Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93103 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Extremely slow bootup

slow bootup

  • Please log in to reply
No replies to this topic

#1 poporacer

poporacer

    Authentic Member

  • Authentic Member
  • PipPip
  • 107 posts

Posted 12 January 2025 - 04:03 PM

My computer haas been booting up extremely slow for a while and thought it was the HDD and decided to get an SSD but then someone told me I should check here for malware, so the SSD is installed and cloned, but I didn't change the boot order yet. I know I will likely have to clone the drive again once I geet my issues resolve. 

Thanks

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-01-2025
Ran by bryce (administrator) on BRYCE (Dell Inc. Inspiron 5676) (12-01-2025 13:15:34)
Running from C:\Users\bryce\Downloads\FRST64.exe
Loaded Profiles: bryce
Platform: Microsoft Windows 11 Home Version 24H2 26100.2605 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.18324.20168\OfficeClickToRun.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.34401.20.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.112\msedgewebview2.exe <6>
(cmd.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(DriverStore\FileRepository\u0410212.inf_amd64_daae2c8b5eb35aaa\B409877\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0410212.inf_amd64_daae2c8b5eb35aaa\B409877\atieclxx.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <48>
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77de.inf_amd64_9220aa0f9500a019\WavesSvc64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPDU.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0410212.inf_amd64_daae2c8b5eb35aaa\B409877\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(services.exe ->) (Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_05bfde18331c4d58\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (Qualcomm Atheros, Inc. -> ) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(services.exe ->) (THX LTD. -> THX Ltd.) C:\Windows\System32\VSSrv.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77de.inf_amd64_9220aa0f9500a019\WavesSysSvc64.exe
(svchost.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(VSSrv.exe ->) (THX LTD. -> VisiSonics) C:\Windows\System32\VSHelper.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1084704 2020-05-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo77de.inf_amd64_9220aa0f9500a019\WavesSvc64.exe [1570400 2019-08-29] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [DellMobileConnectWelcome] => C:\Program Files\Dell\DellMobileConnectDrivers\DellMobileConnectWelcome.exe [345848 2019-02-14] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4131544 2024-11-21] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM\...\Run: [Elgato Sound Capture] => C:\Program Files\Elgato\SoundCapture\SoundCapture.exe [1234944 2022-02-07] () [File not signed]
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [637784 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5062800 2023-05-10] (Acronis International GmbH -> )
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4412512 2024-12-02] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [Discord] => C:\Users\bryce\AppData\Local\Discord\Update.exe [1526504 2024-05-06] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [74279960 2024-12-16] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [981640 2024-05-17] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36981208 2024-12-08] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [CrosshairX] => C:\Program Files (x86)\Steam\steamapps\common\CrosshairX\CrosshairX.exe [181002784 2024-12-25] (2824908 Ontario Inc. -> GitHub, Inc.)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [22373784 2024-12-11] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Run: [AMDNoiseSuppression] => C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.265\Installer\chrmstp.exe [2025-01-09] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> 
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FxSound.lnk [2025-01-01]
ShortcutTarget: FxSound.lnk -> C:\Program Files\FxSound LLC\FxSound\FxSound.exe (FxSound, LLC -> FxSound LLC)
 
==================== Scheduled Tasks (Whitelisted) =================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {C4704C48-FE08-473B-8DD3-56646266DCD2} - System32\Tasks\AMD Updater => "C:\Program Files\AMD\CIM\\Bin64\RadeonInstaller.exe"  /AUTOUPDATEIN (No File)
Task: {346956A9-E68F-47C2-8C8F-0A17FB371F19} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1035472 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {44BC21B4-5EF4-41AB-BB36-71A34B26D843} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [191184 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {09735ADB-2442-4562-A038-FEA4061534FA} - System32\Tasks\FxSound\Update => C:\Program Files\FxSound LLC\FxSound\updater.exe [1268120 2024-08-22] (FxSound, LLC -> FxSound LLC)
Task: {119DFAA2-6C68-4D86-A534-1EE3713DDF89} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{B9DC6FBE-56A6-405A-BB37-FB1965F7509E} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {2D6B8399-EDA6-419F-B1F5-4391D5E31FB3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {F7A1458C-8893-4FF5-9DB4-CE2EB59496C2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0A9B725-0527-43FF-AB62-4ABD0689FBD1} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {7BC652E6-A8FA-45EA-8198-CB02228D7191} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {453B3654-A601-4279-84EC-C075EDC1E465} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [186992 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {2CEBC1E3-7DF3-4AC2-8869-99D414A988B4} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
Task: {45CF73C8-9A94-47C5-8E45-347738A58FC5} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
Task: {337A36FF-FC6F-459B-99C8-EF1BD7A86C14} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8A50D58C-A20C-4145-9DD5-D76A564DE439} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3C9F5C58-9A3F-4DEA-BBB9-E9C9BF16499D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5352BC5-039B-4848-BEB1-53728AE51D54} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2425993C-A4F6-446B-9C19-07A727C772AD} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1035472 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {9AFCF6D5-D200-416F-AE00-115A4A74A65A} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [139472 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {A282E4F1-5B94-46F6-B1F4-457A44E62A49} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [139472 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {8DA11B0A-8B56-4D99-A192-673F76ECC0A8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [309968 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.3.25
Tcpip\..\Interfaces\{3a856969-0655-4a8a-937e-9fe27ef6377a}: [DhcpNameServer] 192.168.0.1 205.171.3.25
Tcpip\..\Interfaces\{3a856969-0655-4a8a-937e-9fe27ef6377a}: [DhcpDomain] Home
Tcpip\..\Interfaces\{4bc86286-cbcf-4730-82cd-ab92d3ec10ea}: [DhcpNameServer] 192.168.0.1 205.171.3.25
Tcpip\..\Interfaces\{4bc86286-cbcf-4730-82cd-ab92d3ec10ea}: [DhcpDomain] Home
Tcpip\..\Interfaces\{adfe66c1-89c9-4a2d-aac7-d8626b0fdeeb}: [DhcpNameServer] 192.168.12.1
 
Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default [2025-01-04]
Edge HomePage: Default -> hxxps://us.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87fptxqjxp1acegikmwv4002820&param1=y6bdVFVIsvuYsgEClQfz8OwmhzNKyrgL6nqJxNEJ6irMs4BrcPo5CkKkmgifaFb4afOSMT2%2FGhI0rQ%2BnYU%2BdoggXElcSZHa2h%2Fx0XhNF35fOvIE13u39unigw64nCHbtuimiyQCWW19mF%2BrjPFj3bCERVwpF1DJuu%2FfxCwv4SBTUNtb39h89jkYlSvLd7oKOkOY5Vwfhv1mDJYWApiFxRijqcsMWlsCoqhKSIvEwv%2Blgkmnzlu3mCdM5v9viL3QTcCM1tf%2BXp0PgF9lVpHOa6Rq3tmb1HMwwGmLgTQ2vh%2BTRHy08bhm2rnerxw9AYbcGRJwz8sI36twFa8Up1rRJFYy8tucSJwl8bhMIsu6MQxMCAsk2qYvQsoWnItTox1d%2B1AGOhde%2BnIPYeL%2FIC2fmZA%3D%3D
Edge StartupUrls: Default -> "hxxps://us.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87fptxqjxp1acegikmwv4002820&param1=y6bdVFVIsvuYsgEClQfz8OwmhzNKyrgL6nqJxNEJ6irMs4BrcPo5CkKkmgifaFb4afOSMT2%2FGhI0rQ%2BnYU%2BdogH%2BmXJX3fgcE9ypgSV4cJO%2BEHWHwdI691hVedg1yjk1WXp4rcZ7cgfJDw8Kpk%2B0oRnbhhTfZV7D4DICCh2q6WaEkIOx13uyJC%2FqBhZMM5wFvT5R%2Fwdb9%2FOA8TMHlDq5TtWW58W82hNuhO3TwndsSvAwvWsgnQdFj7gLmygDm15gCfc0TZPL4q2TQ2wuEHnehUO5gammD%2FDGSLwwdUpaHytOw1KsbWjnMoA%2B51gwBKOr%2FyyPMAV39QDz%2BFA012U5s%2BuEbHI0%2BjKAPMWGaM1KXw8SJfATg8YjTYRWcD6kBRMWIJ5cXXL4cO%2BwWfh%2BCILkHg%3D%3D"
Edge DefaultSearchURL: Default -> hxxps://q.eadblock.com/?vnd=1&q={searchTerms}
Edge DefaultSearchKeyword: Default -> q.eadblock.com
Edge Session Restore: Default -> is enabled.
Edge Extension: (Google Docs Offline) - C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-01-04]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-01-04]
Edge Extension: (EAB) - C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hojhhmecfdlobchoejlbonoabacfnaap [2024-05-11]
Edge Extension: (Chrome Remote Desktop) - C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2024-05-11]
Edge Extension: (Edge relevant text changes) - C:\Users\bryce\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-05-11]
 
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default [2025-01-12]
CHR HomePage: Default -> hxxps://us.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87fptxqjxp1acegikmwv4002820&param1=y6bdVFVIsvuYsgEClQfz8OwmhzNKyrgL6nqJxNEJ6irMs4BrcPo5CkKkmgifaFb4afOSMT2%2FGhI0rQ%2BnYU%2BdoggXElcSZHa2h%2Fx0XhNF35fOvIE13u39unigw64nCHbtuimiyQCWW19mF%2BrjPFj3bCERVwpF1DJuu%2FfxCwv4SBTUNtb39h89jkYlSvLd7oKOkOY5Vwfhv1mDJYWApiFxRijqcsMWlsCoqhKSIvEwv%2Blgkmnzlu3mCdM5v9viL3QTcCM1tf%2BXp0PgF9lVpHOa6Rq3tmb1HMwwGmLgTQ2vh%2BTRHy08bhm2rnerxw9AYbcGRJwz8sI36twFa8Up1rRJFYy8tucSJwl8bhMIsu6MQxMCAsk2qYvQsoWnItTox1d%2B1AGOhde%2BnIPYeL%2FIC2fmZA%3D%3D
CHR StartupUrls: Default -> "hxxps://us.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87fptxqjxp1acegikmwv4002820&param1=y6bdVFVIsvuYsgEClQfz8OwmhzNKyrgL6nqJxNEJ6irMs4BrcPo5CkKkmgifaFb4afOSMT2%2FGhI0rQ%2BnYU%2BdogH%2BmXJX3fgcE9ypgSV4cJO%2BEHWHwdI691hVedg1yjk1WXp4rcZ7cgfJDw8Kpk%2B0oRnbhhTfZV7D4DICCh2q6WaEkIOx13uyJC%2FqBhZMM5wFvT5R%2Fwdb9%2FOA8TMHlDq5TtWW58W82hNuhO3TwndsSvAwvWsgnQdFj7gLmygDm15gCfc0TZPL4q2TQ2wuEHnehUO5gammD%2FDGSLwwdUpaHytOw1KsbWjnMoA%2B51gwBKOr%2FyyPMAV39QDz%2BFA012U5s%2BuEbHI0%2BjKAPMWGaM1KXw8SJfATg8YjTYRWcD6kBRMWIJ5cXXL4cO%2BwWfh%2BCILkHg%3D%3D"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Google Docs Offline) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-19]
CHR Extension: (EAB) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojhhmecfdlobchoejlbonoabacfnaap [2024-05-11]
CHR Extension: (Chrome Remote Desktop) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2024-05-11]
CHR Extension: (Remoku) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmbcoebcjaiiejopnadjlknjhifadnlg [2024-06-07]
CHR Extension: (Chrome Web Store Payments) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-05-11]
CHR Profile: C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-05-28]
CHR Extension: (Google Translate) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-05-28]
CHR Extension: (Lightspeed Filter Agent) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\adkcpkpghahmbopkjchobieckeoaoeem [2024-05-28] [UpdateUrl:hxxps://lsrelay-extensions-production.s3.amazonaws.com/chrome-filter/c44d31fe6be27cd96038080fa9bfe1ea32a3c817764602a31623861fb9a301b0/ChromeFilter.xml] <==== ATTENTION
CHR Extension: (Kami for Google Chrome™) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ecnphlgnajanjnkcmbpancdjoidceilk [2024-05-28]
CHR Extension: (Relay Classroom Helper Extension) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\filgpjkdmjinmjbepbpmnfobmjmgimon [2024-05-28]
CHR Extension: (Learning Ally Audiobooks) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gdicnpbaekbefjanokchpfhnaphfnphl [2024-05-28]
CHR Extension: (Google Docs Offline) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-28]
CHR Extension: (Lightspeed Alert Agent) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hpkdokakjglppeekfeekmebfahadnflp [2024-05-28] [UpdateUrl:hxxps://lsrelay-extensions-production.s3.amazonaws.com/alert/c44d31fe6be27cd96038080fa9bfe1ea32a3c817764602a31623861fb9a301b0/chrome/AlertAgentChrome.xml] <==== ATTENTION
CHR Extension: (Classroom) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kkbmdgjggcdajckdlbngdjonpchpaiea [2024-05-28] [UpdateUrl:hxxps://lsrelay-extensions-production.s3.amazonaws.com/classroom/c44d31fe6be27cd96038080fa9bfe1ea32a3c817764602a31623861fb9a301b0/Classroom.xml] <==== ATTENTION
CHR Extension: (Chrome Web Store Payments) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-05-28]
CHR Extension: (Lightspeed Location Agent) - C:\Users\bryce\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opckliiodihlmpliejjddbpdjdhdkefm [2024-05-28] [UpdateUrl:hxxps://lsrelay-extensions-production.s3.amazonaws.com/location/c44d31fe6be27cd96038080fa9bfe1ea32a3c817764602a31623861fb9a301b0/LSLocationAgent.xml] <==== ATTENTION
CHR Profile: C:\Users\bryce\AppData\Local\Google\Chrome\User Data\System Profile [2025-01-12]
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1704216 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
R2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPDU.exe [542416 0] (Advanced Micro Devices -> AMD)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2569352 2024-09-02] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20285608 2025-01-07] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13512888 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3363824 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2019-02-28] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [38048 2019-03-21] (Dell Inc -> )
S2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe [1038144 2019-07-09] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [300744 2019-04-26] (Dell Inc -> Dell Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [51936 2024-07-19] (Dell Technologies Inc. -> )
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [985184 2024-10-09] (DENUVO GmbH -> Denuvo GmbH)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137904 2024-08-08] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [965872 2024-10-20] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [381416 2024-08-08] (Epic Games Inc. -> Epic Games, Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11744152 2024-12-11] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray_service.exe [11177064 2024-10-27] (Logitech Inc -> Logitech, Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4882992 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [197336 2021-06-15] (Qualcomm Atheros, Inc. -> )
R2 Razer Game Manager Service 3; C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe [362248 2024-06-27] (Razer USA Ltd. -> Razer Inc)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39384 2019-03-20] (Dell Inc. -> Dell Inc.)
S3 TavernWorker_1_1; C:\Program Files\IRONMACE\Tavern\Steam\TavernApp_1_1\TavernWorker.exe [20945328 2024-06-10] (IRONMACE Co., Ltd. -> IRONMACE Co., Ltd.)
S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2023-05-10] (Acronis International GmbH -> Acronis International GmbH)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [13658344 2024-11-21] (Riot Games, Inc. -> Riot Games, Inc.)
R2 VSSrv; C:\WINDOWS\System32\VSSrv.exe [3399488 2024-07-02] (THX LTD. -> THX Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12470112 2024-08-24] (KRAFTON, Inc. -> KRAFTON, Inc)
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_05bfde18331c4d58\amdfendrmgr.sys [36016 2024-07-30] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R2 AMDRyzenMasterDriverV27; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [61264 2024-11-28] (Advanced Micro Devices -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
R3 amduw23g; C:\WINDOWS\System32\DriverStore\FileRepository\u0410212.inf_amd64_daae2c8b5eb35aaa\B409877\amdkmdag.sys [110965144 2024-12-04] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 atvi-randgrid_msstore; C:\XboxGames\Call of Duty\Content\Randgrid.sys [3078448 2024-11-10] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2023-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
S3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2023-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CyUcmClient_Device; C:\WINDOWS\System32\drivers\CyUcmClient.sys [130424 2018-01-05] (Cypress Semiconductor Corporation -> Cypress Semiconductor Corporation)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [1221312 2024-10-09] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 ElgatoVAD; C:\WINDOWS\System32\drivers\ElgatoVAD.sys [39208 2022-02-07] (Elgato Systems LLC -> Elgato Systems GmbH)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2025-01-12] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [183944 2025-01-12] (Acronis International GmbH -> Acronis International GmbH)
R3 FXVAD; C:\WINDOWS\system32\drivers\fxvad.sys [326656 2024-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
S3 GuiHidUsbDevLowerFFB; C:\WINDOWS\System32\drivers\GuiHidUsbDevLowerFFB.sys [196776 2023-09-15] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
S3 hanvonugeemfilter; C:\WINDOWS\System32\drivers\hanvonugeemfilter.sys [9728 2022-04-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
S3 HidGuardian; C:\WINDOWS\System32\drivers\HidGuardian.sys [26736 2017-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-09-17] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-25] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-09-17] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray.sys [89192 2024-10-27] (Logitech Inc -> Logitech, Inc.)
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [65808 2024-01-11] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_005c; C:\WINDOWS\System32\drivers\RzDev_005c.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0257; C:\WINDOWS\System32\drivers\RzDev_0257.sys [64680 2022-08-18] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0282; C:\WINDOWS\System32\drivers\RzDev_0282.sys [61288 2021-09-08] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0306; C:\WINDOWS\System32\drivers\RzDev_0306.sys [54168 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0520; C:\WINDOWS\System32\drivers\RzDev_0520.sys [54088 2021-03-22] (Razer USA Ltd. -> Razer Inc)
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65144 2021-10-08] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175648 2025-01-12] (Acronis International GmbH -> Acronis International GmbH)
S3 tmhidusb; C:\WINDOWS\System32\drivers\tmhidusb.sys [568384 2023-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmResetMin; C:\WINDOWS\System32\Drivers\tmResetMin.sys [51368 2023-09-15] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2022. All rights reserved.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [31525392 2024-11-20] (Riot Games, Inc. -> Riot Games, Inc.)
S3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2019-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2025-01-12] (Acronis International GmbH -> Acronis International GmbH)
S3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [10752 2018-12-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2025-01-12] (Acronis International GmbH -> Acronis International GmbH)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-10-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-10-30] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-30] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-12-08] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\WSDScan.sys [61440 2024-12-08] (Microsoft Windows -> Microsoft Corporation)
S3 XPPenTablet; C:\WINDOWS\System32\drivers\XPPenTablet.sys [10752 2022-04-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
S3 ACE-SSC-DRV64; \??\C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [X]
S3 amdwddmg; \SystemRoot\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\amdkmdag.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) (Whitelisted) =========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2025-01-12 13:15 - 2025-01-12 13:18 - 000036250 _____ C:\Users\bryce\Downloads\FRST.txt
2025-01-12 13:14 - 2025-01-12 13:17 - 000000000 ____D C:\FRST
2025-01-12 13:11 - 2025-01-12 13:11 - 002403328 _____ (Farbar) C:\Users\bryce\Downloads\FRST64.exe
2025-01-11 21:10 - 2025-01-11 21:10 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Acronis
2025-01-11 20:01 - 2025-01-11 20:01 - 000000000 ____D C:\Users\bryce\AppData\Local\Acronis
2025-01-11 19:59 - 2025-01-11 19:59 - 000394760 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000392840 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000334984 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000183944 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000175648 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys
2025-01-11 19:59 - 2025-01-11 19:59 - 000001288 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image for Crucial.lnk
2025-01-11 19:59 - 2025-01-11 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2025-01-11 19:58 - 2025-01-12 01:01 - 000000000 ____D C:\ProgramData\Acronis
2025-01-11 19:58 - 2025-01-11 19:58 - 000000000 ____D C:\Program Files (x86)\Acronis
2025-01-11 19:56 - 2025-01-11 19:57 - 731729728 _____ C:\Users\bryce\Downloads\AcronisTrueImageMicron_39939.exe
2025-01-11 19:49 - 2025-01-11 19:49 - 000282648 _____ C:\Users\bryce\Downloads\CrucialScan.exe
2025-01-08 12:03 - 2025-01-08 12:03 - 000000223 _____ C:\Users\bryce\OneDrive\Desktop\Resident Evil Village.url
2025-01-07 14:32 - 2025-01-07 14:33 - 000000000 ____D C:\Users\bryce\AppData\Local\Maine
2025-01-07 14:24 - 2025-01-07 14:24 - 000000222 _____ C:\Users\bryce\OneDrive\Desktop\Grounded.url
2025-01-06 22:38 - 2025-01-06 22:38 - 000000223 _____ C:\Users\bryce\OneDrive\Desktop\Sunkenland.url
2025-01-06 22:29 - 2025-01-06 22:29 - 000000000 ____D C:\Users\bryce\AppData\LocalLow\duoyi
2025-01-06 22:27 - 2025-01-06 22:27 - 000000223 _____ C:\Users\bryce\OneDrive\Desktop\Gunfire Reborn.url
2025-01-06 22:05 - 2025-01-06 22:05 - 000000000 ____D C:\Users\bryce\AppData\Local\HLL
2025-01-06 11:55 - 2025-01-06 11:55 - 000000000 ____D C:\Users\bryce\AppData\Local\ATI
2025-01-06 11:38 - 2025-01-06 11:38 - 000003302 _____ C:\WINDOWS\system32\Tasks\StartCNBM
2025-01-06 11:36 - 2025-01-06 11:36 - 000000000 ____D C:\Users\bryce\AppData\LocalLow\AMD
2025-01-06 11:29 - 2025-01-12 13:07 - 000003098 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2025-01-06 11:28 - 2025-01-06 11:38 - 000000000 ____D C:\ProgramData\AMD
2025-01-06 11:28 - 2025-01-06 11:28 - 000003484 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2025-01-06 11:28 - 2025-01-06 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2025-01-06 11:25 - 2025-01-06 11:25 - 000003072 _____ C:\WINDOWS\system32\Tasks\StartDVR
2025-01-06 11:25 - 2025-01-06 11:25 - 000002620 _____ C:\WINDOWS\system32\Tasks\AMDRyzenMasterSDKTask
2025-01-06 11:25 - 2025-01-06 11:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2025-01-06 11:24 - 2025-01-06 11:24 - 000003152 _____ C:\WINDOWS\system32\Tasks\StartCN
2025-01-06 11:19 - 2024-12-04 13:46 - 002071456 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-01-06 11:19 - 2024-12-04 13:46 - 002071456 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-01-06 11:19 - 2024-12-04 13:46 - 001611160 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-01-06 11:19 - 2024-12-04 13:46 - 001611160 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-01-06 11:19 - 2024-12-04 13:46 - 001485024 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-01-06 11:19 - 2024-12-04 13:46 - 001485024 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-01-06 11:19 - 2024-12-04 13:46 - 001333128 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-01-06 11:19 - 2024-12-04 13:46 - 001333128 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-01-06 11:19 - 2024-12-04 13:46 - 000632224 _____ C:\WINDOWS\system32\GameManager64.dll
2025-01-06 11:19 - 2024-12-04 13:46 - 000479640 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 007656888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 007468440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 002892184 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 002171808 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001813408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001813408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001555816 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001262872 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001254816 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001055648 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 001053080 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2025-01-06 11:19 - 2024-12-04 13:45 - 000591256 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000559008 _____ C:\WINDOWS\system32\atieah64.exe
2025-01-06 11:19 - 2024-12-04 13:45 - 000526232 _____ C:\WINDOWS\system32\EEURestart.exe
2025-01-06 11:19 - 2024-12-04 13:45 - 000473496 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000449432 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000421784 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2025-01-06 11:19 - 2024-12-04 13:45 - 000280472 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000236952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000197048 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000190856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000150432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000146328 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000140192 _____ C:\WINDOWS\system32\amdxc64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000120216 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000116664 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000075192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000051608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2025-01-06 11:19 - 2024-12-04 13:45 - 000048544 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 111883672 _____ C:\WINDOWS\system32\amd_comgr_2.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 105432968 _____ C:\WINDOWS\system32\amd_comgr.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 094993816 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 023682976 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64_6.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 021762456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 001742472 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 001417112 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000801688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000787872 _____ C:\WINDOWS\system32\hiprt0200064.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000678832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000554704 _____ C:\WINDOWS\system32\amdmiracast.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000546712 _____ C:\WINDOWS\system32\dgtrayicon.exe
2025-01-06 11:19 - 2024-12-04 13:44 - 000471448 _____ C:\WINDOWS\system32\amdlogum.exe
2025-01-06 11:19 - 2024-12-04 13:44 - 000344472 _____ C:\WINDOWS\system32\clinfo.exe
2025-01-06 11:19 - 2024-12-04 13:44 - 000227736 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000197528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000179624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000177048 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000169200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000169168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000162296 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000154696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000145816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000141176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000141168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2025-01-06 11:19 - 2024-12-04 13:44 - 000134832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2025-01-06 11:19 - 2024-12-04 13:13 - 113338696 _____ C:\WINDOWS\system32\amdxc64.so
2025-01-06 11:19 - 2024-12-04 13:13 - 009979672 _____ C:\WINDOWS\system32\hiprt02000_amd.hipfb
2025-01-06 11:19 - 2024-12-04 13:13 - 002459536 _____ C:\WINDOWS\system32\oro_compiled_kernels.hipfb
2025-01-06 11:19 - 2024-06-24 05:58 - 000069088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ANR-bgproc-Lib.dll
2025-01-06 11:19 - 2024-05-16 11:58 - 000063008 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdxe.sys
2025-01-06 11:17 - 2025-01-06 11:17 - 038711064 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\amd-software-adrenalin-edition-24.12.1-minimalsetup-241204_web (5).exe
2025-01-06 11:15 - 2025-01-06 11:15 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Microsoft\MMC
2025-01-05 20:43 - 2025-01-05 20:43 - 000000383 _____ C:\Users\bryce\OneDrive\Desktop\Hell Let Loose.url
2025-01-04 21:25 - 2025-01-04 21:25 - 000000000 ____D C:\ProgramData\Propagation
2025-01-04 21:18 - 2024-09-03 23:43 - 000116944 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmpfd.sys
2025-01-04 21:12 - 2024-11-27 16:52 - 003070072 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\AMDBugReportTool.exe
2025-01-04 21:02 - 2025-01-04 21:02 - 648277352 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\whql-amd-software-adrenalin-edition-24.9.1-win10-win11-vega-polaris (11).exe
2025-01-04 18:22 - 2020-05-28 01:39 - 001145464 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll
2025-01-04 18:22 - 2020-05-28 01:39 - 001084704 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe
2025-01-04 18:22 - 2020-05-28 01:39 - 000844888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll
2025-01-04 18:22 - 2020-05-28 01:39 - 000468776 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2025-01-04 18:22 - 2020-05-28 01:39 - 000224272 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2025-01-04 18:20 - 2025-01-06 11:44 - 000000000 ____D C:\Users\bryce\AppData\Local\AMD
2025-01-04 18:13 - 2020-05-28 01:39 - 000274720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTHDASIO64.dll
2025-01-04 18:13 - 2020-05-28 01:39 - 000229664 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RTHDASIO.dll
2025-01-04 18:06 - 2020-05-28 01:35 - 007386728 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2025-01-04 18:05 - 2025-01-04 18:05 - 000004292 _____ C:\WINDOWS\system32\Tasks\AMD Updater
2025-01-04 17:23 - 2025-01-04 17:23 - 000000000 ____D C:\Program Files (x86)\Realtek
2025-01-04 17:20 - 2025-01-04 17:20 - 000000000 ____D C:\WINDOWS\{15DA82A3-B124-45FA-A87D-51DB76178223}
2025-01-04 17:19 - 2025-01-04 17:19 - 431295200 _____ (Dell Inc.) C:\Users\bryce\Downloads\Realtek-High-Definition-Audio-Driver_X08PP_WIN_6.0.8960.1_A09_02 (1).EXE
2025-01-04 17:19 - 2025-01-04 17:19 - 219327472 _____ (Dell Inc.) C:\Users\bryce\Downloads\AMD-Chipset-Driver_88K1F_WIN_18.100.0_A01 (1).EXE
2025-01-04 17:19 - 2025-01-04 17:19 - 033311768 _____ (Dell Inc.) C:\Users\bryce\Downloads\Dell-Update-Windows-Universal-Application_HG1TN_WIN_5.4.0_A00 (1).EXE
2025-01-04 17:17 - 2025-01-04 17:17 - 153857752 _____ (NVIDIA Corporation) C:\Users\bryce\Downloads\NVIDIA_app_v11.0.1.189.exe
2025-01-04 15:23 - 2025-01-04 15:23 - 000000000 ____D C:\Users\bryce\AppData\Local\RadeonInstaller
2025-01-04 15:21 - 2025-01-04 15:23 - 431295200 _____ (Dell Inc.) C:\Users\bryce\Downloads\Realtek-High-Definition-Audio-Driver_X08PP_WIN_6.0.8960.1_A09_02.EXE
2025-01-04 15:21 - 2025-01-04 15:22 - 219327472 _____ (Dell Inc.) C:\Users\bryce\Downloads\AMD-Chipset-Driver_88K1F_WIN_18.100.0_A01.EXE
2025-01-04 15:21 - 2025-01-04 15:21 - 033311768 _____ (Dell Inc.) C:\Users\bryce\Downloads\Dell-Update-Windows-Universal-Application_HG1TN_WIN_5.4.0_A00.EXE
2025-01-04 15:10 - 2025-01-04 15:15 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Maono Link
2025-01-04 15:10 - 2025-01-04 15:10 - 000001218 _____ C:\Users\bryce\OneDrive\Desktop\Maono Link.lnk
2025-01-04 15:10 - 2025-01-04 15:10 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maono Link
2025-01-04 15:10 - 2025-01-04 15:10 - 000000000 ____D C:\Program Files (x86)\Maono
2025-01-04 15:09 - 2025-01-04 15:09 - 050321098 _____ C:\Users\bryce\Downloads\Maono Link Windows.zip
2025-01-04 15:09 - 2025-01-04 15:09 - 000000000 ____D C:\Users\bryce\Downloads\Maono Link Windows
2025-01-01 10:00 - 2025-01-01 10:00 - 000000000 ____D C:\ProgramData\FxSound LLC
2024-12-31 19:59 - 2024-12-31 19:59 - 072388192 _____ (FxSound LLC) C:\Users\bryce\Downloads\fxsound_setup (1).exe
2024-12-31 19:55 - 2025-01-04 18:19 - 000000000 ____D C:\Users\bryce\AppData\Roaming\FxSound
2024-12-31 19:55 - 2024-12-31 19:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\FxSound
2024-12-31 19:54 - 2024-12-31 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FxSound
2024-12-31 19:54 - 2024-12-31 19:54 - 000000000 ____D C:\ProgramData\FxSound
2024-12-31 19:54 - 2024-12-31 19:54 - 000000000 ____D C:\Program Files\FxSound LLC
2024-12-31 19:52 - 2024-12-31 19:53 - 072388192 _____ (FxSound LLC) C:\Users\bryce\Downloads\fxsound_setup.exe
2024-12-27 20:56 - 2024-12-27 20:56 - 038711064 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\amd-software-adrenalin-edition-24.12.1-minimalsetup-241204_web (4).exe
2024-12-26 20:43 - 2024-12-26 20:43 - 000000000 ____D C:\Users\bryce\AppData\Roaming\AMD
2024-12-26 20:42 - 2024-12-26 20:42 - 038711064 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\amd-software-adrenalin-edition-24.12.1-minimalsetup-241204_web (3).exe
2024-12-26 20:42 - 2024-12-26 20:42 - 000025258 _____ C:\Users\bryce\Downloads\amdgpu-install-6.2.60203-1.el9.noarch (1).rpm
2024-12-26 20:41 - 2024-12-26 20:41 - 000025258 _____ C:\Users\bryce\Downloads\amdgpu-install-6.2.60203-1.el9.noarch.rpm
2024-12-25 21:38 - 2025-01-06 11:38 - 000000000 ____D C:\Program Files\AMD
2024-12-25 18:01 - 2025-01-04 15:33 - 000000000 ____D C:\WINDOWS\LastGood
2024-12-25 17:56 - 2024-12-25 17:56 - 648277352 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\whql-amd-software-adrenalin-edition-24.9.1-win10-win11-vega-polaris (10).exe
2024-12-25 11:44 - 2024-12-25 11:44 - 000000223 _____ C:\Users\bryce\OneDrive\Desktop\Crosshair X.url
2024-12-24 22:40 - 2024-12-24 22:40 - 000027888 _____ (EasyAntiCheat Oy) C:\WINDOWS\system32\eac_usermode_552528687391756.dll
2024-12-22 12:01 - 2024-12-22 12:01 - 038711064 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\amd-software-adrenalin-edition-24.12.1-minimalsetup-241204_web (2).exe
2024-12-22 11:49 - 2024-12-22 11:50 - 038711064 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\amd-software-adrenalin-edition-24.12.1-minimalsetup-241204_web (1).exe
2024-12-21 20:57 - 2024-12-21 20:58 - 648277352 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\whql-amd-software-adrenalin-edition-24.9.1-win10-win11-vega-polaris (9).exe
2024-12-15 20:10 - 2024-12-15 20:10 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2024-12-15 20:08 - 2024-12-15 20:08 - 648277352 _____ (Advanced Micro Devices, Inc.) C:\Users\bryce\Downloads\whql-amd-software-adrenalin-edition-24.9.1-win10-win11-vega-polaris (8).exe
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2025-01-12 13:19 - 2024-03-31 23:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-01-12 13:18 - 2024-03-31 23:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-01-12 13:13 - 2024-05-11 11:07 - 000000000 ____D C:\Users\bryce\AppData\Roaming\discord
2025-01-12 13:13 - 2024-05-11 11:06 - 000000000 ____D C:\Users\bryce\AppData\Local\Discord
2025-01-12 13:11 - 2024-05-11 10:02 - 000000000 ____D C:\Users\bryce\AppData\Local\Packages
2025-01-12 13:11 - 2019-07-08 22:30 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2025-01-12 13:06 - 2024-05-11 12:37 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2025-01-12 13:06 - 2024-03-31 23:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-01-12 13:05 - 2024-12-07 22:27 - 000005402 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-01-12 13:04 - 2024-12-07 22:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-01-12 13:04 - 2024-12-07 22:12 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-01-12 13:04 - 2024-05-11 07:54 - 000012288 ___SH C:\DumpStack.log.tmp
2025-01-12 13:04 - 2024-03-31 23:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-01-12 12:34 - 2024-12-07 22:21 - 000000000 ____D C:\Users\bryce
2025-01-12 12:18 - 2024-03-31 23:24 - 000000000 ____D C:\WINDOWS\INF
2025-01-12 12:05 - 2024-03-31 23:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-01-12 05:09 - 2024-12-11 16:31 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-01-12 03:05 - 2024-05-11 11:04 - 000000000 ____D C:\Program Files (x86)\Steam
2025-01-12 03:02 - 2024-05-11 11:24 - 000000000 ____D C:\Users\bryce\AppData\Roaming\EasyAntiCheat
2025-01-11 23:06 - 2024-05-11 10:03 - 000000000 ____D C:\Users\bryce\AppData\Local\D3DSCache
2025-01-11 20:50 - 2024-05-11 11:13 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2025-01-10 22:49 - 2024-03-31 23:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-01-10 22:48 - 2024-05-11 09:16 - 000000000 ____D C:\ProgramData\Packages
2025-01-10 22:43 - 2024-05-11 11:07 - 000002251 _____ C:\Users\bryce\OneDrive\Desktop\Discord.lnk
2025-01-10 22:40 - 2024-12-10 19:12 - 000000000 ____D C:\WINDOWS\Minidump
2025-01-10 22:38 - 2022-12-25 14:17 - 002737085 ____N C:\WINDOWS\Minidump\011025-101031-01.dmp
2025-01-10 13:16 - 2024-05-15 22:16 - 000000000 ____D C:\Users\bryce\AppData\Local\AMD_Common
2025-01-09 16:06 - 2024-05-11 11:31 - 000000000 ____D C:\Users\bryce\BrawlhallaReplays
2025-01-09 14:06 - 2024-05-11 11:01 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-01-09 10:52 - 2024-11-23 12:24 - 000000000 ____D C:\Users\bryce\AppData\Roaming\lghub
2025-01-09 10:52 - 2024-05-11 11:44 - 000000000 ____D C:\Users\bryce\AppData\Roaming\G HUB
2025-01-07 17:23 - 2019-07-08 22:41 - 000000000 ____D C:\ProgramData\Dell
2025-01-07 17:20 - 2024-05-11 11:44 - 000000000 ____D C:\Users\bryce\AppData\Local\LGHUB
2025-01-07 13:12 - 2024-05-13 20:57 - 000000000 ____D C:\Users\bryce\AppData\Local\Ubisoft Game Launcher
2025-01-06 22:37 - 2024-05-11 11:50 - 000000000 ____D C:\Users\bryce\AppData\Roaming\riot-client-ux
2025-01-06 20:05 - 2024-09-21 17:55 - 134222904 _____ C:\WINDOWS\392667600.dat
2025-01-06 11:27 - 2024-05-11 07:39 - 000000000 ____D C:\WINDOWS\system32\AMD
2025-01-06 11:27 - 2024-03-31 23:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-01-06 11:23 - 2024-05-15 22:16 - 000000000 ____D C:\AMD
2025-01-05 20:27 - 2024-07-31 20:51 - 000000000 ____D C:\Program Files\Epic Games
2025-01-04 21:15 - 2024-05-11 07:56 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2025-01-04 21:08 - 2019-07-08 22:26 - 000000000 ____D C:\Program Files (x86)\AMD
2025-01-04 18:20 - 2024-10-29 19:03 - 000000000 ____D C:\Users\bryce\AppData\Roaming\CrosshairX
2025-01-04 17:27 - 2019-07-08 22:26 - 000000000 ___HD C:\Program Files (x86)\Temp
2025-01-04 17:23 - 2019-07-08 22:26 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2025-01-04 17:22 - 2019-07-08 22:53 - 000000000 ____D C:\Program Files (x86)\Dell
2025-01-04 17:22 - 2019-07-08 22:24 - 000000000 ____D C:\Program Files\Dell
2025-01-04 17:21 - 2019-07-08 22:26 - 000019632 _____ C:\WINDOWS\SysWOW64\RtkMsgs.dll
2025-01-04 17:17 - 2024-08-16 18:32 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2025-01-04 17:06 - 2024-03-31 23:26 - 000000000 ____D C:\WINDOWS\Registration
2025-01-03 20:21 - 2024-05-13 22:17 - 000000000 ____D C:\Users\bryce\AppData\Local\osu!
2025-01-03 20:18 - 2024-11-23 18:18 - 000000000 ____D C:\Users\bryce\AppData\Local\OpenTabletDriver
2025-01-03 20:09 - 2024-11-23 18:17 - 000000000 ____D C:\Program Files\dotnet
2025-01-03 20:09 - 2019-07-08 22:26 - 000000000 ____D C:\ProgramData\Package Cache
2025-01-03 20:07 - 2024-11-23 18:15 - 000000000 ____D C:\Users\bryce\Downloads\OpenTabletDriver.win-x64
2024-12-27 21:07 - 2024-09-01 19:34 - 000000000 ____D C:\Users\bryce\AppData\Local\CrashDumps
2024-12-22 12:00 - 2024-12-07 22:35 - 000836650 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-12-21 20:32 - 2024-06-09 11:43 - 000000000 ____D C:\Users\bryce\AppData\Local\UniSDK
2024-12-21 13:46 - 2024-12-07 22:43 - 000003612 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{0AE0A083-D51F-4921-B1F6-F4EF22F8A8DB}
2024-12-21 13:46 - 2024-12-07 22:43 - 000003488 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{E6AE406C-A2AB-433E-9AC2-E3059118EE2A}
2024-12-21 03:46 - 2024-05-11 07:56 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-12-20 18:08 - 2024-12-07 14:40 - 000000000 ___DC C:\WINDOWS\Panther
2024-12-16 23:54 - 2024-12-07 22:43 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1837264095-2786932642-587067681-1001
2024-12-16 23:54 - 2024-12-07 22:43 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1837264095-2786932642-587067681-1001
2024-12-16 23:54 - 2024-05-11 10:09 - 000002381 _____ C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-12-15 17:28 - 2024-08-05 15:26 - 000000016 _____ C:\ProgramData\mntemp
2024-12-15 17:28 - 2024-07-31 20:36 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2024-12-15 17:28 - 2019-07-08 22:51 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2024-12-15 17:28 - 2019-07-08 22:51 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2024-12-15 17:28 - 2019-07-08 22:51 - 000002416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2024-12-15 17:28 - 2019-07-08 22:51 - 000002409 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk
2024-12-15 17:22 - 2024-05-11 11:47 - 000000000 ____D C:\ProgramData\Riot Games
2024-12-15 13:36 - 2024-05-11 11:08 - 000000000 ____D C:\Users\bryce\AppData\Local\Steam
2024-12-13 17:09 - 2022-12-25 14:17 - 002533733 ____N C:\WINDOWS\Minidump\121324-83468-01.dmp
2024-12-13 00:43 - 2024-03-31 23:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-12-13 00:43 - 2019-07-08 22:48 - 000000000 ____D C:\Program Files\Microsoft Office
2024-12-13 00:26 - 2024-08-22 17:52 - 000001399 _____ C:\Users\bryce\OneDrive\Desktop\Roblox Player.lnk
2024-12-13 00:26 - 2024-08-22 17:51 - 000001227 _____ C:\Users\bryce\OneDrive\Desktop\Roblox Studio.lnk
2024-12-13 00:26 - 2024-08-22 17:51 - 000000000 ____D C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
 
==================== Files in the root of some directories ========
 
2024-10-09 11:09 - 2024-10-09 13:15 - 000884742 _____ () C:\Users\bryce\AppData\Roaming\xLights_l4cpp.log
2024-11-15 16:45 - 2024-11-15 16:45 - 000000905 _____ () C:\Users\bryce\AppData\Roaming\xScanner_l4cpp.log
2024-10-09 11:10 - 2024-10-09 11:15 - 000014629 _____ () C:\Users\bryce\AppData\Roaming\xSchedule_l4cpp.log
2024-08-01 16:19 - 2024-08-01 16:19 - 000000048 ____R () C:\Users\bryce\AppData\Local\C261FB3B4CD53DFB4B1950C16F761298
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-01-2025
Ran by bryce (12-01-2025 13:21:57)
Running from C:\Users\bryce\Downloads
Microsoft Windows 11 Home Version 24H2 26100.2605 (X64) (2024-12-08 06:44:07)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
(If an entry is included in the fixlist, it will be removed.)
 
Administrator (S-1-5-21-1837264095-2786932642-587067681-500 - Administrator - Disabled)
bryce (S-1-5-21-1837264095-2786932642-587067681-1001 - Administrator - Enabled) => C:\Users\bryce
DefaultAccount (S-1-5-21-1837264095-2786932642-587067681-503 - Limited - Disabled)
Guest (S-1-5-21-1837264095-2786932642-587067681-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1837264095-2786932642-587067681-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Acronis Drivers (HKLM\...\{1510245A-8237-48F5-8AAB-07FB8FF6A54A}) (Version: 27.0.39939 - Acronis) Hidden
Acronis True Image for Crucial (HKLM-x32\...\{D000AAD8-31C2-40D0-A106-25D8FF6359CB}) (Version: 27.0.39939 - Acronis) Hidden
Acronis True Image for Crucial (HKLM-x32\...\{D000AAD8-31C2-40D0-A106-25D8FF6359CB}Visible) (Version: 27.0.39939 - Acronis)
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.10.17.152 - Advanced Micro Devices, Inc.)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.126 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.90 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.30.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.12.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{d1b7ab36-91d4-42d5-b3d3-e2827144f4d7}) (Version: 6.10.17.152 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Dell Digital Delivery Services (HKLM-x32\...\{8D1CFB63-E958-4A5C-8BBC-A5F5DF4ED32F}) (Version: 4.0.36.0 - Dell Inc.)
Dell Mobile Connect Drivers (HKLM\...\{1E754E2C-CF3B-42CB-B36D-D560CEA96149}) (Version: 2.0.7811 - Screenovate Technologies Ltd.)
Dell SupportAssist (HKLM\...\{45FD01F4-B11B-4A58-B465-1D600B5CDF64}) (Version: 3.2.0.90 - Dell Inc.)
Dell SupportAssist Remediation (HKLM\...\{5338F54D-D542-423E-84CA-B8B66AC901C7}) (Version: 4.4.0.9838 - Dell Inc.) Hidden
Dell SupportAssist Remediation (HKLM-x32\...\{c30a69af-0f5d-49b0-bac8-ea7549646200}) (Version: 4.4.0.9838 - Dell Inc.)
Dell Update - SupportAssist Update Plugin (HKLM\...\{88E6F714-F9B2-42E3-92D0-5B966BE21FC8}) (Version: 4.4.0.9838 - Dell Inc.) Hidden
Dell Update - SupportAssist Update Plugin (HKLM-x32\...\{bd494d96-6992-407c-96c8-de2910f97f33}) (Version: 4.4.0.9838 - Dell Inc.)
Dell Update for Windows Universal (HKLM\...\{B724D287-C1C8-472E-B56B-41AEA619740F}) (Version: 5.4.0 - Dell Inc.)
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.2.0.4803 - Denuvo GmbH)
Discord (HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Discord) (Version: 1.0.9146 - Discord Inc.)
Elgato Game Capture HD (HKLM\...\{C1D8503E-4BB6-4D86-B28E-2A636AC19434}) (Version: 3.70.56.3056 - Elgato Systems GmbH)
Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
FxSound (HKLM\...\{B78F934D-616A-4FFD-9D5A-B870EF9423C2}) (Version: 1.1.27.0 - FxSound LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 131.0.6778.265 - Google LLC)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2024.9.649333 - Logitech)
Maono Link 2.7.2 (HKLM-x32\...\Maono Link) (Version: 2.7.2 - ÉîÛÚĦÂÞÖ¾Ô¶¿Æ¼¼ÓÐÏÞ¹«Ë¾)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.11 (x64) (HKLM\...\{362B4D0D-8438-44DA-86B2-FEC44E000FCA}) (Version: 64.44.23191 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.11 (x64) (HKLM\...\{F59C11F0-D73F-452B-8D1D-8C33B82D8507}) (Version: 64.44.23191 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.11 (x64) (HKLM\...\{9C80213E-9079-4561-8D57-1FDD0D62251F}) (Version: 64.44.23191 - Microsoft Corporation) Hidden
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.18227.20162 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 131.0.2903.112 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 131.0.2903.112 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\OneDriveSetup.exe) (Version: 24.226.1110.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.19202 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34433 (HKLM-x32\...\{804e7d66-ccc2-4c12-84ba-476da31d103d}) (Version: 14.42.34433.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34433 (HKLM-x32\...\{e7802eac-3305-4da0-9378-e55d1ed05518}) (Version: 14.42.34433.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34433 (HKLM\...\{E1902FC6-C423-4719-AB8A-AC7B2694B367}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34433 (HKLM\...\{382F1166-A409-4C5B-9B1E-85ED538B8291}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34433 (HKLM-x32\...\{84E3E712-6343-484B-8B6C-9F145F019A70}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34433 (HKLM-x32\...\{C2BB95AA-90F3-4891-81C1-A7E565BB836C}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.11 (x64) (HKLM\...\{C0790AA0-0F40-4836-85B2-677B87625E63}) (Version: 64.44.23253 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.11 (x64) (HKLM-x32\...\{bd40e761-3e88-4202-9b53-26c6bed3d467}) (Version: 8.0.11.34221 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18227.20082 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18227.20162 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
osu! (HKLM-x32\...\{616518b5-7768-4c39-802a-19e644454c6b}) (Version: latest - ppy Pty Ltd)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.3.0 - Advanced Micro Devices, Inc.) Hidden
Qualcomm 11ac Wireless LAN&Bluetooth Installer (HKLM-x32\...\{E7086B15-806E-4519-A876-DBA9FDDE9A13}) (Version: 11.0.0.10480 - Qualcomm)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 4.0.406 - Razer Inc.)
Riot Client  (HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Riot Game Riot_Client.) (Version:  - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version:  - Riot Games, Inc.)
Roblox Player for bryce (HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\roblox-player) (Version:  - Roblox Corporation)
RyzenMasterSDK (HKLM\...\{8550DA97-C688-45A2-B080-36B97D867DBC}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TavernWorker for Dark and Darker - Steam (HKLM\...\TavernWorker for Dark and Darker - Steam) (Version:  - IRONMACE)
THX Spatial Audio USB 1532-0520 (HKLM\...\{DEB8CA4E-50FC-4AEA-BCB2-14E58C004951}) (Version: 3.2.3.0 - THX) Hidden
THX Spatial Audio USB 1532-0520 (HKLM\...\{FD79667B-20C5-480A-BD94-4351D2018261}) (Version: 3.2.3.0 - THX)
THX V3 APO Presets (HKLM\...\{13AFFB3A-EB63-465D-AE01-A72ACF442691}) (Version: 3.0.36.0 - THX) Hidden
THX V3 APO Presets (HKLM\...\{86F05FBF-CDB9-4E5A-9C75-9BBDD94FBED5}) (Version: 3.2.3.7 - THX) Hidden
THX V3 APO Presets (HKLM-x32\...\{8f44de26-0099-47b7-b3eb-bc9d875f534a}) (Version: 3.0.36.0 - THX) Hidden
THX V3 APO Presets (HKLM-x32\...\{db909aaf-7b65-40a6-9274-68f7de8e9253}) (Version: 3.2.3.7 - THX) Hidden
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 73.0 - Ubisoft)
UE Prerequisites (x64) (HKLM-x32\...\{aad8a4b2-74da-409d-abb6-79a299008692}) (Version: 1.0.16.0 - Epic Games, Inc.) Hidden
VALORANT (HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\Riot Game valorant.live) (Version:  - Riot Games, Inc)
xLights version 2024.16 (HKLM\...\xLights_is1) (Version: 2024.16 - )
 
Packages:
=========
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-01-06] (Advanced Micro Devices Inc.)
Call of Duty® -> C:\Program Files\WindowsApps\38985CA0.COREBase_1.0.55.0_x64_ww_5bkah9njm3e9g [2025-01-07] (Activision Publishing Inc.)
Crosshair V2 -> C:\Program Files\WindowsApps\47492CenterpointGaming.CrosshairV2_1.1.26.0_neutral__rz8d8f65gztyc [2024-11-29] (CenterPoint Gaming)
Crosshair X -> C:\Program Files\WindowsApps\47492CenterpointGaming.ProSight_9.7.6.0_x64__rz8d8f65gztyc [2024-12-25] (CenterPoint Gaming) [Startup Task]
Crosshair X Extension -> C:\Program Files\WindowsApps\47492CenterpointGaming.ProSightCrosshairExtension_1.6.0.0_x64__rz8d8f65gztyc [2024-11-29] (Centerpoint Gaming)
Dell Light Bar Controller -> C:\Program Files\WindowsApps\mswp.delllightbarcontroller_2.0.302.0_x64__9j0h69dmw0fzc [2024-05-11] (WISTRON CORPORATION)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\dellinc.dellsupportassistforpcs_3.6.6.0_x64__htrsf667h5kn2 [2024-05-11] (Dell Inc)
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_5.4.19.0_x86__htrsf667h5kn2 [2025-01-05] (Dell Inc)
Ink.Handwriting.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.en-US.1.0_0.645.1237.0_x64__8wekyb3d8bbwe [2024-11-24] (Microsoft Corporation)
Ink.Handwriting.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.en-US.1.0_0.645.1237.0_x86__8wekyb3d8bbwe [2024-11-24] (Microsoft Corporation)
Ink.Handwriting.Main.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.Main.en-US.1.0.1_0.645.1237.0_x64__8wekyb3d8bbwe [2024-11-24] (Microsoft Corporation)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_3.0.41.0_x64__w1wdnht996qgy [2024-12-15] (LinkedIn) [Startup Task]
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2412.12002.0_x64__8wekyb3d8bbwe [2024-12-31] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-12-10] (Microsoft Corp.)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0 [2024-12-21] (Spotify AB) [Startup Task]
Translator -> C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe [2024-11-29] (Microsoft Corporation)
Waves MaxxAudio Pro for Dell -> C:\Program Files\WindowsApps\WavesAudio.WavesMaxxAudioProforDell_1.1.131.0_x64__fh4rh281wavaa [2024-09-12] (Waves Audio)
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-1837264095-2786932642-587067681-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\bryce\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.24.19202\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_27_0_39939.dll [2023-05-10] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [     AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_27_0_39939.dll [2023-05-10] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [     AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_27_0_39939.dll [2023-05-10] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [     AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_27_0_39939.dll [2023-05-10] (Acronis International GmbH -> )
 
==================== Codecs (Whitelisted) ====================
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
ShortcutWithArgument: C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Learning Ally Audiobooks.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory="Profile 1" --app-id=gdicnpbaekbefjanokchpfhnaphfnphl
 
==================== Loaded Modules (Whitelisted) =============
 
2019-03-20 17:02 - 2019-03-20 17:02 - 000018432 _____ () [File not signed] c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.HSA.Server.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini:41964AA945 [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [5162]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:5465085A2F [5162]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk:1DC1525F34 [6026]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk:104946E0EA [5162]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk:7AD7FA8AB1 [6026]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [7456]
 
==================== Safe Mode (Whitelisted) ==================
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer (Whitelisted) =============
 
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-12] (Microsoft Corporation -> Microsoft Corporation)
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2019-03-18 20:49 - 2019-03-18 20:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\bryce\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.0.1 - 205.171.3.25
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
Network Binding:
=============
Wi-Fi: Qualcomm QCA9377 802.11ac Wireless Adapter -> Qcamain10x64.sys
Ethernet: Realtek PCIe GBE Family Controller -> rt640x64.sys
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
HKLM\...\StartupApproved\StartupFolder: => "FxSound.lnk"
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "DellMobileConnectWelcome"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run: => "Elgato Sound Capture"
HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_838C45FC13176EA09208D48B214A5CF6"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "LGHUB"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "RiotClient"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "AMDNoiseSuppression"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "AF_uuid_2139460"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "AF_counter_2139460"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "Parsec.App.0"
HKU\S-1-5-21-1837264095-2786932642-587067681-1001\...\StartupApproved\Run: => "CrosshairX"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{B678FE13-078B-469C-B9AF-1CD2C75F26A6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.133.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4BE45301-4ECA-4695-BABF-CAF78812A4AF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.133.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{72708C82-617C-4ADB-A111-FEC954E8F097}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.133.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0D7BE027-30B4-4E90-A7C3-91BA90DA9BA4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.133.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{7979F3D4-F953-4958-82A5-76CF73045C5D}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [TCP Query User{ACDA8972-16A0-460A-A8B9-AF7A7DA8EABA}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{55B6CC8D-67F7-4F1A-804B-B07CA8AED11E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Strinova\Launcher\Strinova.exe => No File
FirewallRules: [{EC4F1D1A-7758-4FDE-A59A-5B8934053419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Strinova\Launcher\Strinova.exe => No File
FirewallRules: [{9F83336A-CDFC-44D2-8211-1C2B2F6487F0}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.383\RazerAppEngine.exe => No File
FirewallRules: [{E25EB668-C231-4797-9E28-FDF06C4058F8}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.406\RazerAppEngine.exe => No File
FirewallRules: [{60ADA517-D5A3-407C-9E19-1C483D766BB5}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{442BB4C4-4A6B-46C7-8E01-1D6772772999}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{11B77A10-1F94-4E0B-A1DA-3409B7349037}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{3AADE632-062D-4430-B43D-64B9490DD8A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{E2AE4F67-9DD6-4784-876E-FF0DC5FB1DA4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_DX11.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{12D29C91-C80F-410D-877F-02905A857044}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_DX11.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{74882464-72F4-4220-A976-3AC77A17AFB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{863C5934-3E4E-42AA-AE8A-9B6FD1174918}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{8C1996C9-644D-44F4-89AF-513A8CE58003}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe (Access Denied)  [File not signed?]
FirewallRules: [TCP Query User{01A9BE6C-23EC-48A0-88AD-EBA08969A714}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe (Access Denied)  [File not signed?]
FirewallRules: [{38A62157-57A6-4D88-9FC2-0E0669E4CA13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe => No File
FirewallRules: [{D2563C22-F5CB-47C6-95AA-C4D00AFA2B12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe => No File
FirewallRules: [UDP Query User{872F9F45-04A6-4D1F-98E6-18AE722827DE}C:\program files\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{0E7CBBE6-E0A1-4D75-A875-24810FAB6D58}C:\program files\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{9FEEA40E-E32E-4028-A87B-A4FF38E686F2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{3E087097-A97B-4BF9-979A-7985B13E6AED}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{080C268E-CADC-43BC-AC3B-8AABA050ABEA}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{F5316633-BA12-43A3-8789-C0FC0B5C050A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe => No File
FirewallRules: [{9CE38577-5F3D-49D5-886C-B3FE02F67479}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe => No File
FirewallRules: [UDP Query User{C09D5FD2-9317-4EBE-A870-86573B7FFE2D}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{EA6366F7-5BEE-4471-A074-5259E0D75DD4}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{968AF32B-291A-40CB-BD09-0B32409B3D2F}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24277.3102.3183.2670_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EC8D9521-F585-4435-9FD6-DA06E6955462}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24277.3102.3183.2670_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E80E663C-434D-4D62-9B21-D38E5075FC1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rivals of Aether II Demo\Rivals2\Binaries\Win64\Rivals2-Win64-Shipping.exe => No File
FirewallRules: [{60F8FE00-3699-40AE-A4C4-BF1C1FAD74EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rivals of Aether II Demo\Rivals2\Binaries\Win64\Rivals2-Win64-Shipping.exe => No File
FirewallRules: [UDP Query User{932DCF6F-C3B1-4AD2-A606-F426D4D77C93}C:\program files\xlights\xschedule.exe] => (Allow) C:\program files\xlights\xschedule.exe () [File not signed]
FirewallRules: [TCP Query User{24CABF8E-B4C8-4F14-B0F2-34800489AD93}C:\program files\xlights\xschedule.exe] => (Allow) C:\program files\xlights\xschedule.exe () [File not signed]
FirewallRules: [{4D36185F-7FA6-4D43-B278-DEE16FCC203B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C2FB46A7-DD45-451B-AB74-3C3ADB5BFCD6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B46279E8-92D9-4369-BD22-D40E62DD42BA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AEC1EF3A-4484-42E5-AB0B-1D04AC2B9F0B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{160DF492-5587-4681-8A97-AA3B755E690B}] => (Allow) C:\Program Files\Elgato\4KCaptureUtility\4KCaptureUtility.exe => No File
FirewallRules: [UDP Query User{782D5BE7-DA9B-45FF-9DE1-065B6571DFBC}C:\users\bryce\appdata\roaming\magegee driver\iot_driver_v177.exe] => (Allow) C:\users\bryce\appdata\roaming\magegee driver\iot_driver_v177.exe (Shenzhen Rongyuan Technology Co.ltd. -> )
FirewallRules: [TCP Query User{5C5B2E50-F755-4CDB-8442-45FEE3E5FE8A}C:\users\bryce\appdata\roaming\magegee driver\iot_driver_v177.exe] => (Allow) C:\users\bryce\appdata\roaming\magegee driver\iot_driver_v177.exe (Shenzhen Rongyuan Technology Co.ltd. -> )
FirewallRules: [UDP Query User{993C6E94-0D2F-49B6-A9D4-6D8FB3A6EABD}C:\program files (x86)\steam\steamapps\common\infiniteblue\redreef\binaries\win64\redreef.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\infiniteblue\redreef\binaries\win64\redreef.exe => No File
FirewallRules: [TCP Query User{DAF35837-E693-4BC3-B4B4-C2A6328D28AF}C:\program files (x86)\steam\steamapps\common\infiniteblue\redreef\binaries\win64\redreef.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\infiniteblue\redreef\binaries\win64\redreef.exe => No File
FirewallRules: [UDP Query User{CD86B2C6-5270-4764-B22E-2D8929210A5B}C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [TCP Query User{F64D6FEB-D786-44FD-8AD2-CEC8B338DBDF}C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [{D39260A5-398A-44DA-87CC-E2AE3EF8EAA3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Little Nightmares\Atlas\Binaries\Win64\LittleNightmares.exe (Tarsier Studios) [File not signed]
FirewallRules: [{8947E2B1-450D-408F-A741-55F50518EBC7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Little Nightmares\Atlas\Binaries\Win64\LittleNightmares.exe (Tarsier Studios) [File not signed]
FirewallRules: [{1A035C0A-B51F-4F47-A8C4-CF2E55C32DD7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ThunderRay\ThunderRay.exe () [File not signed]
FirewallRules: [{C974BAC1-F084-4EEC-A8B9-FFCCF4AC9D09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ThunderRay\ThunderRay.exe () [File not signed]
FirewallRules: [{C1078EB4-BAA3-4BFF-A420-7631719B4989}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Five Nights at Freddy's\FiveNightsatFreddys.exe () [File not signed]
FirewallRules: [{8D6CDCB6-D150-4B60-A2E1-E243EB1B22FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Five Nights at Freddy's\FiveNightsatFreddys.exe () [File not signed]
FirewallRules: [{7DB26428-FF89-48C3-A2D3-A9D28C19C59F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [{3A6ACD51-BD86-4D35-94DA-37521E2CA8EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [UDP Query User{7DDBEB24-DAF0-4511-BC82-B464D222FBED}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{5B20DEF7-F2C3-4D17-9021-24DC34013EB7}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{B5C322F1-9C10-445E-B0CC-4CF62B87FE63}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cuphead\Cuphead.exe () [File not signed]
FirewallRules: [{31FCD7DA-BFCB-43B9-9A0F-1360876DB7BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cuphead\Cuphead.exe () [File not signed]
FirewallRules: [{36BF77B8-0544-43B4-A92D-6C94681A10BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [File not signed]
FirewallRules: [{2612AC82-E518-4FBB-ADAD-AEDABFFC6C57}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [File not signed]
FirewallRules: [{2E767818-98A9-486F-95C9-D107B560D8B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuysEACLauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{340CB0AE-B0FB-4D80-88FE-EAA6B00F60FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuysEACLauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{EBA77763-7595-4531-886E-0D415A0714D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [{449B48B4-C6AC-41E8-8ECB-92FC260DBD03}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [{D7DFB27D-1B37-4301-92A6-63FD6D53BA02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuys_client.exe () [File not signed]
FirewallRules: [{9540E23C-8CD5-489B-8414-C0DB3DA02C78}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fall Guys\FallGuys_client.exe () [File not signed]
FirewallRules: [{24762B5A-7265-4D31-87A2-64D2F8CDAA45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{FAED814E-4D6F-4383-9E13-5689DAA95A7A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [UDP Query User{960B5D56-C071-453C-AE42-1A5AFF934DC7}C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe => No File
FirewallRules: [TCP Query User{445CEE1E-51C5-4FC4-B840-1BE5F2541DE2}C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe => No File
FirewallRules: [UDP Query User{2A1FFF4F-74B8-44D4-8200-75E9E88B92F4}C:\program files (x86)\steam\steamapps\common\marvel rivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvel rivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [TCP Query User{AA0138AB-71FC-406C-9E7B-96093B6422E4}C:\program files (x86)\steam\steamapps\common\marvel rivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvel rivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{6D5EFB46-129D-4F14-A26A-C5967B7F465B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe () [File not signed]
FirewallRules: [{7B9A0614-48DC-42C2-95BB-82BC2C86877A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe () [File not signed]
FirewallRules: [{A13148F2-FA6F-44D2-AED0-D85C25FC36E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MUSYNX\MUSYNX.exe () [File not signed]
FirewallRules: [{ED9AB4CF-E92E-473E-A7E8-8FB7DAD94807}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MUSYNX\MUSYNX.exe () [File not signed]
FirewallRules: [UDP Query User{159ED2A7-F119-4DA2-A481-1519E2A1C015}C:\program files (x86)\steam\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe => No File
FirewallRules: [TCP Query User{4DD53426-0CAB-4148-96C0-D5F872D1B0EF}C:\program files (x86)\steam\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe => No File
FirewallRules: [UDP Query User{D08DE06F-66C9-46A6-8D57-F245068D399A}C:\program files (x86)\steam\steamapps\common\naraka bladepoint\narakabladepoint.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\naraka bladepoint\narakabladepoint.exe => No File
FirewallRules: [TCP Query User{25293EEF-260F-4F80-8875-15AB7C418922}C:\program files (x86)\steam\steamapps\common\naraka bladepoint\narakabladepoint.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\naraka bladepoint\narakabladepoint.exe => No File
FirewallRules: [{ED5DC0EF-19E0-476A-83CD-ADB88197D984}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MultiVersus\start_protected_game.exe => No File
FirewallRules: [{1E26F1B5-2CA2-461D-A044-0FEC710C7563}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MultiVersus\start_protected_game.exe => No File
FirewallRules: [UDP Query User{81AEC5A4-07BD-48CE-8397-6648CB9620F5}C:\users\bryce\appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{7447FFAE-53E3-4F24-AD40-C8658AF1BC6A}C:\users\bryce\appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{C5D34F9B-62FB-4EEE-A23D-5874FC3FC6DC}C:\users\bryce\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\bryce\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [TCP Query User{587AB39E-681B-4E50-A010-5203EC2EE295}C:\users\bryce\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\bryce\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [UDP Query User{5778F97B-E9CD-42B1-8DE8-CF64AE1E1B5A}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{3B89354F-715E-455C-83A2-0BCA003925F6}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{4C847284-2775-4F95-B8B3-62363E4A7B65}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{77FC8F67-000B-4F26-97B6-8B6FBB657EC9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{DF0904AA-187F-406C-95E6-ACDADED43A07}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{7385467F-1BBD-4C8C-AA3E-7B53B751E717}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6B912E8A-AE0C-4171-B656-96FC5C39D25A}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{AA9B74F1-6805-46D3-9258-1EEA6846BBCE}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{F32C5058-2DF4-4277-BE4B-49E54345E426}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_2.0.7811.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe => No File
FirewallRules: [{A170EA7A-7BED-4CC4-8165-66D7BFA97B75}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_2.0.7811.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe => No File
FirewallRules: [{F8CE6293-1AE5-49E5-9732-114B046FE005}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{19889916-3B7D-4C6F-97A9-0ACA54113523}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{3C47BC84-6E4A-499F-83E2-F1ACA954322E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{6323DF38-FA77-401B-A9D1-0586D01A9D52}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{5E498489-25F3-4D9C-A747-6236051CEBFA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{8F460283-AE19-4882-80FB-55CC7D328FCF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{F12E89D9-8726-43DF-8BDF-4BA88F35BBB2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{89A5AF4E-3B1A-4667-9919-839101EF7DE4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{6B63CB4A-45F9-4C55-A106-2ACFF63B657F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [{6B0F4254-5652-4189-9A0A-C0BACFFAD743}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.251.345.0_x64__zpdnekdrzrea0\Spotify.exe => No File
FirewallRules: [TCP Query User{BEF2DBF5-224C-4554-9822-5F4B6E7BD4AD}C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx11.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx11.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{DB0486ED-1BDB-412A-AB18-24AA3C15518F}C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx11.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx11.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{2A7F3598-206C-4F22-AC69-12DCC65157B6}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.112\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0CDECFA0-7E67-48A4-A2B1-7F5950A874AD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B1381FF8-50A9-4996-8CAB-68FDF1862E00}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6EA20943-254B-434D-9D24-9E642508E499}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AE1FDD69-90DF-4792-82C8-67DF45D033D5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{44B99932-33C2-4187-9DF6-A7F93CE71CCB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5C81386B-F02A-4C68-B045-2EF1F6596567}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DB4B8DD0-5C01-476A-ABF1-6E3E30F55C47}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3272C832-DF3B-42EF-BF0E-CDEAF4370B21}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{78399213-A1A5-4D25-BEED-1A7CF59DC49E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B8AA18A6-0F38-49FD-9007-37E286CBE4C4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3A17D2E5-F913-4579-9100-5389B6DDCE1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CrosshairX\CrosshairX.exe (2824908 Ontario Inc. -> GitHub, Inc.)
FirewallRules: [{4AAC0D09-88D0-47E7-8544-2CC2482F01B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CrosshairX\CrosshairX.exe (2824908 Ontario Inc. -> GitHub, Inc.)
FirewallRules: [TCP Query User{3C537271-8B99-4647-89EC-CBE4687E2F26}C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx12.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx12.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{E5464480-6DC3-4DDA-B58B-3FBFB390630C}C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx12.exe] => (Allow) C:\users\bryce\appdata\local\ubisoft\r6siege\scimitar_engine_win64_2022_flto_dx12.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{4C37110A-177E-4A6C-8F17-30C4B0229F61}C:\program files\epic games\hellletlooseg0wu4\hll\binaries\win64\hllepicgamesstore-win64-shipping.exe] => (Allow) C:\program files\epic games\hellletlooseg0wu4\hll\binaries\win64\hllepicgamesstore-win64-shipping.exe (BLACK MATTER PTY. LTD.) [File not signed]
FirewallRules: [UDP Query User{3AF5F1F2-DE08-4A24-880D-82A4F8D21568}C:\program files\epic games\hellletlooseg0wu4\hll\binaries\win64\hllepicgamesstore-win64-shipping.exe] => (Allow) C:\program files\epic games\hellletlooseg0wu4\hll\binaries\win64\hllepicgamesstore-win64-shipping.exe (BLACK MATTER PTY. LTD.) [File not signed]
FirewallRules: [{7CC9E44F-0C58-4619-BC52-DD2C965D7B06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gunfire Reborn\Gunfire Reborn.exe (Guangdong LiWei Network Technology Co., Ltd. -> )
FirewallRules: [{5BB5531B-7ECE-4F2D-BA59-4DA5C31A698F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gunfire Reborn\Gunfire Reborn.exe (Guangdong LiWei Network Technology Co., Ltd. -> )
FirewallRules: [{7C706BC2-5F57-42A9-94E6-872DE9CF7F12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sunkenland\Sunkenland.exe () [File not signed]
FirewallRules: [{B82324BC-2231-4135-8BA2-7B452CD56A45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sunkenland\Sunkenland.exe () [File not signed]
FirewallRules: [{3F5120D9-527D-41BE-9E2A-EF0782908222}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grounded\Grounded.exe (Obsidian Entertainment, Inc. -> Epic Games, Inc.)
FirewallRules: [{92A81337-E653-4F21-BCC1-254B76954EF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grounded\Grounded.exe (Obsidian Entertainment, Inc. -> Epic Games, Inc.)
FirewallRules: [{0C4346DF-8BF6-4B36-BBBB-58D3CA4350EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Resident Evil Village BIOHAZARD VILLAGE\re8.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{0C3EDB57-F6B5-4619-9B36-BA35972C511C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Resident Evil Village BIOHAZARD VILLAGE\re8.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{81E1C7C8-968F-4F69-B8CA-7F714724B429}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{83744EEB-46C8-41D4-B5E2-AA29052954BB}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{55FFD20A-2749-4F26-B5BE-01C7BD0E8168}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe (Acronis International GmbH -> )
FirewallRules: [{02DF5567-080E-4E19-BC6F-7D84EB374936}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> )
FirewallRules: [{A6D43958-217D-42D8-9B4F-A5E7D823A426}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe (Acronis International GmbH -> )
FirewallRules: [{F20C37D1-B664-48A9-93DA-EE2F9A5762FD}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe (Acronis International GmbH -> )
FirewallRules: [{526231A0-35C3-4888-B654-7C6094B6496D}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe (Acronis International GmbH -> )
FirewallRules: [{24399149-8C80-4B94-A8CB-5CD418E884C4}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe (Acronis International GmbH -> )
FirewallRules: [{7245E6A1-5BA5-4B1A-BE79-FED0D033BF76}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\ga_service.exe (Acronis International GmbH -> )
FirewallRules: [{52BDB498-BB2A-4E3C-8468-B537EBF9A333}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\LicenseActivator.exe (Acronis International GmbH -> )
FirewallRules: [{A22BF556-2631-415C-8D9F-04E7AE34F233}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Home\report_sender.exe (Acronis International GmbH -> )
FirewallRules: [{85C5C38A-79E5-4B3F-88F1-1929F367DD2B}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{C1ABE2A9-8266-4944-A59B-6F26081DE07A}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{5310A100-6D83-4076-8D71-C5548DD2F531}] => (Allow) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH)
 
==================== Restore Points =========================
 
 
==================== Faulty Device Manager Devices ============
Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (01/12/2025 01:14:22 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[   at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="F7NHPX2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.3.0" SMBIOSPresent="True" Rel_Date="20181008000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Inspiron 5676" Ident_Num="BRYCE" TimeZone="(UTC-08:00) Pacific Time (US & Canada)" OSName="Microsoft Windows 11 Home"/><Method>ValidateServerCertificate</Method><HostIP>192.168.0.88</HostIP></Exception>
 
Error: (01/12/2025 01:06:10 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\BRYCE$ via https://AMD-KeyId-57...plates/Aik/scepfailed:
 
GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sun, 12 Jan 2025 21:06:10 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 4765afd5-52ea-4f0f-a9d2-ea12de19cd73
 
Method: GET(94ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
 
Error: (01/12/2025 01:06:10 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for Local system via https://AMD-KeyId-57...plates/Aik/scepfailed:
 
GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sun, 12 Jan 2025 21:06:09 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 56dae050-baf7-49e7-b6a2-e9ad6d2f72ec
 
Method: GET(844ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
 
Error: (01/12/2025 12:35:11 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\BRYCE$ via https://AMD-KeyId-57...plates/Aik/scepfailed:
 
GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sun, 12 Jan 2025 20:35:11 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 1b757022-1ad1-417a-a50e-471e1cca4496
 
Method: GET(109ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
 
Error: (01/12/2025 12:35:09 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for Local system via https://AMD-KeyId-57...plates/Aik/scepfailed:
 
GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sun, 12 Jan 2025 20:35:08 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 112dccf7-c438-4da6-9b26-35f579c441a5
 
Method: GET(734ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
 
Error: (01/12/2025 12:20:20 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[   at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="F7NHPX2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.3.0" SMBIOSPresent="True" Rel_Date="20181008000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Inspiron 5676" Ident_Num="BRYCE" TimeZone="(UTC-08:00) Pacific Time (US & Canada)" OSName="Microsoft Windows 11 Home"/><Method>ValidateServerCertificate</Method><HostIP>192.168.0.88</HostIP></Exception>
 
Error: (01/12/2025 12:18:12 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Faulting application name: pcdrsysinfosoftware.p5x, version: 6.0.6992.1542, time stamp: 0x5c5d2381
Faulting module name: ucrtbase.dll, version: 10.0.26100.1882, time stamp: 0x52db7a2d
Exception code: 0xc0000409
Fault offset: 0x00000000000a502e
Faulting process id: 0x30ac
Faulting application start time: 0x1db652f116b810d
Faulting application path: C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\pcdrsysinfosoftware.p5x
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: a870ff6c-cd3c-47b1-a4c8-5321ca500fb6
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (01/12/2025 12:15:29 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\BRYCE$ via https://AMD-KeyId-57...plates/Aik/scepfailed:
 
GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sun, 12 Jan 2025 20:15:29 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 40aec061-490d-4f80-99c2-db20c1977c52
 
Method: GET(94ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
 
 
System errors:
=============
Error: (01/12/2025 01:16:29 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Update Orchestrator Service service hung on starting.
 
Error: (01/12/2025 01:10:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dell Hardware Support service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.
 
Error: (01/12/2025 01:10:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Dell Hardware Support service to connect.
 
Error: (01/12/2025 01:09:26 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Background Intelligent Transfer Service service hung on starting.
 
Error: (01/12/2025 01:04:53 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 12:35:55 PM on ‎1/‎12/‎2025 was unexpected.
 
Error: (01/12/2025 12:30:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: NT AUTHORITY)
Description: Device Association Service detected an endpoint discovery failure.
 
Error: (01/12/2025 12:30:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: NT AUTHORITY)
Description: Device Association Service detected an endpoint discovery failure.
 
Error: (01/12/2025 12:30:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: NT AUTHORITY)
Description: Device Association Service detected an endpoint discovery failure.
 
 
Windows Defender:
================
Date: 2025-01-04 02:46:17
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2025-01-02 23:39:07
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2025-01-02 20:21:57
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2025-01-01 00:01:53
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2024-12-31 02:34:01
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]
 
Date: 2025-01-07 18:05:11
Description: 
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x80004005
Error description: Unspecified error 
Reason: The filter driver skipped scanning items and is in pass through mode. This may be due to low resource conditions. 
 
CodeIntegrity:
===============
Date: 2025-01-12 12:18:35
Description: 
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\pcdsrvc_x64.pkms that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). 
 
Date: 2025-01-12 12:18:35
Description: 
The driver \Device\HarddiskVolume3\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\pcdsrvc_x64.pkms is blocked from loading as the driver has been revoked by Microsoft. 
 
Date: 2025-01-12 12:18:05
Description: 
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). 
 
Date: 2025-01-12 12:18:05
Description: 
The driver \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys is blocked from loading as the driver has been revoked by Microsoft. 
 
 
==================== Memory info =========================== 
 
BIOS: Dell Inc. 1.3.0 10/08/2018
Motherboard: Dell Inc. 0VYXHD
Processor: AMD Ryzen 7 2700 Eight-Core Processor 
Percentage of memory in use: 43%
Total physical RAM: 16275.92 MB
Available physical RAM: 9214.38 MB
Total Virtual: 27027.92 MB
Available Virtual: 15942.35 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:917.25 GB) (Free:337.4 GB) (Model: ST1000DM010-2EP102) NTFS
Drive d: (OS) (Fixed) (Total:917.25 GB) (Free:354.63 GB) (Model: CT1000P2SSD8) NTFS
 
\\?\Volume{5e1a17bf-a847-41e4-bfb2-68038f9bef29}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.28 GB) NTFS
\\?\Volume{4766b956-a2c7-44b8-a483-c846c38eefe5}\ (Image) (Fixed) (Total:11.33 GB) (Free:0.2 GB) NTFS
\\?\Volume{235e9758-2da2-4e99-83a2-97ad0798e85f}\ (DELLSUPPORT) (Fixed) (Total:1.21 GB) (Free:0.24 GB) NTFS
\\?\Volume{5e0fa752-4b92-4e74-9960-6ccbacffcb7a}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.28 GB) NTFS
\\?\Volume{a8cf11f0-3e0a-469d-8f8f-59a0288d7e67}\ (Image) (Fixed) (Total:11.33 GB) (Free:0.16 GB) NTFS
\\?\Volume{3de3a0fe-d42b-484f-9413-73bca5e3f14e}\ (DELLSUPPORT) (Fixed) (Total:1.21 GB) (Free:0.24 GB) NTFS
\\?\Volume{89106705-7ace-405d-b413-d63d5c1d2202}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.56 GB) FAT32
\\?\Volume{59ad00d9-911d-4a6b-955f-b7a1ef8d119b}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.56 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 599A377A)
 
Partition: GPT.
 
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: D219F466)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

 


    Advertisements

Register to Remove

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users