Fix result of Farbar Recovery Scan Tool (x64) Version: 13-06-2026 Ran by Noc (13-06-2026 09:23:10) Run:1 Running from C:\Users\Noc\Desktop\Temporary\[No uploads] Loaded Profiles: Noc Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: SystemRestore: On CreateRestorePoint: File: C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll File: C:\Users\Noc\AppData\Local\Clavier+\Clavier.exe; C:\DWMBlurGlass v2.3.2 Beta3\DWMBlurGlassHost.dll File: C:\Program Files\Windows Sidebar\sidebar.exe HKLM\...\Run: [TrueImageMonitor.exe] => C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe (No File) HKLM-x32\...\Run: [] => [X] HKLM\...\Policies\Explorer: [UseDesktopIniCache] 0 HKLM\...\Policies\Explorer: [SettingsPageVisibility] hide:windowsupdate HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\51.0.9.0\GoogleDriveFS.exe --startup_mode (No File) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\51.0.9.0\GoogleDriveFS.exe --startup_mode (No File) HKU\S-1-5-21-3689859802-142097239-3138972455-1001\...\Run: [Clipper Service] => C:\Users\Noc\AppData\Roaming\svchost.exe (No File) <==== ATTENTION HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\51.0.9.0\GoogleDriveFS.exe --startup_mode (No File) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.77\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel (No File) AppInit_DLLs-x32: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2021-05-29] (Google) [File not signed] [File is in use] IFEO\LogonUI.exe: [VerifierDlls] SecureUxTheme.dll IFEO\osppsvc.exe: [VerifierDlls] SppExtComObjHook.dll IFEO\SppExtComObj.exe: [VerifierDlls] SppExtComObjHook.dll IFEO\SystemSettings.exe: [VerifierDlls] SecureUxTheme.dll IFEO\winlogon.exe: [VerifierDlls] SecureUxTheme.dll GroupPolicy: Restriction ? <==== ATTENTION GroupPolicy\User: Restriction - Edge <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKU\S-1-5-21-3689859802-142097239-3138972455-1001\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION Task: {DAECED0A-D599-4C04-844B-CC628A6B9348} - System32\Tasks\DWMBlurGlass_Extend => C:\DWMBlurGlass v2.3.2 Beta3\DWMBlurGlassHost.dll [476160 2025-12-05] (winmoes.com) [File not signed] Task: {46FF4636-1E19-4086-B439-64D918571AC7} - System32\Tasks\GadgetPack => C:\Program Files\Windows Sidebar\sidebar.exe [1448448 2024-11-01] (Microsoft Corporation) [File not signed] [File is in use] <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File AlternateDataStreams: C:\ProgramData:135AD463B3B120B4 [217] AlternateDataStreams: C:\ProgramData:379F2301159C306E [217] AlternateDataStreams: C:\ProgramData:C66EDEA789E36556 [217] AlternateDataStreams: C:\Users\All Users:135AD463B3B120B4 [217] AlternateDataStreams: C:\Users\All Users:379F2301159C306E [217] AlternateDataStreams: C:\Users\All Users:C66EDEA789E36556 [217] AlternateDataStreams: C:\ProgramData\Application Data:135AD463B3B120B4 [217] AlternateDataStreams: C:\ProgramData\Application Data:379F2301159C306E [217] AlternateDataStreams: C:\ProgramData\Application Data:C66EDEA789E36556 [217] AlternateDataStreams: C:\ProgramData\PACE:B10BDBE0F409EF92 [217] AlternateDataStreams: C:\ProgramData\PACE:B3A356B6F51A5F16 [217] AlternateDataStreams: C:\ProgramData\PACE:BAE2A0ED58749383 [217] AlternateDataStreams: C:\Users\Noc\Desktop\My stories [symlink]:com.dropbox.attrs [54] HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\regfile: <==== ATTENTION HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.reg: => <==== ATTENTION HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.bat: => <==== ATTENTION HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.cmd: => <==== ATTENTION FirewallRules: [{C64DC6EF-67A9-4492-B652-0F3DD48A5E23}] => (Block) C:\Program Files (x86)\AOMEI Partition Assistant\PartAssist.exe => No File FirewallRules: [{84D72449-F41E-40A4-AFF4-83FD0176F1C1}] => (Allow) C:\Program Files (x86)\Acronis\Agent\aakore.exe => No File FirewallRules: [{CBF79E3A-24FF-4F4C-B21C-7B0D7D80C5DB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{19197684-D0D7-48C4-A3A0-4E52DB5B0932}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{CC0E24D1-50C8-4B67-B13C-0B53D270B83B}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\SystemReport.exe => No File FirewallRules: [{4CAC405A-6522-45D2-8AD0-A29531BB99B0}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\acronis_drive.exe => No File FirewallRules: [{1408D007-8705-482F-A96A-D5A5B642223B}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\mobile_backup_status_server.exe => No File FirewallRules: [{F643DECF-F434-45EE-A299-5FCFD7DE2A9D}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\ga_service.exe => No File FirewallRules: [{7FD594D3-84F9-49CF-B700-A8F6C3B621E8}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\LicenseActivator.exe => No File FirewallRules: [{0EFDCFA7-F2C6-47D3-84A7-BDC13AD2EC12}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe => No File FirewallRules: [{0CBCEA86-23ED-441B-A528-B8C10C5CD295}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe => No File FirewallRules: [{E8D1166D-5D86-4505-B99A-F1124EA23BAE}] => (Allow) C:\Users\Noc\AppData\Local\Videostream\app-0.5.1\videostream-native\videostream-native.exe => No File FirewallRules: [{D9AF2739-849B-43FF-A53A-8623172AC2A4}] => (Allow) C:\Users\Noc\AppData\Local\Videostream\app-0.5.1\videostream-native\videostream-native.exe => No File FirewallRules: [TCP Query User{1A4AEB4C-6E66-4BF4-97D3-C7AB252927F5}C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File FirewallRules: [UDP Query User{94778B80-A89E-447E-A339-C031AA3E791A}C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File FirewallRules: [{4C22F300-0682-446B-91EF-D65EA7E6CF11}] => (Block) C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File FirewallRules: [{4AA9B320-40E9-4B15-9943-D703E52DBFE5}] => (Block) C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File FirewallRules: [{C19C28E2-9112-4F91-8118-32CF2F14986F}] => (Block) C:\Program Files\Adobe\Adobe Photoshop CC 2019\Photoshop.exe => No File FirewallRules: [{33FB6088-4751-4DF0-B648-F1AE0FA1926D}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => No File FirewallRules: [{EB1EEA3E-2060-4D66-8ECA-5719D0C849C0}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe => No File FirewallRules: [{0A07AAF5-DDCB-4165-BE93-9AEE15BDD277}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe => No File FirewallRules: [{1E53E702-E632-433D-8DCE-0BF14FF8B09D}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe => No File FirewallRules: [{AD4CA7DC-8096-4946-B93B-F25A54E634EA}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe => No File FirewallRules: [{0E2C3B28-2EF4-44F5-872F-E62F19A9D617}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe => No File FirewallRules: [{B7CCC1C7-44EC-4C00-BD2A-44B716499E46}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe => No File FirewallRules: [{1087DD58-8842-4233-9DF9-DB2BB3F7EB21}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe => No File FirewallRules: [{0B0B51EF-99FB-4C89-AEEA-7976C078E968}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\acronis_drive.exe => No File FirewallRules: [{377D5E52-548C-4063-970B-0D62F44A1F5E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe => No File FirewallRules: [{E243EBFE-5105-42FA-A1F5-3A9C87F4207C}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe => No File FirewallRules: [{F60AB180-C700-44AD-B2E7-F9DA0D21CAF4}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\ga_service.exe => No File FirewallRules: [{6C3DE9A3-699E-439A-925C-980EC1EEEC41}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\LicenseActivator.exe => No File FirewallRules: [{4CE25011-E583-466E-B4B8-3DB14A6E3377}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Home\report_sender.exe => No File FirewallRules: [{C46945F4-6563-4BC2-82FC-918890EC6319}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\bin\bckp_amgr.exe => No File FirewallRules: [{85409E11-1B96-45F3-8D3C-5914C2F2ECC1}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\bin\task-manager.exe => No File FirewallRules: [TCP Query User{0705B270-E6FE-40EC-AB3A-969C32D01732}C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe] => (Allow) C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe => No File FirewallRules: [UDP Query User{69EC60E6-0DFA-4481-87FB-C8545C171977}C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe] => (Allow) C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe => No File FirewallRules: [{D775BEBE-D646-411D-98DD-81DF22C9C56A}] => (Block) C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe => No File FirewallRules: [{A9C0D1CE-EF85-43C3-A079-9EB1BA312E11}] => (Block) C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe => No File FirewallRules: [{9144C22A-54A5-4295-AF9A-9D34E67DB11F}] => (Allow) C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe => No File FirewallRules: [TCP Query User{279FB05A-91F0-496E-9A9F-07078405BE50}C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe => No File FirewallRules: [UDP Query User{7DEEBB06-B96A-4077-8B7C-F56670BE968E}C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe => No File FirewallRules: [TCP Query User{281A305C-6918-4282-A765-78F2C92750B8}C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe => No File FirewallRules: [UDP Query User{ACA993E3-0297-4C54-8164-482C7CC3AA29}C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe => No File FirewallRules: [{138EFA18-0E2B-4094-8B7E-7EB38C5569AE}] => (Block) C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe => No File FirewallRules: [{968D84AA-7864-43F0-8018-AC9981784976}] => (Block) C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe => No File FirewallRules: [TCP Query User{D08F35F6-9BC9-4444-8E87-B24354EE96DA}C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe => No File FirewallRules: [UDP Query User{4C9886F6-B4A2-45DB-9B78-00BE7ADE719C}C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe] => (Allow) C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe => No File StartBatch: Dism.exe /UnMount-Wim /MountDir:"C:\mount\winre" /Discard Dism.exe /UnMount-Wim /MountDir:"C:\$WinREAgent\Scratch\Mount" /Discard Dism.exe /UnMount-Wim /MountDir:"C:\Users\Noc\AppData\Local\Temp\AomeiDateBackupper25136\mount" /Discard Dism.exe /Cleanup-Wim reg query "HKLM\SOFTWARE\Microsoft\WIMMount\Mounted Images" /s EndBatch: StartRegedit: [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS] "DependOnService"=hex(7):52,00,70,00,63,00,53,00,73,00,00,00,00,00 "Description"="@%SystemRoot%\\system32\\qmgr.dll,-1001" "DisplayName"="@%SystemRoot%\\system32\\qmgr.dll,-1000" "ErrorControl"=dword:00000001 "FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\ 00,01,00,00,00,60,ea,00,00,01,00,00,00,c0,d4,01,00,00,00,00,00,00,00,00,00 "ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\ 74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\ 00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\ 6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,20,00,2d,00,70,00,00,\ 00 "ObjectName"="LocalSystem" "RequiredPrivileges"=hex(7):53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,\ 00,6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,\ 67,00,65,00,00,00,53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,00,6e,\ 00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,\ 00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\ 00,67,00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,00,\ 72,00,69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,72,\ 00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6e,00,\ 63,00,72,00,65,00,61,00,73,00,65,00,51,00,75,00,6f,00,74,00,61,00,50,00,72,\ 00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,44,00,65,00,\ 62,00,75,00,67,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,\ 00,00,00 "ServiceSidType"=dword:00000001 "Start"=dword:00000003 "Type"=dword:00000020 "DelayedAutostart"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Parameters] "ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\ 00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\ 71,00,6d,00,67,00,72,00,2e,00,64,00,6c,00,6c,00,00,00 "ServiceDllUnloadOnStop"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Performance] "Close"="PerfMon_Close" "Collect"="PerfMon_Collect" "Library"="C:\\Windows\\System32\\bitsperf.dll" "Open"="PerfMon_Open" "InstallType"=dword:00000001 "PerfIniFile"="bitsctrs.ini" "1008"=hex(b):74,50,2a,96,e5,ee,da,01 "Last Counter"=dword:00001204 "Last Help"=dword:00001205 "First Counter"=dword:000011f4 "First Help"=dword:000011f5 "Object List"="4596" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Security] "Security"=hex:01,00,14,80,90,00,00,00,a0,00,00,00,14,00,00,00,34,00,00,00,02,\ 00,20,00,01,00,00,00,02,c0,18,00,00,00,0c,00,01,02,00,00,00,00,00,05,20,00,\ 00,00,20,02,00,00,02,00,5c,00,04,00,00,00,00,02,14,00,ff,01,0f,00,01,01,00,\ 00,00,00,00,05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,04,\ 00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,01,02,\ 00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,\ 00,20,02,00,00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WIMMount\Mounted Images] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WIMMount\Mounted Images] EndRegedit: StartPowerShell: md C:\Downloaded Invoke-webrequest https://download.microsoft.com/download/3/7/5/3754cbaa-4dff-469a-a9f0-ca501f3c0421/hvciscan_amd64.exe -OutFile C:\Downloaded\hvciscan_amd64.exe EndPowerShell: StartBatch: md C:\DrvStore PnpUtil /export-driver * C:\DrvStore rundll32.exe c:\windows\system32\pnpclean.dll,RunDLL_PnpClean /DRIVERS /MAXCLEAN rundll32.exe c:\windows\system32\pnpclean.dll,RunDLL_PnpClean /DEVICES /MAXCLEAN DISM /online /get-drivers /format:table C:\Downloaded\hvciscan_amd64.exe del /a C:\Downloaded\hvciscan_amd64.exe rd C:\Downloaded fltmc reg query "HKLM\SYSTEM\CurrentControlSet\Control\Class" /f *erfilters* /s EndBatch: 2026-06-12 23:08 - 2026-06-12 23:10 - 000000000 ____D C:\$WinREAgent 2026-05-23 03:09 - 2025-08-26 02:55 - 000000000 ____D C:\Windows\SoftwareDistribution.bak C:\Windows\SoftwareDistribution\Download Reboot: ***************** Processes closed successfully. SystemRestore: On => completed Restore point was successfully created. ========================= File: C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll ======================== C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll File not signed MD5: F991CE352F339AE27CA5E93E3628B7AD Creation and modification date: 2021-05-28 23:51 - 2021-05-28 23:51 Size: 000123392 Attributes: ----A Company Name: Google Internal Name: Google Desktop Original Name: Product: Google Desktop Description: Google Desktop File Version: 5.9.1005.12335 Product Version: 5.9.1005.12335 Copyright: Copyright (c) 2003-10 Google. All Rights Reserved. Virusscan: https://virusscan.jotti.org/filescanjob/d9n6c449xu ====== End of File: ====== ========================= File: C:\Users\Noc\AppData\Local\Clavier+\Clavier.exe; C:\DWMBlurGlass v2.3.2 Beta3\DWMBlurGlassHost.dll ======================== C:\Users\Noc\AppData\Local\Clavier+\Clavier.exe File not signed MD5: 6DB6AFAF4A551CF01743C5E2C7AFD4A1 Creation and modification date: 2023-03-04 19:28 - 2023-03-04 19:28 Size: 000201216 Attributes: ----A Company Name: Guillaume Ryder (https://gryder.org) Internal Name: Clavier Original Name: Clavier.exe Product: Clavier+ Description: Clavier+ File Version: 11.3.1 Product Version: 11.3.1 Copyright: Copyright © 2000-2023 Guillaume Ryder Virusscan: https://virusscan.jotti.org/filescanjob/u3n0kweh5i C:\DWMBlurGlass v2.3.2 Beta3\DWMBlurGlassHost.dll File not signed MD5: 9BAE121C44312B639C0F7D940B375BFC Creation and modification date: 2026-03-01 03:36 - 2025-12-05 04:59 Size: 000476160 Attributes: ----A Company Name: winmoes.com Internal Name: DWMBlurGlass.exe Original Name: DWMBlurGlass.exe Product: DWMBlurGlass Host Description: DWMBlurGlass Host File Version: 2.3.2.0 Product Version: 2.3.2.0 Copyright: Copyright (C) 2023-2026 Maplespe Virusscan: https://virusscan.jotti.org/filescanjob/lew38i5x0d ====== End of File: ====== ========================= File: C:\Program Files\Windows Sidebar\sidebar.exe ======================== C:\Program Files\Windows Sidebar\sidebar.exe File not signed MD5: 133385D0B4C452D8F1ACB9068419831B Creation and modification date: 2024-12-26 00:39 - 2024-11-01 09:01 Size: 001448448 Attributes: ----A Company Name: Microsoft Corporation Internal Name: Windows Desktop Gadgets Original Name: sidebar.EXE Product: Microsoft® Windows® Operating System Description: Windows Desktop Gadgets File Version: 6.2.8400.0 (winmain_win8rc.120518-1423) Product Version: 1.0.8400.0 Copyright: © Microsoft Corporation. All rights reserved. Virusscan: https://virusscan.jotti.org/filescanjob/8zvn50831w ====== End of File: ====== "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\TrueImageMonitor.exe" => removed successfully "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\UseDesktopIniCache" => removed successfully "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\SettingsPageVisibility" => removed successfully "HKLM\Software\Policies\Microsoft\Windows\System\\EnableSmartScreen" => removed successfully "HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveFS" => removed successfully "HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveFS" => removed successfully "HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Clipper Service" => removed successfully "HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveFS" => removed successfully HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removed successfully "C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL" => Value data removed successfully HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\LogonUI.exe => removed successfully HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\osppsvc.exe => removed successfully HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SppExtComObj.exe => removed successfully HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SystemSettings.exe => removed successfully HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\winlogon.exe => removed successfully "C:\Windows\system32\GroupPolicy\Machine" Folder move: C:\Windows\system32\GroupPolicy\Machine => moved successfully C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully "C:\Windows\system32\GroupPolicy\User" Folder move: C:\Windows\system32\GroupPolicy\User => moved successfully C:\ProgramData\NTUSER.pol => moved successfully HKU\S-1-5-21-3689859802-142097239-3138972455-1001\SOFTWARE\Policies\Microsoft\Edge => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DAECED0A-D599-4C04-844B-CC628A6B9348}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DAECED0A-D599-4C04-844B-CC628A6B9348}" => removed successfully C:\Windows\System32\Tasks\DWMBlurGlass_Extend => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DWMBlurGlass_Extend" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{46FF4636-1E19-4086-B439-64D918571AC7}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{46FF4636-1E19-4086-B439-64D918571AC7}" => removed successfully C:\Windows\System32\Tasks\GadgetPack => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GadgetPack" => removed successfully HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully C:\ProgramData => ":135AD463B3B120B4" ADS removed successfully C:\ProgramData => ":379F2301159C306E" ADS removed successfully C:\ProgramData => ":C66EDEA789E36556" ADS removed successfully "C:\Users\All Users" => ":135AD463B3B120B4" ADS not found. "C:\Users\All Users" => ":379F2301159C306E" ADS not found. "C:\Users\All Users" => ":C66EDEA789E36556" ADS not found. "C:\ProgramData\Application Data" => ":135AD463B3B120B4" ADS not found. "C:\ProgramData\Application Data" => ":379F2301159C306E" ADS not found. "C:\ProgramData\Application Data" => ":C66EDEA789E36556" ADS not found. C:\ProgramData\PACE => ":B10BDBE0F409EF92" ADS removed successfully C:\ProgramData\PACE => ":B3A356B6F51A5F16" ADS removed successfully C:\ProgramData\PACE => ":BAE2A0ED58749383" ADS removed successfully C:\Users\Noc\Desktop\My stories [symlink] => ":com.dropbox.attrs" ADS removed successfully HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\regfile => removed successfully HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.reg => removed successfully HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.bat => removed successfully HKU\S-1-5-21-3689859802-142097239-3138972455-1001\Software\Classes\.cmd => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C64DC6EF-67A9-4492-B652-0F3DD48A5E23}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{84D72449-F41E-40A4-AFF4-83FD0176F1C1}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CBF79E3A-24FF-4F4C-B21C-7B0D7D80C5DB}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{19197684-D0D7-48C4-A3A0-4E52DB5B0932}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CC0E24D1-50C8-4B67-B13C-0B53D270B83B}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4CAC405A-6522-45D2-8AD0-A29531BB99B0}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1408D007-8705-482F-A96A-D5A5B642223B}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F643DECF-F434-45EE-A299-5FCFD7DE2A9D}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7FD594D3-84F9-49CF-B700-A8F6C3B621E8}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0EFDCFA7-F2C6-47D3-84A7-BDC13AD2EC12}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0CBCEA86-23ED-441B-A528-B8C10C5CD295}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E8D1166D-5D86-4505-B99A-F1124EA23BAE}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D9AF2739-849B-43FF-A53A-8623172AC2A4}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1A4AEB4C-6E66-4BF4-97D3-C7AB252927F5}C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{94778B80-A89E-447E-A339-C031AA3E791A}C:\program files (x86)\steam\steamapps\common\cyberpunk 2077\bin\x64\cyberpunk2077.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4C22F300-0682-446B-91EF-D65EA7E6CF11}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4AA9B320-40E9-4B15-9943-D703E52DBFE5}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C19C28E2-9112-4F91-8118-32CF2F14986F}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{33FB6088-4751-4DF0-B648-F1AE0FA1926D}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB1EEA3E-2060-4D66-8ECA-5719D0C849C0}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A07AAF5-DDCB-4165-BE93-9AEE15BDD277}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1E53E702-E632-433D-8DCE-0BF14FF8B09D}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AD4CA7DC-8096-4946-B93B-F25A54E634EA}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0E2C3B28-2EF4-44F5-872F-E62F19A9D617}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B7CCC1C7-44EC-4C00-BD2A-44B716499E46}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1087DD58-8842-4233-9DF9-DB2BB3F7EB21}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0B0B51EF-99FB-4C89-AEEA-7976C078E968}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{377D5E52-548C-4063-970B-0D62F44A1F5E}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E243EBFE-5105-42FA-A1F5-3A9C87F4207C}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F60AB180-C700-44AD-B2E7-F9DA0D21CAF4}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C3DE9A3-699E-439A-925C-980EC1EEEC41}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4CE25011-E583-466E-B4B8-3DB14A6E3377}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C46945F4-6563-4BC2-82FC-918890EC6319}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{85409E11-1B96-45F3-8D3C-5914C2F2ECC1}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0705B270-E6FE-40EC-AB3A-969C32D01732}C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{69EC60E6-0DFA-4481-87FB-C8545C171977}C:\users\noc\desktop\temporary\[no uploads]\platform-tools\adb.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D775BEBE-D646-411D-98DD-81DF22C9C56A}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A9C0D1CE-EF85-43C3-A079-9EB1BA312E11}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9144C22A-54A5-4295-AF9A-9D34E67DB11F}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{279FB05A-91F0-496E-9A9F-07078405BE50}C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7DEEBB06-B96A-4077-8B7C-F56670BE968E}C:\users\noc\appdata\local\discord\app-1.0.9235\discord.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{281A305C-6918-4282-A765-78F2C92750B8}C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{ACA993E3-0297-4C54-8164-482C7CC3AA29}C:\users\noc\appdata\local\discord\app-1.0.9238\discord.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{138EFA18-0E2B-4094-8B7E-7EB38C5569AE}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{968D84AA-7864-43F0-8018-AC9981784976}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D08F35F6-9BC9-4444-8E87-B24354EE96DA}C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4C9886F6-B4A2-45DB-9B78-00BE7ADE719C}C:\users\noc\appdata\local\discord\app-1.0.9240\discord.exe" => removed successfully ========= Batch: ========= Deployment Image Servicing and Management tool Version: 10.0.19041.3636 Error: 50 The request is not supported. The DISM log file can be found at C:\Windows\Logs\DISM\dism.log Deployment Image Servicing and Management tool Version: 10.0.19041.3636 Image File : C:\$WinREAgent\Scratch\update.wim Image Index : 1 Unmounting image [= 2.0% ] [==========================100.0%==========================] Error: 0xc1420117 The directory could not be completely unmounted. This is usually due to applications that still have files opened within the mount directory. Close these files and unmount again to complete the unmount process. The DISM log file can be found at C:\Windows\Logs\DISM\dism.log Deployment Image Servicing and Management tool Version: 10.0.19041.3636 Error: 50 The request is not supported. The DISM log file can be found at C:\Windows\Logs\DISM\dism.log Deployment Image Servicing and Management tool Version: 10.0.19041.3636 Unmounting image at C:\$WinREAgent\Scratch\Mount [= 2.0% ] [==========================100.0%==========================] Scanning drive C for stale files Scanning drive D for stale files Scanning drive E for stale files Scanning drive G for stale files Scanning drive H for stale files The operation completed successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WIMMount\Mounted Images\6e78e2ae-3de2-4a00-bcee-c9eb2554894d Mount Version REG_DWORD 0x10001 Image time high REG_DWORD 0x1dcfae2 Image time low REG_DWORD 0x93600bb Status REG_DWORD 0x3 Mount Path REG_SZ C:\$WinREAgent\Scratch\Mount WIM Path REG_SZ C:\$WinREAgent\Scratch\update.wim Image Index REG_DWORD 0x1 FileCount REG_DWORD 0x40b3 Mount path high REG_DWORD 0x8d0000 Mount path low REG_DWORD 0x7fc0f ========= End of Batch: ========= Registry ====> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Parameters <==== Access Denied Registry ====> ERROR: Error accessing the registry. ========= Powershell: ========= Directory: C:\ Mode LastWriteTime Length Name ---- ------------- ------ ---- d----- 6/13/2026 09:23 Downloaded ========= End of Powershell: ========= ========= Batch: ========= 0 Microsoft PnP Utility Exporting driver package: oem6.inf (cometlakepch-hsystem.inf) Driver package exported successfully. Exporting driver package: oem5.inf (cometlakepch-hsystemthermal.inf) Driver package exported successfully. Exporting driver package: oem29.inf (cometlakesystem.inf) Driver package exported successfully. Exporting driver package: oem25.inf (heci.inf) Driver package exported successfully. Exporting driver package: oem104.inf (httptousbbridge.inf) Driver package exported successfully. Exporting driver package: oem105.inf (httptousbbridge.inf) Driver package exported successfully. Exporting driver package: oem24.inf (iaahcic.inf) Driver package exported successfully. Exporting driver package: oem103.inf (logi_joy_bus_enum.inf) Driver package exported successfully. Exporting driver package: oem99.inf (logi_joy_hid.inf) Driver package exported successfully. Exporting driver package: oem98.inf (logi_joy_vir_hid.inf) Driver package exported successfully. Exporting driver package: oem19.inf (msiswacpi.inf) Driver package exported successfully. Exporting driver package: oem34.inf (nvppc.inf) Driver package exported successfully. Exporting driver package: oem93.inf (nvppc.inf) Driver package exported successfully. Exporting driver package: oem45.inf (rz002caudpt.inf) Driver package exported successfully. Exporting driver package: oem38.inf (rz0049btendpt.inf) Driver package exported successfully. Exporting driver package: oem39.inf (rz0056btendpt.inf) Driver package exported successfully. Exporting driver package: oem46.inf (rz005eendpt.inf) Driver package exported successfully. Exporting driver package: oem61.inf (rz005ekb.inf) Driver package exported successfully. Exporting driver package: oem62.inf (rz005emou.inf) Driver package exported successfully. Exporting driver package: oem47.inf (rz005evkbd.inf) Driver package exported successfully. Exporting driver package: oem73.inf (rz011dmouex.inf) Driver package exported successfully. Exporting driver package: oem40.inf (rz0206btendpt.inf) Driver package exported successfully. Exporting driver package: oem92.inf (rz021edev.inf) Driver package exported successfully. Exporting driver package: oem48.inf (rz021eendpt.inf) Driver package exported successfully. Exporting driver package: oem63.inf (rz021ekb.inf) Driver package exported successfully. Exporting driver package: oem64.inf (rz021emou.inf) Driver package exported successfully. Exporting driver package: oem49.inf (rz021fendpt.inf) Driver package exported successfully. Exporting driver package: oem65.inf (rz021fkb.inf) Driver package exported successfully. Exporting driver package: oem66.inf (rz021fmou.inf) Driver package exported successfully. Exporting driver package: oem50.inf (rz0220endpt.inf) Driver package exported successfully. Exporting driver package: oem67.inf (rz0220kb.inf) Driver package exported successfully. Exporting driver package: oem68.inf (rz0220mou.inf) Driver package exported successfully. Exporting driver package: oem51.inf (rz0501audpt.inf) Driver package exported successfully. Exporting driver package: oem52.inf (rz0504audpt.inf) Driver package exported successfully. Exporting driver package: oem53.inf (rz0506audpt.inf) Driver package exported successfully. Exporting driver package: oem54.inf (rz0a02audpt.inf) Driver package exported successfully. Exporting driver package: oem41.inf (rzbtendpt.inf) Driver package exported successfully. Exporting driver package: oem42.inf (rzdaendpt.inf) Driver package exported successfully. Exporting driver package: oem55.inf (rzendpt.inf) Driver package exported successfully. Exporting driver package: oem56.inf (rzhnet.inf) Driver package exported successfully. Exporting driver package: oem57.inf (rzjstk.inf) Driver package exported successfully. Exporting driver package: oem43.inf (rzkeypadendpt.inf) Driver package exported successfully. Exporting driver package: oem58.inf (rzmpos.inf) Driver package exported successfully. Exporting driver package: oem44.inf (rzp1endpt.inf) Driver package exported successfully. Exporting driver package: oem69.inf (rzrbtldr.inf) Driver package exported successfully. Exporting driver package: oem70.inf (rzuddkb.inf) Driver package exported successfully. Exporting driver package: oem71.inf (rzuddmou.inf) Driver package exported successfully. Exporting driver package: oem72.inf (rzuddmouex.inf) Driver package exported successfully. Exporting driver package: oem59.inf (rzvkeyboard.inf) Driver package exported successfully. Exporting driver package: oem60.inf (rzvmouse.inf) Driver package exported successfully. Exporting driver package: oem32.inf (secnvme.inf) Driver package exported successfully. Exporting driver package: oem95.inf (skylakesystem.inf) Driver package exported successfully. Exporting driver package: oem30.inf (skylakesystem.inf) Driver package exported successfully. Exporting driver package: oem96.inf (skylakesystemgmm.inf) Driver package exported successfully. Exporting driver package: oem31.inf (skylakesystemgmm.inf) Driver package exported successfully. Exporting driver package: oem78.inf (ssudbus.inf) Driver package exported successfully. Exporting driver package: oem84.inf (ss_conn_usb_driver2.inf) Driver package exported successfully. Exporting driver package: oem106.inf (vboxusb.inf) Driver package exported successfully. Exporting driver package: oem74.inf (adobepdf.inf) Driver package exported successfully. Exporting driver package: oem80.inf (avssamp.inf) Driver package exported successfully. Exporting driver package: oem77.inf (brimi19d.inf) Driver package exported successfully. Exporting driver package: oem16.inf (brpri19d.inf) Driver package exported successfully. Exporting driver package: oem26.inf (dal.inf) Driver package exported successfully. Exporting driver package: oem81.inf (dbx.inf) Driver package exported successfully. Exporting driver package: oem18.inf (dbx.inf) Driver package exported successfully. Exporting driver package: oem109.inf (hdxmsi.inf) Driver package exported successfully. Exporting driver package: oem8.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem10.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem110.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem111.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem9.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem13.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem7.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem14.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem11.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem12.inf (ibtusb.inf) Driver package exported successfully. Exporting driver package: oem27.inf (iclsclient.inf) Driver package exported successfully. Exporting driver package: oem75.inf (ilokdrvr64.inf) Driver package exported successfully. Exporting driver package: oem28.inf (lms.inf) Driver package exported successfully. Exporting driver package: oem101.inf (mewmiprov.inf) Driver package exported successfully. Exporting driver package: oem82.inf (netwtw04.inf) Driver package exported successfully. Exporting driver package: oem87.inf (netwtw06.inf) Driver package exported successfully. Exporting driver package: oem85.inf (netwtw08.inf) Driver package exported successfully. Exporting driver package: oem76.inf (netwtw08.inf) Driver package exported successfully. Exporting driver package: oem113.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem94.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem79.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem35.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem33.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem116.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem118.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem91.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem97.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem86.inf (nvhda.inf) Driver package exported successfully. Exporting driver package: oem115.inf (nvmdi.inf) Driver package exported successfully. Exporting driver package: oem90.inf (nv_dispig.inf) Driver package exported successfully. Exporting driver package: oem3.inf (oemvista.inf) Driver package exported successfully. Exporting driver package: oem23.inf (paeusbaudio.inf) Driver package exported successfully. Exporting driver package: oem22.inf (paeusbaudioks.inf) Driver package exported successfully. Exporting driver package: oem2.inf (pia-wintun.inf) Driver package exported successfully. Exporting driver package: oem88.inf (piecomponent.inf) Driver package exported successfully. Exporting driver package: oem1.inf (prnms001.inf) Driver package exported successfully. Exporting driver package: oem0.inf (prnms009.inf) Driver package exported successfully. Exporting driver package: oem4.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem15.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem100.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem89.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem114.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem112.inf (rt640x64.inf) Driver package exported successfully. Exporting driver package: oem83.inf (ssudmdm.inf) Driver package exported successfully. Exporting driver package: oem21.inf (tevirtualmidi64.inf) Driver package exported successfully. Exporting driver package: oem102.inf (tvvirtualmonitordriver.inf) Driver package exported successfully. Exporting driver package: oem20.inf (tvvirtualmonitordriver.inf) Driver package exported successfully. Exporting driver package: oem17.inf (tvvirtualmonitordriver.inf) Driver package exported successfully. Exporting driver package: oem107.inf (vboxnetadp6.inf) Driver package exported successfully. Exporting driver package: oem108.inf (vboxnetlwf.inf) Driver package exported successfully. Exporting driver package: oem37.inf (vx1000.inf) Driver package exported successfully. Total driver packages: 117 Exported driver packages: 117 0 0 Deployment Image Servicing and Management tool Version: 10.0.19041.3636 Image Version: 10.0.19045.7417 Obtaining list of 3rd party drivers from the driver store... Driver packages listing: -------------- | ------------------------------- | ----- | ----------------- | ------------------------------ | ---------- | --------------- Published Name | Original File Name | Inbox | Class Name | Provider Name | Date | Version -------------- | ------------------------------- | ----- | ----------------- | ------------------------------ | ---------- | --------------- oem0.inf | prnms009.inf | No | Printer | Microsoft | 6/21/2006 | 10.0.19041.1 oem1.inf | prnms001.inf | No | Printer | Microsoft | 6/21/2006 | 10.0.19041.1 oem101.inf | mewmiprov.inf | No | SoftwareComponent | Intel | 7/22/2021 | 2130.1.15.0 oem103.inf | logi_joy_bus_enum.inf | No | System | Logitech | 9/2/2022 | 2022.3.0.2 oem107.inf | vboxnetadp6.inf | No | Net | Oracle Corporation | 10/12/2023 | 7.0.12.9484 oem109.inf | hdxmsi.inf | No | MEDIA | Realtek Semiconductor Corp. | 11/25/2025 | 6.0.9918.1 oem11.inf | ibtusb.inf | No | Bluetooth | Intel Corporation | 2/22/2024 | 23.40.0.2 oem114.inf | rt640x64.inf | No | Net | Realtek | 10/3/2025 | 10.79.50.1003 oem115.inf | nvmdi.inf | No | Display | NVIDIA | 4/23/2026 | 32.0.15.9636 oem118.inf | nvhda.inf | No | MEDIA | NVIDIA Corporation | 12/1/2025 | 1.4.5.7 oem15.inf | rt640x64.inf | No | Net | Realtek | 8/15/2023 | 10.68.815.2023 oem16.inf | brpri19d.inf | No | Printer | Brother | 1/5/2023 | 2.1.0.0 oem18.inf | dbx.inf | No | HSM | Dropbox Inc. | 9/14/2023 | 1.0.19.0 oem19.inf | msiswacpi.inf | No | System | Micro-Star INT'L CO., LTD. | 7/28/2023 | 1.0.0.12 oem2.inf | pia-wintun.inf | No | Net | Private Internet Access, Inc. | 6/5/2024 | 0.14.1.0 oem21.inf | tevirtualmidi64.inf | No | MEDIA | Tobias Erichsen | 12/8/2019 | 1.3.0.43 oem22.inf | paeusbaudioks.inf | No | MEDIA | PreSonus | 10/27/2021 | 5.28.0.18049 oem23.inf | paeusbaudio.inf | No | paeusbaudio_sc | PreSonus | 10/27/2021 | 5.28.0.18049 oem24.inf | iaahcic.inf | No | HDC | Intel Corporation | 4/23/2020 | 17.9.0.1007 oem25.inf | heci.inf | No | System | Intel | 5/11/2021 | 2120.100.0.1085 oem26.inf | dal.inf | No | SoftwareComponent | Intel | 1/21/2021 | 1.41.2021.121 oem27.inf | iclsclient.inf | No | SoftwareComponent | Intel | 7/14/2021 | 1.63.1155.0 oem28.inf | lms.inf | No | SoftwareComponent | Intel | 8/22/2021 | 2130.1.16.6 oem29.inf | cometlakesystem.inf | No | System | INTEL | 7/18/1968 | 10.1.30.3 oem3.inf | oemvista.inf | No | Net | Private Internet Access | 9/27/2019 | 9.24.2.601 oem32.inf | secnvme.inf | No | SCSIAdapter | Samsung Electronics Co., Ltd | 1/21/2020 | 3.3.0.2003 oem36.inf | ntprint.inf | No | Printer | Microsoft | 6/21/2006 | 10.0.19041.3693 oem48.inf | rz021eendpt.inf | No | HIDClass | Razer Inc | 8/5/2016 | 6.2.9200.16385 oem5.inf | cometlakepch-hsystemthermal.inf | No | System | INTEL | 7/18/1968 | 10.1.31.2 oem6.inf | cometlakepch-hsystem.inf | No | System | INTEL | 7/18/1968 | 10.1.31.2 oem63.inf | rz021ekb.inf | No | Keyboard | Razer Inc | 8/5/2016 | 6.2.9200.16385 oem64.inf | rz021emou.inf | No | Mouse | Razer Inc | 8/5/2016 | 6.2.9200.16385 oem74.inf | adobepdf.inf | No | Printer | Adobe | 8/14/2012 | 10.1.0.0 oem76.inf | netwtw08.inf | No | net | Intel | 9/12/2021 | 22.80.1.1 oem77.inf | brimi19d.inf | No | Image | Brother | 10/19/2022 | 1.0.6.1 oem78.inf | ssudbus.inf | No | USB | SAMSUNG Electronics Co., Ltd. | 9/14/2021 | 2.17.16.0 oem83.inf | ssudmdm.inf | No | Modem | SAMSUNG Electronics Co., Ltd. | 11/6/2020 | 2.17.6.0 oem84.inf | ss_conn_usb_driver2.inf | No | USB | SAMSUNG Electronics Co., Ltd. | 9/14/2021 | 2.17.16.0 oem90.inf | nv_dispig.inf | No | Display | NVIDIA | 3/16/2023 | 31.0.15.3141 oem92.inf | rz021edev.inf | No | HIDClass | Razer Inc | 1/2/2017 | 6.2.9200.16545 oem93.inf | nvppc.inf | No | USB | NVIDIA | 4/28/2022 | 1.50.831.832 oem95.inf | skylakesystem.inf | No | System | INTEL | 7/18/1968 | 10.1.7.4 oem96.inf | skylakesystemgmm.inf | No | System | INTEL | 7/18/1968 | 10.1.7.4 oem98.inf | logi_joy_vir_hid.inf | No | HIDClass | Logitech | 9/2/2022 | 2022.3.0.2 The operation completed successfully. VbsGetIssues: 0x0000000C Secure boot capability required IOMMU required VbsIsRecommended: 0 HVCI incompatible driver scan start... HVCI: Driver scanning complete HVCI incompatible driver scan passed! 0 0 Filter Name Num Instances Altitude Frame ------------------------------ ------------- ------------ ----- bindflt 1 409800 0 UCPD 12 385250.5 0 FSProFilter2 12 364400.4 0 WdFilter 12 328010 0 file_tracker 0 281420 0 storqosflt 0 244000 0 wcifs 0 189900 0 dbx 7 186500 0 WIMMount 7 180700 0 CldFlt 2 180451 0 FileCrypt 0 141100 0 luafv 1 135000 0 virtual_file 0 132400 0 npsvctrig 1 46000 0 Wof 7 40700 0 FileInfo 12 40500 0 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4d36e967-e325-11ce-bfc1-08002be10318} UpperFilters REG_MULTI_SZ veracrypt\0partmgr\0fltsrv LowerFilters REG_MULTI_SZ EhStorClass HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4d36e96b-e325-11ce-bfc1-08002be10318} UpperFilters REG_MULTI_SZ kbdclass HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4d36e96c-e325-11ce-bfc1-08002be10318} UpperFilters REG_MULTI_SZ ksthunk HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4d36e96f-e325-11ce-bfc1-08002be10318} UpperFilters REG_MULTI_SZ mouclass HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{50dd5230-ba8a-11d1-bf5d-0000f805f530} UpperFilters REG_MULTI_SZ scfilter HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{533c5b84-ec70-11d2-9505-00c04f79deaf} UpperFilters REG_MULTI_SZ fltsrv HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{53487c23-680f-4585-acc3-1f10d6777e82} UpperFilters REG_MULTI_SZ partmgr HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{53966cb1-4d46-4166-bf23-c522403cd495} UpperFilters REG_MULTI_SZ partmgr HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc5-810f-11d0-bec7-08002be2092f} UpperFilters REG_MULTI_SZ IRENUM HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc6-810f-11d0-bec7-08002be2092f} UpperFilters REG_MULTI_SZ ksthunk HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{71a27cdd-812a-11d0-bec7-08002be2092f} UpperFilters REG_MULTI_SZ volsnap\0fltsrv LowerFilters REG_MULTI_SZ fvevol\0iorate\0rdyboost HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{ca3e7ab9-b4c3-4ae6-8251-579ef933890f} UpperFilters REG_MULTI_SZ ksthunk HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{d612553d-06b1-49ca-8938-e39ef80eb16f} UpperFilters REG_MULTI_SZ SpatialGraphFilter HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{eec5ad98-8080-425f-922a-dabf3de3f69a} UpperFilters REG_MULTI_SZ WpdUpFltr End of search: 16 match(es) found. ========= End of Batch: ========= "C:\$WinREAgent" Folder move: C:\$WinREAgent => moved successfully "C:\Windows\SoftwareDistribution.bak" Folder move: C:\Windows\SoftwareDistribution.bak => moved successfully "C:\Windows\SoftwareDistribution\Download" Folder move: C:\Windows\SoftwareDistribution\Download => moved successfully The system needed a reboot. ==== End of Fixlog 09:27:20 ====