I primarily use the Edge Browser (Chrome Version) Periodically, I will suddenly not be able to access the internet. This typically appears when I open a new tab and suddenly I can not get anywhere in the new tab and then also can not open new websites on old tabs that were previously open. When this occurs, switching to another browser does not help as I still can not access the internet. Also, using other programs that access the internet directly such as quicken will also not be able to connect. I have tried various things to see what can be causing this...but nothing seems to correct the problem. However, if I restart the computer then access is restored. Typically, I then have access for a day or two and then the process repeats. Obviously not sure if this is a malware issue or something else...but no matter what other solutions I try this problem still persists. This has probably been happening for about a month or so.
I am attaching the logs that I was told to prepare below. Thanks for any help.
Ken
PS I was told that the post was too long so I will delete the addition.txt file from this post and post it as a reply.
**********************************
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-02-2020
Ran by Ken (administrator) on KEN-DELL8930 (Dell Inc. XPS 8930) (27-02-2020 08:52:21)
Running from C:\Users\Ken\Desktop
Loaded Profiles: Ken (Available Profiles: Ken & Administrator)
Platform: Windows 10 Home Version 1903 18362.657 (X64) Language: English (United States)
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Acronis International GmbH -> ) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe
(Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated -> ) C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\apdproxy.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files\Adobe\Elements 14 Organizer\PhotoshopElementsFileAgent.exe
(AimerSoft) [File not signed] C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Accounting Manager Service\cnwaambnt.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Accounting Manager Service\cnwaamsrv.exe
(CANON INC. -> CANON INC.) C:\Program Files (x86)\Canon\OIPTonerStatus\CnTnrStsTask.exe
(Carbonite -> Carbonite, Inc. (www.carbonite.com)) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
(Carbonite -> Carbonite, Inc.) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
(Corel Corporation -> InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc -> Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\91.4.548\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\91.4.548\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\91.4.548\QtWebEngineProcess.exe
(Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express\express.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki133889.inf_amd64_b4f1426b0a27dd87\igfxCUIService.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki133889.inf_amd64_b4f1426b0a27dd87\igfxEM.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki133889.inf_amd64_b4f1426b0a27dd87\IntelCpHDCPSvc.exe
(Intel® pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki133889.inf_amd64_b4f1426b0a27dd87\IntelCpHeciSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_eea3cf789013ad4f\RstMwService.exe
(Intel® Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fd0b4b97d35097fa\aesm_service.exe
(Intel® Trust Services -> Intel® Corporation) C:\Program Files\Intel\Intel® Management Engine Components\iCLS\SocketHeciServer.exe
(Laplink Software Inc. -> Laplink Software, Inc.) C:\Program Files (x86)\Laplink\PCmover\PcmService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12002.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.133.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdd.inf_amd64_90c9fd93d2dcbc55\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdd.inf_amd64_90c9fd93d2dcbc55\Display.NvContainer\NVDisplay.Container.exe
(Plex, Inc. -> ) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe
(Plex, Inc. -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
(Plex, Inc. -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe
(Plex, Inc. -> Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
(Protexis Inc. -> Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Rivet Networks LLC -> CloudBees, Inc.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe
(Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(Sanford, L.P.) [File not signed] C:\Program Files (x86)\DYMO\DYMO Label Software\DYMO.DLS.Printing.Host.exe
(Sanford, L.P.) [File not signed] C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S80RPB.EXE
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_32ATI1GE.EXE
(Shenzhen RedFox Project Technology Co.,Ltd. -> ) C:\Program Files (x86)\SlySoft\AnyDVD\ADvdDiscHlp64.exe
(Shenzhen RedFox Project Technology Co.,Ltd. -> RedFox) C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\NortonSecurity.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\NortonSecurity.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\nsWscSvc.exe
(The CefSharp Authors) [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
Failed to access process -> OUTLOOK.EXE
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235944 2017-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493992 2017-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [DellMobileConnectWelcome] => C:\Program Files\Dell\DellMobileConnectDrivers\DellMobileConnectWStartup.exe [340480 2018-08-26] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [824240 2019-09-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1198448 2017-08-30] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [318920 2019-05-30] (Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2020-01-16] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobePSE18AutoAnalyzer] => C:\Program Files\Adobe\Elements 2020 Organizer\Elements Auto Creations 2020.exe [3560048 2020-01-05] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Photo Downloader] => C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\apdproxy.exe [67488 2007-09-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1734144 2013-05-29] (AimerSoft) [File not signed]
HKLM-x32\...\Run: [CanonQuickToolbox] => C:\Program Files (x86)\Canon\Quick Utility Toolbox\cnqtbapp.exe [1942696 2017-07-13] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [QuickFinder Scheduler] => c:\Program Files (x86)\Corel\WordPerfect Office X6\Programs\QFSCHD160.EXE [155592 2012-10-31] (Corel Corporation -> Corel Corporation)
HKLM-x32\...\Run: [PowerDVD15Agent] => C:\Program Files (x86)\CyberLink\PowerDVD15\PowerDVD15Agent.exe [958504 2017-10-29] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [DLSWebSvc] => C:\Program Files (x86)\DYMO\DYMO Label Software\DYMO.DLS.Printing.Host.exe [5130240 2018-08-02] (Sanford, L.P.) [File not signed]
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5048456 2019-11-19] (Acronis International GmbH -> )
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6260736 2020-02-19] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Carbonite Backup] => C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe [1278056 2019-04-30] (Carbonite -> Carbonite, Inc.)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [441448 2019-09-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [Canon Toner Status] => C:\Program Files (x86)\Canon\OIPTonerStatus\CnTnrStsTask.exe [1906808 2018-06-20] (CANON INC. -> CANON INC.)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [Amazon Music] => C:\Users\Ken\AppData\Local\Amazon Music\Amazon Music Helper.exe [5907944 2016-04-14] (Amazon Services LLC -> )
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [AnyDVD] => C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe [15903496 2020-01-09] (Shenzhen RedFox Project Technology Co.,Ltd. -> RedFox)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_32ATI1GE.EXE [303312 2016-04-13] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [NETGEARGenie] => C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [602880 2015-06-01] (NETGEAR TAIWAN CO., LTD -> NETGEAR Inc.)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_32ATI1GE.EXE [303312 2016-04-13] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30919232 2019-03-19] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Ken\AppData\Local\Microsoft\Teams\Update.exe [1789768 2019-08-17] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [GoogleChromeAutoLaunch_7B432AF95175F0A0C2236904A29B40E9] => "C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [24181744 2019-11-22] (Plex, Inc. -> Plex, Inc.)
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [MicrosoftEdgeAutoLaunch_065DF67E6FF6AD84997174DCC18BFDCE] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\Run: [MicrosoftEdgeAutoLaunch_7B432AF95175F0A0C2236904A29B40E9] => "C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\...\MountPoints2: {fa022617-e7c9-11e8-bc01-806e6f6e6963} - "D:\disk1\setup.exe"
HKU\S-1-5-18\...\Policies\system: [DisableLockWorkstation] 0
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.122\Installer\chrmstp.exe [2020-02-24] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.62\Installer\setup.exe [2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00258AA1-F170-42BF-A3D1-25A4B08F604D} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {002C88B8-8EFE-45AD-A4EC-E477DCC4C81D} - \Microsoft\Windows\rempl\shell -> No File <==== ATTENTION
Task: {02A42E1B-A4F5-4593-A6FE-ADD85AAC5CC7} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-01] (Dropbox, Inc -> Dropbox, Inc.)
Task: {056AF1FF-1B5C-4479-9F0D-8E8F198C355A} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1448840 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {0933F57A-9DFC-41B5-A3C7-65DDF94F31FD} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\SymErr.exe [116392 2020-01-21] (Symantec Corporation -> Symantec Corporation)
Task: {0DA997B4-6AC0-4393-A575-EA40BE6318F3} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {0EF36B67-58B1-45AE-B2A5-4FD0EED26BE2} - System32\Tasks\{5F6010C8-60E5-41f3-BF5B-C3AF5DBE12D4} => Powershell -noexit -command "&{$carbProgramDataPath = $env:ProgramData + '\Carbonite\Carbonite Backup\';$upgradeExe = 'CarboniteUpgrade.exe';$upgradeFullPath = $carbProgramDataPath + $upgradeExe;$logFile = 'CarboniteUpgrade.log';$logFileFullPath = $carbProgramDataPath + $logFile;$psversion = [string]$psversio (the data entry has 1818 more characters).
Task: {16DAB9CF-D2E4-4DE1-B7C0-84E2F77DF535} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {1742886B-D48E-4FEB-899F-7BE802DBD2A9} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [934848 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1855D577-EBA1-4170-A2F3-EBE93D148202} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [934848 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1A9802E4-228C-4F76-880A-790EBDECF595} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2019-03-19] (Garmin International, Inc. -> )
Task: {20E57595-BFDD-4348-AA46-78DC7F082E4D} - System32\Tasks\GoogleUpdateTaskMachineCore1d57d7322778f0e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-22] (Google Inc -> Google Inc.)
Task: {2B01005E-9A54-4D32-B550-AF5306CF18D0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24568696 2020-02-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {2EC81724-B90F-450A-83D6-0A3B1309A0F9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {34B4DB99-FC86-4C27-ACB9-AB7BE98AE38D} - System32\Tasks\EPSON SC-P600 Series Update {68E874A8-ED42-4E2A-82B9-841EF7536E5B} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_32TS01GA.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {357ECDD9-B81D-436B-9762-058F40F2A0B1} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [253600 2015-12-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {405DAA32-8EA7-45F4-B20C-EFECA255365A} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [338872 2015-06-22] (CyberLink Corp. -> CyberLink Corp.)
Task: {4331B73F-8238-4F12-8BE7-6D7B943E62AE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [857024 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {43AA6D06-1389-43D1-9949-E92A78980A47} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764352 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5361FC59-76D7-4E2F-98B2-FA3DB96C630B} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [934848 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {55E177B8-B84D-4B1B-97BF-1CDCB9747DEF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {5A72814B-C53F-422B-802B-2BEE50B0A7FF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764352 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5C8EA62C-7BA8-4EC7-80C5-5515807642A1} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1353616 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {619C0196-A105-4562-B1CE-A189F435102C} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {62553B65-4061-4AC2-813A-348347A245A9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-22] (Google Inc -> Google Inc.)
Task: {64E2DC7E-425E-4208-8172-53DCF0D0765A} - System32\Tasks\Norton Security\Norton Security Error Processor => C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\SymErr.exe [116392 2020-01-21] (Symantec Corporation -> Symantec Corporation)
Task: {668E0030-20D3-4344-8278-53C1DF819131} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [857024 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {826A4B5D-0AD6-473D-8C2C-33616AEC5162} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {8F2A1887-EE51-4B1F-9413-138ABAD34ED8} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [1926304 2020-01-21] (Symantec Corporation -> Symantec Corporation)
Task: {90CE8047-8E47-4116-834C-EE9CFFE7CEFB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115024 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {9632DBFC-582C-4131-9C46-4BD7049FA9F4} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [934848 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {97913BAE-28EB-4CDF-B3A8-FDD7F0DC4E73} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-01] (Dropbox, Inc -> Dropbox, Inc.)
Task: {9FB7AF98-2190-4538-90EA-A750BC0A4071} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1353616 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC27502A-DDA4-40AC-8556-3349169DB11B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3297728 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B1443ABF-B361-4751-A892-D627A57FD4C2} - System32\Tasks\EPSON SC-P600 Series Update {64E00434-1E87-44E7-BF35-FA7E9A7178AE} => C:\Windows\system32\spool\DRIVERS\x64\3\E_32TS01GA.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {B906C8B8-FBF4-428E-AD5A-34086C2BF81A} - System32\Tasks\Norton Security\Norton Security Autofix => C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\SymErr.exe [116392 2020-01-21] (Symantec Corporation -> Symantec Corporation)
Task: {CC2F2027-3D69-48C3-B784-1D92DF58443D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115024 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {D11AFDDB-7CAF-4BE6-9169-A17F5D3D305E} - System32\Tasks\Canon\OIPPESP\Canon OIP Product Extended Survey Program => C:\Program Files\Canon\OIPPESP\Cnpspcnt.exe [1826800 2018-05-30] (CANON INC. -> CANON INC.)
Task: {DF01E6C0-FBDB-4CBE-AD7F-5C34EEC56FE1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [982464 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DF2E3D5C-628E-4346-9CC2-42DAE4805AFE} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\WSCStub.exe [570824 2020-01-21] (Symantec Corporation -> Symantec Corporation)
Task: {e398a6ea-e047-492d-a50c-f3bfbcb0f42d} - no filepath
Task: {E563A5D4-8647-4EDC-9267-22A352A9FCF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-22] (Google Inc -> Google Inc.)
Task: {F40DD982-A7B4-4490-8D4E-9944DF766A9B} - System32\Tasks\GoogleUpdateTaskMachineUA1d57d73227b3619 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2016-01-22] (Google Inc -> Google Inc.)
Task: {FCC92FC6-9EED-4155-A32D-5C174AD10291} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [654784 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FDECEAD1-E270-4121-A1B3-CE57BD51CE33} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24568696 2020-02-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\EPSON SC-P600 Series Update {64E00434-1E87-44E7-BF35-FA7E9A7178AE}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_32TS01GA.EXE:/EXE:{64E00434-1E87-44E7-BF35-FA7E9A7178AE} /F:UpdateWORKGROUP\KEN-DELL8930$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.86.1
Tcpip\..\Interfaces\{31f3c395-210a-447c-a629-3f8ccd2baef6}: [DhcpNameServer] 192.168.86.1
Tcpip\..\Interfaces\{49c6cb82-7065-47d2-8ee2-5646a892f12d}: [DhcpNameServer] 192.168.86.1
Tcpip\..\Interfaces\{6776df83-7065-4260-ab80-d3f13221c165}: [DhcpNameServer] 192.168.86.1
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nytimes.com/
HKU\S-1-5-21-1265487667-690578034-1755577161-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
SearchScopes: HKLM -> {251ADC46-D224-4B58-92B4-596AA3184954} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {251ADC46-D224-4B58-92B4-596AA3184954} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1265487667-690578034-1755577161-1001 -> DefaultScope {5F573C7C-42AC-4CC0-AF6D-E2EA4B9A1145} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1265487667-690578034-1755577161-1001 -> {251ADC46-D224-4B58-92B4-596AA3184954} URL =
SearchScopes: HKU\S-1-5-21-1265487667-690578034-1755577161-1001 -> {5F573C7C-42AC-4CC0-AF6D-E2EA4B9A1145} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\coIEPlg.dll [2020-01-21] (Symantec Corporation -> Symantec Corporation)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH -> Eyeo GmbH)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine32\22.20.1.69\coIEPlg.dll [2020-01-21] (Symantec Corporation -> Symantec Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-05-08] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (EVERNOTE CORPORATION -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-05-08] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH -> Eyeo GmbH)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\coIEPlg.dll [2020-01-21] (Symantec Corporation -> Symantec Corporation)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine32\22.20.1.69\coIEPlg.dll [2020-01-21] (Symantec Corporation -> Symantec Corporation)
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxps://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies SA -> Skype Technologies)
DownloadDir: C:\Users\Ken\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-1265487667-690578034-1755577161-1001 -> hxxp://www.washingtonpost.com/
Edge Extension: (Norton Password Manager) -> EdgeExtension_SymantecCorporation5478111E43ACF_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.5478111E43ACF_6.6.1.0_neutral__v68kp9n051hdp [2019-11-09]
Edge Profile: C:\Users\Ken\AppData\Local\Microsoft\Edge\User Data\Default [2020-02-27]
Edge DownloadDir: C:\Users\Ken\Downloads
Edge HomePage: Default -> hxxp://www.washingtonpost.com/
Edge StartupUrls: Default -> "hxxps://washingtonpost.com/"
Edge Extension: (Wikibuy from Capital One) - C:\Users\Ken\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kiiaghlmeikbpmeabhilfphikfcefljn [2020-02-13]
Edge Extension: (Norton Password Manager) - C:\Users\Ken\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcccdlklhahfmobgpnilndimkankpnkg [2020-02-13]
FF DefaultProfile: ce7h3wgu.default
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\76cj6nlz.ip-21 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\76cj6nlz.ip-21\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\76cj6nlz.ip-21 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\76cj6nlz.ip-21 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\76cj6nlz.ip-21\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\76cj6nlz.ip-21\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\79pzz6m2.ip-18 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\79pzz6m2.ip-18\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\79pzz6m2.ip-18 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\79pzz6m2.ip-18 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\79pzz6m2.ip-18\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\79pzz6m2.ip-18\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\091rvqxk.ip_03 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\091rvqxk.ip_03\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\091rvqxk.ip_03 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\091rvqxk.ip_03 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\091rvqxk.ip_03\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\091rvqxk.ip_03\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\awjz3kbx.ip-19 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\awjz3kbx.ip-19\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\awjz3kbx.ip-19 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\awjz3kbx.ip-19 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\awjz3kbx.ip-19\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\awjz3kbx.ip-19\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq7uc7kx.ip-12 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq7uc7kx.ip-12\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\oq7uc7kx.ip-12 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\oq7uc7kx.ip-12 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq7uc7kx.ip-12\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq7uc7kx.ip-12\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\yrwvy0mx.ip_02 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\yrwvy0mx.ip_02\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\yrwvy0mx.ip_02 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\yrwvy0mx.ip_02 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\yrwvy0mx.ip_02\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\yrwvy0mx.ip_02\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p7ymnyxh.ip-24 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p7ymnyxh.ip-24\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\p7ymnyxh.ip-24 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\p7ymnyxh.ip-24 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p7ymnyxh.ip-24\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p7ymnyxh.ip-24\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ig8zl4zh.ip-13 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ig8zl4zh.ip-13\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\ig8zl4zh.ip-13 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\ig8zl4zh.ip-13 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ig8zl4zh.ip-13\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ig8zl4zh.ip-13\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ipvpe0zg.ip-23 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ipvpe0zg.ip-23\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\ipvpe0zg.ip-23 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\ipvpe0zg.ip-23 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ipvpe0zg.ip-23\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ipvpe0zg.ip-23\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\hwiric4p.ip_01 [2019-11-14]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\hwiric4p.ip_01\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\hwiric4p.ip_01 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\hwiric4p.ip_01 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\hwiric4p.ip_01\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\hwiric4p.ip_01\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\j60atu2s.ip-14 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\j60atu2s.ip-14\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\j60atu2s.ip-14 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\j60atu2s.ip-14 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\j60atu2s.ip-14\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\j60atu2s.ip-14\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ce7h3wgu.default [2020-02-25]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ce7h3wgu.default\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\ce7h3wgu.default -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\ce7h3wgu.default -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ce7h3wgu.default\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ce7h3wgu.default\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-14]
FF Extension: (Norton Password Manager) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\ce7h3wgu.default\Extensions\idsafe@norton.com.xpi [2019-11-14]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq5vnvj9.ip_05 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq5vnvj9.ip_05\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\oq5vnvj9.ip_05 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\oq5vnvj9.ip_05 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq5vnvj9.ip_05\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\oq5vnvj9.ip_05\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\r87jxm8r.ip-15 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\r87jxm8r.ip-15\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\r87jxm8r.ip-15 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\r87jxm8r.ip-15 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\r87jxm8r.ip-15\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\r87jxm8r.ip-15\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p91xh5tm.ip-22 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p91xh5tm.ip-22\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\p91xh5tm.ip-22 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\p91xh5tm.ip-22 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p91xh5tm.ip-22\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\p91xh5tm.ip-22\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\8t848p51.ip_04 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\8t848p51.ip_04\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\8t848p51.ip_04 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\8t848p51.ip_04 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\8t848p51.ip_04\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\8t848p51.ip_04\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\fvt03m4d.ip-16 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\fvt03m4d.ip-16\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\fvt03m4d.ip-16 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\fvt03m4d.ip-16 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\fvt03m4d.ip-16\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\fvt03m4d.ip-16\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\x81kj2vp.ip-09 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\x81kj2vp.ip-09\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\x81kj2vp.ip-09 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\x81kj2vp.ip-09 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\x81kj2vp.ip-09\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\x81kj2vp.ip-09\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\23d015bu.ip-17 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\23d015bu.ip-17\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\23d015bu.ip-17 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\23d015bu.ip-17 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\23d015bu.ip-17\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\23d015bu.ip-17\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\56xa0ucs.ip-08 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\56xa0ucs.ip-08\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\56xa0ucs.ip-08 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\56xa0ucs.ip-08 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\56xa0ucs.ip-08\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\56xa0ucs.ip-08\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\gf6fls7t.ip-07 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\gf6fls7t.ip-07\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\gf6fls7t.ip-07 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\gf6fls7t.ip-07 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\gf6fls7t.ip-07\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\gf6fls7t.ip-07\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\7db3ijao.ip-10 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\7db3ijao.ip-10\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\7db3ijao.ip-10 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\7db3ijao.ip-10 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\7db3ijao.ip-10\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\7db3ijao.ip-10\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\2rqrg0oc.ip-20 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\2rqrg0oc.ip-20\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\2rqrg0oc.ip-20 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\2rqrg0oc.ip-20 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\2rqrg0oc.ip-20\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\2rqrg0oc.ip-20\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\k2cjoopk.ip_06 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\k2cjoopk.ip_06\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\k2cjoopk.ip_06 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\k2cjoopk.ip_06 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\k2cjoopk.ip_06\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\k2cjoopk.ip_06\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-05-01]
FF ProfilePath: C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\4qel0c33.ip-11 [2019-06-05]
FF user.js: detected! => C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\4qel0c33.ip-11\user.js [2018-11-29]
FF Homepage: Mozilla\Firefox\Profiles\4qel0c33.ip-11 -> hxxps://www.alexamaster.net/sec/login.php
FF Notifications: Mozilla\Firefox\Profiles\4qel0c33.ip-11 -> hxxps://www.alexamaster.net
FF Extension: (Alexa Traffic Rank) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\4qel0c33.ip-11\Extensions\alx-ffdeveloper@amazon.com.xpi [2018-05-04]
FF Extension: (Best Proxy Switcher) - C:\Users\Ken\AppData\Roaming\Mozilla\Firefox\Profiles\4qel0c33.ip-11\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2018-03-08]
FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2018-11-26] [Legacy] [not signed]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1228198.dll [2017-02-27] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-05-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-05-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.)
CHR Profile: C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default [2019-11-25]
CHR Extension: (Norton Password Manager) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\admmjipmmciaobhojoghlmleefbicajg [2019-11-22]
CHR Extension: (Norton Security Toolbar) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2019-05-19]
CHR Extension: (GoodTwitter) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbanhionoclikdjnjlcmefiofgjimgca [2019-11-10]
CHR Extension: (Twitter) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnhafpappkfaoibaimdblonlcmclladf [2019-07-27]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-09]
CHR Extension: (AutoScroll) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\occjjkgifpmdgodlplnacmkejpdionan [2018-12-26]
CHR Extension: (Chrome Media Router) - C:\Users\Ken\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-07]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\Exts\Chrome.crx <not found>
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\Exts\Chrome.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [10316304 2019-09-23] (Acronis International GmbH -> )
R2 AdobeActiveFileMonitor11.0; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [171600 2012-09-23] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AdobeActiveFileMonitor14.0; C:\Program Files\Adobe\Elements 14 Organizer\PhotoshopElementsFileAgent.exe [226016 2015-12-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AESMService; C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fd0b4b97d35097fa\aesm_service.exe [716824 2019-09-22] (Intel® Software Development Products -> Intel Corporation)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-10-07] (Apple Inc. -> Apple Inc.)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [386976 2019-08-08] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
R2 CanonAccountingManagerService; C:\Program Files (x86)\Canon\Accounting Manager Service\cnwaamsrv.exe [603280 2017-08-21] (Canon Inc. -> CANON INC.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11096648 2020-02-12] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-01] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-01] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-02-19] (Dropbox, Inc -> Dropbox, Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [293528 2018-10-20] (Dell Inc -> Dell Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [36032 2019-11-08] (Dell Inc -> )
R2 DymoPnpService; C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe [27136 2018-08-02] (Sanford, L.P.) [File not signed]
S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-02-13] (Microsoft Corporation -> Microsoft Corporation)
S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-02-13] (Microsoft Corporation -> Microsoft Corporation)
R2 EPSON_PM_RPCV4_08; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S80RPB.EXE [159952 2016-04-13] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2016-01-16] (Macrovision Europe Ltd.) [File not signed]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [97824 2017-11-15] (INTERNET PROJECT LLC -> Freemake)
S4 HfcDisableService; C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_eea3cf789013ad4f\HfcDisableService.exe [1881672 2019-05-20] (Intel® Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfsService; C:\WINDOWS\System32\iaStorAfsService.exe [2859592 2019-05-20] (Intel® Rapid Storage Technology -> Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [391744 2017-07-11] (Canon Inc. -> )
R3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\SocketHeciServer.exe [870248 2019-06-07] (Intel® Trust Services -> Intel® Corporation)
S2 Intel® TPM Provisioning Service; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\TPMProvisioningService.exe [790376 2019-06-07] (Intel® Trust Services -> Intel® Corporation)
R2 IviRegMgr; c:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [110736 2010-05-20] (Corel Corporation -> InterVideo)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [538088 2019-08-05] (Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2484408 2018-07-27] (Rivet Networks LLC -> Rivet Networks)
S3 LLCertificateService; C:\Program Files (x86)\Common Files\Laplink\LLCertificateService.exe [532624 2018-10-12] (Laplink Software Inc. -> Laplink Software, Inc)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6960640 2019-11-28] (Malwarebytes Inc -> Malwarebytes)
S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.62\elevation_service.exe [1093504 2020-02-25] (Microsoft Corporation -> Microsoft Corporation)
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4808088 2018-09-20] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2018-09-20] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1916824 2019-11-18] (Acronis International GmbH -> )
S3 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [232192 2015-06-01] (NETGEAR TAIWAN CO., LTD -> NETGEAR)
R2 NortonSecurity; C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\NortonSecurity.exe [227352 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R2 nsWscSvc; C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\Engine\22.20.1.69\nsWscSvc.exe [937528 2020-01-21] (Symantec Corporation -> Symantec Corporation)
S3 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764352 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764352 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PCmoverService; C:\Program Files (x86)\Laplink\PCmover\PcmService.exe [22160 2018-10-12] (Laplink Software Inc. -> Laplink Software, Inc.)
R2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [2140144 2019-11-22] (Plex, Inc. -> Plex, Inc.)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [191768 2019-08-09] (Qualcomm Atheros -> Qualcomm Technologies Inc.)
R2 RstMwService; C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_eea3cf789013ad4f\RstMwService.exe [2156616 2019-05-20] (Intel® Rapid Storage Technology -> Intel Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324584 2017-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [7095824 2019-09-23] (Acronis International GmbH -> Acronis International GmbH)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [829816 2017-08-30] (Waves Inc -> Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-18] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-18] (Microsoft Corporation -> Microsoft Corporation)
S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72888 2018-07-27] (Rivet Networks LLC -> CloudBees, Inc.)
R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72888 2018-07-27] (Rivet Networks LLC -> CloudBees, Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvdd.inf_amd64_90c9fd93d2dcbc55\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvdd.inf_amd64_90c9fd93d2dcbc55\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AnyDVD; C:\WINDOWS\System32\Drivers\AnyDVD.sys [163832 2019-01-28] (Microsoft Windows Hardware Compatibility Publisher -> RedFox)
R3 AnyDVD; C:\Windows\SysWOW64\Drivers\AnyDVD.sys [163832 2019-01-28] (Microsoft Windows Hardware Compatibility Publisher -> RedFox)
R1 BHDrvx64; C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\NortonData\22.16.2.22\Definitions\BASHDefs\20200224.005\BHDrvx64.sys [1952136 2019-09-30] (Symantec Corporation -> Symantec Corporation)
R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\ccSetx64.sys [192376 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R2 CLFCL5.15; C:\WINDOWS\system32\DRIVERS\CLFCL5.15\000.fcl [46848 2017-10-29] (CyberLink Corp. -> CyberLink Corp.)
R4 DBUtil_2_3; C:\WINDOWS\TEMP\DBUtil_2_3.Sys [14840 2020-02-27] (Dell Inc. -> )
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
R3 e2xw10x64; C:\WINDOWS\System32\drivers\e2xw10x64.sys [164816 2018-11-26] (Rivet Networks LLC -> Qualcomm Atheros, Inc.)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [516784 2019-10-09] (Symantec Corporation -> Symantec Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [154288 2019-10-09] (Symantec Corporation -> Symantec Corporation)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-02-11] (Malwarebytes Corporation -> Malwarebytes)
R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [687768 2019-12-05] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [390592 2019-12-05] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R3 HfAudio; C:\WINDOWS\System32\drivers\HfAudio.sys [82368 2018-08-25] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [226984 2018-05-02] (McAfee, Inc. -> McAfee, Inc.)
R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1033288 2019-05-20] (Intel® Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [72776 2019-05-20] (Intel® Rapid Storage Technology -> Intel Corporation)
R1 IDSVia64; C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\NortonData\22.16.2.22\Definitions\IPSDefs\20200226.061\IDSvia64.sys [1451016 2019-08-05] (Symantec Corporation -> Symantec Corporation)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [144592 2018-07-27] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-02-11] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-11-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [226448 2020-02-27] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73584 2020-02-27] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-02-27] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [119960 2020-02-21] (Malwarebytes Inc -> Malwarebytes)
R3 MEIx64; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys [266128 2019-04-17] (Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdd.inf_amd64_90c9fd93d2dcbc55\nvlddmkm.sys [22739392 2019-12-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30656 2018-05-20] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [67432 2018-03-15] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [68112 2018-04-27] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Qcamain10x64; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2436376 2019-08-09] (Qualcomm Atheros -> Qualcomm Atheros, Inc.)
R3 ScrHIDDriver2; C:\WINDOWS\System32\drivers\ScrHIDDriver2.sys [67008 2018-08-25] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
R1 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\SRTSP64.SYS [889520 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\SRTSPX64.SYS [50864 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\SYMEFASI64.SYS [1964200 2020-01-21] (Symantec Corporation -> Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\SymELAM.sys [25744 2020-01-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [100064 2019-03-24] (Symantec Corporation -> Symantec Corporation)
R3 SymEvnt; C:\Program Files (x86)\{9FC36072-E9B9-44D7-92C8-B78248104A0B}\NortonData\22.16.2.22\SymPlatform\SymEvnt.sys [712368 2020-01-17] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\Ironx64.SYS [316656 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\symnets.sys [573448 2020-01-21] (Symantec Corporation -> Symantec Corporation)
S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [883256 2019-12-05] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [171968 2019-12-05] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [693768 2019-12-05] (Acronis International GmbH -> Acronis International GmbH)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R3 USBIPEnum; C:\WINDOWS\System32\drivers\USBIPEnum.sys [52296 2011-06-04] (ReactOS Foundation -> Windows ® Win 7 DDK provider)
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [330176 2019-12-05] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [243472 2019-12-05] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-18] (Microsoft Windows -> Microsoft Corporation)
S3 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614010.045\wpCtrlDrv.sys [1012120 2020-01-21] (Symantec Corporation -> Symantec Corporation)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [63840 2015-06-06] (Intel® Software -> Intel Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-02-27 08:52 - 2020-02-27 08:53 - 000079456 _____ C:\Users\Ken\Desktop\FRST.txt
2020-02-27 08:51 - 2020-02-27 08:53 - 000000000 ____D C:\FRST
2020-02-27 08:49 - 2020-02-27 08:49 - 002279424 _____ (Farbar) C:\Users\Ken\Desktop\FRST64.exe
2020-02-27 08:44 - 2020-02-27 08:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation
2020-02-27 08:19 - 2020-02-27 08:19 - 000226448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2020-02-27 08:19 - 2020-02-27 08:19 - 000073584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2020-02-21 09:40 - 2020-02-21 09:40 - 000001447 _____ C:\Users\Ken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Elements Creations Notification 2020.lnk
2020-02-21 08:57 - 2020-02-21 08:57 - 000000000 ____D C:\Users\Ken\Documents\Adobe
2020-02-21 08:55 - 2020-02-21 08:55 - 000001273 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Elements 2020.lnk
2020-02-21 08:55 - 2020-02-21 08:55 - 000001261 _____ C:\Users\Public\Desktop\Adobe Photoshop Elements 2020.lnk
2020-02-21 08:55 - 2020-02-21 08:55 - 000001261 _____ C:\ProgramData\Desktop\Adobe Photoshop Elements 2020.lnk
2020-02-21 08:50 - 2020-02-25 10:52 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-02-21 08:50 - 2020-02-25 10:52 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2020-02-21 08:50 - 2020-02-21 08:50 - 000003518 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2020-02-21 08:42 - 2020-02-27 08:19 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-02-21 08:42 - 2020-02-21 08:42 - 000119960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2020-02-21 08:16 - 2020-02-21 08:16 - 000000000 ____D C:\Users\Ken\Downloads\GPlus_UFRII_Driver_V220_W64_00
2020-02-21 08:15 - 2020-02-21 08:15 - 036733168 _____ C:\Users\Ken\Downloads\GPlus_UFRII_Driver_V220_W64_00.exe
2020-02-20 16:07 - 2020-02-20 16:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
0 thoughts to “Plex Websocket Browser Plugin x32 download”