Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-04-2021
Ran by Kostík 1972 (administrator) on KOSTÍK1972 (13-04-2021 15:30:11)
Running from C:\Users\rkost\OneDrive\Plocha
Loaded Profiles: Kostík 1972
Platform: Windows 10 Pro Version 20H2 19042.906 (X64) Language: Čeština (Česká republika) -> Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(Beijing Qihu Technology Co., Ltd. -> Qihu 360 Software Co., Ltd.) C:\Program Files (x86)\360\Total Security\safemon\chrome\360webshield.exe
(Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <17>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20688.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20688.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12101.1001.14.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.903_none_e780eeb325fbfdae\TiWorker.exe
(Power Software Limited -> ) C:\Program Files\WinArchiver\WAService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [413000 2019-07-10] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKU\S-1-5-21-1898352290-1805531894-2826359755-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\root\Office16\lync.exe [26325344 2021-04-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1898352290-1805531894-2826359755-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-1898352290-1805531894-2826359755-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [809472 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon TS6200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDEO.DLL [482816 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS6200 series: C:\WINDOWS\system32\CNMLMEO.DLL [1303040 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\Installer\chrmstp.exe [2021-03-31] (Google LLC -> Google LLC)
BootExecute: autocheck autochk /m /P \Device\HarddiskVolume13autocheck autochk * 

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {3ECF09E4-5A9A-47FD-9F1A-282CE90C3038} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18744 2019-04-15] (Intel(R) Software Development Products -> Intel Corporation)
Task: {435DFFDA-59F4-4327-859B-7FB263E85708} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61112 2019-08-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {43AA2412-CD5A-4D4B-93B4-829235A337B0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5255104 2021-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C0E22B8-0CB6-42EB-9DE7-E243164B5F09} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {629FC164-E6B4-45C6-A7BE-6D734F71169D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141168 2021-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {9A45996A-2653-439E-A094-CE0A7B910188} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696816 2021-04-09] (Mozilla Corporation -> Mozilla Foundation)
Task: {9C640EA5-258B-4D8D-A4FF-985BA22738AD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141168 2021-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {9FC1DBF4-5A8F-43ED-8820-840E355541B3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5255104 2021-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {A24EADEF-02C8-4CF1-B289-8A489F7EC3E4} - System32\Tasks\adobe acrobat update task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {A777E523-16D8-4ECD-9382-A8F384B13F1A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {C442EF52-8D49-4563-9841-F4813FC56429} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18744 2019-04-15] (Intel(R) Software Development Products -> Intel Corporation)
Task: {CA27AF25-A04E-4833-A17B-30DFEBBF8C71} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68280 2019-08-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D6B6CC37-1310-4E54-823A-ECE4E3331310} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-08-03] (Google Inc -> Google Inc.)
Task: {EA67F727-3C16-4BCB-95BF-F9161BD4DBF3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-08-03] (Google Inc -> Google Inc.)
Task: {EC490466-4FC2-4260-AEEA-B25780076611} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {F630EC42-0F53-4663-B877-A5D4536FA9CE} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2020-12-28] () [File not signed]

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9572d630-1d1e-44c1-8067-5fa175d34fc7}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
DownloadDir: C:\Users\rkost\OneDrive\Plocha
Edge HomeButtonPage: HKU\S-1-5-21-1898352290-1805531894-2826359755-1001 -> hxxp://www.seznam.cz/
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-30]
Edge DownloadDir: C:\Users\rkost\OneDrive\Plocha
Edge HomePage: Default -> hxxp://www.centrum.cz/
Edge StartupUrls: Default -> "hxxps://google.cz/"
Edge NewTab: Default ->  Active:"chrome-extension://jggcgmndafabjfjoldiopileackddmpg/newtab.html"
Edge Extension: (Get CRX) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dijpllakibenlejkbajahncialkbdkjc [2021-03-03]
Edge Extension: (Checker Plus for Gmail™) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkjkomkbjefdadfgbgdfgnpbmhmppiaa [2021-03-25]
Edge Extension: (Best Speedtest Tool) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eklcgjodcnhhcghpbhehhbnmjncbopcg [2020-06-27]
Edge Extension: ([FVD] New Tab Page) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jggcgmndafabjfjoldiopileackddmpg [2020-06-08]
Edge Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-03-25]
Edge Extension: (360 Internet Protection) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\okdacpiidbbphpjpfmecjjhicomjdeie [2021-01-19]
Edge Extension: (Desktop) - C:\Users\rkost\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pafkcccccfmnjkhhndjfffifnflhkpdo [2021-01-29]

FireFox:
========
FF DefaultProfile: yuepxqti.default
FF ProfilePath: C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\yuepxqti.default [2020-04-28]
FF ProfilePath: C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294 [2021-04-13]
FF DownloadDir: C:\Users\rkost\OneDrive\Plocha
FF Extension: (AdBlocker Ultimate) - C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294\Extensions\adblockultimate@adblockultimate.net.xpi [2021-01-28]
FF Extension: (Slovak (SK) Language Pack) - C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294\Extensions\langpack-sk@firefox.mozilla.org.xpi [2021-04-09]
FF Extension: (Slovenská kontrola preklepov) - C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294\Extensions\sk@dictionaries.addons.mozilla.org.xpi [2021-01-28]
FF Extension: (Speed Test) - C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294\Extensions\{14e933d5-088a-4963-8894-0d2ce0149026}.xpi [2021-01-28]
FF Extension: (wooden woody) - C:\Users\rkost\AppData\Roaming\Mozilla\Firefox\Profiles\nkwdeinp.default-release-1611851580294\Extensions\{675cec3a-8247-4014-9ae2-be4b66b778e8}.xpi [2021-01-28]
FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-03-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-03-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default [2021-04-13]
CHR DownloadDir: C:\Users\rkost\OneDrive\Plocha
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.linuxsat-support.com; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.centrum.cz/
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR NewTab: Default ->  Not-active:"chrome-extension://meffljleomgifbbcffejnmhjagncfpbd/newtab.html", Not-active:"chrome-extension://ddjdamcnphfdljlojajeoiogkanilahc/pages/newtab.html"
CHR Extension: (Prekladač Google) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-18]
CHR Extension: (Prezentácie) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-03]
CHR Extension: (YouTube) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\agimnkijcaahngcdmfeangaknmldooml [2021-03-11]
CHR Extension: (Dokumenty) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-03]
CHR Extension: (Disk Google) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-21]
CHR Extension: (YouTube) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-03]
CHR Extension: (The New Tab - Customize Your Start Page) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddjdamcnphfdljlojajeoiogkanilahc [2020-05-30]
CHR Extension: (Tabuľky) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-03]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-12]
CHR Extension: (IP-Address) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghlojgpiinfelppegaabbiphgomaidml [2019-08-03]
CHR Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-04-13]
CHR Extension: (360 Internet Protection) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2020-11-22]
CHR Extension: (Downloads) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2019-08-03]
CHR Extension: (IP Address and Domain Information) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhgkegeccnckoiliokondpaaalbhafoa [2020-09-08]
CHR Extension: (Infinite Dashboard - New Tab like no other) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\meffljleomgifbbcffejnmhjagncfpbd [2021-04-02]
CHR Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2021-02-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2021-03-17]
CHR Extension: (Desktop) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\pafkcccccfmnjkhhndjfffifnflhkpdo [2019-08-03]
CHR Extension: (Speedtest by Ookla) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgjjikdiikihdfpoppgaidccahalehjh [2021-04-13]
CHR Extension: (Gmail) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-03]
CHR Profile: C:\Users\rkost\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-08-03]
CHR HKLM-x32\...\Chrome\Extension: [glcimepnljoholdmjchkloafkggfoijh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788368 2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [399296 2019-11-28] (Canon Inc. -> )
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [1101056 2021-03-25] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S3 QHProtected; C:\Program Files (x86)\360\Total Security\safemon\WscReg.exe [3097592 2020-08-13] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5361256 2021-03-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12849960 2021-03-15] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinArchiver Service; C:\Program Files\WinArchiver\WAService.exe [287936 2020-10-06] (Power Software Limited -> )
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 360AntiHacker; C:\WINDOWS\System32\Drivers\360AntiHacker64.sys [197960 2020-12-14] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R3 360AvFlt; C:\WINDOWS\System32\DRIVERS\360AvFlt.sys [95232 2019-08-01] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [95232 2019-08-01] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 360Box64; C:\WINDOWS\System32\DRIVERS\360Box64.sys [344904 2021-01-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Camera; C:\WINDOWS\System32\Drivers\360Camera64.sys [58200 2020-12-14] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360CondrvFix; C:\WINDOWS\system32\DRIVERS\360CondrvFix.sys [39752 2021-01-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S0 360elam64; C:\WINDOWS\System32\DRIVERS\360elam64.sys [17192 2019-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> 360.cn)
R1 360FsFlt; C:\WINDOWS\System32\DRIVERS\360FsFlt.sys [489800 2020-12-17] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Hvm; C:\WINDOWS\System32\Drivers\360Hvm64.sys [331392 2020-12-23] (Beijing Qihu Technology Co., Ltd. -> 360安全中心)
R1 360netmon; C:\WINDOWS\System32\DRIVERS\360netmon.sys [96424 2019-08-01] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 BAPIDRV; C:\WINDOWS\System32\DRIVERS\BAPIDRV64.sys [229176 2020-12-14] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [34744 2019-02-18] (CHENGDU YIWO Tech Development Co., Ltd. -> )
R0 EPMVolFl; C:\WINDOWS\System32\drivers\EPMVolFl.sys [30136 2019-04-12] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider)
S3 gdrv; C:\WINDOWS\gdrv.sys [25640 2019-08-21] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
R1 HWiNFO; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [66640 2019-08-21] (Martin Malik - REALiX -> REALiX(tm))
S3 MPEVirtual; C:\WINDOWS\System32\drivers\MPEVirtual.sys [104752 2008-11-07] (Shenzhen Turbosight Technology Co,.Ltd -> TBS Technologies)
U5 PciIsaSerial; C:\Windows\System32\Drivers\PciIsaSerial.sys [68608 2008-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
R3 PciSPorts; C:\WINDOWS\system32\DRIVERS\PciSPorts.sys [122880 2008-12-19] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 Revoflt; C:\WINDOWS\System32\DRIVERS\revoflt.sys [38400 2020-10-14] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
S0 Si3114r5; C:\WINDOWS\System32\DRIVERS\Si3114r5.sys [327720 2008-04-30] (Silicon Image, Inc. -> Silicon Image, Inc)
R0 SiFilter; C:\WINDOWS\System32\DRIVERS\SiWinAcc.sys [22568 2008-04-30] (Silicon Image, Inc. -> Silicon Image, Inc.)
R0 SiRemFil; C:\WINDOWS\System32\DRIVERS\SiRemFil.sys [16936 2008-04-30] (Silicon Image, Inc. -> Silicon Image, Inc.)
S3 TBS5980vhid; C:\WINDOWS\system32\drivers\TBS5980vhid.sys [20656 2014-09-28] (SHENZHEN TURBOSIGHT TECHNOLOGY CO,.LTD -> Windows (R) Win 7 DDK provider)
S3 TBS6928_64; C:\WINDOWS\system32\DRIVERS\TBS6928_64.sys [1934792 2012-12-19] (Shenzhen Turbosight Technology Co,.Ltd -> www.tbsdtv.com)
R2 TBS_TBS5980BDA; C:\WINDOWS\System32\drivers\TBS5980.sys [244536 2017-03-22] (深圳市特博赛科技有限公司 -> TBS)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24064 2019-12-07] (Microsoft Corporation) [File not signed]
R0 waemu; C:\WINDOWS\System32\Drivers\waemu.sys [143928 2017-06-15] (Power Software Limited -> Power Software Ltd)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-13 15:29 - 2021-04-13 15:31 - 000000000 ____D C:\FRST
2021-04-13 15:02 - 2021-04-13 15:02 - 000437000 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-11 18:24 - 2021-04-11 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix
2021-04-11 18:24 - 2021-04-11 18:24 - 000000000 ____D C:\Program Files\MKVToolNix
2021-04-11 16:05 - 2021-04-11 16:05 - 000000279 _____ C:\Users\rkost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kôš.lnk
2021-04-09 11:04 - 2021-04-10 07:11 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-04-09 11:04 - 2021-04-09 11:04 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-03-31 22:43 - 2021-03-31 22:44 - 000000000 ____D C:\Users\rkost\AppData\Roaming\Q-Dir
2021-03-31 22:43 - 2021-03-31 22:43 - 000001852 _____ C:\Users\rkost\AppData\Roaming\Microsoft\Windows\Start Menu\Q-Dir.lnk
2021-03-31 22:43 - 2021-03-31 22:43 - 000000000 ____D C:\Users\rkost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Q-Dir
2021-03-31 19:09 - 2021-03-31 19:09 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-03-28 01:50 - 2008-04-30 00:24 - 000327720 _____ (Silicon Image, Inc) C:\WINDOWS\system32\Drivers\Si3114r5.sys
2021-03-28 01:50 - 2008-04-30 00:24 - 000103976 _____ (Silicon Image) C:\WINDOWS\system32\SilSupp.cpl
2021-03-28 01:50 - 2008-04-30 00:24 - 000022568 _____ (Silicon Image, Inc.) C:\WINDOWS\system32\Drivers\SiWinAcc.sys
2021-03-28 01:50 - 2008-04-30 00:24 - 000016936 _____ (Silicon Image, Inc.) C:\WINDOWS\system32\Drivers\SiRemFil.sys
2021-03-27 18:39 - 2021-03-27 18:39 - 000725157 _____ C:\WINDOWS\unins000.exe
2021-03-27 18:39 - 2021-03-27 18:39 - 000003400 _____ C:\WINDOWS\unins000.dat
2021-03-27 18:39 - 2021-03-27 18:39 - 000000000 ____D C:\Program Files\DIFX
2021-03-27 18:39 - 2017-03-22 07:53 - 000244536 _____ (TBS ) C:\WINDOWS\system32\Drivers\TBS5980.sys
2021-03-27 18:39 - 2014-09-28 16:16 - 000020656 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\TBS5980vhid.sys
2021-03-26 01:49 - 2021-03-26 01:49 - 000000000 ____D C:\Users\rkost\AppData\Local\skybn
2021-03-24 15:18 - 2021-03-24 15:18 - 000001313 _____ C:\ProgramData\Plocha\Ashampoo WinOptimizer 18.lnk

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-13 15:29 - 2019-08-02 15:16 - 000000000 ____D C:\Users\rkost\AppData\LocalLow\360WD
2021-04-13 15:26 - 2020-06-12 16:18 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-13 15:26 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-13 15:26 - 2019-08-03 01:40 - 000000000 ____D C:\Users\rkost\AppData\Local\D3DSCache
2021-04-13 15:02 - 2020-06-12 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-13 15:02 - 2020-06-12 16:17 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-13 15:02 - 2019-11-27 11:20 - 000000001 _____ C:\WINDOWS\system32\Drivers\360Hvm64.dat
2021-04-13 15:01 - 2020-06-12 16:22 - 000000000 ____D C:\Users\rkost
2021-04-13 15:01 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-13 15:01 - 2019-08-03 02:03 - 000000000 ____D C:\Users\rkost\AppData\Local\ClassicShell
2021-04-13 15:01 - 2019-08-03 01:17 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-04-13 15:01 - 2017-12-14 19:46 - 000000000 _RSHD C:\360SANDBOX
2021-04-13 14:53 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-13 13:37 - 2020-03-10 11:48 - 000000000 ____D C:\Program Files\Fotolab
2021-04-13 13:18 - 2019-08-03 02:37 - 000000000 __SHD C:\ProgramData\360Quarant
2021-04-13 13:18 - 2019-08-03 02:11 - 000000000 ____D C:\ProgramData\360safe
2021-04-13 13:18 - 2017-12-14 19:57 - 000000000 __SHD C:\$360Section
2021-04-13 08:08 - 2020-06-12 16:45 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-04-13 08:08 - 2020-06-12 16:45 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-04-13 07:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-12 15:19 - 2020-04-28 17:04 - 000000000 ____D C:\Users\rkost\AppData\LocalLow\Mozilla
2021-04-12 15:19 - 2020-04-28 17:03 - 000000000 ____D C:\ProgramData\Mozilla
2021-04-12 14:51 - 2020-06-12 16:45 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1898352290-1805531894-2826359755-1001
2021-04-12 14:51 - 2020-06-12 16:22 - 000002365 _____ C:\Users\rkost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-12 14:51 - 2019-08-01 13:03 - 000000000 ___RD C:\Users\rkost\OneDrive
2021-04-11 18:36 - 2019-08-03 12:15 - 000000000 ____D C:\Users\rkost\AppData\Roaming\vlc
2021-04-11 18:23 - 2019-08-03 12:19 - 000000000 ____D C:\Users\rkost\AppData\Roaming\AIMP
2021-04-10 20:08 - 2020-06-08 11:18 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-04-10 20:08 - 2020-06-08 11:18 - 000002292 _____ C:\ProgramData\Plocha\Microsoft Edge.lnk
2021-04-10 20:08 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-10 16:17 - 2019-08-03 13:56 - 000000000 ____D C:\Users\rkost\AppData\Roaming\BitTorrent
2021-04-10 15:39 - 2019-08-03 01:40 - 000000000 ____D C:\Users\rkost\AppData\Local\VirtualStore
2021-04-10 13:56 - 2021-03-03 20:48 - 000000000 ____D C:\Users\rkost\AppData\Local\BitTorrentHelper
2021-04-10 07:11 - 2020-04-28 17:03 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-04-09 20:59 - 2019-08-03 11:21 - 000000000 ____D C:\Users\rkost\AppData\Roaming\TeamViewer
2021-04-09 19:22 - 2019-08-03 11:21 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-04-09 11:04 - 2020-04-28 17:03 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-04-08 15:42 - 2019-08-03 12:19 - 000000000 ____D C:\Program Files (x86)\AIMP
2021-04-08 14:53 - 2019-08-03 10:41 - 000000000 ____D C:\Program Files\Microsoft Office
2021-04-07 14:20 - 2019-09-19 12:05 - 000000000 ____D C:\Users\rkost\DCC_E2
2021-04-06 12:31 - 2019-11-17 12:45 - 000000887 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
2021-04-06 12:31 - 2019-11-17 12:45 - 000000000 ____D C:\Users\rkost\AppData\Roaming\Notepad++
2021-04-06 12:31 - 2019-11-17 12:45 - 000000000 ____D C:\Program Files\Notepad++
2021-04-05 11:08 - 2019-08-03 01:40 - 000000000 ____D C:\Users\rkost\AppData\Local\Packages
2021-04-04 08:10 - 2020-06-12 16:32 - 001693204 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-04 08:10 - 2019-12-07 16:43 - 000716754 _____ C:\WINDOWS\system32\perfh005.dat
2021-04-04 08:10 - 2019-12-07 16:43 - 000144952 _____ C:\WINDOWS\system32\perfc005.dat
2021-04-02 14:42 - 2020-05-07 16:13 - 000000000 ____D C:\ProgramData\CanonIJPLM
2021-04-02 13:55 - 2019-08-03 10:08 - 000000000 ____D C:\Users\rkost\AppData\Local\PlaceholderTileLogoFolder
2021-04-01 16:05 - 2020-05-28 10:40 - 000000000 ____D C:\Users\rkost\AppData\Roaming\dvdcss
2021-03-31 22:54 - 2019-08-03 02:10 - 000001248 _____ C:\ProgramData\Plocha\360 Total Security.lnk
2021-03-31 22:54 - 2019-08-02 15:16 - 000000000 ____D C:\Users\rkost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\360 Security Center
2021-03-31 22:54 - 2019-08-02 15:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2021-03-31 22:30 - 2019-08-19 11:19 - 000000000 ____D C:\Users\rkost\.smplayer
2021-03-31 19:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-03-31 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-03-31 19:17 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-03-31 19:08 - 2020-06-12 16:23 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2021-03-31 18:48 - 2019-08-03 01:55 - 000002282 _____ C:\ProgramData\Plocha\Google Chrome.lnk
2021-03-31 18:48 - 2019-08-01 13:14 - 000002323 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-03-30 14:12 - 2020-12-30 15:04 - 000000000 ____D C:\Users\rkost\Downloads\TS Recommended Apps
2021-03-28 00:09 - 2019-08-03 02:11 - 000000000 ____D C:\Users\rkost\AppData\Roaming\360safe
2021-03-26 00:06 - 2020-03-18 12:28 - 000000000 ____D C:\Users\rkost\AppData\Local\ElevatedDiagnostics
2021-03-24 15:23 - 2019-08-03 02:48 - 000000000 ____D C:\Program Files (x86)\Ashampoo
2021-03-24 15:21 - 2019-08-02 18:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2021-03-24 15:17 - 2020-06-20 13:06 - 000001132 _____ C:\ProgramData\Plocha\Revo Uninstaller Pro.lnk
2021-03-24 15:17 - 2020-06-20 13:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2021-03-23 16:28 - 2019-08-03 12:39 - 000000000 ____D C:\Program Files (x86)\DCC E2 2.96
2021-03-20 15:57 - 2019-08-03 12:22 - 000000000 ____D C:\Program Files (x86)\Lacey
2021-03-17 16:41 - 2019-08-03 02:53 - 000000000 ____D C:\dvbdream
2021-03-14 11:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-03-14 10:52 - 2020-03-10 11:51 - 000000000 ____D C:\ProgramData\tmp

==================== Files in the root of some directories ========

2014-07-10 08:16 - 2014-07-10 08:16 - 002174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll
2019-08-03 12:04 - 2019-08-03 12:04 - 000000171 _____ () C:\Users\rkost\AppData\Roaming\1eb766f2-fed1-4d33-9c39-2c8a972fd11f
2019-08-03 12:04 - 2019-08-03 12:04 - 000000304 _____ () C:\Users\rkost\AppData\Roaming\4e93aa11-2d46-4980-a421-0a4ac759e5bf
2019-08-03 12:04 - 2019-08-03 12:04 - 000000175 _____ () C:\Users\rkost\AppData\Roaming\fc19ece2-6b3f-4f22-8758-9651ab9ca388
2021-01-08 17:57 - 2021-01-08 17:57 - 000003584 _____ () C:\Users\rkost\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================