Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-05-2023
Ran by Milan (administrator) on HP (Hewlett-Packard 810-000ec) (26-05-2023 17:33:00)
Running from C:\Users\Milan\Desktop\FRST64.exe
Loaded Profiles: Milan
Platform: Microsoft Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe ->) (Konstantin Polyakov IP -> ) C:\Program Files (x86)\Autorun Organizer\Reg64Call.exe
(C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe ->) (Reason Software Company Inc. -> Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.246\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(C:\Program Files\Logitech\SetPointP\SetPoint.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe ->) (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(cmd.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdtrackersnmh.exe
(cmd.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxcr.exe <2>
(E:\Server\Jellyfin.Windows.Tray.exe ->) () [File not signed] E:\Server\jellyfin.exe
(explorer.exe ->) (Collectorz.com B.V. -> Collectorz.com) E:\Program Files (x86)\Music Collector\MusicCollector.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) E:\Program Files (x86)\Dell Display Manager\ddm.exe
(explorer.exe ->) (Florian Heidenreich -> Florian Heidenreich) E:\Program Files (x86)\MP3Tag\Mp3tag.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <46>
(explorer.exe ->) (IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\sttray64.exe
(explorer.exe ->) (Jellyfin Project) [File not signed] E:\Server\Jellyfin.Windows.Tray.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(explorer.exe ->) (Microsoft Corporation) [File not signed] C:\Hobby-téka\Office\MSACCESS.EXE
(explorer.exe ->) (Michael Maltsev -> RaMMicHaeL) E:\Program Files (x86)\7+ Taskbar Tweaker\7+ Taskbar Tweaker.exe
(explorer.exe ->) (Paragon Software GmbH -> Paragon Software GmbH) C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\hdm17.exe
(explorer.exe ->) (SOKNO S.R.L. -> ) C:\Program Files (x86)\SpeedFan\speedfan.exe
(explorer.exe ->) (Synology Inc. -> Synology Inc.) C:\Program Files (x86)\Synology Data Replicator  3\Backup.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(services.exe ->) () [File not signed] E:\Program Files (x86)\SensorsViewPro43\svservice.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <2>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\btwdins.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (GuinpinSoft inc) [File not signed] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe
(services.exe ->) (IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\stacsv64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Autorun Organizer\StartupCheckingService.exe
(services.exe ->) (Leawo Software) [File not signed] C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Mixbyte Inc -> Ellora Assets Corp.) E:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Reason Software Company Inc. -> Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
(services.exe ->) (Software602 a.s. -> Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(services.exe ->) (Synology Inc. -> ) [File not signed] C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology Data Replicator  3\SynoDrServicex64.exe
(svchost.exe ->) (KERISH PRODUCTS LLP -> Kerish Products LLP) E:\Program Files (x86)\Kerish Doctor\KerishDoctor.exe
(svchost.exe ->) (Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe
(svchost.exe ->) (PALIT MICROSYSTEMS LTD. TAIWAN BRANCH (BELIZE) -> Palit Microsystems Ltd.) E:\Program Files (x86)\Thunder Master\THPanel.exe
(WhatsApp LLC -> WhatsApp) C:\Users\Milan\AppData\Local\WhatsApp\app-2.2319.9\WhatsApp.exe <6>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GwxControlPanelMonitor] => C:\Program Files (x86)\UltimateOutsider\GWX Control Panel\GWX_control_panel.exe [4559944 2016-01-24] (Josh Mayfield -> UltimateOutsider)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [1049624 2023-04-24] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2014-01-05] (IDT, Inc.) [File not signed]
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2109064 2020-04-27] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3138560 2023-01-11] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942232 2016-10-14] (Logitech -> Logitech, Inc.)
HKLM\...\Policies\Explorer: [NoRecentDocsNetHood] 0
HKLM\...\Policies\Explorer: [NoChangeStartMenu] 0
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Run: [Data Replicator 3] => C:\Program Files (x86)\Synology Data Replicator  3\Backup.exe [11605576 2013-10-09] (Synology Inc. -> Synology Inc.) <==== ATTENTION
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Run: [Spotify] => C:\Users\Milan\AppData\Roaming\Spotify\Spotify.exe [20468600 2023-04-16] (Spotify AB -> Spotify Ltd) <==== ATTENTION
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Run: [JellyfinTray] => E:\Server\Jellyfin.Windows.Tray.exe [360960 2022-11-30] (Jellyfin Project) [File not signed] <==== ATTENTION
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Run: [THPanel] => E:\Program Files (x86)\Thunder Master\THPanel.exe [3218272 2019-10-01] (PALIT MICROSYSTEMS LTD. TAIWAN BRANCH (BELIZE) -> Palit Microsystems Ltd.) <==== ATTENTION
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoThumbnailCache] 1
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoPreviewPane] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoTrayContextMenu] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoSetTaskbar] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoViewContextMenu] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoWinkeys] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [NoTrayItemsDisplay] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [HideClock] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [HideSCANetwork] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Policies\Explorer: [HideSCAVolume] 0
HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\scrnsave.scr [11776 2014-10-29] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG7100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBR.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG7100 series: C:\WINDOWS\system32\CNMLMBR.DLL [391168 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2013-01-24] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [365568 2012-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\WINDOWS\system32\602localmon.dll [47896 2021-09-23] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.141\Installer\chrmstp.exe [2023-04-21] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\ASUS\Bluetooth Software\\BtwCP.dll (Broadcom Corporation -> Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2017-08-12]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ASUS\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-10-11]
ShortcutTarget: Dell Display Manager.lnk -> E:\Program Files (x86)\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SpeedFan.lnk [2014-04-29]
ShortcutTarget: SpeedFan.lnk -> C:\Program Files (x86)\SpeedFan\speedfan.exe (SOKNO S.R.L. -> )
Startup: C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SpeedFan.lnk [2020-04-08]
ShortcutTarget: SpeedFan.lnk -> C:\Program Files (x86)\SpeedFan\speedfan.exe (SOKNO S.R.L. -> )

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {057B7A52-6BCA-43B7-A011-8B939023AFFD} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1448832 2020-02-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {0DA1BF58-DF15-468B-A92B-6AFF87379E22} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {0DDB73BB-E9A8-48C7-85F5-43E1321ED4B3} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {12B9E8E0-063D-4A4D-80A6-2EE1AA903C9D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe  (No File)
Task: {17FD829C-813D-4D47-9688-332A6A5708B2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24568904 2020-02-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {2E9B3B89-FB28-4EB4-A675-E8FE10118DC0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3503584 2023-01-19] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {3141AAC7-DE44-4B29-9D2D-F58CA6F46ABD} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {3CC81C43-300E-4BF2-A9FB-5F5B684FEEC8} - System32\Tasks\Kerish Doctor => E:\Program Files (x86)\Kerish Doctor\KerishDoctor.exe [4528248 2023-05-12] (KERISH PRODUCTS LLP -> Kerish Products LLP)
Task: {40159E94-CCBF-466B-9FC0-8E3DEF3B9641} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe  /onlogon (No File)
Task: {4A922FF1-27DF-4F5D-AA73-EC03605986C0} - System32\Tasks\Paragon Job (Back up partitions or disks to virtual containers) - {df916473-8449-499e-9c8e-43e5132f52f0} => C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\hdmengine_scriptsapp.exe [3537304 2019-11-22] (Paragon Software GmbH -> Paragon Software)
Task: {4F373D17-4619-4AE6-8AED-712338F22FCD} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [732064 2023-05-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {59E8EC01-22A3-454F-A0CC-26FBAED00E9B} - System32\Tasks\Paragon Job (Back up partitions or disks to virtual containers) - {a090aa00-5b9f-468b-ecf4-e46c3cdd605d} => C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\hdmengine_scriptsapp.exe [3537304 2019-11-22] (Paragon Software GmbH -> Paragon Software)
Task: {6033342F-FCE6-43B7-89C9-B1051762B057} - System32\Tasks\Paragon Job (Back up partitions or disks to virtual containers) - {58ae3fe6-e923-4581-71d1-21868107a8d3} => C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\hdmengine_scriptsapp.exe [3537304 2019-11-22] (Paragon Software GmbH -> Paragon Software)
Task: {67991882-52F0-4C8B-965E-31052A068347} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {6B519139-51D6-44D1-B396-483F551B4663} - System32\Tasks\Speedfan => C:\Program Files (x86)\SpeedFan\speedfan.exe [8166536 2016-06-29] (SOKNO S.R.L. -> )
Task: {6CBAE011-318F-468B-998E-65F7E1E24C55} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.)
Task: {7C0C03ED-4D20-4255-B657-BB8A2195D44E} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {930B96B9-27A0-4403-9751-03D727568671} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\SymErr.exe  /submit (No File)
Task: {94CD9053-54E4-4574-ADC3-46C128E1EEF8} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {9B80A8C1-CE2A-4B69-8BB0-7E8AFFDAC3FE} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.246\WatchDog.exe [934440 2023-05-18] (Bitdefender SRL -> Bitdefender)
Task: {A66240ED-7854-408B-BE4C-421A219F6205} - System32\Tasks\Autorun Organizer => C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe [10810816 2018-10-26] (Konstantin Polyakov IP -> Chemtable Software)
Task: {AF73D5E5-C49E-4A05-BC4E-06BD515092B1} - System32\Tasks\Paragon Job (Back up partitions or disks to virtual containers) - {7f4b0303-d85d-42da-8751-121bdf44f34f} => C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\hdmengine_scriptsapp.exe [3537304 2019-11-22] (Paragon Software GmbH -> Paragon Software)
Task: {BE479DF2-7A43-4673-9831-1A968F6C2D71} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1353616 2020-02-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {C1A80A88-FAD6-4409-AE0E-BEA26ED8DDF2} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {C3EC7682-92EC-444E-80D8-C598376C1D42} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Internet Security\Upgrade.exe [3203480 2016-02-26] (Symantec Corporation -> Symantec Corporation)
Task: {C7DE2B55-415B-4B22-90FE-2FD695DEEAA8} - System32\Tasks\ThunderMaster => E:\Program Files (x86)\Thunder Master\THPanel.exe [3218272 2019-10-01] (PALIT MICROSYSTEMS LTD. TAIWAN BRANCH (BELIZE) -> Palit Microsystems Ltd.)
Task: {D92C0A54-9000-44C5-8046-6C401EC688BB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1353616 2020-02-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {F4034188-D5FB-4E96-AB5C-7CF0A847B254} - System32\Tasks\Opera scheduled Autoupdate 1656874822 => E:\Program Files (x86)\launcher.exe [2635160 2023-04-27] (Opera Norway AS -> Opera Software) <==== ATTENTION
Task: {F50F9C5A-8AB7-403A-AEC2-E4D19BF05AAA} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {FA8A9E9A-8A1B-4CA4-99AB-E7953BC61EBD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24568904 2020-02-09] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{E2641B9C-4257-42E8-B3E4-FA4A8C923E89}: [DhcpNameServer] 81.200.55.222 81.200.55.223

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Milan\AppData\Local\Microsoft\Edge\User Data\Default [2023-05-26]
Edge Notifications: Default -> hxxps://www.facebook.com; hxxps://www.youtube.com
Edge HomePage: Default -> about:blank
Edge Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\Milan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\klfeohnijmogpjoeenglhonjfiacajpp [2023-05-26]

FireFox:
========
FF DefaultProfile: kje70kdo.default
FF DefaultProfile: daneqr12.default-1581870394713
FF ProfilePath: C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default [2023-05-26]
FF user.js: detected! => C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\user.js [2015-03-10]
FF DownloadDir: C:\Users\Milan\Desktop
FF Homepage: Mozilla\Firefox\Profiles\kje70kdo.default -> about:blank
FF Session Restore: Mozilla\Firefox\Profiles\kje70kdo.default -> is enabled.
FF Extension: (Bitdefender Anti-tracker) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\bdtbe@bitdefender.com.xpi [2023-01-05] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2021-06-19]
FF Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\danabok16@gmail.com.xpi [2023-05-23]
FF Extension: (Language: Čeština (Czech)) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\langpack-cs@firefox.mozilla.org.xpi [2023-05-22]
FF Extension: (Link Control) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\linkcontrol@innermonkdesign.com.xpi [2021-04-27]
FF Extension: (PocketTube: Youtube PlayList Manager) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\playlist@yousub.info.xpi [2023-05-25]
FF Extension: (Restart) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\Restart@schuzak.jp.xpi [2017-03-13] [Legacy]
FF Extension: (Session Sync) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\session-sync@gabrielivanica.com.xpi [2020-03-25]
FF Extension: (uBlock Origin) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\uBlock0@raymondhill.net.xpi [2023-05-13]
FF Extension: (Youtube Watchmarker) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\yourect@coderect.com.xpi [2023-01-26]
FF Extension: (Adblock na Youtube™) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{0ac04bdb-d698-452f-8048-bcef1a3f4b0d}.xpi [2022-11-04]
FF Extension: (Microsoft Office - Dark Gray) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{1c41d9fb-f904-4d38-850f-074312f06e64}.xpi [2021-04-26]
FF Extension: (Calm Sunrise by MaDonna) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{389b9555-dbf1-4ac0-b302-336ff129fc63}.xpi [2021-05-31]
FF Extension: (Retro) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{399dfbcb-d765-45ca-8936-d90cf1557f14}.xpi [2021-04-26]
FF Extension: (LiteFox) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{39e34a35-15de-4e40-9353-d4ec1c91b9d2}.xpi [2021-04-26]
FF Extension: (To Write Music by MaDonna) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{6715bc23-094f-4a0d-ad34-7af051ef2239}.xpi [2022-10-20]
FF Extension: (Winters Delightful Chickadees by MaDonna) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{7789f753-dc9e-4cd0-aa6a-a1dcec5f5d00}.xpi [2021-12-25]
FF Extension: (Star Wars 08) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{8c4e0381-895e-4542-a9d1-5caf5dae7a9c}.xpi [2021-04-26]
FF Extension: (blues) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{915b37f4-4ba9-45fb-917b-1bf08c5da6f2}.xpi [2021-04-26]
FF Extension: (Color Connection by MaDonna) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{a377d33d-5a78-46ca-bf1a-639945eb7720}.xpi [2021-08-15]
FF Extension: (The Galaxy of Andromeda) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{c3a05878-f316-462f-89ea-2e10b356eb3a}.xpi [2021-04-26]
FF Extension: (No Name) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-05-03]
FF Extension: (Printania) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{e29fff07-5ec5-4417-9933-2a72f5569d91}.xpi [2021-04-26]
FF Extension: (Forest theme by grishiv) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\kje70kdo.default\Extensions\{ff3765dd-650e-4b21-bb5a-db0b3fa9b81d}.xpi [2021-04-26]
FF ProfilePath: C:\Users\Milan\AppData\Roaming\Moonchild Productions\Basilisk\Profiles\daneqr12.default-1581870394713 [2023-02-04]
FF Homepage: Moonchild Productions\Basilisk\Profiles\daneqr12.default-1581870394713 -> about:home
FF Session Restore: Moonchild Productions\Basilisk\Profiles\daneqr12.default-1581870394713 -> is enabled.
FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2022-12-02] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2023-02-13] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2023-01-31] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Milan\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Extension: (Ace Script) - C:\Users\Milan\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-12-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-12-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> E:\Program Files (x86)\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> E:\Program Files (x86)\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> E:\Program Files (x86)\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google Inc -> Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-01-24] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-01-24] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-02-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2016-02-29] (Nero AG -> Nero AG)
FF Plugin-x32: @software602.cz/602XML Filler -> E:\Program Files (x86)\Filler\npfiller.dll [2018-01-08] (Software602 a.s. -> Software602 a.s.)
FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> E:\Program Files (x86)\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-05-04] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: Web Components -> C:\Program Files (x86)\Web Components\npWebVideoPlugin.dll [2013-03-04] (HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2019-10-20] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\bd_js_config.js [2019-11-03] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2019-10-20] <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\bd_config.cfg [2019-11-03] <==== ATTENTION

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default [2023-05-26]
CHR Notifications: Default -> hxxps://keep.google.com; hxxps://www.facebook.com; hxxps://www39.orvilleandrea.pro
CHR StartupUrls: Default -> "hxxp://www.auto.cz/"
CHR DefaultSearchURL: Default -> hxxps://github.com/OsaSoft
CHR Session Restore: Default -> is enabled.
CHR Extension: (ProxFlow) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2021-05-13]
CHR Extension: (YouTube WATCHED. Classic View) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aendhplcpcfjlebhcjfiapmoaiekpkba [2022-02-05]
CHR Extension: (Image downloader - Imageye) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\agionbommeaifngbhincahgmoflcikhm [2023-01-17]
CHR Extension: (Free Download Manager) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2022-03-21]
CHR Extension: (PocketTube: Youtube PlayList Manager) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bplnofkhjdphoihfkfcddikgmecfehdd [2023-05-25]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-05-13]
CHR Extension: (uBlock Origin) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-05-13]
CHR Extension: (Adblock na Youtube™) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2023-05-25]
CHR Extension: (Tampermonkey) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-11-27]
CHR Extension: (Link Control) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dibehcgiapedhoehgpinmkdmahlheekc [2021-04-27]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2018-07-27]
CHR Extension: (Session Buddy) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2020-05-10]
CHR Extension: (Adobe Acrobat: nástroje pro úpravu, převod a podpis souborů PDF) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-05-26]
CHR Extension: (Tabs Outliner) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\eggkanocgddhmamlbiijnphhppkpkmkl [2021-04-10]
CHR Extension: (MyJDownloader Browser Extension) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2021-06-29]
CHR Extension: (Better Subscriptions for YouTube™) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkchdogohkjpnhfkganifkbbjcjofbjf [2023-05-13]
CHR Extension: (Bitdefender Wallet) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-11-10]
CHR Extension: (Dokumenty Google offline) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-25]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-05-13]
CHR Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmnjgijlmjgmimahnillepgcgeemffb [2023-05-25]
CHR Extension: (Bitdefender Anti-tracker) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2023-01-17]
CHR Extension: (Flash® Player for YouTube™) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lajdkhdcndkniopfefocbgbkofflagpm [2017-07-23]
CHR Extension: (Linkclump) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfpjkncokllnfokkgpkobnkbkmelfefj [2023-01-29]
CHR Extension: (Video DownloadHelper) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-14]
CHR Extension: (Clickable Links) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgamelhnfokapndfdodnmfiningckjia [2023-05-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Extension: (Watchmarker for Youtube) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfkkfbfdhomeagojoahjmkojeeepcolc [2023-01-29]
CHR Extension: (Slinky Kartáčovaný) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\piiokbhpgldooopjdacdondngonfljoc [2021-04-27]
CHR Profile: C:\Users\Milan\AppData\Local\Google\Chrome\User Data\System Profile [2020-07-02]
CHR HKU\S-1-5-21-2134351818-1356353880-2322332928-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]

Opera: 
=======
OPR Profile: C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable [2023-05-22]
OPR Notifications: Opera Stable -> hxxps://www.facebook.com; hxxps://www.youtube.com
OPR StartupUrls: Opera Stable -> "hxxps://www.stream.cz/kacin-zverinec-pro-deti/serie/epizody-6267","hxxps://www.stream.cz/serie-1#utm_source=www.seznam.cz&utm_medium=sekce-z-internetu"
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Youtube filter(hide watched)) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\cmbooeemhflolekegfmhfipfebjfjgmi [2022-10-29]
OPR Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\djkgjdfadjgdnpemeikcdgdfobpokfpb [2023-05-02]
OPR Extension: (Rich Hints Agent) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-03-11]
OPR Extension: (Opera Wallet) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-05-20]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-01-26]
OPR Extension: (uBlock Origin) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2023-05-02]
OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\Milan\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2023-04-27]
StartMenuInternet: (HKLM) OperaStable - E:\Program Files (x86)\Launcher.exe

Vivaldi: 
=======
VIV Profile: C:\Users\Milan\AppData\Local\Vivaldi\User Data\Default [2020-12-31]
VIV Extension: (Adobe Acrobat) - C:\Users\Milan\AppData\Local\Vivaldi\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-12-31]
VIV Extension: (Bitdefender Wallet) - C:\Users\Milan\AppData\Local\Vivaldi\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2020-12-06]
VIV Extension: (Ace Script) - C:\Users\Milan\AppData\Local\Vivaldi\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2020-12-06]
VIV Extension: (Chrome Media Router) - C:\Users\Milan\AppData\Local\Vivaldi\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-06]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s. -> Software602 a.s.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3896288 2023-01-19] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3729888 2023-01-19] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-04-24] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2195320 2018-10-07] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender)
R2 btwdins; C:\Program Files\ASUS\Bluetooth Software\btwdins.exe [960368 2012-12-30] (Broadcom Corporation -> Broadcom Corporation.)
R2 CdRomAccessAgentService; C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe [90112 2021-10-10] (Leawo Software) [File not signed]
R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe [9728 2022-08-06] (GuinpinSoft inc) [File not signed]
R2 Chemtable Startup Checking; C:\Program Files (x86)\Autorun Organizer\StartupCheckingService.exe [9924368 2018-09-03] (Konstantin Polyakov IP -> Chemtable Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11096432 2020-02-09] (Microsoft Corporation -> Microsoft Corporation)
R2 FreemakeVideoCapture; E:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [17792 2019-05-17] (Mixbyte Inc -> Ellora Assets Corp.)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [File not signed]
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21256 2018-04-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9246536 2023-05-08] (Malwarebytes Inc. -> Malwarebytes)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [645672 2023-05-18] (Bitdefender SRL -> Bitdefender)
U3 RegKill; C:\Windows\SysWOW64\Drivers\RegKill.sys [6400 2002-11-27] (Elaborate Bytes) [File not signed]
R2 SensorsVService; E:\Program Files (x86)\SensorsViewPro43\svservice.exe [935424 2011-12-02] () [File not signed]
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2014-01-05] (IDT, Inc.) [File not signed]
R2 SynoDrService; C:\Program Files (x86)\Synology Data Replicator  3\SynoDrServicex64.exe [384072 2013-10-09] (Synology Inc. -> )
R2 unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [297240 2023-03-03] (Reason Software Company Inc. -> Reason Software Company Inc.)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280088 2023-04-24] (Bitdefender SRL -> Bitdefender)
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248736 2014-02-25] (Synology Inc. -> ) [File not signed]
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-04-24] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
S3 Microsoft SharePoint Workspace Audit Service; "E:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE" /auditservice [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 anvsnddrv; C:\WINDOWS\system32\drivers\anvsnddrv.sys [33872 2012-05-17] (AnvSoft Co., Ltd. -> AnvSoft Inc.)
R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [5579176 2023-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [798128 2022-11-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2021-04-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-02-28] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL)
S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [39840 2023-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R4 BioNTDrv; C:\Program Files\Paragon Software\Hard Disk Manager 25 Anniversary LE\program\BioNTDrv.SYS [38192 2018-01-31] (Paragon Software GmbH -> Paragon Software GmbH)
R2 ei2c; C:\windows\system32\drivers\ei2c.sys [20784 2021-04-30] (AOC International (Europe) GmbH -> Nicomsoft Ltd.)
S2 ElbyCDIO; C:\Windows\SysWOW64\Drivers\ElbyCDIO.sys [16320 2002-11-29] (Elaborate Bytes AG) [File not signed]
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-06-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R0 EUDSKCP; C:\WINDOWS\System32\drivers\EuDskCp.sys [76936 2022-04-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
R1 EUEUMDK; C:\WINDOWS\system32\drivers\EuEumDk.sys [24200 2022-04-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
R1 Gemma; C:\WINDOWS\System32\DRIVERS\Gemma.sys [1344920 2023-04-24] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
R2 Ignis; C:\WINDOWS\System32\DRIVERS\ignis.sys [185312 2020-12-10] (Bitdefender SRL -> Bitdefender)
R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2020-04-07] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
S3 ioFakDrv; C:\WINDOWS\System32\drivers\ioFakDrv.sys [35928 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
S3 ioFakMap; C:\WINDOWS\System32\drivers\ioFakMap.sys [24664 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [44448 2014-10-12] (EATON POWER QUALITY SAS -> hxxp://libusb-win32.sourceforge.net)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-05-08] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198584 2023-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77752 2023-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181816 2023-05-26] (Malwarebytes Inc. -> Malwarebytes)
S3 MDA_NTDRV; C:\WINDOWS\system32\MDA_NTDRV.sys [21208 2013-02-25] (北京铠信神州科技有限责任公司 -> )
R2 mi2c; C:\windows\system32\drivers\mi2c.sys [20784 2016-07-27] (AOC International (Europe) GmbH -> Nicomsoft Ltd.)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
R3 NVHDA; C:\WINDOWS\system32\drivers\nvhda64v.sys [129960 2021-06-09] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [36865432 2021-09-16] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R1 sensorsview; E:\Program Files (x86)\SensorsViewPro43\drv\sensorsview32_64.sys [14544 2008-07-26] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2014-01-05] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
R2 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633248 2023-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R1 UimBus; C:\WINDOWS\System32\drivers\uimbus.sys [109504 2018-11-27] (Paragon Software GmbH -> Paragon Software GmbH)
R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uimdevim.sys [46016 2018-11-27] (Paragon Software GmbH -> Paragon Software GmbH)
R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [481184 2023-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
S3 EUDSKCP0; \??\C:\WINDOWS\system32\drivers\EUDSKCP0.sys [X]
S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-05-26 17:33 - 2023-05-26 17:33 - 000050438 _____ C:\Users\Milan\Desktop\FRST.txt
2023-05-26 17:31 - 2023-05-26 17:31 - 002382848 _____ (Farbar) C:\Users\Milan\Desktop\FRST64.exe
2023-05-26 13:35 - 2023-05-26 14:09 - 000000000 ____D C:\Users\Milan\Documents\Music Collector
2023-05-26 13:35 - 2023-05-26 13:35 - 000000808 _____ C:\Users\Public\Desktop\Music Collector.lnk
2023-05-26 13:35 - 2023-05-26 13:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Collectorz.com
2023-05-26 12:45 - 2023-05-26 12:46 - 035878216 _____ (Collectorz.com ) C:\Users\Milan\Downloads\musiccollectorsetup2303.exe
2023-05-26 12:30 - 2023-05-26 12:30 - 000181816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2023-05-26 11:38 - 2023-05-26 11:38 - 000103076 _____ C:\ProgramData\agent.update.1685093895.bdinstall.v2.bin
2023-05-26 11:37 - 2023-05-26 11:37 - 000000000 ___HD C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\STARTUP-
2023-05-26 11:37 - 2023-05-26 11:37 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-
2023-05-25 22:58 - 2023-05-25 22:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2023-05-25 22:47 - 2023-05-25 22:47 - 003253544 _____ (TechPowerUp (www.techpowerup.com)) C:\Users\Milan\Downloads\MemTest64.exe
2023-05-25 22:46 - 2023-05-25 22:46 - 000334036 _____ C:\Users\Milan\Downloads\mt86plus_6.20_USB_Installer.exe
2023-05-25 12:07 - 2023-05-25 12:08 - 156388458 _____ C:\Users\Milan\Desktop\iWHjLOcTY1YzrpjNc4lY_25_cd458c841530a007a08a03ed8b4450b0_video_1080p_converted.mp4
2023-05-24 00:50 - 2023-05-24 00:50 - 002046587 _____ (AbyssMedia.com ) C:\Users\Milan\Downloads\waveditor.exe
2023-05-19 20:46 - 2023-05-19 20:47 - 004107339 _____ C:\Users\Milan\Downloads\uzavírky Milín a okolí vyber na web (k 3.5.2023).xlsx
2023-05-13 13:37 - 2023-05-13 15:07 - 000004478 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-05-13 13:37 - 2023-05-13 13:37 - 000002086 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2023-05-12 10:24 - 2023-05-01 11:27 - 000065656 _____ (Kerish Products) C:\WINDOWS\SysWOW64\GPUTemp.dll
2023-05-08 22:31 - 2023-05-26 12:31 - 000000000 ____D C:\Users\Milan\AppData\Local\Malwarebytes
2023-05-06 21:50 - 2023-05-06 21:54 - 000003814 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1656874822
2023-05-06 21:50 - 2023-05-06 21:50 - 000000784 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2023-05-01 11:27 - 2023-05-01 11:27 - 000065656 _____ (Kerish Products) C:\WINDOWS\system32\GPUTemp.dll
2023-04-29 22:44 - 2023-05-26 11:33 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Mp3tag

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-05-26 17:33 - 2020-06-27 23:51 - 000000000 ____D C:\FRST
2023-05-26 17:02 - 2021-03-07 18:45 - 000000000 ____D C:\Users\Milan\AppData\Roaming\WhatsApp
2023-05-26 16:50 - 2014-04-30 22:12 - 000000000 ____D C:\Program Files (x86)\Google
2023-05-26 15:04 - 2022-02-11 21:44 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-05-26 14:56 - 2014-04-30 21:23 - 000000000 ____D C:\Users\Milan\Desktop\NÁSTROJE
2023-05-26 14:52 - 2014-05-04 19:13 - 000000000 ____D C:\Users\Milan\AppData\Roaming\XnViewMP
2023-05-26 14:33 - 2014-04-28 21:19 - 000003600 _____ C:\WINDOWS\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2134351818-1356353880-2322332928-1001
2023-05-26 13:20 - 2014-05-05 21:22 - 000000000 ____D C:\Hobby-téka
2023-05-26 12:55 - 2014-04-29 01:24 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2023-05-26 12:50 - 2019-10-03 19:22 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2023-05-26 12:34 - 2014-03-18 17:33 - 000032628 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-05-26 12:34 - 2014-03-18 16:54 - 000021440 _____ C:\WINDOWS\system32\perfh005.dat
2023-05-26 12:34 - 2014-03-18 16:54 - 000008504 _____ C:\WINDOWS\system32\perfc005.dat
2023-05-26 12:34 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf
2023-05-26 12:32 - 2017-10-26 20:17 - 000003692 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2023-05-26 12:31 - 2022-06-25 12:46 - 000000000 ____D C:\Users\Milan\AppData\Local\Spotify
2023-05-26 12:30 - 2022-06-25 12:45 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Spotify
2023-05-26 12:30 - 2014-04-20 01:12 - 000000000 ____D C:\ProgramData\NVIDIA
2023-05-26 12:30 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-05-26 11:45 - 2014-04-29 20:29 - 000000000 ____D C:\Users\Milan
2023-05-26 11:38 - 2017-03-25 01:10 - 000000000 ____D C:\Program Files\Bitdefender Agent
2023-05-26 11:36 - 2018-05-26 15:17 - 000000000 ____D C:\Program Files\Mozilla Firefox
2023-05-26 11:36 - 2014-04-28 21:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2023-05-26 00:41 - 2012-07-26 10:12 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-05-26 00:06 - 2014-12-24 20:37 - 000000000 ____D C:\Users\Milan\AppData\Roaming\foobar2000
2023-05-26 00:01 - 2014-04-29 21:13 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Microsoft\Excel
2023-05-25 23:39 - 2014-04-29 21:48 - 000000000 ____D C:\Users\Milan\AppData\Local\JDownloader v2.0
2023-05-25 22:58 - 2014-04-28 21:31 - 000000915 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2023-05-25 20:00 - 2013-08-22 15:25 - 000262144 ___SH C:\WINDOWS\system32\config\ELAM
2023-05-25 19:56 - 2021-06-27 00:31 - 000000643 _____ C:\Users\Milan\Desktop\text.txt
2023-05-25 18:38 - 2014-04-29 21:30 - 000000000 ____D C:\Users\Milan\Documents\Soubory aplikace Outlook
2023-05-25 17:40 - 2020-04-17 18:46 - 000000000 ____D C:\Users\Milan\AppData\Roaming\vlc
2023-05-24 01:05 - 2021-09-05 15:33 - 000000000 ____D C:\Users\Milan\AppData\Roaming\audacity
2023-05-19 22:39 - 2020-04-23 00:45 - 000608256 ___SH C:\Users\Milan\Desktop\Thumbs.db
2023-05-19 20:47 - 2014-04-28 21:12 - 000000000 ____D C:\Users\Milan\AppData\Local\Packages
2023-05-19 14:05 - 2014-04-30 22:12 - 000003556 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-05-18 23:45 - 2014-04-30 22:12 - 000003682 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-05-14 10:18 - 2013-08-22 15:25 - 000262144 ___SH C:\WINDOWS\system32\config\BBI
2023-05-13 13:13 - 2014-04-29 18:50 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-05-13 13:07 - 2014-04-29 18:50 - 159583304 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-05-13 12:54 - 2020-07-30 22:59 - 000003414 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-05-13 12:53 - 2018-07-27 22:17 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2023-05-13 10:59 - 2020-07-30 22:59 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-05-08 17:13 - 2023-03-12 15:51 - 000000000 ____D C:\ProgramData\CanonIJPLM
2023-05-06 22:00 - 2020-04-08 17:56 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2023-05-06 22:00 - 2017-05-09 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2023-05-06 10:24 - 2021-03-07 18:45 - 000000000 ____D C:\Users\Milan\AppData\Local\WhatsApp
2023-05-01 18:48 - 2015-11-06 20:54 - 000000000 ____D C:\Users\Milan\AppData\Roaming\XYplorer
2023-04-29 22:43 - 2014-05-08 21:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag

==================== Files in the root of some directories ========

2017-10-07 17:25 - 2017-10-07 17:25 - 000195296 ____N () C:\Users\Milan\comcat5.dll
2020-06-23 20:28 - 2022-04-23 20:49 - 000000793 _____ () C:\Program Files (x86)\installer_prefs.json
2020-06-23 20:28 - 2022-04-23 20:49 - 000000793 _____ () C:\Program Files (x86)\installer_prefs.json.backup
2022-04-23 20:49 - 2022-04-20 08:25 - 001428224 _____ (Opera Software) C:\Program Files (x86)\opera_new.exe
2020-06-23 20:28 - 2020-06-26 18:14 - 000001160 _____ () C:\Program Files (x86)\server_tracking_data
2017-08-02 20:18 - 2017-08-02 20:20 - 000099384 ____N () C:\Users\Milan\AppData\Roaming\inst.exe
2017-08-02 20:18 - 2017-08-02 20:20 - 000007859 ____N () C:\Users\Milan\AppData\Roaming\pcouffin.cat
2017-08-02 20:18 - 2017-08-02 20:20 - 000001167 ____N () C:\Users\Milan\AppData\Roaming\pcouffin.inf
2017-08-02 20:18 - 2017-08-02 20:20 - 000000033 ____N () C:\Users\Milan\AppData\Roaming\pcouffin.log
2017-08-02 20:18 - 2017-08-02 20:20 - 000082816 ____N (VSO Software) C:\Users\Milan\AppData\Roaming\pcouffin.sys
2018-10-07 20:41 - 2018-10-07 20:41 - 000000000 ____N () C:\Users\Milan\AppData\Local\oobelibMkey.log
2014-11-21 02:36 - 2022-03-20 11:32 - 000007603 _____ () C:\Users\Milan\AppData\Local\resmon.resmoncfg

==================== FLock ==============================

2018-03-31 17:12 C:\WINDOWS\cscc.dat
2018-03-31 17:12 C:\WINDOWS\infpub.dat

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2023-05-26 05:46
==================== End of FRST.txt ========================