Hi, can one of you kind experts cast your eyes over a friends issue with his laptop. He has 100% disk usage, so the laptop is painfully unresponsive, I have tried chkdsk /f /r, which would only run the next time windows booted; I have tried sfc /scannow, which showed no errors. Windows Defender is showing the following: Trojan:Win32/Wacatac.DC!ml (severe); Program:Win32/Uwasson.A!ml(medium), both showing active even though we have tried to remove them; msconfig will not allow to go into safe mode, it shows: System configuration cannot save the original boot configuration for later restoration. Boot changes will be reverted. The request is not supported; lastly I tried to reset Windows, which also would not execute, so I am at a loss, and your help would be greatly appreciated.
FRST LOG.TXT
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-07-2020
Ran by Willc (administrator) on DESKTOP-DNVASHI (ASUSTeK COMPUTER INC. TUF GAMING FX504GD_FX80GD) (24-07-2020 09:00:32)
Running from C:UsersWillcDownloads
Loaded Profiles: Willc
Platform: Windows 10 Home Version 1809 17763.737 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDSA Production signing key -> Intel) C:Program Files (x86)IntelDriver and Support AssistantDSAService.exe
(IDSA Production signing key -> Intel) C:Program Files (x86)IntelDriver and Support AssistantDSATray.exe
(IDSA Production signing key -> Intel) C:Program Files (x86)IntelDriver and Support AssistantDSAUpdateService.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:Program FilesIntelIntel® Rapid Storage TechnologyIAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryiastorac.inf_amd64_a9a8972288e9f3b5RstMwService.exe
(Intel® Software Development Products -> ) C:Program FilesIntelSURQUEENCREEKSurSvc.exe
(Intel® Software Development Products -> ) C:Program FilesIntelSURQUEENCREEKx64esrv.exe
(Intel® Software Development Products -> ) C:Program FilesIntelSURQUEENCREEKx64esrv_svc.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystemAppsMicrosoft.Windows.SecHealthUI_cw5n1h2txyewySecHealthUI.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2006.10-0MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2006.10-0NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationNvTelemetryNvTelemetryContainer.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM…Run: [Launch LCore] => C:Program FilesLogitech Gaming SoftwareLCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
HKLM…Run: [Logitech Download Assistant] => C:WindowsSystem32LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM…Run: [IAStorIcon] => C:Program FilesIntelIntel® Rapid Storage TechnologyIAStorIcon.exe [321112 2019-07-29] (Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32…Run: [SunJavaUpdateSched] => C:Program Files (x86)Common FilesJavaJava Updatejusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32…Run: [Intel Driver & Support Assistant] => C:Program Files (x86)IntelDriver and Support AssistantDSATray.exe [236392 2020-07-09] (IDSA Production signing key -> Intel)
HKLMSOFTWAREPoliciesMicrosoftWindows Defender: Restriction <==== ATTENTION
HKUS-1-5-21-2348511245-4265812317-4155633532-1001…Run: [OneDrive] => C:UsersWillcAppDataLocalMicrosoftOneDriveOneDrive.exe [1592440 2019-10-09] () [File not signed]
HKUS-1-5-21-2348511245-4265812317-4155633532-1001…Run: [Discord] => C:UsersWillcAppDataLocalDiscordapp-0.0.305Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKUS-1-5-21-2348511245-4265812317-4155633532-1001…Run: [Steam] => C:Program Files (x86)Steamsteam.exe [3211040 2019-09-19] (Valve -> Valve Corporation)
HKUS-1-5-21-2348511245-4265812317-4155633532-1001…Run: [EADM] => C:Program Files (x86)OriginOrigin.exe [3114256 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts)
HKLMSoftwareMicrosoftActive SetupInstalled Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -> C:Program Files (x86)GoogleChromeApplication75.0.3770.142Installerchrmstp.exe [2019-07-17] (Google LLC -> Google LLC)
FF HKLMSOFTWAREPoliciesMozillaFirefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: 053EB6F0-29E1-4653-9632-90A924EC0FB4 – System32TasksBlueStacksHelper => C:ProgramDataBlueStacksClientHelperBlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: 07844654-72BB-4E78-9FBB-A90E3405F0C9 – System32TasksCCleanerSkipUAC => C:Program FilesCCleanerCCleaner.exe
Task: 07962D24-8DA2-4FE0-82FA-7F2A9F99E39D – System32TasksCreateExplorerShellUnelevatedTask => C:Windowsexplorer.exe /NOUACCHECK
Task: 0945D747-C01D-4959-9492-9E3743BE484D – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Verification => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0MpCmdRun.exe [512272 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: 0F963CEB-BE59-4A46-91E2-0AB2B56E4C3F – System32TasksRtHDVBg_ListenToDevice => C:Program FilesRealtekAudioHDARAVBg64.exe [1506384 2019-03-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: 26DFC5EA-FF3C-4E01-B39D-7DE7D18EC33E – System32TasksGoogleUpdateTaskMachineCore => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [153168 2018-11-23] (Google Inc -> Google Inc.)
Task: 2F421115-1043-4BDE-9F24-D9181B104CF3 – System32TasksNvTmRepCR1_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: 3FF89D57-59BE-45D0-8123-EE124876F2C8 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Scheduled Scan => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0MpCmdRun.exe [512272 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: 500CED8A-4CA3-492E-B8E1-415DFD5A5D05 – System32TasksAVGOverseer => C:Program FilesCommon FilesAVGOverseeroverseer.exe
Task: 51C80D16-CEDB-4395-8425-957EE939290D – System32TasksNvProfileUpdaterOnLogon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationUpdate CoreNvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: 653DAB61-F38A-4589-AABE-4551B780C6D7 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cache Maintenance => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0MpCmdRun.exe [512272 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: 6B0222E4-1852-4BFD-9167-4DACDEB2E677 – System32TasksRTKCPL => C:Program FilesRealtekAudioHDARAVBg64.exe [1506384 2019-03-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: 89B14BCF-4B8D-45FD-806C-B832D06707CA – System32TasksUSER_ESRV_SVC_QUEENCREEK => “C:WindowsSystem32Wscript.exe” //B //NoLogo “C:Program FilesIntelSURQUEENCREEKx64task.vbs”
Task: 8FA60A44-E1F6-4C6E-A6C6-AF8501EA981E – System32TasksNvTmRepCR3_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: 9B804CE3-F4E3-4025-8C7D-7F7C91F652E8 – System32TasksCCleaner Update => C:Program FilesCCleanerCCUpdate.exe
Task: 9DAEDD7E-252C-41D9-9B6D-C23572193B08 – System32TasksGoogleUpdateTaskMachineUA => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [153168 2018-11-23] (Google Inc -> Google Inc.)
Task: A5808276-1DC2-43BB-8A8F-4D875E6ABF80 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cleanup => C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0MpCmdRun.exe [512272 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: AD31F9D4-8933-41C6-B64F-4009D6B6D26D – System32TasksUpdate Checker => C:Program Files (x86)ASUSASUS Live UpdateUpdateChecker.exe [143160 2019-03-12] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
Task: AE45ABCD-1523-4E54-A781-24B12651D948 – System32TasksOneDrive Standalone Update Task-S-1-5-21-2348511245-4265812317-4155633532-1001 => C:UsersWillcAppDataLocalMicrosoftOneDriveOneDriveStandaloneUpdater.exe [2696520 2019-10-09] () [File not signed]
Task: C93461FC-D9F4-40A2-9AB3-516D8D8C12A7 – System32TasksNvTmMon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: CBBAC1FA-A07E-418D-9991-611AC14799EE – System32TasksNvTmRepCR2_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: D34114F7-6ADA-4CDF-9409-13820882B1C7 – System32TasksIUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:Program Files (x86)IntelIntel® Update Managerbiniumsvc.exe
Task: DA4422DA-7BBC-4423-A7C8-E7CCE29A9014 – System32TasksIntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:Program FilesIntelSURQUEENCREEKUpdaterbinIntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel® Software Development Products -> Intel Corporation)
Task: DFFDAEC2-0E80-4897-B5DD-6F09D7994C63 – System32TasksAvast SoftwareOverseer => C:Program FilesCommon FilesAVAST SoftwareOverseeroverseer.exe [1660520 2020-07-22] (Avast Software s.r.o. -> Avast Software)
Task: E14B698D-3300-4835-854B-A37806EB8DD4 – System32TasksHyperXRamApp => C:UsersWillcAppDataLocalPackages33C30B79.HyperXNGenuity_0a78dr3hq0pvtLocalState\HyperXMemoryPlug-in.exe [65536 2019-08-31] () [File not signed]
Task: EE70C3A6-7A40-48D7-8909-A60F2B5F2400 – System32TasksAntivirus Emergency Update => C:Program FilesAVGAntivirusAvEmUpdate.exe
Task: F622573B-2D47-4CAD-99C7-A387A402B85A – System32TasksIntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:Program FilesIntelSURQUEENCREEKUpdaterbinIntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel® Software Development Products -> Intel Corporation)
Task: F96A7443-8AF8-4545-9A69-0D83788E8430 – System32TasksNvTmRep_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: FB62BE76-0F7A-44EA-B02B-A0D0743F093C – System32TasksNvProfileUpdaterDaily_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationUpdate CoreNvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:WindowsTasksCreateExplorerShellUnelevatedTask.job => C:Windowsexplorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
TcpipParameters: [DhcpNameServer] 10.128.128.128
Tcpip..Interfaces2e0ce0b8-332a-4b29-921e-efdf5f7b4356: [DhcpNameServer] 8.8.8.8
Tcpip..Interfaces6aa1d373-01f1-415e-8a17-3cf1c0a1e3a1: [DhcpNameServer] 192.168.1.254
Tcpip..Interfacesed632d76-c51c-4d64-b444-527dcc72390e: [DhcpNameServer] 10.128.128.128
Internet Explorer:
==================
HKUS-1-5-21-2348511245-4265812317-4155633532-1001SoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
BHO-x32: Java Plug-In SSV Helper -> 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -> C:Program Files (x86)Javajre1.8.0_221binssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> DBC80044-A445-435b-BC74-9C25C1C588A9 -> C:Program Files (x86)Javajre1.8.0_221binjp2ssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
DPF: HKLM-x32 166B1BCA-3F9C-11CF-8075-444553540000 hxxps://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
Edge:
======
DownloadDir: C:UsersWillcDownloads
Edge Extension: (Norton Safe Web) -> EdgeExtension_SymantecCorporationNortonSafeWeb_v68kp9n051hdp => C:Program FilesWindowsAppsSymantecCorporation.NortonSafeWeb_3.11.0.0_neutral__v68kp9n051hdp [not found]
FireFox:
========
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:WindowsSysWOW64AdobeDirectornp32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:Program Files (x86)Javajre1.8.0_221bindtpluginnpDeployJava1.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:Program Files (x86)Javajre1.8.0_221binplugin2npjp2.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dv.dll [2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dvstreaming.dll [2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:Program Files (x86)GoogleUpdate1.3.34.11npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:Program Files (x86)GoogleUpdate1.3.34.11npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:UsersWillcAppDataLocalGoogleChromeUser DataDefault [2020-07-23]
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.reddit.com; hxxps://www.youtube.com; hxxps://www1.ecleneue.com
CHR Extension: (Slides) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2018-11-23]
CHR Extension: (YouTube) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsadnlfjpnmidfimlkaohpidplnoimahfh [2019-04-27]
CHR Extension: (Docs) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2018-11-23]
CHR Extension: (Google Drive) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-11-23]
CHR Extension: (YouTube) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-23]
CHR Extension: (Honey) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsbmnlcjabgnpnenekpadlanbbkooimhnj [2020-01-31]
CHR Extension: (I’m Feeling Lucky) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionscnlabakikmdekpfaflaihcepfkjopgll [2019-04-26]
CHR Extension: (Lamborghini Cherry ) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsdkkklbgbfaeockpgbkleblklmcjdbnbj [2019-01-17]
CHR Extension: (Sheets) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2018-11-23]
CHR Extension: (Google Docs Offline) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-07-22]
CHR Extension: (AdBlock — best ad blocker) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-07-22]
CHR Extension: (Chrome Web Store Payments) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2020-01-13]
CHR Extension: (Downloader for Instagram™ + Direct Message) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionsolkpikmlhoaojbbmmpejnimiglejmboe [2020-07-22]
CHR Extension: (Gmail) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) – C:UsersWillcAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-22]
CHR Profile: C:UsersWillcAppDataLocalGoogleChromeUser DataGuest Profile [2019-09-29]
CHR Profile: C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1 [2019-04-26]
CHR Extension: (Slides) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsaapocclcgogkmnckokdopfmhonfmgoek [2019-01-17]
CHR Extension: (Docs) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsaohghmighlieiainnegkcijnfilokake [2019-01-17]
CHR Extension: (Google Drive) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsapdfllckaahabafndbhieahigkjlhalf [2019-01-17]
CHR Extension: (YouTube) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2019-01-17]
CHR Extension: (Sheets) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsfelcaaldnbdncclmgdcncolpebgiejap [2019-01-17]
CHR Extension: (Google Docs Offline) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-21]
CHR Extension: (Chrome Web Store Payments) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-01-17]
CHR Extension: (Gmail) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionspjkljhegncpnkpknbcohdijeoejaedia [2019-01-17]
CHR Extension: (Chrome Media Router) – C:UsersWillcAppDataLocalGoogleChromeUser DataProfile 1Extensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-26]
CHR Profile: C:UsersWillcAppDataLocalGoogleChromeUser DataSystem Profile [2019-09-29]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AsHidService; C:WindowsSystem32DriverStoreFileRepositoryatkwmiacpiio.inf_amd64_a5cf007e1dac78efAsHidSrv64.exe [171912 2018-01-07] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S4 ASLDRService; C:WindowsSystem32DriverStoreFileRepositoryatkwmiacpiio.inf_amd64_a5cf007e1dac78efAsLdrSrv64.exe [202120 2018-01-07] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S4 BEService; C:Program Files (x86)Common FilesBattlEyeBEService.exe [8473200 2019-03-27] (BattlEye Innovations e.K. -> )
S4 DevActSvc; C:Program Files (x86)ASUSASUS Device ActivationDevActSvc.exe [325456 2018-06-11] (ASUSTek Computer Inc. -> )
S4 EasyAntiCheat; C:Program Files (x86)EasyAntiCheatEasyAntiCheat.exe [781440 2018-12-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S4 Futuremark SystemInfo Service; C:Program Files (x86)FuturemarkSystemInfoFMSISvc.exe [342456 2019-11-26] (FUTUREMARK INC -> Futuremark)
S4 ICEsoundService; C:Windowssystem32ICEsoundService64.exe [483816 2018-05-10] (ICEpower a/s -> ICEpower a/s)
S4 LogiRegistryService; C:Program FilesLogitech Gaming SoftwareDriversAPOServiceLogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
S4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2304304 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts)
S4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [3175728 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts)
S4 Rockstar Service; C:Program FilesRockstar GamesLauncherRockstarService.exe [471696 2019-09-25] (Rockstar Games, Inc. -> Rockstar Games)
S4 SetupARService; C:Program Files (x86)RealtekAudioSetupAfterRebootService.exe [10752 2018-11-23] () [File not signed]
S4 uhssvc; C:Program FilesMicrosoft Update Health Toolsuhssvc.exe [293680 2020-07-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisSvc; C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0NisSrv.exe [2496144 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:ProgramDataMicrosoftWindows Defenderplatform4.18.2006.10-0MsMpEng.exe [104192 2020-07-22] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 AvgWscReporter; “C:Program FilesAVGAntiviruswsc_proxy.exe” /runassvc /rpcserver [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:WindowsSystem32driversAppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:WindowsSystem32driversAppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R3 AsusPTPDrv; C:WindowsSystem32driversAsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 ATKWMIACPIIO; C:WindowsSystem32DriverStoreFileRepositoryatkwmiacpiio.inf_amd64_a5cf007e1dac78efatkwmiacpi64.sys [30600 2018-01-07] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S3 BEDaisy; C:Program Files (x86)Common FilesBattlEyeBEDaisy.sys [2705776 2019-09-15] (BattlEye Innovations e.K. -> )
S3 bertreader; C:WindowsSystem32driversbertreader.sys [40320 2020-03-10] (Intel Corporation -> Intel Corporation)
S3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-07-06] (Bluestack Systems, Inc. -> Bluestack System Inc.)
R3 HIDSwitch; C:WindowsSystem32driversAsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R2 LGCoreTemp; C:Program FilesLogitech Gaming SoftwareDriversLgCoreTemplgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:Windowssystem32driversLGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
R1 MpKslDrv; C:ProgramDataMicrosoftWindows DefenderDefinition UpdatesB6237A43-8253-4829-B4A4-BEA2E68E4BFDMpKslDrv.sys [43232 2020-07-24] (Microsoft Windows -> Microsoft Corporation)
S3 PHYMEM; C:UsersWillcAppDataLocalPackages33C30B79.HyperXNGenuity_0a78dr3hq0pvtLocalStateotipcibus64.sys [17488 2019-08-31] (Ours Technology Inc. -> OTi)
S3 rspWhySoSlow; C:WindowsSystem32DRIVERSrspWhy64.sys [28928 2016-12-17] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
R3 semav6msr64; C:Windowssystem32driverssemav6msr64.sys [41816 2020-06-16] (Intel Corporation -> )
R3 tap0901; C:WindowsSystem32driverstap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S0 WdBoot; C:WindowsSystem32driverswdWdBoot.sys [45976 2020-07-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:WindowsSystem32driverswdWdFilter.sys [408816 2020-07-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:WindowsSystem32driverswdWdNisDrv.sys [64224 2020-07-22] (Microsoft Windows -> Microsoft Corporation)
S4 nvvad_WaveExtensible; SystemRootsystem32driversnvvad64v.sys [X]
S4 nvvhci; SystemRootSystem32driversnvvhci.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-07-24 09:01 – 2020-07-24 09:01 – 000000000 ___HD C:$WINDOWS.~BT
2020-07-24 09:00 – 2020-07-24 09:00 – 000000000 ____D C:UsersWillcDownloadsFRST-OlderVersion
2020-07-24 08:41 – 2020-07-24 08:41 – 000003834 _____ C:Windowssystem32TasksIUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2020-07-23 16:29 – 2020-07-24 02:18 – 000000000 ___HD C:$SysReset
2020-07-23 16:10 – 2020-07-23 16:11 – 000058897 _____ C:UsersWillcDownloadsdriverview-x64.zip
2020-07-23 14:53 – 2020-07-23 14:53 – 000002678 _____ C:Windowssystem32TasksUSER_ESRV_SVC_QUEENCREEK
2020-07-23 14:21 – 2019-04-25 09:12 – 000133432 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvStreaming.exe
2020-07-23 14:14 – 2019-04-30 20:39 – 000552352 _____ (Khronos Group) C:Windowssystem32OpenCL.dll
2020-07-23 14:14 – 2019-04-30 20:39 – 000456688 _____ (Khronos Group) C:WindowsSysWOW64OpenCL.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 010323608 _____ (NVIDIA Corporation) C:Windowssystem32nvptxJitCompiler.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 008787536 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvptxJitCompiler.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 000668640 _____ C:Windowssystem32nvofapi64.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 000631896 _____ (NVIDIA Corporation) C:Windowssystem32NvIFROpenGL.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 000534544 _____ C:WindowsSysWOW64nvofapi.dll
2020-07-23 14:14 – 2019-04-30 20:38 – 000521688 _____ (NVIDIA Corporation) C:WindowsSysWOW64NvIFROpenGL.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 005276576 _____ (NVIDIA Corporation) C:Windowssystem32nvcuvid.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 002033568 _____ (NVIDIA Corporation) C:Windowssystem32NvFBC64.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001734584 _____ (NVIDIA Corporation) C:Windowssystem32nvdispco6442546.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001536416 _____ (NVIDIA Corporation) C:WindowsSysWOW64NvFBC.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001471816 _____ (NVIDIA Corporation) C:Windowssystem32nvEncMFThevc.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001468504 _____ (NVIDIA Corporation) C:Windowssystem32nvdispgenco6442546.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001465432 _____ (NVIDIA Corporation) C:Windowssystem32NvIFR64.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001462424 _____ (NVIDIA Corporation) C:Windowssystem32nvEncMFTH264.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001169336 _____ (NVIDIA Corporation) C:Windowssystem32nvfatbinaryLoader.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001152200 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvEncMFThevc.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001145936 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvEncMFTH264.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 001130128 _____ (NVIDIA Corporation) C:WindowsSysWOW64NvIFR.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 000915304 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvfatbinaryLoader.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 000794840 _____ (NVIDIA Corporation) C:Windowssystem32nvEncodeAPI64.dll
2020-07-23 14:13 – 2019-04-30 20:38 – 000638208 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvEncodeAPI.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 040421464 _____ (NVIDIA Corporation) C:Windowssystem32nvcompiler.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 035268296 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvcompiler.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 020080040 _____ (NVIDIA Corporation) C:Windowssystem32nvcuda.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 017440224 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvcuda.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 004626336 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvcuvid.dll
2020-07-23 14:13 – 2019-04-30 20:37 – 004304856 _____ (NVIDIA Corporation) C:WindowsSysWOW64nvapi.dll
2020-07-23 14:05 – 2020-07-23 14:05 – 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsIntel
2020-07-23 14:05 – 2020-07-23 14:05 – 000000000 ____D C:Program FilesCommon FilesIntel
2020-07-23 13:29 – 2020-07-23 14:19 – 000000000 ____D C:WindowsLastGood.Tmp
2020-07-23 13:28 – 2020-07-23 13:28 – 000000000 ____D C:UsersWillcDownloadsIntel Driver and Support Assistant
2020-07-23 13:27 – 2020-07-23 14:53 – 000003762 _____ C:Windowssystem32TasksIntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2020-07-23 13:27 – 2020-07-23 14:53 – 000003528 _____ C:Windowssystem32TasksIntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2020-07-23 13:27 – 2020-07-23 13:27 – 002477304 _____ (Intel) C:UsersWillcDownloadsIntel-Driver-and-Support-Assistant-Installer (2).exe
2020-07-23 13:27 – 2020-07-23 13:27 – 000001512 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsIntel Driver & Support Assistant.lnk
2020-07-23 13:27 – 2020-06-16 17:28 – 000041816 _____ C:Windowssystem32Driverssemav6msr64.sys
2020-07-23 10:57 – 2020-07-23 11:23 – 000000000 ____D C:UsersWillclaptop drivers
2020-07-23 10:49 – 2020-07-23 11:37 – 000000000 ____D C:Program FilesWhoCrashed
2020-07-23 10:49 – 2020-07-23 10:49 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsWhoCrashed
2020-07-23 10:48 – 2020-07-23 10:48 – 009936128 _____ (Resplendence Software Projects Sp. ) C:UsersWillcDownloadswhocrashedSetup.exe
2020-07-23 10:05 – 2020-07-23 10:05 – 000000080 ___SH C:bootTel.dat
2020-07-22 14:19 – 2020-07-22 14:20 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsWhySoSlow
2020-07-22 14:19 – 2020-07-22 14:19 – 000000000 ____D C:Program FilesWhySoSlow
2020-07-22 14:19 – 2016-12-17 20:59 – 000028928 _____ (Resplendence Software Projects Sp.) C:Windowssystem32DriversrspWhy64.sys
2020-07-22 11:53 – 2020-07-22 11:55 – 000047693 _____ C:UsersWillcDownloadsAddition.txt
2020-07-22 11:49 – 2020-07-24 09:01 – 000023901 _____ C:UsersWillcDownloadsFRST.txt
2020-07-22 11:45 – 2020-07-24 09:00 – 002294784 _____ (Farbar) C:UsersWillcDownloadsFRST64.exe
2020-07-22 11:41 – 2020-07-22 11:41 – 000000000 ____D C:Program FilesMicrosoft Update Health Tools
2020-07-22 11:41 – 2020-07-01 07:40 – 000438576 _____ (Microsoft Corporation) C:Windowssystem32QualityUpdateAssistant.dll
2020-07-22 11:41 – 2020-07-01 07:38 – 000915776 _____ (Microsoft Corporation) C:Windowssystem32sedplugins.dll
2020-07-22 10:57 – 2020-07-23 08:53 – 000000000 ____D C:Windowspss
2020-07-22 09:41 – 2020-07-22 09:41 – 002477304 _____ (Intel) C:UsersWillcDownloadsIntel-Driver-and-Support-Assistant-Installer (1).exe
2020-07-22 08:30 – 2020-07-22 08:30 – 002477304 _____ (Intel) C:UsersWillcDownloadsIntel-Driver-and-Support-Assistant-Installer.exe
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-07-24 09:01 – 2020-01-13 10:34 – 000000000 ____D C:FRST
2020-07-24 09:01 – 2018-11-23 20:16 – 000000000 ____D C:WindowsPanther
2020-07-24 08:40 – 2018-11-23 12:39 – 000778152 _____ C:Windowssystem32PerfStringBackup.INI
2020-07-24 08:40 – 2018-09-15 08:31 – 000000000 ____D C:WindowsINF
2020-07-24 08:37 – 2018-09-15 08:33 – 000000000 ____D C:ProgramDataregid.1991-06.com.microsoft
2020-07-24 08:36 – 2019-08-31 22:41 – 000003458 _____ C:Windowssystem32TasksHyperXRamApp
2020-07-24 08:36 – 2018-11-23 12:59 – 000000000 ____D C:ProgramDataNVIDIA
2020-07-24 08:35 – 2018-11-23 12:21 – 000000006 ____H C:WindowsTasksSA.DAT
2020-07-23 17:16 – 2018-09-15 07:09 – 000786432 _____ C:Windowssystem32configBBI
2020-07-23 17:14 – 2018-09-15 08:23 – 000000000 ____D C:WindowsCbsTemp
2020-07-23 16:42 – 2018-11-23 12:37 – 000000000 ____D C:UsersWillc
2020-07-23 16:06 – 2020-01-10 13:35 – 000007604 _____ C:UsersWillcAppDataLocalResmon.ResmonCfg
2020-07-23 15:53 – 2018-11-23 12:21 – 000000000 ____D C:Windowssystem32SleepStudy
2020-07-23 14:21 – 2020-01-17 14:30 – 000003926 _____ C:Windowssystem32TasksNvTmRepCR3_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003926 _____ C:Windowssystem32TasksNvTmRepCR2_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003926 _____ C:Windowssystem32TasksNvTmRepCR1_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003894 _____ C:Windowssystem32TasksNvProfileUpdaterDaily_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003866 _____ C:Windowssystem32TasksNvTmRep_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003858 _____ C:Windowssystem32TasksNvTmMon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2020-01-17 14:30 – 000003654 _____ C:Windowssystem32TasksNvProfileUpdaterOnLogon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8
2020-07-23 14:21 – 2018-11-23 12:57 – 000000000 ____D C:ProgramDataNVIDIA Corporation
2020-07-23 14:21 – 2018-11-23 12:57 – 000000000 ____D C:Program Files (x86)NVIDIA Corporation
2020-07-23 14:05 – 2018-11-23 12:42 – 000000000 ____D C:Program FilesIntel
2020-07-23 13:31 – 2018-11-23 12:52 – 000000000 ____D C:Program FilesNVIDIA Corporation
2020-07-23 13:27 – 2018-11-23 13:43 – 000000000 ____D C:ProgramDataPackage Cache
2020-07-23 13:27 – 2018-11-23 12:43 – 000000000 ____D C:UsersWillcAppDataLocalIntel
2020-07-23 13:27 – 2018-11-23 12:42 – 000000000 ____D C:ProgramDataIntel
2020-07-23 13:27 – 2018-11-23 12:42 – 000000000 ____D C:Program Files (x86)Intel
2020-07-23 11:54 – 2019-08-29 19:25 – 000007623 _____ C:Windowsdiagwrn.xml
2020-07-23 11:54 – 2019-08-29 19:25 – 000007623 _____ C:Windowsdiagerr.xml
2020-07-23 11:34 – 2020-01-13 10:00 – 001798438 _____ C:Windowsntbtlog.txt
2020-07-23 11:33 – 2018-11-29 15:52 – 000000214 _____ C:WindowsTasksCreateExplorerShellUnelevatedTask.job
2020-07-22 15:32 – 2018-11-23 12:22 – 000000000 ____D C:Windowssystem32Driverswd
2020-07-22 12:03 – 2019-08-29 19:33 – 000000000 ____H C:$WINRE_BACKUP_PARTITION.MARKER
2020-07-22 12:03 – 2018-09-15 07:09 – 000032768 _____ C:Windowssystem32configELAM
2020-07-22 11:53 – 2018-09-15 08:33 – 000000000 ___HD C:Program FilesWindowsApps
2020-07-22 11:53 – 2018-09-15 08:33 – 000000000 ____D C:WindowsAppReadiness
2020-07-22 11:41 – 2018-11-23 21:24 – 000000000 ____D C:Windowssystem32MRT
2020-07-22 11:38 – 2018-11-23 21:24 – 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe
2020-07-22 11:02 – 2018-09-15 07:09 – 000000000 ____D C:Windowsservicing
2020-07-22 08:41 – 2018-11-23 12:39 – 000000000 ____D C:UsersWillcAppDataLocalPackages
2020-07-22 08:36 – 2018-11-23 12:39 – 000000000 ____D C:UsersWillcAppDataLocalPublishers
2020-07-22 08:28 – 2018-11-23 20:20 – 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe
2020-07-21 15:59 – 2018-11-23 20:23 – 000000000 ____D C:UsersWillcAppDataLocalElevatedDiagnostics
==================== Files in the root of some directories ========
2020-01-10 13:35 – 2020-07-23 16:06 – 000007604 _____ () C:UsersWillcAppDataLocalResmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
——————————————————————————————————————————————————————————————————————————————————————————————-
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-07-2020
Ran by Willc (24-07-2020 09:03:05)
Running from C:UsersWillcDownloads
Windows 10 Home Version 1809 17763.737 (X64) (2018-11-23 11:31:22)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2348511245-4265812317-4155633532-500 – Administrator – Disabled)
DefaultAccount (S-1-5-21-2348511245-4265812317-4155633532-503 – Limited – Disabled)
Guest (S-1-5-21-2348511245-4265812317-4155633532-501 – Limited – Disabled)
WDAGUtilityAccount (S-1-5-21-2348511245-4265812317-4155633532-504 – Limited – Disabled)
Willc (S-1-5-21-2348511245-4265812317-4155633532-1001 – Administrator – Enabled) => C:UsersWillc
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled – Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
AS: Windows Defender (Enabled – Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
==================== Installed Programs ======================
(Only the adware programs with “Hidden” flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Shockwave Player 12.3 (HKLM-x32…Adobe Shockwave Player) (Version: 12.3.4.204 – Adobe Systems, Inc.)
Apex Legends (HKLM-x32…D7FBF176-382D-484E-863A-DFD1124A2A1C) (Version: 1.0.0.6 – Electronic Arts, Inc.)
ASUS Device Activation (HKLM-x32…9C4B0706-9F9A-47BF-B417-0A111FC52B04) (Version: 1.0.5.0 – ASUSTeK COMPUTER INC.)
ASUS Live Update (HKLM-x32…FA540E67-095C-4A1B-97BA-4D547DEC9AF4) (Version: 3.6.8 – ASUSTeK COMPUTER INC.)
Betternet for Windows 5.0.5 (HKLM-x32…2E77104D-96E1-4A9C-86F2-C7CF9C709999) (Version: 5.0.5 – Betternet Technologies Inc.)
BlueStacks App Player (HKLM…BlueStacks) (Version: 4.110.0.1081 – BlueStack Systems, Inc.)
Cisco EAP-FAST Module (HKLM-x32…64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 – Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32…AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 – Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32…