﻿Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-06-2020
Ran by Dalin (administrator) on DALIN-NTB (Dell Inc. Dell System XPS L702X) (01-07-2020 16:01:13)
Running from C:\Users\Dalin\Desktop
Loaded Profiles: Dalin
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Users\Dalin\iscsicli\AdvancedEmojiDS.exe
() [File not signed] C:\Windows\SysWOW64\Codecs\TrayMenu.exe
(3Dconnexion) [File not signed] C:\Program Files\3Dconnexion\3DxWare\3DxWinCore64\Mgl3DCtlrRPCService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Inc. -> Adobe) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerFeedbackService.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Autodesk, Inc -> Autodesk, Inc.) C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler64.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Freemake) [File not signed] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Freemake) [File not signed] C:\ProgramData\FlexGridService\FlexGridService.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files (x86)\Total CMA Pack1\TOTALCMD64.EXE
(Google LLC) [File not signed] C:\Users\Dalin\AppData\Roaming\sys files\sys cleaner.exe
(Innostor Technology Corp. -> Innostor technology corporation) C:\Program Files (x86)\Innostor\Launch\ISLaunch.exe
(Innostor Technology Corp. -> Innostor technology corporation) C:\Program Files (x86)\Innostor\Launch\ISService.exe
(Innostor technology corporation) [File not signed] C:\Program Files (x86)\Innostor\AIOTB\AIOTB.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\cvtres.exe
(Microsoft Corporation) [File not signed] C:\Users\Dalin\AppData\Roaming\taskhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Nalpeiron LTD -> Nalpeiron Ltd.) [File not signed] C:\Windows\SysWOW64\nlssrv32.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(Qualcomm Inc -> QUALCOMM, Inc.) C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Samsung Electronics CO., LTD. -> ) C:\Windows\SysWOW64\spdsvc.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe
(TechSmith Corporation -> TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 10\Snagit32.exe
(TechSmith Corporation -> TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 10\SnagitEditor.exe
(TechSmith Corporation -> TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 10\SnagPriv.exe
(TechSmith Corporation -> TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 10\TscHelp.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\Run: [Srv] => C:\Users\Dalin\AppData\Roaming\taskhost.exe [47104 2018-03-24] (Microsoft Corporation) [File not signed] <==== ATTENTION
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\Policies\Explorer: [] 
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\MountPoints2: {0bbeb6cd-6a52-11e7-afad-806e6f6e6963} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\MountPoints2: {7e4e2025-46ba-11e7-b721-bc77370d2fa4} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\MountPoints2: {7e840e56-2e6e-11e2-94b0-bc77370d2fa4} - F:\CrossLink.exe
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\...\MountPoints2: {a5aebb30-e4b9-11e1-ba33-806e6f6e6963} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL D:\start.exe
HKLM\...\Windows x64\Print Processors\Samsung Network PC Fax Print Processor: C:\Windows\System32\spool\prtprocs\x64\NetFaxProc64.dll [154816 2014-11-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
HKLM\...\Windows x64\Print Processors\ssa7mPC: C:\Windows\System32\spool\prtprocs\x64\ssa7mpc.dll [52248 2016-09-16] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Windows x64\Print Processors\ssb3mPC: C:\Windows\System32\spool\prtprocs\x64\ssb3mpc.dll [36864 2011-04-18] (Windows (R) Server 2003 DDK provider) [File not signed]
HKLM\...\Windows x64\Print Processors\usp01PC: C:\Windows\System32\spool\prtprocs\x64\usp01pc.dll [43520 2014-02-24] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [55872 2014-12-03] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\...\Print\Monitors\HP 6612 Status Monitor: C:\Windows\system32\hpinksts6612LM.dll [324456 2011-12-18] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\MONVNC: C:\Windows\system32\VNCpm.dll [37704 2012-10-02] (RealVNC Ltd -> RealVNC Ltd)
HKLM\...\Print\Monitors\Samsung Network PC Fax Port: C:\Windows\system32\NetFaxPort64.dll [420032 2014-11-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
HKLM\...\Print\Monitors\ssa7m Langmon: C:\Windows\system32\ssa7mlm.dll [31256 2016-09-16] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\ssb3m Langmon: C:\Windows\system32\ssb3ml6.dll [34304 2011-04-14] () [File not signed]
HKLM\...\Print\Monitors\usp01 Langmon: C:\Windows\system32\usp01l.dll [29184 2014-04-16] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.116\Installer\chrmstp.exe [2020-06-25] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\83.0.4529.97\Installer\chrmstp.exe [2020-06-19] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2017-01-05] (McAfee, Inc. -> McAfee, Inc.)
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk [2015-11-06]
ShortcutTarget: CodecPackTrayMenu.lnk -> C:\Windows\SysWOW64\Codecs\TrayMenu.exe () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Network Server.lnk [2012-08-13]
ShortcutTarget: Network Server.lnk -> C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Network PC Fax.lnk [2017-04-12]
ShortcutTarget: Samsung Network PC Fax.lnk -> C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snagit 10.lnk [2017-06-13]
ShortcutTarget: Snagit 10.lnk -> C:\Program Files (x86)\TechSmith\Snagit 10\Snagit32.exe (TechSmith Corporation -> TechSmith Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SPDriverInstall.lnk [2018-10-31]
ShortcutTarget: SPDriverInstall.lnk -> C:\Program Files\MediaTek\SP Driver\SPDriverInstall (No File)
InternetURL: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\netsh.url -> URL: file:///C:\Users\Dalin\MsSpellCheckingHost\dialer.exe
Startup: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RebusDrop.lnk [2020-06-29]
ShortcutTarget: RebusDrop.lnk -> C:\Users\Dalin\RebusDrop\App\RebusDrop.exe (No File)
Startup: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\sys cleaner.lnk [2020-07-01]
ShortcutTarget: sys cleaner.lnk -> C:\Users\Dalin\AppData\Roaming\sys files\sys cleaner.exe (Google LLC) [File not signed]
Startup: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\taskhost.exe [2018-03-24] (Microsoft Corporation) [File not signed] <==== ATTENTION
Startup: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\uwjsiccc.lnk [2020-07-01]
ShortcutAndArgument: uwjsiccc.lnk -> C:\Windows\System32\cmd.exe => /c start "" "C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\uwjsiccc\agbgbbsj.exe"
InternetURL: C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows.WARP.JITService.url -> URL: file:///C:\Users\Dalin\iscsicli\AdvancedEmojiDS.exe
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
CHR HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {05C1772D-7F20-41CA-A302-92D502928DE2} - \GoogleUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {0C0F820A-DCB9-47D8-88FB-7F6E9BF635F7} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {0D8B38DE-C5E4-4C2C-8D8A-567A295CF464} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {152EE6E2-89F8-4648-938D-3FEC2D04C3CF} - \AdobeAAMUpdater-1.0-Dalin-Ntb-Dalin -> No File <==== ATTENTION
Task: {1F24E4A3-9637-46EA-8E5F-2D50D8FAA586} - \DropboxUpdateTaskUserS-1-5-21-2595959808-3299349116-3294144044-1000Core1d2371b2bca5088 -> No File <==== ATTENTION
Task: {2027495C-5F94-4D29-9A76-4237D820539A} - \{352F8712-E510-440D-86D0-1442F8C17FD2} -> No File <==== ATTENTION
Task: {29C7B8F9-E5E0-4918-8C2E-D8A3BD6AF355} - \GoogleUpdateTaskMachineUA1d1e95890c83b3c -> No File <==== ATTENTION
Task: {29D306C1-D54B-48CB-AE25-961ECD39F281} - \{451BE33B-9BE7-4D55-9386-C04D225300A7} -> No File <==== ATTENTION
Task: {2A4B56E4-5606-4A4D-8779-ECD4E7E14F0C} - \MicrosoftEdgeUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> No File <==== ATTENTION
Task: {35891521-9EC8-4B89-8808-839D4DDC88F5} - \CCleaner Update -> No File <==== ATTENTION
Task: {46B23593-C74F-45E3-8A47-9EF2E3E4C57D} - \AvastUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {4F93D456-A8AF-4E09-9B25-63E9F48DD04E} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -> Mozilla Foundation)
Task: {53C422FC-BFDC-4E9C-B57B-F93725C57D75} - \DivXUpdate -> No File <==== ATTENTION
Task: {588DACD0-2EC1-4EEB-AAFA-9EF0F9423F8D} - \Adobe Acrobat Update Task -> No File <==== ATTENTION
Task: {5F509C03-981C-447B-8FB6-FA248707E0DE} - \avastBCLRestartS-1-5-21-2595959808-3299349116-3294144044-1000 -> No File <==== ATTENTION
Task: {6112626D-C51C-4FC9-8C0C-2CF43CB0FB9F} - \Opera scheduled Autoupdate 1593514112 -> No File <==== ATTENTION
Task: {6FE883BE-4446-4E2C-8D2B-116CBDB3257F} - \MicrosoftEdgeUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {7EB9848E-58EF-48B9-8831-07B57B371BFD} - \GoogleUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {8736F159-9E6D-4361-8129-9C14356AF470} - \csrss -> No File <==== ATTENTION
Task: {8F397401-0364-4AF1-BAA8-C5403106E15B} - \Avast TUNEUP Update -> No File <==== ATTENTION
Task: {985A0D63-F100-48C9-BC08-B2892ADB6309} - \NvNgxUpdateCheckDaily_{78821544-1544-1544-1544-788215441544} -> No File <==== ATTENTION
Task: {98A422C6-B2C4-4176-BA9D-9EA4E50885A8} - \McAfee Remediation (Prepare) -> No File <==== ATTENTION
Task: {9B757B8A-87AF-483E-A128-92F929F3DEE7} - \GoogleUpdateTaskMachineCore1d1e9588fa317e2 -> No File <==== ATTENTION
Task: {A2F6985B-356C-4F7B-9A5A-647BE28BBB50} - \{0D59C018-8C18-49B3-A780-1C628D1E0E12} -> No File <==== ATTENTION
Task: {A8A4CD96-7C07-48E8-838C-A6E8AC6F6562} - \DropboxUpdateTaskUserS-1-5-21-2595959808-3299349116-3294144044-1000UA1d2371b2e7ad49d -> No File <==== ATTENTION
Task: {AA1C7B07-2A33-4D78-98FD-DDB4534FA72F} - \AvastUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {B6E77808-0536-427E-8081-C56B45A65A4A} - \Avast Secure Browser Heartbeat Task (Hourly) -> No File <==== ATTENTION
Task: {BB44684C-0430-46F8-83BC-B64724513A21} - \Opera scheduled Autoupdate 711520318 -> No File <==== ATTENTION
Task: {C3391346-B5B4-4664-8F5D-8A9367CBA8B4} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File <==== ATTENTION
Task: {CB1D82EE-B1A8-45BF-852A-ADB4BBC2D5FE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> No File <==== ATTENTION
Task: {D1AFECBD-8D74-46D8-A8DC-A2FCA8F162AD} - \AdobeGCInvoker-1.0 -> No File <==== ATTENTION
Task: {D228A536-02BB-4476-80BC-F5489040E851} - \Avast Secure Browser Heartbeat Task (Logon) -> No File <==== ATTENTION
Task: {DF815079-3F4A-407E-B9FD-8D12C36B18EE} - \{37484A6B-1E93-4B09-8824-B159975CD2F0} -> No File <==== ATTENTION
Task: {E6709CD2-03DF-4BE5-BBA1-0AE7FC22A5AC} - \{85C2E0D6-54AE-49B6-B305-3B615328D359} -> No File <==== ATTENTION
Task: {F2237576-AAA9-47AE-BB83-06E999793B4F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984 2011-06-01] (Apple Inc. -> Apple Inc.)
Task: {F49E4E71-8FCB-49E5-A112-55C83BEC38C2} - \Red Giant Link -> No File <==== ATTENTION
Task: {F5F6BB10-42EF-4495-B5F8-2B9B6940726C} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File <==== ATTENTION
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2595959808-3299349116-3294144044-1000Core1d2371b2bca5088.job => C:\Users\Dalin\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2595959808-3299349116-3294144044-1000UA1d2371b2e7ad49d.job => C:\Users\Dalin\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-19] => Proxy is enabled.
ProxyServer: [S-1-5-19] => 127.0.0.1:8080
ProxyEnable: [S-1-5-20] => Proxy is enabled.
ProxyServer: [S-1-5-20] => 127.0.0.1:8080
ProxyEnable: [S-1-5-21-2595959808-3299349116-3294144044-1000] => Proxy is enabled.
ProxyServer: [S-1-5-21-2595959808-3299349116-3294144044-1000] => 127.0.0.1:8080
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{B69B9720-01B1-4B0D-8EF3-CF81649C17CF}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{BCC927D6-32AD-4BE0-8618-0F658CC11718}: [DhcpNameServer] 192.168.1.1 192.168.1.1
ManualProxies: 1127.0.0.1:8080

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBHN-2kkRkOz2F0hKTkxJLwEPLm2WYUvsJ7WzFpFSkqcHm4Oj6U5AZZMJ3FvOzZUcnOP1xvJy527Uhr3_WOuWTWpWSGEXJGAAP58X-3cenceWGtBIVbRhcHVj1UNldotJb62g0L_yw9trJJ64ftGovlmZtyL24omEeOErNrGdBefIXfF5T-B9x_Pg,,&q={searchTerms}
HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBHN-2kkRkOz2F0hKTkxJLwEPLm2WYUvsJ7WzFpFSkqcHm4Oj6U5AZZMJ3FvOzZUcnOP1xvJy527Uhr3_WOuWTWpWSGEXJKoZcIHK9EjzTSBz1Gh0S-Mspp4bD8e4n7wHl9I0LbTsTImMdDpCpGOz59zB_deVOUOdSEtoBjLhn3Y74TcNq0-69iOQ,,
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2595959808-3299349116-3294144044-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: SnagIt Toolbar Loader -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitBHO64.dll [2010-04-13] (TechSmith Corporation -> TechSmith Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll [2019-02-01] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-02-01] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: No Name -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-02-02] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-02-02] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File
Toolbar: HKLM - Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitIEAddin64.dll [2010-04-13] (TechSmith Corporation -> TechSmith Corporation)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - No Name - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} -  No File
Toolbar: HKU\S-1-5-21-2595959808-3299349116-3294144044-1000 -> No Name - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} -  No File
Toolbar: HKU\S-1-5-21-2595959808-3299349116-3294144044-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File

Edge: 
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Dalin\AppData\Local\Microsoft\Edge\User Data\Default [2020-06-30]
Edge HomePage: Default -> hxxps://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBHN-2kkRkOz2F0hKTkxJLwEPLm2WYUvsJ7WzFpFSkqcHm4Oj6U5AZZMJ3FvOzZUcnOP1xvJy527Uhr3_WOuWTWpWSGEXJKoZcIHK9EjzTSBz1Gh0S-Mspp4bD8e4n7wHl9I0LbTsTImMdDpCpGOz59zB_deVOUOdSEtoBjLhn3Y74TcNq0-69iOQ,,
Edge Extension: (Microsoft Protect) - C:\Users\Dalin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fcppdfelojakeahklfgkjegnpbgndoch [2020-06-29]
Edge Extension: (Default Search Engine) - C:\Users\Dalin\AppData\Local\app [2020-06-29]

FireFox:
========
FF DefaultProfile: ya40rp8b.default-1445379743168-1593503179859
FF ProfilePath: C:\Users\Dalin\AppData\Roaming\Mozilla\Firefox\Profiles\ya40rp8b.default-1445379743168-1593503179859 [2020-07-01]
FF Homepage: Mozilla\Firefox\Profiles\ya40rp8b.default-1445379743168-1593503179859 -> hxxps://www.google.com/
FF NetworkProxy: Mozilla\Firefox\Profiles\ya40rp8b.default-1445379743168-1593503179859 -> type", 0
FF Extension: (Flash Player   ) - C:\Users\Dalin\AppData\Roaming\Mozilla\Firefox\Profiles\ya40rp8b.default-1445379743168-1593503179859\Extensions\{87e997f4-ae0e-42e6-a780-ff73977188c5}.xpi [2020-06-30]
FF Extension: (Flash Video Player for Facebook™) - C:\Users\Dalin\AppData\Roaming\Mozilla\Firefox\Profiles\ya40rp8b.default-1445379743168-1593503179859\Extensions\{d0bfdcce-52c7-4b32-bb45-948f62db8d3f}.xpi [2020-06-30]
FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2016-04-15] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_216.dll [2020-06-30] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\system32\npDeployJava1.dll [2013-04-11] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-02-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [No File]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-07-05] (Adobe Inc. -> Adobe Systems)
FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_216.dll [2020-06-30] (Adobe Inc. -> )
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2017-03-16] (DivX, LLC -> DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-02-02] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-02-02] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-03-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-03-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [No File]
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-07-05] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [No File]
FF Plugin HKU\S-1-5-21-2595959808-3299349116-3294144044-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dalin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-02-18] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2595959808-3299349116-3294144044-1000: SkypePlugin -> C:\Users\Dalin\AppData\Local\SkypePlugin\7.13.0.71\npGatewayNpapi.dll [2016-01-15] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-2595959808-3299349116-3294144044-1000: SkypePlugin64 -> C:\Users\Dalin\AppData\Local\SkypePlugin\7.13.0.71\npGatewayNpapi-x64.dll [2016-01-15] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-2595959808-3299349116-3294144044-1000: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [No File]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default [2020-06-30]
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxps://www.google.com/?trackid=sp-006"
CHR DefaultSearchURL: Default -> hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBHN-2kkRkOz2F0hKTkxJLwEPLm2WYUvsJ7WzFpFSkqcHm4Oj6U5AZZMJ3FvOzZUcnOP1xvJy527Uhr3_WOuWTWpWSGEXJGF7O4k6UyCrH9pFBRcYfSlpk-dnFVLKM5AXRS8XjeWEA6ALp1nvTRDr60-FFXkhQphOx3JBWjWBqdloCXatqrH9FKtg,,&q={searchTerms}
CHR DefaultSearchKeyword: Default -> feed.sonic-search.com
CHR Extension: (QR kód) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaephdgbinagkeepamlbkhkfbiaedabm [2013-02-06]
CHR Extension: (Prezentace) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-29]
CHR Extension: (Dokumenty) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-06-29]
CHR Extension: (Disk Google) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-21]
CHR Extension: (TV) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2013-02-17]
CHR Extension: (YouTube) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-23]
CHR Extension: (Earth for Chrome) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfiocoehplocalbhdpckfoiameeefkna [2012-12-30]
CHR Extension: (d8yI+Hf7rX) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmcplanfojekkcgflbncpebghkhdgdpo [2020-06-29]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-06-29]
CHR Extension: (Tabulky) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-06-29]
CHR Extension: (Select and Speak - text na řeč) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfjopfpjmkcfgjpogepmdjmcnihfpokn [2020-02-26]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-01]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-06-29]
CHR Extension: (Avast Online Security) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-06-29]
CHR Extension: (Vimeo Couch Mode) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjkdhkejcnlmkfdodbkdkelefnkobfif [2012-12-30]
CHR Extension: (Bazz Search SafeFinder) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\inafjghmmkmiobijhbgkfekenbfbklhb [2020-06-29]
CHR Extension: (WhatFont) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm [2018-04-25]
CHR Extension: (IP adresa) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnjjlbngpejmmhgcaagljaomgnginml [2016-10-18]
CHR Extension: (Google Play) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2015-03-11]
CHR Extension: (Evernote Web) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2014-05-17]
CHR Extension: (Skype) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-06-29]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2016-10-18]
CHR Extension: (Mapy Google) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2015-12-23]
CHR Extension: (Facebook Screen Sharing) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncfpggehkhmjpdjpefomjchjafhmbnai [2020-03-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-07]
CHR Extension: (Gmail) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-06-29]
CHR Extension: (Chrome Media Router) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-22]
CHR Extension: (Google Print) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Default\Default Extensions\bglohniplhlnpdffhojecgmjaehfbmda [2020-06-29]
CHR Profile: C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-06-30]
CHR Extension: (d8yI+Hf7rX) - C:\Users\Dalin\AppData\Local\Google\Chrome\User Data\Guest Profile\Extensions\dmcplanfojekkcgflbncpebghkhdgdpo [2020-06-29]
CHR HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Dalin\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2016-10-05]
CHR HKU\S-1-5-21-2595959808-3299349116-3294144044-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

"{45487F67-EC9F-4449-A6F2-2D0970F9B80B}" => service could not be unlocked. <==== ATTENTION
HKLM\SYSTEM\ControlSet001\Services\{45487F67-EC9F-4449-A6F2-2D0970F9B80B} => C:\Windows\System32\drivers\Wdf16712.sys [6559120 2020-06-29] (Access Denied)  [File not signed] <==== ATTENTION (Rootkit!/Locked Service)

R2 AdobeFlashPlayerFeedbackSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerFeedbackService.exe [479800 2020-06-30] (Adobe Inc. -> Adobe)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-07-05] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc -> Autodesk, Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-07] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-07] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\83.0.4529.97\elevation_service.exe [1062576 2020-06-04] (Avast Software s.r.o. -> AVAST Software)
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\84.0.4147.39\remoting_host.exe [73200 2020-06-08] (Google LLC -> Google Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [35976 2018-11-12] (Dell Inc -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [779392 2018-05-22] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 FlexGridService; C:\ProgramData\FlexGridService\FlexGridService.exe [1306112 2020-06-29] (Freemake) [File not signed] <==== ATTENTION
R2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [1306112 2020-06-29] (Freemake) [File not signed]
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [1306112 2020-06-29] (Freemake) [File not signed]
R2 InnostorService; C:\Program Files (x86)\Innostor\Launch\ISService.exe [1126312 2010-09-17] (Innostor Technology Corp. -> Innostor technology corporation)
R2 Mgl3DCtlrRPCService; C:\Program Files\3Dconnexion\3DxWare\3DxWinCore64\Mgl3DCtlrRPCService.exe [159744 2018-10-18] (3Dconnexion) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2010-11-02] (Intel Corporation - Mobile Wireless Group -> )
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2011-09-22] (Nalpeiron LTD -> Nalpeiron Ltd.) [File not signed]
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
R2 QDLService2kDell; C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe [331512 2010-06-25] (Qualcomm Inc -> QUALCOMM, Inc.)
R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [289496 2013-10-16] (Realtek Semiconductor Corp -> Realtek Semiconductor)
R2 Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [793280 2014-11-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 Samsung Printer Dianostics Service; C:\Windows\SysWOW64\\spdsvc.exe [499000 2016-07-17] (Samsung Electronics CO., LTD. -> )
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800 2017-01-05] (McAfee, Inc. -> McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16248 2017-01-05] (McAfee, Inc. -> McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2017-01-05] (McAfee, Inc. -> McAfee, Inc.)
S3 vncserver; C:\Program Files\RealVNC\VNC Server\vncserver.exe [4773768 2012-10-02] (RealVNC Ltd -> RealVNC Ltd)
R2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
S2 sprtsvc_DellSupportCenter; "C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe" /service /P DellSupportCenter [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 3dxhid; C:\Windows\System32\DRIVERS\3dxhid.sys [49024 2018-09-13] (3Dconnexion SAM -> 3Dconnexion SAM)
R1 641CA7643CFA; C:\Windows\641CA7643CFA.sys [25368 2020-06-29] (大连纵梦网络科技有限公司 -> FsFilter Network)
R3 Acceler; C:\Windows\System32\DRIVERS\Accelern.sys [27760 2010-12-13] (STMicroelectronics -> ST Microelectronics)
R3 AVer7231_x64; C:\Windows\System32\DRIVERS\AVer7231_x64.sys [1799808 2010-06-11] (Microsoft Windows Hardware Compatibility Publisher -> AVerMedia TECHNOLOGIES, Inc.)
R3 btmaudio; C:\Windows\System32\drivers\btmaud.sys [88376 2013-03-18] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [132920 2013-04-23] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-11-23] (DT Soft Ltd -> DT Soft Ltd)
S3 hidkmdf; C:\Windows\System32\DRIVERS\hidkmdf.sys [14104 2015-04-28] (Wacom Technology Corp. -> Windows (R) Win 7 DDK provider)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-09-27] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
R3 KMJHidMini; C:\Windows\System32\DRIVERS\3dxkmj.sys [18944 2014-05-12] (Microsoft Windows Hardware Compatibility Publisher -> 3Dconnextion Inc.)
R3 KMJShim; C:\Windows\System32\DRIVERS\3dxshim.sys [7168 2014-05-12] (Microsoft Windows Hardware Compatibility Publisher -> 3Dconnextion Inc.)
S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] (Logitech Inc -> )
R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-10-08] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation -> NVIDIA Corporation)
R3 qicflt; C:\Windows\System32\DRIVERS\qicflt.sys [29288 2010-07-02] (Quanta Computer Inc. -> Quanta Computer)
S0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [21616 2010-08-20] (STMicroelectronics -> ST Microelectronics)
R1 VBoxUSBMon; C:\Windows\System32\DRIVERS\VBoxUSBMon.sys [127648 2015-08-12] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R3 vncmirror; C:\Windows\System32\DRIVERS\vncmirror.sys [4608 2012-10-02] (Microsoft Windows Hardware Compatibility Publisher -> RealVNC Ltd.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
R2 WIBUKEY; C:\Windows\System32\DRIVERS\WibuKey64.sys [103224 2009-12-03] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
R1 XQHDrv; C:\Windows\System32\DRIVERS\XQHDrv.sys [253600 2015-08-12] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
S3 AndnetBus; system32\DRIVERS\lgandnetbus64.sys [X]
S3 AndNetDiag; system32\DRIVERS\lgandnetdiag64.sys [X]
S3 ANDNetModem; system32\DRIVERS\lgandnetmodem64.sys [X]
S3 andnetndis; system32\DRIVERS\lgandnetndis64.sys [X]
S1 AntiLog32; \??\C:\Windows\system32\drivers\AntiLog64.sys [X]
S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [X]
R4 DBUtil_2_3; \??\C:\Windows\TEMP\DBUtil_2_3.Sys [X]
S3 GPU-Z; \??\C:\Users\Dalin\AppData\Local\Temp\GPU-Z.sys [X] <==== ATTENTION
S3 WacHidRouter; system32\DRIVERS\wachidrouter.sys [X]
S3 wacomrouterfilter; system32\DRIVERS\wacomrouterfilter.sys [X]
S3 WinPhLdrNT; \??\C:\Windows\TEMP\PhLdrX64.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.
NETSVC: SearchIndexer -> no filepath.

==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-01 15:37 - 2020-07-01 15:37 - 000000000 _____ C:\Windows\invcol.tmp
2020-07-01 15:30 - 2020-07-01 15:31 - 030085120 ____N C:\Windows\system32\config\SYSTEM
2020-07-01 10:25 - 2020-07-01 10:25 - 008402608 _____ (Malwarebytes) C:\Users\Dalin\Desktop\AdwCleaner.exe
2020-07-01 07:45 - 2020-07-01 07:54 - 000122853 _____ C:\Users\Dalin\Desktop\Addition.txt
2020-07-01 07:40 - 2020-07-01 16:03 - 000045557 _____ C:\Users\Dalin\Desktop\FRST.txt
2020-07-01 07:39 - 2020-07-01 16:02 - 000000000 ____D C:\FRST
2020-07-01 07:37 - 2020-07-01 07:37 - 002291712 _____ (Farbar) C:\Users\Dalin\Desktop\FRST64.exe
2020-07-01 06:40 - 2020-07-01 06:40 - 000916735 _____ (SQLite Development Team) C:\Users\Dalin\AppData\LocalLow\sqlite3.dll
2020-07-01 06:38 - 2020-07-01 06:38 - 000508416 _____ C:\Windows\system32\HZhzW9iA8.exe
2020-06-30 21:39 - 2020-06-30 21:39 - 000000234 _____ C:\Users\Dalin\AppData\LocalLow\thunderbird.txt
2020-06-30 14:46 - 2020-06-30 14:46 - 000846904 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-06-30 14:46 - 2020-06-30 14:46 - 000175672 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-06-30 14:27 - 2020-06-30 14:27 - 021287480 _____ (Adobe) C:\Users\Dalin\Downloads\flashplayer_32_plugin_debug.exe
2020-06-30 13:13 - 2020-06-30 13:13 - 021528120 _____ (Adobe) C:\Users\Dalin\Downloads\install_flash_player.exe
2020-06-30 12:48 - 2020-06-30 12:48 - 000001311 _____ C:\Users\Dalin\Desktop\Prohlížeč Opera.lnk
2020-06-30 12:48 - 2020-06-30 12:48 - 000001311 _____ C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2020-06-30 12:46 - 2020-06-30 12:47 - 057730424 _____ (Opera Software) C:\Users\Dalin\Downloads\Opera_69.0.3686.36_Setup.exe
2020-06-30 11:33 - 2020-06-30 11:33 - 000071272 _____ C:\Users\Dalin\Documents\cc_20200630_113312.reg
2020-06-30 07:02 - 2020-07-01 16:03 - 031195136 _____ C:\Windows\system32\C_32770.NLS
2020-06-29 20:14 - 2020-06-29 20:15 - 000508416 _____ C:\Windows\system32\62XHBc1xG.exe.del1301438
2020-06-29 20:11 - 2020-06-29 20:11 - 000000000 ____D C:\Users\Dalin\AppData\Local\app
2020-06-29 20:10 - 2020-07-01 16:03 - 000000004 _____ C:\ProgramData\rc.dat
2020-06-29 20:10 - 2020-06-29 20:11 - 006559120 ____N C:\Windows\system32\Drivers\Wdf16712.sys
2020-06-29 20:10 - 2020-06-29 20:10 - 008633856 _____ C:\Users\Dalin\AppData\Local\agent.dat
2020-06-29 20:10 - 2020-06-29 20:10 - 002190079 _____ C:\Users\Dalin\AppData\Local\DonEx.tst
2020-06-29 20:10 - 2020-06-29 20:10 - 001895382 _____ C:\Users\Dalin\AppData\Local\Konphase.bin
2020-06-29 20:10 - 2020-06-29 20:10 - 000126464 _____ C:\Users\Dalin\AppData\Local\noah.dat
2020-06-29 20:10 - 2020-06-29 20:10 - 000072576 _____ C:\Users\Dalin\AppData\Local\Config.xml
2020-06-29 20:10 - 2020-06-29 20:09 - 004533760 _____ C:\Users\Dalin\AppData\Local\DonEx.exe
2020-06-29 20:09 - 2020-06-29 20:10 - 000005568 _____ C:\Users\Dalin\AppData\Local\md.xml
2020-06-29 20:09 - 2020-06-29 20:09 - 004533760 _____ C:\Users\Dalin\AppData\Local\TempLa.exe
2020-06-29 20:09 - 2020-06-29 20:09 - 000126464 _____ C:\Users\Dalin\AppData\Local\lobby.dat
2020-06-29 20:09 - 2020-06-29 20:09 - 000068473 _____ C:\Users\Dalin\AppData\Local\TempLa.tst
2020-06-29 20:09 - 2020-06-29 20:09 - 000045056 _____ C:\Users\Dalin\AppData\Local\ApplicationHosting.dat
2020-06-29 20:07 - 2020-06-29 20:17 - 000000000 ____D C:\Program Files\KD786ZTGN8
2020-06-29 20:06 - 2020-06-29 20:06 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\5bspccp0fs3
2020-06-29 20:04 - 2020-07-01 15:39 - 000000068 _____ C:\ProgramData\irw.atsd
2020-06-29 20:04 - 2020-07-01 15:38 - 000000004 _____ C:\ProgramData\lock.dat
2020-06-29 20:04 - 2020-06-29 20:04 - 000000008 _____ C:\ProgramData\ts.dat
2020-06-29 20:04 - 2020-06-29 20:04 - 000000000 ____D C:\ProgramData\FlexGridService
2020-06-29 19:38 - 2020-06-29 19:38 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll
2020-06-29 19:37 - 2020-06-30 21:39 - 000000000 ____D C:\Users\Dalin\AppData\LocalLow\3098htrhpen8ifg0
2020-06-29 19:36 - 2020-06-29 19:36 - 000001113 _____ C:\Users\Dalin\_readme.txt
2020-06-29 19:34 - 2020-06-29 19:34 - 000334288 _____ (Mozilla Foundation) C:\ProgramData\freebl3.dll
2020-06-29 19:34 - 2020-06-29 19:34 - 000025368 _____ (FsFilter Network) C:\Windows\641CA7643CFA.sys
2020-06-29 19:34 - 2020-06-29 19:34 - 000000000 ____D C:\ProgramData\34LJLOEGAAJS4RRCITCT3R09C
2020-06-29 19:33 - 2020-06-29 19:34 - 005553888 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlmp.exe
2020-06-29 19:33 - 2020-06-29 19:34 - 000629984 _____ (Microsoft Corporation) C:\Windows\system32\osloader.exe
2020-06-29 19:33 - 2020-06-29 19:33 - 000142336 _____ C:\Users\Dalin\AppData\Local\installer.dat
2020-06-29 19:33 - 2020-06-29 19:33 - 000000563 _____ C:\Users\Dalin\AppData\Local\bowsakkdestx.txt
2020-06-29 19:33 - 2020-06-29 19:33 - 000000000 ____D C:\Windows\SysWOW64\sbckfnco
2020-06-29 19:33 - 2020-06-29 19:33 - 000000000 ____D C:\Users\Dalin\AppData\Local\fe76077a-2415-4e57-b975-6ed9b721ade6
2020-06-29 19:33 - 2020-06-29 19:33 - 000000000 ____D C:\SystemID
2020-06-29 19:32 - 2020-06-29 20:17 - 000000000 ____D C:\Program Files\38877I5M78
2020-06-29 19:32 - 2020-06-29 19:32 - 000000967 _____ C:\Users\Dalin\Desktop\ScrSnap.lnk
2020-06-29 19:32 - 2020-06-29 19:32 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\n4ptgpzrhtx
2020-06-29 19:32 - 2020-06-29 19:32 - 000000000 ____D C:\Users\Dalin\AppData\Local\ScrSnap
2020-06-29 19:32 - 2020-06-29 19:32 - 000000000 ____D C:\Users\Dalin\AppData\Local\5aec903c-eb4f-452b-a156-683306e332b1
2020-06-29 19:31 - 2020-06-29 20:16 - 000000000 ____D C:\Program Files (x86)\OAZd
2020-06-29 19:31 - 2020-06-29 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DRĹŔĚ
2020-06-29 19:31 - 2020-06-29 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Dedupe
2020-06-29 19:31 - 2020-06-29 19:31 - 000000000 ____D C:\Program Files (x86)\DRĹŔĚ
2020-06-29 19:31 - 2020-06-29 19:31 - 000000000 ____D C:\Program Files (x86)\Audio Dedupe
2020-06-29 19:29 - 2020-06-29 19:29 - 000002417 _____ C:\Users\Dalin\Downloads\36ee753ffa077138066af63b94aa912e-9a3835686a47a31f7051d193023b34ff594fed33.zip
2020-06-29 19:27 - 2020-06-29 19:27 - 005032031 _____ C:\Users\Dalin\Downloads\setup_evermotion-archmodel_3797607734.zip
2020-06-29 19:19 - 2020-06-29 19:19 - 000040026 _____ C:\Users\Dalin\Downloads\Evermotion Archmodels 184 Vray Only.torrent
2020-06-29 19:16 - 2020-06-29 20:07 - 000000000 ____D C:\Users\Dalin\AppData\Local\BitTorrentHelper
2020-06-29 19:09 - 2020-07-01 15:30 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2020-06-29 19:09 - 2020-07-01 10:41 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\Lavasoft
2020-06-29 19:09 - 2020-07-01 10:41 - 000000000 ____D C:\Users\Dalin\AppData\Local\Lavasoft
2020-06-29 19:09 - 2020-07-01 10:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2020-06-29 19:08 - 2020-07-01 10:41 - 000000000 ____D C:\ProgramData\Lavasoft
2020-06-29 19:05 - 2020-06-29 20:10 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\uTorrent Web
2020-06-29 19:05 - 2020-06-29 19:14 - 000001835 _____ C:\Users\Dalin\Desktop\uTorrent Web.lnk
2020-06-29 19:05 - 2020-06-29 19:14 - 000001821 _____ C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
2020-06-29 18:29 - 2020-06-29 18:29 - 020476048 _____ (BitTorrent, Inc.) C:\Users\Dalin\Downloads\utweb_installer.exe
2020-06-24 08:51 - 2020-06-24 08:51 - 049093238 _____ C:\Users\Dalin\Downloads\kompo3_0_2_4_8_ren.zip
2020-06-22 22:57 - 2020-06-22 22:58 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\sys files
2020-06-22 22:57 - 2020-06-22 22:57 - 000459264 _____ (Google LLC) C:\Users\Dalin\Documents\2ek3t.csrss.exe
2020-06-20 03:22 - 2020-06-30 19:46 - 000002233 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-06-20 03:22 - 2020-06-30 19:46 - 000002192 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-06-20 03:22 - 2020-06-30 19:46 - 000002192 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-06-09 11:13 - 2020-06-09 11:13 - 000035549 _____ C:\Users\Dalin\Downloads\priloha_744194476_2_3_6384_1973_788619(1).pdf
2020-06-09 11:12 - 2020-06-09 11:12 - 000152176 _____ C:\Users\Dalin\Downloads\priloha_744194476_0_1_6320_1935_824911.pdf
2020-06-09 11:11 - 2020-06-09 11:11 - 000122270 _____ C:\Users\Dalin\Downloads\priloha_748635590_0_Inventura OSVČ.pdf
2020-06-09 11:10 - 2020-06-09 11:10 - 000095849 _____ C:\Users\Dalin\Downloads\priloha_784943516_0_RocniVypisROS.pdf
2020-06-09 11:09 - 2020-06-09 11:09 - 000066785 _____ C:\Users\Dalin\Downloads\priloha_783874098_0_00809692_dph_411a_2001072080.pdf
2020-06-08 22:24 - 2020-06-08 22:24 - 024166400 _____ C:\Program Files (x86)\GUT3D9.tmp
2020-06-08 22:24 - 2020-06-08 22:24 - 000000000 ____D C:\Program Files (x86)\GUM3D8.tmp
2020-06-08 17:24 - 2020-06-08 17:24 - 024166400 _____ C:\Program Files (x86)\GUT708A.tmp
2020-06-08 17:24 - 2020-06-08 17:24 - 000000000 ____D C:\Program Files (x86)\GUM7089.tmp
2020-06-08 12:24 - 2020-06-08 12:24 - 024166400 _____ C:\Program Files (x86)\GUT15A9.tmp
2020-06-08 12:24 - 2020-06-08 12:24 - 000000000 ____D C:\Program Files (x86)\GUM15A8.tmp
2020-06-08 07:07 - 2020-06-08 07:07 - 024166400 _____ C:\Program Files (x86)\GUT5D7B.tmp
2020-06-08 07:07 - 2020-06-08 07:07 - 000000000 ____D C:\Program Files (x86)\GUM5D5B.tmp
2020-06-07 23:55 - 2020-06-07 23:55 - 001123670 _____ C:\Users\Dalin\Downloads\1-14120GFG2.rar
2020-06-07 23:00 - 2020-06-07 23:00 - 007910983 _____ C:\Users\Dalin\Downloads\plug-jt002-1.snapshot.2.zip
2020-06-07 22:56 - 2020-06-07 22:56 - 000611796 _____ C:\Users\Dalin\Downloads\CEE_7_16_Male_Plug_v3_L3.123c466fd2d1-06af-4c2a-82d9-bee6d196dec3.zip
2020-06-07 21:24 - 2020-06-07 21:24 - 024166400 _____ C:\Program Files (x86)\GUT615.tmp
2020-06-07 21:24 - 2020-06-07 21:24 - 000000000 ____D C:\Program Files (x86)\GUM614.tmp
2020-06-07 16:24 - 2020-06-07 16:24 - 024166400 _____ C:\Program Files (x86)\GUT266B.tmp
2020-06-07 16:24 - 2020-06-07 16:24 - 000000000 ____D C:\Program Files (x86)\GUM266A.tmp
2020-06-07 10:40 - 2020-06-07 10:40 - 024166400 _____ C:\Program Files (x86)\GUTC783.tmp
2020-06-07 10:40 - 2020-06-07 10:40 - 000000000 ____D C:\Program Files (x86)\GUMC773.tmp
2020-06-06 21:24 - 2020-06-06 21:24 - 024166400 _____ C:\Program Files (x86)\GUTC401.tmp
2020-06-06 21:24 - 2020-06-06 21:24 - 000000000 ____D C:\Program Files (x86)\GUMC400.tmp
2020-06-06 18:59 - 2020-06-06 19:00 - 024510650 _____ C:\Users\Dalin\Downloads\181-black-concrete-bare-pbr-texture-seamless-hr.zip
2020-06-06 16:24 - 2020-06-06 16:24 - 024166400 _____ C:\Program Files (x86)\GUT2878.tmp
2020-06-06 16:24 - 2020-06-06 16:24 - 000000000 ____D C:\Program Files (x86)\GUM2819.tmp
2020-06-06 15:54 - 2020-06-06 15:55 - 038990674 _____ C:\Users\Dalin\Downloads\205-old-wall-stone-texture-seamless-hr.zip
2020-06-06 14:15 - 2020-06-06 14:15 - 016631780 _____ C:\Users\Dalin\Downloads\248-wall-stone-texture-seamless-hr.zip
2020-06-06 14:14 - 2020-06-06 14:15 - 001235390 _____ C:\Users\Dalin\Downloads\248-wall-stone-texture-seamless.zip
2020-06-06 10:24 - 2020-06-06 10:24 - 024166400 _____ C:\Program Files (x86)\GUTEF96.tmp
2020-06-06 10:24 - 2020-06-06 10:24 - 000000000 ____D C:\Program Files (x86)\GUMEF95.tmp
2020-06-06 05:24 - 2020-06-06 05:24 - 024166400 _____ C:\Program Files (x86)\GUT2F10.tmp
2020-06-06 05:24 - 2020-06-06 05:24 - 000000000 ____D C:\Program Files (x86)\GUM2F0F.tmp
2020-06-06 00:23 - 2020-06-06 00:24 - 000000000 ____D C:\Program Files (x86)\GUM61AD.tmp
2020-06-06 00:23 - 2020-06-06 00:23 - 024166400 _____ C:\Program Files (x86)\GUT61AE.tmp
2020-06-05 20:38 - 2020-06-29 19:36 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-06-05 19:24 - 2020-06-05 19:24 - 024166400 _____ C:\Program Files (x86)\GUT8C22.tmp
2020-06-05 19:24 - 2020-06-05 19:24 - 000000000 ____D C:\Program Files (x86)\GUM8C21.tmp
2020-06-05 14:24 - 2020-06-05 14:24 - 024166400 _____ C:\Program Files (x86)\GUT6377.tmp
2020-06-05 14:24 - 2020-06-05 14:24 - 000000000 ____D C:\Program Files (x86)\GUM6376.tmp
2020-06-05 09:24 - 2020-06-05 09:24 - 024166400 _____ C:\Program Files (x86)\GUTCCA.tmp
2020-06-05 09:24 - 2020-06-05 09:24 - 000000000 ____D C:\Program Files (x86)\GUMCC9.tmp
2020-06-05 04:23 - 2020-06-05 04:23 - 024166400 _____ C:\Program Files (x86)\GUTC1A2.tmp
2020-06-05 04:23 - 2020-06-05 04:23 - 000000000 ____D C:\Program Files (x86)\GUMC191.tmp
2020-06-04 23:24 - 2020-06-04 23:24 - 024166400 _____ C:\Program Files (x86)\GUT3B5D.tmp
2020-06-04 23:24 - 2020-06-04 23:24 - 000000000 ____D C:\Program Files (x86)\GUM3B5C.tmp
2020-06-04 18:24 - 2020-06-04 18:24 - 024166400 _____ C:\Program Files (x86)\GUTCCDD.tmp
2020-06-04 18:24 - 2020-06-04 18:24 - 000000000 ____D C:\Program Files (x86)\GUMCCCC.tmp
2020-06-04 09:33 - 2020-06-06 20:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-06-02 15:04 - 2020-06-02 15:04 - 149985561 _____ C:\Users\Dalin\Downloads\P19425P_work07_final_render.zip
2020-06-02 14:24 - 2020-06-02 14:24 - 024166400 _____ C:\Program Files (x86)\GUT6C22.tmp
2020-06-02 14:24 - 2020-06-02 14:24 - 000000000 ____D C:\Program Files (x86)\GUM6C21.tmp
2020-06-01 14:18 - 2020-06-01 14:18 - 057050554 _____ C:\Users\Dalin\Downloads\P194253_work_01_fin_ren.zip
2020-06-01 11:17 - 2020-06-01 11:17 - 065522575 _____ C:\Users\Dalin\Downloads\p194504_work_04_final_render.zip

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-01 16:01 - 2016-11-16 16:11 - 000000000 ____D C:\Users\Dalin\AppData\LocalLow\Mozilla
2020-07-01 15:43 - 2009-07-14 06:45 - 000026000 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-07-01 15:43 - 2009-07-14 06:45 - 000026000 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-07-01 15:37 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration
2020-07-01 15:36 - 2014-11-11 11:04 - 000000436 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2020-07-01 15:32 - 2012-08-12 23:10 - 000000000 ____D C:\ProgramData\NVIDIA
2020-07-01 15:32 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-07-01 15:30 - 2012-08-13 01:05 - 000002236 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-07-01 15:30 - 2012-08-13 01:05 - 000002195 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-07-01 15:30 - 2012-08-13 01:05 - 000002195 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-07-01 15:30 - 2012-08-12 22:36 - 000001409 _____ C:\Users\Dalin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-07-01 10:42 - 2012-08-12 22:48 - 000000000 ____D C:\Program Files\Dell
2020-07-01 10:41 - 2018-12-02 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2020-07-01 10:41 - 2014-11-18 02:37 - 000000000 ____D C:\Program Files (x86)\Samsung
2020-07-01 10:41 - 2012-08-12 22:53 - 000000000 ____D C:\Program Files (x86)\Dell
2020-07-01 10:41 - 2012-08-12 22:48 - 000000000 ____D C:\ProgramData\Dell
2020-07-01 10:31 - 2015-07-01 12:38 - 000000000 ____D C:\AdwCleaner
2020-07-01 06:38 - 2018-06-25 12:53 - 000000000 ____D C:\Users\Dalin\AppData\Local\CrashDumps
2020-06-30 15:00 - 2014-06-24 00:40 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-06-30 14:46 - 2013-01-04 04:20 - 000000000 ____D C:\Windows\system32\Macromed
2020-06-30 14:46 - 2012-08-13 01:33 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-06-30 12:48 - 2015-11-07 01:15 - 000000000 ____D C:\Users\Dalin\AppData\Local\Opera Software
2020-06-30 12:34 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2020-06-30 11:46 - 2018-05-24 08:46 - 006059856 _____ C:\Windows\system32\FNTCACHE.DAT
2020-06-30 11:44 - 2017-07-28 07:43 - 000214288 _____ C:\Users\Dalin\AppData\Local\GDIPFONTCACHEV1.DAT
2020-06-30 11:33 - 2012-08-12 22:46 - 000000000 ____D C:\TEMP
2020-06-30 11:25 - 2015-03-04 22:20 - 000000000 ____D C:\Windows\Minidump
2020-06-30 09:46 - 2015-10-21 00:22 - 000000000 ____D C:\Users\Dalin\Desktop\Původní data aplikace Firefox
2020-06-30 00:36 - 2009-07-14 04:34 - 032505856 _____ C:\Windows\system32\config\BCD00000000
2020-06-29 20:26 - 2012-08-13 04:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2020-06-29 20:26 - 2012-08-13 04:12 - 000000000 ____D C:\ProgramData\Autodesk
2020-06-29 20:26 - 2012-08-13 04:12 - 000000000 ____D C:\Program Files\Autodesk
2020-06-29 20:20 - 2015-11-06 16:51 - 000000000 ____D C:\Windows\SysWOW64\Codecs
2020-06-29 20:13 - 2018-07-25 10:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2020-06-29 20:13 - 2012-09-09 21:03 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\Skype
2020-06-29 20:11 - 2009-07-14 04:34 - 030126080 _____ C:\Windows\system32\C_3389.NLS
2020-06-29 20:04 - 2012-10-01 08:07 - 000000000 ____D C:\Program Files (x86)\Red Giant Link
2020-06-29 20:03 - 2015-06-24 20:32 - 000000270 __RSH C:\ProgramData\ntuser.pol
2020-06-29 19:53 - 2014-12-10 00:30 - 000000000 ____D C:\ProgramData\flipBook
2020-06-29 19:53 - 2014-12-10 00:30 - 000000000 ____D C:\Program Files (x86)\Flip PDF
2020-06-29 19:51 - 2012-09-29 01:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2020-06-29 19:50 - 2012-09-29 01:51 - 000000000 ____D C:\Program Files\Adobe
2020-06-29 19:48 - 2014-06-24 00:09 - 000000000 ____D C:\Program Files (x86)\Autodesk
2020-06-29 19:46 - 2012-08-12 22:59 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-06-29 19:44 - 2015-03-31 02:47 - 000000000 ____D C:\Program Files (x86)\3DRipperDX
2020-06-29 19:37 - 2016-11-17 02:04 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\uTorrent
2020-06-29 19:36 - 2012-08-12 22:35 - 000000000 ____D C:\Users\Dalin
2020-06-29 19:35 - 2019-08-30 14:10 - 000000000 ____D C:\Photos
2020-06-29 19:35 - 2019-08-16 00:13 - 000000000 ____D C:\PSRemote
2020-06-29 19:35 - 2019-02-18 19:14 - 000000000 ____D C:\MoTemp
2020-06-29 19:35 - 2018-12-31 00:52 - 000000000 ____D C:\wifidata
2020-06-29 19:35 - 2018-10-20 16:16 - 000000000 ____D C:\CMPPmax
2020-06-29 19:35 - 2018-04-18 04:02 - 000000000 ___HD C:\$AV_ASW
2020-06-29 19:35 - 2018-03-20 16:08 - 000000000 ____D C:\usr
2020-06-29 19:35 - 2018-03-20 16:04 - 000000000 ____D C:\Wondershare Video Converter Ultimate
2020-06-29 19:35 - 2017-04-24 20:57 - 000000000 ____D C:\lastRender
2020-06-29 19:35 - 2017-04-24 20:56 - 000000000 ____D C:\autosave
2020-06-29 19:35 - 2017-04-13 01:32 - 000000000 ____D C:\LOOXIS
2020-06-29 19:35 - 2014-12-10 00:14 - 000000000 ____D C:\aXmagFont
2020-06-29 19:35 - 2014-06-23 23:58 - 000000000 ____D C:\Autodesk
2020-06-29 19:35 - 2013-03-02 11:26 - 000000000 ____D C:\DOMA
2020-06-29 19:35 - 2012-09-28 23:02 - 000000000 ____D C:\KNIHOVNY
2020-06-29 19:35 - 2012-08-16 09:15 - 000000000 ____D C:\ZAKAZKY
2020-06-29 19:35 - 2012-08-13 11:17 - 000000000 ____D C:\SigerTools
2020-06-29 19:35 - 2012-08-12 22:35 - 000000000 ____D C:\Users\Dalin\AppData\Local\VirtualStore
2020-06-29 19:32 - 2012-08-13 04:26 - 000000000 ____D C:\Program Files\WIBU-SYSTEMS
2020-06-29 19:31 - 2018-03-20 16:08 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\Apowersoft
2020-06-29 19:31 - 2018-03-20 16:08 - 000000000 ____D C:\Program Files (x86)\Apowersoft
2020-06-26 14:36 - 2019-10-03 21:12 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-06-26 14:36 - 2019-10-03 21:12 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2020-06-25 17:38 - 2015-05-19 17:07 - 000000000 ____D C:\Users\Dalin\AppData\Roaming\MyPhoneExplorer
2020-06-23 16:14 - 2012-08-13 03:13 - 000000000 ____D C:\Users\Dalin\AppData\Local\GHISLER
2020-06-23 10:17 - 2012-08-13 01:03 - 000000000 ____D C:\Program Files (x86)\Google
2020-06-22 08:25 - 2009-07-14 07:08 - 000032552 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2020-06-19 08:04 - 2018-06-07 15:19 - 000002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2020-06-19 08:04 - 2018-06-07 15:19 - 000002386 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2020-06-19 08:04 - 2018-06-07 15:19 - 000002386 _____ C:\ProgramData\Desktop\Avast Secure Browser.lnk
2020-06-07 10:28 - 2013-02-24 20:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service

==================== Files in the root of some directories ========

2020-06-29 19:34 - 2020-06-29 19:34 - 000334288 _____ (Mozilla Foundation) C:\ProgramData\freebl3.dll
2020-06-29 20:04 - 2020-07-01 15:38 - 000000004 _____ () C:\ProgramData\lock.dat
2020-06-29 19:38 - 2020-06-29 19:38 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll
2020-06-29 20:10 - 2020-07-01 16:03 - 000000004 _____ () C:\ProgramData\rc.dat
2020-06-29 20:04 - 2020-06-29 20:04 - 000000008 _____ () C:\ProgramData\ts.dat
2018-11-28 16:40 - 2019-01-03 14:12 - 000045464 _____ () C:\Program Files (x86)\CMS Setup Log.txt
2020-06-08 12:24 - 2020-06-08 12:24 - 024166400 _____ () C:\Program Files (x86)\GUT15A9.tmp
2020-06-07 16:24 - 2020-06-07 16:24 - 024166400 _____ () C:\Program Files (x86)\GUT266B.tmp
2020-06-06 16:24 - 2020-06-06 16:24 - 024166400 _____ () C:\Program Files (x86)\GUT2878.tmp
2020-06-06 05:24 - 2020-06-06 05:24 - 024166400 _____ () C:\Program Files (x86)\GUT2F10.tmp
2020-06-04 23:24 - 2020-06-04 23:24 - 024166400 _____ () C:\Program Files (x86)\GUT3B5D.tmp
2020-06-08 22:24 - 2020-06-08 22:24 - 024166400 _____ () C:\Program Files (x86)\GUT3D9.tmp
2019-06-17 12:19 - 2019-06-17 17:01 - 006922240 _____ () C:\Program Files (x86)\GUT5D1.tmp
2020-06-08 07:07 - 2020-06-08 07:07 - 024166400 _____ () C:\Program Files (x86)\GUT5D7B.tmp
2020-06-07 21:24 - 2020-06-07 21:24 - 024166400 _____ () C:\Program Files (x86)\GUT615.tmp
2020-06-06 00:23 - 2020-06-06 00:23 - 024166400 _____ () C:\Program Files (x86)\GUT61AE.tmp
2020-06-05 14:24 - 2020-06-05 14:24 - 024166400 _____ () C:\Program Files (x86)\GUT6377.tmp
2020-06-02 14:24 - 2020-06-02 14:24 - 024166400 _____ () C:\Program Files (x86)\GUT6C22.tmp
2020-06-08 17:24 - 2020-06-08 17:24 - 024166400 _____ () C:\Program Files (x86)\GUT708A.tmp
2020-06-05 19:24 - 2020-06-05 19:24 - 024166400 _____ () C:\Program Files (x86)\GUT8C22.tmp
2018-07-26 12:27 - 2018-07-27 00:42 - 007649280 _____ () C:\Program Files (x86)\GUT9F8E.tmp
2020-06-05 04:23 - 2020-06-05 04:23 - 024166400 _____ () C:\Program Files (x86)\GUTC1A2.tmp
2020-06-06 21:24 - 2020-06-06 21:24 - 024166400 _____ () C:\Program Files (x86)\GUTC401.tmp
2020-06-07 10:40 - 2020-06-07 10:40 - 024166400 _____ () C:\Program Files (x86)\GUTC783.tmp
2020-06-05 09:24 - 2020-06-05 09:24 - 024166400 _____ () C:\Program Files (x86)\GUTCCA.tmp
2020-06-04 18:24 - 2020-06-04 18:24 - 024166400 _____ () C:\Program Files (x86)\GUTCCDD.tmp
2020-06-06 10:24 - 2020-06-06 10:24 - 024166400 _____ () C:\Program Files (x86)\GUTEF96.tmp
2013-08-21 16:08 - 2016-04-22 10:32 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Adobe Formát BMP CS5 – předvolby
2018-01-25 20:17 - 2018-02-02 17:57 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Adobe Formát GIF CS5 – předvolby
2014-05-09 15:23 - 2019-09-09 14:58 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-11-24 17:27 - 2020-05-20 08:52 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2013-01-11 05:38 - 2018-12-29 14:23 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Adobe Formát Targa CS5 – předvolby
2017-03-31 14:02 - 2018-05-19 01:33 - 000031195 _____ () C:\Users\Dalin\AppData\Roaming\ContactSheetII.log
2020-01-15 14:44 - 2020-01-03 05:33 - 000188416 ___SH () C:\Users\Dalin\AppData\Roaming\efagbgb
2015-11-17 06:05 - 2019-08-19 15:57 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Filtr IIIExport Adobe CS5 – předvolby
2016-07-16 02:52 - 2020-01-23 01:20 - 000000132 _____ () C:\Users\Dalin\AppData\Roaming\Filtr IIIExport Adobe CS6 – předvolby
2020-04-09 23:04 - 2020-04-09 23:04 - 046365666 _____ () C:\Users\Dalin\AppData\Roaming\RuntimeBroker.exe
2017-03-31 14:02 - 2018-05-19 01:30 - 000000711 _____ () C:\Users\Dalin\AppData\Roaming\Stránka miniatur II.xml
2019-04-17 23:58 - 2018-03-24 00:32 - 000047104 _____ (Microsoft Corporation) C:\Users\Dalin\AppData\Roaming\taskhost.exe
2020-01-15 14:44 - 2020-01-03 05:33 - 000320202 ___SH () C:\Users\Dalin\AppData\Roaming\uibvbwu
2015-02-27 12:39 - 2018-02-04 23:39 - 000001480 _____ () C:\Users\Dalin\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2016-11-24 17:28 - 2016-11-24 17:28 - 000001480 _____ () C:\Users\Dalin\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2020-06-29 20:10 - 2020-06-29 20:10 - 008633856 _____ () C:\Users\Dalin\AppData\Local\agent.dat
2020-06-29 20:09 - 2020-06-29 20:09 - 000045056 _____ () C:\Users\Dalin\AppData\Local\ApplicationHosting.dat
2020-06-29 19:33 - 2020-06-29 19:33 - 000000563 _____ () C:\Users\Dalin\AppData\Local\bowsakkdestx.txt
2020-06-29 20:10 - 2020-06-29 20:10 - 000072576 _____ () C:\Users\Dalin\AppData\Local\Config.xml
2018-12-03 19:31 - 2020-01-22 13:38 - 000006144 _____ () C:\Users\Dalin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-06-29 20:10 - 2020-06-29 20:09 - 004533760 _____ () C:\Users\Dalin\AppData\Local\DonEx.exe
2020-06-29 20:10 - 2020-06-29 20:10 - 002190079 _____ () C:\Users\Dalin\AppData\Local\DonEx.tst
2020-06-29 19:33 - 2020-06-29 19:33 - 000142336 _____ () C:\Users\Dalin\AppData\Local\installer.dat
2020-06-29 20:10 - 2020-06-29 20:10 - 001895382 _____ () C:\Users\Dalin\AppData\Local\Konphase.bin
2020-06-29 20:09 - 2020-06-29 20:09 - 000126464 _____ () C:\Users\Dalin\AppData\Local\lobby.dat
2020-06-29 20:09 - 2020-06-29 20:10 - 000005568 _____ () C:\Users\Dalin\AppData\Local\md.xml
2020-06-29 20:10 - 2020-06-29 20:10 - 000126464 _____ () C:\Users\Dalin\AppData\Local\noah.dat
2018-11-26 20:36 - 2018-11-26 20:36 - 000000000 _____ () C:\Users\Dalin\AppData\Local\oobelibMkey.log
2017-10-05 20:49 - 2017-10-05 20:49 - 000000218 _____ () C:\Users\Dalin\AppData\Local\recently-used.xbel
2014-10-08 08:34 - 2016-12-01 15:36 - 000007667 _____ () C:\Users\Dalin\AppData\Local\resmon.resmoncfg
2020-06-29 20:09 - 2020-06-29 20:09 - 004533760 _____ () C:\Users\Dalin\AppData\Local\TempLa.exe
2020-06-29 20:09 - 2020-06-29 20:09 - 000068473 _____ () C:\Users\Dalin\AppData\Local\TempLa.tst
2020-06-29 20:13 - 2020-06-29 20:13 - 000032038 _____ () C:\Users\Dalin\AppData\Local\uninstall_temp.ico
2018-03-25 02:08 - 2018-03-24 00:32 - 000047104 _____ (Microsoft Corporation) C:\Users\Dalin\AppData\Local\WINX.EXE

==================== FLock ==============================

2020-07-01 15:31 C:\Windows\system32\config\SYSTEM
2020-06-29 20:11 C:\Windows\system32\Drivers\Wdf16712.sys

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-07-01 11:19
==================== End of FRST.txt ========================