Prosím o kontrolu logu
Napsal: 01 bře 2021 22:02
Zdravím a moc bych chtěl poprosit o preventivní zkontrolování logu. Zdá se mi, že procesor jede při běžném provozu na vyšší výkon, než je běžné.
Moc děkuju!
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-02-2021
Ran by micha (administrator) on DESKTOP-4P614L3 (Dell Inc. Inspiron 5567) (01-03-2021 21:54:00)
Running from C:\Users\micha\Desktop
Loaded Profiles: micha
Platform: Windows 10 Home Version 2004 19041.804 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\TrueColor\TrueColorALS.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0354716.inf_amd64_f71e4ad1ddbb6e3d\B352547\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0354716.inf_amd64_f71e4ad1ddbb6e3d\B352547\atiesrxx.exe
(Compal electronic ,inc -> Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc -> Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\atiw.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Entertainment Experience LLC -> Entertainment Experience) C:\Program Files\TrueColor\TrueColorUI.exe
(Focusrite Audio Engineering Ltd.) [File not signed] C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe
(Focusrite Audio Engineering, Ltd.) [File not signed] C:\Program Files\FocusriteUSB\Focusrite Notifier.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxext.exe <3>
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2009.2711.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <7>
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7240.285\DSAPI.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RAPS.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Rivet Networks LLC -> Rivet Networks, LLC.) C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235928 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [7824848 2016-07-20] (Compal electronic ,inc -> Dell Inc.)
HKLM\...\Run: [TrueColor UI] => C:\Program Files\TrueColor\TrueColorUI.exe [19636624 2016-06-21] (Entertainment Experience LLC -> Entertainment Experience)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\FocusriteUSB\Focusrite Notifier.exe [3949568 2019-06-20] (Focusrite Audio Engineering, Ltd.) [File not signed]
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321112 2019-07-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKU\S-1-5-21-1105175022-2491431974-987091269-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1105175022-2491431974-987091269-1001\...\MountPoints2: {b68753aa-9eb8-11e9-a99d-d481d75bdbc7} - "E:\WD Drive Unlock.exe" autoplay=true
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {006A26BE-A2BE-47DD-BF1C-5AB3C186AD87} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {0F0402DD-85C6-42B0-A97C-4AAEC3742CCF} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe [891576 2019-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {12B01438-11D5-45ED-A83A-641BE64366E9} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe [110008 2016-04-27] (CyberLink Corp. -> CyberLink)
Task: {162A324D-11E7-4D3A-86EB-F91DC0747F05} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLVDLauncher.exe [340440 2015-01-29] (CyberLink Corp. -> CyberLink Corp.)
Task: {178C713E-4557-483A-9D23-ACCFF6B67FF2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {28BA558C-9E47-45AF-A7E0-7035232E99D8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe
Task: {3A7AFB32-08A2-496A-91D6-B014F3513E23} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [694752 2021-02-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {40AF04C3-27AE-424B-A8DC-FB13D190D7F5} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {50A04395-1086-4E59-9EF4-4D28D1B11468} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [95072 2020-08-14] (Rivet Networks LLC -> DELL)
Task: {55929B2D-2252-46CD-AB7D-66B3CE8F5AE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {560C296A-6D4A-4179-ACE4-C8408279E288} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24770744 2020-08-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6AE563E2-DD2B-4E38-BEB0-3F470C324F69} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {6BA9D81F-FDF7-4EC0-890F-4E64F2C2B031} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6BE0DD6F-0E13-4163-BCAF-13CBF8E4F8FF} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1059336 2021-01-09] (Dell Inc -> Dell Inc.)
Task: {6F3BC44F-778D-40DF-BFA4-CEF9AA2FB92A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {91A4EC20-37B8-460F-B7D8-CD03F761E5E1} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-09-10] (Advanced Micro Devices, Inc.) [File not signed]
Task: {933BB0CF-0A6B-4E46-887E-AF93BC25B063} - System32\Tasks\AMDInstallUEP => C:\Program Files\AMD\InstallUEP\AMDInstallUEP.exe
Task: {9489F4F1-8BF2-40F2-987C-BDE97909D859} - System32\Tasks\Dell Cleanup => c:\windows\system32\oem\startmenufix.vbs [1595 2016-09-14] () [File not signed]
Task: {9BB0AFD1-41F4-487C-B2BB-DD2E070A7B14} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-09-10] (Advanced Micro Devices, Inc.) [File not signed]
Task: {9E3243BF-7D9A-4140-9D40-07BA8941F97E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-08-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A3C2A139-04CF-4BE8-9B4D-296A228FEB43} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {a854a53c-c2ea-4788-a2b1-ea17192576bb} - no filepath
Task: {AF515109-AC91-49B3-9185-693A37E5B0D1} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {B6872476-0B04-4A9E-87B0-4DB0B5A1E8B7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE25127A-4755-4A9D-A146-1562FA905937} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe [1459256 2020-06-13] (Adobe Inc. -> Adobe)
Task: {C4E98E54-130C-40E3-9BC8-CEFFCAA2D2A6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEA4FAAE-385C-4EA0-9488-6504B2F90ADA} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe
Task: {D13AF1DD-DE7C-4AAC-8BCD-D076B2CAB061} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [616232 2016-11-30] (Dropbox, Inc -> DropboxOEM)
Task: {F23C983F-68AA-462C-9C93-8D5E7120F5C0} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F5623684-DAD4-4E5D-8340-AD531EFBF629} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1126320 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {FAEDD3B5-C009-497B-AC4F-EAF5DC7E41EA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{043f3102-48e3-485a-bef7-7ea9eb68389d}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{aa0e5cf7-66dd-4cb8-9892-da5d2bb1ff26}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-01]
FireFox:
========
FF DefaultProfile: nl9bmpn0.default-1494170504432
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432 [2021-03-01]
FF Homepage: Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432 -> www.seznam.cz
FF Extension: (Web Scrobbler) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432\Extensions\{799c0914-748b-41df-a25c-22d008f9e83f}.xpi [2021-02-04]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_387.dll [2020-06-13] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_387.dll [2020-06-13] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-02-25] (Adobe Inc. -> Adobe Systems Inc.)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8905608 2021-02-13] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [287776 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3750944 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [507936 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2017-09-19] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [48832 2020-11-19] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7240.285\DSAPI.exe [985584 2021-01-13] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38592 2021-01-19] (Dell Inc -> )
R2 Focusrite Control Server; C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe [1518080 2019-07-01] (Focusrite Audio Engineering Ltd.) [File not signed]
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1741384 2021-01-09] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-11-26] (GOG Sp. z o.o. -> GOG.com)
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell Inc -> Dell)
R2 RAPSService; C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe [64848 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2015-09-02] (CyberLink Corp. -> CyberLink)
S3 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64856 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 SmartByte Analytics Service; C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe [1630576 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2385256 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39432 2021-01-09] (Dell Inc -> Dell Inc.)
R2 TrueColorALS; C:\Program Files\TrueColor\TrueColorALS.exe [87040 2016-05-18] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R4 DBUtil_2_3; C:\WINDOWS\TEMP\DBUtil_2_3.Sys [14840 2021-03-01] (Dell Inc. -> )
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [42376 2020-10-25] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [31560 2016-12-02] (WDKTestCert Andy_Chen6,131219483243550933 -> OSR Open Systems Resources, Inc.)
R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [97480 2016-11-16] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB; C:\WINDOWS\System32\drivers\FocusriteUSB.sys [121880 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\WINDOWS\System32\drivers\FocusriteUSBSwRoot.sys [101304 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_AUDIO; C:\WINDOWS\system32\drivers\FocusriteUSBAudio.sys [63200 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_MIDI; C:\WINDOWS\system32\drivers\FocusriteUSBMidi.sys [49792 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519456 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
R3 MpKslfc9fe9cd; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4DF85749-203E-4694-AC51-AE34CD29DA19}\MpKslDrv.sys [47344 2021-03-01] (Microsoft Windows -> Microsoft Corporation)
R3 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [164424 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus.sys [X]
S3 ssudmdm; \SystemRoot\system32\DRIVERS\ssudmdm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-03-01 21:54 - 2021-03-01 21:55 - 000023452 _____ C:\Users\micha\Desktop\FRST.txt
2021-03-01 21:53 - 2021-03-01 21:54 - 000000000 ____D C:\FRST
2021-03-01 21:51 - 2021-03-01 21:51 - 002301440 _____ (Farbar) C:\Users\micha\Desktop\FRST64.exe
2021-03-01 21:47 - 2021-03-01 21:49 - 000007601 _____ C:\Users\micha\AppData\Local\Resmon.ResmonCfg
2021-03-01 21:16 - 2021-03-01 21:16 - 000003112 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2021-03-01 20:21 - 2021-03-01 20:21 - 000299032 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-03-01 20:05 - 2021-03-01 20:05 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-02-28 10:24 - 2021-02-28 10:24 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-27 16:36 - 2021-02-27 18:15 - 1665383926 _____ C:\Users\micha\Downloads\Krásná hašteřilka _ La belle noiseuse _ The Beautiful Troublemaker 1991, F - CZ tit.avi
2021-02-27 13:49 - 2021-02-27 13:49 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1105175022-2491431974-987091269-1001
2021-02-27 13:48 - 2021-02-27 13:48 - 000002363 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-27 13:48 - 2021-02-27 13:48 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-02-25 22:21 - 2021-02-25 22:21 - 000051105 _____ C:\Users\micha\Downloads\Chungking.Express.1994.DVDRip.Xvid.CZ tit.srt
2021-02-25 22:16 - 2021-02-25 22:16 - 000051163 _____ C:\Users\micha\Downloads\Chungking Express.srt
2021-02-25 20:30 - 2021-02-25 20:30 - 000000000 ____D C:\Program Files (x86)\DummyDir
2021-02-25 20:14 - 2021-02-25 21:53 - 1754318501 _____ C:\Users\micha\Downloads\Chungking.Express.1994.1080p.BluRay.x264-[YTS.AM].mp4
2021-02-25 18:57 - 2021-03-01 20:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-02-23 17:35 - 2020-12-03 01:14 - 001790232 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001790232 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001386264 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001386264 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001096328 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 001096328 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000949376 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000949376 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000427864 _____ C:\WINDOWS\system32\ze_loader.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000171504 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000148824 _____ C:\WINDOWS\system32\ze_validation_layer.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000146792 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000507736 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000370520 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000294232 _____ C:\WINDOWS\system32\igfxCPL.cpl
2021-02-16 20:25 - 2021-02-16 21:52 - 1566117888 _____ C:\Users\micha\Downloads\Human.Traffic.1999.DVDRip.XviD.AC3.CZ-JRJ.avi
2021-02-12 01:22 - 2021-02-12 01:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-12 01:22 - 2021-02-12 01:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-12 01:22 - 2021-02-12 01:22 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-12 01:22 - 2021-02-12 01:22 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-12 01:21 - 2021-02-12 01:21 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 01:12 - 2021-02-12 01:12 - 000000000 ____D C:\WINDOWS\{A5881762-8AC3-445F-8DB7-8C2266F72EF3}
2021-02-09 15:33 - 2021-02-09 15:33 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-02-08 21:15 - 2021-02-08 21:16 - 000031035 _____ C:\Users\micha\Downloads\Banditi a Orgosolo (Vittorio De Seta, 1961)cz.srt
2021-02-08 20:20 - 2021-02-08 20:20 - 000000000 ____D C:\Users\micha\Downloads\Simansky Niesner - Something Good
2021-02-08 20:03 - 2021-02-08 21:09 - 1163165696 _____ C:\Users\micha\Downloads\Banditi a Orgosolo (Vittorio De Seta, 1961).avi
2021-02-07 11:37 - 2021-02-07 13:42 - 2112437988 _____ C:\Users\micha\Downloads\Vetřelec Covenant (2017,cz,dabing,HD,1080p)ddd.mkv
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-03-01 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-03-01 21:45 - 2019-02-23 05:11 - 000000000 ____D C:\ProgramData\Mozilla
2021-03-01 21:44 - 2017-05-07 16:17 - 000000000 ____D C:\Users\micha\AppData\LocalLow\Mozilla
2021-03-01 21:26 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-03-01 21:23 - 2019-08-19 15:27 - 000000000 ____D C:\Program Files\CCleaner
2021-03-01 21:16 - 2020-09-07 21:30 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-03-01 21:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-03-01 21:16 - 2017-04-09 09:55 - 000000000 __SHD C:\Users\micha\IntelGraphicsProfiles
2021-03-01 20:39 - 2019-06-02 11:30 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2021-03-01 20:21 - 2020-09-07 22:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-03-01 20:21 - 2020-09-07 21:30 - 000008192 ___SH C:\DumpStack.log.tmp
2021-03-01 20:21 - 2020-09-05 21:10 - 000000000 ___DC C:\WINDOWS\Panther
2021-03-01 20:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-03-01 20:21 - 2017-05-07 16:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-03-01 20:21 - 2016-12-24 09:04 - 000000000 ____D C:\Intel
2021-03-01 20:18 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-03-01 20:07 - 2017-11-10 22:32 - 000000000 ____D C:\Program Files\Intel
2021-03-01 20:05 - 2017-11-10 22:32 - 000000000 ____D C:\Program Files (x86)\Intel
2021-03-01 20:04 - 2016-12-24 09:03 - 000000000 ____D C:\ProgramData\Package Cache
2021-03-01 20:03 - 2016-12-24 09:04 - 000000000 ____D C:\ProgramData\Intel
2021-03-01 19:43 - 2020-04-13 11:13 - 000000000 ____D C:\Users\micha\AppData\Roaming\MPC-HC
2021-03-01 19:16 - 2017-05-07 16:52 - 000000000 ____D C:\Users\micha\AppData\Local\Spotify
2021-03-01 18:51 - 2017-05-07 16:52 - 000000000 ____D C:\Users\micha\AppData\Roaming\Spotify
2021-02-28 10:24 - 2017-05-07 16:20 - 000001230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-27 13:57 - 2020-07-19 01:11 - 000002423 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-27 13:57 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-27 13:48 - 2017-04-09 09:58 - 000000000 ___RD C:\Users\micha\OneDrive
2021-02-27 13:42 - 2020-09-07 22:04 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-02-24 19:38 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-24 19:14 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-20 22:40 - 2016-12-24 09:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-02-14 21:56 - 2020-08-21 23:25 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-12 01:45 - 2018-02-25 02:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-02-12 01:39 - 2020-09-07 21:44 - 001693346 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-02-12 01:39 - 2019-12-07 15:41 - 000719302 _____ C:\WINDOWS\system32\perfh005.dat
2021-02-12 01:39 - 2019-12-07 15:41 - 000145428 _____ C:\WINDOWS\system32\perfc005.dat
2021-02-12 01:30 - 2016-12-24 09:14 - 000000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2021-02-12 01:30 - 2016-12-24 09:14 - 000000930 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 01:28 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-12 00:53 - 2017-05-07 17:23 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-02-12 00:51 - 2017-05-07 17:23 - 130141752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-02-09 09:52 - 2020-09-07 22:04 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-09 09:52 - 2020-09-07 22:04 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-06 23:09 - 2019-08-21 20:16 - 000000000 ____D C:\Users\micha\Downloads\Filmy
2021-02-05 20:04 - 2020-08-21 23:25 - 000734016 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2021-02-05 20:03 - 2020-08-21 23:25 - 000470848 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-01-31 19:18 - 2018-03-31 19:55 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
==================== Files in the root of some directories ========
2021-03-01 21:47 - 2021-03-01 21:49 - 000007601 _____ () C:\Users\micha\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Moc děkuju!
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-02-2021
Ran by micha (administrator) on DESKTOP-4P614L3 (Dell Inc. Inspiron 5567) (01-03-2021 21:54:00)
Running from C:\Users\micha\Desktop
Loaded Profiles: micha
Platform: Windows 10 Home Version 2004 19041.804 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\TrueColor\TrueColorALS.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0354716.inf_amd64_f71e4ad1ddbb6e3d\B352547\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0354716.inf_amd64_f71e4ad1ddbb6e3d\B352547\atiesrxx.exe
(Compal electronic ,inc -> Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc -> Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc -> Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\atiw.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Entertainment Experience LLC -> Entertainment Experience) C:\Program Files\TrueColor\TrueColorUI.exe
(Focusrite Audio Engineering Ltd.) [File not signed] C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe
(Focusrite Audio Engineering, Ltd.) [File not signed] C:\Program Files\FocusriteUSB\Focusrite Notifier.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxext.exe <3>
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2009.2711.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <7>
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7240.285\DSAPI.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RAPS.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe
(Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Rivet Networks LLC -> Rivet Networks, LLC.) C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235928 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [7824848 2016-07-20] (Compal electronic ,inc -> Dell Inc.)
HKLM\...\Run: [TrueColor UI] => C:\Program Files\TrueColor\TrueColorUI.exe [19636624 2016-06-21] (Entertainment Experience LLC -> Entertainment Experience)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\FocusriteUSB\Focusrite Notifier.exe [3949568 2019-06-20] (Focusrite Audio Engineering, Ltd.) [File not signed]
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321112 2019-07-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKU\S-1-5-21-1105175022-2491431974-987091269-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1105175022-2491431974-987091269-1001\...\MountPoints2: {b68753aa-9eb8-11e9-a99d-d481d75bdbc7} - "E:\WD Drive Unlock.exe" autoplay=true
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {006A26BE-A2BE-47DD-BF1C-5AB3C186AD87} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {0F0402DD-85C6-42B0-A97C-4AAEC3742CCF} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe [891576 2019-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {12B01438-11D5-45ED-A83A-641BE64366E9} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe [110008 2016-04-27] (CyberLink Corp. -> CyberLink)
Task: {162A324D-11E7-4D3A-86EB-F91DC0747F05} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLVDLauncher.exe [340440 2015-01-29] (CyberLink Corp. -> CyberLink Corp.)
Task: {178C713E-4557-483A-9D23-ACCFF6B67FF2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {28BA558C-9E47-45AF-A7E0-7035232E99D8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe
Task: {3A7AFB32-08A2-496A-91D6-B014F3513E23} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [694752 2021-02-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {40AF04C3-27AE-424B-A8DC-FB13D190D7F5} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {50A04395-1086-4E59-9EF4-4D28D1B11468} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [95072 2020-08-14] (Rivet Networks LLC -> DELL)
Task: {55929B2D-2252-46CD-AB7D-66B3CE8F5AE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {560C296A-6D4A-4179-ACE4-C8408279E288} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24770744 2020-08-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6AE563E2-DD2B-4E38-BEB0-3F470C324F69} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {6BA9D81F-FDF7-4EC0-890F-4E64F2C2B031} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6BE0DD6F-0E13-4163-BCAF-13CBF8E4F8FF} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1059336 2021-01-09] (Dell Inc -> Dell Inc.)
Task: {6F3BC44F-778D-40DF-BFA4-CEF9AA2FB92A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {91A4EC20-37B8-460F-B7D8-CD03F761E5E1} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-09-10] (Advanced Micro Devices, Inc.) [File not signed]
Task: {933BB0CF-0A6B-4E46-887E-AF93BC25B063} - System32\Tasks\AMDInstallUEP => C:\Program Files\AMD\InstallUEP\AMDInstallUEP.exe
Task: {9489F4F1-8BF2-40F2-987C-BDE97909D859} - System32\Tasks\Dell Cleanup => c:\windows\system32\oem\startmenufix.vbs [1595 2016-09-14] () [File not signed]
Task: {9BB0AFD1-41F4-487C-B2BB-DD2E070A7B14} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-09-10] (Advanced Micro Devices, Inc.) [File not signed]
Task: {9E3243BF-7D9A-4140-9D40-07BA8941F97E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-08-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A3C2A139-04CF-4BE8-9B4D-296A228FEB43} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {a854a53c-c2ea-4788-a2b1-ea17192576bb} - no filepath
Task: {AF515109-AC91-49B3-9185-693A37E5B0D1} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {B6872476-0B04-4A9E-87B0-4DB0B5A1E8B7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE25127A-4755-4A9D-A146-1562FA905937} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe [1459256 2020-06-13] (Adobe Inc. -> Adobe)
Task: {C4E98E54-130C-40E3-9BC8-CEFFCAA2D2A6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEA4FAAE-385C-4EA0-9488-6504B2F90ADA} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe
Task: {D13AF1DD-DE7C-4AAC-8BCD-D076B2CAB061} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [616232 2016-11-30] (Dropbox, Inc -> DropboxOEM)
Task: {F23C983F-68AA-462C-9C93-8D5E7120F5C0} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F5623684-DAD4-4E5D-8340-AD531EFBF629} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1126320 2021-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {FAEDD3B5-C009-497B-AC4F-EAF5DC7E41EA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{043f3102-48e3-485a-bef7-7ea9eb68389d}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{aa0e5cf7-66dd-4cb8-9892-da5d2bb1ff26}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-01]
FireFox:
========
FF DefaultProfile: nl9bmpn0.default-1494170504432
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432 [2021-03-01]
FF Homepage: Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432 -> www.seznam.cz
FF Extension: (Web Scrobbler) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\nl9bmpn0.default-1494170504432\Extensions\{799c0914-748b-41df-a25c-22d008f9e83f}.xpi [2021-02-04]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_387.dll [2020-06-13] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_387.dll [2020-06-13] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-02-25] (Adobe Inc. -> Adobe Systems Inc.)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8905608 2021-02-13] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-09] (Dropbox, Inc -> Dropbox, Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [287776 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3750944 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [507936 2020-10-25] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2017-09-19] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [48832 2020-11-19] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7240.285\DSAPI.exe [985584 2021-01-13] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [38592 2021-01-19] (Dell Inc -> )
R2 Focusrite Control Server; C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe [1518080 2019-07-01] (Focusrite Audio Engineering Ltd.) [File not signed]
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1741384 2021-01-09] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-11-26] (GOG Sp. z o.o. -> GOG.com)
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell Inc -> Dell)
R2 RAPSService; C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe [64848 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2015-09-02] (CyberLink Corp. -> CyberLink)
S3 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64856 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 SmartByte Analytics Service; C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe [1630576 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2385256 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39432 2021-01-09] (Dell Inc -> Dell Inc.)
R2 TrueColorALS; C:\Program Files\TrueColor\TrueColorALS.exe [87040 2016-05-18] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R4 DBUtil_2_3; C:\WINDOWS\TEMP\DBUtil_2_3.Sys [14840 2021-03-01] (Dell Inc. -> )
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [42376 2020-10-25] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [31560 2016-12-02] (WDKTestCert Andy_Chen6,131219483243550933 -> OSR Open Systems Resources, Inc.)
R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [97480 2016-11-16] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB; C:\WINDOWS\System32\drivers\FocusriteUSB.sys [121880 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\WINDOWS\System32\drivers\FocusriteUSBSwRoot.sys [101304 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_AUDIO; C:\WINDOWS\system32\drivers\FocusriteUSBAudio.sys [63200 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_MIDI; C:\WINDOWS\system32\drivers\FocusriteUSBMidi.sys [49792 2019-06-20] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519456 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
R3 MpKslfc9fe9cd; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4DF85749-203E-4694-AC51-AE34CD29DA19}\MpKslDrv.sys [47344 2021-03-01] (Microsoft Windows -> Microsoft Corporation)
R3 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [164424 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus.sys [X]
S3 ssudmdm; \SystemRoot\system32\DRIVERS\ssudmdm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-03-01 21:54 - 2021-03-01 21:55 - 000023452 _____ C:\Users\micha\Desktop\FRST.txt
2021-03-01 21:53 - 2021-03-01 21:54 - 000000000 ____D C:\FRST
2021-03-01 21:51 - 2021-03-01 21:51 - 002301440 _____ (Farbar) C:\Users\micha\Desktop\FRST64.exe
2021-03-01 21:47 - 2021-03-01 21:49 - 000007601 _____ C:\Users\micha\AppData\Local\Resmon.ResmonCfg
2021-03-01 21:16 - 2021-03-01 21:16 - 000003112 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2021-03-01 20:21 - 2021-03-01 20:21 - 000299032 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-03-01 20:05 - 2021-03-01 20:05 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-02-28 10:24 - 2021-02-28 10:24 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-27 16:36 - 2021-02-27 18:15 - 1665383926 _____ C:\Users\micha\Downloads\Krásná hašteřilka _ La belle noiseuse _ The Beautiful Troublemaker 1991, F - CZ tit.avi
2021-02-27 13:49 - 2021-02-27 13:49 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1105175022-2491431974-987091269-1001
2021-02-27 13:48 - 2021-02-27 13:48 - 000002363 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-27 13:48 - 2021-02-27 13:48 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-02-25 22:21 - 2021-02-25 22:21 - 000051105 _____ C:\Users\micha\Downloads\Chungking.Express.1994.DVDRip.Xvid.CZ tit.srt
2021-02-25 22:16 - 2021-02-25 22:16 - 000051163 _____ C:\Users\micha\Downloads\Chungking Express.srt
2021-02-25 20:30 - 2021-02-25 20:30 - 000000000 ____D C:\Program Files (x86)\DummyDir
2021-02-25 20:14 - 2021-02-25 21:53 - 1754318501 _____ C:\Users\micha\Downloads\Chungking.Express.1994.1080p.BluRay.x264-[YTS.AM].mp4
2021-02-25 18:57 - 2021-03-01 20:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-02-23 17:35 - 2020-12-03 01:14 - 001790232 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001790232 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001386264 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001386264 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-02-23 17:35 - 2020-12-03 01:14 - 001096328 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 001096328 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000949376 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000949376 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000427864 _____ C:\WINDOWS\system32\ze_loader.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000171504 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000148824 _____ C:\WINDOWS\system32\ze_validation_layer.dll
2021-02-23 17:35 - 2020-12-03 01:14 - 000146792 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000507736 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000370520 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-02-23 17:35 - 2020-12-03 01:13 - 000294232 _____ C:\WINDOWS\system32\igfxCPL.cpl
2021-02-16 20:25 - 2021-02-16 21:52 - 1566117888 _____ C:\Users\micha\Downloads\Human.Traffic.1999.DVDRip.XviD.AC3.CZ-JRJ.avi
2021-02-12 01:22 - 2021-02-12 01:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-12 01:22 - 2021-02-12 01:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-12 01:22 - 2021-02-12 01:22 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-12 01:22 - 2021-02-12 01:22 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-12 01:21 - 2021-02-12 01:21 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 01:12 - 2021-02-12 01:12 - 000000000 ____D C:\WINDOWS\{A5881762-8AC3-445F-8DB7-8C2266F72EF3}
2021-02-09 15:33 - 2021-02-09 15:33 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-02-08 21:15 - 2021-02-08 21:16 - 000031035 _____ C:\Users\micha\Downloads\Banditi a Orgosolo (Vittorio De Seta, 1961)cz.srt
2021-02-08 20:20 - 2021-02-08 20:20 - 000000000 ____D C:\Users\micha\Downloads\Simansky Niesner - Something Good
2021-02-08 20:03 - 2021-02-08 21:09 - 1163165696 _____ C:\Users\micha\Downloads\Banditi a Orgosolo (Vittorio De Seta, 1961).avi
2021-02-07 11:37 - 2021-02-07 13:42 - 2112437988 _____ C:\Users\micha\Downloads\Vetřelec Covenant (2017,cz,dabing,HD,1080p)ddd.mkv
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-03-01 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-03-01 21:45 - 2019-02-23 05:11 - 000000000 ____D C:\ProgramData\Mozilla
2021-03-01 21:44 - 2017-05-07 16:17 - 000000000 ____D C:\Users\micha\AppData\LocalLow\Mozilla
2021-03-01 21:26 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-03-01 21:23 - 2019-08-19 15:27 - 000000000 ____D C:\Program Files\CCleaner
2021-03-01 21:16 - 2020-09-07 21:30 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-03-01 21:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-03-01 21:16 - 2017-04-09 09:55 - 000000000 __SHD C:\Users\micha\IntelGraphicsProfiles
2021-03-01 20:39 - 2019-06-02 11:30 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2021-03-01 20:21 - 2020-09-07 22:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-03-01 20:21 - 2020-09-07 21:30 - 000008192 ___SH C:\DumpStack.log.tmp
2021-03-01 20:21 - 2020-09-05 21:10 - 000000000 ___DC C:\WINDOWS\Panther
2021-03-01 20:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-03-01 20:21 - 2017-05-07 16:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-03-01 20:21 - 2016-12-24 09:04 - 000000000 ____D C:\Intel
2021-03-01 20:18 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-03-01 20:07 - 2017-11-10 22:32 - 000000000 ____D C:\Program Files\Intel
2021-03-01 20:05 - 2017-11-10 22:32 - 000000000 ____D C:\Program Files (x86)\Intel
2021-03-01 20:04 - 2016-12-24 09:03 - 000000000 ____D C:\ProgramData\Package Cache
2021-03-01 20:03 - 2016-12-24 09:04 - 000000000 ____D C:\ProgramData\Intel
2021-03-01 19:43 - 2020-04-13 11:13 - 000000000 ____D C:\Users\micha\AppData\Roaming\MPC-HC
2021-03-01 19:16 - 2017-05-07 16:52 - 000000000 ____D C:\Users\micha\AppData\Local\Spotify
2021-03-01 18:51 - 2017-05-07 16:52 - 000000000 ____D C:\Users\micha\AppData\Roaming\Spotify
2021-02-28 10:24 - 2017-05-07 16:20 - 000001230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-27 13:57 - 2020-07-19 01:11 - 000002423 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-27 13:57 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-27 13:48 - 2017-04-09 09:58 - 000000000 ___RD C:\Users\micha\OneDrive
2021-02-27 13:42 - 2020-09-07 22:04 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-02-24 19:38 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-24 19:14 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-20 22:40 - 2016-12-24 09:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-02-14 21:56 - 2020-08-21 23:25 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-12 01:45 - 2018-02-25 02:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-02-12 01:39 - 2020-09-07 21:44 - 001693346 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-02-12 01:39 - 2019-12-07 15:41 - 000719302 _____ C:\WINDOWS\system32\perfh005.dat
2021-02-12 01:39 - 2019-12-07 15:41 - 000145428 _____ C:\WINDOWS\system32\perfc005.dat
2021-02-12 01:30 - 2016-12-24 09:14 - 000000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2021-02-12 01:30 - 2016-12-24 09:14 - 000000930 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-12 01:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 01:28 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-12 00:53 - 2017-05-07 17:23 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-02-12 00:51 - 2017-05-07 17:23 - 130141752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-02-09 09:52 - 2020-09-07 22:04 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-09 09:52 - 2020-09-07 22:04 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-06 23:09 - 2019-08-21 20:16 - 000000000 ____D C:\Users\micha\Downloads\Filmy
2021-02-05 20:04 - 2020-08-21 23:25 - 000734016 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2021-02-05 20:03 - 2020-08-21 23:25 - 000470848 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-01-31 19:18 - 2018-03-31 19:55 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
==================== Files in the root of some directories ========
2021-03-01 21:47 - 2021-03-01 21:49 - 000007601 _____ () C:\Users\micha\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================