CO., LTD.)
SRV - (VMwareHostd) -- G:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ()
SRV - (VMnetDHCP) -- C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
SRV - (VMware NAT Service) -- C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
SRV - (VMAuthdService) -- G:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc.)
SRV - (VMUSBArbService) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (VMware, Inc.)
SRV - (OpenVPNService) -- C:\Programme\OpenVPN\bin\openvpnserv2.exe ( )
SRV - (Gservice) -- C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (Microsoft)
SRV - (cFosSpeedS) -- C:\Programme\cFosSpeed\spd.exe (cFos Software GmbH)
SRV - (gadjservice) -- C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe ()
SRV - (SwitchBoard) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (ose64) -- c:\Programme\Common Files\microsoft shared\Source Engine\OSE.EXE (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV:64bit: - (passthruparser) -- C:\Windows\SysNative\drivers\passthruparser.sys (Microsoft Corporation)
DRV:64bit: - (vpcivsp) -- C:\Windows\SysNative\drivers\vpcivsp.sys (Microsoft Corporation)
DRV:64bit: - (pvhdparser) -- C:\Windows\SysNative\drivers\pvhdparser.sys (Microsoft Corporation)
DRV:64bit: - (l2bridge) -- C:\Windows\SysNative\drivers\l2bridge.sys (Microsoft Corporation)
DRV:64bit: - (vhdparser) -- C:\Windows\SysNative\drivers\vhdparser.sys (Microsoft Corporation)
DRV:64bit: - (hvsocketcontrol) -- C:\Windows\SysNative\drivers\hvsocketcontrol.sys (Microsoft Corporation)
DRV:64bit: - (hnswfpdriver) -- C:\Windows\SysNative\drivers\hnswfpdriver.sys (Microsoft Corporation)
DRV:64bit: - (nvlddmkm) -- C:\Windows\SysNative\DriverStore\FileRepository\nv_dispi.inf_amd64_8e68f77150e57b50\nvlddmkm.sys (NVIDIA Corporation)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (avgVmm) -- C:\Windows\SysNative\drivers\avgVmm.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgNetHub) -- C:\Windows\SysNative\drivers\avgNetHub.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgSP) -- C:\Windows\SysNative\drivers\avgSP.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgbidsh) -- C:\Windows\SysNative\drivers\avgbidsh.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgStm) -- C:\Windows\SysNative\drivers\avgStm.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgMonFlt) -- C:\Windows\SysNative\drivers\avgMonFlt.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgRdr) -- C:\Windows\SysNative\drivers\avgRdr2.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgbuniv) -- C:\Windows\SysNative\drivers\avgbuniv.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgRvrt) -- C:\Windows\SysNative\drivers\avgRvrt.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgKbd) -- C:\Windows\SysNative\drivers\avgKbd.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgElam) -- C:\Windows\SysNative\drivers\avgElam.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgSnx) -- C:\Windows\SysNative\drivers\avgSnx.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgbidsdriver) -- C:\Windows\SysNative\drivers\avgbidsdriver.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgArPot) -- C:\Windows\SysNative\drivers\avgArPot.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (avgArDisk) -- C:\Windows\SysNative\drivers\avgArDisk.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (VMSVSP) -- C:\Windows\SysNative\drivers\vmswitch.sys (Microsoft Corporation)
DRV:64bit: - (VMSVSF) -- C:\Windows\SysNative\drivers\vmswitch.sys (Microsoft Corporation)
DRV:64bit: - (VMSP) -- C:\Windows\SysNative\drivers\vmswitch.sys (Microsoft Corporation)
DRV:64bit: - (vmsmp) -- C:\Windows\SysNative\drivers\vmswitch.sys (Microsoft Corporation)
DRV:64bit: - (VmsProxy) -- C:\Windows\SysNative\drivers\VmsProxy.sys (Microsoft Corporation)
DRV:64bit: - (VMSNPXYMP) -- C:\Windows\SysNative\drivers\VmsProxyHNic.sys (Microsoft Corporation)
DRV:64bit: - (VMSNPXY) -- C:\Windows\SysNative\drivers\VmsProxyHNic.sys (Microsoft Corporation)
DRV:64bit: - (PktMon) -- C:\Windows\SysNative\drivers\PktMon.sys (Microsoft Corporation)
DRV:64bit: - (CLFS) -- C:\Windows\SysNative\drivers\clfs.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (netvsc) -- C:\Windows\SysNative\drivers\netvsc.sys (Microsoft Corporation)
DRV:64bit: - (VfpExt) -- C:\Windows\SysNative\drivers\vfpext.sys (Microsoft Corporation)
DRV:64bit: - (hvservice) -- C:\Windows\SysNative\drivers\hvservice.sys (Microsoft Corporation)
DRV:64bit: - (storvsp) -- C:\Windows\SysNative\drivers\storvsp.sys (Microsoft Corporation)
DRV:64bit: - (xboxgip) -- C:\Windows\SysNative\drivers\xboxgip.sys (Microsoft Corporation)
DRV:64bit: - (xinputhid) -- C:\Windows\SysNative\drivers\xinputhid.sys (Microsoft Corporation)
DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys (Microsoft Corporation)
DRV:64bit: - (NetAdapterCx) -- C:\Windows\SysNative\drivers\NetAdapterCx.sys (Microsoft Corporation)
DRV:64bit: - (applockerfltr) -- C:\Windows\SysNative\drivers\applockerfltr.sys (Microsoft Corporation)
DRV:64bit: - (IndirectKmd) -- C:\Windows\SysNative\drivers\IndirectKmd.sys (Microsoft Corporation)
DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\drivers\wfplwfs.sys (Microsoft Corporation)
DRV:64bit: - (MMCSS) -- C:\Windows\SysNative\drivers\mmcss.sys (Microsoft Corporation)
DRV:64bit: - (vmbusr) -- C:\Windows\SysNative\drivers\vmbusr.sys (Microsoft Corporation)
DRV:64bit: - (intelpep) -- C:\Windows\SysNative\drivers\intelpep.sys (Microsoft Corporation)
DRV:64bit: - (stornvme) -- C:\Windows\SysNative\drivers\stornvme.sys (Microsoft Corporation)
DRV:64bit: - (Telemetry) -- C:\Windows\SysNative\drivers\IntelTA.sys (Microsoft Corporation)
DRV:64bit: - (npcap_wifi) -- C:\Windows\SysNative\drivers\npcap.sys (Insecure.Com LLC.)
DRV:64bit: - (npcap) -- C:\Windows\SysNative\drivers\npcap.sys (Insecure.Com LLC.)
DRV:64bit: - (afunix) -- C:\Windows\SysNative\drivers\afunix.sys (Microsoft Corporation)
DRV:64bit: - (MsQuic) -- C:\Windows\SysNative\drivers\msquic.sys (Microsoft Corporation)
DRV:64bit: - (CldFlt) -- C:\Windows\SysNative\drivers\cldflt.sys (Microsoft Corporation)
DRV:64bit: - (UcmUcsiCx0101) -- C:\Windows\SysNative\drivers\UcmUcsiCx.sys (Microsoft Corporation)
DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\drivers\msgpioclx.sys (Microsoft Corporation)
DRV:64bit: - (wdiwifi) -- C:\Windows\SysNative\drivers\WdiWiFi.sys (Microsoft Corporation)
DRV:64bit: - (pdc) -- C:\Windows\SysNative\drivers\pdc.sys (Microsoft Corporation)
DRV:64bit: - (WinNat) -- C:\Windows\SysNative\drivers\winnat.sys (Microsoft Corporation)
DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\drivers\USBXHCI.SYS (Microsoft Corporation)
DRV:64bit: - (BthA2dp) -- C:\Windows\SysNative\drivers\BthA2dp.sys (Microsoft Corporation)
DRV:64bit: - (TPM) -- C:\Windows\SysNative\drivers\tpm.sys (Microsoft Corporation)
DRV:64bit: - (storahci) -- C:\Windows\SysNative\drivers\storahci.sys (Microsoft Corporation)
DRV:64bit: - (BthLEEnum) -- C:\Windows\SysNative\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys (Microsoft Corporation)
DRV:64bit: - (storufs) -- C:\Windows\SysNative\drivers\storufs.sys (Microsoft Corporation)
DRV:64bit: - (BthMini) -- C:\Windows\SysNative\drivers\BthMini.SYS (Microsoft Corporation)
DRV:64bit: - (usbrndis6) -- C:\Windows\SysNative\drivers\usb80236.sys (Microsoft Corporation)
DRV:64bit: - (MbbCx) -- C:\Windows\SysNative\drivers\MbbCx.sys (Microsoft Corporation)
DRV:64bit: - (MsSecFlt) -- C:\Windows\SysNative\drivers\mssecflt.sys (Microsoft Corporation)
DRV:64bit: - (spaceport) -- C:\Windows\SysNative\drivers\spaceport.sys (Microsoft Corporation)
DRV:64bit: - (Vid) -- C:\Windows\SysNative\drivers\Vid.sys (Microsoft Corporation)
DRV:64bit: - (ssudmdm) -- C:\Windows\SysNative\drivers\ssudmdm.sys (Samsung Electronics Co., Ltd.)
DRV:64bit: - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus.sys (Samsung Electronics Co., Ltd.)
DRV:64bit: - (ss_conn_usb_driver2) -- C:\Windows\SysNative\drivers\ss_conn_usb_driver2.sys (Samsung Electronics Co., Ltd.)
DRV:64bit: - (e1rexpress) -- C:\Windows\SysNative\drivers\e1r68x64.sys (Intel Corporation)
DRV:64bit: - (bindflt) -- C:\Windows\SysNative\drivers\bindflt.sys (Microsoft Corporation)
DRV:64bit: - (P9Rdr) -- C:\Windows\SysNative\drivers\p9rdr.sys (Microsoft Corporation)
DRV:64bit: - (lxss) -- C:\Windows\SysNative\drivers\lxss.sys (Microsoft Corporation)
DRV:64bit: - (inpoutx64) -- C:\Windows\SysNative\drivers\inpoutx64.sys (Highresolution Enterprises [www.highrez.co.uk])
DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\drivers\wd\WdFilter.sys (Microsoft Corporation)
DRV:64bit: - (WdNisDrv) -- C:\Windows\SysNative\drivers\wd\WdNisDrv.sys (Microsoft Corporation)
DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\drivers\wd\WdBoot.sys (Microsoft Corporation)
DRV:64bit: - (EneTechIo) -- C:\Windows\SysNative\drivers\ene.sys ()
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (tsusbhub) -- C:\Windows\SysNative\drivers\tsusbhub.sys (Microsoft Corporation)
DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\drivers\USBHUB3.SYS (Microsoft Corporation)
DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\DriverStore\FileRepository\basicrender.inf_amd64_49a8589f00d970d9\BasicRender.sys (Microsoft Corporation)
DRV:64bit: - (AMDPCIDev) -- C:\Windows\SysNative\drivers\AMDPCIDev.sys (Advanced Micro Devices)
DRV:64bit: - (tapprotonvpn) -- C:\Windows\SysNative\drivers\tapprotonvpn.sys (The OpenVPN Project)
DRV:64bit: - (amdpsp) -- C:\Windows\SysNative\drivers\amdpsp.sys (Advanced Micro Devices, Inc. )
DRV:64bit: - (amdgpio2) -- C:\Windows\SysNative\drivers\amdgpio2.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (nvvhci) -- C:\Windows\SysNative\drivers\nvvhci.sys (NVIDIA Corporation)
DRV:64bit: - (amdgpio3) -- C:\Windows\SysNative\drivers\amdgpio3.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation)
DRV:64bit: - (NvModuleTracker) -- C:\Windows\SysNative\drivers\NvModuleTracker.sys (NVIDIA Corporation)
DRV:64bit: - (smbdirect) -- C:\Windows\SysNative\drivers\smbdirect.sys (Microsoft Corporation)
DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\drivers\WpdUpFltr.sys (Microsoft Corporation)
DRV:64bit: - (UevAgentDriver) -- C:\Windows\SysNative\drivers\UevAgentDriver.sys (Microsoft Corporation)
DRV:64bit: - (SpatialGraphFilter) -- C:\Windows\SysNative\drivers\SpatialGraphFilter.sys (Microsoft Corporation)
DRV:64bit: - (AppvVemgr) -- C:\Windows\SysNative\drivers\AppvVemgr.sys (Microsoft Corporation)
DRV:64bit: - (AppvVfs) -- C:\Windows\SysNative\drivers\AppvVfs.sys (Microsoft Corporation)
DRV:64bit: - (AppvStrm) -- C:\Windows\SysNative\drivers\AppVStrm.sys (Microsoft Corporation)
DRV:64bit: - (NDKPing) -- C:\Windows\SysNative\drivers\NDKPing.sys (Microsoft Corporation)
DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\drivers\EhStorClass.sys (Microsoft Corporation)
DRV:64bit: - (spaceparser) -- C:\Windows\SysNative\drivers\spaceparser.sys (Microsoft Corporation)
DRV:64bit: - (Ndu) -- C:\Windows\SysNative\drivers\Ndu.sys (Microsoft Corporation)
DRV:64bit: - (SgrmAgent) -- C:\Windows\SysNative\drivers\SgrmAgent.sys (Microsoft Corporation)
DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\drivers\mslldp.sys (Microsoft Corporation)
DRV:64bit: - (NdisVirtualBus) -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys (Microsoft Corporation)
DRV:64bit: - (ahcache) -- C:\Windows\SysNative\drivers\ahcache.sys (Microsoft Corporation)
DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\drivers\VerifierExt.sys (Microsoft Corporation)
DRV:64bit: - (Fs_Rec) -- C:\WINDOWS\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (ReFS) -- C:\WINDOWS\SysNative\drivers\refs.sys (Microsoft Corporation)
DRV:64bit: - (ReFSv1) -- C:\WINDOWS\SysNative\drivers\refsv1.sys (Microsoft Corporation)
DRV:64bit: - (Wof) -- C:\WINDOWS\SysNative\drivers\wof.sys (Microsoft Corporation)
DRV:64bit: - (dam) -- C:\Windows\SysNative\drivers\dam.sys (Microsoft Corporation)
DRV:64bit: - (bam) -- C:\Windows\SysNative\drivers\bam.sys (Microsoft Corporation)
DRV:64bit: - (WdmCompanionFilter) -- C:\Windows\SysNative\drivers\WdmCompanionFilter.sys (Microsoft Corporation)
DRV:64bit: - (Ufx01000) -- C:\Windows\SysNative\drivers\ufx01000.sys (Microsoft Corporation)
DRV:64bit: - (UcmTcpciCx0101) -- C:\Windows\SysNative\drivers\UcmTcpciCx.sys (Microsoft Corporation)
DRV:64bit: - (UcmCx0101) -- C:\Windows\SysNative\drivers\UcmCx.sys (Microsoft Corporation)
DRV:64bit: - (storqosflt) -- C:\Windows\SysNative\drivers\storqosflt.sys (Microsoft Corporation)
DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\drivers\SpbCx.sys (Microsoft Corporation)
DRV:64bit: - (WindowsTrustedRT) -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys (Microsoft Corporation)
DRV:64bit: - (UrsCx01000) -- C:\Windows\SysNative\drivers\urscx01000.sys (Microsoft Corporation)
DRV:64bit: - (cnghwassist) -- C:\Windows\SysNative\drivers\cnghwassist.sys (Microsoft Corporation)
DRV:64bit: - (SerCx2) -- C:\Windows\SysNative\drivers\SerCx2.sys (Microsoft Corporation)
DRV:64bit: - (SerCx) -- C:\Windows\SysNative\drivers\SerCx.sys (Microsoft Corporation)
DRV:64bit: - (HwNClx0101) -- C:\Windows\SysNative\drivers\mshwnclx.sys (Microsoft Corporation)
DRV:64bit: - (portcfg) -- C:\Windows\SysNative\drivers\portcfg.sys (Microsoft Corporation)
DRV:64bit: - (wcifs) -- C:\Windows\SysNative\drivers\wcifs.sys (Microsoft Corporation)
DRV:64bit: - (wcnfs) -- C:\Windows\SysNative\drivers\wcnfs.sys (Microsoft Corporation)
DRV:64bit: - (CimFS) -- C:\WINDOWS\SysNative\drivers\cimfs.sys ()
DRV:64bit: - (condrv) -- C:\Windows\SysNative\drivers\condrv.sys (Microsoft Corporation)
DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\drivers\mshidumdf.sys (Microsoft Corporation)
DRV:64bit: - (Acx01000) -- C:\Windows\SysNative\drivers\Acx01000.sys (Microsoft Corporation)
DRV:64bit: - (Ucx01000) -- C:\Windows\SysNative\drivers\Ucx01000.sys (Microsoft Corporation)
DRV:64bit: - (acpiex) -- C:\Windows\SysNative\drivers\acpiex.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (IPT) -- C:\Windows\SysNative\drivers\ipt.sys (Microsoft Corporation)
DRV:64bit: - (FileCrypt) -- C:\Windows\SysNative\drivers\filecrypt.sys (Microsoft Corporation)
DRV:64bit: - (UdeCx) -- C:\Windows\SysNative\drivers\Udecx.sys (Microsoft Corporation)
DRV:64bit: - (Ramdisk) -- C:\Windows\SysNative\drivers\ramdisk.sys (Microsoft Corporation)
DRV:64bit: - (iorate) -- C:\Windows\SysNative\drivers\iorate.sys (Microsoft Corporation)
DRV:64bit: - (GpuEnergyDrv) -- C:\Windows\SysNative\drivers\gpuenergydrv.sys (Microsoft Corporation)
DRV:64bit: - (vpci) -- C:\Windows\SysNative\drivers\vpci.sys (Microsoft Corporation)
DRV:64bit: - (Synth3dVsc) -- C:\Windows\SysNative\drivers\Synth3dVsc.sys (Microsoft Corporation)
DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation)
DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\drivers\HyperVideo.sys (Microsoft Corporation)
DRV:64bit: - (hvcrash) -- C:\Windows\SysNative\drivers\hvcrash.sys (Microsoft Corporation)
DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\drivers\hyperkbd.sys (Microsoft Corporation)
DRV:64bit: - (gencounter) -- C:\Windows\SysNative\drivers\vmgencounter.sys (Microsoft Corporation)
DRV:64bit: - (vmgid) -- C:\Windows\SysNative\drivers\vmgid.sys (Microsoft Corporation)
DRV:64bit: - (VirtualRender) -- C:\Windows\SysNative\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys (Microsoft Corporation)
DRV:64bit: - (ufxsynopsys) -- C:\Windows\SysNative\drivers\ufxsynopsys.sys (Microsoft Corporation)
DRV:64bit: - (UfxChipidea) -- C:\Windows\SysNative\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys (Microsoft Corporation)
DRV:64bit: - (sdstor) -- C:\Windows\SysNative\drivers\sdstor.sys (Microsoft Corporation)
DRV:64bit: - (hidspi) -- C:\Windows\SysNative\drivers\hidspi.sys (Microsoft Corporation)
DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\drivers\hidi2c.sys (Microsoft Corporation)
DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\drivers\msgpiowin32.sys (Microsoft Corporation)
DRV:64bit: - (hidinterrupt) -- C:\Windows\SysNative\drivers\hidinterrupt.sys (Microsoft Corporation)
DRV:64bit: - (buttonconverter) -- C:\Windows\SysNative\drivers\buttonconverter.sys (Microsoft Corporation)
DRV:64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation)
DRV:64bit: - (UcmUcsiAcpiClient) -- C:\Windows\SysNative\drivers\UcmUcsiAcpiClient.sys (Microsoft Corporation)
DRV:64bit: - (kdnic) -- C:\Windows\SysNative\drivers\kdnic.sys (Microsoft Corporation)
DRV:64bit: - (UrsChipidea) -- C:\Windows\SysNative\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys (Microsoft Corporation)
DRV:64bit: - (UrsSynopsys) -- C:\Windows\SysNative\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys (Microsoft Corporation)
DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\drivers\npsvctrig.sys (Microsoft Corporation)
DRV:64bit: - (genericusbfn) -- C:\Windows\SysNative\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys (Microsoft Corporation)
DRV:64bit: - (WindowsTrustedRTProxy) -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys (Microsoft Corporation)
DRV:64bit: - (cht4vbd) -- C:\Windows\SysNative\drivers\cht4vx64.sys (Chelsio Communications)
DRV:64bit: - (mlx4_bus) -- C:\Windows\SysNative\drivers\mlx4_bus.sys (Mellanox)
DRV:64bit: - (iaStorAVC) -- C:\Windows\SysNative\drivers\iaStorAVC.sys (Intel Corporation)
DRV:64bit: - (ibbus) -- C:\Windows\SysNative\drivers\ibbus.sys (Mellanox)
DRV:64bit: - (mausbhost) -- C:\Windows\SysNative\drivers\mausbhost.sys (Microsoft Corporation)
DRV:64bit: - (cht4iscsi) -- C:\Windows\SysNative\drivers\cht4sx64.sys (Chelsio Communications)
DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\drivers\VSTXRAID.SYS (VIA Corporation)
DRV:64bit: - (nvdimm) -- C:\Windows\SysNative\drivers\nvdimm.sys (Microsoft Corporation)
DRV:64bit: - (scmbus) -- C:\Windows\SysNative\drivers\scmbus.sys (Microsoft Corporation)
DRV:64bit: - (ndfltr) -- C:\Windows\SysNative\drivers\ndfltr.sys (Mellanox)
DRV:64bit: - (pmem) -- C:\Windows\SysNative\drivers\pmem.sys (Microsoft Corporation)
DRV:64bit: - (usbser) -- C:\Windows\SysNative\drivers\usbser.sys (Microsoft Corporation)
DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\drivers\uaspstor.sys (Microsoft Corporation)
DRV:64bit: - (WinVerbs) -- C:\Windows\SysNative\drivers\winverbs.sys (Mellanox)
DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\DriverStore\FileRepository\basicdisplay.inf_amd64_62ba5773ba05edee\BasicDisplay.sys (Microsoft Corporation)
DRV:64bit: - (mausbip) -- C:\Windows\SysNative\drivers\mausbip.sys (Microsoft Corporation)
DRV:64bit: - (vhf) -- C:\Windows\SysNative\drivers\vhf.sys (Microsoft Corporation)
DRV:64bit: - (bttflt) -- C:\Windows\SysNative\drivers\bttflt.sys (Microsoft Corporation)
DRV:64bit: - (WinMad) -- C:\Windows\SysNative\drivers\winmad.sys (Mellanox)
DRV:64bit: - (acpitime) -- C:\Windows\SysNative\drivers\acpitime.sys (Microsoft Corporation)
DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\drivers\acpipagr.sys (Microsoft Corporation)
DRV:64bit: - (ADP80XX) -- C:\Windows\SysNative\drivers\adp80xx.sys (PMC-Sierra)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (SmartSAMD) -- C:\Windows\SysNative\drivers\SmartSAMD.sys (Microsemi Corportation)
DRV:64bit: - (ItSas35i) -- C:\Windows\SysNative\drivers\ItSas35i.sys (Avago Technologies)
DRV:64bit: - (LSI_SAS3i) -- C:\Windows\SysNative\drivers\lsi_sas3i.sys (Avago Technologies)
DRV:64bit: - (LSI_SAS2i) -- C:\Windows\SysNative\drivers\lsi_sas2i.sys (LSI Corporation)
DRV:64bit: - (3ware) -- C:\Windows\SysNative\drivers\3ware.sys (LSI)
DRV:64bit: - (megasas35i) -- C:\Windows\SysNative\drivers\megasas35i.sys (Avago Technologies)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\drivers\lsi_sss.sys (LSI Corporation)
DRV:64bit: - (megasas2i) -- C:\Windows\SysNative\drivers\MegaSas2i.sys (Avago Technologies)
DRV:64bit: - (percsas3i) -- C:\Windows\SysNative\drivers\percsas3i.sys (Avago Technologies)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (mvumis) -- C:\Windows\SysNative\drivers\mvumis.sys (Marvell Semiconductor, Inc.)
DRV:64bit: - (percsas2i) -- C:\Windows\SysNative\drivers\percsas2i.sys (Avago Technologies)
DRV:64bit: - (umbus) -- C:\Windows\SysNative\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (UEFI) -- C:\Windows\SysNative\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\uefi.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology, Inc.)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (AcpiDev) -- C:\Windows\SysNative\drivers\AcpiDev.sys (Microsoft Corporation)
DRV:64bit: - (volume) -- C:\Windows\SysNative\drivers\volume.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (QLogic Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (QLogic Corporation)
DRV:64bit: - (usbaudio2) -- C:\Windows\SysNative\drivers\usbaudio2.sys (Microsoft Corporation)
DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys (Microsoft Corporation)
DRV:64bit: - (rhproxy) -- C:\Windows\SysNative\drivers\rhproxy.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSSi_I2C) -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys (Intel Corporation)
DRV:64bit: - (CompositeBus) -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSSi_GPIO) -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys (Intel Corporation)
DRV:64bit: - (SDFRd) -- C:\Windows\SysNative\drivers\SDFRd.sys (Microsoft Corporation)
DRV:64bit: - (swenum) -- C:\Windows\SysNative\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys (Microsoft Corporation)
DRV:64bit: - (PNPMEM) -- C:\Windows\SysNative\drivers\pnpmem.sys (Microsoft Corporation)
DRV:64bit: - (netr28ux) -- C:\Windows\SysNative\drivers\netr28ux.sys (MediaTek Inc.)
DRV:64bit: - (iaLPSS2i_I2C_GLK) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_GLK.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C_CNL) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_CNL.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C_BXT_P) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_BXT_P.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys (Intel Corporation)
DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\drivers\BthHfEnum.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_CNL) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_CNL.sys (Intel Corporation)
DRV:64bit: - (xusb22) -- C:\Windows\SysNative\drivers\xusb22.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_GLK) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_GLK.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_BXT_P) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_BXT_P.sys (Intel Corporation)
DRV:64bit: - (iai2c) -- C:\Windows\SysNative\drivers\iai2c.sys (Intel(R) Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2.sys (Intel Corporation)
DRV:64bit: - (CAD) -- C:\Windows\SysNative\drivers\CAD.sys (Microsoft Corporation)
DRV:64bit: - (BthHFAud) -- C:\Windows\SysNative\drivers\BthHfAud.sys (Microsoft Corporation)
DRV:64bit: - (Microsoft_Bluetooth_AvrcpTransport) -- C:\Windows\SysNative\drivers\Microsoft.Bluetooth.AvrcpTransport.sys (Microsoft Corporation)
DRV:64bit: - (amdi2c) -- C:\Windows\SysNative\drivers\amdi2c.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (iagpio) -- C:\Windows\SysNative\drivers\iagpio.sys (Intel(R) Corporation)
DRV:64bit: - (intelpmax) -- C:\Windows\SysNative\drivers\intelpmax.sys (Microsoft Corporation)
DRV:64bit: - (bcmfn2) -- C:\Windows\SysNative\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider)
DRV:64bit: - (tap0901) -- C:\Windows\SysNative\drivers\tap0901.sys (The OpenVPN Project)
DRV:64bit: - (VMnetBridge) -- C:\Windows\SysNative\drivers\vmnetbridge.sys (VMware, Inc.)
DRV:64bit: - (VMnetAdapter) -- C:\Windows\SysNative\drivers\vmnetadapter.sys (VMware, Inc.)
DRV:64bit: - (VMnetuserif) -- C:\Windows\SysNative\drivers\vmnetuserif.sys (VMware, Inc.)
DRV:64bit: - (vmkbd3) -- C:\Windows\SysNative\drivers\vmkbd.sys (VMware, Inc.)
DRV:64bit: - (vmx86) -- C:\Windows\SysNative\drivers\vmx86.sys (VMware, Inc.)
DRV:64bit: - (vsock) -- C:\Windows\SysNative\drivers\vsock.sys (VMware, Inc.)
DRV:64bit: - (vmci) -- C:\Windows\SysNative\drivers\vmci.sys (VMware, Inc.)
DRV:64bit: - (IDMWFP) -- C:\Windows\SysNative\drivers\idmwfp.sys (Tonec Inc.)
DRV:64bit: - (hcmon) -- C:\Windows\SysNative\drivers\hcmon.sys (VMware, Inc.)
DRV:64bit: - (vmusb) -- C:\Windows\SysNative\drivers\vmusb.sys (VMware, Inc.)
DRV:64bit: - (NAL) -- C:\Windows\SysNative\drivers\iqvw64e.sys (Intel Corporation )
DRV:64bit: - (AmdTools64) -- C:\Windows\SysNative\drivers\AmdTools64.sys (Advanced Micro Devices)
DRV:64bit: - (SteamStreamingMicrophone) -- C:\Windows\SysNative\drivers\SteamStreamingMicrophone.sys ()
DRV:64bit: - (SteamStreamingSpeakers) -- C:\Windows\SysNative\drivers\SteamStreamingSpeakers.sys ()
DRV:64bit: - (cFosSpeed) -- C:\Windows\SysNative\drivers\cfosspeed6.sys (cFos Software GmbH)
DRV:64bit: - (xusb21) -- C:\Windows\SysNative\drivers\xusb21.sys (Microsoft Corporation)
DRV - (cpuz145) -- C:\Windows\Temp\cpuz145\cpuz145_x64.sys (CPUID)
DRV - (BEDaisy) -- C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys ()
DRV - (nvlddmkm) -- C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_8e68f77150e57b50\nvlddmkm.sys (NVIDIA Corporation)
DRV - (afunix) -- C:\Windows\SysWOW64\drivers\afunix.sys (Microsoft Corporation)
DRV - (ProtonVPNSplitTunnel) -- H:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.SplitTunnelDriver.sys (Proton Technologies AG)
DRV - (xhunter1) -- C:\Windows\xhunter1.sys (Wellbia.com Co., Ltd.)
DRV - (gdrv) -- C:\Windows\gdrv.sys (GIGA-BYTE TECHNOLOGY CO., LTD.)
DRV - (gdrv2) -- C:\Windows\gdrv2.sys (GIGA-BYTE TECHNOLOGY CO., LTD.)
DRV - (IURegistryFilter) -- G:\Program Files (x86)\IObit\IObit Uninstaller\Drivers\win10_amd64\IURegistryFilter.sys (IObit)
DRV - (IUFileFilter) -- G:\Program Files (x86)\IObit\IObit Uninstaller\Drivers\win10_amd64\IUFileFilter.sys (IObit)
DRV - (IUProcessFilter) -- G:\Program Files (x86)\IObit\IObit Uninstaller\Drivers\win10_amd64\IUProcessFilter.sys (IObit)
DRV - (BasicRender) -- C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_49a8589f00d970d9\BasicRender.sys (Microsoft Corporation)
DRV - (VirtualRender) -- C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys (Microsoft Corporation)
DRV - (UfxChipidea) -- C:\WINDOWS\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys (Microsoft Corporation)
DRV - (UrsChipidea) -- C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys (Microsoft Corporation)
DRV - (UrsSynopsys) -- C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys (Microsoft Corporation)
DRV - (genericusbfn) -- C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys (Microsoft Corporation)
DRV - (BasicDisplay) -- C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_62ba5773ba05edee\BasicDisplay.sys (Microsoft Corporation)
DRV - (umbus) -- C:\WINDOWS\System32\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys (Microsoft Corporation)
DRV - (UEFI) -- C:\WINDOWS\System32\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\UEFI.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys (Microsoft Corporation)
DRV - (swenum) -- C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys (Microsoft Corporation)
DRV - (AscRegistryFilter) -- C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys (IObit)
DRV - (AscFileFilter) -- C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys (IObit)
DRV - (AMDRyzenMasterDriver) -- C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\AMD\Ryzen\AMDRyzenMasterDriver.sys (Advanced Micro Devices)
DRV - (iobit_monitor_server) -- C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys (IObit)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 87 B0 87 F8 07 36 D6 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = 01 00 00 00 49 00 00 00 F0 A4 1E F7 9B 1B 1E 5D 99 E0 53 22 62 59 BA FF DD 33 A0 27 D4 13 5D 81 E0 E7 EA 0E 76 AE 31 B7 D1 87 FF BB EB EE 9B C1 9B EB 1D 16 89 69 1B DE C5 A4 CD 0C E9 A2 E8 C2 03 67 DF AC E7 60 19 7B E4 8E 7F 21 73 B5 90 0D AA 02 00 00 00 0E 00 00 00 48 73 37 56 45 77 35 6B 49 46 67 25 33 64 [Binary data over 200 bytes]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.261.2: C:\Program Files\Java\jre1.8.0_261\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.261.2: C:\Program Files\Java\jre1.8.0_261\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.11: G:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 83.0\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 83.0\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\mozilla_cc3@internetdownloadmanager.com: H:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2020.04.29 22:19:06 | 000,087,398 | ---- | M] ()
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 83.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 83.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Y\AppData\Roaming\IDM\idmmzcc5 [2020.05.29 20:06:59 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc2@internetdownloadmanager.com: H:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017.12.20 15:58:30 | 000,030,386 | ---- | M] ()
[2020.05.29 19:36:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Extensions
[2020.05.29 19:36:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\SystemExtensionsDev
[2020.05.30 10:39:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\j0np2f1s.default\extensions
[2020.12.04 16:09:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\extensions
[2020.05.29 20:02:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++1a36b675-46c3-4c8c-a033-9b0a8ba9626c^userContextId=4294967295
[2020.12.11 17:20:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++1a36b675-46c3-4c8c-a033-9b0a8ba9626c^userContextId=4294967295\idb
[2020.05.29 20:02:31 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++2a40d587-32fb-4799-b455-f605c2cce222^userContextId=4294967295
[2020.12.11 17:20:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++2a40d587-32fb-4799-b455-f605c2cce222^userContextId=4294967295\idb
[2020.05.29 19:36:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++56b4dcfc-861d-4131-b203-e399579bbf6e^userContextId=4294967295
[2020.12.11 13:23:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++56b4dcfc-861d-4131-b203-e399579bbf6e^userContextId=4294967295\idb
[2020.05.29 20:02:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++68f3b5cd-d65f-4ea4-b6c9-f9269d7062e3
[2020.12.11 17:23:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++68f3b5cd-d65f-4ea4-b6c9-f9269d7062e3\idb
[2020.05.29 20:02:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++68f3b5cd-d65f-4ea4-b6c9-f9269d7062e3^userContextId=4294967295
[2020.12.11 17:28:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++68f3b5cd-d65f-4ea4-b6c9-f9269d7062e3^userContextId=4294967295\idb
[2020.05.29 20:02:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++70016862-8675-44cf-ac3b-80e1c7dd283f^userContextId=4294967295
[2020.12.11 17:28:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++70016862-8675-44cf-ac3b-80e1c7dd283f^userContextId=4294967295\idb
[2020.05.29 20:02:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++a54443e8-d7bd-4f74-92e0-9afad78115e5^userContextId=4294967295
[2020.12.11 17:20:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++a54443e8-d7bd-4f74-92e0-9afad78115e5^userContextId=4294967295\idb
[2020.05.29 20:02:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++d00b2b24-a4ba-4bb3-9101-3dd77df5c597^userContextId=4294967295
[2020.12.11 17:20:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++d00b2b24-a4ba-4bb3-9101-3dd77df5c597^userContextId=4294967295\idb
[2020.05.29 20:02:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++d1bc35a3-51fb-4c31-81a2-9ffb7a7f7d16^userContextId=4294967295
[2020.12.11 17:26:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++d1bc35a3-51fb-4c31-81a2-9ffb7a7f7d16^userContextId=4294967295\idb
[2020.05.29 20:02:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++efaf5c90-0ee1-402a-bc1d-a7eb27ee4961^userContextId=4294967295
[2020.12.11 17:26:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\Firefox\Profiles\ue9r639e.default-release\storage\default\moz-extension+++efaf5c90-0ee1-402a-bc1d-a7eb27ee4961^userContextId=4294967295\idb
[2020.05.29 20:02:36 | 007,483,728 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\@porn-blocker.xpi
[2020.10.01 19:33:39 | 000,181,325 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\@testpilot-containers.xpi
[2020.11.17 17:50:55 | 001,745,655 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\https-everywhere@eff.org.xpi
[2020.05.29 20:02:37 | 000,217,770 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\jid0-3GUEt1r69sQNSrca5p8kx9Ezc3U@jetpack.xpi
[2020.11.05 19:13:36 | 006,857,292 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\jid1-BoFifL9Vbdl2zQ@jetpack.xpi
[2020.10.09 13:54:02 | 001,240,482 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi
[2020.11.08 11:36:43 | 000,674,795 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\keepassxc-browser@keepassxc.org.xpi
[2020.11.14 17:03:06 | 000,090,013 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\mozilla_cc3@internetdownloadmanager.com.xpi
[2020.11.20 09:33:55 | 002,801,972 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\uBlock0@raymondhill.net.xpi
[2020.06.20 11:53:38 | 000,156,498 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\{6547f9b8-7695-4fc9-b57b-fb7aa9fec4c3}.xpi
[2020.12.04 16:09:50 | 000,105,692 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\{9efc0280-b125-400e-b53d-2d09d7effab4}.xpi
[2020.05.29 20:02:38 | 000,101,809 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\{b4eda7b1-2bbe-4961-b336-aaad77d87a47}.xpi
[2020.05.29 20:02:34 | 000,183,197 | ---- | M] () (No name found) -- C:\Users\Y\AppData\Roaming\mozilla\firefox\profiles\ue9r639e.default-release\extensions\{ef8616e0-e2f1-471b-9c47-5d09149b6d2b}.xpi
========== Chrome ==========
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche\4.0.8.8_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm\1.31.2_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk\5.1.0_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp\2020.11.17_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjljknijpnfibppaijefibndmiabonep\2019.117.1623.1_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfnbbbkabnehoejfhcbbhdicagcoobji\1.6.0_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldpochfccmkkmhdbclfhpagapcfdljkj\2.0.15_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek\6.38.11_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.5_1\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\npeicpdbkakmehahjeeohfdhnlpdklia\0.2.1.3_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\obnfifcganohemahpomajbhocfkdgmjb\4.2.1_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\onjjgbgnpbedmhbdoikhknhflbfkecjm\6.2.8_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8720.1005.0.2_0\
CHR - Extension: No name found = C:\Users\Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp\2020.12.10_0\
O1 HOSTS File: ([2020.06.06 12:01:26 | 000,000,862 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.navicat.com
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - H:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - G:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll (IObit)
O2:64bit: - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\BHO\ie_to_edge_bho_64.dll (Microsoft Corporation)
O2:64bit: - BHO: (Skype for Business Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\Office16\OCHelper.dll (Microsoft Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.8.0_261\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre1.8.0_261\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - H:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\BHO\ie_to_edge_bho.dll (Microsoft Corporation)
O2 - BHO: (Skype for Business Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AVGUI.exe] C:\Program Files\AVG\Antivirus\AvLaunch.exe (AVG Technologies CZ, s.r.o.)
O4:64bit: - HKLM..\Run: [Gigabyte Speed] C:\Programme\cFosSpeed\cfosspeed.exe (cFos Software GmbH)
O4:64bit: - HKLM..\Run: [RtkAudUService] C:\WINDOWS\SysNative\RtkAudUService64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SecurityHealth] C:\Windows\SysNative\SecurityHealthSystray.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [TuneupUI.exe] C:\Program Files\AVG\TuneUp\TuneupUI.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [PDFPrint] G:\Program Files (x86)\PDF24\pdf24.exe (geek software GmbH)
O4 - HKLM..\Run: [RazerCortex] G:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe (Razer Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [vmware-tray.exe] G:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (VMware, Inc.)
O4 - HKCU..\Run: [35C0DD69A13B47FAAE527F030D7053F7FAB3A98B._service_run] C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\Run: [Advanced SystemCare] C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (IObit)
O4 - HKCU..\Run: [CCleaner Smart Cleaning] G:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)
O4 - HKCU..\Run: [com.squirrel.Teams.Teams] C:\Users\Y\AppData\Local\Microsoft\Teams\Update.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Discord] C:\Users\Y\AppData\Local\Discord\Update.exe --processStart Discord.exe File not found
O4 - HKCU..\Run: [EpicGamesLauncher] G:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Epic Games, Inc.)
O4 - HKCU..\Run: [GalaxyClient] File not found
O4 - HKCU..\Run: [GogGalaxy] H:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe (GOG.com)
O4 - HKCU..\Run: [IDMan] H:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [OneDrive] C:\Users\Y\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Plex Media Server] H:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc.)
O4 - HKCU..\Run: [Tautulli] C:\Program Files (x86)\Tautulli\Tautulli.exe ()
O4 - HKLM..\RunOnce: [DualBiosRescue] C:\Program Files (x86)\GIGABYTE\GigabyteFirmwareUpdateUtility\dbrro.exe ()
O4 - HKLM..\RunOnce: [PreRun] C:\Program Files (x86)\GIGABYTE\AppCenter\PreRun.exe ()
O4 - HKLM..\RunOnce: [SelLed] C:\Program Files (x86)\GIGABYTE\RGBFusion\RunLed.exe ()
O4 - Startup: C:\Users\Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AORUS ENGINE.lnk = G:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe ()
O4 - Startup: C:\Users\Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dateien (RP-AC68U-D764) (Z) [2020.05.29 23:15:30 | 000,000,000 | R--D | M]
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableFullTrustStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUwpStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportFullTrustStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportUwpStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221
O8:64bit: - Extra context menu item: Download aller Links mit IDM - H:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download mit IDM - H:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Download aller Links mit IDM - H:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download mit IDM - H:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\root\Office16\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\root\Office16\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\Office16\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\Office16\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000015 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000016 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000015 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000016 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: sharepoint.com ([jgumainz-files] https in Trusted sites)
O15 - HKCU\..Trusted Domains: sharepoint.com ([jgumainz-myfiles] https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{eb096168-f090-4110-b734-6b22861b7b13}: DhcpNameServer = 192.168.178.1
O18:64bit: - Protocol\Handler\mso-minsb.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Programme\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mso-minsb-roaming.16 {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Programme\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\osf.16 {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Programme\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\osf-roaming.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Programme\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-minsb.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-minsb-roaming.16 {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\osf.16 {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\osf-roaming.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807583E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807583E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30:64bit: - LSA: Authentication Packages - (SshdPinAuthLsa) - C:\WINDOWS\SysNative\SshdPinAuthLsa.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (SshdPinAuthLsa) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (icarus_rvrt.exe)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 1 Day ==========
[2020.12.11 17:18:56 | 000,340,104 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\SysNative\avgBoot.exe
[2020.12.11 13:19:47 | 000,000,000 | ---D | C] -- H:\Dokumente\iScreenKit
[2020.12.11 13:13:19 | 000,000,000 | ---D | C] -- C:\Users\Y\AppData\Roaming\INNOTREND COMMERCE HK LIMITED
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 1 Day ==========
[2020.12.11 17:25:35 | 001,731,070 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2020.12.11 17:25:35 | 000,746,436 | ---- | M] () -- C:\WINDOWS\SysNative\perfh007.dat
[2020.12.11 17:25:35 | 000,704,120 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2020.12.11 17:25:35 | 000,151,384 | ---- | M] () -- C:\WINDOWS\SysNative\perfc007.dat
[2020.12.11 17:25:35 | 000,134,488 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2020.12.11 17:20:40 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2020.12.11 17:18:38 | 2555,289,599 | -HS- | M] () -- C:\hiberfil.sys
[2020.12.11 17:18:38 | 016,777,216 | -HS- | M] () -- C:\swapfile.sys
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2020.12.09 18:22:10 | 001,382,616 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-999-0-0-0.exe
[2020.12.09 18:22:10 | 001,382,616 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
[2020.12.09 18:22:10 | 000,940,760 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-999-0-0-0.dll
[2020.12.09 18:22:10 | 000,940,760 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
[2020.12.09 18:22:07 | 000,548,248 | ---- | C] () -- C:\WINDOWS\SysWow64\nvofapi.dll
[2020.11.28 21:28:19 | 000,281,688 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2020.11.01 16:33:41 | 000,266,240 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Internal.UI.Shell.WindowTabManager.dll
[2020.10.27 21:46:40 | 000,004,682 | ---- | C] () -- C:\Users\Y\AppData\Roaming\VoiceMeeterDefault.xml
[2020.10.14 07:45:55 | 000,047,472 | ---- | C] () -- C:\WINDOWS\SysWow64\umpdc.dll
[2020.10.14 07:45:52 | 001,333,248 | ---- | C] () -- C:\WINDOWS\SysWow64\TextInputMethodFormatter.dll
[2020.10.14 07:45:52 | 000,455,168 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowManagementAPI.dll
[2020.10.14 07:45:51 | 000,611,952 | ---- | C] () -- C:\WINDOWS\SysWow64\TextShaping.dll
[2020.09.18 14:42:44 | 000,058,344 | ---- | C] () -- C:\WINDOWS\SysWow64\FvSDK_x86.dll
[2020.09.11 00:34:02 | 000,101,688 | ---- | C] () -- C:\WINDOWS\SysWow64\HvsiManagementApi.dll
[2020.09.06 12:41:46 | 000,076,888 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
[2020.07.12 18:33:49 | 000,007,597 | ---- | C] () -- C:\Users\Y\AppData\Local\Resmon.ResmonCfg
[2020.07.04 08:55:00 | 000,000,001 | ---- | C] () -- C:\WINDOWS\vgkbootstatus.dat
[2020.06.21 15:42:13 | 000,000,128 | ---- | C] () -- C:\Users\Y\AppData\Local\PUTTY.RND
[2020.05.31 15:30:42 | 001,752,172 | ---- | C] () -- C:\WINDOWS\SysWow64\PerfStringBackup.INI
[2020.05.31 12:03:09 | 000,197,041 | ---- | C] () -- C:\WINDOWS\hpwins19.dat
[2020.05.31 12:03:09 | 000,000,633 | ---- | C] () -- C:\WINDOWS\hpwmdl19.dat
[2020.05.30 13:17:30 | 000,000,448 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2020.05.29 19:22:09 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2020.05.29 19:02:37 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2020.05.29 18:59:14 | 000,365,056 | ---- | C] () -- C:\WINDOWS\SysWow64\d3dconfig.exe
[2019.12.07 10:15:00 | 000,003,103 | ---- | C] () -- C:\WINDOWS\SysWow64\mmc.exe.config
[2019.12.07 10:15:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2019.12.07 10:14:59 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2019.12.07 10:10:05 | 000,019,485 | ---- | C] () -- C:\WINDOWS\SysWow64\srms-apr.dat
[2019.12.07 10:10:05 | 000,011,292 | ---- | C] () -- C:\WINDOWS\SysWow64\srms-apr-v.dat
[2019.12.07 10:10:02 | 000,518,144 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2019.12.07 10:09:57 | 000,053,248 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2019.12.07 10:09:22 | 000,002,404 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2019.12.07 10:09:18 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2019.12.07 10:09:17 | 003,595,776 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll
[2019.12.07 10:09:17 | 000,235,520 | ---- | C] () -- C:\WINDOWS\SysWow64\HeatCore.dll
[2019.12.07 10:09:17 | 000,107,008 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll
[2019.12.07 10:09:17 | 000,060,416 | ---- | C] () -- C:\WINDOWS\SysWow64\xboxgipsynthetic.dll
[2019.12.07 10:09:17 | 000,054,784 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.WARP.JITService.exe
[2019.12.07 10:09:13 | 000,223,744 | ---- | C] () -- C:\WINDOWS\SysWow64\TpmTool.exe
[2019.12.07 10:09:11 | 000,330,752 | ---- | C] () -- C:\WINDOWS\SysWow64\ssdm.dll
[2019.12.07 10:09:11 | 000,240,640 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreMas.dll
[2019.12.07 10:09:11 | 000,049,664 | ---- | C] () -- C:\WINDOWS\SysWow64\windows.applicationmodel.conversationalagent.proxystub.dll
[2019.12.07 10:09:11 | 000,040,448 | ---- | C] () -- C:\WINDOWS\SysWow64\windows.applicationmodel.conversationalagent.internal.proxystub.dll
[2019.12.07 10:09:11 | 000,010,752 | ---- | C] () -- C:\WINDOWS\SysWow64\agentactivationruntimestarter.exe
[2019.12.07 10:09:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2019.12.07 10:08:58 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
========== ZeroAccess Check ==========
[2020.12.11 16:16:33 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-3136980708-3557880529-3186569697-1001\$RNXD4P1.X\AppData\Local\ConnectedDevicesPlatform\L.defaultuser100000
[2020.05.29 19:44:54 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2020.11.01 16:33:33 | 007,990,232 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2020.11.01 16:33:42 | 006,368,392 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2020.10.14 07:45:09 | 001,075,712 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2020.10.14 07:45:50 | 000,804,352 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2019.12.07 10:08:19 | 000,514,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== Alternate Data Streams ==========
@Alternate Data Stream - 16 bytes -> C:\Users\Y\AppData\Local\Temp:$DATA
< End of report > --- --- --- |