Prosím o preventivní kontrolu. Děkuji
Napsal: 14 pro 2021 18:47
Dobrý den,
Prosím o preventivní kontrolu PC. Děkuji. Martin.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-12-2021
Ran by Admin (administrator) on DEKSTOP-MARTIN (Micro-Star International Co., Ltd. MS-7B48) (14-12-2021 18:44:48)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin
Platform: Microsoft Windows 10 Pro Version 21H2 19044.1387 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Blitz, Inc.) [File not signed] C:\Users\Admin\AppData\Local\Programs\Blitz\Blitz.exe <24>
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express\express.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <18>
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Win32Bridge.Server.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1371_none_7e1bd7147c8285b0\TiWorker.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\NVDisplay.Container.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe <2>
(Software602 a.s. -> Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(The CefSharp Authors) [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe <2>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe [1256824 2021-04-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [167496 2021-12-09] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Navigraph FMS Data Manager] => C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe [991320 2021-04-21] (Navigraph Kommanditbolag -> Navigraph)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4267432 2021-11-22] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [34508416 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443968 2021-12-09] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Admin\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-03-14] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [com.blitz.app] => C:\Users\Admin\AppData\Local\Programs\Blitz\Blitz.exe [121837568 2021-12-03] (Blitz, Inc.) [File not signed]
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31184216 2021-11-15] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {6f5b1c08-990c-11ea-b717-309c23aeb77d} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\Canon MG5600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCA.DLL [30208 2014-03-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5600 series: C:\Windows\system32\CNMLMCA.DLL [406016 2014-03-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\Windows\system32\602localmon.dll [54864 2018-05-31] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.93\Installer\chrmstp.exe [2021-12-08] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01F0F9AB-6B29-44C0-BEF8-5CC605E023E3} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {02AFC3FC-ACA0-443E-8D57-FD500C5637C0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {08764C69-B42B-419B-9CEE-D3619A5C8B7E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {24C6C680-62D2-48CB-8F51-400B8FA7976D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {262D5E87-8C8D-46DE-86C9-90C3E06769A5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339464 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {385CD39B-3662-4D2E-AD8D-24693B71A68D} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {490A9139-8BB7-4DC9-A1CD-69DD31042F99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28880512 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4C8D7A80-65D0-451C-AD2B-D83EC02F4C5F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {4FC2ED4A-62A8-47AF-96E8-3A6D05276577} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {588B441D-635C-45BA-B44D-5BF5F2B8C452} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {65C253DA-33E9-4710-B419-0351CA190C66} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {6C07888B-4428-4023-A2B1-8C834FD2E462} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {7164FADD-C02A-4627-A3CD-B23A32518463} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {7CC8F553-BFEE-488E-A6DA-3FE519DC1BC7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1170832 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {90216E3B-7A79-4CCB-8492-87ECB1FD8657} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
Task: {A7848522-152A-49B4-8143-AE000059C107} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {C1EA797D-7EF1-48E1-AADC-BE8A530D67C3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-06-17] (Piriform Software Ltd -> Piriform)
Task: {DB38819F-0E3A-47D4-AB19-AFC0F33B32E3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {E35F3B8C-ACB1-4D19-ADD5-479BFC79AB4E} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [26968 2021-11-15] (Garmin International, Inc. -> )
Task: {F133CFCC-BE30-45E6-BF78-929490BAEAF6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {F90AB258-E98E-4F49-836F-69C5614EFDD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9ca00cac-0d3c-466c-a1f4-029cbf6d0bf0}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-14]
Edge HomePage: Default -> hxxp://www.google.com
Edge Session Restore: Default -> is enabled.
Edge Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-08-14]
Edge Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-11-24]
Edge Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-05-12]
Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2021-12-14]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-10-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [2018-01-08] (Software602 a.s. -> Software602 a.s.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2021-12-14]
CHR Notifications: Default -> hxxps://play.gll.gg; hxxps://teams.microsoft.com; hxxps://virtualsoaring.eu
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.facebook.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-08-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-12-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-04-06]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s. -> Software602 a.s.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8926168 2021-11-08] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129160 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2021-02-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3141480 2021-12-09] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3141480 2021-12-09] (ESET, spol. s r.o. -> ESET)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11104832 2021-12-09] (Logitech Inc -> Logitech, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6136520 2021-11-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13206544 2020-02-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2021-12-08] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8491720 2021-12-01] (PUBG CORPORATION -> PUBG Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2020-09-10] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-02-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-02-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [183408 2021-10-27] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [124496 2021-10-27] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15824 2021-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [201984 2021-10-27] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [43920 2021-10-27] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [69736 2021-10-27] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [107456 2021-10-27] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-18] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-18] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-18] (Logitech Inc -> Logitech)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
S3 VirtualHID; C:\WINDOWS\System32\drivers\VirtualHID.sys [26768 2020-02-05] (Voyetra Turtle Beach, Inc. -> TurtleBeach)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [2522256 2021-12-14] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-12-14 18:44 - 2021-12-14 18:45 - 000021905 _____ C:\Users\Admin\Desktop\FRST.txt
2021-12-14 18:44 - 2021-12-14 18:45 - 000000000 ____D C:\FRST
2021-12-14 18:43 - 2021-12-14 18:43 - 002311168 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2021-12-11 14:57 - 2021-12-11 14:57 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3465363423-735592264-602919839-1001
2021-12-10 07:52 - 2021-12-10 07:52 - 000045131 _____ C:\Users\Admin\Desktop\RAMI_wallboxy.xlsm
2021-12-09 16:55 - 2021-12-09 16:55 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-12-09 16:55 - 2021-12-09 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-12-09 16:55 - 2021-12-09 16:55 - 000000000 ____D C:\Program Files\LGHUB
2021-12-05 21:05 - 2021-11-27 18:08 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001466808 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001206400 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001111272 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001111272 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000802232 _____ C:\WINDOWS\system32\nvofapi64.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000658360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000636856 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 002116536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001599416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001523328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001172608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000981120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000707712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2021-12-05 21:05 - 2021-11-27 18:04 - 000678328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000564352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 008725928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 007845816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 005728384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 004938880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 002850432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 000452208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2021-12-05 21:05 - 2021-11-27 18:02 - 000849016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2021-12-05 21:05 - 2021-11-27 18:01 - 006434528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2021-12-05 21:05 - 2021-11-26 20:16 - 000085718 _____ C:\WINDOWS\system32\nvinfo.pb
2021-11-30 08:18 - 2021-11-30 08:18 - 000000000 ____D C:\Users\Admin\AppData\Local\SolidDocuments
2021-11-29 17:04 - 2021-11-29 17:04 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-11-29 17:03 - 2021-11-09 23:27 - 000038016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2021-11-29 14:15 - 2021-11-29 14:15 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2021-11-29 14:15 - 2021-11-29 14:15 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2021-11-29 14:15 - 2021-11-29 14:15 - 000000000 ____D C:\Program Files\Adobe
2021-11-29 14:14 - 2021-11-29 14:15 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-11-25 20:42 - 2021-11-25 20:46 - 000000000 ____D C:\Users\Admin\Documents\kamča_foto_telefon
2021-11-24 12:00 - 2021-11-24 12:01 - 000000000 ____D C:\Users\Admin\AppData\Local\Opera Software
2021-11-24 11:59 - 2021-11-24 12:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Opera Software
2021-11-23 23:16 - 2021-11-23 23:16 - 000011785 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-11-23 23:15 - 2021-11-23 23:15 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-11-23 23:12 - 2021-11-23 23:12 - 000000000 ___HD C:\$WinREAgent
2021-11-21 09:10 - 2021-11-21 09:10 - 000001963 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2021-11-21 09:10 - 2021-11-21 09:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2021-11-17 18:48 - 2021-11-17 18:48 - 000000143 _____ C:\Users\Admin\Desktop\AS Wx Web Companion.url
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-12-14 18:44 - 2021-11-12 10:10 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Blitz
2021-12-14 18:44 - 2020-02-25 18:57 - 000000000 ____D C:\Program Files\CCleaner
2021-12-14 18:44 - 2020-02-25 15:29 - 000000000 ____D C:\Program Files (x86)\Google
2021-12-14 18:43 - 2021-11-08 17:41 - 000000032 _____ C:\Users\Admin\AppData\Roaming\.machineId
2021-12-14 18:43 - 2021-02-10 16:12 - 000000000 ____D C:\Users\Admin\AppData\Roaming\LGHUB
2021-12-14 18:43 - 2021-02-10 16:12 - 000000000 ____D C:\Users\Admin\AppData\Local\LGHUB
2021-12-14 18:43 - 2020-02-21 14:38 - 000000000 ___RD C:\Users\Admin\OneDrive
2021-12-14 18:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-12-14 18:42 - 2020-06-20 16:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-12-14 18:42 - 2020-06-20 16:16 - 000008192 ___SH C:\DumpStack.log.tmp
2021-12-14 18:42 - 2020-05-19 17:38 - 000000000 ____D C:\Users\Admin\AppData\Roaming\WhatsApp
2021-12-14 18:42 - 2020-03-04 18:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-12-14 18:42 - 2020-02-25 16:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Discord
2021-12-14 18:42 - 2020-02-25 15:31 - 000000000 ____D C:\ProgramData\NVIDIA
2021-12-14 18:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-12-14 18:42 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-12-14 18:39 - 2020-02-21 14:45 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-12-14 18:38 - 2020-03-02 10:17 - 000000000 ____D C:\Users\Admin\Documents\Záloha registry
2021-12-14 18:38 - 2020-02-25 15:37 - 000000000 ____D C:\Program Files (x86)\Steam
2021-12-14 18:38 - 2020-02-21 14:44 - 137938848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-12-14 18:38 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-12-14 18:37 - 2020-10-21 09:21 - 000000000 ____D C:\Users\Admin\Desktop\NOARK
2021-12-14 18:23 - 2020-06-20 16:16 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-12-14 18:22 - 2020-02-25 16:36 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord
2021-12-14 15:54 - 2021-01-26 14:51 - 000000000 ____D C:\ProgramData\Riot Games
2021-12-14 14:22 - 2020-11-03 08:44 - 000000000 ____D C:\Program Files\Common Files\PUBG
2021-12-14 14:21 - 2020-02-25 16:36 - 000002227 _____ C:\Users\Admin\Desktop\Discord.lnk
2021-12-14 14:19 - 2020-04-24 19:09 - 002522256 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys
2021-12-14 13:42 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-12-14 13:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-12-13 23:08 - 2020-06-20 16:11 - 000000000 ____D C:\Users\Admin
2021-12-13 20:24 - 2020-02-21 14:37 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2021-12-11 08:48 - 2020-05-12 15:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-11 08:48 - 2020-05-12 15:11 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-12-11 08:42 - 2020-06-20 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-12-11 08:42 - 2020-06-20 16:19 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-12-09 20:05 - 2020-02-25 19:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-12-09 17:01 - 2020-06-20 16:21 - 001701720 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-12-09 17:01 - 2019-12-07 15:43 - 000720026 _____ C:\WINDOWS\system32\perfh005.dat
2021-12-09 17:01 - 2019-12-07 15:43 - 000146232 _____ C:\WINDOWS\system32\perfc005.dat
2021-12-08 14:18 - 2020-02-25 15:29 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-08 14:18 - 2020-02-25 15:29 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-12-06 20:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-12-06 20:25 - 2020-06-20 16:19 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-12-06 19:53 - 2021-10-21 21:16 - 000000000 ____D C:\Users\Admin\AppData\Local\WhatsApp
2021-12-06 13:25 - 2020-02-25 16:04 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2021-12-05 17:17 - 2020-03-29 10:54 - 000000000 ____D C:\ZIBO updater
2021-12-05 17:17 - 2020-03-26 13:53 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO Updater Resources
2021-12-05 14:47 - 2020-06-20 16:19 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3465363423-735592264-602919839-1001
2021-12-05 14:47 - 2020-06-20 16:11 - 000002377 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-11-30 08:18 - 2020-02-21 14:37 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2021-11-29 16:57 - 2020-06-20 16:19 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-02-25 16:04 - 000001443 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2021-11-29 16:57 - 2020-02-25 16:04 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2021-11-29 16:57 - 2020-02-21 14:40 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-11-29 16:57 - 2020-02-21 14:40 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-11-29 14:15 - 2020-06-20 16:19 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-11-29 14:14 - 2020-02-25 17:50 - 000000000 ____D C:\ProgramData\Adobe
2021-11-27 18:04 - 2021-10-27 15:39 - 000795104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2021-11-27 18:02 - 2020-05-28 14:37 - 007582680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-11-26 08:42 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-11-24 22:15 - 2020-02-21 14:39 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2021-11-24 08:29 - 2021-11-12 10:10 - 000002213 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2021-11-24 08:29 - 2021-11-12 10:10 - 000002205 _____ C:\Users\Admin\Desktop\Blitz.lnk
2021-11-24 08:29 - 2021-11-12 10:10 - 000000000 ____D C:\Users\Admin\AppData\Local\blitz-updater
2021-11-23 23:36 - 2020-06-20 16:16 - 000437912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-11-23 23:35 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-11-23 08:27 - 2020-02-25 16:04 - 002849992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2021-11-23 08:27 - 2020-02-25 16:04 - 002195656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2021-11-23 08:27 - 2020-02-25 16:04 - 001294032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2021-11-21 13:51 - 2021-02-10 16:11 - 000000000 ____D C:\ProgramData\LGHUB
2021-11-21 09:10 - 2020-10-27 19:47 - 000000000 ____D C:\ProgramData\Garmin
2021-11-21 09:10 - 2020-10-27 19:46 - 000003624 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask
2021-11-21 09:10 - 2020-10-27 19:46 - 000000000 ____D C:\Program Files (x86)\Garmin
2021-11-21 09:10 - 2020-02-25 16:00 - 000000000 ____D C:\ProgramData\Package Cache
2021-11-20 18:11 - 2021-02-14 14:42 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-11-18 18:15 - 2021-05-13 20:31 - 000000000 ____D C:\WINDOWS\Minidump
2021-11-18 18:15 - 2020-03-04 18:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TeamViewer
2021-11-18 18:15 - 2020-02-25 17:50 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2021-11-17 18:48 - 2020-04-04 13:05 - 000001135 _____ C:\Users\Admin\Desktop\Active Sky XP.lnk
2021-11-17 18:25 - 2020-03-08 14:04 - 000000000 ____D C:\X-Plane 11
2021-11-17 18:21 - 2020-03-08 14:03 - 000000112 _____ C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2021-11-17 18:21 - 2020-03-08 14:03 - 000000096 _____ C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
2021-11-17 09:43 - 2020-11-10 13:54 - 000000000 ____D C:\Users\Admin\Documents\Cirrus_BW
2021-11-17 09:20 - 2021-04-12 16:10 - 000000000 ____D C:\Users\Admin\AppData\Roaming\mobalytics-desktop
2021-11-17 09:20 - 2020-02-21 14:48 - 000000000 ____D C:\Users\Admin\AppData\Local\ElevatedDiagnostics
2021-11-16 19:36 - 2020-02-25 16:04 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
==================== Files in the root of some directories ========
2021-11-08 17:41 - 2021-12-14 18:43 - 000000032 _____ () C:\Users\Admin\AppData\Roaming\.machineId
2020-04-26 16:06 - 2002-06-18 05:00 - 000418204 _____ () C:\Users\Admin\AppData\Roaming\keahs.dll
2020-06-24 21:49 - 2000-01-15 05:00 - 000134386 _____ () C:\Users\Admin\AppData\Roaming\mxbes.dll
2020-03-08 20:38 - 2020-03-08 20:38 - 000000261 _____ () C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 14:02 - 2020-03-08 14:02 - 000000056 _____ () C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf
2020-03-08 14:03 - 2021-08-24 16:47 - 000000037 _____ () C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-02-25 17:29 - 2020-03-07 19:10 - 000000073 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm.prf
2020-03-08 14:03 - 2021-11-17 18:21 - 000000112 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-02-25 17:29 - 2020-02-25 17:29 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_10.txt
2020-03-08 14:04 - 2020-03-08 14:04 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 14:03 - 2021-11-17 18:21 - 000000096 _____ () C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Prosím o preventivní kontrolu PC. Děkuji. Martin.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-12-2021
Ran by Admin (administrator) on DEKSTOP-MARTIN (Micro-Star International Co., Ltd. MS-7B48) (14-12-2021 18:44:48)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin
Platform: Microsoft Windows 10 Pro Version 21H2 19044.1387 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Blitz, Inc.) [File not signed] C:\Users\Admin\AppData\Local\Programs\Blitz\Blitz.exe <24>
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express\express.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <18>
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Win32Bridge.Server.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1371_none_7e1bd7147c8285b0\TiWorker.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\NVDisplay.Container.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe <2>
(Software602 a.s. -> Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(The CefSharp Authors) [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe <2>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe [1256824 2021-04-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [167496 2021-12-09] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Navigraph FMS Data Manager] => C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe [991320 2021-04-21] (Navigraph Kommanditbolag -> Navigraph)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4267432 2021-11-22] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [34508416 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443968 2021-12-09] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Admin\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-03-14] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [com.blitz.app] => C:\Users\Admin\AppData\Local\Programs\Blitz\Blitz.exe [121837568 2021-12-03] (Blitz, Inc.) [File not signed]
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31184216 2021-11-15] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {6f5b1c08-990c-11ea-b717-309c23aeb77d} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\Canon MG5600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCA.DLL [30208 2014-03-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5600 series: C:\Windows\system32\CNMLMCA.DLL [406016 2014-03-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\Windows\system32\602localmon.dll [54864 2018-05-31] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.93\Installer\chrmstp.exe [2021-12-08] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01F0F9AB-6B29-44C0-BEF8-5CC605E023E3} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {02AFC3FC-ACA0-443E-8D57-FD500C5637C0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {08764C69-B42B-419B-9CEE-D3619A5C8B7E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {24C6C680-62D2-48CB-8F51-400B8FA7976D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {262D5E87-8C8D-46DE-86C9-90C3E06769A5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339464 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {385CD39B-3662-4D2E-AD8D-24693B71A68D} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {490A9139-8BB7-4DC9-A1CD-69DD31042F99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28880512 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4C8D7A80-65D0-451C-AD2B-D83EC02F4C5F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {4FC2ED4A-62A8-47AF-96E8-3A6D05276577} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {588B441D-635C-45BA-B44D-5BF5F2B8C452} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {65C253DA-33E9-4710-B419-0351CA190C66} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {6C07888B-4428-4023-A2B1-8C834FD2E462} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {7164FADD-C02A-4627-A3CD-B23A32518463} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {7CC8F553-BFEE-488E-A6DA-3FE519DC1BC7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1170832 2021-12-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {90216E3B-7A79-4CCB-8492-87ECB1FD8657} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
Task: {A7848522-152A-49B4-8143-AE000059C107} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {C1EA797D-7EF1-48E1-AADC-BE8A530D67C3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-06-17] (Piriform Software Ltd -> Piriform)
Task: {DB38819F-0E3A-47D4-AB19-AFC0F33B32E3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
Task: {E35F3B8C-ACB1-4D19-ADD5-479BFC79AB4E} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [26968 2021-11-15] (Garmin International, Inc. -> )
Task: {F133CFCC-BE30-45E6-BF78-929490BAEAF6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {F90AB258-E98E-4F49-836F-69C5614EFDD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9ca00cac-0d3c-466c-a1f4-029cbf6d0bf0}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-14]
Edge HomePage: Default -> hxxp://www.google.com
Edge Session Restore: Default -> is enabled.
Edge Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-08-14]
Edge Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-11-24]
Edge Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-05-12]
Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2021-12-14]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-10-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [2018-01-08] (Software602 a.s. -> Software602 a.s.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2021-12-14]
CHR Notifications: Default -> hxxps://play.gll.gg; hxxps://teams.microsoft.com; hxxps://virtualsoaring.eu
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.facebook.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-08-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-12-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-04-06]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s. -> Software602 a.s.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8926168 2021-11-08] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129160 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2021-02-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3141480 2021-12-09] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3141480 2021-12-09] (ESET, spol. s r.o. -> ESET)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11104832 2021-12-09] (Logitech Inc -> Logitech, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6136520 2021-11-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13206544 2020-02-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2021-12-08] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8491720 2021-12-01] (PUBG CORPORATION -> PUBG Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_422d4a8d182d8330\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2020-09-10] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-02-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-02-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [183408 2021-10-27] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [124496 2021-10-27] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15824 2021-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [201984 2021-10-27] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [43920 2021-10-27] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [69736 2021-10-27] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [107456 2021-10-27] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-18] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-18] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-18] (Logitech Inc -> Logitech)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
S3 VirtualHID; C:\WINDOWS\System32\drivers\VirtualHID.sys [26768 2020-02-05] (Voyetra Turtle Beach, Inc. -> TurtleBeach)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [2522256 2021-12-14] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-12-14 18:44 - 2021-12-14 18:45 - 000021905 _____ C:\Users\Admin\Desktop\FRST.txt
2021-12-14 18:44 - 2021-12-14 18:45 - 000000000 ____D C:\FRST
2021-12-14 18:43 - 2021-12-14 18:43 - 002311168 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2021-12-11 14:57 - 2021-12-11 14:57 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3465363423-735592264-602919839-1001
2021-12-10 07:52 - 2021-12-10 07:52 - 000045131 _____ C:\Users\Admin\Desktop\RAMI_wallboxy.xlsm
2021-12-09 16:55 - 2021-12-09 16:55 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-12-09 16:55 - 2021-12-09 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-12-09 16:55 - 2021-12-09 16:55 - 000000000 ____D C:\Program Files\LGHUB
2021-12-05 21:05 - 2021-11-27 18:08 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001466808 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-12-05 21:05 - 2021-11-27 18:08 - 001206400 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001111272 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 001111272 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-12-05 21:05 - 2021-11-27 18:08 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000802232 _____ C:\WINDOWS\system32\nvofapi64.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000658360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2021-12-05 21:05 - 2021-11-27 18:05 - 000636856 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 002116536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001599416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001523328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 001172608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000981120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000707712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2021-12-05 21:05 - 2021-11-27 18:04 - 000678328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2021-12-05 21:05 - 2021-11-27 18:04 - 000564352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 008725928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 007845816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 005728384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 004938880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 002850432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2021-12-05 21:05 - 2021-11-27 18:03 - 000452208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2021-12-05 21:05 - 2021-11-27 18:02 - 000849016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2021-12-05 21:05 - 2021-11-27 18:01 - 006434528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2021-12-05 21:05 - 2021-11-26 20:16 - 000085718 _____ C:\WINDOWS\system32\nvinfo.pb
2021-11-30 08:18 - 2021-11-30 08:18 - 000000000 ____D C:\Users\Admin\AppData\Local\SolidDocuments
2021-11-29 17:04 - 2021-11-29 17:04 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-11-29 17:03 - 2021-11-09 23:27 - 000038016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2021-11-29 14:15 - 2021-11-29 14:15 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2021-11-29 14:15 - 2021-11-29 14:15 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2021-11-29 14:15 - 2021-11-29 14:15 - 000000000 ____D C:\Program Files\Adobe
2021-11-29 14:14 - 2021-11-29 14:15 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-11-25 20:42 - 2021-11-25 20:46 - 000000000 ____D C:\Users\Admin\Documents\kamča_foto_telefon
2021-11-24 12:00 - 2021-11-24 12:01 - 000000000 ____D C:\Users\Admin\AppData\Local\Opera Software
2021-11-24 11:59 - 2021-11-24 12:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Opera Software
2021-11-23 23:16 - 2021-11-23 23:16 - 000011785 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-11-23 23:15 - 2021-11-23 23:15 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-11-23 23:12 - 2021-11-23 23:12 - 000000000 ___HD C:\$WinREAgent
2021-11-21 09:10 - 2021-11-21 09:10 - 000001963 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2021-11-21 09:10 - 2021-11-21 09:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2021-11-17 18:48 - 2021-11-17 18:48 - 000000143 _____ C:\Users\Admin\Desktop\AS Wx Web Companion.url
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-12-14 18:44 - 2021-11-12 10:10 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Blitz
2021-12-14 18:44 - 2020-02-25 18:57 - 000000000 ____D C:\Program Files\CCleaner
2021-12-14 18:44 - 2020-02-25 15:29 - 000000000 ____D C:\Program Files (x86)\Google
2021-12-14 18:43 - 2021-11-08 17:41 - 000000032 _____ C:\Users\Admin\AppData\Roaming\.machineId
2021-12-14 18:43 - 2021-02-10 16:12 - 000000000 ____D C:\Users\Admin\AppData\Roaming\LGHUB
2021-12-14 18:43 - 2021-02-10 16:12 - 000000000 ____D C:\Users\Admin\AppData\Local\LGHUB
2021-12-14 18:43 - 2020-02-21 14:38 - 000000000 ___RD C:\Users\Admin\OneDrive
2021-12-14 18:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-12-14 18:42 - 2020-06-20 16:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-12-14 18:42 - 2020-06-20 16:16 - 000008192 ___SH C:\DumpStack.log.tmp
2021-12-14 18:42 - 2020-05-19 17:38 - 000000000 ____D C:\Users\Admin\AppData\Roaming\WhatsApp
2021-12-14 18:42 - 2020-03-04 18:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-12-14 18:42 - 2020-02-25 16:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Discord
2021-12-14 18:42 - 2020-02-25 15:31 - 000000000 ____D C:\ProgramData\NVIDIA
2021-12-14 18:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-12-14 18:42 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-12-14 18:39 - 2020-02-21 14:45 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-12-14 18:38 - 2020-03-02 10:17 - 000000000 ____D C:\Users\Admin\Documents\Záloha registry
2021-12-14 18:38 - 2020-02-25 15:37 - 000000000 ____D C:\Program Files (x86)\Steam
2021-12-14 18:38 - 2020-02-21 14:44 - 137938848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-12-14 18:38 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-12-14 18:37 - 2020-10-21 09:21 - 000000000 ____D C:\Users\Admin\Desktop\NOARK
2021-12-14 18:23 - 2020-06-20 16:16 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-12-14 18:22 - 2020-02-25 16:36 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord
2021-12-14 15:54 - 2021-01-26 14:51 - 000000000 ____D C:\ProgramData\Riot Games
2021-12-14 14:22 - 2020-11-03 08:44 - 000000000 ____D C:\Program Files\Common Files\PUBG
2021-12-14 14:21 - 2020-02-25 16:36 - 000002227 _____ C:\Users\Admin\Desktop\Discord.lnk
2021-12-14 14:19 - 2020-04-24 19:09 - 002522256 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys
2021-12-14 13:42 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-12-14 13:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-12-13 23:08 - 2020-06-20 16:11 - 000000000 ____D C:\Users\Admin
2021-12-13 20:24 - 2020-02-21 14:37 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2021-12-11 08:48 - 2020-05-12 15:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-11 08:48 - 2020-05-12 15:11 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-12-11 08:42 - 2020-06-20 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-12-11 08:42 - 2020-06-20 16:19 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-12-09 20:05 - 2020-02-25 19:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-12-09 17:01 - 2020-06-20 16:21 - 001701720 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-12-09 17:01 - 2019-12-07 15:43 - 000720026 _____ C:\WINDOWS\system32\perfh005.dat
2021-12-09 17:01 - 2019-12-07 15:43 - 000146232 _____ C:\WINDOWS\system32\perfc005.dat
2021-12-08 14:18 - 2020-02-25 15:29 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-08 14:18 - 2020-02-25 15:29 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-12-06 20:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-12-06 20:25 - 2020-06-20 16:19 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-12-06 19:53 - 2021-10-21 21:16 - 000000000 ____D C:\Users\Admin\AppData\Local\WhatsApp
2021-12-06 13:25 - 2020-02-25 16:04 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2021-12-05 17:17 - 2020-03-29 10:54 - 000000000 ____D C:\ZIBO updater
2021-12-05 17:17 - 2020-03-26 13:53 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO Updater Resources
2021-12-05 14:47 - 2020-06-20 16:19 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3465363423-735592264-602919839-1001
2021-12-05 14:47 - 2020-06-20 16:11 - 000002377 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-11-30 08:18 - 2020-02-21 14:37 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2021-11-29 16:57 - 2020-06-20 16:19 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-06-20 16:19 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-11-29 16:57 - 2020-02-25 16:04 - 000001443 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2021-11-29 16:57 - 2020-02-25 16:04 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2021-11-29 16:57 - 2020-02-21 14:40 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-11-29 16:57 - 2020-02-21 14:40 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-11-29 14:15 - 2020-06-20 16:19 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-11-29 14:14 - 2020-02-25 17:50 - 000000000 ____D C:\ProgramData\Adobe
2021-11-27 18:04 - 2021-10-27 15:39 - 000795104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2021-11-27 18:02 - 2020-05-28 14:37 - 007582680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-11-26 08:42 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-11-24 22:15 - 2020-02-21 14:39 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2021-11-24 08:29 - 2021-11-12 10:10 - 000002213 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2021-11-24 08:29 - 2021-11-12 10:10 - 000002205 _____ C:\Users\Admin\Desktop\Blitz.lnk
2021-11-24 08:29 - 2021-11-12 10:10 - 000000000 ____D C:\Users\Admin\AppData\Local\blitz-updater
2021-11-23 23:36 - 2020-06-20 16:16 - 000437912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-11-23 23:35 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-11-23 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-11-23 08:27 - 2020-02-25 16:04 - 002849992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2021-11-23 08:27 - 2020-02-25 16:04 - 002195656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2021-11-23 08:27 - 2020-02-25 16:04 - 001294032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2021-11-21 13:51 - 2021-02-10 16:11 - 000000000 ____D C:\ProgramData\LGHUB
2021-11-21 09:10 - 2020-10-27 19:47 - 000000000 ____D C:\ProgramData\Garmin
2021-11-21 09:10 - 2020-10-27 19:46 - 000003624 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask
2021-11-21 09:10 - 2020-10-27 19:46 - 000000000 ____D C:\Program Files (x86)\Garmin
2021-11-21 09:10 - 2020-02-25 16:00 - 000000000 ____D C:\ProgramData\Package Cache
2021-11-20 18:11 - 2021-02-14 14:42 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-11-18 18:15 - 2021-05-13 20:31 - 000000000 ____D C:\WINDOWS\Minidump
2021-11-18 18:15 - 2020-03-04 18:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TeamViewer
2021-11-18 18:15 - 2020-02-25 17:50 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2021-11-17 18:48 - 2020-04-04 13:05 - 000001135 _____ C:\Users\Admin\Desktop\Active Sky XP.lnk
2021-11-17 18:25 - 2020-03-08 14:04 - 000000000 ____D C:\X-Plane 11
2021-11-17 18:21 - 2020-03-08 14:03 - 000000112 _____ C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2021-11-17 18:21 - 2020-03-08 14:03 - 000000096 _____ C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
2021-11-17 09:43 - 2020-11-10 13:54 - 000000000 ____D C:\Users\Admin\Documents\Cirrus_BW
2021-11-17 09:20 - 2021-04-12 16:10 - 000000000 ____D C:\Users\Admin\AppData\Roaming\mobalytics-desktop
2021-11-17 09:20 - 2020-02-21 14:48 - 000000000 ____D C:\Users\Admin\AppData\Local\ElevatedDiagnostics
2021-11-16 19:36 - 2020-02-25 16:04 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
==================== Files in the root of some directories ========
2021-11-08 17:41 - 2021-12-14 18:43 - 000000032 _____ () C:\Users\Admin\AppData\Roaming\.machineId
2020-04-26 16:06 - 2002-06-18 05:00 - 000418204 _____ () C:\Users\Admin\AppData\Roaming\keahs.dll
2020-06-24 21:49 - 2000-01-15 05:00 - 000134386 _____ () C:\Users\Admin\AppData\Roaming\mxbes.dll
2020-03-08 20:38 - 2020-03-08 20:38 - 000000261 _____ () C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 14:02 - 2020-03-08 14:02 - 000000056 _____ () C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf
2020-03-08 14:03 - 2021-08-24 16:47 - 000000037 _____ () C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-02-25 17:29 - 2020-03-07 19:10 - 000000073 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm.prf
2020-03-08 14:03 - 2021-11-17 18:21 - 000000112 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-02-25 17:29 - 2020-02-25 17:29 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_10.txt
2020-03-08 14:04 - 2020-03-08 14:04 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 14:03 - 2021-11-17 18:21 - 000000096 _____ () C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================