Stránka 1 z 1

Prosím o kontrolu logu

Napsal: 13 črc 2022 02:15
od bilejpes
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-07-2022
Ran by dvacl (administrator) on RUDOLF (MSI MS-7758) (13-07-2022 03:12:21)
Running from C:\Users\dvacl\Desktop
Loaded Profiles: dvacl
Platform: Microsoft Windows 10 Pro Version 21H2 19044.1806 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(0) [File not signed] C:\Program Files\SPC_Gear\GK550.exe
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe ->) (remotemouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe
(C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe ->) (RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngineProcess.exe
(C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(C:\ProgramData\Wargaming.net\GameCenter\wgc.exe ->) (Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\dlls\wgc_renderer_host.exe <3>
(C:\ProgramData\Wargaming.net\GameCenter\wgc.exe ->) (Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wargamingerrormonitor.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(DriverStore\FileRepository\u0380677.inf_amd64_dba19d925381d5ad\B380472\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0380677.inf_amd64_dba19d925381d5ad\B380472\atieclxx.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\60.0.2.0\crashpad_handler.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(explorer.exe ->) (Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <21>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) () [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0380677.inf_amd64_dba19d925381d5ad\B380472\atiesrxx.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Microsoft Windows -> ) C:\Windows\System32\OpenSSH\ssh-agent.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(svchost.exe ->) () [File not signed] C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe <4>
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [PowerDVD22Agent] => C:\Program Files\CyberLink\PowerDVD22\PowerDVD22Agent.exe [567056 2022-05-16] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [Launch 0 FwCustom] => C:\Program Files\SPC_Gear\GK550.exe [3572224 2018-11-30] (0) [File not signed]
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe [55254344 2022-06-21] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe [55254344 2022-06-21] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [146943096 2022-06-15] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Run: [MicrosoftEdgeAutoLaunch_DD7281EFDCD22F0502B4473C5E1909BC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-07-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2155928 2022-07-07] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe [55254344 2022-06-21] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Run: [CyberlinkPowerPlayerMediaServer_PowerDVD22] => C:\Program Files\CyberLink\PowerDVD22\Common\CLMediaServer\clmediaserver.exe [6773008 2022-05-16] (CyberLink Corp. -> CyberLink Corp.)
HKU\S-1-5-21-87297680-2717088268-3221549041-1005\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2632072 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\60.0.2.0\GoogleDriveFS.exe [55254344 2022-06-21] (Google LLC -> Google, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\103.0.5060.114\Installer\chrmstp.exe [2022-07-07] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {072F584A-1F1F-4718-9E88-A7B3B0C55004} - System32\Tasks\GoogleUpdateTaskMachineCore{8BA5B634-4303-44F3-9B4B-5797A7239ADB} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
Task: {22B8EBDB-ED10-4B01-BA17-94EF44AAA3C1} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-87297680-2717088268-3221549041-1005 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214152 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {298C4B13-0942-45F1-ADC0-45A9F7F64720} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {46879054-81F5-4C62-98B6-0903524B11A8} - System32\Tasks\CLToast => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2319632 2022-04-14] (CyberLink Corp. -> )
Task: {53AD15FA-EA98-459D-99BA-D23557844752} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {53B885FF-3D3D-45AD-8EF5-36D3F1E436FC} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954848 2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {6355727C-8DD3-4D33-99B9-3ED3C9B638DA} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214152 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {668BBA49-1F88-4A04-8ECE-E59453AEE298} - System32\Tasks\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
Task: {7E7A7897-4E83-4BAD-987C-FAC2DFE465E3} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [56800 2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {8A0AAF48-2927-45EE-A980-BF267E4A5E1F} - System32\Tasks\MXWTPTTTYKDUYVXJ_run => C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe [495096 2022-06-17] () [File not signed]
Task: {9685A1C2-EE2D-40E4-8E2B-72235E44A639} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9EB1120D-61DE-4B67-8C59-8EFBAC2E1FFD} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-87297680-2717088268-3221549041-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214152 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {A65AD3BA-B321-4EBC-873D-7594EC44F3C1} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [291808 2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {D3C9C36C-76C7-4F92-A009-0A3D0ACEA777} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954848 2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {DB4824C1-BC70-43D5-A58E-9A113101FE80} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954848 2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {EF57CEF7-4643-4D9D-835F-D843F46E565F} - System32\Tasks\CLToastRun => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2319632 2022-04-14] (CyberLink Corp. -> )
Task: {F95FC17D-5D55-4C61-9A26-60ED871EB620} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{47d0c750-8e3d-4939-ba49-f7f40d201ec4}: [DhcpNameServer] 10.0.1.138

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-13]
Edge DownloadDir: Default -> D:\Download
Edge HomePage: Default -> hxxp://www.centrum.cz/#utm_source=icq&utm_medium=centrum
Edge StartupUrls: Default -> "hxxps://www.google.com/","hxxp://www.google.cz/ ... oogle.com/"
Edge Extension: (Authenticator) - C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2022-06-18]
Edge Extension: (Send to Kindle for Google Chrome™) - C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cgdjpilhipecahhcilnafpblkieebhea [2022-06-18]
Edge Extension: (Dokumenty Google offline) - C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-18]
Edge Extension: (GAuth Authenticator) - C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ilgcnhelpchnceeipipijaljkblbcobl [2022-06-18]
Edge Profile: C:\Users\dvacl\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2022-07-01]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default [2022-07-01]
CHR HomePage: Default -> hxxp://www.centrum.cz/#utm_source=icq&utm_medium=centrum
CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxp://www.google.cz/ ... google.com"
CHR Extension: (Just Black) - C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2022-06-21]
CHR Extension: (Send to Kindle for Google Chrome™) - C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgdjpilhipecahhcilnafpblkieebhea [2022-06-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-20]
CHR Extension: (Chrome Remote Desktop) - C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-06-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-20]
CHR Profile: C:\Users\dvacl\AppData\Local\Google\Chrome\User Data\System Profile [2022-07-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncHelper.exe [3374472 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11523704 2022-06-15] (Logitech Inc -> Logitech, Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.121.0605.0002\OneDriveUpdaterService.exe [3812744 2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
R2 RemoteMouseService; C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe [11264 2022-05-16] () [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6232176 2022-07-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33216 2022-03-08] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0380677.inf_amd64_dba19d925381d5ad\B380472\amdkmdag.sys [92008832 2022-06-29] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R2 CLFCL5.20; C:\WINDOWS\System32\drivers\CLFCL5.20\000.fcl [46952 2021-03-24] (CyberLink Corp. -> CyberLink Corp.)
R2 CLFCL5.22; C:\WINDOWS\System32\drivers\CLFCL5.22\000.fcl [46768 2022-05-16] (CyberLink Corp. -> CyberLink Corp.)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2021-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 googledrivefs3758; C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys [384584 2022-06-08] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2021-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2021-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2021-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 logi_generic_hid_filter; C:\WINDOWS\system32\drivers\logi_generic_hid_filter.sys [51544 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [33528 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 logi_joy_hid_filter; C:\WINDOWS\system32\drivers\logi_joy_hid_filter.sys [53640 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 logi_joy_hid_lo; C:\WINDOWS\system32\drivers\logi_joy_hid_lo.sys [41280 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [21704 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [62904 2022-03-23] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 MpKsl09dcff71; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4C5E2C5B-F858-4F2F-AA57-DF9A50B8A89F}\MpKslDrv.sys [141576 2022-07-12] (Microsoft Windows -> Microsoft Corporation)
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65144 2021-10-08] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-13 03:12 - 2022-07-13 03:12 - 000019607 _____ C:\Users\dvacl\Desktop\FRST.txt
2022-07-13 03:12 - 2022-07-13 03:10 - 002369536 _____ (Farbar) C:\Users\dvacl\Desktop\FRST64.exe
2022-07-13 03:10 - 2022-07-13 03:12 - 000000000 ____D C:\FRST
2022-07-13 01:04 - 2022-07-13 01:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2022-07-13 01:04 - 2022-07-13 01:04 - 000000000 ____D C:\Program Files\Calibre2
2022-07-11 02:36 - 2022-07-11 02:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remote Mouse
2022-07-11 02:36 - 2022-07-11 02:36 - 000000000 ____D C:\Program Files (x86)\Remote Mouse
2022-07-07 21:32 - 2022-07-07 21:32 - 000000000 ____D C:\Users\dvacl\AppData\Local\ElevatedDiagnostics
2022-07-07 09:42 - 2022-07-07 09:42 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-07-07 09:42 - 2022-07-07 09:42 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-07-07 09:42 - 2022-07-07 09:42 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-07-07 09:42 - 2022-07-07 09:42 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-07-07 09:42 - 2022-07-07 09:42 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2022-07-07 09:41 - 2022-07-07 09:41 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-07-07 09:41 - 2022-07-07 09:41 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
2022-07-07 09:41 - 2022-07-07 09:41 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-07-07 09:41 - 2022-07-07 09:41 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2022-07-07 09:41 - 2022-07-07 09:41 - 000011801 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-07-07 09:36 - 2022-07-07 09:36 - 000000000 ___HD C:\$WinREAgent
2022-07-07 04:22 - 2022-07-07 04:22 - 000000000 ____D C:\Users\dvacl\AppData\Local\WhyNotWin11
2022-07-07 01:29 - 2022-07-07 01:29 - 000000000 ____D C:\Users\dvacl\OneDrive\Dokumenty\My Games
2022-07-07 00:54 - 2022-07-07 00:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiRT Rally 2 0
2022-07-02 22:27 - 2022-07-02 22:27 - 000000000 ____D C:\Users\dvacl\AppData\LocalLow\AMD
2022-07-02 22:01 - 2022-07-12 09:51 - 000003100 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2022-07-02 22:01 - 2022-07-02 22:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2022-07-02 22:00 - 2022-07-02 22:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2022-07-02 21:56 - 2022-06-29 02:36 - 001975176 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 001975176 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 001531776 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 001531776 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 001457008 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 001457008 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 001168584 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 001168584 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000801128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000678272 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000562024 _____ C:\WINDOWS\system32\GameManager64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000504704 _____ C:\WINDOWS\system32\dgtrayicon.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 000496512 _____ C:\WINDOWS\system32\EEURestart.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 000423296 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000358248 _____ C:\WINDOWS\system32\clinfo.exe
2022-07-02 21:56 - 2022-06-29 02:36 - 000198504 _____ C:\WINDOWS\system32\mantle64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000182656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000181632 _____ C:\WINDOWS\system32\mantleaxl64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000170856 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000159616 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000145256 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000145256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000051048 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000047976 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000043816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2022-07-02 21:56 - 2022-06-29 02:36 - 000043792 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 074062208 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 001428352 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 001428352 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000898960 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2022-07-02 21:56 - 2022-06-29 02:35 - 000529792 _____ C:\WINDOWS\system32\atieah64.exe
2022-07-02 21:56 - 2022-06-29 02:35 - 000472960 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000397696 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2022-07-02 21:56 - 2022-06-29 02:35 - 000369040 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000265088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000224104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000208600 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000173032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000143744 _____ C:\WINDOWS\system32\atidxx64.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000117648 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2022-07-02 21:56 - 2022-06-29 02:35 - 000074624 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2022-07-02 21:56 - 2022-06-29 02:33 - 000165424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2022-07-02 21:56 - 2022-06-29 02:33 - 000137088 _____ C:\WINDOWS\system32\amdxc64.dll
2022-07-02 21:56 - 2022-06-29 02:33 - 000136496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2022-07-02 21:56 - 2022-06-29 02:33 - 000113040 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 001719832 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 001395320 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 000942992 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 000770448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 000565704 _____ C:\WINDOWS\system32\amdmiracast.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 000470928 _____ C:\WINDOWS\system32\amdlogum.exe
2022-07-02 21:56 - 2022-06-29 02:32 - 000165400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2022-07-02 21:56 - 2022-06-29 02:32 - 000136504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2022-07-02 21:56 - 2022-06-29 02:31 - 010429824 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2022-07-02 21:56 - 2022-06-29 02:31 - 000562560 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2022-07-02 21:56 - 2022-06-29 02:31 - 000425856 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2022-07-02 21:56 - 2022-06-29 02:31 - 000175832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2022-07-02 21:56 - 2022-06-29 02:31 - 000150608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2022-07-02 21:56 - 2022-06-29 02:01 - 057654016 _____ C:\WINDOWS\system32\amdxc64.so
2022-07-02 21:56 - 2022-06-29 02:01 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2022-07-02 21:56 - 2022-06-29 02:01 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2022-07-02 21:56 - 2022-06-29 02:01 - 000574248 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2022-07-02 21:56 - 2022-06-29 02:01 - 000574248 _____ C:\WINDOWS\system32\atiapfxx.blb
2022-07-02 21:55 - 2022-06-29 02:34 - 089905040 _____ C:\WINDOWS\system32\amd_comgr.dll
2022-07-02 10:32 - 2022-07-02 10:32 - 000057552 _____ C:\Users\dvacl\OneDrive\Dokumenty\2021-04-12-5910336211-5910336211-fs.pdf
2022-07-02 01:52 - 2022-07-02 01:52 - 000000000 ____D C:\Users\dvacl\AppData\Local\Steam
2022-07-02 01:50 - 2022-07-07 01:29 - 000000000 ____D C:\Program Files (x86)\Steam
2022-07-02 01:50 - 2022-07-02 01:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-06-25 04:23 - 2022-06-25 04:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
2022-06-25 04:23 - 2022-06-25 04:23 - 000000000 ____D C:\Program Files\Core Temp
2022-06-24 02:13 - 2022-06-24 02:15 - 000007604 _____ C:\Users\dvacl\AppData\Local\resmon.resmoncfg
2022-06-20 21:34 - 2022-06-20 21:34 - 000000000 ____D C:\Users\dvacl\AppData\Local\ATI
2022-06-20 15:59 - 2022-07-07 00:05 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-06-18 13:26 - 2022-06-18 13:26 - 000000000 ____D C:\Users\dvacl\AppData\Local\VirtualStore
2022-06-18 13:26 - 2022-06-18 13:26 - 000000000 ____D C:\Users\dvacl\AppData\Local\PeerDistRepub
2022-06-18 01:20 - 2022-06-25 06:13 - 000000000 ___RD C:\Users\dvacl\Můj disk
2022-06-18 01:04 - 2022-07-03 07:49 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-06-18 01:01 - 2022-06-18 01:01 - 000000000 ____D C:\Users\dvacl\AppData\Local\cache
2022-06-18 00:56 - 2022-07-12 09:51 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\LGHUB
2022-06-18 00:54 - 2022-06-18 00:54 - 000000082 _____ C:\folders.txt
2022-06-18 00:54 - 2022-06-18 00:45 - 000024064 _____ C:\WINDOWS\zoek-delete.exe
2022-06-18 00:45 - 2022-06-18 00:53 - 000000000 ____D C:\zoek_backup
2022-06-17 23:51 - 2022-06-17 23:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZPS 19 CZ
2022-06-17 23:51 - 2022-06-17 23:51 - 000000000 ____D C:\Program Files\ZPS 19 CZ
2022-06-17 22:55 - 2022-06-17 22:55 - 000000000 ____D C:\Users\dvacl\AppData\LocalLow\Adobe
2022-06-17 22:52 - 2022-06-17 22:52 - 000003290 _____ C:\WINDOWS\system32\Tasks\MXWTPTTTYKDUYVXJ_run
2022-06-17 21:48 - 2022-06-17 21:49 - 002042296 _____ (Mozilla Foundation) C:\Users\dvacl\AppData\LocalLow\nss3.dll
2022-06-17 00:08 - 2022-06-17 00:08 - 000000000 ____D C:\Users\Public\CyberLink
2022-06-16 23:51 - 2022-06-17 00:08 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\CyberLink
2022-06-16 23:51 - 2022-06-16 23:51 - 000000000 ____D C:\Users\dvacl\OneDrive\Dokumenty\CyberLink
2022-06-16 21:13 - 2022-06-16 21:13 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-16 21:11 - 2022-06-16 21:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-06-16 21:11 - 2022-06-16 21:11 - 000001152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-06-16 21:11 - 2022-06-16 21:11 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-06-16 05:18 - 2022-06-16 05:18 - 000474640 _____ C:\Users\dvacl\OneDrive\Dokumenty\ZPSXSettings.reg
2022-06-16 05:07 - 2022-06-17 23:51 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\Zoner
2022-06-16 05:07 - 2022-06-17 23:51 - 000000000 ____D C:\Users\dvacl\AppData\Local\Zoner
2022-06-15 22:49 - 2022-06-15 22:49 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-06-15 21:12 - 2022-06-15 21:29 - 000002692 _____ C:\WINDOWS\system32\Tasks\CLToast
2022-06-15 21:12 - 2022-06-15 21:29 - 000002518 _____ C:\WINDOWS\system32\Tasks\CLToastRun
2022-06-15 21:12 - 2022-06-15 21:12 - 000000000 ____D C:\Program Files (x86)\CyberLink
2022-06-15 21:11 - 2022-06-17 00:08 - 000000000 ____D C:\Users\dvacl\AppData\Local\CyberLink
2022-06-15 21:11 - 2022-06-15 21:11 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 22.lnk
2022-06-15 21:11 - 2022-06-15 21:11 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2022-06-15 21:11 - 2022-06-15 21:11 - 000000000 ____D C:\WINDOWS\system32\Drivers\CLFCL5.22
2022-06-15 21:11 - 2022-06-15 21:11 - 000000000 ____D C:\ProgramData\PDVD
2022-06-15 21:11 - 2022-06-15 21:11 - 000000000 ____D C:\Program Files (x86)\NSIS Uninstall Information
2022-06-15 21:10 - 2022-06-17 00:08 - 000000000 ___HD C:\ProgramData\CyberLink
2022-06-15 21:10 - 2022-06-15 21:12 - 000000000 ____D C:\ProgramData\CLSK
2022-06-15 21:10 - 2022-06-15 21:11 - 000000000 ____D C:\ProgramData\install_clap
2022-06-15 21:10 - 2022-06-15 21:10 - 000000000 ____D C:\ProgramData\install_backup
2022-06-15 21:10 - 2022-06-15 21:10 - 000000000 ____D C:\Program Files\CyberLink
2022-06-15 20:52 - 2022-06-18 00:59 - 000000000 ____D C:\ProgramData\Piriform
2022-06-15 20:50 - 2022-06-15 20:50 - 000079020 _____ C:\Users\dvacl\OneDrive\Dokumenty\cc_20220615_205009.reg
2022-06-15 20:31 - 2022-07-10 01:31 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\AIMP
2022-06-15 20:31 - 2022-07-07 20:47 - 000000000 ____D C:\Program Files (x86)\AIMP
2022-06-15 20:31 - 2022-06-15 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP
2022-06-15 18:43 - 2022-06-30 10:47 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-87297680-2717088268-3221549041-1005
2022-06-15 18:43 - 2022-06-30 10:47 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-06-15 18:43 - 2022-06-30 10:47 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-06-15 18:43 - 2022-06-15 18:43 - 000000000 ____D C:\Users\dvacl\OneDrive\Dokumenty\Elder Scrolls Online
2022-06-15 17:54 - 2022-07-13 03:04 - 000000000 ____D C:\Program Files (x86)\Google
2022-06-15 17:54 - 2022-07-11 16:06 - 000002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2022-06-15 17:54 - 2022-06-21 14:40 - 000000000 ____D C:\Users\dvacl\AppData\Local\Google
2022-06-15 17:54 - 2022-06-20 15:59 - 000000000 ____D C:\Program Files\Google
2022-06-15 17:54 - 2022-06-15 17:59 - 000003550 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740}
2022-06-15 17:54 - 2022-06-15 17:59 - 000003426 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8BA5B634-4303-44F3-9B4B-5797A7239ADB}
2022-06-15 17:54 - 2022-06-08 13:41 - 000384584 _____ (Google, Inc.) C:\WINDOWS\system32\Drivers\googledrivefs3758.sys
2022-06-15 16:50 - 2022-06-15 16:50 - 000001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2022.lnk
2022-06-15 16:47 - 2022-06-15 18:30 - 000000000 ____D C:\Program Files\Adobe
2022-06-15 16:47 - 2022-06-15 16:50 - 000000000 ____D C:\Program Files\Common Files\Adobe
2022-06-15 16:47 - 2022-06-15 16:47 - 000000000 ____D C:\Program Files (x86)\Adobe
2022-06-15 16:45 - 2022-06-15 20:13 - 000000000 ____D C:\Users\dvacl\AppData\Local\Adobe
2022-06-15 16:45 - 2022-06-15 16:48 - 000000000 ____D C:\ProgramData\Adobe
2022-06-15 16:44 - 2022-06-15 16:44 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\WinRAR
2022-06-15 16:44 - 2022-06-15 16:44 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-06-15 16:44 - 2022-06-15 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-06-15 16:44 - 2022-06-15 16:44 - 000000000 ____D C:\Program Files\WinRAR
2022-06-15 13:24 - 2022-06-15 13:25 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2022-06-15 13:24 - 2022-06-15 13:24 - 000000000 ____D C:\Games
2022-06-15 13:21 - 2022-06-15 13:21 - 000000000 ____D C:\Users\dvacl\AppData\Local\OneDrive
2022-06-15 12:54 - 2022-06-15 15:01 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\Wargaming.net
2022-06-15 12:54 - 2022-06-15 12:54 - 000000000 ____D C:\Users\dvacl\AppData\Local\CEF
2022-06-15 12:53 - 2022-06-15 12:53 - 000000000 ____D C:\ProgramData\Wargaming.net
2022-06-15 12:49 - 2022-06-15 20:53 - 000000000 ____D C:\WINDOWS\Panther
2022-06-15 12:48 - 2022-07-09 13:57 - 000000000 ____D C:\Users\dvacl\AppData\Local\AMD_Common
2022-06-15 12:47 - 2022-06-15 12:47 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-06-15 12:46 - 2022-06-15 12:46 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-06-15 12:43 - 2022-06-15 12:43 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-06-15 12:43 - 2022-06-15 12:43 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-06-15 12:43 - 2022-06-15 12:43 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-06-15 12:43 - 2022-06-15 12:43 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-06-15 12:43 - 2022-06-15 12:43 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-06-15 12:43 - 2022-06-15 12:43 - 000188928 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000170496 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000158208 _____ C:\WINDOWS\system32\uwfcsp.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-06-15 12:43 - 2022-06-15 12:43 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2022-06-15 12:43 - 2015-10-20 22:37 - 000005579 _____ C:\Users\dvacl\OneDrive\Dokumenty\Kapitola první.odt
2022-06-15 12:42 - 2022-06-15 12:42 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2022-06-15 12:42 - 2022-06-15 12:42 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2022-06-15 12:42 - 2022-06-15 12:42 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe
2022-06-15 12:42 - 2022-06-15 12:42 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-06-15 12:42 - 2022-06-15 12:42 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2022-06-15 12:42 - 2022-06-15 12:42 - 000093696 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-06-15 12:42 - 2022-06-15 12:42 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-06-15 12:42 - 2022-06-15 12:42 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2022-06-15 12:42 - 2022-06-15 12:42 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2022-06-15 12:42 - 2022-06-15 12:42 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2022-06-15 12:40 - 2022-07-12 09:51 - 000003078 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2022-06-15 12:40 - 2022-07-02 22:01 - 000003488 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2022-06-15 12:40 - 2022-07-02 22:00 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR
2022-06-15 12:39 - 2022-07-02 22:00 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2022-06-15 12:39 - 2022-06-22 10:59 - 002971160 _____ (AMD Inc.) C:\WINDOWS\SysWOW64\AMDBugReportTool.exe
2022-06-15 12:37 - 2022-06-15 12:43 - 000000000 ____D C:\ProgramData\AMD
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\Users\dvacl\AppData\Local\AMDSoftwareInstaller
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\Program Files\MSBuild
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-06-15 12:37 - 2022-06-15 12:37 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-06-15 12:36 - 2022-06-15 11:51 - 000000000 ____D C:\WINDOWS\system32\Drivers\CLFCL5.20
2022-06-15 12:35 - 2022-06-15 12:35 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-06-15 12:32 - 2022-06-15 12:41 - 000000000 ____D C:\Users\dvacl\AppData\Local\Comms
2022-06-15 12:29 - 2022-06-15 21:11 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-06-15 12:29 - 2022-06-15 12:29 - 000000000 ____D C:\Program Files\SPC_Gear
2022-06-15 12:25 - 2022-07-13 01:43 - 000000000 ____D C:\Users\dvacl\AppData\Local\LGHUB
2022-06-15 12:25 - 2022-06-15 12:25 - 000000000 ____D C:\ProgramData\Logishrd
2022-06-15 12:25 - 2022-06-15 12:25 - 000000000 ____D C:\Program Files\LGHUB
2022-06-15 12:23 - 2022-06-15 12:25 - 000000000 ____D C:\ProgramData\LGHUB
2022-06-15 12:17 - 2022-06-30 10:47 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-87297680-2717088268-3221549041-1001
2022-06-15 12:17 - 2022-06-21 15:47 - 000000000 ____D C:\Users\dvacl\AppData\Local\PlaceholderTileLogoFolder
2022-06-15 12:17 - 2022-06-15 12:17 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-06-15 12:15 - 2022-07-12 13:49 - 000000000 ____D C:\Users\dvacl\AppData\Local\D3DSCache
2022-06-15 12:15 - 2022-07-07 01:30 - 000000000 ____D C:\Users\dvacl\AppData\Local\AMD
2022-06-15 12:15 - 2022-07-02 22:00 - 000000000 ____D C:\Users\dvacl\AppData\Local\Packages
2022-06-15 12:15 - 2022-06-24 09:07 - 000000000 ____D C:\ProgramData\Packages
2022-06-15 12:15 - 2022-06-15 20:12 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\Adobe
2022-06-15 12:15 - 2022-06-15 12:42 - 000000000 ____D C:\Users\dvacl\AppData\Local\ConnectedDevicesPlatform
2022-06-15 12:15 - 2022-06-15 12:15 - 000000020 ___SH C:\Users\dvacl\ntuser.ini
2022-06-15 12:15 - 2022-06-15 12:15 - 000000000 ____D C:\Users\dvacl\AppData\Local\Publishers
2022-06-15 12:03 - 2022-07-12 09:51 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-15 11:58 - 2022-06-15 12:29 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-15 11:58 - 2022-06-15 12:29 - 000003546 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d8809d8963615e
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\ProgramData\Šablony
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\ProgramData\Plocha
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-06-15 11:58 - 2022-06-15 11:58 - 000000000 _SHDL C:\ProgramData\Data aplikací
2022-06-15 11:57 - 2022-07-12 09:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-15 11:57 - 2022-06-23 12:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-06-15 11:56 - 2022-06-15 11:56 - 000015642 _____ C:\Users\adolf\Desktop\Odebrané aplikace.html
2022-06-15 11:54 - 2022-06-25 04:54 - 000000000 ____D C:\Users\dvacl
2022-06-15 11:54 - 2022-06-15 11:56 - 000000000 ____D C:\Users\adolf
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Šablony
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Soubory cookie
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Poslední
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Okolní tiskárny
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Okolní síť
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Nabídka Start
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Dokumenty
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\Data aplikací
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\dvacl\AppData\Local\Data aplikací
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Šablony
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Soubory cookie
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Poslední
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Okolní tiskárny
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Okolní síť
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Nabídka Start
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Dokumenty
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\Data aplikací
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-06-15 11:54 - 2022-06-15 11:54 - 000000000 _SHDL C:\Users\adolf\AppData\Local\Data aplikací
2022-06-15 11:51 - 2022-07-11 23:49 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2022-06-15 11:51 - 2022-07-02 22:00 - 000000000 ____D C:\Program Files\AMD
2022-06-15 11:50 - 2022-07-12 17:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-15 11:50 - 2022-07-07 10:23 - 000258096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-15 11:50 - 2022-06-15 12:03 - 000000000 ____D C:\WINDOWS\system32\AMD
2022-06-15 11:15 - 2022-06-15 11:56 - 000000000 ___HD C:\$SysReset
2022-06-15 03:50 - 2022-06-17 21:49 - 000684984 _____ (Mozilla Foundation) C:\Users\dvacl\AppData\LocalLow\freebl3.dll
2022-06-15 03:50 - 2022-06-17 21:49 - 000627128 _____ (Mozilla Foundation) C:\Users\dvacl\AppData\LocalLow\mozglue.dll
2022-06-15 03:50 - 2022-06-17 21:49 - 000254392 _____ (Mozilla Foundation) C:\Users\dvacl\AppData\LocalLow\softokn3.dll
2022-06-15 03:50 - 2022-06-15 03:50 - 000000162 _____ C:\Users\dvacl\AppData\LocalLow\nssdbm3.dll

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-13 02:49 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-12 09:51 - 2019-12-07 16:43 - 000716726 _____ C:\WINDOWS\system32\perfh005.dat
2022-07-12 09:51 - 2019-12-07 16:43 - 000144904 _____ C:\WINDOWS\system32\perfc005.dat
2022-07-12 09:51 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-07-12 09:44 - 2019-12-07 10:32 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-11 23:49 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-07-08 10:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-07-08 10:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-07-07 22:57 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-07 14:35 - 2020-08-28 00:24 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-07 10:22 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-07-07 10:22 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-07-07 09:44 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-07-07 09:43 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-07-02 21:56 - 2020-06-05 17:40 - 000000000 ____D C:\AMD
2022-06-29 02:35 - 2022-05-30 15:04 - 000502168 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-06-29 02:35 - 2022-05-28 02:27 - 001894272 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2022-06-29 02:32 - 2022-05-30 15:03 - 000186952 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2022-06-29 02:32 - 2022-05-28 02:27 - 000231776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2022-06-20 13:16 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-06-18 10:46 - 2020-06-05 17:05 - 000000000 ___RD C:\Users\dvacl\OneDrive
2022-06-16 04:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2022-06-15 16:46 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-06-15 14:18 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-06-15 12:54 - 2020-06-05 22:39 - 000000000 ____D C:\Users\dvacl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2022-06-15 12:48 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-06-15 12:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-06-15 12:46 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2022-06-15 12:46 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-06-15 12:46 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-06-15 12:46 - 2019-12-07 16:44 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-15 12:46 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-06-15 12:45 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2022-06-15 12:45 - 2019-12-07 16:47 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2022-06-15 12:43 - 2020-08-19 21:20 - 000000000 ____D C:\Users\dvacl\OneDrive\Dokumenty\Gaming Keyboard
2022-06-15 12:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2022-06-15 12:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2022-06-15 12:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-06-15 12:29 - 2020-11-09 02:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GK550 Keyboard
2022-06-15 12:25 - 2022-06-11 01:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2022-06-15 12:15 - 2020-06-05 17:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-06-15 12:15 - 2020-06-05 17:03 - 000000000 ___RD C:\Users\dvacl\3D Objects
2022-06-15 12:03 - 2019-12-07 16:45 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-06-15 12:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2022-06-15 12:03 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-06-15 11:58 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-06-15 11:57 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM

==================== Files in the root of some directories ========

2022-06-24 02:13 - 2022-06-24 02:15 - 000007604 _____ () C:\Users\dvacl\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Prosím o kontrolu logu

Napsal: 13 črc 2022 02:16
od bilejpes
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-07-2022
Ran by dvacl (13-07-2022 03:14:33)
Running from C:\Users\dvacl\Desktop
Microsoft Windows 10 Pro Version 21H2 19044.1806 (X64) (2022-06-15 10:03:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-87297680-2717088268-3221549041-500 - Administrator - Disabled)
adolf (S-1-5-21-87297680-2717088268-3221549041-1005 - Administrator - Enabled) => C:\Users\adolf
DefaultAccount (S-1-5-21-87297680-2717088268-3221549041-503 - Limited - Disabled)
dvacl (S-1-5-21-87297680-2717088268-3221549041-1001 - Administrator - Enabled) => C:\Users\dvacl
Guest (S-1-5-21-87297680-2717088268-3221549041-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-87297680-2717088268-3221549041-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Photoshop 2022 (HKLM-x32\...\PHSP_23_3_2) (Version: 23.3.2.458 - Adobe Inc.)
AIMP (HKLM-x32\...\AIMP) (Version: 5.03.2394 - AIMP DevTeam)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 22.6.1 - Advanced Micro Devices, Inc.)
Branding64 (HKLM\...\{0DB6E0DC-607A-42C1-A3CE-7567A9F85AF4}) (Version: 1.00.0008 - Advanced Micro Devices, Inc.) Hidden
calibre 64bit (HKLM\...\{0D15CC93-92C0-476D-A3D6-4EFFCD80FE94}) (Version: 6.0.0 - Kovid Goyal)
Core Temp 1.17.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.17.1 - ALCPU)
CyberLink PowerDVD 22 (HKLM-x32\...\{3584CCD3-8938-45F3-8103-0F3F7ABF4419}) (Version: 22.0.1716.62 - CyberLink Corp.)
DiRT Rally 2 0 (HKLM-x32\...\DiRT Rally 2 0_is1) (Version: - )
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 60.0.2.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 103.0.5060.114 - Google LLC)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.6.271036 - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.49 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.121.0605.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30133 (HKLM\...\{E699E009-1C3C-4E50-9B57-2B39F0954C7F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30133 (HKLM\...\{6CD9E9ED-906D-4196-8DC3-F987D2F6615F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 (HKLM-x32\...\{EAC73207-74BD-4B13-AACF-8C0E751FA4E8}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 (HKLM-x32\...\{2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D}) (Version: 14.24.28127 - Microsoft Corporation) Hidden
Remote Mouse version 4.200 (HKLM-x32\...\{01E4BC6D-3ACC-45E1-8928-C2FF626F63F3}_is1) (Version: 4.200 - Remote Mouse)
SPC Gear GK550 Omnis Kailh RGB (HKLM-x32\...\{12F382E1-63D4-4B94-BD32-5F845E74FC79}) (Version: 1.00 - COOLING.PL Zdziech Spolka Jawna)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.)
Wargaming.net Game Center (HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\Wargaming.net Game Center) (Version: 22.1.2.9024 - Wargaming.net)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
ZPS 19 CZ (HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)

Packages:
=========
AMD Link -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDLink_10.21.50009.0_x64__0a9344xs7nr4m [2022-07-02] (Advanced Micro Devices Inc.)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-06-15] (Microsoft Corporation)
WhatsApp Desktop -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2222.12.0_x64__cv1g1gvanyjgm [2022-06-30] (WhatsApp Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-03-28] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-03-28] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-03-28] (Adobe Inc. -> )
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [$PowerDVD22] -> {E8C54B6B-C540-43A5-BDDA-2B0038830F63} => C:\ProgramData\CyberLink\PowerDVD22\OpenWith\PDVD_Shell64.dll [2022-05-16] (CyberLink Corp. -> CyberLink Corp.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-03-28] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2022-07-07] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2022-07-07] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.121.0605.0002\FileSyncShell64.dll [2022-06-30] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2022-06-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-03-28] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-06-15 12:25 - 2022-06-15 12:25 - 000151040 _____ () [File not signed] \\?\C:\Program Files\LGHUB\resources\app.asar.unpacked\node_modules\keytar\build\Release\keytar.node
2022-06-22 04:36 - 2022-06-22 04:36 - 018143744 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\avcodec-58.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 003371520 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2022-06-15 12:29 - 2013-12-01 11:38 - 000036352 _____ (0) [File not signed] C:\Program Files\SPC_Gear\HidServ.dll
2017-09-05 00:15 - 2017-09-05 00:15 - 004396032 _____ (Microsoft Corporation) [File not signed] C:\Program Files\AMD\CNext\CNext\D3DCOMPILER_47.dll
2022-07-11 02:36 - 2019-04-19 17:12 - 001391104 _____ (Remote Mouse) [File not signed] C:\Program Files (x86)\Remote Mouse\windows_api.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000057344 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\audio\qtaudio_windows.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000037888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000031232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000448000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000023040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000502272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 001469952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 001430016 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 008103936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 006786048 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000743936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Multimedia.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000117760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5MultimediaQuick.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 001066496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000310784 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 003610624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000436736 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlModels.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000049664 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QmlWorkerScript.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 004172800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000166912 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 001120768 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000203776 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000326144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2022-01-12 01:03 - 2022-01-12 01:03 - 000375296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2022-01-12 01:04 - 2022-01-12 01:04 - 113779200 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000128512 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 005536256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000230400 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000208896 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000055296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000059904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000271360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtMultimedia\declarative_multimedia.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQml\qmlplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000018432 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000247296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000135168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000106496 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000349696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000046592 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2021-11-18 12:08 - 2021-11-18 12:08 - 000103424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2022-06-18 00:46 - 000000753 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-87297680-2717088268-3221549041-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dvacl\OneDrive\Obrázky\2022\01\IMG_2424b.jpg
HKU\S-1-5-21-87297680-2717088268-3221549041-1005\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 10.0.1.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "PowerDVD22Agent"
HKLM\...\StartupApproved\Run32: => "ccleaner_update_helper"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-87297680-2717088268-3221549041-1001\...\StartupApproved\Run: => "CyberlinkPowerPlayerMediaServer_PowerDVD22"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{56F6EA7D-D422-42D7-A5EA-93DBFDD007D9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DBEAFD80-63DA-40B6-8560-6AACD1301839}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{32FA82BE-AB49-458B-A309-1D52FE7CC0F9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B7A863CC-00B1-4DE8-80A9-F4F9C93EBBF6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{5F5C2B5F-EA08-47BD-AA6D-AE55BB4567DF}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{5007A4D5-1940-4ACE-A0C3-6320BB660BC2}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{2C427C15-9B6B-43D5-8028-52939B0DF7EB}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{3E76B357-F691-4283-B5C5-BAEF6F4B9D83}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{863E5A16-71C3-48E0-955B-ADA20DE63963}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{CCE4F9F7-C6B4-4F7C-B1A7-DAA6398AAB4C}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{9C64BD48-2713-4134-B747-93696979FF9B}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{B7D96186-6BA7-4B9D-AAA1-A6C1A9B2FD12}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\ShareModule32\Kernel\DMS\CLMSServerPDVD22.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{20F04E62-CB42-4B0A-A2A2-F36AE07F3EB6}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\PowerDVD22Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{A7D50266-FCD6-4404-8328-CBAC5DE9B2C8}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{5441F46C-26AB-4D4C-A1B4-FFC950FB0A10}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\CastingStation.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{AF770CF9-CA12-4C32-9FBF-86EE52D99F39}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\Common\CLMediaServer\clmediaserver.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{A74683AD-D5A8-4167-B1DD-A4E28E5C44F8}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\Common\dynamic_transcode.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{E3EAC921-4AC7-40AC-8A27-1AF53B896255}] => (Allow) C:\Program Files\CyberLink\PowerDVD22\Common\CLMediaServer\clmediaserver.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{037B1FF4-CA06-426F-9559-945E1AF0E5C0}] => (Allow) LPort=31302
FirewallRules: [{E182D275-3AB4-4098-9A5B-328D1C922FCC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A21C6CFF-76DC-4C54-8085-420497C88BA2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{796DE0BA-965C-4269-9958-2E79033679A1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0D33A5B2-3B26-44AA-BA5B-43BAB6A5539F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{386BBE22-EB41-4FA4-8CFC-69E8E860ED8F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{EDADE51D-0E37-4DBE-A030-CF767AD3553A}] => (Allow) C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe (remotemouse.net) [File not signed]
FirewallRules: [{38E728BA-75A0-4C98-8C5A-3287C295A6E0}] => (Allow) C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe (remotemouse.net) [File not signed]
FirewallRules: [{3596039F-7456-4649-9C50-B4D6A16A8E24}] => (Allow) C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe (RemoteMouse.net) [File not signed]
FirewallRules: [{6CD49A91-6067-477A-A264-E274A754778D}] => (Allow) C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe (RemoteMouse.net) [File not signed]

==================== Restore Points =========================

26-06-2022 17:41:36 Naplánovaný kontrolní bod
02-07-2022 22:00:03 Radeon Installer
07-07-2022 09:35:56 Instalační služba modulů systému Windows
07-07-2022 09:37:12 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/13/2022 02:53:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x318c
Čas spuštění chybující aplikace: 0x01d8964a9ef32702
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: a96a2004-5bc8-4df2-a7d2-49cc3c911fa0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/13/2022 01:53:41 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x265c
Čas spuštění chybující aplikace: 0x01d896423846718c
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 4738a35b-394d-49a4-8e38-e40a167ee703
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/13/2022 12:53:33 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x3108
Čas spuštění chybující aplikace: 0x01d89639d1a18e30
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 8ad62d96-84b1-4c8b-b1f5-edd337646e65
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/12/2022 11:53:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x1994
Čas spuštění chybující aplikace: 0x01d896316b8ceaf9
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 9e35236d-69b4-48c0-bb93-376495e24dea
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/12/2022 10:53:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x143c
Čas spuštění chybující aplikace: 0x01d89629056d8ffa
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: e70d482d-c345-4e97-8f6b-aedf911fb10c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/12/2022 09:53:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0xce4
Čas spuštění chybující aplikace: 0x01d8960fdbe0c6db
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 62420089-1d1f-456b-b1de-d9bc5adae8b0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/12/2022 06:53:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x2ed0
Čas spuštění chybující aplikace: 0x01d89607727f4fe5
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 020360d6-d618-49b6-b8c4-12abd5c60372
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/12/2022 05:52:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MXWTPTTTYKDUYVXJ.exe, verze: 0.0.0.0, časové razítko: 0x62833452
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000140003be2
ID chybujícího procesu: 0x18c4
Čas spuštění chybující aplikace: 0x01d895ff035bb3df
Cesta k chybující aplikaci: C:\Users\dvacl\AppData\Roaming\CyberLink\MediaCache\MXWTPTTTYKDUYVXJ.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: f6baf71f-b9c0-4091-9ebb-20517d073d25
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (07/09/2022 05:08:37 PM) (Source: DCOM) (EventID: 10010) (User: RUDOLF)
Description: Server windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/08/2022 07:55:10 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (14:50:31, ‎08.‎07.‎2022) bylo neočekávané.

Error: (07/08/2022 10:50:31 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (5:03:23, ‎08.‎07.‎2022) bylo neočekávané.

Error: (07/06/2022 03:16:57 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9WZDNCRFJBH4-Microsoft.Windows.Photos.

Error: (07/02/2022 01:52:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/02/2022 01:52:40 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (06/27/2022 01:33:18 AM) (Source: DCOM) (EventID: 10010) (User: RUDOLF)
Description: Server microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/24/2022 08:00:43 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (6:42:34, ‎24.‎06.‎2022) bylo neočekávané.


Windows Defender:
================
Date: 2022-07-13 03:11:31
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5801C251-B989-4234-B647-98E95BBAB161}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: RUDOLF\dvacl

Date: 2022-07-13 03:10:49
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {74C32F71-DBA6-43F3-8BE4-D05EC4EA2884}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Úplné prohledávání
Uživatel: RUDOLF\dvacl

Date: 2022-07-13 03:10:49
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: containerfile:_D:\Download\CCleaner.5.90.9443.All.rar; file:_D:\Download\CCleaner.5.90.9443.All.rar->CCleaner.5.90.9443.All\Patch22.rar->CCleaner_Patch22.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: RUDOLF\dvacl
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.371.31.0, AS: 1.371.31.0, NIS: 1.371.31.0
Verze modulu: AM: 1.1.19400.3, NIS: 1.1.19400.3

Date: 2022-07-11 14:13:39
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5CA36241-F3BD-46C7-97CC-AFD1A879E8D9}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-07-07 12:43:56
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {3B3480B6-29CA-4444-BD94-6E322C6847B5}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===============
Date: 2022-06-18 01:01:17
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. V2.13 03/07/2014
Motherboard: MSI Z77A-G43 (MS-7758)
Processor: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 25%
Total physical RAM: 24520.95 MB
Available physical RAM: 18257.54 MB
Total Virtual: 28104.95 MB
Available Virtual: 17972.89 MB

==================== Drives ================================

Drive c: (System) (Fixed) (Total:447.02 GB) (Free:280.9 GB) (Model: Patriot Burst) NTFS
Drive d: (SSD) (Fixed) (Total:447.14 GB) (Free:62.43 GB) (Model: Patriot Burst) NTFS

\\?\Volume{d765b008-6d47-4712-b3df-090dbd5ce3c7}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 447.1 GB) (Disk ID: 0610802F)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 56DA8679)
Partition 1: (Not Active) - (Size=223.6 GB) - (Type=42)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: C87DD721)
Partition 1: (Not Active) - (Size=223.6 GB) - (Type=42)

==========================================================
Disk: 3 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o kontrolu logu

Napsal: 15 črc 2022 09:29
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {668BBA49-1F88-4A04-8ECE-E59453AEE298} - System32\Tasks\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
ask: {072F584A-1F1F-4718-9E88-A7B3B0C55004} - System32\Tasks\GoogleUpdateTaskMachineCore{8BA5B634-4303-44F3-9B4B-5797A7239ADB} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Jen zbytečnosti.

Re: Prosím o kontrolu logu

Napsal: 15 črc 2022 21:46
od bilejpes
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-07-2022
Ran by dvacl (15-07-2022 22:44:30) Run:1
Running from C:\Users\dvacl\Desktop
Loaded Profiles: dvacl & adolf
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {668BBA49-1F88-4A04-8ECE-E59453AEE298} - System32\Tasks\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
ask: {072F584A-1F1F-4718-9E88-A7B3B0C55004} - System32\Tasks\GoogleUpdateTaskMachineCore{8BA5B634-4303-44F3-9B4B-5797A7239ADB} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{668BBA49-1F88-4A04-8ECE-E59453AEE298}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{668BBA49-1F88-4A04-8ECE-E59453AEE298}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{AA9CFE94-9A67-46C8-B32E-237B0A68F740}" => removed successfully
ask: {072F584A-1F1F-4718-9E88-A7B3B0C55004} - System32\Tasks\GoogleUpdateTaskMachineCore{8BA5B634-4303-44F3-9B4B-5797A7239ADB} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-15] (Google LLC -> Google LLC) => Error: No automatic fix found for this entry.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 286540499 B
Java, Discord, Steam htmlcache => 93145792 B
Windows/system/drivers => 56695994 B
Edge => 0 B
Chrome => 34693781 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 253387 B
systemprofile32 => 253387 B
LocalService => 253387 B
NetworkService => 333381 B
dvacl => 83839027 B
adolf => 83853639 B

RecycleBin => 8623016039 B
EmptyTemp: => 8.6 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-07-2022 22:45:32)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 22:45:32 ====

Re: Prosím o kontrolu logu

Napsal: 16 črc 2022 10:24
od Rudy
Smazáno, log již je OK.

Re: Prosím o kontrolu logu

Napsal: 17 črc 2022 17:56
od bilejpes
Moc děkuji.

Re: Prosím o kontrolu logu

Napsal: 17 črc 2022 17:58
od Rudy
Nemáte zač! :)