Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28.03.2024
Ran by tomas (administrator) on DESKTOP-1K1E76N (30-03-2024 11:11:02)
Running from E:\Install\FRST64.exe
Loaded Profiles: tomas
Platform: Microsoft Windows 10 Pro Version 22H2 19045.4170 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager
(C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ai.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <31>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\tomas\AppData\Local\Microsoft\OneDrive\24.050.0310.0001\Microsoft.SharePoint.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) E:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Grass Valley K.K. -> Grass Valley K.K.) E:\Program Files\Grass Valley\EDIUS 7\GV DownloadAgent\GVDownloadAgent.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_618b150331c5f4ad\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe
(services.exe ->) (Synology Inc. -> ) [File not signed] C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3022640 2023-09-25] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [599056 2021-10-28] (Razer USA Ltd. -> Razer Inc.) [File not signed]
HKLM-x32\...\Run: [Ozone Strike Pro Driver] => E:\Program Files (x86)\Ozone Strike Pro Driver\Monitor.exe [479232 2013-08-19] () [File not signed]
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26327864 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [MSIRegister] => C:\Program Files (x86)\MSI\MSIRegister\MSIRegister.exe [1259008 2021-08-12] (Micro-Star INT'L CO., LTD.) [File not signed]
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1092576 2023-05-01] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [CCleaner Smart Cleaning] => E:\Program Files\CCleaner\CCleaner64.exe [44486048 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11504544 2024-03-18] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [MicrosoftEdgeAutoLaunch_6D538005D46831629E9F26A46D6FFC90] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4063800 2024-03-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3593992 2024-02-26] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [Microsoft.Lists] => C:\Users\tomas\AppData\Local\Microsoft\OneDrive\24.050.0310.0001\Microsoft.SharePoint.exe [547856 2024-03-28] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [GoogleChromeAutoLaunch_37BC9AF00011FDD756AC22C940081E48] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [2773280 2024-03-26] (Google LLC -> Google LLC)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [GoogleUpdaterTaskUser124.0.6359.0] => C:\Users\tomas\AppData\Local\Google\GoogleUpdater\124.0.6359.0\updater.exe [4749088 2024-03-15] (Google LLC -> Google LLC)
HKU\S-1-5-21-1194847968-3581813826-620916984-1001\...\Run: [com.squirrel.slack.slack] => C:\Users\tomas\AppData\Local\slack\slack.exe [310576 2024-03-23] (Slack Technologies, LLC -> Slack Technologies Inc.)
HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3593992 2024-02-26] (Razer USA Ltd. -> Razer Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\123.0.6312.86\Installer\chrmstp.exe [2024-03-30] (Google LLC -> Google LLC)
Startup: C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2021-11-29]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\G-Ignition Ver3.0.2.lnk [2020-12-28]
ShortcutTarget: G-Ignition Ver3.0.2.lnk -> C:\Program Files (x86)\EIZO\G-Ignition\Gignition.exe (EIZO Corporation -> EIZO Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GV LicenseManager.lnk [2020-12-27]
ShortcutTarget: GV LicenseManager.lnk -> C:\Program Files (x86)\Grass Valley\GV LicenseManager\AppMaintainer.exe (Grass Valley K.K. -> Grass Valley K.K.)
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {4A608CA8-4144-4702-A6A4-8EC931437CD9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1547208 2024-01-31] (Adobe Inc. -> Adobe Inc.)
Task: {220A3403-7E7C-4F06-9A35-EF3DD8C9934B} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {DCC93E94-9AFA-4480-A377-597C254716AD} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [4434400 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {D051CA3D-BC63-4793-B27D-CEBCA1332F80} - System32\Tasks\CCleaner Update => E:\Program Files\CCleaner\CCUpdate.exe [714256 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {0059D95D-6B39-4672-B78E-C0B2A6741D88} - System32\Tasks\CCleanerCrashReporting => E:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "E:\Program Files\CCleaner\LOG" --programpath "E:\Program Files\CCleaner" --guid "0eeae831-c31b-4674-ab93-2057c4a3d2d1" --version "6.19.10858" --silent
Task: {53905D2E-0241-46E0-A368-753151A2125D} - System32\Tasks\CCleanerSkipUAC - tomas => E:\Program Files\CCleaner\CCleaner.exe [37458848 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {7DBCABC0-8BD7-4119-8CB7-7E7F8E9D410F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-27] (Google LLC -> Google LLC)
Task: {715130F7-01DB-4FF6-B833-50AEBFB3794B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-27] (Google LLC -> Google LLC)
Task: {369930FE-FEE8-4C7F-B23C-07DE492420F1} - System32\Tasks\GoogleUser\GoogleUpdater\GoogleUpdaterTaskUser124.0.6359.0{2B0BF592-9549-4A71-9BB2-3FCA480B52BF} => C:\Users\tomas\AppData\Local\Google\GoogleUpdater\124.0.6359.0\updater.exe [4749088 2024-03-15] (Google LLC -> Google LLC)
Task: {4925FC0D-E5EE-4103-ABFF-577D7181209B} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28491744 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {998D350F-5F4B-4D57-8AB5-E367EBFF8392} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28491744 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {755B74C9-C3E0-45A2-9EB5-AC8398A46F61} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309184 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {9FC980D7-7C74-4583-9D96-B7F47A654562} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309184 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {F903C90B-EF8D-4082-8545-18C96BA6EB80} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [170136 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {5CFE1E66-B8D3-4783-BE7B-E578FA6BF49A} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4446400 2024-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {42A32A9B-10AF-4541-9757-6C75ED91CD81} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe [1650024 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F177B908-D7AB-4133-A502-4FEC0D2C6D3B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe [1650024 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6F08BA18-C259-43B4-A97F-E4B57DD3EFEA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe [1650024 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A1FC7C69-449A-4CD7-A48B-1372640C9E4E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MpCmdRun.exe [1650024 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1E5AE88-E0B7-4B64-8F02-42665C989B82} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3354296 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {F24119A2-B8EA-4936-8C7B-7FBACA0F7AC8} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {420BBDFE-0183-45A5-82F5-9C92198FD54B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {6186C5D5-AE81-45D3-A5BB-967A28363B94} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E1ACC570-183D-4536-A066-E7A8844992DC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {DA7FCF03-8A96-4311-9DC1-76E69041614B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AC3A74CD-9089-4D79-B7F5-7CA10604373C} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {469A5B8C-353C-47D9-82E9-710AE40BFA21} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E34840D5-3C2D-4F31-9F11-6F5FEB86A1A9} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {721F83C0-BF2B-46DD-8BC3-00B262AD3A20} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AC87E038-62B4-418A-859B-D9437BC9CB33} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8725D5ED-58BD-4C7F-9B8A-AC9316274486} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [121605552 2022-05-04] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\/AUTOHIDE

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => E:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 217.31.204.130
Tcpip\..\Interfaces\{8e6350b1-7aa7-4ab4-b647-94449c494b70}: [DhcpNameServer] 8.8.8.8 217.31.204.130
Tcpip\..\Interfaces\{e91664bd-e905-4730-a312-cdb9844177aa}: [DhcpNameServer] 192.168.104.39

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\tomas\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-30]
Edge DownloadDir: Default -> D:\Dokumenty\Tomas
Edge Notifications: Default -> hxxps://riverside.fm
Edge Extension: (Dokumenty Google offline) - C:\Users\tomas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-29]
Edge Extension: (Edge relevant text changes) - C:\Users\tomas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Microsoft Edge DevTools Enhancements) - C:\Users\tomas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kfbdpdaobnofkbopebjglnaadopfikhh [2023-04-05]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-03-18] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2023-05-01] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [File not signed]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2023-05-01] (Adobe Inc. -> Adobe Systems)

Chrome: 
=======
CHR DefaultProfile: Profile 4
CHR Profile: C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-07-30]
CHR Profile: C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4 [2024-03-30]
CHR DownloadDir: D:\Dokumenty\Tomas\Download
CHR Notifications: Profile 4 -> hxxps://fr1.badoo.com; hxxps://meet.google.com
CHR NewTab: Profile 4 ->  Active:"chrome-extension://akimgimeeoiognljlfchpbkpfbmeapkh/index.html"
CHR Extension: (Google Arts & Culture) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\akimgimeeoiognljlfchpbkpfbmeapkh [2023-01-26]
CHR Extension: (AuthoredUp – No. 1 LinkedIn ™ Content Tool) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\dkkmpkpjimkollpfgbbglcikcmgmdlhn [2024-03-14]
CHR Extension: (Adobe Acrobat: nástroje pro úpravu, převod a podpis souborů PDF) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-03-21]
CHR Extension: (Meta Pixel Helper) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2024-03-02]
CHR Extension: (Insight Tag Checker) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\feeednoflloccfhgoiiohjammanphoef [2023-10-14]
CHR Extension: (PDF Compressor - Smallpdf.com) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gealeehfjeflamgnohlhabaefbfjfjgc [2022-06-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-21]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-03-21]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-01-13]
CHR Extension: (Video Downloader Plus) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2024-03-17]
CHR Extension: (Excel Online) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\iljnkagajgfdmfnnidjijobijlfjfgnb [2022-06-24]
CHR Extension: (Twitter Pixel Helper) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jepminnlebllinfmkhfbkpckogoiefpd [2023-06-14]
CHR Extension: (Tag Assistant Companion) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jmekfmbnaedfebfnmakmokmlfpblbfdm [2024-03-23]
CHR Extension: (Tango: Create how-to guides with screenshots) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\lggdbpblkekjjbobadliahffoaobaknh [2024-03-12]
CHR Extension: (Video Converter) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mcjjnhgakghmggnimjkldjmmpabhnhne [2022-06-24]
CHR Extension: (Shazam: Hledejte názvy skladeb v prohlížeči) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2024-01-05]
CHR Extension: (Video Downloader PLUS) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2024-03-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-24]
CHR Extension: (PDF FlipBook / Viewer : 3D) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ohckmemlgcohcakakmnpjchckcajpmdi [2022-09-27]
CHR Extension: (Image Size Info) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\oihdhfbfoagfkpcncinlbhfdgpegcigf [2024-02-18]
CHR Extension: (Netflix Party is now Teleparty) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\oocalimimngaihdkbihfgmpkcpnmlaoa [2024-03-21]
CHR Extension: (Downloader for OnlyFans.com) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pdbbabjcnanbkimdgcdfbnghhmchomnh [2022-08-27]
CHR Extension: (Audio Cutter) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2022-06-24]
CHR Profile: C:\Users\tomas\AppData\Local\Google\Chrome\User Data\System Profile [2022-12-30]
CHR HKU\S-1-5-21-1194847968-3581813826-620916984-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-01-31] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [928224 2023-05-01] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [4555744 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 CCleanerPerformanceOptimizerService; E:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14097992 2024-03-20] (Microsoft Corporation -> Microsoft Corporation)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [12094568 2024-02-24] (Electronic Arts, Inc. -> Electronic Arts)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-11-16] (Epic Games Inc. -> Epic Games, Inc.)
S2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [46776 2018-09-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2027192 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 GVDownloadAgentService; E:\Program Files\Grass Valley\EDIUS 7\GV DownloadAgent\GVDownloadAgent.exe [68536 2017-02-07] (Grass Valley K.K. -> Grass Valley K.K.)
S3 MBAMService; E:\Program Files (x86)\MalwareBytes\MBAMService.exe [8677120 2022-06-26] (Malwarebytes Inc. -> Malwarebytes)
S2 MSIREGISTER_MR; C:\Program Files (x86)\MSI\MSIRegister\MSIRegisterService.exe [2023224 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [86688 2018-07-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2210616 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_618b150331c5f4ad\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-03-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OfficeSvcManagerAddons; C:\Windows\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [22384 2023-11-01] (Microsoft Windows -> Microsoft Corporation)
S2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2023-12-25] (Even Balance, Inc. -> )
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [2170800 2024-01-12] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [306096 2024-01-12] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1361360 2023-03-06] (Razer USA Ltd. -> Razer Inc.)
S2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256264 2023-02-10] (Razer USA Ltd. -> Razer Inc)
S2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [298248 2024-02-26] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; D:\Program Files\Rockstar Games\Launcher\RockstarService.exe [5209072 2024-02-18] (Rockstar Games, Inc. -> Rockstar Games)
S2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [538424 2023-11-09] (Razer USA Ltd. -> Razer Inc.)
S2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [360368 2022-05-04] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522184 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ss_conn_launcher_service; C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-11-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [919992 2020-11-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.)
R2 TeamViewer; E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [18273080 2024-03-05] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248736 2015-05-11] (Synology Inc. -> ) [File not signed]
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9402904 2023-09-25] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\NisSrv.exe [3191272 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24020.7-0\MsMpEng.exe [133688 2024-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 busenum; C:\Windows\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 EneIo; C:\Windows\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 HWiNFO_163; C:\Windows\system32\drivers\HWiNFO64A_163.SYS [55824 2021-11-21] (Microsoft Windows Hardware Compatibility Publisher -> REALiX(tm))
R3 I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2022-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239544 2022-06-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 NTIOLib_MBAPI; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S3 Revoflt; C:\Windows\System32\DRIVERS\revoflt.sys [38400 2021-11-17] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
R3 RzCommon; C:\Windows\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0084; C:\Windows\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
S3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [51736 2016-06-23] (Razer USA Ltd. -> Razer Inc)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [21460800 2023-09-25] (Riot Games, Inc. -> Riot Games, Inc.)
R0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20928 2024-03-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\Windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [603416 2024-03-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105752 2024-03-14] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-03-30 11:10 - 2024-03-30 11:11 - 000000000 ____D C:\FRST
2024-03-30 11:08 - 2024-03-30 11:08 - 000002185 _____ C:\Users\tomas\Downloads\AdwCleaner[C00].txt
2024-03-30 11:04 - 2024-03-30 11:07 - 000000000 ____D C:\AdwCleaner
2024-03-28 10:57 - 2024-03-28 10:57 - 000000000 ___HD C:\OneDriveTemp
2024-03-25 18:21 - 2024-03-25 18:21 - 000000058 _____ C:\Users\tomas\Desktop\zadani.txt
2024-03-21 08:28 - 2024-03-21 08:28 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Ads Editor
2024-03-14 08:59 - 2024-03-14 08:59 - 000019530 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-03-14 08:59 - 2024-03-14 08:59 - 000019530 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-03-14 08:54 - 2024-03-14 08:54 - 000000000 ___HD C:\$WinREAgent
2024-03-09 18:40 - 2024-03-02 17:03 - 002031360 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-03-09 18:40 - 2024-03-02 17:03 - 002031360 _____ C:\Windows\system32\vulkaninfo.exe
2024-03-09 18:40 - 2024-03-02 17:03 - 001578752 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-03-09 18:40 - 2024-03-02 17:03 - 001578752 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2024-03-09 18:40 - 2024-03-02 17:03 - 001487904 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2024-03-09 18:40 - 2024-03-02 17:03 - 001445120 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2024-03-09 18:40 - 2024-03-02 17:03 - 001445120 _____ C:\Windows\system32\vulkan-1.dll
2024-03-09 18:40 - 2024-03-02 17:03 - 001295104 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-03-09 18:40 - 2024-03-02 17:03 - 001295104 _____ C:\Windows\SysWOW64\vulkan-1.dll
2024-03-09 18:40 - 2024-03-02 17:03 - 001226760 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2024-03-09 18:40 - 2024-03-02 17:00 - 001045520 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2024-03-09 18:40 - 2024-03-02 17:00 - 000669704 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2024-03-09 18:40 - 2024-03-02 17:00 - 000505360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 002173560 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 001625736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 001541648 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 001199752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 001024032 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2024-03-09 18:40 - 2024-03-02 16:59 - 000841840 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2024-03-09 18:40 - 2024-03-02 16:59 - 000786952 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 016033824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 012928032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 006780960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 005772808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 003721752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2024-03-09 18:40 - 2024-03-02 16:58 - 000459808 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2024-03-09 18:40 - 2024-03-02 16:57 - 005913096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2024-03-09 18:40 - 2024-03-02 16:57 - 000853640 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2024-03-09 18:40 - 2024-03-02 00:04 - 000119419 _____ C:\Windows\system32\nvinfo.pb
2024-03-09 16:39 - 2024-03-09 16:39 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-03-08 16:19 - 2024-03-08 16:19 - 000000067 _____ C:\Users\tomas\Desktop\ukoly candy hoover.txt
2024-02-29 10:49 - 2024-02-29 10:49 - 000000000 ____D C:\Program Files\Webex

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-03-30 11:11 - 2020-12-27 19:02 - 000000000 ____D C:\Users\tomas\AppData\Local\D3DSCache
2024-03-30 11:09 - 2021-12-18 01:34 - 000000000 ____D C:\Windows\SystemTemp
2024-03-30 11:09 - 2020-12-27 16:55 - 000000000 ____D C:\Program Files (x86)\Google
2024-03-30 11:07 - 2022-07-08 12:39 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Slack
2024-03-30 11:07 - 2021-09-07 17:17 - 000000000 ____D C:\ProgramData\NVIDIA
2024-03-30 11:07 - 2020-12-27 18:27 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Teams
2024-03-30 11:06 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-03-30 10:43 - 2020-11-18 23:46 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-03-30 08:48 - 2021-12-01 17:51 - 000004210 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{1AFF1F99-FF96-4B09-99A1-2BC1BA58D3E4}
2024-03-30 08:46 - 2020-12-27 16:55 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-03-30 08:45 - 2020-12-27 13:22 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2024-03-30 08:45 - 2020-12-27 13:22 - 000000000 __SHD C:\Users\tomas\IntelGraphicsProfiles
2024-03-30 08:45 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-03-30 08:45 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2024-03-29 22:39 - 2020-12-27 13:21 - 000000000 ____D C:\Users\tomas\AppData\Local\Packages
2024-03-29 22:39 - 2020-11-19 00:48 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-03-29 12:20 - 2020-12-27 13:12 - 000008192 ___SH C:\DumpStack.log.tmp
2024-03-29 12:20 - 2020-11-19 00:46 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-03-29 12:20 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2024-03-29 12:15 - 2021-04-11 14:52 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2024-03-28 12:30 - 2021-04-12 13:54 - 000000000 ____D C:\Users\tomas\AppData\Roaming\TIDAL
2024-03-28 11:08 - 2020-12-27 17:02 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Excel
2024-03-28 10:57 - 2021-12-12 23:48 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1194847968-3581813826-620916984-1001
2024-03-28 10:57 - 2020-12-27 13:23 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1194847968-3581813826-620916984-1001
2024-03-28 10:57 - 2020-12-27 13:23 - 000000000 ___RD C:\Users\tomas\OneDrive
2024-03-28 10:57 - 2020-12-27 13:18 - 000002377 _____ C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-03-28 08:28 - 2020-12-27 17:01 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Word
2024-03-28 08:13 - 2021-09-07 17:17 - 000000000 ____D C:\Users\tomas\AppData\Local\NVIDIA
2024-03-26 10:49 - 2022-12-30 13:00 - 000000000 ____D C:\Users\tomas\AppData\Roaming\vlc
2024-03-25 14:33 - 2020-11-19 00:48 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-03-25 14:33 - 2020-11-19 00:48 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-03-24 21:02 - 2020-12-27 17:15 - 000000000 ____D C:\Users\tomas\AppData\Roaming\KeePass
2024-03-24 18:48 - 2021-03-25 19:54 - 000000000 ____D C:\Users\tomas\AppData\Local\CrashDumps
2024-03-24 18:17 - 2021-02-20 11:59 - 000000000 ____D C:\Users\tomas\AppData\Local\Ubisoft Game Launcher
2024-03-23 17:32 - 2021-01-03 13:33 - 000000000 ____D C:\Users\tomas\AppData\Roaming\discord
2024-03-23 16:47 - 2021-01-03 13:33 - 000000000 ____D C:\Users\tomas\AppData\Local\Discord
2024-03-23 10:47 - 2021-01-03 13:33 - 000002227 _____ C:\Users\tomas\Desktop\Discord.lnk
2024-03-23 09:35 - 2022-10-14 13:51 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-03-23 09:35 - 2021-03-22 14:04 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-03-23 09:32 - 2022-07-08 12:39 - 000002201 _____ C:\Users\tomas\Desktop\Slack.lnk
2024-03-23 09:32 - 2022-07-08 12:39 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies Inc
2024-03-23 09:32 - 2022-07-08 12:39 - 000000000 ____D C:\Users\tomas\AppData\Local\slack
2024-03-22 10:09 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2024-03-20 08:31 - 2020-12-27 16:53 - 000000000 ____D C:\Program Files\Microsoft Office
2024-03-17 11:44 - 2022-10-18 20:06 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Star Stable Online
2024-03-17 10:09 - 2022-09-09 17:10 - 000000000 ____D C:\Users\tomas\AppData\Roaming\com.adobe.dunamis
2024-03-16 18:30 - 2023-04-14 16:35 - 000000000 ____D C:\ProgramData\EA Desktop
2024-03-14 22:26 - 2020-11-18 23:46 - 000475120 _____ C:\Windows\system32\FNTCACHE.DAT
2024-03-14 22:24 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2024-03-14 22:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2024-03-14 22:24 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing
2024-03-14 09:02 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2024-03-14 08:59 - 2020-11-19 00:48 - 003017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-03-14 08:50 - 2020-12-27 13:29 - 000000000 ____D C:\Windows\system32\MRT
2024-03-14 08:47 - 2020-12-27 13:29 - 190470136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-03-14 08:28 - 2020-11-19 00:46 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-03-13 20:38 - 2020-12-27 18:21 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update
2024-03-12 22:19 - 2023-09-20 08:28 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Basecamp 3
2024-03-11 10:40 - 2020-12-27 15:44 - 000000000 ____D C:\Users\tomas\AppData\Local\PlaceholderTileLogoFolder
2024-03-10 13:20 - 2023-07-22 11:50 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2024-03-09 18:54 - 2020-11-19 00:55 - 001693568 _____ C:\Windows\system32\PerfStringBackup.INI
2024-03-09 18:54 - 2019-12-07 15:43 - 000716874 _____ C:\Windows\system32\perfh005.dat
2024-03-09 18:54 - 2019-12-07 15:43 - 000145052 _____ C:\Windows\system32\perfc005.dat
2024-03-09 18:24 - 2023-10-06 07:43 - 000000000 ____D C:\Program Files\RUXIM
2024-03-08 16:53 - 2023-10-10 16:28 - 000002364 _____ C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams classic.lnk
2024-03-07 11:46 - 2020-12-27 22:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2024-03-06 22:05 - 2023-02-19 19:22 - 000000001 _____ C:\Windows\vgkbootstatus.dat
2024-03-02 16:56 - 2024-02-03 17:55 - 006943440 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2024-03-02 16:56 - 2024-02-03 17:55 - 006031080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2024-02-29 10:49 - 2024-02-26 12:12 - 000000000 ____D C:\Users\tomas\AppData\Local\WebEx

==================== Files in the root of some directories ========

2021-07-07 08:54 - 2023-09-07 10:01 - 000001456 _____ () C:\Users\tomas\AppData\Local\Adobe Save for Web 13.0 Prefs
2021-04-11 18:35 - 2021-04-11 18:35 - 000000000 _____ () C:\Users\tomas\AppData\Local\oobelibMkey.log
2021-04-13 15:17 - 2021-08-27 19:00 - 000007680 _____ () C:\Users\tomas\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================