Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2021
Ran by John (administrator) on JOHN-PC (06-06-2021 17:28:07)
Running from C:\Users\John\Downloads
Loaded Profiles: John
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Figma, Inc. -> ) C:\Users\John\AppData\Local\FigmaAgent\figma_agent.exe
(Malwarebytes Inc -> Malwarebytes) C:\Users\John\Downloads\AdwCleaner (1).exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [564152 2021-05-21] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-949114339-2066100574-2594248327-1000\...\Run: [WebDriveTray] => C:\Program Files\WebDrive\webdrive.exe [13844360 2019-12-20] (South River Technologies -> South River Technologies, Inc.)
HKU\S-1-5-21-949114339-2066100574-2594248327-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-06] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-949114339-2066100574-2594248327-1000\...\Run: [Figma Agent] => C:\Users\John\AppData\Local\FigmaAgent\figma_agent.exe [5660896 2021-04-28] (Figma, Inc. -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-02] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\Installer\chrmstp.exe [2020-11-24] (Avast Software s.r.o. -> AVAST Software)
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0A9D12E3-3DCF-40E3-80B9-803013CD2C22} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {41D08211-8A07-4B1A-948A-B4B8BF58632A} - System32\Tasks\Robotka
Task: {4D82607E-7526-4BF6-9F28-C3328EC91A74} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
Task: {6B681D84-73C0-42F0-816A-FAC346025961} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
Task: {9D6C3930-F621-4296-A748-5865083AD527} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1741416 2020-09-22] (Avast Software s.r.o. -> Avast Software)
Task: {AAAA1BA0-9973-47D1-B128-DD3F1CC9DEF6} - System32\Tasks\Motivacia
Task: {B6215906-8048-45F1-AC2E-0D0F74C0649A} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1933408 2020-11-13] (Avast Software s.r.o. -> AVAST Software)
Task: {C2B756A2-8142-4B50-B9C0-C715DB45B991} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1933408 2020-11-13] (Avast Software s.r.o. -> AVAST Software)
Task: {C826FD7A-B8B6-40D8-A041-2076C47165CA} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4621920 2020-12-16] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-949114339-2066100574-2594248327-1000] => 178.32.129.31:3128
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{54287F57-F62E-4A77-887F-98CFD53339ED}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{B1477436-BDB7-43DB-8368-4FEBFCEBABA8}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
Edge Profile: C:\Users\John\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-30]

FireFox:
========
FF DefaultProfile: dpdx1dpi.default
FF DefaultProfile: 39pruj5d.default
FF DefaultProfile: 5fn2593k.default
FF ProfilePath: C:\Users\John\AppData\Roaming\old Mozilla\Firefox\Profiles\dpdx1dpi.default [2019-07-14]
FF NetworkProxy: old Mozilla\Firefox\Profiles\dpdx1dpi.default -> backup.ftp", "127.0.0.1"
FF Extension: (Flash Debugger) - C:\Users\John\AppData\Roaming\old Mozilla\Firefox\Profiles\dpdx1dpi.default\Extensions\@flash_debugger.xpi [2019-07-14]
FF Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\John\AppData\Roaming\old Mozilla\Firefox\Profiles\dpdx1dpi.default\Extensions\sp@avast.com.xpi [2019-01-23]
FF Extension: (Avast Online Security) - C:\Users\John\AppData\Roaming\old Mozilla\Firefox\Profiles\dpdx1dpi.default\Extensions\wrc@avast.com.xpi [2018-07-17]
FF Extension: (Video DownloadHelper) - C:\Users\John\AppData\Roaming\old Mozilla\Firefox\Profiles\dpdx1dpi.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-07-22]
FF ProfilePath: C:\Users\John\AppData\Roaming\old 2 Mozilla\Firefox\Profiles\pt428uqu.dev-edition-default [2019-07-14]
FF Extension: (Flash Debugger) - C:\Users\John\AppData\Roaming\old 2 Mozilla\Firefox\Profiles\pt428uqu.dev-edition-default\Extensions\@flash_debugger.xpi [2019-07-14]
FF ProfilePath: C:\Users\John\AppData\Roaming\old 2 Mozilla\Firefox\Profiles\39pruj5d.default [2019-07-14]
FF ProfilePath: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\ly01ikd2.default-release [2021-06-05]
FF NetworkProxy: Mozilla\Firefox\Profiles\ly01ikd2.default-release -> backup.ftp", "89.221.223.204"
FF ProfilePath: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\5fn2593k.default [2019-07-14]
FF ProfilePath: C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\1jhytjt4.dev-edition-default [2021-06-05]
FF NetworkProxy: Mozilla\Firefox\Profiles\1jhytjt4.dev-edition-default -> ftp", "127.0.0.1"
FF Extension: (Flash Debugger) - C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\1jhytjt4.dev-edition-default\Extensions\@flash_debugger [2017-04-12] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll [2019-07-14] (Adobe Systems Incorporated -> )
FF Plugin: @java.com/DTPlugin,version=11.212.2 -> C:\Program Files\Java\jre1.8.0_212\bin\dtplugin\npDeployJava1.dll [2019-07-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.212.2 -> C:\Program Files\Java\jre1.8.0_212\bin\plugin2\npjp2.dll [2019-07-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-04-24] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll [2019-07-14] (Adobe Systems Incorporated -> )
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1225195.dll [2016-09-20] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-04-24] (Adobe Systems Incorporated -> Adobe Systems)
StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\John\AppData\Local\Google\Chrome\User Data\Default [2021-06-06]
CHR DownloadDir: C:\Users\John\Downloads
CHR HomePage: Default -> hxxps://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://encrypted.google.com","hxxps://www.google.com/"
CHR Extension: (Google Drive) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (YouTube) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-04]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-05-19]
CHR Extension: (Steam Inventory Helper) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2021-06-05]
CHR Extension: (Avast Online Security (BETA)) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2021-02-11]
CHR Extension: (BuiltWith Technology Profiler) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\dapjbgnjinbpoindlpdmhochffioedbn [2020-12-20]
CHR Extension: (Slither.io Skins, Mods, Hack & Guide) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\dggomkijbihggjgcgdbnleolpleddaid [2016-06-12]
CHR Extension: (Session Buddy) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2020-05-21]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-11-09]
CHR Extension: (DarkOrbit SID Login) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgkcmijdllamjcbfeeheebbphpnbmbco [2019-07-01]
CHR Extension: (Video Downloader PLUS) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhplmmllnpjjlncfjpbbpjadoeijkogc [2020-09-29]
CHR Extension: (Word Online) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2021-05-13]
CHR Extension: (Avast Online Security) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-02-17]
CHR Extension: (Multi Session Box - Multi login any website) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmmbfmaddjdkkcgbiipkphdcfmkhge [2019-07-29]
CHR Extension: (Stream Video Downloader) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\imkngaibigegepnlckfcbecjoilcjbhf [2019-10-14]
CHR Extension: (Unseen for Facebook) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\jiomcgpfgkeefipihnplhadgdoollmap [2021-01-08]
CHR Extension: (Chromebook Recovery Utility) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\jndclpdbaamdhonoechobihbbiimdgai [2021-05-26]
CHR Extension: (PowerPoint Online) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2020-03-24]
CHR Extension: (SessionBox - Multi login to any website) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\megbklhjamjbcafknkgmokldgolkdfig [2021-05-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Font Changer) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\obgkjikcnonokgaiablbenkgjcdbknna [2021-03-23]
CHR Extension: (Proxy SwitchyOmega) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\padekgcemlokbadohgkifijomclgjgif [2020-12-20]
CHR Extension: (Cold Turkey Blocker) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\pganeibhckoanndahmnfggfoeofncnii [2021-02-19]
CHR Extension: (Gmail) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR Extension: (Chrome Media Router) - C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-20]
CHR HKU\S-1-5-21-949114339-2066100574-2594248327-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]

Opera: 
=======
OPR Profile: C:\Users\John\AppData\Roaming\Opera Software\Opera Stable [2021-06-06]
OPR DownloadDir: C:\Users\John\Downloads
OPR Notifications: Opera Stable -> hxxps://aternos.org; hxxps://forum24.os.tc; hxxps://mail.google.com; hxxps://meet.google.com; hxxps://opencsgo.com; hxxps://skinodds.com; hxxps://www.pvpro.com; hxxps://www.tipsport.sk
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (AdBlock) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2016-09-10]
OPR Extension: (Block Site) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\chnfkipjmhdpmammffdbifccnggmejbp [2020-08-03]
OPR Extension: (Cold Turkey Blocker) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\efnolkfmdbinpkbnfigocgfglnhahldj [2021-02-19]
OPR Extension: (Rich Hints Agent) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-05-31]
OPR Extension: (Steam Trader Helper) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\fljmocdpncmhecbphaechibhfgiiefpe [2021-02-28]
OPR Extension: (Nimbus Screenshot & Screen Video Recorder) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjpihpkhgfngnbhhfdehlcmgfahbciip [2018-05-08]
OPR Extension: (Twitch Now) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\hiahmjdojdodmjjhhddegdnhcpjmokmo [2018-02-20]
OPR Extension: (Scripter) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\hpochgedhgonjnpbepkbnkkibkjigknc [2018-04-19]
OPR Extension: (Direct Currency Converter) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\jionklhcihkojemcnabgmdahckalngcl [2019-06-05]
OPR Extension: (Quasimodo) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbioggfbkfijplhkfhaedclnadjdcbnn [2018-07-05]
OPR Extension: (Install Chrome Extensions) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2021-04-01]
OPR Extension: (Freedom - Website Blocker for Opera) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\linaecddcadajnclkmnkaenhapnfdgoa [2020-08-03]
OPR Extension: (SessionBox - Multi login to any website) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\megbklhjamjbcafknkgmokldgolkdfig [2021-05-29]
OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\John\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2021-05-20]
StartMenuInternet: (HKLM) Opera GXStable - C:\Program Files\Opera GX\Launcher.exe

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-04-24] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S4 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8477080 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
S4 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
S4 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [621728 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
S4 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [351848 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
S4 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
S4 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\elevation_service.exe [1136920 2020-11-13] (Avast Software s.r.o. -> AVAST Software)
S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8567960 2020-03-24] (BattlEye Innovations e.K. -> )
S4 CDROM_Detect; C:\Program Files\4G LTE Modem\4G_Server.exe [327680 2016-11-19] () [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2776664 2015-08-16] (Microsoft Corporation -> Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-05-30] (Disc Soft Ltd -> Disc Soft Ltd)
S4 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [805488 2020-11-06] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 ewserver; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Electrical\server\EwServer.exe [191664 2018-02-26] (Trace Software International -> )
S4 FACEITService; C:\Program Files\FACEIT AC\FACEITService.exe [20756320 2020-05-02] (FACE IT LIMITED -> )
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [82216 2021-02-17] (Mixbyte Inc -> Freemake)
S4 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
S4 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2017-09-19] (Hi-Rez Studios) [File not signed]
S4 impi_hydra; C:\Program Files\Common Files\SolidWorks Shared\Simulation Worker Agent\hydra_service.exe [880296 2018-02-26] (Intel(R) Software Development Products -> Intel Corporation)
S4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S4 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193656 2016-03-30] (Logitech Inc -> Logitech Inc.)
S4 memcached; c:\memcached\memcached.exe [507640 2009-12-16] () [File not signed]
S4 MSSQL$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [372416 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S4 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [100672 2020-04-17] (ProtonVPN AG -> )
S4 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-04-17] (ProtonVPN AG -> )
S4 QMEmulatorService; D:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [166384 2019-12-20] (Tencent Technology(Shenzhen) Company Limited -> Tencent)
S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] (Razer USA Ltd. -> )
S2 RemoteSolverDispatcher; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe [264704 2018-02-26] (Mentor Graphics Corporation -> Mentor Graphics Corporation)
S2 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1679240 2021-02-20] (Rockstar Games, Inc. -> Rockstar Games)
S2 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2018-05-27] (SolidWorks) [File not signed]
S4 SQLAgent$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13261608 2021-05-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S4 uncheater_bgl; C:\Program Files\Common Files\Uncheater\uncheater_bgl.exe [2097008 2020-11-05] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S2 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [746504 2020-10-16] (Oracle Corporation -> Oracle Corporation)
S2 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10322376 2021-05-21] (Riot Games, Inc. -> Riot Games, Inc.)
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15477208 2020-03-07] (VMware, Inc. -> )
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56552 2016-03-22] (Microsoft Corporation -> Microsoft Corporation)
S4 wampapache64; c:\wamp64\bin\apache\apache2.4.33\bin\httpd.exe [30720 2018-03-18] (Apache Software Foundation) [File not signed]
S4 wampmariadb64; c:\wamp64\bin\mariadb\mariadb10.2.14\bin\mysqld.exe [14550440 2018-03-26] (MariaDB Corporation Ab -> )
S4 wampmysqld64; c:\wamp64\bin\mysql\mysql5.7.21\bin\mysqld.exe [39551488 2017-12-28] () [File not signed]
S2 WebDriveService; C:\Program Files\WebDrive\wdService.exe [12388232 2019-12-20] (South River Technologies -> South River Technologies, Inc.)
S2 IpOverUsbSvc; "C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe" [X]
S2 SWVisualize2018.BoostService; "C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Visualize Boost\SWVisualize.BoostService.exe" [X]
S2 SWVisualize2018.Queue.Server; "C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Visualize\SWVisualize.Queue.Server.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U5 amdkmdap; C:\Windows\System32\Drivers\amdkmdap.sys [614280 2020-11-14] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [140032 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [424192 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [36792 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [208672 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [332880 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [247888 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [97360 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42424 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [176384 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [522480 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2020-04-15] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [108928 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84496 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851256 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [469472 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216984 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [326064 2020-12-16] (Avast Software s.r.o. -> AVAST Software)
S3 bpsdazbhko; C:\Windows\xrdmufpsqp.sys [203680 2021-06-01] (Zemana Ltd. -> Zemana Ltd.)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [58368 2009-06-02] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com)
S3 CMUAC; C:\Windows\System32\DRIVERS\Headset6400x1.SYS [386560 2013-10-03] (C-MEDIA ELECTRONICS INC. -> A4Tech Inc.)
S3 CT_QUALCOMM_U_drv; C:\Windows\System32\DRIVERS\CT_QUALCOMM_U_drv.sys [118016 2009-04-27] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-06-04] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-06-04] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [1890440 2020-11-14] (EasyAntiCheat Oy -> EasyAntiCheat Oy)
R3 EuMusDesignVirtualAudioCableWdm; C:\Windows\System32\DRIVERS\vrtaucbl.sys [66728 2016-07-06] (NTONYX Ltd. -> Eugene V. Muzychenko)
R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [20193656 2020-05-02] (FACE IT LIMITED -> )
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-05-03] (Sony Mobile Communications AB -> Sony Mobile Communications)
S3 HidNt; C:\Windows\System32\DRIVERS\HIDNt.sys [22576 2008-04-18] (Futime Manufacturing Ltd -> Microsoft Corporation) [File not signed]
S3 HidNt; C:\Windows\SysWOW64\DRIVERS\HIDNt.sys [18992 2008-04-18] (Futime Manufacturing Ltd -> Microsoft Corporation) [File not signed]
S3 iogfmngbcg; C:\Windows\hvjzchsioy.sys [203680 2021-06-01] (Zemana Ltd. -> Zemana Ltd.)
S3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [24824 2014-10-23] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S3 jfzxcbopzg; C:\Windows\kgalsijzzj.sys [203680 2021-06-04] (Zemana Ltd. -> Zemana Ltd.)
S3 KProcessHacker3; C:\Program Files\Process Hacker 2\kprocesshacker.sys [45208 2016-03-29] (Wen Jia Liu -> wj32)
R2 LdBoxDrv; C:\Program Files\dnplayerext2\LdBoxDrv.sys [319376 2020-06-18] (Shanghai Changzhi Network Technology Co., Ltd. -> Oracle Corporation)
R3 LGBusEnum; C:\Windows\System32\drivers\LGBusEnum.sys [37408 2015-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech Inc.)
S3 LGVirHid; C:\Windows\System32\drivers\LGVirHid.sys [26912 2015-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech Inc.)
S3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2018-07-23] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
S3 Mac606; C:\Windows\System32\DRIVERS\Mac606.sys [33200 2008-04-18] (Futime Manufacturing Ltd -> ) [File not signed]
S3 Mac606; C:\Windows\SysWOW64\DRIVERS\Mac606.sys [26672 2008-04-18] (Futime Manufacturing Ltd -> ) [File not signed]
R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [42016 2013-11-27] (Visicom Media Inc. -> Visicom Media Inc.)
R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35232 2013-12-06] (Visicom Media Inc. -> Visicom Media Inc.)
S3 midhdjxqkp; C:\Windows\uukqwohmlw.sys [203680 2021-05-31] (Zemana Ltd. -> Zemana Ltd.)
R1 npcap; C:\Windows\System32\DRIVERS\npcap.sys [69432 2019-09-04] (Insecure.Com LLC -> Insecure.Com LLC.)
S3 ProtonVPNSplitTunnel; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win7\ProtonVPN.SplitTunnelDriver.sys [22456 2020-01-15] (ProtonVPN AG -> Proton Technologies AG)
S4 RsFx0310; C:\Windows\System32\DRIVERS\RsFx0310.sys [249024 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S3 rxyfbwoazs; C:\Windows\kytgzgrgpv.sys [203680 2021-06-02] (Zemana Ltd. -> Zemana Ltd.)
R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [51224 2016-05-12] (Razer USA Ltd. -> Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer Inc. -> Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-09-07] (Razer Inc. -> Razer, Inc.)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [40664 2015-02-03] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [39864 2020-04-06] (ProtonVPN AG -> The OpenVPN Project)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2018-05-04] (Apple, Inc.) [File not signed]
R3 VBAudioVMAUXVAIOMME; C:\Windows\System32\DRIVERS\vbaudio_vmauxvaio64_win7.sys [41192 2019-01-06] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\Windows\System32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2019-01-05] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [239432 2020-10-16] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [249344 2020-10-16] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [135768 2016-06-28] (Oracle Corporation -> Oracle Corporation)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8182600 2021-05-20] (Riot Games, Inc. -> Riot Games, Inc.)
R1 vmkbd3; C:\Windows\System32\DRIVERS\vmkbd.sys [52288 2020-03-07] (VMware, Inc. -> VMware, Inc.)
R2 VMnetBridge; C:\Windows\System32\DRIVERS\vmnetbridge.sys [66368 2020-03-07] (VMware, Inc. -> VMware, Inc.)
R0 vsock; C:\Windows\System32\DRIVERS\vsock.sys [103736 2019-08-14] (VMware, Inc. -> VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [52576 2018-02-28] (VMware, Inc. -> VMware, Inc.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
R2 WebDriveFSD; C:\Program Files\WebDrive\wdfsd.sys [108960 2018-09-25] (South River Technologies -> South River Technologies, Inc.)
R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [35696 2017-11-25] (Beijing Wolicheng Technology Co., Ltd. -> Windows (R) Win 7 DDK provider)
S3 acjdkvxoqc; \??\C:\Windows\payqnovsbg.sys [X]
S3 jiihynsltl; \??\C:\Windows\aovejnmwpp.sys [X]
U4 npcap_wifi; no ImagePath
S3 pwgeqpjjcx; \??\C:\Windows\rgbnpmoaqi.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-06 17:23 - 2021-06-06 17:23 - 008534696 _____ (Malwarebytes) C:\Users\John\Downloads\AdwCleaner (1).exe
2021-06-06 17:16 - 2021-06-06 17:16 - 000000008 __RSH C:\ProgramData\ntuser.pol
2021-06-06 16:38 - 2021-06-06 16:38 - 002300416 _____ (Farbar) C:\Users\John\Downloads\FRST64 (5).exe
2021-06-06 13:34 - 2020-04-27 04:10 - 011333193 _____ C:\Users\John\Downloads\Sol_Nova_-_Solar_Flex.gcode
2021-06-06 13:34 - 2020-04-27 04:10 - 001345684 _____ C:\Users\John\Downloads\Gcode_files_ONLY_-_NO_STL_files_included_ATM.stl
2021-06-06 13:28 - 2021-06-06 13:56 - 000000000 ____D C:\Users\John\Documents\Voxelizer2
2021-06-06 13:28 - 2021-06-06 13:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voxelizer 2
2021-06-06 13:28 - 2021-06-06 13:28 - 000000000 ____D C:\Program Files\Voxelizer 2
2021-06-06 13:27 - 2021-06-06 13:27 - 026714112 _____ C:\Users\John\Downloads\voxelizer_installer_v2.0.0.msi
2021-06-06 11:27 - 2021-06-06 11:27 - 001278650 _____ C:\Users\John\Downloads\vlakna_hard.zip
2021-06-06 11:26 - 2021-06-06 11:26 - 017765032 _____ C:\Users\John\Downloads\VHard_Chlustik.zip
2021-06-06 01:55 - 2021-06-06 01:55 - 000000120 _____ C:\Users\John\Desktop\3.txt
2021-06-05 17:14 - 2021-06-05 17:14 - 000228597 _____ C:\Users\John\Downloads\skuska20210531 (2).pdf
2021-06-05 11:39 - 2002-10-01 08:58 - 000049152 _____ (NirSoft) C:\Users\John\Downloads\FileDate.exe
2021-06-05 11:38 - 2021-06-05 11:38 - 002024524 _____ C:\Users\John\Downloads\x64tools.zip
2021-06-05 11:38 - 2021-06-05 11:38 - 000020710 _____ C:\Users\John\Downloads\filedatech (3).zip
2021-06-05 11:19 - 2021-06-05 11:19 - 000072921 _____ C:\Users\John\Downloads\070417_boohoo_CANCELLATION_FORM_WRKF_7821V3.pdf
2021-06-04 21:36 - 2021-06-05 01:04 - 000175939 _____ C:\Windows\ZAM.krnl.trace
2021-06-04 21:36 - 2021-06-04 21:36 - 000203680 _____ (Zemana Ltd.) C:\Windows\kgalsijzzj.sys
2021-06-04 20:44 - 2021-06-04 20:44 - 004435772 _____ C:\Users\John\Downloads\Sol+Nova+-+Disposable+Solar+Flex+Grip.zip
2021-06-04 15:01 - 2021-06-04 15:01 - 001475983 _____ C:\Users\John\Downloads\message (5).txt
2021-06-04 12:59 - 2014-10-23 23:57 - 000024824 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2021-06-04 09:01 - 2021-06-04 09:02 - 588740299 _____ C:\Users\John\Downloads\Someone is cracking NL in Discord!!!!!!!.mp4
2021-06-03 20:42 - 2021-06-03 20:42 - 003059768 _____ C:\Users\John\Downloads\Kernel (3).sys
2021-06-03 20:41 - 2021-06-03 20:41 - 003059768 _____ C:\Users\John\Downloads\Kernel (2).sys
2021-06-03 19:38 - 2021-06-03 19:38 - 003059768 _____ C:\Users\John\Downloads\Kernel (1).sys
2021-06-03 19:00 - 2021-06-03 19:00 - 001757831 _____ C:\Users\John\Downloads\ScyllaHide (1).7z
2021-06-03 18:47 - 2021-06-03 18:47 - 001757831 _____ C:\Users\John\Downloads\ScyllaHide.7z
2021-06-03 18:34 - 2021-06-03 18:34 - 003133077 _____ C:\Users\John\Downloads\ProcessMonitor.zip
2021-06-03 18:34 - 2021-06-03 18:34 - 003059768 _____ C:\Users\John\Downloads\Kernel.sys
2021-06-03 18:09 - 2021-06-03 18:09 - 010243584 _____ C:\Users\John\Downloads\patch.exe
2021-06-03 17:29 - 2021-06-03 17:29 - 000950068 _____ C:\Users\John\Downloads\Neverlose_Crack.zip
2021-06-03 16:06 - 2021-06-03 16:06 - 000290563 _____ C:\Users\John\Downloads\videoplayback (3).mp4
2021-06-03 16:01 - 2021-06-03 16:01 - 006666752 _____ C:\Users\John\Downloads\nl_patched2.exe
2021-06-03 11:38 - 2021-06-03 11:38 - 000044544 _____ () C:\Users\John\Downloads\HikvisionPasswordResetHelper.exe
2021-06-03 00:47 - 2021-06-03 00:47 - 000012203 _____ C:\Users\John\Downloads\smac.smx
2021-06-02 22:44 - 2021-06-02 22:45 - 092295037 _____ C:\Users\John\Downloads\notris-foes-win32-0.2.0.zip
2021-06-02 13:09 - 2021-06-02 13:09 - 000203680 _____ (Zemana Ltd.) C:\Windows\kytgzgrgpv.sys
2021-06-01 11:50 - 2021-06-01 11:50 - 000203680 _____ (Zemana Ltd.) C:\Windows\xrdmufpsqp.sys
2021-06-01 10:09 - 2021-06-01 10:09 - 000203680 _____ (Zemana Ltd.) C:\Windows\hvjzchsioy.sys
2021-06-01 09:50 - 2021-06-01 09:50 - 003392412 _____ C:\Users\John\Downloads\processhacker-2.39-bin.zip
2021-05-31 22:00 - 2021-06-04 21:35 - 000000160 _____ C:\Users\John\Downloads\8bfeb693bd.dat
2021-05-31 22:00 - 2021-05-31 22:00 - 000203680 _____ (Zemana Ltd.) C:\Windows\uukqwohmlw.sys
2021-05-31 21:58 - 2021-05-31 21:58 - 008619008 _____ C:\Users\John\Downloads\8bfeb693bd.exe
2021-05-31 14:06 - 2021-05-31 14:06 - 000228597 _____ C:\Users\John\Downloads\skuska20210531 (1).pdf
2021-05-31 14:03 - 2021-05-31 14:03 - 000228597 _____ C:\Users\John\Downloads\skuska20210531.pdf
2021-05-30 22:13 - 2021-05-30 22:13 - 000006420 _____ C:\Users\John\Downloads\75E82FFAF0804F930B287039B6AD0955FF7282AA.torrent
2021-05-30 22:12 - 2021-05-30 22:12 - 007278080 _____ C:\Users\John\Downloads\ANALLUBEV2.dll
2021-05-30 22:06 - 2021-05-30 22:12 - 000000000 ____D C:\Windows\CSGhostTemp
2021-05-30 22:02 - 2021-05-30 22:02 - 000008637 _____ C:\Users\John\Downloads\30-05-2021_QXno4RVZ75fko4c.rar
2021-05-30 11:54 - 2021-05-30 11:54 - 005034405 _____ C:\Users\John\Downloads\Spagetovy_Kod.zip
2021-05-29 22:19 - 2021-05-29 22:19 - 000000079 _____ C:\Users\John\Desktop\hlaska.txt
2021-05-27 10:02 - 2021-05-27 10:02 - 000029927 _____ C:\Users\John\Downloads\pillar.schematic
2021-05-26 19:29 - 2021-05-26 19:29 - 004048173 _____ C:\Users\John\Downloads\Custom Tree Repository by Lentebriesje.zip
2021-05-26 19:29 - 2021-05-26 19:29 - 000498278 _____ C:\Users\John\Downloads\TES---Custom-Trees-V2.zip
2021-05-26 19:29 - 2021-05-26 19:29 - 000498278 _____ C:\Users\John\Downloads\TES---Custom-Trees-V2 (1).zip
2021-05-26 19:25 - 2021-05-26 19:25 - 001128059 _____ C:\Users\John\Downloads\three-tree-worlds-unknwnbuilds.zip
2021-05-26 19:23 - 2021-05-26 19:23 - 000018318 _____ C:\Users\John\Downloads\14131662_l.webp
2021-05-26 13:13 - 2021-05-26 13:13 - 000011058 _____ C:\Users\John\Desktop\mapa.txt
2021-05-26 13:13 - 2021-05-26 13:13 - 000002916 _____ C:\Users\John\Desktop\rekurzi.txt
2021-05-26 13:11 - 2021-05-26 13:11 - 000009162 _____ C:\Users\John\Desktop\mnoziny.txt
2021-05-25 14:05 - 2021-05-25 14:06 - 004710606 _____ C:\Users\John\Desktop\psi spak pizza.psd
2021-05-24 15:49 - 2021-05-24 15:50 - 496020367 _____ C:\Users\John\Downloads\2021-05-24-12-00-04.zip
2021-05-24 14:30 - 2021-05-24 14:30 - 003189188 _____ C:\Users\John\Downloads\2021-03-24-18-11-45-ac-valhalla-longhouse.zip
2021-05-24 13:18 - 2021-05-24 13:18 - 000279957 _____ C:\Users\John\Downloads\skuska20210519.pdf
2021-05-24 11:42 - 2021-05-24 11:42 - 001248051 _____ C:\Users\John\Downloads\TOWER.zip
2021-05-24 11:40 - 2021-05-24 11:40 - 000037278 _____ C:\Users\John\Downloads\tower.schematic
2021-05-24 11:31 - 2021-05-24 11:31 - 001984810 _____ C:\Users\John\Downloads\FreezeMC - Tangled Tower.zip
2021-05-23 22:49 - 2021-05-23 22:49 - 000090966 _____ C:\Users\John\Downloads\02x30-JUnit_dalsie_testy.pptx
2021-05-23 22:42 - 2021-05-23 22:42 - 000376055 _____ C:\Users\John\Downloads\02x29-JUnit.pptx
2021-05-23 22:40 - 2021-05-23 22:40 - 000169048 _____ C:\Users\John\Downloads\02x28-Testovanie.pptx
2021-05-23 22:37 - 2021-05-23 22:37 - 000005142 _____ C:\Users\John\Downloads\Test2 (1).zip
2021-05-23 19:21 - 2021-05-23 19:21 - 002499074 _____ C:\Users\John\Downloads\small-wizard-tower.zip
2021-05-23 18:20 - 2021-05-23 18:20 - 000005142 _____ C:\Users\John\Downloads\Test2.zip
2021-05-23 15:03 - 2021-05-23 15:03 - 000453519 _____ C:\Users\John\Downloads\Vlakna_light_-_Klestinec.zip
2021-05-23 11:33 - 2021-05-23 11:33 - 000371014 _____ C:\Users\John\Downloads\Barborík-Vlákna.zip
2021-05-23 11:28 - 2021-05-23 11:28 - 000010452 _____ C:\Users\John\Downloads\Vlakna_light (1).zip
2021-05-23 11:24 - 2021-05-23 11:24 - 000260214 _____ C:\Users\John\Downloads\Gajdos_vlakna_light.zip
2021-05-23 11:21 - 2021-05-23 11:21 - 000969327 _____ C:\Users\John\Downloads\vlakna_light.zip
2021-05-23 11:14 - 2021-05-23 11:14 - 000101192 _____ C:\Users\John\Downloads\Vlakna_light - Štepo.zip
2021-05-23 02:32 - 2021-05-23 02:32 - 000447696 _____ C:\Users\John\Downloads\libiperf.so.0_3.1.3
2021-05-22 14:18 - 2021-05-22 14:18 - 000005310 _____ C:\Users\John\Downloads\medievalhouse10816063 (1).schematic
2021-05-22 14:02 - 2021-05-22 14:03 - 012867555 _____ C:\Users\John\Downloads\Nordic - Medieval Bundle update 24022021.zip
2021-05-22 14:02 - 2021-05-22 14:02 - 000350617 _____ C:\Users\John\Downloads\schematics-pack-e540.zip
2021-05-22 13:56 - 2021-05-22 13:56 - 000006056 _____ C:\Users\John\Downloads\hous5.schem
2021-05-22 13:53 - 2021-05-22 13:53 - 000606850 _____ C:\Users\John\Downloads\medievals.rar
2021-05-21 23:46 - 2021-05-21 23:46 - 000036682 _____ C:\Users\John\Downloads\14174104_l.webp
2021-05-21 23:46 - 2021-05-21 23:46 - 000036682 _____ C:\Users\John\Downloads\14174104_l (1).webp
2021-05-21 11:35 - 2021-05-21 11:35 - 000044635 _____ C:\Users\John\Downloads\download.htm
2021-05-21 11:29 - 2021-05-21 11:30 - 001104223 _____ C:\Users\John\Downloads\Redeyes Castle.zip
2021-05-21 11:07 - 2021-05-21 11:07 - 001263175 _____ C:\Users\John\Downloads\Schematic2Blueprint.zip
2021-05-21 11:07 - 2021-05-21 11:07 - 000008095 _____ C:\Users\John\Downloads\16482.schem
2021-05-21 11:04 - 2021-05-21 11:04 - 011780845 _____ C:\Users\John\Downloads\Medieval_Mansion.zip
2021-05-21 09:12 - 2021-05-21 09:12 - 000000055 _____ C:\Users\John\Desktop\bucko.txt
2021-05-20 20:07 - 2021-05-20 20:07 - 075181163 _____ C:\Users\John\Downloads\firefox-88.0.1 (1).tar.bz2
2021-05-20 18:57 - 2021-05-20 18:57 - 075181163 _____ C:\Users\John\Downloads\firefox-88.0.1.tar.bz2
2021-05-20 13:17 - 2021-05-20 13:17 - 011390248 _____ (Tim Kosse) C:\Users\John\Downloads\FileZilla_3.54.1_win64-setup.exe
2021-05-20 10:59 - 2021-05-20 10:59 - 000816640 _____ (Jonathan) C:\Users\John\Downloads\JSON-Coord-Generator.exe
2021-05-20 10:57 - 2021-05-20 10:57 - 001244050 _____ C:\Users\John\Downloads\Graphical-JSON-Coordinate-Generator-main.zip
2021-05-18 22:43 - 2021-05-18 22:43 - 000000035 _____ C:\Users\John\Desktop\noaclothing.txt
2021-05-18 18:03 - 2021-05-18 18:03 - 000172220 _____ C:\Users\John\Downloads\OnlineWebFonts_COM_711f5a50bfd43ddec35edf1aac6ae9fb.zip
2021-05-18 17:36 - 2021-05-18 17:37 - 007116832 _____ C:\Users\John\Downloads\kommon-grotesk (1).rar
2021-05-18 17:36 - 2021-05-18 17:36 - 007116832 _____ C:\Users\John\Downloads\kommon-grotesk.rar
2021-05-18 16:39 - 2021-05-18 16:39 - 000382508 _____ C:\Users\John\Downloads\font.zip
2021-05-17 17:11 - 2021-05-17 17:11 - 000000034 _____ C:\Users\John\Desktop\nastavenia ivekol prdtm.txt
2021-05-17 13:08 - 2021-05-17 13:08 - 000000001 _____ C:\Users\John\Downloads\users_data-69_contact_enabled.value
2021-05-17 13:08 - 2021-05-17 13:08 - 000000001 _____ C:\Users\John\Downloads\users_data-159_contact_enabled.value
2021-05-17 12:45 - 2021-05-17 18:42 - 000000143 _____ C:\Users\John\Desktop\ivekol ftp.txt
2021-05-17 12:42 - 2021-05-17 12:42 - 000000555 _____ C:\Users\John\Downloads\archive (2).zip
2021-05-17 12:41 - 2021-05-17 12:41 - 000000555 _____ C:\Users\John\Downloads\archive (1).zip
2021-05-17 12:37 - 2021-05-17 12:37 - 000000555 _____ C:\Users\John\Downloads\archive.zip
2021-05-17 11:05 - 2021-05-17 11:06 - 000000421 _____ C:\Users\John\Desktop\dropnutieSuboru a run + treba dat sleep.txt
2021-05-17 10:29 - 2021-05-17 10:30 - 001749002 _____ C:\Users\John\Downloads\alarm.wav
2021-05-16 22:30 - 2021-05-16 22:30 - 000007373 _____ C:\Users\John\Downloads\3.5.MartinChotarSeminar.zip
2021-05-16 20:29 - 2021-05-16 22:36 - 001956391 _____ C:\Users\John\Downloads\Trimay_Prezentácia.pptx
2021-05-16 00:54 - 2021-05-16 00:54 - 000004757 _____ C:\Users\John\Downloads\Alarm (1).zip
2021-05-15 17:52 - 2021-05-15 17:52 - 001728374 _____ C:\Users\John\Downloads\webcam-capture-0.3.12-dist.zip
2021-05-15 17:33 - 2021-05-15 17:33 - 000263370 _____ C:\Users\John\Downloads\02x47-JavaFX_a_vlakna (1).pptx
2021-05-15 17:33 - 2021-05-15 17:33 - 000012943 _____ C:\Users\John\Downloads\27JavaFXVlakna1.zip
2021-05-14 14:19 - 2021-05-14 14:19 - 001390603 _____ C:\Users\John\Downloads\ffffff-ezgif-2-da27c301474b-gif-jpg.zip
2021-05-14 14:15 - 2021-05-14 14:15 - 001822434 _____ C:\Users\John\Downloads\ezgif-2-da27c301474b-gif-im.zip
2021-05-14 12:07 - 2021-05-14 12:07 - 000095934 _____ C:\Users\John\Downloads\02x43-Vlakna v Jave.pptx
2021-05-14 12:06 - 2021-05-14 12:06 - 000139966 _____ C:\Users\John\Downloads\02x42-Vlakna.pptx
2021-05-14 09:56 - 2021-05-14 09:56 - 009051121 _____ C:\Users\John\Downloads\lecture15-neural-nets.pptx
2021-05-14 09:56 - 2021-05-14 09:56 - 000452608 _____ C:\Users\John\Downloads\neural.ppt
2021-05-14 09:41 - 2021-05-14 09:41 - 003182464 _____ C:\Users\John\Downloads\Semestralne_zadanie_Dobrovodsky (1).pptx
2021-05-13 20:11 - 2021-05-16 22:37 - 006148174 _____ C:\Users\John\Downloads\trimay_1c.pptx
2021-05-13 17:01 - 2021-05-13 21:33 - 003520744 _____ C:\Users\John\Downloads\Zadanie_1c_Dobrovodsky.pptx
2021-05-13 17:01 - 2021-05-13 17:01 - 003182464 _____ C:\Users\John\Downloads\Semestralne_zadanie_Dobrovodsky.pptx
2021-05-13 12:34 - 2021-05-13 12:56 - 021427926 _____ C:\Users\John\Downloads\Architektúra-počítačov-Autotesty (1).dotx
2021-05-11 12:37 - 2021-05-11 12:37 - 000263370 _____ C:\Users\John\Downloads\02x47-JavaFX_a_vlakna.pptx
2021-05-10 19:05 - 2021-05-10 19:05 - 000087832 _____ C:\Users\John\Downloads\skolaTest (1).html
2021-05-10 11:21 - 2021-05-10 11:21 - 000441517 _____ C:\Users\John\Downloads\Pacman_Kajan (1).zip
2021-05-10 11:21 - 2021-05-10 11:21 - 000010921 _____ C:\Users\John\Downloads\pacManZverka (1).zip
2021-05-10 11:11 - 2021-05-10 11:11 - 000004757 _____ C:\Users\John\Downloads\Alarm.zip
2021-05-10 10:26 - 2021-05-10 10:26 - 000298732 _____ C:\Users\John\Downloads\Cv_DM2_5.pptx
2021-05-10 10:26 - 2021-05-10 10:26 - 000055505 _____ C:\Users\John\Downloads\Domáca úloha z Cvičenia 5 (Vágová aj  Laššová).pptx
2021-05-10 10:25 - 2021-05-10 10:25 - 000260714 _____ C:\Users\John\Downloads\Cvičenie 5_ štvrtok 7_30 (Vágová + Laššová).pptx
2021-05-09 19:34 - 2021-05-09 19:34 - 000017456 _____ C:\Users\John\Downloads\cvicenie_4b-uloha_2.xlsx
2021-05-09 18:55 - 2021-05-09 18:55 - 000395634 _____ C:\Users\John\Downloads\02x20-Map.pptx
2021-05-09 18:02 - 2021-05-09 19:36 - 003491282 _____ C:\Users\John\Downloads\Trimaz_1b.pptx
2021-05-08 18:45 - 2021-05-08 18:45 - 002292728 _____ C:\Users\John\Downloads\FotoalbummartinChotar.pptx
2021-05-08 18:44 - 2021-05-08 18:44 - 000079318 _____ C:\Users\John\Downloads\IL_PREDMETU_1620492227717.PDF
2021-05-08 18:41 - 2021-05-08 18:42 - 019771043 _____ C:\Users\John\Downloads\Trimay_1p.pptm
2021-05-08 18:18 - 2021-05-08 18:18 - 006698057 _____ C:\Users\John\Downloads\FALL Short MTB Edit.mp4
2021-05-08 17:50 - 2021-05-08 17:50 - 000838212 _____ C:\Users\John\Desktop\TKW18_WEB_Marquees_3000x1688_MTB.webp
2021-05-08 17:49 - 2021-05-08 17:49 - 000004090 _____ C:\Users\John\Desktop\1200px-Flag_of_the_United_States.svg.webp
2021-05-08 15:50 - 2021-05-08 15:50 - 007224443 _____ C:\Users\John\Downloads\1.aMartinChotar.pptx
2021-05-08 15:44 - 2021-05-08 15:44 - 000027103 _____ C:\Users\John\Downloads\Trimay_4a_2 (1).xlsx
2021-05-08 15:34 - 2021-05-08 15:42 - 000026954 _____ C:\Users\John\Downloads\Trimay_4a_2.xlsx
2021-05-08 15:17 - 2021-05-08 15:17 - 000079998 _____ C:\Users\John\Downloads\IL_PREDMETU_1620479825319.PDF
2021-05-08 14:30 - 2021-05-08 14:30 - 000025697 _____ C:\Users\John\Downloads\4A_1z2_1.xlsx
2021-05-08 14:30 - 2021-05-08 14:30 - 000017195 _____ C:\Users\John\Downloads\4A_2z2_2 (1).xlsx
2021-05-08 14:18 - 2021-05-08 14:18 - 000016467 _____ C:\Users\John\Downloads\Trimay_4a_1 (1).xlsx
2021-05-08 14:04 - 2021-05-08 14:04 - 000016627 _____ C:\Users\John\Downloads\Trimay_4a_1.xlsx
2021-05-08 13:58 - 2021-05-08 13:58 - 000017195 _____ C:\Users\John\Downloads\4A_2z2_2.xlsx
2021-05-08 13:56 - 2021-05-08 13:56 - 000025981 _____ C:\Users\John\Downloads\Trimay_4a-3 (1).xlsx
2021-05-08 13:52 - 2021-05-08 13:52 - 000026261 _____ C:\Users\John\Downloads\Trimay_4a-3.xlsx
2021-05-08 13:40 - 2021-05-08 13:40 - 000029465 _____ C:\Users\John\Downloads\4A_3_1.xlsx
2021-05-08 13:36 - 2021-05-08 13:36 - 000011505 _____ C:\Users\John\Downloads\Trimaz_Cvičenie 3c - ex - hlavička, tlač (1) (1).xlsx
2021-05-08 13:35 - 2021-05-08 13:35 - 000011505 _____ C:\Users\John\Downloads\Trimaz_Cvičenie 3c - ex - hlavička, tlač (1).xlsx
2021-05-08 13:31 - 2021-05-08 13:38 - 000011348 _____ C:\Users\John\Downloads\Trimaz_Cvičenie 3c - ex - hlavička, tlač.xlsx
2021-05-08 13:31 - 2021-05-08 13:31 - 000011401 _____ C:\Users\John\Downloads\Trimaz_Cvičenie 3c - ex - hlavička, tlač5.xlsx
2021-05-08 13:26 - 2021-05-08 13:26 - 000011931 _____ C:\Users\John\Downloads\nastacenie_tlac_1.xlsx

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-06 17:32 - 2018-05-27 14:28 - 000033156 _____ C:\Users\John\Downloads\FRST.txt
2021-06-06 17:31 - 2017-02-03 16:18 - 000000000 ____D C:\FRST
2021-06-06 17:30 - 2019-01-31 04:33 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2021-06-06 17:25 - 2009-07-14 06:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-06-06 17:25 - 2009-07-14 06:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-06-06 17:22 - 2009-07-14 07:13 - 001061310 _____ C:\Windows\system32\PerfStringBackup.INI
2021-06-06 17:22 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2021-06-06 17:20 - 2020-04-16 00:16 - 000000001 _____ C:\Windows\vgkbootstatus.dat
2021-06-06 17:19 - 2017-06-12 12:10 - 000000000 ____D C:\ProgramData\VMware
2021-06-06 17:15 - 2020-11-29 23:35 - 000000000 ____D C:\ProgramData\VirtualBox
2021-06-06 17:15 - 2019-02-03 10:09 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-06-06 17:15 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-06-06 17:10 - 2021-04-05 11:09 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-06-06 17:10 - 2019-01-08 16:42 - 000034182 _____ C:\Users\John\AppData\Roaming\VoiceMeeterBananaDefault.xml
2021-06-06 17:10 - 2018-07-29 00:15 - 000000000 ____D C:\Users\John\AppData\Roaming\discord
2021-06-06 17:10 - 2016-06-05 18:45 - 000000000 ____D C:\Users\John\AppData\Roaming\TS3Client
2021-06-06 17:10 - 2016-06-04 17:49 - 000000000 ____D C:\Program Files (x86)\Steam
2021-06-06 17:10 - 2016-06-04 17:02 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2021-06-06 17:10 - 2009-07-14 05:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2021-06-06 17:10 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2021-06-06 16:25 - 2020-07-28 12:17 - 000000000 ____D C:\Users\John\AppData\Local\Discord
2021-06-06 15:11 - 2016-06-05 15:18 - 000000000 ____D C:\ProgramData\Riot Games
2021-06-06 13:28 - 2016-07-29 21:36 - 000000000 ____D C:\ProgramData\boost_interprocess
2021-06-06 01:55 - 2017-06-12 12:19 - 000000000 ____D C:\Users\John\AppData\Roaming\VMware
2021-06-06 01:55 - 2017-06-12 12:19 - 000000000 ____D C:\Users\John\AppData\Local\VMware
2021-06-05 20:37 - 2020-03-13 20:30 - 000000000 ____D C:\Users\John\AppData\Local\CrashDumps
2021-06-03 21:40 - 2017-02-21 17:47 - 000000000 ____D C:\Users\John\AppData\Roaming\obs-studio
2021-06-03 20:10 - 2016-07-12 10:05 - 000000000 ____D C:\Users\John\.VirtualBox
2021-06-03 20:10 - 2016-06-04 17:39 - 000000000 ____D C:\stahovania
2021-06-03 18:11 - 2018-11-01 10:47 - 000000000 __SHD C:\Users\Public\DRM
2021-06-03 16:17 - 2016-09-10 18:45 - 000000000 ____D C:\Program Files (x86)\Opera
2021-06-03 10:11 - 2009-07-14 07:08 - 000032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2021-06-02 23:17 - 2016-07-29 17:42 - 000000000 ____D C:\Users\John\AppData\Roaming\vlc
2021-06-02 12:45 - 2021-04-04 13:01 - 000002223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-06-02 12:45 - 2021-04-04 13:01 - 000002182 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-06-02 12:45 - 2021-04-04 13:01 - 000002182 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-06-01 12:36 - 2016-06-16 20:58 - 000000000 ____D C:\folders shortcut
2021-05-31 22:02 - 2018-01-29 00:40 - 000000600 _____ C:\Users\John\AppData\Local\PUTTY.RND
2021-05-31 22:02 - 2016-08-22 00:14 - 000000000 ____D C:\Users\John\AppData\Roaming\FileZilla
2021-05-30 23:06 - 2021-04-06 11:41 - 000000285 _____ C:\Users\John\Desktop\getIps
2021-05-30 22:23 - 2019-06-04 23:22 - 000000000 ____D C:\Users\John\AppData\Local\BitTorrentHelper
2021-05-30 22:23 - 2016-06-04 17:36 - 000000000 ____D C:\Users\John\AppData\Roaming\uTorrent
2021-05-30 15:22 - 2021-04-26 12:10 - 000000130 _____ C:\Users\John\Desktop\t.txt
2021-05-27 15:54 - 2020-06-09 14:09 - 000000000 ____D C:\Users\John\AppData\Roaming\.minecraft
2021-05-27 09:59 - 2020-03-17 02:47 - 000000000 ____D C:\Users\John\AppData\Roaming\.tlauncher
2021-05-26 09:56 - 2021-04-06 19:36 - 000000000 ____D C:\Program Files\Riot Vanguard
2021-05-26 02:59 - 2021-05-04 01:47 - 000000000 ____D C:\Users\John\Documents\Outlook Files
2021-05-24 13:29 - 2016-06-04 20:55 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-05-20 11:00 - 2020-06-11 15:53 - 000000000 ____D C:\Users\John\AppData\Local\.IdentityService
2021-05-19 07:44 - 2018-03-12 10:31 - 005451816 _____ C:\Windows\system32\FNTCACHE.DAT
2021-05-18 18:36 - 2018-03-11 15:57 - 000208904 _____ C:\Users\John\AppData\Local\GDIPFONTCACHEV1.DAT
2021-05-17 20:36 - 2020-07-24 19:13 - 000045056 _____ C:\Users\John\.wakatime.db
2021-05-17 20:36 - 2016-06-04 15:57 - 000000000 ____D C:\Users\John
2021-05-17 18:42 - 2020-07-24 19:37 - 000000000 ____D C:\Users\John\AppData\Roaming\Hubstaff
2021-05-17 18:42 - 2020-05-24 15:31 - 000000000 ____D C:\Users\John\.atom
2021-05-17 10:59 - 2018-05-27 11:31 - 000000000 ____D C:\Temp
2021-05-17 10:55 - 2018-08-02 21:19 - 000000000 ____D C:\Program Files\Sublime Text 3
2021-05-16 20:01 - 2019-05-21 19:15 - 000000000 ____D C:\Users\John\Documents\Voicemeeter
2021-05-11 16:58 - 2020-05-24 15:30 - 000000000 ____D C:\Users\John\AppData\Local\atom
2021-05-11 16:57 - 2020-05-24 15:31 - 000000000 ____D C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc
2021-05-11 16:57 - 2017-06-03 10:11 - 000000000 ____D C:\Users\John\AppData\Local\SquirrelTemp

==================== Files in the root of some directories ========

2020-05-03 15:07 - 2020-05-03 15:07 - 000000048 ____H () C:\Program Files (x86)\8iq24splw1.dat
2018-12-26 12:13 - 2020-11-05 13:51 - 000000033 _____ () C:\Users\John\AppData\Roaming\AdobeWLCMCache.dat
2020-06-18 23:09 - 2020-06-18 23:09 - 000000068 _____ () C:\Users\John\AppData\Roaming\changzhi_leidian.data
2019-07-14 01:42 - 2020-06-27 13:52 - 000000808 _____ () C:\Users\John\AppData\Roaming\jd-gui.cfg
2018-12-26 12:41 - 2018-12-27 15:25 - 000000028 _____ () C:\Users\John\AppData\Roaming\kulerdata.json
2019-01-08 16:42 - 2021-06-06 17:10 - 000034182 _____ () C:\Users\John\AppData\Roaming\VoiceMeeterBananaDefault.xml
2019-01-05 03:03 - 2019-01-06 18:26 - 000004634 _____ () C:\Users\John\AppData\Roaming\VoiceMeeterDefault.xml
2016-11-26 22:00 - 2019-10-04 08:27 - 000001480 _____ () C:\Users\John\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2017-01-06 04:05 - 2017-01-06 04:05 - 000003584 _____ () C:\Users\John\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-09-06 09:27 - 2018-09-06 09:27 - 000001111 _____ () C:\Users\John\AppData\Local\gamma_ramp.reg
2018-01-29 00:40 - 2021-05-31 22:02 - 000000600 _____ () C:\Users\John\AppData\Local\PUTTY.RND
2020-11-26 01:29 - 2020-11-26 01:29 - 000000753 _____ () C:\Users\John\AppData\Local\recently-used.xbel
2018-07-27 14:26 - 2018-07-27 14:26 - 000000487 _____ () C:\Users\John\AppData\Local\ReclaiMe.config
2017-06-16 15:06 - 2020-12-02 18:16 - 000007647 _____ () C:\Users\John\AppData\Local\Resmon.ResmonCfg
2019-03-04 17:27 - 2019-03-04 17:27 - 000000003 _____ () C:\Users\John\AppData\Local\updater.log
2019-03-04 17:27 - 2019-03-04 17:27 - 000000425 _____ () C:\Users\John\AppData\Local\UserProducts.xml

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-09-04 02:24
==================== End of FRST.txt ========================