Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-05-2021
Ran by Yroqu (administrator) on DESKTOP-ML5MUKB (Dell Inc. Inspiron 5490 AIO) (16-05-2021 03:44:15)
Running from C:\Users\Yroqu\Downloads
Loaded Profiles: Yroqu
Platform: Windows 10 Home Version 2004 19041.985 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\Dell\DELLOSD\DellOSDService.exe
() [File not signed] C:\Program Files (x86)\Dell\DELLOSD\MediaButtons.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <3>
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\TuneUp\TuneupSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\TuneUp\TuneupUI.exe <3>
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> Dell INC.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Discord Inc. -> Discord Inc.) C:\Users\Yroqu\AppData\Local\Discord\app-1.0.9001\Discord.exe <6>
(Emsisoft Ltd -> Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2service.exe
(Emsisoft Ltd -> Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\eppwsc.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <34>
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3325.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3325.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_bfc6bc9032ffdf1f\LMS.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_efb119a73d6b56f6\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_efb119a73d6b56f6\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_577b4722c749a41f\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_607ab7d80643c793\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_607ab7d80643c793\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_42f9d9bfb72d84cf\RstMwService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\4.1.106.0\McCSPServiceHost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <3>
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\MSM\McSmtFwk.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_20_12\mcapexe.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MAT\McPvTray.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Yroqu\AppData\Local\Microsoft\OneDrive\21.073.0411.0002\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Yroqu\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2103.17603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(OOO Online Center -> Floomby) C:\Program Files (x86)\Floomby\floomby.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCD\SupportAssist\Dsapi.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(Rivet Networks LLC -> DELL) C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RAPS.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Rivet Networks LLC -> Rivet Networks, LLC.) C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe
(Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\IAS\IntelAudioService.exe
(SurfRight B.V. -> SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_b4384d7b6d69cda4\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_b4384d7b6d69cda4\WavesSysSvc64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1093872 2020-04-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_b4384d7b6d69cda4\WavesSvc64.exe [1594456 2019-12-13] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\AVG\TuneUp\TuneupUI.exe [2447104 2021-03-11] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [166144 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353408 2021-04-27] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM\...\Run: [Emsisoft Anti-Malware] => C:\Program Files\Emsisoft Anti-Malware\a2guard.exe [9249448 2021-05-09] (Emsisoft Ltd -> Emsisoft Ltd)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-09-16] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2286517863-2150365057-2533688822-1001\...\Run: [Steam] => C:\Users\Yroqu\Downloads\New folder\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation)
HKU\S-1-5-21-2286517863-2150365057-2533688822-1001\...\Run: [Discord] => C:\Users\Yroqu\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2286517863-2150365057-2533688822-1001\...\Run: [Floomby] => C:\Program Files (x86)\Floomby\floomby.exe [4126528 2020-10-27] (OOO Online Center -> Floomby)
HKU\S-1-5-21-2286517863-2150365057-2533688822-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33029600 2021-05-13] (Epic Games Inc. -> Epic Games, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC)
BootExecute: autocheck autochk * icarus_rvrt.exebootdelete
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0D108733-DBC6-4CBD-93CE-CBC6E989CCF5} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [740760 2021-03-31] (McAfee, LLC -> McAfee, LLC)
Task: {1D7DF654-4B66-490C-BCA0-3D2C0B870655} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {228BA314-2E92-4E3F-B67C-9EBE885E5D15} - System32\Tasks\AVG\AVG TuneUp BugReport => C:\Program Files\AVG\TuneUp\AvBugReport.exe [4665600 2021-03-11] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 74 --programpath "C:\Program Files\AVG\TuneUp\Setup\.." --configpath "C:\Program Files\AVG\TuneUp\Setup" --path "C:\ProgramData\AVG\TuneUp\log" --path "C:\ProgramData\AVG\Icarus\Logs" --guid 726494cb-c045-4ab5-a94a-46fee441fe75
Task: {46F5C027-ACDD-49A5-9887-C8695354CF21} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-21] (Google LLC -> Google LLC)
Task: {6E0D4722-42B8-42B9-A338-4D5779635CCA} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4747008 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {9A17D109-C0EF-4074-AE5D-9215A1107F70} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1821968 2021-04-30] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {9B1B8930-F184-4022-A15B-EAC547585B37} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [995848 2021-03-29] (McAfee, LLC -> McAfee, LLC)
Task: {A72BFA3C-4215-4308-A97F-D8306C21B24F} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.6.102\DADUpdater.exe [4114728 2021-04-26] (McAfee, LLC -> McAfee, LLC)
Task: {ADFC5DBB-DDB9-42AC-B195-241FADB5D3BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141152 2021-05-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {B27BA324-DCFE-4FDF-9E12-D784E6DB2C3E} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [95072 2020-08-14] (Rivet Networks LLC -> DELL)
Task: {BDF9F6F8-E6DF-4D94-A454-82045B4F55FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-21] (Google LLC -> Google LLC)
Task: {CF1DF855-CD45-43EB-B526-5AEC0B84E677} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {DF3B087B-F5A5-4D2F-8C4C-4F64C53D6CA6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141152 2021-05-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {E3635340-23A9-42C6-8FD0-0B4E17232113} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4630104 2021-02-03] (McAfee, LLC -> McAfee, LLC)
Task: {E8236AB2-4B80-43C3-BB64-7394C02C6ED4} - System32\Tasks\AVG\AVG TuneUp Update => C:\Program Files\Common Files\AVG\Icarus\avg-tu\icarus.exe [5546240 2021-03-08] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {F1ED7AAF-5E8C-4322-A1C0-B1EBDCDE7D5C} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1058336 2021-04-21] (Dell Inc -> Dell Inc.)
"C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" was unlocked. <==== ATTENTION
Task: {F2EBC21F-8A2E-4F85-B9E9-3D48D075DBC0} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [995848 2021-03-29] (McAfee, LLC -> McAfee, LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{289db161-028e-4fa2-9c8b-5f4dd598079d}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Yroqu\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-16]
Edge StartupUrls: Default -> "hxxps://www.searchgoose.com/?path=chrome/newtab&u=88b27879b69dcd52&subid=11118&channel=1"
Edge DefaultSearchURL: Default -> {bing:baseURL}search?q={searchTerms}&{bing:cvid}{google:assistedQueryStats}
Edge Profile: C:\Users\Yroqu\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-05-14]
Edge StartupUrls: Profile 1 -> "hxxps://www.searchgoose.com/?path=chrome/newtab&u=88b27879b69dcd52&subid=11118&channel=1"
Edge DefaultSearchURL: Profile 1 -> hxxps://www.search-fine.com/search?subid=11118&u=88b27879b69dcd52&channel=1&keyword={searchTerms}
Edge DefaultSearchKeyword: Profile 1 -> Google
Edge DefaultNewTabURL: Profile 1 -> hxxps://www.searchgoose.com/?path=chrome/newtab&u=88b27879b69dcd52&subid=11118&channel=1
Edge DefaultSuggestURL: Profile 1 -> hxxps://www.bing.com/osjson.aspx?query={searchTerms}&language={language}&PC=U316
FireFox:
========
FF HKLM\...\Thunderbird\Extensions: [
msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => not found
FF HKLM-x32\...\Thunderbird\Extensions: [
msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2021-04-20] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-12-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-12-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2021-03-31] (McAfee, LLC -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2021-03-31] (McAfee, LLC -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default [2021-05-16]
CHR DefaultSearchURL: Default -> hxxps://open.scdn.co/cdn/images/icons/Spotify_16.aa3775a0.png
CHR Extension: (Slides) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-11-21]
CHR Extension: (Docs) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-11-21]
CHR Extension: (Google Drive) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-21]
CHR Extension: (YouTube) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-11-21]
CHR Extension: (WasteNoTime) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\enebomhlllfaccbelnjhfgblnalofhch [2020-11-23]
CHR Extension: (Sheets) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-11-21]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2021-04-25]
CHR Extension: (Google Docs Offline) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-14]
CHR Extension: (Guardio: Antivirus & Malware Removal) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjfpmkejnolcfklaaddjnckanhhgegla [2021-05-08]
CHR Extension: (Parental Control: Porn Blocker) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmillccnmojidmkhhjngjlalnbhpobcl [2020-11-23]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2021-04-12]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Extension: (Spotify) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjibgclleladliembfgfagdaldikeohf [2021-05-03]
CHR Extension: (Gmail) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-21]
CHR Extension: (Chrome Media Router) - C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-03]
CHR Profile: C:\Users\Yroqu\AppData\Local\Google\Chrome\User Data\System Profile [2021-05-08]
CHR DefaultSearchKeyword: System Profile -> Google
CHR DefaultNewTabURL: System Profile -> hxxps://www.searchgoose.com/?path=chrome/newtab&u=88b27879b69dcd52&subid=11118&channel=1
CHR DefaultSuggestURL: System Profile -> hxxps://www.bing.com/osjson.aspx?query={searchTerms}&language={language}&PC=U316
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
"GameModernGo" => service was unlocked. <==== ATTENTION
R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [11007088 2021-05-09] (Emsisoft Ltd -> Emsisoft Ltd)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [607488 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [356608 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [7941688 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-05-03] (BattlEye Innovations e.K. -> )
R2 CleanupPSvc; C:\Program Files\AVG\TuneUp\TuneupSvc.exe [12421888 2021-03-11] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8798600 2021-04-28] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [422128 2021-03-09] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3975712 2021-03-09] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [623136 2021-03-09] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [48832 2020-11-19] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCD\SupportAssist\Dsapi.exe [1009264 2021-03-30] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [19128 2021-04-01] (Dell Inc -> Dell INC.)
R2 Dell WMI Service; C:\Program Files (x86)\Dell\DELLOSD\DellOSDService.exe [118784 2019-10-08] () [File not signed]
S2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38592 2021-01-19] (Dell Inc -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-05-03] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.)
R2 EppWsc; C:\Program Files\Emsisoft Anti-Malware\EppWsc.exe [1545368 2021-05-09] (Emsisoft Ltd -> Emsisoft Ltd)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [151496 2021-05-09] (SurfRight B.V. -> SurfRight B.V.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408 2021-05-08] (Malwarebytes Inc -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [971976 2021-05-13] (McAfee, LLC -> McAfee, LLC)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_20_12\McApExe.exe [780032 2021-03-31] (McAfee, LLC -> McAfee, LLC)
S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [584296 2020-02-06] (McAfee, LLC. -> McAfee, LLC.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\4.1.106.0\\McCSPServiceHost.exe [2787160 2021-03-29] (McAfee, LLC -> McAfee, LLC)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [645736 2020-12-10] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [645736 2020-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [645736 2020-12-10] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1631736 2021-03-29] (McAfee, LLC -> McAfee, LLC)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4241112 2021-03-29] (McAfee, LLC -> McAfee, LLC)
R2 RAPSService; C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe [64848 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S3 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64856 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 SmartByte Analytics Service; C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe [1630576 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2385256 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39968 2021-04-21] (Dell Inc -> Dell Inc.)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10301672 2021-04-27] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 GameModernGo; C:\Program Files (x86)\GameModernGo\GameModernGo.exe -system -token 3ee86e [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [35816 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [212344 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [365112 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [250408 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [99384 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\Windows\System32\drivers\avgElam.sys [16816 2021-04-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [41432 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [180576 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [523032 2021-05-14] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [107920 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [83008 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [850784 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [467840 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [215488 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [327104 2021-04-26] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [75712 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R3 DDDriver; C:\Windows\System32\drivers\dddriver64Dcsa.sys [42376 2020-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
R1 epp; C:\Program Files\Emsisoft Anti-Malware\epp.sys [155112 2021-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Emsisoft Ltd)
R0 eppdisk; C:\Windows\System32\drivers\eppdisk.sys [37776 2021-05-09] (Emsisoft Ltd -> Emsisoft Ltd)
S0 EppElam; C:\Windows\System32\drivers\EppElam.sys [16808 2021-05-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Emsisoft Ltd)
R1 eppwfp; C:\Program Files\Emsisoft Anti-Malware\eppwfp.sys [126968 2021-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Emsisoft Ltd)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [218960 2020-05-26] (McAfee, LLC -> McAfee, Inc.)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220752 2021-05-08] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-05-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-05-10] (Malwarebytes Inc -> Malwarebytes)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [89112 2021-01-18] (McAfee, LLC -> McAfee, LLC)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [544704 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [385984 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [85944 2020-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522176 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [1027520 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [608192 2020-12-17] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [107968 2020-12-17] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [116672 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [252352 2020-12-11] (McAfee, Inc. -> McAfee, LLC)
R3 SmbCoSvc; C:\Windows\system32\DRIVERS\SmbCo10X64.sys [164424 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [6438816 2021-04-27] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
U1 avgbdisk; no ImagePath
S4 DBUtilDrv2; \SystemRoot\System32\drivers\DBUtilDrv2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-16 03:44 - 2021-05-16 03:46 - 000032363 _____ C:\Users\Yroqu\Downloads\FRST.txt
2021-05-16 03:43 - 2021-05-16 03:45 - 000000000 ____D C:\FRST
2021-05-16 03:42 - 2021-05-16 03:42 - 002299392 _____ (Farbar) C:\Users\Yroqu\Downloads\FRST64.exe
2021-05-16 03:39 - 2021-05-16 03:39 - 000913228 _____ C:\Users\Yroqu\Downloads\BSL_v8.0.01.zip
2021-05-13 00:08 - 2021-05-13 00:08 - 001687040 _____ C:\Windows\system32\libcrypto.dll
2021-05-13 00:07 - 2021-05-13 00:07 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-05-13 00:07 - 2021-05-13 00:07 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-05-13 00:07 - 2021-05-13 00:07 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2021-05-13 00:06 - 2021-05-13 00:06 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2021-05-13 00:06 - 2021-05-13 00:06 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE
2021-05-13 00:06 - 2021-05-13 00:06 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-05-13 00:05 - 2021-05-13 00:05 - 001823816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-05-13 00:05 - 2021-05-13 00:05 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-05-13 00:05 - 2021-05-13 00:05 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2021-05-13 00:04 - 2021-05-13 00:04 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-05-13 00:04 - 2021-05-13 00:04 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2021-05-10 21:40 - 2021-05-10 21:40 - 000000000 ____D C:\Windows\pss
2021-05-10 10:22 - 2021-05-10 10:22 - 000000000 ____D C:\AdwCleaner
2021-05-10 10:21 - 2021-05-10 10:21 - 008534696 _____ (Malwarebytes) C:\Users\Yroqu\Downloads\adwcleaner_8.2.exe
2021-05-10 10:12 - 2021-05-09 21:02 - 000016808 _____ (Emsisoft Ltd) C:\Windows\system32\Drivers\EppElam.sys
2021-05-10 10:11 - 2021-05-10 10:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
2021-05-10 10:11 - 2021-05-09 21:02 - 000037776 _____ (Emsisoft Ltd) C:\Windows\system32\Drivers\eppdisk.sys
2021-05-10 10:10 - 2021-05-16 03:00 - 000000000 ____D C:\Program Files\Emsisoft Anti-Malware
2021-05-10 09:32 - 2021-05-10 10:11 - 000000000 ____D C:\ProgramData\Emsisoft
2021-05-10 09:28 - 2021-05-10 21:23 - 000000000 ____D C:\EEK
2021-05-10 09:21 - 2021-05-10 09:23 - 285627104 _____ C:\Users\Yroqu\Downloads\EmsisoftEmergencyKit.exe
2021-05-10 09:02 - 2021-05-10 09:02 - 000005422 _____ C:\Windows\system32\.crusader
2021-05-09 21:08 - 2021-05-09 21:08 - 000001968 _____ C:\Users\Public\Desktop\HitmanPro.lnk
2021-05-09 21:08 - 2021-05-09 21:08 - 000001968 _____ C:\ProgramData\Desktop\HitmanPro.lnk
2021-05-09 21:08 - 2021-05-09 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2021-05-09 21:08 - 2021-05-09 21:08 - 000000000 ____D C:\Program Files\HitmanPro
2021-05-09 21:07 - 2021-05-10 09:02 - 000000000 ____D C:\ProgramData\HitmanPro
2021-05-09 21:07 - 2021-05-09 21:07 - 011291072 _____ (SurfRight B.V.) C:\Users\Yroqu\Downloads\hitmanpro_x64.exe
2021-05-09 09:51 - 2021-05-13 21:23 - 000000000 ____D C:\Users\Yroqu\AppData\LocalLow\IGDump
2021-05-08 21:03 - 2021-05-08 21:03 - 000000000 ____D C:\Users\Yroqu\AppData\Local\mbam
2021-05-08 21:02 - 2021-05-10 10:15 - 000002023 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-05-08 21:02 - 2021-05-10 10:15 - 000002023 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2021-05-08 21:02 - 2021-05-10 09:07 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2021-05-08 21:02 - 2021-05-08 21:02 - 000220752 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2021-05-08 21:02 - 2021-05-08 21:02 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-05-08 21:02 - 2021-05-08 21:01 - 000199128 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2021-05-08 21:02 - 2021-05-08 21:01 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2021-05-08 21:01 - 2021-05-08 21:01 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-05-08 21:00 - 2021-05-08 21:00 - 002078632 _____ (Malwarebytes) C:\Users\Yroqu\Downloads\MBSetup.exe
2021-05-08 21:00 - 2021-05-08 21:00 - 000000000 ____D C:\Program Files\Malwarebytes
2021-05-08 16:52 - 2021-05-08 16:52 - 000000000 ___SH C:\Users\Public\Shared Files
2021-05-08 16:31 - 2021-05-08 16:31 - 000000000 ____D C:\Users\Yroqu\AppData\Local\DBG
2021-05-08 16:29 - 2021-05-08 16:29 - 000000000 ____D C:\Users\Yroqu\AppData\Local\FortniteGame
2021-05-08 16:29 - 2021-05-08 16:29 - 000000000 ____D C:\Users\Yroqu\AppData\Local\CrashReportClient
2021-05-08 16:29 - 2021-05-08 16:29 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2021-05-03 11:41 - 2021-05-03 11:41 - 000000000 ____D C:\Program Files\Epic Games
2021-05-03 11:27 - 2021-05-08 16:30 - 000000000 ____D C:\Users\Yroqu\AppData\Local\NVIDIA Corporation
2021-05-03 11:21 - 2021-05-03 11:21 - 000000000 ____D C:\Users\Yroqu\AppData\Local\UnrealEngineLauncher
2021-05-03 11:20 - 2021-05-03 11:20 - 000000000 ____D C:\Users\Yroqu\AppData\Local\EpicGamesLauncher
2021-05-03 11:19 - 2021-05-03 11:19 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2021-05-03 11:19 - 2021-05-03 11:19 - 000001258 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2021-05-03 11:19 - 2021-05-03 11:19 - 000001258 _____ C:\ProgramData\Desktop\Epic Games Launcher.lnk
2021-05-03 11:18 - 2021-05-08 16:31 - 000000000 ____D C:\ProgramData\Epic
2021-05-03 11:18 - 2021-05-03 11:22 - 000000000 ____D C:\Program Files (x86)\Epic Games
2021-05-03 11:14 - 2021-05-03 11:15 - 056791040 _____ C:\Users\Yroqu\Downloads\EpicInstaller-12.1.7-fortnite.msi
2021-05-03 07:52 - 2021-05-08 16:29 - 000000000 ____D C:\Users\Yroqu\AppData\Local\UnrealEngine
2021-05-03 07:52 - 2021-05-03 07:52 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2021-05-03 07:52 - 2021-05-03 07:52 - 000000000 ____D C:\Users\Yroqu\AppData\Local\VALORANT
2021-05-02 22:09 - 2021-05-15 12:00 - 000000001 _____ C:\Windows\vgkbootstatus.dat
2021-05-02 21:51 - 2021-05-02 21:51 - 000000000 ____D C:\Program Files\Riot Vanguard
2021-05-02 21:47 - 2021-05-02 22:02 - 000001627 _____ C:\Users\Public\Desktop\VALORANT.lnk
2021-05-02 21:47 - 2021-05-02 22:02 - 000001627 _____ C:\ProgramData\Desktop\VALORANT.lnk
2021-05-02 21:47 - 2021-05-02 21:52 - 000000000 ____D C:\Riot Games
2021-05-02 21:47 - 2021-05-02 21:47 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games
2021-05-02 21:47 - 2021-05-02 21:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
2021-05-02 21:39 - 2021-05-03 07:58 - 000000000 ____D C:\ProgramData\Riot Games
2021-05-02 21:39 - 2021-05-03 07:51 - 000000000 ____D C:\Users\Yroqu\AppData\Local\Riot Games
2021-05-02 21:37 - 2021-05-02 21:37 - 069069824 _____ (Riot Games, Inc.) C:\Users\Yroqu\Downloads\Install VALORANT.exe
2021-04-26 02:34 - 2021-04-26 02:33 - 000340224 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2021-04-26 02:34 - 2021-04-26 02:33 - 000215488 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2021-04-24 17:01 - 2021-04-24 17:02 - 005924305 _____ C:\Users\Yroqu\Downloads\OptiFine_1.16.5_HD_U_G7.jar
2021-04-21 22:20 - 2021-04-21 22:20 - 000000000 ____D C:\Windows\system32\ICH
2021-04-20 12:04 - 2021-04-20 12:12 - 002450364 _____ C:\Windows\Minidump\042021-55906-01.dmp
2021-04-20 12:04 - 2021-04-20 12:04 - 1866895263 _____ C:\Windows\MEMORY.DMP
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-16 03:47 - 2019-12-07 05:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-16 03:45 - 2021-01-08 21:35 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\discord
2021-05-16 03:39 - 2021-01-01 23:41 - 000003310 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{0A010BB3-7C15-4B98-BCBB-F2AA4421B44E}
2021-05-16 03:39 - 2020-12-10 03:08 - 000002258 _____ C:\Windows\system32\Tasks\SmartByte Telemetry
2021-05-16 03:39 - 2020-12-02 11:32 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2021-05-16 03:39 - 2020-11-23 00:37 - 000003250 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2021-05-16 03:39 - 2020-11-21 19:35 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2286517863-2150365057-2533688822-1001
2021-05-16 03:39 - 2020-11-21 19:34 - 000003346 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-05-16 03:39 - 2020-11-21 19:34 - 000003122 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-05-16 03:39 - 2020-11-10 06:09 - 000003276 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2021-05-16 03:39 - 2020-11-10 06:08 - 000002660 _____ C:\Windows\system32\Tasks\McAfeeLogon
2021-05-16 03:39 - 2020-11-10 06:06 - 000002650 _____ C:\Windows\system32\Tasks\McAfee Remediation (Prepare)
2021-05-16 03:39 - 2020-10-12 10:28 - 000003408 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-16 03:39 - 2020-10-12 10:28 - 000003184 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-16 03:24 - 2021-01-08 21:35 - 000000000 ____D C:\Users\Yroqu\AppData\Local\Discord
2021-05-16 02:03 - 2020-12-20 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2021-05-16 01:51 - 2020-10-12 10:25 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-05-16 00:59 - 2020-11-21 22:33 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\.minecraft
2021-05-15 23:48 - 2020-11-23 17:09 - 000000000 ____D C:\Users\Yroqu\AppData\Local\CrashDumps
2021-05-15 15:26 - 2020-11-10 06:07 - 000000000 ____D C:\Windows\system32\Tasks\McAfee
2021-05-15 12:24 - 2020-11-21 19:39 - 000000000 ____D C:\Users\Yroqu\Downloads\New folder
2021-05-15 12:23 - 2020-11-10 06:02 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2021-05-15 12:10 - 2019-12-07 05:13 - 000000000 ____D C:\Windows\INF
2021-05-15 12:05 - 2020-12-02 13:46 - 000749988 _____ C:\Windows\system32\perfh00A.dat
2021-05-15 12:05 - 2020-12-02 13:46 - 000147258 _____ C:\Windows\system32\perfc00A.dat
2021-05-15 12:05 - 2020-11-21 19:35 - 000000000 ___RD C:\Users\Yroqu\OneDrive
2021-05-15 12:05 - 2020-10-12 10:33 - 001683676 _____ C:\Windows\system32\PerfStringBackup.INI
2021-05-15 12:03 - 2020-12-20 17:01 - 000000000 __RSD C:\Users\Yroqu\OneDrive\Documents\McAfee Vaults
2021-05-15 12:02 - 2020-11-21 19:25 - 000000000 __SHD C:\Users\Yroqu\IntelGraphicsProfiles
2021-05-15 12:00 - 2020-11-23 00:04 - 000000000 ____D C:\ProgramData\AVG
2021-05-15 11:58 - 2020-11-10 05:48 - 000000000 ____D C:\Intel
2021-05-15 11:58 - 2020-10-12 10:25 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-15 11:58 - 2020-10-12 10:25 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-05-15 11:58 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\ServiceState
2021-05-15 11:57 - 2019-12-07 05:03 - 000524288 _____ C:\Windows\system32\config\BBI
2021-05-15 10:45 - 2020-10-12 10:28 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-15 10:45 - 2019-12-07 05:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-15 10:45 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\AppReadiness
2021-05-14 23:02 - 2020-10-12 10:29 - 000000000 ____D C:\Program Files\Microsoft Office
2021-05-14 19:52 - 2019-12-07 05:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2021-05-14 19:50 - 2019-12-07 05:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-05-14 19:15 - 2020-11-23 00:37 - 000523032 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2021-05-14 19:10 - 2020-10-12 10:25 - 000454288 _____ C:\Windows\system32\FNTCACHE.DAT
2021-05-14 19:08 - 2020-11-21 19:08 - 000000000 ____D C:\Users\Yroqu
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-05-14 19:05 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SystemResources
2021-05-14 19:04 - 2020-12-02 13:44 - 000000000 ____D C:\Windows\system32\Drivers\es-MX
2021-05-14 19:04 - 2020-12-02 13:44 - 000000000 ____D C:\Windows\es-MX
2021-05-14 19:04 - 2019-12-07 05:50 - 000000000 ____D C:\Windows\system32\OpenSSH
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ___RD C:\Windows\PrintDialog
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\setup
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\oobe
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\lt-LT
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\es-MX
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\Dism
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\Provisioning
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\DiagTrack
2021-05-14 19:04 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\bcastdvr
2021-05-13 00:25 - 2019-12-07 05:03 - 000000000 ____D C:\Windows\CbsTemp
2021-05-13 00:18 - 2019-12-07 05:52 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2021-05-12 23:27 - 2020-11-28 07:48 - 000000000 ____D C:\Windows\system32\MRT
2021-05-12 23:15 - 2020-11-28 07:47 - 132732536 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-05-12 17:05 - 2020-11-21 19:35 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-12 17:05 - 2020-11-21 19:35 - 000002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-05-12 17:05 - 2020-11-21 19:35 - 000002208 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-05-12 11:02 - 2021-01-08 21:33 - 000000000 ____D C:\Users\Yroqu\AppData\Local\D3DSCache
2021-05-11 20:22 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\LiveKernelReports
2021-05-10 10:12 - 2019-12-07 05:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-05-10 09:05 - 2021-03-21 19:05 - 000000000 ____D C:\Users\defaultuser100000.DESKTOP-ML5MUKB
2021-05-10 09:05 - 2021-03-21 19:02 - 000000000 ____D C:\Users\defaultuser100001
2021-05-10 09:05 - 2021-03-21 18:56 - 000000000 ____D C:\Users\defaultuser100000
2021-05-09 08:33 - 2020-11-10 05:59 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-09 07:32 - 2020-12-31 12:47 - 000000000 ____D C:\Program Files (x86)\HolcusTopicalmgiSoft
2021-05-09 07:25 - 2020-12-31 12:50 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\Digital Protection Services S.R.L
2021-05-09 07:24 - 2021-01-15 09:11 - 000000000 ____D C:\ProgramData\Digital Protection Services S.R.L
2021-05-08 17:40 - 2020-11-21 21:49 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher
2021-05-08 16:52 - 2019-12-07 05:14 - 000000000 __SHD C:\Users\Public\Libraries
2021-05-08 12:15 - 2020-11-21 19:08 - 000002369 _____ C:\Users\Yroqu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-05-07 23:49 - 2020-11-10 05:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2021-05-07 23:44 - 2020-11-10 05:58 - 000000000 ____D C:\ProgramData\PCDr
2021-05-07 23:43 - 2020-11-10 05:57 - 000000000 ____D C:\Program Files\Dell
2021-05-07 23:08 - 2020-11-10 06:06 - 000000000 ____D C:\Program Files (x86)\McAfee
2021-05-06 20:04 - 2020-11-21 21:28 - 000000000 ____D C:\Users\Yroqu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2021-04-26 02:33 - 2020-11-23 00:37 - 000850784 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000467840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000365112 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000327104 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000250408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000212344 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000180576 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000107920 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000099384 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000083008 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000041432 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000035816 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArDisk.sys
2021-04-26 02:33 - 2020-11-23 00:37 - 000016816 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgElam.sys
2021-04-23 22:37 - 2020-11-21 21:28 - 000000000 ____D C:\Users\Yroqu\AppData\Local\Roblox
2021-04-22 16:07 - 2020-11-10 06:08 - 000000000 ____D C:\ProgramData\Dell
2021-04-21 13:03 - 2021-01-24 01:25 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-04-20 12:12 - 2021-03-25 06:09 - 000000000 ____D C:\Windows\Minidump
2021-04-20 12:12 - 2020-11-10 06:06 - 000000000 ____D C:\Program Files\Common Files\McAfee
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================