﻿FreeFixer v1.14 log
http://www.freefixer.com/
Operating system: Windows 7 Service Pack 1
Log dated 2017-08-10 10:15


Suspicious file names
=====================
C:\Windows\proxycfg.exe

BootExecute
===========
C:\Windows\system32\Partizan.exe, signer: Greatis Software LLC [valid], md5:21dca64c1c60108d5064623cdc8b5e4a, sha256:ee3354de882a4c66047148bbd127c27b9f5da191b4750ecd19ac1f36ffe0411c

AppInit_DLLs
============
32-bit, prio32.dll (file is missing)

TCP/IP settings
===============
HKLM\..\Interfaces\{047E6F90-FFFB-43B3-8B31-820B734306B1}, NameServer = 167.206.254.1,167.206.254.2
HKLM\..\Interfaces\{42B00B05-B9F7-45D5-B008-21E7076BEE9B}, NameServer = 167.206.13.180,167.206.13.181

Browser Helper Objects (12 whitelisted)
=======================================
64-bit, {1DAC0C53-7D23-4AB3-856A-B04D98CD982A}, Bitdefender Wallet , C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (file is missing)
64-bit, {724d43a9-0d85-11d4-9908-00400523e39a}, RoboForm Toolbar Helper, C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll, signer: Siber Systems Inc [valid], md5:fd8668138b609072205de4447ed85a5a, sha256:b7b8e77878f1172fd7e03d6820b25c2c86b39f7496f490dc796c021c454d4db2
32-bit, AutorunsDisabled, , (no file specified)
32-bit, {133232D2-DAE3-4B6F-AAC2-17CD87495682}, Wondershare YouTube Downloader, C:\Program Files (x86)\Wondershare\AllMyTube\SVRIEPlugin.dll, signer: Wondershare Software Co., Ltd.  [valid], md5:fa027a96985f517dfbc063d9dce895d7, sha256:71f1a051e74ef59bd32a620e78fc6512f932f86785865ab920157ba843946eff
32-bit, {1DAC0C53-7D23-4AB3-856A-B04D98CD982A}, Bitdefender Wallet, C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (file is missing)
32-bit, {3A2D5EBA-F86D-4BD3-A177-019765996711}, PDF Architect Helper, c:\Program Files (x86)\PDF Architect\PDFIEHelper.dll, signer: pdfforge GmbH [valid], md5:a420162a6983b44d3e411098ef87fe8f, sha256:6d4b1f55b93f193492c9014344795e1ce928b9fec31c46bb0a6fb9ab4d471cce
32-bit, {43D9786F-A485-683B-9B5B-ACC97ABC17FC}, Wondershare Player 1.6.0, C:\ProgramData\Wondershare\Player\WSBrowserAppMgr.dll, signer: Shenzhen Wondershare Information Technology Co., Ltd. [valid], md5:feba6f43c756b93cc66d1b4c2626e51d, sha256:6f7d24a8e09b1fa9bccedb84885e63f332f5d2e572eae3a0cfabaaa72dd3b2ea
32-bit, {451C804F-C205-4F03-B48E-537EC94937BF}, Wondershare Video Converter Ultimate 7.1.0, C:\PROGRA~3\WONDER~1\VIDEOC~1\WSBROW~1.DLL, signer: Shenzhen Wondershare Information Technology Co., Ltd. [valid], md5:4c7fa6d03ad9b20a4bc545b23d82e160, sha256:bb8c259ef54df2cfddd46cf7d8a6eddb2ce3afed2c267f8583149be44a7ac316
32-bit, {5CA3D70E-1895-11CF-8E15-001234567890}, DriveLetterAccess, C:\WINDOWS\System32\DLA\DLASHX_W.DLL, signer: [unsigned], md5:c9f72cae932f1b28564cddc4a139facf, sha256:6cc1416dc802f58562c6f4e93e79a26ca95a8d843dafb62118d055fc3e77390e
32-bit, {724d43a9-0d85-11d4-9908-00400523e39a}, RoboForm Toolbar Helper, C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll, signer: Siber Systems Inc [valid], md5:b79eaddee583cab0e549b0d7120f7deb, sha256:f74295bd22e94cc7d207bc8c92fd2b03e18ddf393bda0ed9e9f400eaa4deabd6

Internet Explorer toolbars (2 whitelisted)
==========================================
HKLM\..\Toolbar\{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll, signer: Siber Systems Inc [valid], md5:fd8668138b609072205de4447ed85a5a, sha256:b7b8e77878f1172fd7e03d6820b25c2c86b39f7496f490dc796c021c454d4db2
HKLM\..\Toolbar\{451A990E-9779-4537-83CC-BF342196DDB0} - FindWide Toolbar - C:\Program Files (x86)\TNT2\Profiles\11147\passport64.dll, signer: [unsigned], md5:29f4c36134ce2d80d7d7e717739842e4, sha256:632e3c7671d21697493b65d3a306407bb88e28bedad212be8a57b8708460bd1e
HKLM\..\Toolbar\{9C65D12D-CF9D-454D-8049-61965D8C6FFF} - Steganos Password Manager Toolbar - C:\Program Files (x86)\Steganos Privacy Suite 15\SPMIEToolbar64.dll, signer: Steganos Software GmbH [valid], md5:a72086e994023bc5b1e91de192421d82, sha256:96b325abf0a6eb8cf90d3133d694434ea1205995821cef5534e689e2e14b2059
HKLM\..\Toolbar\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Bitdefender Wallet  - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (file is missing)
HKCU\..\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} -  - (no file specified)
HKCU\..\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} -  - (no file specified)
HKCU\..\Toolbar\WebBrowser\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  - (no file specified)
HKCU\..\Toolbar\WebBrowser\{57434C32-2D53-5000-76A7-7A786E7484D7} -  - (no file specified)
HKLM\..Wow6432Node..\Toolbar\{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll, signer: Siber Systems Inc [valid], md5:b79eaddee583cab0e549b0d7120f7deb, sha256:f74295bd22e94cc7d207bc8c92fd2b03e18ddf393bda0ed9e9f400eaa4deabd6
HKLM\..Wow6432Node..\Toolbar\{5148AB7D-8868-4490-B6DA-F98368488582} - CaptureSaver - C:\Program Files (x86)\CaptureSaver\CaptureSaverIE.dll, signer: [unsigned], md5:f2b2ee381fd278a915430ec72a6c4623, sha256:ab187d8f47c880fa1e55ea17da217aa19a58578940e793c2b6ab93382b9e7d02
HKLM\..Wow6432Node..\Toolbar\{451A990E-9779-4537-83CC-BF342196DDB0} - FindWide Toolbar - C:\Program Files (x86)\TNT2\Profiles\11147\passport.dll, signer: [unsigned], md5:a7d8c61c646216c490e8ae7ee1b67bf1, sha256:3da527db057396e0020ae62ec2a162d473642b5bef9eafb2d49bd77d7509ef72
HKLM\..Wow6432Node..\Toolbar\{9C65D12D-CF9D-454D-8049-61965D8C6FFF} - Steganos Password Manager Toolbar - C:\Program Files (x86)\Steganos Privacy Suite 15\SPMIEToolbar.dll, signer: Steganos Software GmbH [valid], md5:0bab4b4cbdfa706e11d21b6353eba97e, sha256:7a69182ad89987fccf2657e16f21db85669ded7177eaef9a5774d32e2feff0e5
HKLM\..Wow6432Node..\Toolbar\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (file is missing)
HKLM\..Wow6432Node..\Toolbar\{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - c:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll, signer: pdfforge GmbH [valid], md5:2e012b7093b3c2fe328b989d8a37422f, sha256:6f59b015c6e0490e55fe564d6665d34569917ffb590219063d25a8c90d8e79a8

Internet Explorer extensions
============================
HKLM\..\Extensions\{024538B9-3F39-49FF-9503-975F743210FA} - Steganos Password Manager
HKLM\..\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49} - Send to OneNote
HKLM\..\Extensions\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Skype for Business Click to Call
HKLM\..\Extensions\{320AF880-6646-11D3-ABEE-C5DBF3571F46} - Fill Forms
HKLM\..\Extensions\{320AF880-6646-11D3-ABEE-C5DBF3571F49} - Save
HKLM\..\Extensions\{724d43aa-0d85-11d4-9908-00400523e39a} - Show Toolbar
HKLM\..\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - OneNote Lin&ked Notes
HKLM\..Wow6432Node..\Extensions\AutorunsDisabled - 
HKLM\..Wow6432Node..\Extensions\{024538B9-3F39-49FF-9503-975F743210FA} - Steganos Password Manager
HKLM\..Wow6432Node..\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49} - Send to OneNote
HKLM\..Wow6432Node..\Extensions\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Skype for Business Click to Call
HKLM\..Wow6432Node..\Extensions\{320AF880-6646-11D3-ABEE-C5DBF3571F46} - Fill Forms
HKLM\..Wow6432Node..\Extensions\{320AF880-6646-11D3-ABEE-C5DBF3571F49} - Save
HKLM\..Wow6432Node..\Extensions\{3BD9DD3E-F9B6-45b9-9ED3-5E1980C2686F} - CaptureSaver
HKLM\..Wow6432Node..\Extensions\{724d43aa-0d85-11d4-9908-00400523e39a} - Show Toolbar
HKLM\..Wow6432Node..\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - OneNote Lin&ked Notes
HKLM\..Wow6432Node..\Extensions\{88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - Add to VideoGet
HKLM\..Wow6432Node..\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263} - Research
HKLM\..Wow6432Node..\Extensions\{A95fe080-8f5d-11d2-a20b-00aa003c157a} - @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101
HKCU\..\Extensions\{AB745E88-1BAD-4B80-A83E-7C964EAC9804} - Fantapper

Basic Internet Explorer settings
================================
HKCU\..\Main, Start Page = https://search.yahoo.com/?type=407453&fr=spigot-yhp-ie

Internet Explorer Search Providers
==================================
HKLM\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} -  - 
HKLM\..Wow6432Node..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} - StartWeb - 
HKCU\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} - Conduit Search - http://search.conduit.com/Results.aspx?ctid=CT3314759&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPD7052F42-F6C2-4888-BFED-EFCF8469AE55&q={searchTerms}&SSPV=
HKCU\..\SearchScopes\{150CD86F-F345-4925-B538-D590171152BD} - Yahoo - https://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
HKCU\..\SearchScopes\{328FEF41-100D-49A0-8141-3AEBB2938E95} - Search - http://search.conduit.com/Results.aspx?ctid=CT3300039&SearchSource=45&q={searchTerms}
HKCU\..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} - StartWeb - 
HKCU\..\SearchScopes\{E1F3DBF3-86C1-4F92-9543-FA4EB6E85BCE} - Yahoo! - http://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11147
HKCU\..\SearchScopes\{E8307B89-5F41-4591-83AE-91CC210327DF} - FindWide - http://search.findwide.com/serp?guid={8923D673-FC0B-4784-9C22-AB23B57D4599}&action=default_search&k={searchTerms}

Registry Startups (4 whitelisted)
=================================
HKLM\..\Run, USB Safely Remove = C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe /startup, signer: Crystal Rich Ltd [valid], md5:56c6efa94b4d6d4e840f0941fb449c4c, sha256:67e1648ed53358f65d1b9bf2ec25d7b8c2efe0243f344a8680ee4067e182c452
HKLM\..\RunOnce, amreboot = (no file specified)
HKLM\..Wow6432Node..\Run, StarReminder = "C:\Program Files\StarReminder\StarReminder.exe", signer: [unsigned], md5:445cda8b7609497b681c53db74b743e6, sha256:dcedba27ec2feb2ff7cc03b66a89eb682451e7c0ffc057243fd5d3463e6f374b
HKCU\..\Run, StickyPassword = C:\Program Files (x86)\Sticky Password\stpass.exe, signer: Lamantine Software a.s. [valid], md5:f8bbcc9e5afc79fd1a43909c6b8987d1, sha256:d332ce11114982f1291e3817dd74068ee654fc0c9011136a0c03320cb7e160c4
HKCU\..\Run, AtomicAlarmClock6 = C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe, signer: [unsigned], md5:5b82d8c7769a9149ec56d8e51ce884e6, sha256:0574dad1a41675c5f8514e7ce0204fa15aefd34ff8b4d5a8ac206c3e4236d01e
HKCU\..\Run, Create Synchronicity - Scheduler = C:\Program Files\Sychronicity\Create Synchronicity.exe /scheduler (file is missing)
HKCU\..\Run, ApowerMirror = C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe /autoStart, signer: Apowersoft Ltd [valid], md5:eb4ca1a673daecbd748a998c0c4b7a64, sha256:1050bc2c0a789bd1155215bdb4d4a3fc8730d02ccf09a1d3e87238b317de0d3f
HKCU\..\Run, FastVD = C:\Program Files (x86)\FastPcTools\Fast VD\FastVD.exe /astart, signer: Shopnoffer [valid], md5:da7b27ce3faec04cabbf99b3748199ae, sha256:e321b8984be8a6fdb92496f8a0c5ca78e70ed85bbf3f08ee015ce6b05928b47d
HKCU\..\Run, WinExt = C:\Program Files (x86)\TSS\WinExt\WinExt.exe, signer: TriSun Software Limited [valid], md5:00d1ea807a20d558dea08dbc5e796864, sha256:7ccd2f19a4e4559b59f95a960f0551814e3d5e7b8460e6ac696c6ecd93509b2f
HKCU\..Wow6432Node..\Run, BackuperyForWordpress = "C:\Users\Morgan Pierce Parker\AppData\Local\Backupery for Wordpress\Launcher.exe" -minimized, signer: Denis Lazarau [valid], md5:92ace4675b1531d51db40a3cc1292600, sha256:209f7f56b8e0fcb2758a77ce5ac8b98c1bde1627f5b84e6734a53ecb6a412dc8

Autostart shortcuts
===================
NETGEAR A6210 Genie.lnk, , C:\Program Files (x86)\NETGEAR\A6210\A6210.EXE, signer: Netgear Incorporated [valid], md5:17b12faac625f46f80cdc10868100752, sha256:49f09403244a727cda91973da06e1c2d1680a4b29831753cfadbef67de9b1244
Create Synchronicity.exe - Shortcut.lnk, , C:\140 Sychronicity\Create Synchronicity.exe, signer: [unsigned], md5:9999a113cbb38f03ec79c3fd7b8f42d6, sha256:5a4ec71d681a752e4b8dbb014264c7ba0ee68a2e2236df5e3617cb3d84c881e4
eChat MannM.lnk, , C:\Program Files\ENSIGNNEW\eChat\eChatsALL\MannM\eChat.exe, signer: [unsigned], md5:27e2dd3e18c02ebd3d4ddd55cdc91ce3, sha256:ba314964cf43ae6868fde5b6033ed25e9a6450cf01f4e3d4a9c4feeecb6d7740
eChat.exe Kevin P.lnk, , C:\Program Files\ENSIGNNEW\eChat\eChatsALL\KevinP\eChat.exe, signer: [unsigned], md5:f07aa83ed65eb5133f8eda3fd7eefee2, sha256:0b323f680b383636f4a55d7ccc88e985299851ff888bc498277a91a36cde1258
Efficient Calendar.lnk, , C:\Program Files (x86)\Efficient Calendar\EfficientCalendar.exe, signer: Chongqing Yifei Technology Co., Ltd. [valid], md5:c9a1667ae65527b6e27e80c71a555d8c, sha256:55956256e0c8c035ee8f48ba076a13ac7d31bd408f095ed0ca304970e5c1d3c0
Process Lasso.lnk, Launch the Process Lasso graphical user interface., C:\Program Files\Process Lasso\ProcessLassoLauncher.exe, signer: Bitsum LLC [valid], md5:f2fcecc8117a5f5d7109fa87d7760253, sha256:1042b83cbe6877d64fa6313735ff3078d168b76a2b223c7613ecc01b0307cfa0
Startup - Shortcut (4).lnk, , C:\Users\Morgan Pierce Parker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (file is missing)

Shared schedulers
=================
64-bit, Virtual Storage Mount Notification, {DAA49CA1-B4BD-4873-A191-1ACD70F262D9}, C:\Windows\system32\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:021b9c427f2faa4e1c9459849574efe3, sha256:bcedb8c7b94b1bf7c77e27afb03822b314297506cbe3f5f206dad6b55bed235f
32-bit, Virtual Storage Mount Notification, {DAA49CA1-B4BD-4873-A191-1ACD70F262D9}, C:\Windows\SysWOW64\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:8713d96f376cae7e25aeff96752ef0dc, sha256:a6c15c0f9dd754754b3b730db3205cf095ce3b914ff21a306089e30a09d672a4

Processes (28 whitelisted)
==========================
C:\Windows\SysWOW64\fsproflt2.exe, signer: FSPro Labs [valid], md5:932b1299206773c564f18f0a1c62712c, sha256:3fbb66c3db3a91de6f3d03a3b1948ce25e01a9bdb2f60e430c4e2815d90319f2
C:\Program Files (x86)\Softland\Backup4all 5\bService.exe, signer: Softland S.R.L. [valid], md5:e4e7f4534a9d7950e30ef706d25727a2, sha256:448a6eb33c0f56ba2158f80b38c9873df0e0f47a992eecab0f84e834e6517c0a
C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe, signer: [unsigned], md5:01b5ffe9adc6ecd3cbfa058be3131f29, sha256:3da3eacecb45a206453f17fccaeaa7f625d660d8b15c94b41401de96750b6918
C:\Program Files\Hide Folders 2012\hf.exe, signer: FSPro Labs [valid], md5:1d490c40413ff7a4cb804972d552a20d, sha256:2fae6821d8787140e4d624d5248a677da1406a8e4a6d30f2ef4637cef7621492
C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxcr.exe, signer: Bitdefender SRL [valid], md5:cea7840b6c103cd82397b746a5a16498, sha256:f8b623c82d6313337b260bf72170aa8520a25b4d8b7dd46af51a4f1a70bd160a
\Frame0\s\1 DOWNLOADS\esetonlinescanner_enu.exe (file is missing)
\Frame0\s\1 DOWNLOADS\freefixersetup.exe (file is missing)
C:\Program Files\FreeFixer\freefixer.exe, signer: [unsigned], md5:b2611ddd92653e03d9b8b7f8a60b61e1, sha256:d903b9ba67d98d60ea6294671eefce80c6df6d0574078a8e4cde46333820f648
C:\Program Files\FreeFixer\freefixer.exe, signer: [unsigned], md5:b2611ddd92653e03d9b8b7f8a60b61e1, sha256:d903b9ba67d98d60ea6294671eefce80c6df6d0574078a8e4cde46333820f648

Application modules (104 whitelisted)
=====================================
C:\Windows\system32\digest.dll, signer: [unsigned], md5:c4e3fdc9fe8dc3e2e6e99a8b7240a1c7, sha256:993385cfd02665cd9f8be1b4da8c6a047914f5d54a57b598b03837f13a3fd3db

Services (68 whitelisted)
=========================
ABBYY.Licensing.BCR.Windows.2.0, ABBYY Business Card Reader Licensing Service, c:\program files (x86)\abbyy business card reader 2.0\networklicenseserver.exe, signer: ABBYY PRODUCTION LLC [valid], md5:bc934242e56ec3a4ce3a8f643e0568ed, sha256:1461e2ad4236cb57c1559a55ca5abf7e558c71699ee47ea7900e03de849896bb
AHDDC2, Ashampoo HDD Control 2 Service, c:\program files (x86)\ashampoo\ashampoo hdd control 2\ahddc2_service.exe, signer: Ashampoo GmbH & Co. KG [valid], md5:1cc3e547fe3dec8272780f24f3059519, sha256:72400f60d41239e9f2493df71472704ecb006f5871e3cbb125de2d0303051617
AtomicAlarmClock, Atomic Alarm Clock Time, c:\program files\atomic alarm clock\timeserv.exe, signer: [unsigned], md5:c9646479fb4a5db8330e246eca9408c3, sha256:da72fda5e1cce0b319ec46a49efe67015baa78f92758b8ac5cf1e3f9b0c9411d
Backup4all5Srv, Backup4all 5 Service, c:\program files (x86)\softland\backup4all 5\bservice.exe, signer: Softland S.R.L. [valid], md5:e4e7f4534a9d7950e30ef706d25727a2, sha256:448a6eb33c0f56ba2158f80b38c9873df0e0f47a992eecab0f84e834e6517c0a
CachemanService, Cacheman Service, c:\program files (x86)\cacheman\cachemanserv.exe, signer: Outertech e.K. [valid], md5:d5c9856d2c2f8909c0a553e4ac8e3873, sha256:9a39f63f8e017f3b039e525143d0feec25fbe1c5d87c2da3e4a66ac6951ca3a2
Crypkey License, Crypkey License, C:\Windows\SysWOW64\crypserv.exe (file is missing)
Fabs, FABS - Helping agent for MAGIX media database, c:\program files (x86)\common files\magix services\database\bin\fabs.exe, signer: [unsigned], md5:8fda65209157144c3e28809d75a47526, sha256:6878fa2352c1753a34a2294ee948bd54d3cecc9d93a8b425b5ec1c3cda354772
FileMarkerApplyIconService, FileMarker.NET Apply Icon Service, c:\program files (x86)\filemarker.net\filemarkerservice.exe, signer: ArcticLine Software [valid], md5:5f5c0dba9bfeb37a8afa81bd741e1b46, sha256:2a015d11b53aec016d04e0d368c906f3007eb0bfc2ca5d2eb85aad3d99482cd5
FrAgent, Disk Master Agent, c:\program files\qiling\disk master\agent.exe, signer: Chengdu QILING Tech Co., Ltd [valid], md5:c2c57a19a2910fe881ec2cdc71d0aafc, sha256:39b62831ff40dd9132e78abfcc90adf2bc2b00537d70be35a0a613986a85d61e
fsproflt2, FSPro Filter Service 2, c:\windows\syswow64\fsproflt2.exe, signer: FSPro Labs [valid], md5:932b1299206773c564f18f0a1c62712c, sha256:3fbb66c3db3a91de6f3d03a3b1948ce25e01a9bdb2f60e430c4e2815d90319f2
HideMyIpSRV, HideMyIpSRV, c:\program files (x86)\hide my ip 6\hidemyipsrv.exe, signer: [unsigned], md5:01b5ffe9adc6ecd3cbfa058be3131f29, sha256:3da3eacecb45a206453f17fccaeaa7f625d660d8b15c94b41401de96750b6918
Leawo_service, Leawo common service., c:\program files (x86)\common files\appkeys\yytool64.exe, signer: Shenzhen Moyea Software [valid], md5:62779830c15e054ab12425e1fbe230ce, sha256:029da604b4407a24d28ca86566633c1df1410e38c9eb5b11263cd6e5c95ea118
NetgearSwitchUSB, NetgearSwitchUSB, c:\program files (x86)\netgear\a6210\netgearswitchusb.exe, signer: NETGEAR TAIWAN CO., LTD [valid], md5:91c080fa40a7fed47c76bdbd48082235, sha256:1279d4e0d773f9a241dd60001e0e4d3ba103d37e38ed801e67d19923ad9ba78c
PDF Architect Helper Service, PDF Architect Helper Service, c:\program files (x86)\pdf architect\helperservice.exe, signer: pdfforge GmbH [valid], md5:20372be109fee1c37e2d5216680db9eb, sha256:2c3737fb3c6bcf81d0a7293667412ddea649a8aea40b7adcfcb9893e8b3c4af3
PDF Architect Service, PDF Architect Service, c:\program files (x86)\pdf architect\conversionservice.exe, signer: pdfforge GmbH [valid], md5:b90a279073a815a4aa2c45a09ee004fa, sha256:9ea27630c47f5ff99cbbe513c113f3ed01faba0d59b9d9637764027bcc6ea24a
PlaysService, Plays.tv Update Service, c:\program files (x86)\raptr inc\playstv\plays_service.exe, signer: Plays.tv, LLC [valid], md5:72d975f77c2e13e8c002dd311ac1c261, sha256:d430b57efd9be6c23682438b11653ef30f622df657978d2c145e92b332a76417
prio_svc, Prio Service, c:\program files\prio\prio_svc.exe, signer: O&K Software LTd. [valid], md5:9ef7419948da708d0f570c8a61c28783, sha256:0c932caaf1d63c6a23c06aa9280ddd97f6304b92715b15cc0e3400ef1385589b
reaConverter_service, reaConverter folders service, c:\program files (x86)\reaconverter 7 standard\rc_service.exe, signer: [unsigned], md5:c0c8c33950e6666b9df0892f465464d0, sha256:4df3d345c1e8df8eb5cfab43b635ae06479ab5249af0ab88444f1bc8f406a793
RichVideo64, Cyberlink RichVideo64 Service(CRVS), c:\program files\cyberlink\shared files\richvideo64.exe, signer: CyberLink Corp. [valid], md5:895b73f5bb93d46962258e6514a7ed8a, sha256:239e45548381bacf1e636f00cddd4343c8515812d5ae71629f0248e417dbae11
Seed4.Me Service, Seed4.Me Service, c:\program files\seed4.me vpn\bin\seed4.me_service.exe, signer: S4M Tech, Inc [valid], md5:e118f571c8baece85759ed3471d25da4, sha256:b5a27928e6ed10c2cf377ecc7a8cb8084d40d5db5abc19b1fa8cf77d8aeb8106
SkypeUpdate, Skype Updater, c:\program files (x86)\skype\updater\updater.exe, signer: Skype Software Sarl [valid], md5:a9c057a9463c25490cf99ea8df8a4b35, sha256:8f4d1c40d0f17edbf84ed455b8946f782c7552383f0a07e410a9b6cff7f51d63
Unchecky, Unchecky, c:\program files (x86)\unchecky\bin\unchecky_svc.exe, signer: Reason Software Company Inc. [valid], md5:20a45c0ebfabdcaf6fb3bcf6867eb145, sha256:9847c9b30ab202819c15ec117dd5dd25d94cab77f02d4c009e9c91ab67f1376f
USBSafelyRemoveService, USB Safely Remove Assistant, c:\program files (x86)\usb safely remove\usbsrservice.exe, signer: Crystal Rich Ltd [valid], md5:fdb2619d97cd5e7176a4f9482846992d, sha256:d37fb8a5ea89e24bbf791dca0c35cfb552bdcbcf869fae06a4856d5e067c94fc
WebUpdate4, Web Update Wizard Service V4, c:\windows\syswow64\webupdatesvc4.exe, signer: Data Perceptions [valid], md5:6690fafc9f2c0df23dd88953c010cfeb, sha256:ba30132d0e78ad25a4dff37c58cc7beb61fe55b24b3d9ed2593df7a741c3c067
WinExtService, WinExt Service, c:\program files (x86)\tss\winext\winext.exe, signer: TriSun Software Limited [valid], md5:00d1ea807a20d558dea08dbc5e796864, sha256:7ccd2f19a4e4559b59f95a960f0551814e3d5e7b8460e6ac696c6ecd93509b2f
WinZip Smart Monitor Service, WinZip Smart Monitor Service, c:\program files\winzip smart monitor\winzip smart monitor service.exe, signer: WinZip Computing LLC [invalid], md5:e42913659f04ae18dbc903a271c8e963, sha256:a71a83d585938f7b19f69b648f420294ff815eb70bbfa203d76e2baeaffe49df
WiseBootAssistant, Wise Boot Assistant, c:\program files (x86)\wise\wise care 365\boottime.exe, signer: Lespeed Technology Ltd. [invalid], md5:03d0e68c049d84bdf9629423901c8e85, sha256:399976627b44fad5f9ca74fd3c5634dceaa4e85044743340777c8f67f0bb2433
WsAppService, Wondershare Application Framework Service, c:\program files (x86)\wondershare\waf\wsappservice.exe, signer: [unsigned], md5:488e9ab0fab785b24fe6efe30622e313, sha256:407902cfea97e2f81422e3fdfd96e00fbbea346792fa1c0b324cdf5695aa9313
{0CBD4F48-3751-475D-BE88-4F271385B672}, , c:\program files\shadow defender\service.exe, signer: Yang Ping [valid], md5:cfa957cdb2dd396d25dd43648c8043ca, sha256:b3b23d09a65583eb309e5faf1d5c5f62b6f5ae06e990248dd6ed71142d5d44fc

Svchost.exe Modules (163 whitelisted)
=====================================
C:\Windows\system32\digest.dll, signer: [unsigned], md5:c4e3fdc9fe8dc3e2e6e99a8b7240a1c7, sha256:993385cfd02665cd9f8be1b4da8c6a047914f5d54a57b598b03837f13a3fd3db

Explorer.exe Modules (225 whitelisted)
======================================
C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\a45ddc8333a6ec85275f9c44732ffb5d\mscorlib.ni.dll, signer: [unsigned], md5:2a7db77cf3574955d1e020e6ad9c8153, sha256:4f7fedcc846c223017ded75d286b304151a756554eda903866e23f47241f63e8
C:\Windows\assembly\NativeImages_v4.0.30319_64\System\6ada715406970ca9c23b97933fa5882d\System.ni.dll, signer: [unsigned], md5:086a097db1b30cd0409efbd50937d8d2, sha256:ef3b59f1735b84af1450243358a6ea27f03b2fea9fd210de3ceef86df1e9f903
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\16c33d498603d75f08c958f31ac7feb5\System.Drawing.ni.dll, signer: [unsigned], md5:4c93f0e8e5839364ae7e2282de951cdc, sha256:3a1185f61edca6bd062a753aa56ed4d2dc5451b243466f578d701f212d2e8a9e
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a472cc54a14423ce444e8c0176bd4437\System.Core.ni.dll, signer: [unsigned], md5:1cc11e013b67a6519737ac9194ecd80f, sha256:490729784f1b8a2e504e47d535cd08c57d5bbffae1f8ab09f69daf0deb046aed
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Compba577418#\1c938d7b7a72a192af142441b20a2900\System.ComponentModel.Composition.ni.dll, signer: [unsigned], md5:07b1c3360e0f82e67567a5fc3f284915, sha256:b5e5fe86ead7e6d9a97b3246d79069f7945690ea36cd91aa5a0f67eae810b427
C:\Windows\system32\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:021b9c427f2faa4e1c9459849574efe3, sha256:bcedb8c7b94b1bf7c77e27afb03822b314297506cbe3f5f206dad6b55bed235f
C:\Windows\system32\digest.dll, signer: [unsigned], md5:c4e3fdc9fe8dc3e2e6e99a8b7240a1c7, sha256:993385cfd02665cd9f8be1b4da8c6a047914f5d54a57b598b03837f13a3fd3db
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\e6842add3c57b175e9db4c8c0bbf54ec\System.Xml.Linq.ni.dll, signer: [unsigned], md5:7ceea02d09a28e08801845606eead6dd, sha256:b9450f3ad77e172cb91d20261b051ca953a32fab7e587646c53333fd9fca4a2e
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\9a2cca41e593d07a4637cffaad98d37e\System.Xml.ni.dll, signer: [unsigned], md5:6e466f30ef4632f38f3d47d737f866ea, sha256:7078b9594165d9d0700bc67c2fe2103e1d076619e185225322cdf9a64e398a10
C:\Windows\system32\xpsp2res.dll, signer: [unsigned], md5:cda5a50c8d8c9e23335651eb38889f79, sha256:35aadba473ac263ad90a06bc07a862f1847f9365cf427646d25fc534fde774e7
C:\Program Files\Genie9\Genie Timeline\GSTimelineNSE.gtl, signer: [unsigned], md5:81e17afb12760cd53c94167f33f89f45, sha256:a31950d0e0ac85873462d7d33fe1d9440348f98095c151a7ac2e24b72dcbc77b
C:\Program Files\Genie9\Genie Timeline\GSLogging.gtl, signer: [unsigned], md5:6c08b992cd2699f3549ce07d6a047da1, sha256:54b62be5ae832a2c043f64abc144bc0bd23b6e299802a8f87810f5c43def9987
C:\Program Files\Genie9\Genie Timeline\GSIndexDB.gtl, signer: [unsigned], md5:dc90c0366fb1824e2e13b71e9a0e38f2, sha256:6a634898a192d4b14962aee233dcb2ddf67ccd9d4b38505ff92d44a6c3c42657
C:\Program Files\Genie9\Genie Timeline\sqlite3.gtl, signer: [unsigned], md5:0b5523c2a9604cb397744eb2170ac964, sha256:82a6b0eb4c223692946120f8b821e7f60b3b7b13d94ad10a7f7413f2c3e46547
C:\Program Files\Genie9\Genie Timeline\RWLock.gtl, signer: [unsigned], md5:2c190d1fd17cb633bc180b378cc763cc, sha256:b0e8dbb1377e9721c51a3e190bd6fecc1de42dfdab3c420696323d4c72f88a5e
C:\Program Files\Genie9\Genie Timeline\Settings.gtl, signer: [unsigned], md5:9978e231f627c91978a7122a695a6352, sha256:ca7051d7a2905b2d1ae4cb646c3aab11ba542c02d32a96705ca67838c6f7838e
C:\Program Files\Genie9\Genie Timeline\GSEncryption.gtl, signer: [unsigned], md5:4247e9faa165ad90de0339128e4b9ea6, sha256:c136b5828ae8b687a990ece7db5438832532ec3ed3b3fd680ee605df893db2f8
C:\Program Files\Genie9\Genie Timeline\GSZipEng.gtl, signer: [unsigned], md5:f99c069dda5e3a11f2c5a5c77a27e3ed, sha256:2bf152a5a57dbdccb301d042c0f4b70d3c728bbbdd210796edfdeb786cbbe77e
C:\Program Files\Genie9\Genie Timeline\GSBackupManager.gtl, signer: [unsigned], md5:159d88c567170404e5a8fb7e2580fed9, sha256:5d9eb226d4bae7911b4ba74b388f38bbe4396d87d65c5e4a6ecd74b921e30d41
C:\Program Files\Genie9\Genie Timeline\GSCopy.gtl, signer: [unsigned], md5:22cb877f3879480cc4b8766cd36941a8, sha256:b141f19758506b12b8ec9f1d6307f29ab4929acfce5a7f839a093a381295706e
C:\Program Files\Genie9\Genie Timeline\libeay32.gtl, signer: [unsigned], md5:a28cf4d49c64cd44ae2b03ca4fd38e2b, sha256:4f5794a96fdba617eaef59e2d3021f732b227217564a5f05d132e00de2c834d9
C:\Program Files\Genie9\Genie Timeline\GSWatcher4.gtl, signer: [unsigned], md5:cd2d7b9314444de8d00df649b23e0bfc, sha256:c8064b22f1d9d66f220bba4611963ee42c2d36b2178b982636cc861406939912
C:\Program Files\Genie9\Genie Timeline\OnlineHandler.gtl, signer: [unsigned], md5:9ecac4d82a1c9ad1796f57fe2c6dcaaf, sha256:f370a77d772d818298215445d60a6cef2c5b898ec9c9ae6b545ba2a4da459cf7
C:\Program Files\Genie9\Genie Timeline\GSLogManager.gtl, signer: [unsigned], md5:c241468fc4fc64ff78dcde359dd8323e, sha256:0e4ed8bcb0a0ed39b95723090fc3e0e2fe038f485c6a47128de8623998f256e4
C:\Program Files\Genie9\Genie Timeline\QueueManager.gtl, signer: [unsigned], md5:889f4378291d87cd72efec62e303adfe, sha256:11e7a3b20caedbe26da07c0ccd9b176c6157af31d67281981e3343d3415074a9
C:\Program Files\Genie9\Genie Timeline\VSSEngine_Proxy.gtl, signer: [unsigned], md5:9c0182bcc0300767a8779bc6307594b9, sha256:dff47d0aa5a7e775d051c1c9fc4a1023f359a0a303c79f31a8556c58b2444e08
C:\Program Files\Genie9\Genie Timeline\GSLibrariesManager.gtl, signer: [unsigned], md5:624f59161d22c3738e83c11730bd6151, sha256:e8a7158f7371d388f10ad4ac951fa61bdfa21832a9fac261a30f37339229e49f
C:\Program Files\Genie9\Genie Timeline\GSTimelineShellRes.gtl, signer: [unsigned], md5:b4c1acd922661767e0856dd47160360b, sha256:e32fbe5e3753649cde06158796cf67ab0db6551e1d8783e6e912216936229d86

Shell services
==============
64-bit, EldosMountNotificator-cbfs5, {DAA49CA1-B4BD-4873-A191-1ACD70F262D9}, C:\Windows\system32\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:021b9c427f2faa4e1c9459849574efe3, sha256:bcedb8c7b94b1bf7c77e27afb03822b314297506cbe3f5f206dad6b55bed235f
32-bit, EldosMountNotificator-cbfs5, {DAA49CA1-B4BD-4873-A191-1ACD70F262D9}, C:\Windows\SysWOW64\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:8713d96f376cae7e25aeff96752ef0dc, sha256:a6c15c0f9dd754754b3b730db3205cf095ce3b914ff21a306089e30a09d672a4

Security providers (1 whitelisted)
==================================
C:\Windows\system32\digest.dll, signer: [unsigned], md5:c4e3fdc9fe8dc3e2e6e99a8b7240a1c7, sha256:993385cfd02665cd9f8be1b4da8c6a047914f5d54a57b598b03837f13a3fd3db

Drivers (64 whitelisted)
========================
AntiLog32, AntiLog32, c:\windows\system32\drivers\antilog64.sys, signer: Zemana Ltd. [valid], md5:0b07a206a3466fb9754632f266a1f576, sha256:58fe3c15afa9808e33b6c5500baa08237edd0cd5f70f85407075f58fafd36d3a
BASFND, BASFND, c:\program files\broadcom\bacs\basfnd.sys, signer: Broadcom Corporation [invalid], md5:830dfc7958adbddd40e0b61b461432b0, sha256:a6e7f77ae395b1e715bed060f193ab8125059d41a3c6d963bc4de9dd53a83b62
BdfNdisf, BitDefender Firewall NDIS 6 Filter Driver, c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys (file is missing)
BootDefragDriver, BootDefragDriver, C:\Windows\system32\drivers\bootdefragdriver.sys, signer: Glarysoft Ltd [valid], md5:85e239de26774afd66a6305bc7c39662, sha256:906ed79fe2ea4925e777d55d7fe83134267a850132fe92f85f9e85312c997dc9
BstHdDrv, BlueStacks Hypervisor, c:\program files (x86)\bluestacks\hd-hypervisor-amd64.sys, signer: Bluestack Systems, Inc. [valid], md5:35f3b5ed900fd2ab03f2889c05deca35, sha256:8343caac4e5a9607a2599a606ffaef8e63da948269e81619715b078ab5a57d37
cbfs5, cbfs5, c:\windows\system32\drivers\cbfs5.sys, signer: EldoS Corporation [valid], md5:b199a12dbab9e4b321f9ca9a074c053b, sha256:3f37c0f8b540574219da2088cbc5609467b858477ec6876a503ab410403f9775
diskbckp, Disk Backup Monitor Filter Driver, C:\Windows\system32\drivers\diskbckp.sys, signer: Chengdu QILING Tech Co., Ltd [valid], md5:37bb612061e916e8c57133f4d2e43dfe, sha256:99b577192969f1af75f92fe99183a58cc7de176445d45e4807e047a48147ff1d
diskpt, diskpt, C:\Windows\system32\drivers\diskpt.sys, signer: Yang Ping [valid], md5:02a9b0605bcb2436e55eca49e5dc6ac9, sha256:f8a07fa3aaff3cf6b74de7d52ebb7dedd3f33db7b0294e27efe50443937035cd
EUBAKUP, EUBAKUP, C:\Windows\system32\drivers\eubakup.sys, signer: CHENGDU YIWO Tech Development Co., Ltd. [invalid], md5:a40a3a4653a18a0da6522cec69547b9f, sha256:abb8d6c5a890d15de9b96768bc91f48d7223c514c480706884d3c96ff539dc0d
EUBKMON, EUBKMON, C:\Windows\system32\drivers\eubkmon.sys, signer: CHENGDU YIWO Tech Development Co., Ltd. [invalid], md5:23a4cfff224cd9fa2226b64f1dcc4b4a, sha256:67fd0393c592591ce9b87c21c78651cb73c1fb67c125b5b04d56f64c241f4f24
EUDSKACS, EUDSKACS, c:\windows\system32\drivers\eudskacs.sys, signer: CHENGDU YIWO Tech Development Co., Ltd. [invalid], md5:38a68d8706f79429acad043be3533b97, sha256:19879137a938a77db0dd68a15befb2908f4d592510eba7b676bbb43ce93e2745
EUFDDISK, EUFDDISK, c:\windows\system32\drivers\eufddisk.sys, signer: CHENGDU YIWO Tech Development Co., Ltd. [invalid], md5:06bb97b21ef082703b7f3ae97f2dffd8, sha256:e40c844e476b8500760549cf5a615a7ee094f18fa14f1c1df08292b1b73ef804
FSProFilter2, FSPro File Filter 2, C:\Windows\system32\drivers\fspfltd2.sys, signer: Alfa System Programming [valid], md5:30855fc9634e2bc088da663c9289a17b, sha256:5d59ecc8282bd044c861cabcf678dd72aef5ebea1fdb129ac19d36be43b54c7a
GSVDRIVE, GSVDRIVE Driver, C:\Windows\system32\drivers\gsvdrive.sys, signer: Pepstyle International Limited [valid], md5:92f626b98500297314efaf19fe41481b, sha256:c2a9d82c7834c2e04dba0c17af9617c363a7bce5118eda24208d973900e2ff59
GUSBootStartup, GUSBootStartup, c:\windows\system32\drivers\gusbootstartup.sys, signer: Glarysoft Ltd [valid], md5:e4626b663b94e5feb90f497395b5c059, sha256:d6fff279e0c8dca900a196e7affde8e839c931cbb6c0ea9e9df94186bdebb9da
inpoutx64, inpoutx64, C:\Windows\system32\drivers\inpoutx64.sys, signer: Red Fox UK Limited [valid], md5:9321a61a25c7961d9f36852ecaa86f55, sha256:f8965fdce668692c3785afa3559159f9a18287bc0d53abb21902895a8ecf221b
ISODrive, ISO DVD/CD-ROM Device Driver, c:\program files (x86)\ultraiso\drivers\isodrv64.sys, signer: SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. [valid], md5:9c6f3f69163133fb8e56ac4a6e163452, sha256:bd6cab093b5451b4cc85b4528dc0251c97a3d11cb3c1493d25f37b06f8cd2238
LSI_SAS, , C:\Windows\system32\drivers\lsi_sas.sys, signer: LSI Corporation [valid], md5:7fa2ed12f3672308fd177ddc9df10bda, sha256:50a98d5382088adedeb0ee2aa47562452d4075cd2a024a3f5af098a067521591
mse, mse, C:\Windows\system32\drivers\mse.sys, signer: Thanksoft [valid], md5:e15860e394d866d5f4008203c5e9e257, sha256:156b1b270f0a9d602be68b8687607b62e8299c9378b3fe5825b7ca85e0b42cac
NetworkX, NetworkX, C:\Windows\system32\ckldrv.sys, signer: CrypKey (Canada) Inc. [valid], md5:2263727032e9b19231a706046b8c82d3, sha256:aaae23ff8164bc03f9c331c324f4c4ac7298535cc0bbbb14e9319d009d92d9e1
npf, NetGroup Packet Filter Driver, C:\Windows\system32\drivers\npf.sys, signer: CACE Technologies, Inc. [valid], md5:c31fa031335eff434b2d94278e74bcce, sha256:f5dfd40c16e4013cbad0e4fb8ef2b4419702b9c215218f69c4a2dd7c4c4c1e2b
Partizan, Partizan, C:\Windows\system32\drivers\partizan.sys (file is missing)
RrNetCapFilterDriver, RadioRip Filter Driver, C:\Windows\system32\drivers\rrnetcapfilterdriver.sys, signer: Audials AG [valid], md5:6195ec84c82e7844b5b17803addb1ca3, sha256:175df60973c50b1f1fa84b7dbb694d2b18cd41da8a29479e388ed76d2c9aae19
SLEE_18_DRIVER, Steganos Live Encryption Engine 18 [Driver], c:\windows\sleen1864.sys, signer: Softwareentwicklung Patric Remus - ArchiCrypt - (Patric W.Remus) [valid], md5:ed3188a5ac871564d2598f289b5d36df, sha256:ccdca10105480db16b4e0bd2767ea2def62c9996f2e059fbaa4a3b40ae3e97f6
sptd, , C:\Windows\system32\drivers\sptd.sys, signer: Disc Soft Ltd [valid], md5:feb80a9ec320569cc82d4db9f4ac78bc, sha256:e6340cda9b5f59dbe68128356e357feda3655a296bfe4b7f44944f2de5da9765
StarPortLite, StarPort Storage Controller (Lite), C:\Windows\system32\drivers\starportlite.sys, signer: StarWind Software Inc [valid], md5:b1800f5da5114148e405f21292edf77a, sha256:f0cce39aa15a7e8ebb8eba72c053f6489e10601294acd6e12dcdc6e2be76403b
WinisoCDBus, WinISO Virtual CD Drive, C:\Windows\system32\drivers\winisocdbus.sys, signer: ZJMedia Digital Technology Ltd. [valid], md5:bc67c1e4b36063968e54c3b2e4db8978, sha256:ff4725171c6d4bde6b258fd19949c7d624f1f8693a26ab1e2e04103fc46484cb

Firefox Extensions
==================
Define Ext, c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\zgvstddqqjlabihif@opvrjrelhkc.org\install.rdf, signer: [unsigned], md5:5842ee4001ad52940eb17cd5ff0f4611, sha256:1158399d7e208299988ad119a4ed893599f889c76cd3555865c6c282d998eba8
Fast Discountz, c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\{2a4808f0-e451-4d0b-982a-bb0f44d3354d}\install.rdf, signer: [unsigned], md5:d61c0e527708ae3740f9edcc4a3a697a, sha256:eb157f1ad7e9237577be9ca4c271a2682ffaa9e0086e176ebe5c462708cfc592
Yahoo! Toolbar, c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\install.rdf, signer: [unsigned], md5:b8ba003282e8d1c7ce4d4d971fdd82f5, sha256:dc9eb7fa468029e7a63086bf177340c969af8212ca50e3ab4a99f704bf041d97
Define Ext, c:\program files (x86)\mozilla firefox\extensions\zgvstddqqjlabihif@opvrjrelhkc.org\install.rdf, signer: [unsigned], md5:5842ee4001ad52940eb17cd5ff0f4611, sha256:1158399d7e208299988ad119a4ed893599f889c76cd3555865c6c282d998eba8
Starfield Zoom, c:\program files (x86)\mozilla firefox\extensions\zoomext@starfield\install.rdf, signer: [unsigned], md5:a4ee454e270f9b4a0684eeb262b89c8e, sha256:67beea3e49580a2faca0edae768f1c0db9ff99d07c7e9c3b5366eaa4a882da16
VideoGet FireFox extension, c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\{85e85ff9-e50c-42de-8a3d-61485fd6c8db}.xpi, signer: [unsigned], md5:b417fc38994b0454111c9c42ad7f9945, sha256:2ba10652894988592f1bc64d3565b680bf62fb0478974d8ce195cd71b9dcc6a6
, c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\{db981cca-088e-4731-a4a2-2fe218703c0e}.xpi, signer: [unsigned], md5:c6aaa9ba3ea6e32b06f207fb42416632, sha256:50c81b9bb7893260c1992a49d0d38323b96c9c4c48dbd1fa291845e8a6d5d3a0
Failed to locate install.rdf in 'c:\users\morgan pierce parker\appdata\roaming\mozilla\firefox\profiles\dzygi7op.default\extensions\{db981cca-088e-4731-a4a2-2fe218703c0e}.xpi'
Skype, c:\program files (x86)\mozilla firefox\browser\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}.xpi, signer: [unsigned], md5:2b22aab1fdfe599b85b41f7be33cdd19, sha256:ed78b4bb120ab5e0578bd4476416e8c3f786371179df3fadf98d7b8c169a6d0c
, c:\program files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi, signer: [unsigned], md5:7a4d322fdb021752f498839a1c18cc42, sha256:c459179add914910c390454a949dd85b7c0737acdd3980f1a292ef77c96ea4dc
Failed to locate install.rdf in 'c:\program files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi'
, c:\program files\mozilla firefox64\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi, signer: [unsigned], md5:2ec1a5a288d5bbcffce99b2823dbe049, sha256:c41333f9e9a2d09799ebfd5c0805ebec8cc541ec22d461c872253c0b8305a461
Failed to locate install.rdf in 'c:\program files\mozilla firefox64\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi'
, c:\program files\bitdefender\bitdefender 2015\antispam32\bdwteff\install.rdf (file is missing)
Wondershare YouTube Downloader, c:\program files (x86)\wondershare\allmytube\svrfirefoxext\install.rdf, signer: [unsigned], md5:f24d92dbc0ff8cadcfc7ba0bb46f6413, sha256:7a0067d7d25cf534e1907514a6d9cf37f2c8e6ed3957546ec4c2295d11ee89a7
Wondershare Player, c:\programdata\wondershare\player\player@wondershare.com\install.rdf, signer: [unsigned], md5:e44ca3f284221106d77d5b3f4e3b7db2, sha256:2ef1e486e3fae295f5501f54c1c34bde02a9e2dbca791a7ad9fb4bccd964ac0c
Steganos Password Manager, c:\program files (x86)\steganos privacy suite 15\spmplugin3\install.rdf, signer: [unsigned], md5:c0e2b225f9b378b3b1194d72bae1a734, sha256:54507f1acbc1bf9f63e8ab579b1c6f1591b40916ff3091565a2e30ca94adf20f
RoboForm Toolbar, c:\program files (x86)\siber systems\ai roboform\firefox\roboform.xpi, signer: [unsigned], md5:9abbb320f04dd6324cedc5b336db7657, sha256:48a6270100d0aa987396df31a5c844691cdd4e74fc4d99823ca0234ee4bca66f
Wondershare Video Converter Ultimate, c:\programdata\wondershare\video converter ultimate\wsvcu@wondershare.com\install.rdf, signer: [unsigned], md5:b7e0097ded8d3b414759e088ea9c3579, sha256:d3b2d35ba7daf39a21099c0eafd4e7f3ca43948cabda34d81d74706758883a75
PDF Architect Converter For Firefox, c:\program files (x86)\pdf architect\ffpdfarchitectext\install.rdf, signer: [unsigned], md5:ccce2adb0d9fd04229913edb481195af, sha256:ea60e4068614ed501c1d863f661b37458d9a04114cc3a693d32b541c299f96f6
, c:\program files\bitdefender\bitdefender 2015\antispam32\bdwteff\install.rdf (file is missing)
Sticky Password Autofill Engine, c:\users\morgan pierce parker\appdata\roaming\lamantine\sticky password\spautofill\install.rdf, signer: [unsigned], md5:f4830f94c141a7272ee3ee0b64845a15, sha256:b81cf2605265241f731a71f352d5a865a065a2e99babfe4af4082a4a9047f660
CaptureSaver, c:\program files (x86)\capturesaver\firefox\install.rdf, signer: [unsigned], md5:b70b852e4513cacf1c725eb076475cd7, sha256:ff5062a5b122b39cd3c407b3dd3a2d06d6aa0530f876d1bf01f23392bdaf4e47
RoboForm Toolbar, c:\program files (x86)\siber systems\ai roboform\firefox\roboform.xpi, signer: [unsigned], md5:9abbb320f04dd6324cedc5b336db7657, sha256:48a6270100d0aa987396df31a5c844691cdd4e74fc4d99823ca0234ee4bca66f

Firefox Search Engines
======================
AVG Secure Search, http://mysearch.avg.com/search?cid={FE5750AF-E26C-4B79-9D97-FFA429493115}&mid=25b6a9660f9e47d3852c69e529d32f38-9b4cdb8f2c0c27e7bf42b59df8aea853cdd6fef3&lang=en&ds=co011&coid=avgtbdisco&pr=sa&d=2013-11-05 09:02:00&v=17.1.2.1&pid=safeguard&sg=0&sap=dsp&q={searchTerms}, C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml, C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml, signer: [unsigned], md5:f96f6b6d025a7475b9c552f0361d8e5a, sha256:aca56e342ee977399b0a9b22eded645d9d833589bd2755f860da9b9fd742d180

Firefox.exe Modules (187 whitelisted)
=====================================
C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff\components\x64\bdwtxff.dll, signer: Bitdefender SRL [valid], md5:3dd0821f68358145a9ad3e98b897ec6d, sha256:07c2d2eb55db757d784154eb196c13356254e940854851baa664075c432a0b70
C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\a45ddc8333a6ec85275f9c44732ffb5d\mscorlib.ni.dll, signer: [unsigned], md5:2a7db77cf3574955d1e020e6ad9c8153, sha256:4f7fedcc846c223017ded75d286b304151a756554eda903866e23f47241f63e8
C:\Windows\assembly\NativeImages_v4.0.30319_64\System\6ada715406970ca9c23b97933fa5882d\System.ni.dll, signer: [unsigned], md5:086a097db1b30cd0409efbd50937d8d2, sha256:ef3b59f1735b84af1450243358a6ea27f03b2fea9fd210de3ceef86df1e9f903
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\16c33d498603d75f08c958f31ac7feb5\System.Drawing.ni.dll, signer: [unsigned], md5:4c93f0e8e5839364ae7e2282de951cdc, sha256:3a1185f61edca6bd062a753aa56ed4d2dc5451b243466f578d701f212d2e8a9e
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a472cc54a14423ce444e8c0176bd4437\System.Core.ni.dll, signer: [unsigned], md5:1cc11e013b67a6519737ac9194ecd80f, sha256:490729784f1b8a2e504e47d535cd08c57d5bbffae1f8ab09f69daf0deb046aed
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Compba577418#\1c938d7b7a72a192af142441b20a2900\System.ComponentModel.Composition.ni.dll, signer: [unsigned], md5:07b1c3360e0f82e67567a5fc3f284915, sha256:b5e5fe86ead7e6d9a97b3246d79069f7945690ea36cd91aa5a0f67eae810b427
C:\Windows\system32\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:021b9c427f2faa4e1c9459849574efe3, sha256:bcedb8c7b94b1bf7c77e27afb03822b314297506cbe3f5f206dad6b55bed235f
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\e6842add3c57b175e9db4c8c0bbf54ec\System.Xml.Linq.ni.dll, signer: [unsigned], md5:7ceea02d09a28e08801845606eead6dd, sha256:b9450f3ad77e172cb91d20261b051ca953a32fab7e587646c53333fd9fca4a2e
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\9a2cca41e593d07a4637cffaad98d37e\System.Xml.ni.dll, signer: [unsigned], md5:6e466f30ef4632f38f3d47d737f866ea, sha256:7078b9594165d9d0700bc67c2fe2103e1d076619e185225322cdf9a64e398a10

Chrome Extensions
=================
Wondershare Player, C:\Users\Morgan Pierce Parker\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdegagmpemadclljncealhmmkojfoam\1.6.0_0\manifest.json, signer: [unsigned], md5:724089706b4dfbc1ba5aebcd86930b31, sha256:9ec89f202e9f9a8b5755ace99455a83e3668048896852191b7041cc10b305f59
Bitdefender Wallet, C:\Users\Morgan Pierce Parker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih\18.21.5_0\manifest.json, signer: [unsigned], md5:426b66ea72c0f1de109f7f7f0e22b2d9, sha256:0809a60af732dcb00a0f48e2afe620bc8e73e75290b5798eff9f192b5f91f8c4
Skype, C:\Users\Morgan Pierce Parker\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\9.0.0.5000_0\manifest.json, signer: [unsigned], md5:8d9f10c556a7c205128e1ce5db1f5185, sha256:b2393d6ab41e76b5eb8b7bdeab8c571407b70ad6c349c2252bddb0e44d79d614
Chrome Media Router, C:\Users\Morgan Pierce Parker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5316.725.0.13_0\manifest.json, signer: [unsigned], md5:daf09e6a074e0ee23d26cb6cf8eaa244, sha256:6244fb7722b1f0e13b28c240139bee5c114e4837e20c5769bfab925c26571ccc
Chrome Media Router, C:\Users\Morgan Pierce Parker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5616.1121.0.3_0\manifest.json, signer: [unsigned], md5:66d1e8e3dc55b5e25ca9e8bce294d535, sha256:182aa9cd108fdf58fe5632dbd9235b64a849a75a461c9c8e58432af061bf773f

Recently created/modified files (26 whitelisted)
================================================
-26580328 minutes, c:\Program Files (x86)\Java\j2re1.4.2_04\bin\jusched.exe, signer: [unsigned], md5:d7b9be63c406103ee1405fe473ac0697, sha256:350bcc4a901b730fc16ffa5c0f7e76464c036d73912af07ba320bdf2fd7a7376
-26580328 minutes, c:\Program Files (x86)\Java\j2re1.4.2_04\bin\jucheck.exe, signer: [unsigned], md5:4890caaa9ab8d4b2f12e7beee986ed5a, sha256:3ae1ee77b6564cea40164f3ef82724356cb2d1097e4b83f76e6229e21ae290d4
-26580328 minutes, c:\Program Files (x86)\Java\j2re1.4.2_04\bin\NPJPI142_04.dll, signer: [unsigned], md5:2bca54cb6a12a5efbf922c0c1856f30d, sha256:15dceb3c5ba88cf059f0358e8207f567bbeee0f6a7e3ce64fe6d79be6130107f
59 minutes, c:\Program Files\FreeFixer\Uninstall.exe, signer: [unsigned], md5:bd7964d71ae534e7382907ce8cd73c3e, sha256:23ad9f07f13a7d1f2bed10b2fdd5970e014d25bab3c6b27c1217b3ea6138a570

Csrss.exe virtual memory files (135 whitelisted)
================================================
C:\Program Files (x86)\PhraseExpander\PhraseExpander.exe, signer: Andrea Nagar [valid], md5:872ca67b0a4bc415e5a784e56730fc9a, sha256:c83de5212e04a359d19bf8853af9405187cd2c9e68135d36e14e76cc47e9010e
C:\Program Files\Hide Folders 2012\hf.exe, signer: FSPro Labs [valid], md5:1d490c40413ff7a4cb804972d552a20d, sha256:2fae6821d8787140e4d624d5248a677da1406a8e4a6d30f2ef4637cef7621492
C:\ComIntRepair.exe, signer: [unsigned], md5:c2b9cb997461a1ec1199af8634273e7d, sha256:f93d752e0c66aa7ed105ac3a6b708b54919acfbb417916296eb86151b5fd61a3
C:\djvused.exe, signer: [unsigned], md5:2ec9fd48927c6f5c391ce138166aa269, sha256:a5b2dfe267ddd0c2ceb412e93175dd4c9bc069e3d4133f91260849a82c0bab56
S:\1 DOWNLOADS\Bitdefender_2017_UninstallTool.exe, signer: Bitdefender SRL [valid], md5:0e70392499d43acb62809bd2bdc91cbe, sha256:401cd6a87b9bec1f027c081ad23320c91d668dc5dc7a11226493e6aa387be6b7
C:\Program Files (x86)\Opera20\Launcher.exe, signer: Opera Software AS [valid], md5:dfc7eabac983232c7ef4788a73aaa6d5, sha256:ddbfc815e9db08e7376c5898c910fd6d5ffc2cb39674ef4b4c5ab31a27d537b6
S:\1 DOWNLOADS\Gonzales_uninstalltool.exe, signer: Bitdefender SRL [valid], md5:119d17b840db649d230ece4a44f0aabc, sha256:68cc6d6f5c724eab5f59fbd0e2b0dbc0d6438017f0f81d49a30ec650e3fddea3
C:\Program Files (x86)\IrfanView\i_view32.exe, signer: [unsigned], md5:137cd8098666d9c79fdd5fadb7554d68, sha256:a95ec7c926aa5216cf4533eef972393897ca01546d089d775e38b22cd095126d
C:\Program Files (x86)\Total Uninstall 5\Tu.exe, signer: Gavrila Martau [valid], md5:a3ca16b5d32ed36892f3a776f69deff4, sha256:a56e272f3309a105c2cb5b56c84120783d65fbc8e326a979fb901ef0c27791d0
C:\Program Files\Genie9\Genie Timeline\GSTimelineShellRes.gtl, signer: [unsigned], md5:b4c1acd922661767e0856dd47160360b, sha256:e32fbe5e3753649cde06158796cf67ab0db6551e1d8783e6e912216936229d86
C:\Program Files (x86)\Odin Video Converter\QTSystem\QuickTime.cpl, signer: [unsigned], md5:bfede3f0f70fa5eb0c4913ff9df83f50, sha256:55ca16917aec5f3efd81ca13e754f1fe4e997ab2990230262ca457ada43bda75
C:\Program Files\Genie9\Genie Timeline\GSLibrariesManager.gtl, signer: [unsigned], md5:624f59161d22c3738e83c11730bd6151, sha256:e8a7158f7371d388f10ad4ac951fa61bdfa21832a9fac261a30f37339229e49f
C:\Program Files\Bitdefender\Bitdefender 2015\IServConfig.dll, signer: Bitdefender SRL [valid], md5:003435b6e3b69ecd030ddb8e98b137fc, sha256:6c2df62cd36d22a39858b722b367ac40e315a70cad2e8592f0f35858998c0bbd
C:\Program Files (x86)\Cool Record Edit Pro\CoolRecordEditPro.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:1038462f04f3559d116f334fefa32947, sha256:d4585113f09ce21be96c956b7b73c5d49bb365f9b24e251fce5b4c61c42d39aa
C:\Program Files (x86)\iMyfone\iMyFone TunesMate\TunesMate.exe, signer: Shenzhen iMyfone Technology Co., Ltd. [valid], md5:e8d718cdfa0d9993e63d7725c571acb9, sha256:edf668b718ebf71240dd89e21f0ad07d5d4a076edd75f4e228098ace93a93d9e
C:\Program Files (x86)\Belarc\BelarcAdvisor\BelarcAdvisor.exe, signer: Belarc, Inc. [valid], md5:9e8e6773e052e5b72109a3f76d290c62, sha256:c8003138fd21dcd38e39aa08e5c52175b8d26919d415ad1e0deb91f1bdcae929
C:\Program Files (x86)\FLDraw\Interactive Image Creator\FLDraw.exe, signer: [unsigned], md5:b64ef7a512cffae9c35643564d4ca5cc, sha256:d54e52745f84cd82d0c4bcd0f2ed02d678c8f9a59029a2f1e0807881422ca0f3
C:\Program Files\CyberLink\PhotoDirector5\PhotoDirector5.exe, signer: CyberLink Corp. [valid], md5:6dd8ffaafdd84dd728ceb622f502ee26, sha256:5038ef352bd21adad4fa49b07ccbe947562e17c6edd50cbc32f21743c4b32cb8
C:\Program Files (x86)\BinaryNow\Scan2Encrypt 2\Scan2Encrypt.exe, signer: BinaryNow, Inc. [valid], md5:098811e016bd2e6a3c25d674c92fcca8, sha256:748c250126e5af9d4ecd01dde5e18c1666d4bc2c16a4ee64a624070376c4e92e
C:\Program Files (x86)\Bytesignals\Stayfocused\stayfocused.exe, signer: [unsigned], md5:f5f5d3608ecfe08f7675417ebb6e1fd9, sha256:f326b2ce5e70b575670d29c00188578da34fc4fba8b9df9409c6811688f2a1a6
C:\Program Files\Genie9\Genie Timeline\RWLock.gtl, signer: [unsigned], md5:2c190d1fd17cb633bc180b378cc763cc, sha256:b0e8dbb1377e9721c51a3e190bd6fecc1de42dfdab3c420696323d4c72f88a5e
C:\Program Files\Genie9\Genie Timeline\Settings.gtl, signer: [unsigned], md5:9978e231f627c91978a7122a695a6352, sha256:ca7051d7a2905b2d1ae4cb646c3aab11ba542c02d32a96705ca67838c6f7838e
C:\Windows\SysWOW64\DivXControlPanelApplet.cpl, signer: DivX, LLC [valid], md5:624158ba3fe1d78fd347b5f1bfcc69b0, sha256:ae5a030b205894fb18551a3e9abbfe687e7276aeb4c54ae06939225f0e9d895f
C:\Program Files\Genie9\Genie Timeline\sqlite3.gtl, signer: [unsigned], md5:0b5523c2a9604cb397744eb2170ac964, sha256:82a6b0eb4c223692946120f8b821e7f60b3b7b13d94ad10a7f7413f2c3e46547
C:\Program Files\Genie9\Genie Timeline\GSZipEng.gtl, signer: [unsigned], md5:f99c069dda5e3a11f2c5a5c77a27e3ed, sha256:2bf152a5a57dbdccb301d042c0f4b70d3c728bbbdd210796edfdeb786cbbe77e
C:\Program Files\Genie9\Genie Timeline\GSCopy.gtl, signer: [unsigned], md5:22cb877f3879480cc4b8766cd36941a8, sha256:b141f19758506b12b8ec9f1d6307f29ab4929acfce5a7f839a093a381295706e
C:\Windows\system32\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:021b9c427f2faa4e1c9459849574efe3, sha256:bcedb8c7b94b1bf7c77e27afb03822b314297506cbe3f5f206dad6b55bed235f
C:\Windows\SysWOW64\cbfsMntNtf5.dll, signer: EldoS Corporation [valid], md5:8713d96f376cae7e25aeff96752ef0dc, sha256:a6c15c0f9dd754754b3b730db3205cf095ce3b914ff21a306089e30a09d672a4
C:\Windows\system32\access.cpl, signer: [unsigned], md5:3a0f74e8b4244fd0b78d02ace303e98e, sha256:18534e45e18aa5b3e18389e4907ee915304a3989e85b62792647782d62155295
C:\Windows\SysWOW64\Cleanse.cpl, signer: [unsigned], md5:70560b5c6a70af782e6354acb5497948, sha256:3040e4ca9d6cf96717e55d635eac3509827ba8a669174cf6cbd607c6236b3fc0
C:\Windows\system32\nusrmgr.cpl, signer: [unsigned], md5:b7dd550113149f43c81676acb9bff44d, sha256:8bf2127f2289210d49a6eaba36ab2afa2bef8411e6aacd5898cd400e44bc91dd
C:\kindlegen.exe, signer: Amazon Services LLC [valid], md5:1b9224a5eadbd5617439848894c284e1, sha256:a5dd234180344a3241503252fd2b7752b5d7697d12c1c4cbd2cb4beb6cf3aa07
C:\MP4Box.exe, signer: [unsigned], md5:02ed66b5b82700e2a610a9107e97b52f, sha256:0de5a98ddbc16e9142dea3877d784ea9742235408718a8d6037653275490d0f7
C:\Program Files\Genie9\Genie Timeline\QueueManager.gtl, signer: [unsigned], md5:889f4378291d87cd72efec62e303adfe, sha256:11e7a3b20caedbe26da07c0ccd9b176c6157af31d67281981e3343d3415074a9
C:\Program Files (x86)\AcroPano\Photo Stitcher\Acropano.exe, signer: [unsigned], md5:052951fa47b617819fcc217dcd34ca9a, sha256:b166eadb4a82547af70b384977d47c444a2e30597d774b8be265d13f9805f76e
C:\Program Files\Genie9\Genie Timeline\GSLogging.gtl, signer: [unsigned], md5:6c08b992cd2699f3549ce07d6a047da1, sha256:54b62be5ae832a2c043f64abc144bc0bd23b6e299802a8f87810f5c43def9987
C:\Program Files (x86)\Adult Advantage\Adult Advantage.exe, signer: [unsigned], md5:e02f7371de64c5f8f0df4be6995a5a91, sha256:172f503bf9213c60aa4ed1c4df8ffa235d78631290e6ed2d38253ecbf8145850
C:\Program Files (x86)\AnVir Task Manager Pro\AnVir.exe, signer: AnVir Software [valid], md5:727b63fdee0f82110dbb482e427f102a, sha256:49c7f9cc028232e23f8c925fa2e85916216034d6ce58a888e426b162df35ab4d
C:\Program Files (x86)\focus booster\focus booster.exe, signer: [unsigned], md5:146e5f247823d8aa3ad90a282a79c6fe, sha256:f61e3fb2fd244c103bc8da25e11cd25539ff068c8f2bbedfa44e93805fdf3c61
C:\Program Files\Genie9\Genie Timeline\GSWatcher4.gtl, signer: [unsigned], md5:cd2d7b9314444de8d00df649b23e0bfc, sha256:c8064b22f1d9d66f220bba4611963ee42c2d36b2178b982636cc861406939912
C:\Program Files (x86)\FreeFileViewer\FreeFileViewer.exe, signer: Bitberry Software [valid], md5:2cfe53ac626e469c5405f4c7481dd9f9, sha256:df1eab56bac0bcaf6696d9fb2fc76efa5c2b58d9df5df8a1e5f686ad34055929
C:\Program Files\Genie9\Genie Timeline\GSIndexDB.gtl, signer: [unsigned], md5:dc90c0366fb1824e2e13b71e9a0e38f2, sha256:6a634898a192d4b14962aee233dcb2ddf67ccd9d4b38505ff92d44a6c3c42657
C:\Program Files\Genie9\Genie Timeline\GSBackupManager.gtl, signer: [unsigned], md5:159d88c567170404e5a8fb7e2580fed9, sha256:5d9eb226d4bae7911b4ba74b388f38bbe4396d87d65c5e4a6ecd74b921e30d41
C:\Program Files (x86)\Sound Editor Pro\SoundEditorPro.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:15c7f734680d248161f37ee4054ae6e6, sha256:8c512bd14cfb1b0afb8e534bbef10555af6bed72d47e9571ceb897839135d9de
C:\Program Files (x86)\iMyfone\iMyfone D-Back\D-Back.exe, signer: Shenzhen iMyfone Technology Co., Ltd. [valid], md5:9909835750d664b1e535ae5f59fdb486, sha256:c89a6cf91d61f6e718e9ca6702441057df398f5c666e74ed02ae315b706eb99f
C:\Program Files\Franzis\HDR projects 2\HDR projects 2.exe, signer: Franzis Verlag GmbH [valid], md5:954378abf7d56df806637fb808ba077f, sha256:48df4a02459d16e02dcf778e21fc838da06bcd75d8456876ee70b3c2f661a953
C:\Program Files\FreeFixer\freefixer.exe, signer: [unsigned], md5:b2611ddd92653e03d9b8b7f8a60b61e1, sha256:d903b9ba67d98d60ea6294671eefce80c6df6d0574078a8e4cde46333820f648
C:\Program Files (x86)\Innovative Solutions\Advanced Uninstaller PRO\uninstaller.exe, signer: Innovative Solutions Grup SRL [valid], md5:b6dff0e955518836e6fd19dc0b346ab7, sha256:178fe44a1160ea2565c6718427efaa9d41bbb6c54fa36d52ebf91082ded5febf
C:\Windows\Installer\{08067B4D-A769-436D-B1DF-B045FF24E349}\_23FD278B3FB94F8BAF419096B543B9DA.exe, signer: [unsigned], md5:23779e8667df35c3fd0f424e588b1917, sha256:f7d0b87ed3dcb991025af2d40bdf69db8b1bd1641636089d13af5d266a8ff6d6
C:\Users\Morgan Pierce Parker\AppData\Local\ESET\ESETOnlineScanner\esets_apiW_a.DLL, signer: [unsigned], md5:efcc2da8d9397db0e36c0b705c4d3def, sha256:412373972e5cafebbb821e4bb55b3ee46a83c0face100ea6bdb68664e4b665c5
C:\Program Files (x86)\Nero\Nero 9\Nero 9\Nero BurnRights\NeroBurnRights_cpl.cpl, signer: [unsigned], md5:79ef08003b6d06e86e5c7542b43f6873, sha256:167585bc1cc15a9cecd89ae5465c244ea06e3328df8c560a13bf9694e7059985
C:\Program Files\Bitdefender\Bitdefender 2015\npcomm.dll, signer: Bitdefender SRL [valid], md5:67962e60c988cc326eb1d575838f0761, sha256:c85bfaff464e94ad141fb6ca51994d95d79867fa6fc77bf3aff61ef0c93d020c
C:\Program Files\Genie9\Genie Timeline\VSSEngine_Proxy.gtl, signer: [unsigned], md5:9c0182bcc0300767a8779bc6307594b9, sha256:dff47d0aa5a7e775d051c1c9fc4a1023f359a0a303c79f31a8556c58b2444e08
C:\Program Files\Genie9\Genie Timeline\x86\RWLock.gtl, signer: [unsigned], md5:f9eab5514ed687f6b6e845e75b622a25, sha256:a7ad709d9e0ffddada99400bc557bf0d42e122ca003561005e5e8bd7df30a209
C:\Program Files\Genie9\Genie Timeline\OnlineHandler.gtl, signer: [unsigned], md5:9ecac4d82a1c9ad1796f57fe2c6dcaaf, sha256:f370a77d772d818298215445d60a6cef2c5b898ec9c9ae6b545ba2a4da459cf7
C:\Program Files\Genie9\Genie Timeline\x86\GSCopy.gtl, signer: [unsigned], md5:cfae80456155735962c2e9a7db7c3f16, sha256:01502969cb07bfeb1cc1b170b82795d6ba33ef16ada6f3dedaca56883608799f
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\x64\gzfltdp.dll, signer: Bitdefender SRL [valid], md5:659828d53404a6674fb5f62c1f283743, sha256:53f7c2edc7719ee47177a6f79a90042d25752f9e218599ae2f43027e04df41df
C:\Program Files\Genie9\Genie Timeline\GSEncryption.gtl, signer: [unsigned], md5:4247e9faa165ad90de0339128e4b9ea6, sha256:c136b5828ae8b687a990ece7db5438832532ec3ed3b3fd680ee605df893db2f8
C:\Program Files (x86)\Opdicom\OpdiTracker\OptT3.dll, signer: [unsigned], md5:f8275ddc99cbcf845a7d32bdd5fb8fad, sha256:302392ec2a739cb4ccbdd590329a4935aae8abacb42d317af24ae8e2d17eee5f
C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxcr.exe, signer: Bitdefender SRL [valid], md5:cea7840b6c103cd82397b746a5a16498, sha256:f8b623c82d6313337b260bf72170aa8520a25b4d8b7dd46af51a4f1a70bd160a
c:\temp\morganp\LOCALS~1\Temp\BDUninstall\UninstallTool.UI, signer: [unsigned], md5:91c44be29238c6ca6caacb63f2cf4f49, sha256:af872c9b6ce87ca84e7fb9cf22583af26c8b5be986e93d06e54e5e11a6aa435e
c:\temp\morganp\LOCALS~1\Temp\BDUninstall\UninstallTool.txtui, signer: Bitdefender SRL [valid], md5:17c3eb71d4ce1c5bb3f9266d5def6543, sha256:a457252f3defbdcfac7694e8f5294a64f561619587991c7c54b1c5f0f8544eee
C:\AlfaReaderInternal.exe, signer: [unsigned], md5:75028f3fd1fe68e7c20f0a9ffebdf20f, sha256:6fa082650ac16faf18f34db759bcc5bcb100d1d7cd0ac97b1736d77a0daf2f52
C:\Program Files (x86)\Adobe\Photoshop Album Starter Edition\3.0\Apps\Photoshop Album Starter Edition.exe, signer: [unsigned], md5:62b08b1679ba96d1bcf4940f995ec775, sha256:0a02339c5206afee6da4a5003aea7d3ac3d9507b2608a0dd64aad329b5a587ed
C:\TransActATSetup 2015 07 18.exe, signer: [unsigned], md5:7d94ab83180b9cdf1c0a60693517ee67, sha256:b269964bc2a4960b000368e258d31fabcfb5afccc916c035a3248409f41ab2e7
C:\Program Files (x86)\Mindomo\8.0.20\Mindomo.exe, signer: Expert Software Applications srl [valid], md5:36257780cbc13c69bb6cca29c20a4c0f, sha256:41bc1c4b56a971d4f289a4f6f3abbc9cafcb56b29c557277c544158a6e15db75
C:\Program Files\FlowHeater V4\BIN\FlowHeater.exe, signer: FlowHeater GmbH [valid], md5:f8a272b67466c93df5a4f83fc10bd042, sha256:148de2935e28aad73c106e1d173b8023712c63f9fe3ea0b78ec467ae32a7d292
C:\Program Files (x86)\EaseYou Software\GPS Location Remover For Photos\GPSRemover.exe, signer: [unsigned], md5:1c5628546d3efbc8c02ed39a69ad7d2e, sha256:c7b916bcd08dfeec9de8642a17c2aae915265b7ea83bbf57fd7a0e49ba145d22
C:\Program Files\Franzis\COLOR projects professional\COLOR projects professional.exe, signer: Franzis Verlag GmbH [valid], md5:e6d8cf950aa585ca302a61bda290149b, sha256:f7b6abe836c6fe0e08396175bf58da5e217c224d83c2f9d694333642cc1c3f02
C:\Program Files (x86)\SuperEZ Wave Editor Pro\SuperEZWaveEditorPro.exe, signer: [unsigned], md5:15780cbc563b1dfd26f9c49c0655e34c, sha256:d13ea74501a302a807bdc9383f7d2714cdd7222f0a0904b3f6d5775f23eebcf7
C:\Program Files (x86)\Acro Software\CutePDF Pro Evaluation\CutePDFE.exe, signer: Acro Software Inc. [valid], md5:6a2b407b9b3fa052a8034585980d9ef6, sha256:80022bc358570a5fc14f19c4fa9b1b9b451cec44b0953a4a86125b698df28881
C:\Program Files (x86)\RecordMax Burning Studio\RecordMaxBurningStudio.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:0338883fb951c9042316daadd9a15f0a, sha256:2c674a31d4a5bef255415c2dee6899c1d96d69d8837e046e55a32740cf748826
C:\Users\Morgan Pierce Parker\AppData\Roaming\mjusbsp\magicJackLoader.exe, signer: magicJack, L.P. [valid], md5:930f496eff27662dee0b3ffef3a34369, sha256:7350eabab8f691d1a1945f0f46136770c42fe5a6a5bf3e6fc9f44118518afd66
C:\Program Files (x86)\BinaryNow\PDFImpress 2014\PDFImpressTools.exe, signer: BinaryNow, Inc. [valid], md5:d82550a403510d5dce8313ba8504fa8e, sha256:744b209bfaa02d025e946d5e699ac8c9d8bab1f1981ac6b545c5bd9d801ec53a
C:\Program Files\Firetip\Firetip.exe, signer: [unsigned], md5:a49e10c444e9aa05202bb84f59687abe, sha256:3a4ea2314b41a7720de2343602ef6268fa6bb660f3ee3633adc284e69ff1d83a
C:\Program Files (x86)\NotePro\notepro.exe, signer: Denis Zolotov [valid], md5:1b900469071f1567758ee67276aa3586, sha256:9237c9fb048232957806fee6bd18cbd90fb4116d17b97d6bd91fb66df30369de
C:\Program Files\uTorrent\uTorrent.exe, signer: BitTorrent Inc [invalid], md5:bb7245420097b251d1271f5b6f0c9f02, sha256:22f580cd6e30c0a07fbc39de4ca770fc28480ecd168698e354b42b4b9f4633b7
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\x64\gzfltum.dll, signer: [unsigned], md5:10ead257ee0aa77726d35a7ca72171de, sha256:c6ddc6a032fe43f6b953d7fee98d95d6eb26582e32a40cc13ce05c41550516d5
C:\Program Files\Genie9\Genie Timeline\GSTimelineNSE.gtl, signer: [unsigned], md5:81e17afb12760cd53c94167f33f89f45, sha256:a31950d0e0ac85873462d7d33fe1d9440348f98095c151a7ac2e24b72dcbc77b
C:\Program Files (x86)\Glary Utilities 4\Integrator.exe, signer: Glarysoft Ltd [valid], md5:908b9e4ee22a281e2c5cd75ce22a217d, sha256:2380575cdea464e3c2e052b322cc1819f578e62a5d11c12c395db9ef5a861ed0
C:\Program Files\Genie9\Genie Timeline\GSLogManager.gtl, signer: [unsigned], md5:c241468fc4fc64ff78dcde359dd8323e, sha256:0e4ed8bcb0a0ed39b95723090fc3e0e2fe038f485c6a47128de8623998f256e4
C:\Program Files\Genie9\Genie Timeline\x86\GSLogging.gtl, signer: [unsigned], md5:79d2d569d4bb7c859a3f4c672f808ff5, sha256:c88054090e6fe91b8fb78c88be4e0faf03728b32b3a8c8c525d0fc9871d78584
C:\Program Files\Genie9\Genie Timeline\x86\GSEncryption.gtl, signer: [unsigned], md5:dd59aaa423ad3e4e28c2028194e57f9e, sha256:627926ab2e1b3e399f7992806e40c298daa4a8b5ac1ff8f2ceea3a9d35188953
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\x64\log.dll, signer: Bitdefender SRL [valid], md5:a66597c102634e0a7caff014dcc22696, sha256:eb84844c6cdf5a52e386e0210697a000b727dc512f33d26d18650079bcadcab8
C:\Program Files (x86)\Atlantis\Atlantis.exe, signer: [unsigned], md5:d9213a80a78935c022dcecc09b7b01ab, sha256:7ebd8a9126b1d4d0fefef185eb6b63614288ad3bfb15bc8ceabc68e6c032352d
C:\Program Files (x86)\AntiTwin\AntiTwin.exe, signer: [unsigned], md5:c2b56b1be9d1253808573133be9d6608, sha256:8aa4bbb52fef0f2a5814dc95b790604bf31cb3ae38b1f85afe05325f95b5ff5a
C:\Program Files (x86)\BetterMemo\BetterMemo.exe, signer: [unsigned], md5:7d4c58460d0f4e5a39aa7e2914c432a4, sha256:7ddd603764754fa1667e0b57e17e2c64e14929132fb2f807b979d14828cec46a
C:\Program Files (x86)\JDownloader\JDLauncher.exe, signer: AppWork GmbH [invalid], md5:adcae273b166d29fbefcb86f0032bd18, sha256:baec8bded61e8f394e7b8935620197c7953c733c75d0d97f5bf2288d6a28d000
C:\Program Files (x86)\TNR Utilities\TNR Admin.exe, signer: [unsigned], md5:b4e3b467c916fadce3036004ed7d4db0, sha256:7a745b4149217e62f74b4771126c1719da9463aa399653a7568ea069e423dde2
C:\Program Files (x86)\JDownloader\JDUpdate.exe, signer: AppWork GmbH [invalid], md5:7a7193d8b0606d955e2eb623688a51d1, sha256:3e8aca756e0c7b05b3361ba225ab001c60f677fe22188eb659b16d1ad3a9618e
C:\Program Files (x86)\JDownloader\JDUninstall.exe, signer: AppWork GmbH [invalid], md5:7ecc808efbedadddd87b7697bfb98fd6, sha256:eab92f3116154a0458ddd8a35dd36d62d9837ca686d6cc9e583bd876c1c3ce3b
C:\Program Files (x86)\PDFReader\SumatraPDF.exe, signer: [unsigned], md5:57fcccc1eb69d7ea7a1c2e392dfdba52, sha256:b2561db1ce99374dddf172605fd3a4cae1500f48a5501fedacff719787124e4f
C:\Program Files (x86)\Maple Professional\maple.exe, signer: Denis Zolotov [valid], md5:e1f0d4a58462e2cda0ffbde8d1a43d27, sha256:415abf184d9220bb2ce1b570afacd2d4e49c3d63af248423673b196ac7b529e4
C:\Program Files\Genie9\Genie Timeline\x86\sqlite3.gtl, signer: [unsigned], md5:43110d99ea46a0d1591ddd9d3404f04c, sha256:573f646dd835b2ded7bf6a6e569aa7b1600c8266f4bfbdc86f083b0d41138163
C:\Program Files (x86)\NinjaTrader 7\bin64\NinjaTrader.exe, signer: [unsigned], md5:30ac24d4f0e8f58890173961fba9c30a, sha256:592a2214ad4d97576ceb098ca2be4a6464e0f81dceccebf8d8932dba06207787
C:\Program Files\Genie9\Genie Timeline\x86\QueueManager.gtl, signer: [unsigned], md5:17e26044292748daa7059b7e73049d59, sha256:3f32bfa112e9fc514a7c69e02ddbcc59d015f9c816ed53ca2cc8523d2fe33b18
C:\Program Files\Genie9\Genie Timeline\x86\Settings.gtl, signer: [unsigned], md5:51bf41d2bac75e159b1a7b6a9ef7f9d5, sha256:9d660913f83a44d0f1b91e1b7b145ce2f48ae638178225296aea53d0658cfb9e
C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exe, signer: WeatherBug [valid], md5:68936a201779104ef24e082151a34550, sha256:d836ee812d068fd5fff66df66c240c534a2a3628b7ec2c6fcce1a63e983759cb
C:\Program Files\Genie9\Genie Timeline\x86\GSWatcher4.gtl, signer: [unsigned], md5:a64489ab1d908125f70928f1946ac7f3, sha256:561af2c2364ec9d4f1d15e28abe30cc84f22742e09d9039fd13c5a1f237360b4
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\x64\sfal.dll, signer: Bitdefender SRL [valid], md5:a9acf98c87da4f4610ed0b9f1a4b0087, sha256:4c838901ec8d2c73b9cee6e5bb0e904a4843a94c309173e7f4216c54be2f45b5
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\UninstallLib.dll, signer: Bitdefender SRL [valid], md5:8e583522fa1e5c08ea7e1e26c28e3970, sha256:fcfa0122d8945e8511fd94e5ff3f1ddcfbf91d0a71a3a6f798619c1983cebe2a
C:\Program Files (x86)\PomodoroApp\PomodoroApp.exe, signer: [unsigned], md5:1831bb35df284bc553713398fde27832, sha256:38b063e9bc814e4916c557cb511cabd27f5fc01b3612feee0b066d7feccea600
C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_VPN.exe, signer: S4M Tech, Inc [valid], md5:c98e02d565752da759819b678afcbe19, sha256:ffca0f8ccdcbe93de7ccf550531d93d14039ee4a9a1531519fcc003015ff3264
C:\Program Files (x86)\mov Audio Extractor\movAudioExtractor.exe, signer: [unsigned], md5:a9cefb316ac0c2da57081d88b67e843e, sha256:49b03b416419e4210e58c8398ab01c736200361f176f1d0f3bcd8128dcf43c51
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\x64\IServConfig.dll, signer: [unsigned], md5:d4ea1be49b3645b45c0a50b20c2d21bc, sha256:59df99e82ff0f20fb2dacedb69658da0df81e7e4fdc2a621fc1852ff96ae7b86
C:\Program Files\Genie9\Genie Timeline\x86\GSLibrariesManager.gtl, signer: [unsigned], md5:59d2371da59ab676480d4bbd1a7e9fd1, sha256:0e20c0818835f7c6f40116581eb2a796cdcae125f1ec397d3b617cac436b2d6c
C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineNSE.gtl, signer: [unsigned], md5:7af5d8a906093e762e2ee66e08387aed, sha256:96c11b21559932e60574405d8e26efcda64f7a8125b145bf5ed192e0d8baa69a
C:\Program Files\Franzis\ANALOG projects 3\ANALOG projects 3.exe, signer: Franzis Verlag GmbH [valid], md5:82757e4fe76c98a90dc58d01a5e2f027, sha256:0c540f272441cb61711e8b8e6976621791d29642364c56d57484b4d32ce5434c
C:\Program Files\Genie9\Genie Timeline\x86\OnlineHandler.gtl, signer: [unsigned], md5:3b090d2184862ba3a297c6b3eda880ae, sha256:78d01af28cd82345c715f337571765deb5fccf453eaab1d177dc11ac1b9c7217
C:\Program Files (x86)\AdeptPDF\PDF To Word Converter\pdftoword.exe, signer: [unsigned], md5:f3fc25ce3dc82ec0f518954545e6dd67, sha256:b2d2274b1186bc98cee86633f0d960eb471d48f2248675f8e1fc868c9eb28fda
C:\Program Files (x86)\WaveMax Sound Editor\WaveMaxSoundEditor.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:afd003e3f86a8f19316427f4be057018, sha256:257a279691642e4653509a9189f9ce51c3abb24ae1687b4297adf9f8bb9dc05f
C:\Program Files (x86)\Glarysoft\Malware Hunter\MalwareHunter.exe, signer: Glarysoft LTD [valid], md5:48a70c4b6496a2b35d6de3911b8c5eca, sha256:c849ef333c29871860a0a5f86ad334ced24a475ea1654416046cd8cbec580f21
C:\Program Files (x86)\SuperEZ Wave Editor\SuperEZWaveEditor.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:15c7f734680d248161f37ee4054ae6e6, sha256:8c512bd14cfb1b0afb8e534bbef10555af6bed72d47e9571ceb897839135d9de
C:\Program Files (x86)\Power Time Tracker\PowerTimeTracker.exe, signer: [unsigned], md5:723ad4f09e73ba044eb03e8821840f62, sha256:66fb233c83d554028580112160f021eb2d6d2022de6a7e55b974b3558149a184
C:\Program Files\Genie9\Genie Timeline\x86\VSSEngine_Proxy.gtl, signer: [unsigned], md5:83af6db2e63fcc7c8b785ba572f779d7, sha256:d4fe4519a6acabb60c95d049e94f1234ae53dbc3c94fb74d9c4e2e5f0b23ddaf
C:\Program Files\VueScan\vuescan.exe, signer: Hamrick Software [valid], md5:acc7acbdd191e35f811c9ccd36872b96, sha256:cec588424ff3787c584dca817db4870905dafb448829aaedc531dcf10c1cf897
C:\ddjvu.exe, signer: [unsigned], md5:c67ded99d5f8ffbba85e06be3bfaa669, sha256:66a47e4284a506fbb5d82756f4d1817871d0ce3241f1386f7c1dc59b1e9c0f84
C:\ACServer.exe, signer: MBBSoftware Limited [valid], md5:6ea53bb200357b2459428a228f5c5924, sha256:e0445ca71c117e78aa5d3ad8973abcdd7da0bb86c2d8621ff5bf434364e6fd4d
C:\Program Files\Total Uninstall 6\Tu.exe, signer: Gavrila Martau [valid], md5:53689e10d45c796cd3d5823c4879edb3, sha256:6a27f933a3f41647ec2c5e761dc4fc5eaa567b243be36c369f9ded65771cab29
C:\Program Files (x86)\WinRAR\WinRAR.exe, signer: [unsigned], md5:265cf3b621f78d767bf6cb25f8b8e95e, sha256:f6ab8cdbd5e413a129bba1974a485336a3f0d9a50cd8d74e139d8045e20bda04
C:\Program Files (x86)\BinaryNow\PDFImpress 2014\PDFImpress.exe, signer: BinaryNow, Inc. [valid], md5:e43da3487d57f4d9515a64b0afadde53, sha256:4bc7d0439500fa8b962efebe864c8094dadaa30bf352c20d9406b59b0a4b13bf
C:\Program Files (x86)\Smart Audio Editor\SmartAudioEditor.exe, signer: Tsingsoft Imagination Information Technology Co., Ltd [valid], md5:15c7f734680d248161f37ee4054ae6e6, sha256:8c512bd14cfb1b0afb8e534bbef10555af6bed72d47e9571ceb897839135d9de
C:\Program Files\Genie9\Genie Timeline\x86\GSBackupManager.gtl, signer: [unsigned], md5:8651ace0030cfa985e93ebdb80308a30, sha256:baac2eb689219cbf6977bb48d6fe88ce611bbea1b67a7108d67d650075c02d1d
C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineShellRes.gtl, signer: [unsigned], md5:79d867b2aaae9d071d90541060921f28, sha256:379e7cc126ebae6218effd17c0a627d57c95d21cddd8e92e0d6727ddbad3930c
C:\Program Files\Genie9\Genie Timeline\x86\GSLogManager.gtl, signer: [unsigned], md5:435282faeefd092cf1012f436398549e, sha256:23f9fc6abb5c78d2e3c70c6a872dbe83809265f2b17ce03ef855d083cdd75caf
C:\Program Files\Genie9\Genie Timeline\x86\GSIndexDB.gtl, signer: [unsigned], md5:8a10b433fe66f98501642ce6e516fed3, sha256:e0e5473d3abf8df5bc1d4bae089383b20b8acc1024d985275ef615acd0565c74
C:\temp\morganp\LOCALS~1\Temp\BDUninstall\HTMLayout.dll, signer: [unsigned], md5:dc794a20e485bece338c0ab5e4f9eea5, sha256:7fdb3410ac28b84d7a8131d8a07558eeef987b0068ee40d693995aec333e61ee
C:\Program Files\Genie9\Genie Timeline\x86\GSZipEng.gtl, signer: [unsigned], md5:0393f03e0c93d14fe31687de2fa300fc, sha256:859399da80eb44394ce09da2aed3df80fde5d3a65e8d8cfe90c30ebbcb403c82
C:\Program Files (x86)\WinCatalog\WinCatalog.exe, signer: [unsigned], md5:d83f997e9253146b21614459d1a96ae9, sha256:a7e81b43b47bfced60f4578585ce53661339d652e99a0ff24f1d8b8d52c8fbe4
C:\Audio Control.exe, signer: MBBSoftware Limited [valid], md5:da317fd99b93373fc4e372f65b2c86fd, sha256:08cb8dbd86350c2000e15db810f3866eb119cf1f86abcd5f1aecc8237df0464e
C:\bitdefender_ts_18_64b.exe, signer: Bitdefender SRL [valid], md5:ed5db440156a191b2733333ae7a3601d, sha256:b402b5883e6f55688eafcdfd77a1e1bcc7f209d7cfdada0e2cb1170f51f1b6cd
C:\AmoltoRecorder.exe, signer: Sergey Krivosheyev [valid], md5:47b347d98b42576c26a6f431505d3c0c, sha256:05f92eac29fe2ec016c790874fa1987b9097fd54119afd185e3f5566280de6c6
C:\WINDOWS\system32\cmprops.dll, signer: [unsigned], md5:0af3d5a560255fa79ae84e91156cb5c4, sha256:09a494cef08f09b4fd68915548da9b2e154e0c789b728b7ec3aed0239c80a172
C:\goopatient.exe, signer: [unsigned], md5:f538b908c8a51735b321eff8c2f072d9, sha256:0c90ebdbcb6f8253a1303e9d2ae881275d7058ca89d0dd3645d1673e163d8da0
C:\Program Files (x86)\Opera20\46.0.2597.57\opera.exe, signer: Opera Software AS [valid], md5:feb907b5c0fcf8add8e1e595aee723c9, sha256:3e2cf1a62875eb34d05809d3d13c78f0703e0a92bf52015e5dd9bee3c7bc7551
C:\aem.exe, signer: [unsigned], md5:f40feff3480a8f505f99586415b2a1c3, sha256:3f087b1258259ba244a969fa5a5b913473a01aac67909e5579377b87c6426756
C:\AmoltoVideoRecorder.exe, signer: Sergey Krivosheyev [valid], md5:74175b64140970c869fb8c21acac1a1e, sha256:f553d9d8837254a789198d954a617d4ed9fba2ee55a4dfb519e0f77029109274
C:\Program Files\Franzis\BLACK WHITE projects 3 elements\BLACK WHITE projects 3 elements.exe, signer: Franzis Verlag GmbH [valid], md5:a823ce30dbb2207b557c9e341c69c679, sha256:85a5fdefa411e6b55807788a7731a35dc75f0e711b4b9ec56010dca3ce1a2de2
C:\Program Files (x86)\Opera20\46.0.2597.57\opera_autoupdate.exe, signer: Opera Software AS [valid], md5:8e1e1444eeae86b17344235ab6d131a2, sha256:3bb50e1d96e266c6e80db675c9e4cfde6d9926290be9258f917c59601f6aee15
S:\1 DOWNLOADS\freefixersetup.exe, signer: [unsigned], md5:7d562d6ff6204af39958046872c3d133, sha256:ef7d81ae97c7e6affb823491c0c6c1ca8a89a943ad20beecf00a5641bc18dee1

Errors
======
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\Türkçe\Çesitli' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\?????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\???' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\?e??µata' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)\SoftMaker Office Standard 2012\inst\mydoc\??' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Program Files (x86)32' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\Türkçe\Çesitli' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\?????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\???' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\?e??µata' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\sysbackup\Program Files\SoftMaker Office 2012\SoftMaker\??' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\System Volume Information\SystemRestore\FRStaging\Program Files (x86)\Paragon Software\Boot Media Builder for Hard Disk Manager 14 Professional\bmb\WAIK FOR WINDOWS 7 TO MAKE BOOTABLE\Windows Automated Installation Kit for Windows 7 documentation (May 2010 Update) from Official Microsoft_files' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\System Volume Information\SystemRestore\FRStaging\Users\Morgan Pierce Parker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Z OLD HOLDS\DORMANT\HOLD 2013 06 07\0 131 FULL START UP 2013 03 18\HOLD\0 131 System Development from 105 Desktop - Shortcut' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\System Volume Information\SystemRestore\FRStaging\Users\Morgan Pierce Parker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Z OLD HOLDS\DORMANT\HOLD 2013 06 07\0 131 FULL START UP 2013 03 18\OLD STARTUP\HOLD\Startup (Disabled by AnVir) - Shortcut' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\Users\LogMeInRemoteUser\Application Data' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Users\LogMeInRemoteUser\SendTo' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Users\LogMeInRemoteUser\Start Menu' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Users\LogMeInRemoteUser\Templates' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\Türkçe\Çesitli' to enumerate files. FindFirstFile failed. System error message: The system cannot find the path specified. Error code: 3.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\?????????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\???' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\Templates 2012\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\?e??µata' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\???????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\????' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Users\Morgan Pierce Parker\Documents\SoftMaker\??' to enumerate files. FindFirstFile failed. System error message: The filename, directory name, or volume label syntax is incorrect. Error code: 123.
Problems opening folder 'c:\Windows\CSC\v2.0.6' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Windows\System32\LogFiles\WMI\RtBackup' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems enumerating files in the 'j:' folder. FindNextFile failed. System error message: The file or directory is corrupted and unreadable. Error code: 1392.
An unexpected exception occurred in the Scheduled Task Scan Plugin:
Failed to get folders. HRESULT = 0x80070032. 

End of FreeFixer log
