Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-04-2023
Ran by Peete (administrator) on DESKTOP-OFUSQIT (Gigabyte Technology Co., Ltd. B550 GAMING X V2) (20-04-2023 20:06:00)
Running from C:\Users\Peete\Downloads\FRST64.exe
Loaded Profiles: Peete
Platform: Microsoft Windows 10 Pro Version 22H2 19045.2846 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(DriverStore\FileRepository\u0387206.inf_amd64_081d192bd0a4e0cb\B386218\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0387206.inf_amd64_081d192bd0a4e0cb\B386218\atieclxx.exe
(explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\Peete\AppData\Local\FluxSoftware\Flux\flux.exe
(explorer.exe ->) (Open Source Developer, Robin Krom -> Greenshot) C:\Program Files\Greenshot\Greenshot.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <17>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0387206.inf_amd64_081d192bd0a4e0cb\B386218\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\112.0.5615.26\remoting_host.exe <2>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(svchost.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23022.140.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572536 2022-09-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot)
HKLM\...\Run: [Seagull Drivers V3] => C:\Program Files\Seagull\Printer Drivers\Common\Seagull_DriverStartup.exe [533776 2020-06-04] (Seagull Scientific, Inc -> Seagull Scientific, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Peete\AppData\Local\Microsoft\Teams\Update.exe [2508536 2022-06-15] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default (No File)
HKU\S-1-5-21-191128902-3644307124-883229192-1001\...\Run: [f.lux] => C:\Users\Peete\AppData\Local\FluxSoftware\Flux\flux.exe [1515848 2021-06-18] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-191128902-3644307124-883229192-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4362600 2023-03-24] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-191128902-3644307124-883229192-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1785864 2023-04-13] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-191128902-3644307124-883229192-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37104080 2023-03-25] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-191128902-3644307124-883229192-1001\...\Run: [AMDNoiseSuppression] => C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe [155544 2022-08-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKLM\...\Windows x64\Print Processors\OPPUPP3: C:\Windows\System32\spool\prtprocs\x64\OPPUPP3.dll [41984 2013-05-16] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation)
HKLM\...\Print\Monitors\Oki Common XP64 Language Monitor: C:\Windows\system32\OKLMON64.DLL [27648 2009-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation)
HKLM\...\Print\Monitors\Seagull V3 Network Monitor: C:\Windows\system32\Seagull_V3_NetMonDispatcher.dll [594704 2020-06-04] (Seagull Scientific, Inc -> Seagull Scientific, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\112.0.5615.137\Installer\chrmstp.exe [2023-04-20] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\64.0.3282.119\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {021FA74F-AA7F-4C7F-A4A0-7154D12C6D2D} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [291768 2022-11-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {0D51B86A-B444-45A4-89DD-14C159CB2FD6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.)
Task: {280E1F9F-E2B4-4668-90DD-1213A03868B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3598B1A4-7763-4D73-90C9-4FE843C07CDD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4A3064EE-B523-45CA-91B4-D318468DE76F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-08-12] (Google Inc -> Google Inc.)
Task: {4FD07AF8-4F31-4073-824F-73891B77D3CC} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-04-18] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {7913772B-F25A-4FA0-964B-D7E9C925AE8F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7D8365EB-589C-4D26-95D1-23F9E9769807} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954808 2022-11-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {7F57F04E-877B-45D9-893E-396844C4504A} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-191128902-3644307124-883229192-1002 => C:\Users\Peete\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File)
Task: {80421097-CFD3-46EB-8674-BA319CB4D105} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [183224 2022-11-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {9919DBBD-2C90-4107-9B39-9C24ED8C7944} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2638856 2023-04-13] (Overwolf Ltd -> Overwolf LTD)
Task: {A75A999A-ED97-4A2C-996E-1846FA0ACEF8} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954808 2022-11-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {B152EBB8-8EB0-44C6-A133-DFDD5A25E772} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-191128902-3644307124-883229192-1002 => C:\Users\Peete\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File)
Task: {B9BF20C9-586F-47CA-B0DF-BA3599463168} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-04-18] (Mozilla Corporation -> Mozilla Foundation)
Task: {C4A0D112-E461-469E-B101-6F17F1CAC74B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-08-12] (Google Inc -> Google Inc.)
Task: {D91DD9F9-C558-4564-BAA7-D4D42599265B} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe /checkin (No File)
Task: {DA0E1676-FF73-40B0-89AF-29B9B292F2E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FACA1F55-B0DB-4D16-9DD3-BFACC88A4F6C} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [56760 2022-11-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1ba28d8b-7dfe-4e04-b750-ba32be040524}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{d0bcd31a-e14c-40f0-bdf3-aa48f2086492}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{d0bcd31a-e14c-40f0-bdf3-aa48f2086492}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => path not found
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => path not found
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => path not found
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => path not found
Edge DefaultProfile: Default
Edge Profile: C:\Users\Peete\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-29]

FireFox:
========
FF DefaultProfile: uk5tuvjo.default
FF ProfilePath: C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\uk5tuvjo.default [2020-03-13]
FF NewTab: Mozilla\Firefox\Profiles\uk5tuvjo.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170702&iDate=2020-03-13 12:58:57&bName=
FF ProfilePath: C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release [2023-04-20]
FF NewTab: Mozilla\Firefox\Profiles\473sxo9y.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170702&iDate=2020-03-13 12:58:57&bName=
FF Extension: (BetterTTV) - C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release\Extensions\firefox@betterttv.net.xpi [2023-03-23]
FF Extension: (FrankerFaceZ) - C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release\Extensions\frankerfacez@frankerfacez.com.xpi [2023-03-23] [UpdateUrl:hxxps://cdn.frankerfacez.com/script/firefox-updates.json]
FF Extension: (Alternate Player for Twitch.tv) - C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release\Extensions\twitch5@coolcmd.xpi [2022-02-10]
FF Extension: (uBlock Origin) - C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release\Extensions\uBlock0@raymondhill.net.xpi [2023-04-07]
FF Extension: (7TV Nightly) - C:\Users\Peete\AppData\Roaming\Mozilla\Firefox\Profiles\473sxo9y.default-release\Extensions\{7cc17731-b734-4c98-a154-51d2bf266ef4}.xpi [2023-04-09]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-04-04] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\plex-config.js [2021-08-04] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\plex.cfg [2021-08-04] <==== ATTENTION

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default [2023-02-17]
CHR Extension: (BetterTTV) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2023-01-29]
CHR Extension: (Alternate Player for Twitch.tv) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhplkbgoehhhddaoolmakpocnenplmhf [2022-02-08]
CHR Extension: (uBlock Origin) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-01-29]
CHR Extension: (Popup Intercept - One Window) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpkgadnkojegbmhdflhhcjkhgjijiakm [2021-06-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-29]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-12-15]
CHR Extension: (Desktopify) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlhjgcligpbnjphflfdbmabbmjidnmek [2022-08-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-02]
CHR Extension: (Zpl Printer) - C:\Users\Peete\AppData\Local\Google\Chrome\User Data\Default\Extensions\phoidlklenidapnijkabnfdgmadlcmjo [2020-07-23]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901960 2022-01-13] (BattlEye Innovations e.K. -> )
R2 Bonjour Service; C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe [390504 2022-04-27] (Apple Inc. -> Apple Inc.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\112.0.5615.26\remoting_host.exe [74520 2023-03-14] (Google LLC -> Google LLC)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-06-17] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7848632 2021-11-18] (Malwarebytes Inc -> Malwarebytes)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2020-10-14] (Microsoft Windows -> Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579264 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497800 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2638856 2023-04-13] (Overwolf Ltd -> Overwolf LTD)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [285088 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2021-12-16] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe [3228400 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe [133536 2023-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8737992 2022-01-19] (PUBG CORPORATION -> PUBG Corporation)
S2 CyberGhost8Service; "C:\Program Files\CyberGhost 8\Dashboard.Service.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [54720 2022-10-21] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R2 AMDRyzenMasterDriverV19; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [43336 2022-11-30] (Advanced Micro Devices INC. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_1a1a381a2c0e293c\amdsafd.sys [113056 2022-08-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0387206.inf_amd64_081d192bd0a4e0cb\B386218\amdkmdag.sys [94464424 2023-01-04] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [59920 2022-05-31] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 atvi-randgrid_sr; C:\Program Files (x86)\Steam\steamapps\common\Call of Duty HQ\randgrid.sys [3311416 2023-02-03] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 HidHide; C:\WINDOWS\System32\drivers\HidHide.sys [61408 2021-04-01] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-05-23] (Martin Malik - REALiX -> REALiX(tm))
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-11-18] (Malwarebytes Inc -> Malwarebytes)
R0 MsSecCore; C:\WINDOWS\System32\drivers\msseccore.sys [26480 2023-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 MsSecWfp; C:\WINDOWS\System32\drivers\mssecwfp.sys [29568 2023-04-12] (Microsoft Windows -> Microsoft Corporation)
R3 nlwt; C:\WINDOWS\system32\DRIVERS\nlwt.sys [39360 2021-03-30] (TEFINCOM S.A. -> WireGuard LLC)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2020-05-26] (TEFINCOM S.A. -> The OpenVPN Project)
S1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [165744 2020-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2023-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [497920 2023-04-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99608 2023-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [2522256 2022-02-14] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S4 IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X]
S3 IUProcessFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [X]
S3 IURegistryFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [X]
S3 mdareDriver_68; \??\C:\Users\Peete\AppData\Local\Temp\FCPreScan\mdare64_68.sys [X] <==== ATTENTION
S4 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-04-20 20:06 - 2023-04-20 20:06 - 000024290 _____ C:\Users\Peete\Downloads\FRST.txt
2023-04-20 20:04 - 2023-04-20 20:06 - 000000000 ____D C:\FRST
2023-04-20 20:04 - 2023-04-20 20:04 - 002381312 _____ (Farbar) C:\Users\Peete\Downloads\FRST64.exe
2023-04-20 20:04 - 2023-04-20 20:04 - 001222144 _____ C:\Users\Peete\Downloads\RSITx64.exe
2023-04-20 19:59 - 2023-04-20 19:59 - 000165797 _____ C:\Users\Peete\Downloads\Životopis.pdf
2023-04-19 20:39 - 2023-04-19 20:39 - 000087498 _____ C:\Users\Peete\Downloads\Priloha(1).pdf
2023-04-18 00:22 - 2023-04-18 00:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2023-04-13 01:24 - 2023-04-13 01:24 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde
2023-04-12 23:17 - 2023-04-12 23:17 - 000000711 _____ C:\Users\Public\Desktop\Diablo II Resurrected.lnk
2023-04-12 23:17 - 2023-04-12 23:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo II Resurrected
2023-04-12 22:23 - 2023-04-12 22:23 - 000000000 ___HD C:\$WinREAgent

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-04-20 20:05 - 2019-09-15 11:43 - 000000000 ____D C:\Program Files (x86)\Steam
2023-04-20 19:53 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-04-20 19:53 - 2019-09-14 21:06 - 000000000 ____D C:\Games
2023-04-20 19:52 - 2021-03-15 23:17 - 000000000 ____D C:\Users\Peete\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HearthSim
2023-04-20 19:52 - 2021-03-15 23:17 - 000000000 ____D C:\Users\Peete\AppData\Local\HearthstoneDeckTracker
2023-04-20 19:35 - 2019-08-12 08:55 - 000000000 ____D C:\Program Files (x86)\Google
2023-04-20 19:23 - 2020-06-05 01:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-04-20 19:23 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-04-20 18:51 - 2023-01-19 21:12 - 000003078 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2023-04-20 15:26 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-04-20 15:26 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-04-20 11:24 - 2019-07-27 21:19 - 000000000 ____D C:\Users\Peete\AppData\Local\Packages
2023-04-20 00:55 - 2022-08-08 13:54 - 000000000 ____D C:\Users\Peete\AppData\Roaming\w3champions
2023-04-20 00:50 - 2020-02-09 20:18 - 000000000 ____D C:\Users\Peete\AppData\Local\Battle.net
2023-04-20 00:37 - 2019-08-12 08:55 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-20 00:37 - 2019-08-12 08:55 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-04-19 01:49 - 2019-09-01 19:56 - 000000000 ____D C:\Users\Peete\AppData\Roaming\Discord
2023-04-18 23:50 - 2022-12-06 20:10 - 000000000 ____D C:\Users\Peete\AppData\Local\D3DSCache
2023-04-18 23:48 - 2020-12-06 21:10 - 000002323 _____ C:\Users\Peete\Desktop\CurseForge.lnk
2023-04-18 23:48 - 2020-12-06 21:10 - 000000000 ____D C:\Program Files (x86)\Overwolf
2023-04-18 23:48 - 2020-12-06 20:25 - 000000000 ____D C:\Users\Peete\AppData\Local\Overwolf
2023-04-18 23:28 - 2019-09-01 19:56 - 000000000 ____D C:\Users\Peete\AppData\Local\Discord
2023-04-18 18:04 - 2019-07-28 11:07 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2023-04-17 12:16 - 2023-01-19 21:22 - 000000000 ____D C:\Users\Peete\AppData\Local\AMD_Common
2023-04-17 12:16 - 2022-10-12 16:02 - 000002079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-04-17 12:16 - 2022-10-12 16:02 - 000002067 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-04-17 12:16 - 2020-06-05 02:01 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-04-17 12:16 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2023-04-17 12:16 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2023-04-17 12:15 - 2020-06-09 20:19 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-04-17 12:15 - 2020-06-09 20:19 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-04-17 12:10 - 2019-07-28 11:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2023-04-17 12:09 - 2020-06-05 02:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-04-17 12:09 - 2020-06-05 01:56 - 000008192 ___SH C:\DumpStack.log.tmp
2023-04-17 12:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2023-04-13 01:25 - 2020-06-05 01:56 - 000438880 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-04-13 01:25 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-04-13 01:24 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-04-13 01:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-04-13 00:05 - 2019-07-28 11:07 - 000000000 ____D C:\Users\Peete\AppData\LocalLow\Mozilla
2023-04-12 22:29 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-04-12 22:27 - 2020-06-05 02:00 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-04-12 18:41 - 2019-07-27 21:26 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-04-12 18:40 - 2019-07-27 21:26 - 156112424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-04-12 11:01 - 2019-07-27 21:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-04-10 22:33 - 2020-06-05 02:01 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-04-10 22:30 - 2020-06-05 02:01 - 000003768 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-04-10 22:30 - 2020-06-05 02:01 - 000003644 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-04-07 17:24 - 2019-09-05 15:53 - 000000000 ____D C:\Users\Peete\AppData\Local\Greenshot
2023-04-04 21:37 - 2020-06-09 20:18 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-04-04 21:37 - 2020-06-09 20:18 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-03-30 22:25 - 2020-02-09 20:12 - 000000000 ____D C:\Program Files (x86)\Battle.net
2023-03-29 20:31 - 2021-03-15 23:17 - 000000000 ____D C:\Users\Peete\AppData\Roaming\HearthstoneDeckTracker
2023-03-29 20:08 - 2020-02-09 20:42 - 000000000 ____D C:\Program Files (x86)\Warcraft III
2023-03-27 23:25 - 2020-12-06 21:10 - 000000000 ____D C:\Users\Peete\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2023-03-27 09:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration
2023-03-25 20:59 - 2021-02-24 16:52 - 000000000 ____D C:\ProgramData\Epic
2023-03-25 20:59 - 2020-01-04 14:17 - 000000000 ____D C:\Users\Peete\AppData\Local\UnrealEngine
2023-03-25 20:24 - 2020-11-27 01:33 - 000000000 ____D C:\ProgramData\BioWare
2023-03-25 20:24 - 2020-11-27 01:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon Age Origins
2023-03-25 20:24 - 2020-11-27 01:09 - 000000000 ____D C:\ProgramData\Media Center Programs
2023-03-25 00:25 - 2019-08-30 11:48 - 000000000 ____D C:\Users\Peete\AppData\Local\SquirrelTemp
2023-03-24 21:08 - 2019-09-01 19:56 - 000002233 _____ C:\Users\Peete\Desktop\Discord.lnk
2023-03-24 10:53 - 2021-10-11 08:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla

==================== Files in the root of some directories ========

2021-10-04 15:02 - 2021-10-04 15:02 - 008173621 _____ () C:\Users\Peete\youtube-dl.exe
2021-11-11 15:08 - 2021-11-11 15:08 - 000000128 ____H () C:\Users\Peete\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6
2021-09-05 18:59 - 2021-09-05 18:59 - 000000030 _____ () C:\Users\Peete\AppData\Roaming\Opusbext.dat
2021-04-06 12:52 - 2021-04-06 12:52 - 000000000 _____ () C:\Users\Peete\AppData\Local\D21037.tmp
2021-04-26 20:52 - 2021-04-26 20:52 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2114D.tmp
2021-04-05 19:09 - 2021-04-05 19:09 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2138F.tmp
2021-04-06 22:13 - 2021-04-06 22:13 - 000000000 _____ () C:\Users\Peete\AppData\Local\D215B2.tmp
2021-04-02 04:30 - 2021-04-02 04:30 - 000000000 _____ () C:\Users\Peete\AppData\Local\D21AF2.tmp
2021-04-06 16:50 - 2021-04-06 16:50 - 000000000 _____ () C:\Users\Peete\AppData\Local\D221F5.tmp
2021-03-27 19:15 - 2021-03-27 19:15 - 000000000 _____ () C:\Users\Peete\AppData\Local\D224BA.tmp
2021-03-19 12:06 - 2021-03-19 12:06 - 000000000 _____ () C:\Users\Peete\AppData\Local\D22C09.tmp
2021-03-22 20:29 - 2021-03-22 20:29 - 000000000 _____ () C:\Users\Peete\AppData\Local\D235C6.tmp
2021-04-08 22:05 - 2021-04-08 22:05 - 000000000 _____ () C:\Users\Peete\AppData\Local\D23655.tmp
2021-03-28 01:24 - 2021-03-28 01:24 - 000000000 _____ () C:\Users\Peete\AppData\Local\D23879.tmp
2021-03-18 20:12 - 2021-03-18 20:12 - 000000000 _____ () C:\Users\Peete\AppData\Local\D23C2C.tmp
2021-03-26 17:50 - 2021-03-26 17:50 - 000000000 _____ () C:\Users\Peete\AppData\Local\D240F7.tmp
2021-03-19 18:29 - 2021-03-19 18:29 - 000000000 _____ () C:\Users\Peete\AppData\Local\D24284.tmp
2021-04-04 19:09 - 2021-04-04 19:09 - 000000000 _____ () C:\Users\Peete\AppData\Local\D25105.tmp
2021-03-21 18:11 - 2021-03-21 18:11 - 000000000 _____ () C:\Users\Peete\AppData\Local\D25931.tmp
2021-03-28 17:25 - 2021-03-28 17:25 - 000000000 _____ () C:\Users\Peete\AppData\Local\D25E0A.tmp
2021-04-02 00:01 - 2021-04-02 00:01 - 000000000 _____ () C:\Users\Peete\AppData\Local\D25E94.tmp
2021-06-30 22:19 - 2021-06-30 22:19 - 000000000 _____ () C:\Users\Peete\AppData\Local\D26109.tmp
2021-03-28 02:48 - 2021-03-28 02:48 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2727E.tmp
2021-03-18 18:51 - 2021-03-18 18:51 - 000000000 _____ () C:\Users\Peete\AppData\Local\D27A1D.tmp
2021-04-02 20:36 - 2021-04-02 20:36 - 000000000 _____ () C:\Users\Peete\AppData\Local\D27EE0.tmp
2021-04-10 01:25 - 2021-04-10 01:25 - 000000000 _____ () C:\Users\Peete\AppData\Local\D28192.tmp
2021-03-27 21:50 - 2021-03-27 21:50 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2824D.tmp
2021-03-27 21:49 - 2021-03-27 21:49 - 000000000 _____ () C:\Users\Peete\AppData\Local\D28B7B.tmp
2021-04-10 03:51 - 2021-04-10 03:51 - 000000000 _____ () C:\Users\Peete\AppData\Local\D29AFB.tmp
2021-04-02 00:48 - 2021-04-02 00:48 - 000000000 _____ () C:\Users\Peete\AppData\Local\D29B7E.tmp
2021-03-26 22:22 - 2021-03-26 22:22 - 000000000 _____ () C:\Users\Peete\AppData\Local\D29F2B.tmp
2021-03-31 20:01 - 2021-03-31 20:01 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2A9A0.tmp
2021-04-10 05:01 - 2021-04-10 05:01 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2ABCD.tmp
2021-03-18 20:34 - 2021-03-18 20:34 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2ACCC.tmp
2021-03-19 23:05 - 2021-03-19 23:05 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2AFBB.tmp
2021-03-20 00:14 - 2021-03-20 00:14 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2BDB4.tmp
2021-04-02 00:11 - 2021-04-02 00:11 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2BFA4.tmp
2021-03-28 18:04 - 2021-03-28 18:04 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2C62E.tmp
2021-04-08 23:55 - 2021-04-08 23:55 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2DEE3.tmp
2021-03-24 20:35 - 2021-03-24 20:35 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2E9F5.tmp
2021-04-05 18:05 - 2021-04-05 18:05 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2F1ED.tmp
2021-03-25 21:55 - 2021-03-25 21:55 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2F57C.tmp
2021-03-21 20:53 - 2021-03-21 20:53 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2F631.tmp
2021-04-02 04:54 - 2021-04-02 04:54 - 000000000 _____ () C:\Users\Peete\AppData\Local\D2FFCE.tmp
2020-10-23 23:16 - 2023-02-19 14:45 - 000007620 _____ () C:\Users\Peete\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================