Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prolpmeny heslo na Mail a nejaky ucty.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
GagnerCZ
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 15 zář 2008 16:16

Prolpmeny heslo na Mail a nejaky ucty.

#1 Příspěvek od GagnerCZ »

Dobry den,

prisel mi mail o prolomeni me emaliove schrance a zmenili se nejaky hesla na ruznych uctech. Poprosil bych jen kontrolu jestlli nemam v PC nejaky sledovaci programy. Hesla uz menim.

Dekuju za kontrolu

FRST:
==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngineProcess.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe
(C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\NZXT CAM\NZXT CAM.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe <4>
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE.exe
(D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(Discord Inc. -> Discord Inc.) C:\Users\gagne\AppData\Local\Discord\app-1.0.9005\Discord.exe <6>
(DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atieclxx.exe
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(explorer.exe ->) (NZXT, Inc. -> NZXT, Inc.) C:\Program Files\NZXT CAM\NZXT CAM.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Developer Edition\firefox.exe <13>
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atiesrxx.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe <8>
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\service.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1737_none_7dec0d8c7ca729de\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212816 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [183968 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [NZXT.CAM] => C:\Program Files\NZXT CAM\NZXT CAM.exe [110762224 2022-05-26] (NZXT, Inc. -> NZXT, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [146943096 2022-06-13] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [EpicGamesLauncher] => D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32648144 2022-06-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Discord] => C:\Users\gagne\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Ubisoft Game Launcher] => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftConnect.exe [518584 2022-05-31] (Ubisoft Entertainment Sweden AB -> Ubisoft)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [4282328 2022-06-07] (Valve Corp. -> Valve Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1027C269-3F51-4388-9B56-563DF232C1F8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [290352 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {46F18995-8356-4632-A28D-5FC8383EFDF7} - System32\Tasks\Mozilla\Firefox Developer Edition Default Browser Agent CA9422711AE1A81C => C:\Program Files\Firefox Developer Edition\default-browser-agent.exe do-task "CA9422711AE1A81C"
Task: {4A03D67B-8F4C-4DC0-9C78-27192984F58B} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {8134F0CB-4F82-464C-A89A-4B64F113352C} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {A7FE1757-B336-46F3-AC55-DD43D1ADD8B6} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {D9A5C3FF-D4E6-423E-BDD9-972197B094DB} - System32\Tasks\Mozilla\Firefox Developer Edition Background Update CA9422711AE1A81C => C:\Program Files\Firefox Developer Edition\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\CA9422711AE1A81C\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {DD06D251-618A-47C6-A967-D5820B0F906E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [55344 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {EB530F2F-D429-4C75-AB24-616F273BA2D3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-06-02] (Avast Software s.r.o. -> Avast Software)
Task: {F64B50D6-F5CF-4192-93DF-97A8F4083814} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4925264 2022-06-02] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{276f1795-e4a3-4eee-90b9-c5e05325830f}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\gagne\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-31]

FireFox:
========
FF DefaultProfile: l52zdr55.default
FF ProfilePath: C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\l52zdr55.default [2022-06-02]
FF ProfilePath: C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default [2022-06-20]
FF DownloadDir: D:\Download
FF Extension: (AdBlocker Ultimate) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\adblockultimate@adblockultimate.net.xpi [2022-06-02]
FF Extension: (Popup View for Google™ Translate) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\jid0-fbHwsGfb6kJyq2hj65KnbGte3yT@jetpack.xpi [2022-06-02]
FF Extension: (Avast Passwords) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2022-06-02] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json]
FF Extension: (Download Manager (S3)) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\s3download@statusbar.xpi [2022-06-02]
FF Extension: (Flagfox) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2022-06-02]
FF Extension: (Nightly and Aurora) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{596ea437-a17b-4b82-a56c-23a33177512e}.xpi [2022-06-02]
FF Extension: (WX Download Status Bar) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{a1c84bb7-d5fc-4906-90b4-965e520b29bf}.xpi [2022-06-02]
StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8432776 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [576336 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [576336 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 CAMService; C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\service.exe [533232 2022-05-26] (NZXT, Inc. -> )
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [609848 2022-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [231584 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [82592 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-06-12] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.)
R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [444064 2022-04-14] (Corsair Memory, Inc. -> Corsair)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11523704 2022-06-13] (Logitech Inc -> Logitech, Inc.)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [142856 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [33216 2022-03-08] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\amdkmdag.sys [91996128 2022-05-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [38912 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [232648 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [382608 2022-06-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [255136 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [102048 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [21936 2022-06-02] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [45072 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [271600 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548968 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111056 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [86120 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [857488 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [662160 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [218608 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [321928 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [62496 2022-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [46600 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [22536 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz152; C:\Windows\temp\cpuz152\cpuz152_x64.sys [35840 2022-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 cpuz153; C:\Windows\temp\cpuz153\cpuz153_x64.sys [36864 2022-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44488 2022-06-12] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [33528 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [21704 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 tmhidusb; C:\Windows\system32\DRIVERS\tmhidusb.sys [432136 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmResetMin; C:\Windows\System32\Drivers\tmResetMin.sys [47648 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-20 17:34 - 2022-06-20 17:35 - 000019854 _____ C:\Users\gagne\Desktop\FRST.txt
2022-06-20 17:32 - 2022-06-20 17:34 - 000000000 ____D C:\FRST
2022-06-20 17:30 - 2022-06-20 17:30 - 002369024 _____ (Farbar) C:\Users\gagne\Desktop\FRST64.exe
2022-06-20 17:24 - 2022-06-20 17:24 - 000000000 ___HD C:\$WinREAgent
2022-06-14 15:17 - 2022-06-14 15:17 - 000062904 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_xlcore.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000033528 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_bus_enum.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000021704 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_vir_hid.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2022-06-14 15:17 - 2022-06-14 15:17 - 000000000 ____D C:\Program Files\LGHUB
2022-06-13 20:11 - 2022-06-13 20:11 - 000000000 ____D C:\Users\gagne\Documents\TmPid
2022-06-13 18:20 - 2022-06-14 16:54 - 000000000 ____D C:\Users\gagne\AppData\Local\Saber
2022-06-13 18:14 - 2022-06-13 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C-TECH AKANTHA ULTIMATE GAMING SOFTWARE
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\Users\gagne\AppData\Local\BY-K816-106
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C-TECH
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\Program Files (x86)\C-TECH
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thrustmaster FFB Racing wheel
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files\Thrustmaster
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files\Guillemot
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files (x86)\Thrustmaster
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files (x86)\Guillemot
2022-06-12 11:00 - 2021-11-19 08:43 - 006606344 _____ (Thrustmaster) C:\Windows\system32\tmeffcpl.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 006566944 _____ (Thrustmaster) C:\Windows\SysWOW64\tmeffcpl.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000432136 _____ (Thrustmaster) C:\Windows\system32\Drivers\tmhidusb.sys
2022-06-12 11:00 - 2021-11-19 08:43 - 000327688 _____ (Thrustmaster) C:\Windows\system32\tmpid.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000270880 _____ (Thrustmaster) C:\Windows\SysWOW64\tmpid.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000195104 _____ (Thrustmaster®) C:\Windows\system32\TmRimUpdate.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000177184 _____ (Thrustmaster®) C:\Windows\SysWOW64\TmRimUpdate.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000142856 _____ (Thrustmaster®) C:\Windows\system32\tmInstall.exe
2022-06-12 11:00 - 2021-11-19 08:43 - 000047648 _____ (© Guillemot R&D, 2021. All rights reserved.) C:\Windows\system32\Drivers\tmResetMin.sys
2022-06-12 10:56 - 2022-06-14 20:50 - 000000000 ____D C:\Users\gagne\Documents\Euro Truck Simulator 2
2022-06-12 08:05 - 2022-06-12 08:05 - 000000000 ____D C:\Windows\LastGood.Tmp
2022-06-12 08:03 - 2022-06-12 08:03 - 002177152 _____ (Logitech) C:\Windows\system32\logi_audio_headset_capture_apo.dll
2022-06-12 08:03 - 2022-06-12 08:03 - 002040288 _____ (Logitech) C:\Windows\system32\logi_audio_hx2e_render_apo.dll
2022-06-12 08:03 - 2022-06-12 08:03 - 000044488 _____ (Logitech) C:\Windows\system32\Drivers\logi_audio_surround.sys
2022-06-12 08:02 - 2022-06-12 08:02 - 000000000 ____D C:\Windows\SystemTemp
2022-06-12 07:50 - 2022-06-13 18:20 - 000000000 ____D C:\Users\gagne\Documents\My Games
2022-06-12 07:50 - 2022-06-12 07:50 - 000000000 ____D C:\Users\gagne\AppData\Local\My Games
2022-06-12 07:48 - 2022-06-12 07:49 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2022-06-12 07:48 - 2022-06-12 07:48 - 000000000 ____D C:\Users\gagne\AppData\Roaming\EasyAntiCheat
2022-06-11 21:49 - 2022-06-11 21:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter
2022-06-11 21:49 - 2022-06-11 21:49 - 000000000 ____D C:\Program Files (x86)\AC3Filter
2022-06-11 21:49 - 2013-04-05 21:27 - 002231296 _____ C:\Windows\system32\ac3filter64.acm
2022-06-11 21:49 - 2013-04-05 21:26 - 001679360 _____ C:\Windows\SysWOW64\ac3filter.acm
2022-06-11 21:42 - 2022-06-11 21:42 - 000001231 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2022-06-11 21:42 - 2022-06-11 21:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2022-06-11 21:32 - 2022-06-11 21:44 - 000000000 ____D C:\Users\gagne\AppData\Roaming\BSplayer PRO
2022-06-11 21:32 - 2022-06-11 21:41 - 000000000 ____D C:\Program Files (x86)\Webteh
2022-06-11 21:12 - 2022-06-11 21:13 - 000000000 ____D C:\Users\gagne\AppData\Local\Steam
2022-06-11 21:03 - 2022-06-11 21:03 - 002296488 _____ C:\Users\gagne\Downloads\SteamSetup.exe
2022-06-11 21:03 - 2022-06-11 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-06-11 17:27 - 2022-06-11 17:27 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe
2022-06-11 17:27 - 2022-06-11 17:27 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe
2022-06-11 17:27 - 2022-06-11 17:27 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2022-06-11 17:27 - 2022-06-11 17:27 - 000011799 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-06-11 17:26 - 2022-06-11 17:26 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe
2022-06-11 17:26 - 2022-06-11 17:26 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2022-06-11 17:26 - 2022-06-11 17:26 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 002254336 _____ C:\Windows\system32\dwmscene.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 000272896 _____ C:\Windows\system32\TpmTool.exe
2022-06-11 17:25 - 2022-06-11 17:25 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2022-06-11 17:25 - 2022-06-11 17:25 - 000093696 _____ C:\Windows\system32\Drivers\cimfs.sys
2022-06-11 17:11 - 2022-06-11 17:11 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-11 17:09 - 2022-06-11 17:09 - 000001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-06-11 17:09 - 2022-06-11 17:09 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-06-11 17:07 - 2022-06-20 17:23 - 000000000 ____D C:\Windows\system32\MRT
2022-06-02 17:54 - 2022-06-20 17:22 - 000000000 ____D C:\Users\gagne\AppData\Local\Ubisoft Game Launcher
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\ProgramData\Ubisoft
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2022-06-02 17:48 - 2022-06-02 17:53 - 238578376 _____ (Ubisoft) C:\Users\gagne\Downloads\UbisoftConnectInstaller.exe
2022-06-02 17:42 - 2022-06-20 17:23 - 000000000 ____D C:\Users\gagne\AppData\Roaming\discord
2022-06-02 17:42 - 2022-06-20 17:22 - 000000000 ____D C:\Users\gagne\AppData\Local\Discord
2022-06-02 17:42 - 2022-06-02 17:42 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2022-06-02 17:42 - 2022-06-02 17:42 - 000000000 ____D C:\Users\gagne\AppData\Local\SquirrelTemp
2022-06-02 17:40 - 2022-06-02 17:41 - 082992808 _____ (Discord Inc.) C:\Users\gagne\Downloads\DiscordSetup.exe
2022-06-02 17:10 - 2022-06-02 17:10 - 000000000 ____D C:\Users\gagne\AppData\Local\NVIDIA Corporation
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\UnrealEngineLauncher
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\UnrealEngine
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\EpicGamesLauncher
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\Epic Games
2022-06-02 17:05 - 2022-06-12 07:36 - 000000000 ____D C:\Users\gagne\Desktop\Games
2022-06-02 17:05 - 2022-06-02 17:10 - 000000000 ____D C:\ProgramData\Epic
2022-06-02 17:05 - 2022-06-02 17:05 - 000000951 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2022-06-02 17:05 - 2022-06-02 17:05 - 000000000 ____D C:\Program Files (x86)\Epic Games
2022-06-02 17:03 - 2022-06-02 17:04 - 158863360 _____ C:\Users\gagne\Downloads\EpicInstaller-13.3.0.msi
2022-06-02 17:00 - 2022-06-20 17:21 - 000000000 ____D C:\Users\gagne\AppData\Roaming\LGHUB
2022-06-02 17:00 - 2022-06-20 17:21 - 000000000 ____D C:\Users\gagne\AppData\Local\LGHUB
2022-06-02 17:00 - 2022-06-02 17:00 - 000000000 ____D C:\ProgramData\Logishrd
2022-06-02 16:43 - 2022-06-15 18:15 - 000000000 ____D C:\ProgramData\LGHUB
2022-06-02 16:42 - 2022-06-13 18:14 - 000000000 ____D C:\Users\gagne\Desktop\Nastaveni
2022-06-02 16:41 - 2022-06-02 16:42 - 000001578 _____ C:\Users\gagne\Desktop\Download.lnk
2022-06-02 16:38 - 2022-06-02 16:38 - 000000623 _____ C:\Users\gagne\Desktop\Total Commander 64 bit.lnk
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Roaming\GHISLER
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Local\GHISLER
2022-06-02 16:15 - 2022-06-20 17:22 - 000000000 ____D C:\Users\gagne\AppData\Roaming\NZXT CAM
2022-06-02 16:15 - 2022-06-02 16:15 - 001478312 _____ C:\Users\gagne\Downloads\NZXT-CAM-Setup.exe
2022-06-02 16:15 - 2022-06-02 16:15 - 000001801 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZXT CAM.lnk
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Users\gagne\AppData\LocalLow\AMD
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Users\gagne\AppData\Local\nzxt cam-updater
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Program Files\NZXT CAM
2022-06-02 16:15 - 2022-05-26 18:57 - 000024576 _____ (Silicon Laboratories) C:\Windows\system32\Drivers\SiLib.sys
2022-06-02 16:15 - 2022-05-26 18:57 - 000019456 _____ (Silicon Laboratories) C:\Windows\system32\Drivers\SiUSBXp.sys
2022-06-02 16:13 - 2022-06-02 16:13 - 000000000 ____D C:\Users\gagne\AppData\Local\OneDrive
2022-06-02 16:09 - 2022-06-16 22:02 - 000000000 ____D C:\Users\gagne\AppData\Local\AMD_Common
2022-06-02 16:06 - 2022-06-20 17:21 - 000003118 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2022-06-02 16:06 - 2022-06-20 17:21 - 000003078 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2022-06-02 16:06 - 2022-06-15 20:17 - 000002672 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2022-06-02 16:06 - 2022-06-15 20:17 - 000002202 _____ C:\Windows\system32\Tasks\StartCN
2022-06-02 16:06 - 2022-06-15 20:17 - 000002122 _____ C:\Windows\system32\Tasks\StartDVR
2022-06-02 16:06 - 2022-06-02 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2022-06-02 16:06 - 2022-06-02 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2022-06-02 16:05 - 2022-06-12 07:52 - 000000000 ____D C:\Users\gagne\AppData\Local\AMD
2022-06-02 16:05 - 2022-06-12 07:48 - 000000000 ____D C:\ProgramData\Package Cache
2022-06-02 16:05 - 2022-06-02 16:05 - 000000000 ____D C:\Windows\system32\AMD
2022-06-02 16:05 - 2022-05-30 15:03 - 000110952 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2022-06-02 16:05 - 2022-05-17 07:48 - 002949952 _____ (AMD Inc.) C:\Windows\SysWOW64\AMDBugReportTool.exe
2022-06-02 16:03 - 2022-06-02 16:08 - 000000000 ____D C:\ProgramData\AMD
2022-06-02 16:03 - 2022-06-02 16:06 - 000000000 ____D C:\Program Files\AMD
2022-06-02 16:03 - 2022-06-02 16:03 - 000000000 ____D C:\Users\gagne\AppData\Local\AMDSoftwareInstaller
2022-06-02 15:56 - 2022-06-02 16:01 - 597199608 _____ (AMD Inc.) C:\Users\gagne\Downloads\whql-amd-software-adrenalin-edition-22.5.2-win10-win11-may31.exe
2022-06-02 15:48 - 2022-06-02 15:48 - 000000000 ____D C:\Users\gagne\AppData\Local\Sonarworks
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Corsair
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Local\CrashDumps
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair
2022-06-02 15:47 - 2022-04-06 08:37 - 002439136 _____ (A-Volute) C:\Windows\system32\9EarsSurroundSound.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 001820392 _____ (Corsair Memory, Inc.) C:\Windows\system32\CorsairGamingAudioPO64.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 000609848 _____ (Corsair Memory, Inc.) C:\Windows\system32\CorsairGamingAudioCfgService64.exe
2022-06-02 15:47 - 2022-04-06 08:37 - 000486568 _____ (Sonarworks) C:\Windows\system32\soundidsdkdsp.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 000062496 _____ (Corsair Memory, Inc.) C:\Windows\system32\Drivers\CorsairGamingAudio64.sys
2022-06-02 15:46 - 2022-06-02 15:48 - 000000000 ____D C:\ProgramData\Corsair
2022-06-02 15:46 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Local\Corsair
2022-06-02 15:46 - 2022-06-02 15:46 - 000000000 ____D C:\Users\gagne\AppData\Local\cache
2022-06-02 15:46 - 2022-06-02 15:46 - 000000000 ____D C:\Program Files\Corsair
2022-06-02 15:42 - 2022-06-15 18:40 - 000000000 ____D C:\Users\gagne\AppData\Local\Avast Software
2022-06-02 15:42 - 2022-06-02 15:42 - 000002169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2022-06-02 15:42 - 2022-06-02 15:42 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Avast Software
2022-06-02 15:42 - 2022-06-02 15:42 - 000000000 ____D C:\Users\gagne\AppData\Local\CEF
2022-06-02 15:41 - 2022-06-15 20:17 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-06-02 15:41 - 2022-06-02 15:41 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-06-02 15:41 - 2022-06-02 15:41 - 000000000 ____D C:\Windows\system32\gf2engine
2022-06-02 15:40 - 2022-06-11 17:03 - 000382608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2022-06-02 15:40 - 2022-06-02 15:41 - 000321928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000857488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000662160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000548968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000271600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000269136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2022-06-02 15:40 - 2022-06-02 15:40 - 000255136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000232648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000218608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000111056 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000102048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000086120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000045072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000038912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000021936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2022-06-02 15:39 - 2022-06-12 11:01 - 000000000 ____D C:\ProgramData\Avast Software
2022-06-02 15:39 - 2022-06-02 15:39 - 000000000 ____D C:\Program Files\Avast Software
2022-06-02 15:38 - 2022-06-15 18:50 - 000000000 ____D C:\Program Files\Firefox Developer Edition
2022-06-02 15:38 - 2022-06-02 15:38 - 000267072 _____ (AVAST Software) C:\Users\gagne\Downloads\avast_free_antivirus_setup_online.exe
2022-06-02 15:38 - 2022-06-02 15:38 - 000000000 ____D C:\Users\gagne\AppData\Local\Comms
2022-05-31 20:18 - 2022-06-02 20:40 - 000000000 ____D C:\Windows\Panther
2022-05-31 19:50 - 2022-06-20 17:24 - 000000000 ____D C:\Users\gagne\AppData\LocalLow\Mozilla
2022-05-31 19:50 - 2022-06-20 17:24 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-05-31 19:50 - 2022-06-15 18:50 - 000001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk
2022-05-31 19:50 - 2022-06-15 18:50 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2022-05-31 19:50 - 2022-06-15 18:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-05-31 19:50 - 2022-05-31 19:50 - 000001063 _____ C:\Users\Public\Desktop\Firefox Developer Edition.lnk
2022-05-31 19:50 - 2022-05-31 19:50 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Mozilla
2022-05-31 19:50 - 2022-05-31 19:50 - 000000000 ____D C:\Users\gagne\AppData\Local\Mozilla
2022-05-31 19:49 - 2022-05-31 19:49 - 000342976 _____ (Mozilla) C:\Users\gagne\Downloads\Firefox Installer.exe
2022-05-31 19:46 - 2022-06-15 20:17 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3082329309-1617206090-3278802057-1001
2022-05-31 19:46 - 2022-05-31 19:46 - 000000000 ___HD C:\OneDriveTemp
2022-05-31 19:46 - 2022-05-31 19:46 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-05-31 19:45 - 2022-06-16 21:56 - 000000000 ___RD C:\Users\gagne\OneDrive
2022-05-31 19:45 - 2022-06-15 20:17 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3082329309-1617206090-3278802057-1001
2022-05-31 19:45 - 2022-06-02 19:31 - 000000000 ____D C:\Users\gagne\AppData\Local\PlaceholderTileLogoFolder
2022-05-31 19:45 - 2022-05-31 19:45 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-05-31 19:43 - 2022-06-16 21:56 - 000000000 ____D C:\Users\gagne\AppData\Local\D3DSCache
2022-05-31 19:43 - 2022-06-11 17:21 - 000000000 ____D C:\ProgramData\Packages
2022-05-31 19:43 - 2022-06-02 20:48 - 000000000 ____D C:\Users\gagne\AppData\Local\Packages
2022-05-31 19:43 - 2022-05-31 19:53 - 000000000 ____D C:\Users\gagne\AppData\Local\ConnectedDevicesPlatform
2022-05-31 19:43 - 2022-05-31 19:45 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ___RD C:\Users\gagne\3D Objects
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Adobe
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Local\VirtualStore
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Local\Publishers
2022-05-31 19:41 - 2022-06-14 17:42 - 000002386 _____ C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-05-31 19:41 - 2022-05-31 19:45 - 000000000 ____D C:\Users\gagne
2022-05-31 19:41 - 2022-05-31 19:41 - 000000020 ___SH C:\Users\gagne\ntuser.ini
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Šablony
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Soubory cookie
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Poslední
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Okolní tiskárny
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Okolní síť
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Nabídka Start
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Dokumenty
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Obrázky
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Hudba
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Filmy
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Data aplikací
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\AppData\Local\Data aplikací
2022-05-31 19:35 - 2022-06-15 18:22 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Šablony
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Poslední
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Okolní síť
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Dokumenty
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Šablony
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Plocha
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Documents and Settings
2022-05-31 19:28 - 2022-06-20 17:22 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-05-31 19:28 - 2022-06-15 20:17 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-05-31 19:28 - 2022-06-15 20:17 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-05-31 19:28 - 2022-06-15 18:15 - 000008192 ___SH C:\DumpStack.log.tmp
2022-05-31 19:28 - 2022-06-15 18:15 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-05-31 19:28 - 2022-06-15 18:15 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-05-31 19:28 - 2022-06-12 08:03 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2022-05-31 19:28 - 2022-05-31 19:28 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-05-31 19:28 - 2022-05-31 19:28 - 000000000 ____D C:\Windows\ServiceProfiles
2022-05-30 15:05 - 2022-05-30 15:05 - 001973752 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001973752 _____ C:\Windows\system32\vulkaninfo.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001530360 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001530360 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001444360 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001444360 _____ C:\Windows\system32\vulkan-1.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001155936 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001155936 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000799736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000049656 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000046584 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001892840 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001716920 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001426912 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001426912 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001392400 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000896984 _____ (AMD) C:\Windows\system32\atieclxx.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000676848 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000560624 _____ C:\Windows\system32\GameManager64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000528352 _____ C:\Windows\system32\atieah64.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000503272 _____ C:\Windows\system32\dgtrayicon.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000500728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000495096 _____ C:\Windows\system32\EEURestart.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000471512 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000421880 _____ C:\Windows\SysWOW64\GameManager32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000396248 _____ C:\Windows\SysWOW64\atieah32.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000367584 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000356840 _____ C:\Windows\system32\clinfo.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000263640 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000222688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000205704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000197112 _____ C:\Windows\system32\mantle64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000181232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000180216 _____ C:\Windows\system32\mantleaxl64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000170160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000169432 _____ (AMD) C:\Windows\system32\atimuixx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000158200 _____ C:\Windows\SysWOW64\mantle32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000152752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000143864 _____ C:\Windows\SysWOW64\mantleaxl32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000143856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000142296 _____ C:\Windows\system32\atidxx64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000140792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000123832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000116704 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000116192 _____ C:\Windows\SysWOW64\atidxx32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000073176 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000031136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000031120 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 089903584 _____ C:\Windows\system32\amd_comgr.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 074060792 _____ C:\Windows\SysWOW64\amd_comgr32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 010428376 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000941552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000768976 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000561112 _____ C:\Windows\system32\amdgfxinfo64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000553008 _____ C:\Windows\system32\amdmiracast.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000469472 _____ C:\Windows\system32\amdlogum.exe
2022-05-30 15:03 - 2022-05-30 15:03 - 000424408 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000228888 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000184048 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000163152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000152728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000137896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000135664 _____ C:\Windows\system32\amdxc64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000123816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000111600 _____ C:\Windows\SysWOW64\amdxc32.dll
2022-05-30 14:38 - 2022-05-30 14:38 - 057489984 _____ C:\Windows\system32\amdxc64.so
2022-05-30 14:38 - 2022-05-30 14:38 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2022-05-30 14:38 - 2022-05-30 14:38 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2022-05-30 14:38 - 2022-05-30 14:38 - 000574248 _____ C:\Windows\SysWOW64\atiapfxx.blb
2022-05-30 14:38 - 2022-05-30 14:38 - 000574248 _____ C:\Windows\system32\atiapfxx.blb
2022-05-30 14:38 - 2022-05-30 14:38 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000128048 _____ C:\Windows\system32\kapp_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000076237 _____ C:\Windows\system32\AMDKernelEvents.man

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-20 17:25 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-06-20 17:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-06-20 17:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-20 17:22 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-15 18:22 - 2019-12-07 16:41 - 000682184 _____ C:\Windows\system32\perfh005.dat
2022-06-15 18:22 - 2019-12-07 16:41 - 000137000 _____ C:\Windows\system32\perfc005.dat
2022-06-15 18:22 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-06-12 11:01 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-12 08:02 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-02 15:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2022-06-02 15:37 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2022-05-31 20:18 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2022-05-31 19:58 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-05-31 19:54 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-05-31 19:41 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2022-05-31 19:31 - 2019-12-07 16:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2022-05-31 19:31 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2022-05-31 19:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-05-31 19:30 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-05-31 19:28 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

addidtion:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-06-2022
Ran by gagne (20-06-2022 17:36:47)
Running from C:\Users\gagne\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1706 (X64) (2022-05-31 17:31:05)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3082329309-1617206090-3278802057-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3082329309-1617206090-3278802057-503 - Limited - Disabled)
gagne (S-1-5-21-3082329309-1617206090-3278802057-1001 - Administrator - Enabled) => C:\Users\gagne
Guest (S-1-5-21-3082329309-1617206090-3278802057-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3082329309-1617206090-3278802057-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 22.5.2 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 22.5.6015 - Avast Software)
Branding64 (HKLM\...\{2AF42320-5ECF-4BCA-B756-8F3677262D55}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.63.1071 - AB Team, d.o.o.)
CORSAIR iCUE 4 Software (HKLM\...\{D67FD012-5FC8-4474-AC27-68F59AAA304E}) (Version: 4.23.137 - Corsair)
C-TECH AKANTHA ULTIMATE GAMING SOFTWARE 1.2 (HKLM-x32\...\C-TECH AKANTHA ULTIMATE GAMING SOFTWARE) (Version: 1.2 - C-TECH)
C-TECH Echion Keyboard Driver v1.6.6 (HKLM-x32\...\{53162F95-A943-4865-9A58-1959B37F17FC}_is1) (Version: - C-TECH)
Discord (HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Discord) (Version: 1.0.9004 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 4.TTRS.2021 - Thrustmaster)
Firefox Developer Edition (x64 cs) (HKLM\...\Firefox Developer Edition 102.0 (x64 cs)) (Version: 102.0 - Mozilla)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.6.271036 - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 102.0.1245.44 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\OneDriveSetup.exe) (Version: 22.111.0522.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30133 (HKLM\...\{E699E009-1C3C-4E50-9B57-2B39F0954C7F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30133 (HKLM\...\{6CD9E9ED-906D-4196-8DC3-F987D2F6615F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 (HKLM-x32\...\{EAC73207-74BD-4B13-AACF-8C0E751FA4E8}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 (HKLM-x32\...\{2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 102.0 - Mozilla)
NZXT CAM 4.34.3 (HKLM\...\ac0666ae-ee66-5310-ac01-9d6348133b2d) (Version: 4.34.3 - NZXT, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tom Clancy's The Division 2 (HKLM-x32\...\Uplay Install 4932) (Version: - Ubisoft)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.50 - Ghisler Software GmbH)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 132.0.10676 - Ubisoft)

Packages:
=========
AMD Link -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDLink_10.22.20002.0_x64__0a9344xs7nr4m [2022-06-02] (Advanced Micro Devices Inc.)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.5310.0_x64__8wekyb3d8bbwe [2022-06-11] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\system32\ac3filter64.acm [2231296 2013-04-05] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\SysWOW64\ac3filter.acm [1679360 2013-04-05] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\gagne\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)

==================== Loaded Modules (Whitelisted) =============

2022-06-14 15:17 - 2022-06-13 20:11 - 000151040 _____ () [File not signed] \\?\C:\Program Files\LGHUB\resources\app.asar.unpacked\node_modules\keytar\build\Release\keytar.node
2022-05-17 01:26 - 2022-05-17 01:26 - 018143744 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\avcodec-58.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 003371520 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 002772480 _____ () [File not signed] C:\Program Files\NZXT CAM\ffmpeg.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 000379904 _____ () [File not signed] C:\Program Files\NZXT CAM\libegl.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 007863296 _____ () [File not signed] C:\Program Files\NZXT CAM\libglesv2.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 002274816 _____ (CPUID) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\common\cpuid\cpuidsdk64.dll
2017-09-05 00:15 - 2017-09-05 00:15 - 004396032 _____ (Microsoft Corporation) [File not signed] C:\Program Files\AMD\CNext\CNext\D3DCOMPILER_47.dll
2022-03-04 14:40 - 2022-03-04 14:40 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files\Corsair\CORSAIR iCUE 4 Software\SiUSBXp.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 000083456 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\nzxt-device\SiUSBXp64.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000057344 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\audio\qtaudio_windows.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000037888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000031232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000448000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000023040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000502272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001469952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001430016 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 008103936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 006786048 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000743936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Multimedia.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000117760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5MultimediaQuick.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001066496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000310784 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 003610624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000436736 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlModels.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000049664 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlWorkerScript.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 004172800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000166912 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001120768 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000203776 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000326144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2022-01-12 01:03 - 2022-01-12 01:03 - 000375296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2022-01-12 01:03 - 2022-01-12 01:03 - 113779200 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000128512 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 005536256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000230400 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000208896 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000055296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000059904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000271360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtMultimedia\declarative_multimedia.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQml\qmlplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000018432 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000247296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000135168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000106496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000349696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000046592 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000103424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{8863C9D1-0151-4FDE-BD0A-A6A72AEC64F3}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BC64AB36-248C-4314-B0D5-2CAC7A709798}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{F17FBCDE-27E6-4F36-9704-51FBD8DBCB06}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E034FF70-CAF1-4625-BDB5-65F1019F408B}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [TCP Query User{BFDB94EB-B160-46C3-91E8-3C6199A7F04A}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{0D4DFE67-3144-4AA2-9F7C-7BF9929075BE}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{9DC65D9F-6AC7-4369-8E35-27C623F40112}D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5C0A2AF5-AA6D-4D53-974F-6657F7F01D06}D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{C2F51D2D-AB24-4EE5-96DE-35A8131A2B47}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F7286CA6-4DF9-46DD-A8D4-A15FB9B7FC64}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4F486775-BFC2-48E1-ADF6-095A2976C6D9}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B1818985-F1EA-4627-A75D-905D2095664F}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{874F85EF-52F9-4936-9C6A-146A624A73AD}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9528324A-6875-4DDF-ACC8-DC6E892422D3}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{0EE3ACD8-42FC-4169-92ED-4AEE38CD6E88}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{B97AE8E9-C844-4EFF-8B44-86DF9298AB28}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{0E04790C-3B46-4717-B332-F79B34735E5B}] => (Allow) D:\Games\Tom Clancy's The Division 2\TheDivision2.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [TCP Query User{CC9EF5A4-4F96-4521-B048-75C299AF23C0}D:\games\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\games\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [UDP Query User{5961DFAE-D83F-401B-A744-C2C7C42A0D87}D:\games\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\games\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)

==================== Restore Points =========================

11-06-2022 17:06:35 Instalační služba modulů systému Windows
11-06-2022 17:15:28 Instalační služba modulů systému Windows
11-06-2022 17:16:13 Instalační služba modulů systému Windows
20-06-2022 17:23:33 Instalační služba modulů systému Windows
20-06-2022 17:24:29 Instalační služba modulů systému Windows
20-06-2022 17:25:15 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (06/12/2022 11:01:18 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/12/2022 11:01:18 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/12/2022 11:01:18 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/12/2022 11:01:18 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/11/2022 05:42:54 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na DATA (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (06/02/2022 03:47:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: InstallerGui.exe, verze: 4.23.137.0, časové razítko: 0x625835a0
Název chybujícího modulu: Qt5Gui.dll, verze: 5.15.2.0, časové razítko: 0x5fa4ddbb
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000070b6c
ID chybujícího procesu: 0x674
Čas spuštění chybující aplikace: 0x01d87687175942af
Cesta k chybující aplikaci: C:\Users\gagne\AppData\Local\Temp\MSI10319\qt-dependencies\InstallerGui.exe
Cesta k chybujícímu modulu: C:\Users\gagne\AppData\Local\Temp\MSI10319\qt-dependencies\Qt5Gui.dll
ID zprávy: 39161d7d-34cf-47d4-b6d4-44f1cb5e0884
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (05/31/2022 07:58:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: PinningConfirmationDialog.exe, verze: 10.0.19041.423, časové razítko: 0x7046d648
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1202, časové razítko: 0xc9db1934
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010be3e
ID chybujícího procesu: 0x25e8
Čas spuštění chybující aplikace: 0x01d875181a9f38ea
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.Windows.PinningConfirmationDialog_cw5n1h2txyewy\PinningConfirmationDialog.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 0d9c5780-a706-4b89-8c27-599ab59668f2
Úplný název chybujícího balíčku: Microsoft.Windows.PinningConfirmationDialog_1000.19041.1023.0_neutral__cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (05/31/2022 07:33:03 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu Windows Defender na SECURITY_PRODUCT_STATE_ON došlo k chybě.


System errors:
=============
Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 51/0, iter:3/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 50/0, iter:2/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 49/0, iter:1/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 48/0, iter:3/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 47/0, iter:2/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 46/0, iter:1/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 45/0, iter:3/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07

Error: (06/15/2022 08:17:43 PM) (Source: tmhidusb) (EventID: 10) (User: )
Description: GetICom Fail, 44/0, iter:2/3, s:0xc0000001 us:0xc0000004 port:0x3 bytes:0, FW:00.07


CodeIntegrity:
===============
Date: 2022-06-20 17:23:02
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-06-20 17:21:41
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 0701 05/16/2016
Motherboard: ASUSTeK COMPUTER INC. 970 PRO GAMING/AURA
Processor: AMD FX(tm)-8350 Eight-Core Processor
Percentage of memory in use: 47%
Total physical RAM: 16280.84 MB
Available physical RAM: 8468.7 MB
Total Virtual: 22168.84 MB
Available Virtual: 10951.37 MB

==================== Drives ================================

Drive c: (WIN10) (Fixed) (Total:222.96 GB) (Free:165.84 GB) (Model: SanDisk SDSSDA240G) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:810.71 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS

\\?\Volume{418e9b3a-17e0-4cd2-b95b-28d9bfd09665}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{bddb1690-dbed-42b0-b569-4f6a03c59a8e}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 61C67A30)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 1805298C)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prolpmeny heslo na Mail a nejaky ucty.

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

GagnerCZ
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 15 zář 2008 16:16

Re: Prolpmeny heslo na Mail a nejaky ucty.

#3 Příspěvek od GagnerCZ »

# -------------------------------
# Malwarebytes AdwCleaner 8.3.2.0
# -------------------------------
# Build: 03-23-2022
# Database: 2022-03-15.3 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 06-20-2022
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 1
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Conduit

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1423 octets] - [20/06/2022 18:27:18]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prolpmeny heslo na Mail a nejaky ucty.

#4 Příspěvek od Rudy »

OK. Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

GagnerCZ
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 15 zář 2008 16:16

Re: Prolpmeny heslo na Mail a nejaky ucty.

#5 Příspěvek od GagnerCZ »

FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2022
Ran by gagne (administrator) on DESKTOP-UBE4TC9 (20-06-2022 18:57:56)
Running from C:\Users\gagne\Desktop
Loaded Profiles: gagne
Platform: Microsoft Windows 10 Home Version 21H2 19044.1766 (X64) Language: Čeština (Česko)
Default browser: "C:\Program Files\Firefox Developer Edition\firefox.exe" -osint -url "%1"
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngineProcess.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe
(C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\NZXT CAM\NZXT CAM.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe <4>
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE.exe
(D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(Discord Inc. -> Discord Inc.) C:\Users\gagne\AppData\Local\Discord\app-1.0.9005\Discord.exe <6>
(DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atieclxx.exe
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(explorer.exe ->) (NZXT, Inc. -> NZXT, Inc.) C:\Program Files\NZXT CAM\NZXT CAM.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Developer Edition\firefox.exe <10>
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\atiesrxx.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe <8>
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CredentialEnrollmentManager.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\service.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212816 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [183968 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [NZXT.CAM] => C:\Program Files\NZXT CAM\NZXT CAM.exe [110762224 2022-05-26] (NZXT, Inc. -> NZXT, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [146943096 2022-06-13] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [EpicGamesLauncher] => D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32653776 2022-06-20] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Discord] => C:\Users\gagne\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Ubisoft Game Launcher] => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftConnect.exe [518584 2022-05-31] (Ubisoft Entertainment Sweden AB -> Ubisoft)
HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [4282328 2022-06-07] (Valve Corp. -> Valve Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1027C269-3F51-4388-9B56-563DF232C1F8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [290352 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {219CE3AE-784C-43A3-8160-A12CADDFEB5E} - System32\Tasks\Mozilla\Firefox Developer Edition Default Browser Agent CA9422711AE1A81C => C:\Program Files\Firefox Developer Edition\default-browser-agent.exe do-task "CA9422711AE1A81C"
Task: {4A03D67B-8F4C-4DC0-9C78-27192984F58B} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {59B97C53-5AB9-4D5F-9BAB-39D6AB7EA212} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {A59CEF84-B52C-43CC-B6EA-0DEB0141645D} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [953392 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {D9A5C3FF-D4E6-423E-BDD9-972197B094DB} - System32\Tasks\Mozilla\Firefox Developer Edition Background Update CA9422711AE1A81C => C:\Program Files\Firefox Developer Edition\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\CA9422711AE1A81C\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {DD06D251-618A-47C6-A967-D5820B0F906E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [55344 2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {EB530F2F-D429-4C75-AB24-616F273BA2D3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-06-02] (Avast Software s.r.o. -> Avast Software)
Task: {F64B50D6-F5CF-4192-93DF-97A8F4083814} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4925264 2022-06-02] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{276f1795-e4a3-4eee-90b9-c5e05325830f}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\gagne\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-20]

FireFox:
========
FF DefaultProfile: l52zdr55.default
FF ProfilePath: C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\l52zdr55.default [2022-06-02]
FF ProfilePath: C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default [2022-06-20]
FF DownloadDir: D:\Download
FF Extension: (AdBlocker Ultimate) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\adblockultimate@adblockultimate.net.xpi [2022-06-02]
FF Extension: (Popup View for Google™ Translate) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\jid0-fbHwsGfb6kJyq2hj65KnbGte3yT@jetpack.xpi [2022-06-02]
FF Extension: (Avast Passwords) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2022-06-02] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json]
FF Extension: (Download Manager (S3)) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\s3download@statusbar.xpi [2022-06-02]
FF Extension: (Flagfox) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2022-06-02]
FF Extension: (Nightly and Aurora) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{596ea437-a17b-4b82-a56c-23a33177512e}.xpi [2022-06-02]
FF Extension: (WX Download Status Bar) - C:\Users\gagne\AppData\Roaming\Mozilla\Firefox\Profiles\9vr3974f.dev-edition-default\Extensions\{a1c84bb7-d5fc-4906-90b4-965e520b29bf}.xpi [2022-06-02]
StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8432776 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [576336 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [576336 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 CAMService; C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\service.exe [533232 2022-05-26] (NZXT, Inc. -> )
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [609848 2022-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [231584 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [82592 2022-04-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-06-12] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.)
R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [444064 2022-04-14] (Corsair Memory, Inc. -> Corsair)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11523704 2022-06-13] (Logitech Inc -> Logitech, Inc.)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [142856 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [33216 2022-03-08] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0379774.inf_amd64_6708f07e8af3f5cf\B379425\amdkmdag.sys [91996128 2022-05-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [38912 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [232648 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [382608 2022-06-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [255136 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [102048 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [21936 2022-06-02] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [45072 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [271600 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548968 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111056 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [86120 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [857488 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [662160 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [218608 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [321928 2022-06-02] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [62496 2022-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [46600 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [22536 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz152; C:\Windows\temp\cpuz152\cpuz152_x64.sys [35840 2022-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 cpuz153; C:\Windows\temp\cpuz153\cpuz153_x64.sys [36864 2022-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44488 2022-06-12] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [33528 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [21704 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-06-14] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 tmhidusb; C:\Windows\system32\DRIVERS\tmhidusb.sys [432136 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmResetMin; C:\Windows\System32\Drivers\tmResetMin.sys [47648 2021-11-19] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-20 18:57 - 2022-06-20 18:58 - 000019993 _____ C:\Users\gagne\Desktop\FRST.txt
2022-06-20 18:57 - 2022-06-20 18:57 - 000000000 ___HD C:\$AV_ASW
2022-06-20 18:56 - 2022-06-20 18:57 - 000000000 ___HD C:\avast! sandbox
2022-06-20 18:56 - 2022-06-20 18:57 - 000000000 ____D C:\Users\gagne\Desktop\FRST-OlderVersion
2022-06-20 18:27 - 2022-06-20 18:27 - 000000000 ____D C:\AdwCleaner
2022-06-20 17:34 - 2022-06-20 17:34 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-06-20 17:34 - 2022-06-20 17:34 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-06-20 17:34 - 2022-06-20 17:34 - 000232288 _____ C:\Windows\system32\containerdevicemanagement.dll
2022-06-20 17:34 - 2022-06-20 17:34 - 000104448 _____ C:\Windows\system32\nettraceex.dll
2022-06-20 17:34 - 2022-06-20 17:34 - 000011787 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-06-20 17:32 - 2022-06-20 18:58 - 000000000 ____D C:\FRST
2022-06-20 17:30 - 2022-06-20 18:56 - 002369024 _____ (Farbar) C:\Users\gagne\Desktop\FRST64.exe
2022-06-20 17:24 - 2022-06-20 17:24 - 000000000 ___HD C:\$WinREAgent
2022-06-14 15:17 - 2022-06-14 15:17 - 000062904 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_xlcore.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000033528 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_bus_enum.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000021704 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_vir_hid.sys
2022-06-14 15:17 - 2022-06-14 15:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2022-06-14 15:17 - 2022-06-14 15:17 - 000000000 ____D C:\Program Files\LGHUB
2022-06-13 20:11 - 2022-06-13 20:11 - 000000000 ____D C:\Users\gagne\Documents\TmPid
2022-06-13 18:20 - 2022-06-14 16:54 - 000000000 ____D C:\Users\gagne\AppData\Local\Saber
2022-06-13 18:14 - 2022-06-13 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C-TECH AKANTHA ULTIMATE GAMING SOFTWARE
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\Users\gagne\AppData\Local\BY-K816-106
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C-TECH
2022-06-13 18:07 - 2022-06-13 18:07 - 000000000 ____D C:\Program Files (x86)\C-TECH
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thrustmaster FFB Racing wheel
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files\Thrustmaster
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files\Guillemot
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files (x86)\Thrustmaster
2022-06-12 11:00 - 2022-06-12 11:00 - 000000000 ____D C:\Program Files (x86)\Guillemot
2022-06-12 11:00 - 2021-11-19 08:43 - 006606344 _____ (Thrustmaster) C:\Windows\system32\tmeffcpl.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 006566944 _____ (Thrustmaster) C:\Windows\SysWOW64\tmeffcpl.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000432136 _____ (Thrustmaster) C:\Windows\system32\Drivers\tmhidusb.sys
2022-06-12 11:00 - 2021-11-19 08:43 - 000327688 _____ (Thrustmaster) C:\Windows\system32\tmpid.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000270880 _____ (Thrustmaster) C:\Windows\SysWOW64\tmpid.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000195104 _____ (Thrustmaster®) C:\Windows\system32\TmRimUpdate.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000177184 _____ (Thrustmaster®) C:\Windows\SysWOW64\TmRimUpdate.dll
2022-06-12 11:00 - 2021-11-19 08:43 - 000142856 _____ (Thrustmaster®) C:\Windows\system32\tmInstall.exe
2022-06-12 11:00 - 2021-11-19 08:43 - 000047648 _____ (© Guillemot R&D, 2021. All rights reserved.) C:\Windows\system32\Drivers\tmResetMin.sys
2022-06-12 10:56 - 2022-06-14 20:50 - 000000000 ____D C:\Users\gagne\Documents\Euro Truck Simulator 2
2022-06-12 08:03 - 2022-06-12 08:03 - 002177152 _____ (Logitech) C:\Windows\system32\logi_audio_headset_capture_apo.dll
2022-06-12 08:03 - 2022-06-12 08:03 - 002040288 _____ (Logitech) C:\Windows\system32\logi_audio_hx2e_render_apo.dll
2022-06-12 08:03 - 2022-06-12 08:03 - 000044488 _____ (Logitech) C:\Windows\system32\Drivers\logi_audio_surround.sys
2022-06-12 08:02 - 2022-06-12 08:02 - 000000000 ____D C:\Windows\SystemTemp
2022-06-12 07:50 - 2022-06-13 18:20 - 000000000 ____D C:\Users\gagne\Documents\My Games
2022-06-12 07:50 - 2022-06-12 07:50 - 000000000 ____D C:\Users\gagne\AppData\Local\My Games
2022-06-12 07:48 - 2022-06-12 07:49 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2022-06-12 07:48 - 2022-06-12 07:48 - 000000000 ____D C:\Users\gagne\AppData\Roaming\EasyAntiCheat
2022-06-11 21:49 - 2022-06-11 21:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter
2022-06-11 21:49 - 2022-06-11 21:49 - 000000000 ____D C:\Program Files (x86)\AC3Filter
2022-06-11 21:49 - 2013-04-05 21:27 - 002231296 _____ C:\Windows\system32\ac3filter64.acm
2022-06-11 21:49 - 2013-04-05 21:26 - 001679360 _____ C:\Windows\SysWOW64\ac3filter.acm
2022-06-11 21:42 - 2022-06-11 21:42 - 000001231 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2022-06-11 21:42 - 2022-06-11 21:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2022-06-11 21:32 - 2022-06-11 21:44 - 000000000 ____D C:\Users\gagne\AppData\Roaming\BSplayer PRO
2022-06-11 21:32 - 2022-06-11 21:41 - 000000000 ____D C:\Program Files (x86)\Webteh
2022-06-11 21:12 - 2022-06-11 21:13 - 000000000 ____D C:\Users\gagne\AppData\Local\Steam
2022-06-11 21:03 - 2022-06-11 21:03 - 002296488 _____ C:\Users\gagne\Downloads\SteamSetup.exe
2022-06-11 21:03 - 2022-06-11 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-06-11 17:27 - 2022-06-11 17:27 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe
2022-06-11 17:27 - 2022-06-11 17:27 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe
2022-06-11 17:27 - 2022-06-11 17:27 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2022-06-11 17:26 - 2022-06-11 17:26 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe
2022-06-11 17:26 - 2022-06-11 17:26 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2022-06-11 17:26 - 2022-06-11 17:26 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 002254336 _____ C:\Windows\system32\dwmscene.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-06-11 17:25 - 2022-06-11 17:25 - 000272896 _____ C:\Windows\system32\TpmTool.exe
2022-06-11 17:25 - 2022-06-11 17:25 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2022-06-11 17:25 - 2022-06-11 17:25 - 000093696 _____ C:\Windows\system32\Drivers\cimfs.sys
2022-06-11 17:11 - 2022-06-11 17:11 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-11 17:09 - 2022-06-11 17:09 - 000001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-06-11 17:09 - 2022-06-11 17:09 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-06-11 17:07 - 2022-06-20 17:23 - 000000000 ____D C:\Windows\system32\MRT
2022-06-02 17:54 - 2022-06-20 18:41 - 000000000 ____D C:\Users\gagne\AppData\Local\Ubisoft Game Launcher
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\ProgramData\Ubisoft
2022-06-02 17:54 - 2022-06-02 17:54 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2022-06-02 17:48 - 2022-06-02 17:53 - 238578376 _____ (Ubisoft) C:\Users\gagne\Downloads\UbisoftConnectInstaller.exe
2022-06-02 17:42 - 2022-06-20 18:49 - 000000000 ____D C:\Users\gagne\AppData\Roaming\discord
2022-06-02 17:42 - 2022-06-20 18:41 - 000000000 ____D C:\Users\gagne\AppData\Local\Discord
2022-06-02 17:42 - 2022-06-02 17:42 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2022-06-02 17:42 - 2022-06-02 17:42 - 000000000 ____D C:\Users\gagne\AppData\Local\SquirrelTemp
2022-06-02 17:40 - 2022-06-02 17:41 - 082992808 _____ (Discord Inc.) C:\Users\gagne\Downloads\DiscordSetup.exe
2022-06-02 17:10 - 2022-06-02 17:10 - 000000000 ____D C:\Users\gagne\AppData\Local\NVIDIA Corporation
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\UnrealEngineLauncher
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\UnrealEngine
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\EpicGamesLauncher
2022-06-02 17:06 - 2022-06-02 17:06 - 000000000 ____D C:\Users\gagne\AppData\Local\Epic Games
2022-06-02 17:05 - 2022-06-12 07:36 - 000000000 ____D C:\Users\gagne\Desktop\Games
2022-06-02 17:05 - 2022-06-02 17:10 - 000000000 ____D C:\ProgramData\Epic
2022-06-02 17:05 - 2022-06-02 17:05 - 000000951 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2022-06-02 17:05 - 2022-06-02 17:05 - 000000000 ____D C:\Program Files (x86)\Epic Games
2022-06-02 17:03 - 2022-06-02 17:04 - 158863360 _____ C:\Users\gagne\Downloads\EpicInstaller-13.3.0.msi
2022-06-02 17:00 - 2022-06-20 18:59 - 000000000 ____D C:\Users\gagne\AppData\Local\LGHUB
2022-06-02 17:00 - 2022-06-20 18:41 - 000000000 ____D C:\Users\gagne\AppData\Roaming\LGHUB
2022-06-02 17:00 - 2022-06-02 17:00 - 000000000 ____D C:\ProgramData\Logishrd
2022-06-02 16:43 - 2022-06-15 18:15 - 000000000 ____D C:\ProgramData\LGHUB
2022-06-02 16:42 - 2022-06-13 18:14 - 000000000 ____D C:\Users\gagne\Desktop\Nastaveni
2022-06-02 16:41 - 2022-06-02 16:42 - 000001578 _____ C:\Users\gagne\Desktop\Download.lnk
2022-06-02 16:38 - 2022-06-02 16:38 - 000000623 _____ C:\Users\gagne\Desktop\Total Commander 64 bit.lnk
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Roaming\GHISLER
2022-06-02 16:38 - 2022-06-02 16:38 - 000000000 ____D C:\Users\gagne\AppData\Local\GHISLER
2022-06-02 16:15 - 2022-06-20 18:42 - 000000000 ____D C:\Users\gagne\AppData\Roaming\NZXT CAM
2022-06-02 16:15 - 2022-06-02 16:15 - 001478312 _____ C:\Users\gagne\Downloads\NZXT-CAM-Setup.exe
2022-06-02 16:15 - 2022-06-02 16:15 - 000001801 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZXT CAM.lnk
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Users\gagne\AppData\LocalLow\AMD
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Users\gagne\AppData\Local\nzxt cam-updater
2022-06-02 16:15 - 2022-06-02 16:15 - 000000000 ____D C:\Program Files\NZXT CAM
2022-06-02 16:15 - 2022-05-26 18:57 - 000024576 _____ (Silicon Laboratories) C:\Windows\system32\Drivers\SiLib.sys
2022-06-02 16:15 - 2022-05-26 18:57 - 000019456 _____ (Silicon Laboratories) C:\Windows\system32\Drivers\SiUSBXp.sys
2022-06-02 16:13 - 2022-06-02 16:13 - 000000000 ____D C:\Users\gagne\AppData\Local\OneDrive
2022-06-02 16:09 - 2022-06-20 18:26 - 000000000 ____D C:\Users\gagne\AppData\Local\AMD_Common
2022-06-02 16:06 - 2022-06-20 18:37 - 000003118 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2022-06-02 16:06 - 2022-06-20 18:37 - 000003078 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2022-06-02 16:06 - 2022-06-15 20:17 - 000002672 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2022-06-02 16:06 - 2022-06-15 20:17 - 000002202 _____ C:\Windows\system32\Tasks\StartCN
2022-06-02 16:06 - 2022-06-15 20:17 - 000002122 _____ C:\Windows\system32\Tasks\StartDVR
2022-06-02 16:06 - 2022-06-02 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2022-06-02 16:06 - 2022-06-02 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2022-06-02 16:05 - 2022-06-12 07:52 - 000000000 ____D C:\Users\gagne\AppData\Local\AMD
2022-06-02 16:05 - 2022-06-12 07:48 - 000000000 ____D C:\ProgramData\Package Cache
2022-06-02 16:05 - 2022-06-02 16:05 - 000000000 ____D C:\Windows\system32\AMD
2022-06-02 16:05 - 2022-05-30 15:03 - 000110952 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2022-06-02 16:05 - 2022-05-17 07:48 - 002949952 _____ (AMD Inc.) C:\Windows\SysWOW64\AMDBugReportTool.exe
2022-06-02 16:03 - 2022-06-02 16:08 - 000000000 ____D C:\ProgramData\AMD
2022-06-02 16:03 - 2022-06-02 16:06 - 000000000 ____D C:\Program Files\AMD
2022-06-02 16:03 - 2022-06-02 16:03 - 000000000 ____D C:\Users\gagne\AppData\Local\AMDSoftwareInstaller
2022-06-02 15:56 - 2022-06-02 16:01 - 597199608 _____ (AMD Inc.) C:\Users\gagne\Downloads\whql-amd-software-adrenalin-edition-22.5.2-win10-win11-may31.exe
2022-06-02 15:48 - 2022-06-02 15:48 - 000000000 ____D C:\Users\gagne\AppData\Local\Sonarworks
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Corsair
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Local\CrashDumps
2022-06-02 15:47 - 2022-06-02 15:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair
2022-06-02 15:47 - 2022-04-06 08:37 - 002439136 _____ (A-Volute) C:\Windows\system32\9EarsSurroundSound.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 001820392 _____ (Corsair Memory, Inc.) C:\Windows\system32\CorsairGamingAudioPO64.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 000609848 _____ (Corsair Memory, Inc.) C:\Windows\system32\CorsairGamingAudioCfgService64.exe
2022-06-02 15:47 - 2022-04-06 08:37 - 000486568 _____ (Sonarworks) C:\Windows\system32\soundidsdkdsp.dll
2022-06-02 15:47 - 2022-04-06 08:37 - 000062496 _____ (Corsair Memory, Inc.) C:\Windows\system32\Drivers\CorsairGamingAudio64.sys
2022-06-02 15:46 - 2022-06-02 15:48 - 000000000 ____D C:\ProgramData\Corsair
2022-06-02 15:46 - 2022-06-02 15:47 - 000000000 ____D C:\Users\gagne\AppData\Local\Corsair
2022-06-02 15:46 - 2022-06-02 15:46 - 000000000 ____D C:\Users\gagne\AppData\Local\cache
2022-06-02 15:46 - 2022-06-02 15:46 - 000000000 ____D C:\Program Files\Corsair
2022-06-02 15:42 - 2022-06-20 18:47 - 000000000 ____D C:\Users\gagne\AppData\Local\Avast Software
2022-06-02 15:42 - 2022-06-02 15:42 - 000002169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2022-06-02 15:42 - 2022-06-02 15:42 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Avast Software
2022-06-02 15:42 - 2022-06-02 15:42 - 000000000 ____D C:\Users\gagne\AppData\Local\CEF
2022-06-02 15:41 - 2022-06-15 20:17 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-06-02 15:41 - 2022-06-02 15:41 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-06-02 15:41 - 2022-06-02 15:41 - 000000000 ____D C:\Windows\system32\gf2engine
2022-06-02 15:40 - 2022-06-11 17:03 - 000382608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2022-06-02 15:40 - 2022-06-02 15:41 - 000321928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000857488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000662160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000548968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000271600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000269136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2022-06-02 15:40 - 2022-06-02 15:40 - 000255136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000232648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000218608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000111056 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000102048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000086120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000045072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000038912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000021936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2022-06-02 15:40 - 2022-06-02 15:40 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2022-06-02 15:39 - 2022-06-20 18:35 - 000000000 ____D C:\ProgramData\Avast Software
2022-06-02 15:39 - 2022-06-02 15:39 - 000000000 ____D C:\Program Files\Avast Software
2022-06-02 15:38 - 2022-06-20 18:35 - 000000000 ____D C:\Program Files\Firefox Developer Edition
2022-06-02 15:38 - 2022-06-02 15:38 - 000267072 _____ (AVAST Software) C:\Users\gagne\Downloads\avast_free_antivirus_setup_online.exe
2022-06-02 15:38 - 2022-06-02 15:38 - 000000000 ____D C:\Users\gagne\AppData\Local\Comms
2022-05-31 20:18 - 2022-06-02 20:40 - 000000000 ____D C:\Windows\Panther
2022-05-31 19:50 - 2022-06-20 18:57 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-05-31 19:50 - 2022-06-20 18:56 - 000000000 ____D C:\Users\gagne\AppData\LocalLow\Mozilla
2022-05-31 19:50 - 2022-06-20 18:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-05-31 19:50 - 2022-06-20 18:28 - 000001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk
2022-05-31 19:50 - 2022-06-20 18:28 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2022-05-31 19:50 - 2022-05-31 19:50 - 000001063 _____ C:\Users\Public\Desktop\Firefox Developer Edition.lnk
2022-05-31 19:50 - 2022-05-31 19:50 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Mozilla
2022-05-31 19:50 - 2022-05-31 19:50 - 000000000 ____D C:\Users\gagne\AppData\Local\Mozilla
2022-05-31 19:49 - 2022-05-31 19:49 - 000342976 _____ (Mozilla) C:\Users\gagne\Downloads\Firefox Installer.exe
2022-05-31 19:46 - 2022-06-15 20:17 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3082329309-1617206090-3278802057-1001
2022-05-31 19:46 - 2022-05-31 19:46 - 000000000 ___HD C:\OneDriveTemp
2022-05-31 19:46 - 2022-05-31 19:46 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-05-31 19:45 - 2022-06-20 18:47 - 000000000 ___RD C:\Users\gagne\OneDrive
2022-05-31 19:45 - 2022-06-15 20:17 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3082329309-1617206090-3278802057-1001
2022-05-31 19:45 - 2022-06-02 19:31 - 000000000 ____D C:\Users\gagne\AppData\Local\PlaceholderTileLogoFolder
2022-05-31 19:45 - 2022-05-31 19:45 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-05-31 19:43 - 2022-06-16 21:56 - 000000000 ____D C:\Users\gagne\AppData\Local\D3DSCache
2022-05-31 19:43 - 2022-06-11 17:24 - 000000000 ____D C:\ProgramData\Packages
2022-05-31 19:43 - 2022-06-02 20:48 - 000000000 ____D C:\Users\gagne\AppData\Local\Packages
2022-05-31 19:43 - 2022-05-31 19:53 - 000000000 ____D C:\Users\gagne\AppData\Local\ConnectedDevicesPlatform
2022-05-31 19:43 - 2022-05-31 19:45 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ___RD C:\Users\gagne\3D Objects
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Roaming\Adobe
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Local\VirtualStore
2022-05-31 19:43 - 2022-05-31 19:43 - 000000000 ____D C:\Users\gagne\AppData\Local\Publishers
2022-05-31 19:41 - 2022-06-14 17:42 - 000002386 _____ C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-05-31 19:41 - 2022-05-31 19:45 - 000000000 ____D C:\Users\gagne
2022-05-31 19:41 - 2022-05-31 19:41 - 000000020 ___SH C:\Users\gagne\ntuser.ini
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Šablony
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Soubory cookie
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Poslední
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Okolní tiskárny
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Okolní síť
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Nabídka Start
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Dokumenty
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Obrázky
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Hudba
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Documents\Filmy
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\Data aplikací
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:41 - 2022-05-31 19:41 - 000000000 _SHDL C:\Users\gagne\AppData\Local\Data aplikací
2022-05-31 19:35 - 2022-06-20 18:41 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Šablony
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Poslední
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Okolní síť
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Dokumenty
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Šablony
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Plocha
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\ProgramData\Data aplikací
2022-05-31 19:30 - 2022-05-31 19:30 - 000000000 _SHDL C:\Documents and Settings
2022-05-31 19:28 - 2022-06-20 18:35 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2022-05-31 19:28 - 2022-06-20 18:35 - 000008192 ___SH C:\DumpStack.log.tmp
2022-05-31 19:28 - 2022-06-20 18:35 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-05-31 19:28 - 2022-06-20 17:22 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-05-31 19:28 - 2022-06-15 20:17 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-05-31 19:28 - 2022-06-15 20:17 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-05-31 19:28 - 2022-06-15 18:15 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-05-31 19:28 - 2022-05-31 19:28 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-05-31 19:28 - 2022-05-31 19:28 - 000000000 ____D C:\Windows\ServiceProfiles
2022-05-30 15:05 - 2022-05-30 15:05 - 001973752 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001973752 _____ C:\Windows\system32\vulkaninfo.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001530360 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001530360 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-05-30 15:05 - 2022-05-30 15:05 - 001444360 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001444360 _____ C:\Windows\system32\vulkan-1.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001155936 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 001155936 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000799736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000049656 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2022-05-30 15:05 - 2022-05-30 15:05 - 000046584 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001892840 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001716920 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001426912 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001426912 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 001392400 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000896984 _____ (AMD) C:\Windows\system32\atieclxx.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000676848 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000560624 _____ C:\Windows\system32\GameManager64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000528352 _____ C:\Windows\system32\atieah64.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000503272 _____ C:\Windows\system32\dgtrayicon.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000500728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000495096 _____ C:\Windows\system32\EEURestart.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000471512 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000421880 _____ C:\Windows\SysWOW64\GameManager32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000396248 _____ C:\Windows\SysWOW64\atieah32.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000367584 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000356840 _____ C:\Windows\system32\clinfo.exe
2022-05-30 15:04 - 2022-05-30 15:04 - 000263640 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000222688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000205704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000197112 _____ C:\Windows\system32\mantle64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000181232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000180216 _____ C:\Windows\system32\mantleaxl64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000170160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000169432 _____ (AMD) C:\Windows\system32\atimuixx.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000158200 _____ C:\Windows\SysWOW64\mantle32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000152752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000143864 _____ C:\Windows\SysWOW64\mantleaxl32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000143856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000142296 _____ C:\Windows\system32\atidxx64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000140792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000123832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000116704 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000116192 _____ C:\Windows\SysWOW64\atidxx32.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000073176 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000031136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2022-05-30 15:04 - 2022-05-30 15:04 - 000031120 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 089903584 _____ C:\Windows\system32\amd_comgr.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 074060792 _____ C:\Windows\SysWOW64\amd_comgr32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 010428376 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000941552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000768976 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000561112 _____ C:\Windows\system32\amdgfxinfo64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000553008 _____ C:\Windows\system32\amdmiracast.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000469472 _____ C:\Windows\system32\amdlogum.exe
2022-05-30 15:03 - 2022-05-30 15:03 - 000424408 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000228888 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000184048 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000163152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000152728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000137896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000135664 _____ C:\Windows\system32\amdxc64.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000123816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2022-05-30 15:03 - 2022-05-30 15:03 - 000111600 _____ C:\Windows\SysWOW64\amdxc32.dll
2022-05-30 14:38 - 2022-05-30 14:38 - 057489984 _____ C:\Windows\system32\amdxc64.so
2022-05-30 14:38 - 2022-05-30 14:38 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2022-05-30 14:38 - 2022-05-30 14:38 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2022-05-30 14:38 - 2022-05-30 14:38 - 000574248 _____ C:\Windows\SysWOW64\atiapfxx.blb
2022-05-30 14:38 - 2022-05-30 14:38 - 000574248 _____ C:\Windows\system32\atiapfxx.blb
2022-05-30 14:38 - 2022-05-30 14:38 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2022-05-30 14:38 - 2022-05-30 14:38 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000128048 _____ C:\Windows\system32\kapp_ci.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2022-05-30 14:38 - 2022-05-30 14:38 - 000076237 _____ C:\Windows\system32\AMDKernelEvents.man

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-20 18:41 - 2019-12-07 16:41 - 000682184 _____ C:\Windows\system32\perfh005.dat
2022-06-20 18:41 - 2019-12-07 16:41 - 000137000 _____ C:\Windows\system32\perfc005.dat
2022-06-20 18:41 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-06-20 18:37 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-06-20 18:37 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-20 18:35 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2022-06-20 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-06-20 18:34 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-20 17:38 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-06-20 17:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2022-06-12 08:02 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-02 15:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2022-06-02 15:37 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2022-05-31 20:18 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2022-05-31 19:58 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-05-31 19:54 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-05-31 19:41 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2022-05-31 19:31 - 2019-12-07 16:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2022-05-31 19:31 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2022-05-31 19:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-05-31 19:30 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-05-31 19:28 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


ADDITION

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-06-2022
Ran by gagne (20-06-2022 19:00:58)
Running from C:\Users\gagne\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1766 (X64) (2022-05-31 17:31:05)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3082329309-1617206090-3278802057-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3082329309-1617206090-3278802057-503 - Limited - Disabled)
gagne (S-1-5-21-3082329309-1617206090-3278802057-1001 - Administrator - Enabled) => C:\Users\gagne
Guest (S-1-5-21-3082329309-1617206090-3278802057-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3082329309-1617206090-3278802057-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 22.5.2 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 22.5.6015 - Avast Software)
Branding64 (HKLM\...\{2AF42320-5ECF-4BCA-B756-8F3677262D55}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.63.1071 - AB Team, d.o.o.)
CORSAIR iCUE 4 Software (HKLM\...\{D67FD012-5FC8-4474-AC27-68F59AAA304E}) (Version: 4.23.137 - Corsair)
C-TECH AKANTHA ULTIMATE GAMING SOFTWARE 1.2 (HKLM-x32\...\C-TECH AKANTHA ULTIMATE GAMING SOFTWARE) (Version: 1.2 - C-TECH)
C-TECH Echion Keyboard Driver v1.6.6 (HKLM-x32\...\{53162F95-A943-4865-9A58-1959B37F17FC}_is1) (Version: - C-TECH)
Discord (HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\Discord) (Version: 1.0.9004 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 4.TTRS.2021 - Thrustmaster)
Firefox Developer Edition (x64 cs) (HKLM\...\Firefox Developer Edition 102.0 (x64 cs)) (Version: 102.0 - Mozilla)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.6.271036 - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 102.0.1245.44 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\...\OneDriveSetup.exe) (Version: 22.111.0522.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30133 (HKLM\...\{E699E009-1C3C-4E50-9B57-2B39F0954C7F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30133 (HKLM\...\{6CD9E9ED-906D-4196-8DC3-F987D2F6615F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 (HKLM-x32\...\{EAC73207-74BD-4B13-AACF-8C0E751FA4E8}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 (HKLM-x32\...\{2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 102.0 - Mozilla)
NZXT CAM 4.34.3 (HKLM\...\ac0666ae-ee66-5310-ac01-9d6348133b2d) (Version: 4.34.3 - NZXT, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tom Clancy's The Division 2 (HKLM-x32\...\Uplay Install 4932) (Version: - Ubisoft)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.50 - Ghisler Software GmbH)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 132.0.10676 - Ubisoft)

Packages:
=========
AMD Link -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDLink_10.22.20002.0_x64__0a9344xs7nr4m [2022-06-02] (Advanced Micro Devices Inc.)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.5310.0_x64__8wekyb3d8bbwe [2022-06-11] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2022-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-06-02] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\system32\ac3filter64.acm [2231296 2013-04-05] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\SysWOW64\ac3filter.acm [1679360 2013-04-05] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\gagne\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)

==================== Loaded Modules (Whitelisted) =============

2022-06-14 15:17 - 2022-06-13 20:11 - 000151040 _____ () [File not signed] \\?\C:\Program Files\LGHUB\resources\app.asar.unpacked\node_modules\keytar\build\Release\keytar.node
2022-05-17 01:26 - 2022-05-17 01:26 - 018143744 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\avcodec-58.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 003371520 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 002772480 _____ () [File not signed] C:\Program Files\NZXT CAM\ffmpeg.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 000379904 _____ () [File not signed] C:\Program Files\NZXT CAM\libegl.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 007863296 _____ () [File not signed] C:\Program Files\NZXT CAM\libglesv2.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 002274816 _____ (CPUID) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\common\cpuid\cpuidsdk64.dll
2017-09-05 00:15 - 2017-09-05 00:15 - 004396032 _____ (Microsoft Corporation) [File not signed] C:\Program Files\AMD\CNext\CNext\D3DCOMPILER_47.dll
2022-03-04 14:40 - 2022-03-04 14:40 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files\Corsair\CORSAIR iCUE 4 Software\SiUSBXp.dll
2022-06-02 16:15 - 2022-05-26 18:57 - 000083456 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\nzxt-device\SiUSBXp64.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000057344 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\audio\qtaudio_windows.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000037888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000031232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000448000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000023040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000502272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001469952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001430016 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 008103936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 006786048 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000743936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Multimedia.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000117760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5MultimediaQuick.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001066496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000310784 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 003610624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000436736 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlModels.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000049664 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlWorkerScript.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 004172800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000166912 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 001120768 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000203776 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000326144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2022-01-12 01:03 - 2022-01-12 01:03 - 000375296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2022-01-12 01:03 - 2022-01-12 01:03 - 113779200 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000128512 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 005536256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000230400 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000208896 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000055296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000059904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000271360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtMultimedia\declarative_multimedia.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQml\qmlplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000018432 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000247296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000135168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000106496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000349696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000046592 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2021-11-18 12:47 - 2021-11-18 12:47 - 000103424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3082329309-1617206090-3278802057-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{8863C9D1-0151-4FDE-BD0A-A6A72AEC64F3}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BC64AB36-248C-4314-B0D5-2CAC7A709798}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{F17FBCDE-27E6-4F36-9704-51FBD8DBCB06}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E034FF70-CAF1-4625-BDB5-65F1019F408B}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [TCP Query User{BFDB94EB-B160-46C3-91E8-3C6199A7F04A}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{0D4DFE67-3144-4AA2-9F7C-7BF9929075BE}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{9DC65D9F-6AC7-4369-8E35-27C623F40112}D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5C0A2AF5-AA6D-4D53-974F-6657F7F01D06}D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{C2F51D2D-AB24-4EE5-96DE-35A8131A2B47}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F7286CA6-4DF9-46DD-A8D4-A15FB9B7FC64}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4F486775-BFC2-48E1-ADF6-095A2976C6D9}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B1818985-F1EA-4627-A75D-905D2095664F}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{874F85EF-52F9-4936-9C6A-146A624A73AD}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9528324A-6875-4DDF-ACC8-DC6E892422D3}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{0EE3ACD8-42FC-4169-92ED-4AEE38CD6E88}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{B97AE8E9-C844-4EFF-8B44-86DF9298AB28}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{0E04790C-3B46-4717-B332-F79B34735E5B}] => (Allow) D:\Games\Tom Clancy's The Division 2\TheDivision2.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [TCP Query User{CC9EF5A4-4F96-4521-B048-75C299AF23C0}D:\games\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\games\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [UDP Query User{5961DFAE-D83F-401B-A744-C2C7C42A0D87}D:\games\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\games\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)

==================== Restore Points =========================

11-06-2022 17:06:35 Instalační služba modulů systému Windows
11-06-2022 17:15:28 Instalační služba modulů systému Windows
11-06-2022 17:16:13 Instalační služba modulů systému Windows
20-06-2022 17:23:33 Instalační služba modulů systému Windows
20-06-2022 17:24:29 Instalační služba modulů systému Windows
20-06-2022 17:25:15 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/20/2022 06:35:13 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/12/2022 11:01:18 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.


System errors:
=============
Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Corsair Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba LGHUB Updater Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Thrustmaster® Device Driver Installer byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Corsair LLA Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CAM Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Corsair Gaming Audio Configuration Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD External Events Utility byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2022 06:27:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD Crash Defender Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===============
Date: 2022-06-20 18:37:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-06-20 18:37:01
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 0701 05/16/2016
Motherboard: ASUSTeK COMPUTER INC. 970 PRO GAMING/AURA
Processor: AMD FX(tm)-8350 Eight-Core Processor
Percentage of memory in use: 36%
Total physical RAM: 16280.84 MB
Available physical RAM: 10310.15 MB
Total Virtual: 22168.84 MB
Available Virtual: 12893.38 MB

==================== Drives ================================

Drive c: (WIN10) (Fixed) (Total:222.96 GB) (Free:165.08 GB) (Model: SanDisk SDSSDA240G) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:811.37 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS

\\?\Volume{418e9b3a-17e0-4cd2-b95b-28d9bfd09665}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{bddb1690-dbed-42b0-b569-4f6a03c59a8e}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 61C67A30)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 1805298C)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prolpmeny heslo na Mail a nejaky ucty.

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

GagnerCZ
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 15 zář 2008 16:16

Re: Prolpmeny heslo na Mail a nejaky ucty.

#7 Příspěvek od GagnerCZ »

Fix result of Farbar Recovery Scan Tool (x64) Version: 20-06-2022
Ran by gagne (20-06-2022 19:58:52) Run:1
Running from C:\Users\gagne\Desktop
Loaded Profiles: gagne
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 31784707 B
Java, Discord, Steam htmlcache => 257213335 B
Windows/system/drivers => 18447809 B
Edge => 0 B
Firefox => 1143689151 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 39152 B
NetworkService => 41034 B
gagne => 57504149 B

RecycleBin => 85705 B
EmptyTemp: => 1.4 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:59:19 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prolpmeny heslo na Mail a nejaky ucty.

#8 Příspěvek od Rudy »

Smazáno. Změňte si všechna hesla, která byla prolomena.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

GagnerCZ
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 15 zář 2008 16:16

Re: Prolpmeny heslo na Mail a nejaky ucty.

#9 Příspěvek od GagnerCZ »

Mockrat dekuju.

Bylo tam neco?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prolpmeny heslo na Mail a nejaky ucty.

#10 Příspěvek od Rudy »

Nic zvláštního, jen pár restrikcí, něco ale mohlo být v dočasných souborech. Ty mi log podrobně nezobrazí, pouze celkový obsah (1,4GB). Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět