Prosím o kontrolu - od pátku 9.9. brutálně pomalý a padající win10
Napsal: 11 zář 2022 15:39
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Ran by admin (administrator) on NTB-BX09S32 (Dell Inc. Latitude E7450) (11-09-2022 16:20:39)
Running from C:\Users\admin\Desktop
Loaded Profiles: admin
Platform: Microsoft Windows 10 Pro Version 21H1 19043.1889 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe
(C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe ->) (Adobe Inc. -> Adobe Systems Incorporated.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrodist.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\AdobeNotificationManager\AdobeNotificationHelper.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe <2>
(C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2>
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ELECTRIC CO., LTD. -> ALPSALPINE CO., LTD.) C:\Program Files\DellTPad\hidfind.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <4>
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <7>
(explorer.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_a9a8972288e9f3b5\RstMwService.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (O2Micro -> BayHubTech/O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1852_none_7de3b01c7cacf858\TiWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [779152 2019-12-12] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9230280 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489384 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [Opera Browser Assistant] => C:\Users\admin\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4110832 2022-07-06] (Opera Norway AS -> Opera Software)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11186408 2022-08-29] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5930664 2022-09-08] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6223200 2022-01-05] (Acronis International GmbH -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-07-26] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [289560 2022-08-16] (Intel Corporation -> Intel)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\admin\AppData\Local\WhatsApp\Update.exe [2254048 2022-09-07] (WhatsApp LLC -> )
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5491880 2022-09-08] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [electron.app.Loom] => C:\Users\admin\AppData\Local\Programs\Loom\Loom.exe --process-start-args "--loomHidden" (No File)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282328 2022-05-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [116056952 2022-02-23] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Bose Updater] => C:\Program Files (x86)\Bose Updater\BOSEUPDATER.EXE [415064 2021-10-07] (Bose Corporation -> Bose Corporation)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\MountPoints2: {c3efd6a4-7d49-11ec-97e5-340286fb8ab9} - "D:\CDViewer.exe"
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\windows\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc)
HKLM\...\Print\Monitors\Brother QL-700 Monitor: C:\windows\system32\BSQ70L.DLL [68608 2011-10-13] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\Installer\chrmstp.exe [2022-09-09] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TREZOR Bridge.lnk [2021-02-19]
ShortcutTarget: TREZOR Bridge.lnk -> C:\Program Files (x86)\TREZOR Bridge\trezord.exe (SatoshiLabs, s.r.o. -> )
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {034DA9C0-CA10-43C3-89DE-C0CC4FE86BB6} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {09DFE849-E6F9-4572-9D87-B2F2F64FDF15} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {1214B0A5-FB86-4F08-8E2D-B9A60930E988} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489384 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {22FDA1BA-475B-4E7A-A1ED-319FA6CCE583} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {25294562-A85A-4ED7-B8D6-7BAEF07ED932} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-12-04] (Google LLC -> Google LLC)
Task: {37F19985-A9CE-4F88-9CED-EDC0CC641463} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {49C70909-EFC4-4C5A-B65D-822AB4D03A3A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {63772730-9AC0-42DE-AEDA-423074AC0231} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {775E3796-99E7-4CEE-A692-509D04ACC677} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)
Task: {82206439-758D-42AC-A1A6-4A4DEFF89EE8} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {86E61054-C736-42CD-8F56-B6F1359FD9EA} - System32\Tasks\Opera scheduled assistant Autoupdate 1634732864 => C:\Users\admin\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\admin\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {878B2EC0-832A-4552-BCF1-7897C54FE2F3} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {87C6CB4B-3F64-4560-8B3B-09344C81D213} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {91A2094B-34FB-4493-A4A3-B7142E2A2E43} - System32\Tasks\Opera scheduled Autoupdate 1634732862 => C:\Users\admin\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software)
Task: {BB77D643-EC56-4734-861D-7036293EFD03} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-12-04] (Google LLC -> Google LLC)
Task: {C9F5D291-907F-4E1B-9691-B7C1447EBD1E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {D4345799-C972-4688-B857-2CA76EF68C4A} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-655938224-1805826271-2506302558-500 => C:\Users\admin\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File)
Task: {F51C3EB0-29E7-42D8-A365-0AFE01090AEF} - System32\Tasks\CCleanerSkipUAC - admin => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\windows\explorer.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.168.1 192.168.168.3
Tcpip\..\Interfaces\{165b5422-de0f-4082-a16c-529a6da2b953}: [DhcpNameServer] 192.168.168.1 192.168.168.3
Tcpip\..\Interfaces\{1821b988-a2a6-4722-a8d6-c97c33969807}: [DhcpNameServer] 192.168.123.1 1.1.1.1 8.8.8.8
Tcpip\..\Interfaces\{22a6ed7e-f413-4fe2-8ee3-0123a3a8c5e2}: [DhcpNameServer] 192.168.168.1 192.168.168.3
FireFox:
========
FF DefaultProfile: s5jo6cug.default
FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\s5jo6cug.default [2020-12-04]
FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release [2022-09-09]
FF Extension: (Udělej printscreen celé webové stránky - FireShot) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}.xpi [2022-06-11]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-09-09]
FF Extension: (Video DownloadHelper) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-07-12]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-10-22]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-02-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-02-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.15 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-07-26] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-09-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-07-26] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default [2022-09-11]
CHR DownloadDir: C:\Users\admin\Desktop
CHR Notifications: Default -> hxxps://3.basecamp.com; hxxps://agency.barterme.cz; hxxps://app.smartsupp.com; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://spark.adobe.com; hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.tiktok.com
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Extension: (TikTok Pixel Helper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aelgobmabdmlfmiblddjfnjodalhidnn [2022-08-30]
CHR Extension: (DuckDuckGo) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2022-08-28]
CHR Extension: (Nimbus snímky obrazovky a záznam videa) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2022-09-08]
CHR Extension: (Fakturoid import z TSV (Excel)) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbononpokkmliohjgnbepedmkapfchbk [2022-03-11]
CHR Extension: (Facebook Pixel Helper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2022-01-09]
CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-05-30]
CHR Extension: (Google Analytics Opt-out Add-on (by Google)) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2021-02-26]
CHR Extension: (Website IP) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmhlgniedlklkpimlibbaoomlpacmk [2021-11-02]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-28]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-08-30]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2022-08-15]
CHR Extension: (META SEO inspector) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibkclpciafdglkjkcibmohobjkcfkaef [2022-09-08]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-08-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (ColorPick Eyedropper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohcpnigalekghcmgcdcenkpelffpdolg [2022-08-28]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-11]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-09-09]
CHR Extension: (Prezentace) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-01-17]
CHR Extension: (Ochrana Kaspersky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2022-01-17]
CHR Extension: (Dokumenty) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2022-01-17]
CHR Extension: (Disk Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-17]
CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-01-17]
CHR Extension: (Adobe Acrobat) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-01-17]
CHR Extension: (Tabulky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-01-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-17]
CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-17]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3 [2022-09-09]
CHR Extension: (Prezentace) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-02-24]
CHR Extension: (Ochrana Kaspersky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2022-02-24]
CHR Extension: (Dokumenty) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2022-02-24]
CHR Extension: (Disk Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-02-24]
CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-02-24]
CHR Extension: (Adobe Acrobat: nástroje pro úpravu, převod a podpis souborů PDF) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-02-24]
CHR Extension: (Tabulky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-02-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-24]
CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-02-24]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\System Profile [2022-09-11]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
Opera:
=======
OPR Profile: C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable [2022-09-10]
OPR DownloadDir: C:\Users\admin\Desktop
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (TikTok Pixel Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\aelgobmabdmlfmiblddjfnjodalhidnn [2022-08-30]
OPR Extension: (SEO META in 1 CLICK) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2021-01-19]
OPR Extension: (ColorPicker Eyedropper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\cipppkeobpmlmliibpodfhifcanklcog [2020-12-07]
OPR Extension: (Rich Hints Agent) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-05]
OPR Extension: (Facebook Pixel Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2020-12-04]
OPR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-06-01]
OPR Extension: (Pinterest Tag Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\gmlcbajhgoaaegmlbaclmmmhpmfdajmp [2022-08-12]
OPR Extension: (Opera Crypto Wallet) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-07-17]
OPR Extension: (LastPass: Free Password Manager) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2022-08-11]
OPR Extension: (META SEO inspector) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibkclpciafdglkjkcibmohobjkcfkaef [2022-09-09]
OPR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2022-09-09]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-10]
OPR Extension: (Install Chrome Extensions) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2020-12-04]
StartMenuInternet: (HKLM) OperaStable - C:\Users\admin\AppData\Local\Programs\Opera\Launcher.exe
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12978544 2022-01-05] (Acronis International GmbH -> )
R2 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [923656 2022-07-26] (Adobe Inc. -> Adobe Inc.)
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2022-05-06] (Acronis International GmbH -> )
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3863256 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3701464 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\windows\system32\DbxSvc.exe [46832 2022-08-29] (Dropbox, Inc -> Dropbox, Inc.)
S2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
S2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [138448 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
S3 Dell.CommandPowerManager.Service; C:\windows\system32\dllhost.exe /Processid:{8E473BF0-4121-450F-BCC5-902D5FD61D1F} [21312 2020-10-09] (Microsoft Windows -> Microsoft Corporation)
U2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [44448 2022-04-27] (Dell Inc -> )
S2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [134560 2022-02-19] (Dell Inc -> Dell)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [40728 2022-08-16] (Intel Corporation -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [188696 2022-08-16] (Intel Corporation -> Intel)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-08-28] (Malwarebytes Inc. -> Malwarebytes)
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4882992 2022-01-05] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2020-11-23] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2130296 2022-01-05] (Acronis International GmbH -> )
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [281464 2021-06-09] (nordvpn s.a. -> TEFINCOM S.A.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [137056 2022-06-21] (Dell Inc -> Dell Inc.)
S2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7402528 2022-01-05] (Acronis International GmbH -> )
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16241056 2022-07-13] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [253584 2021-12-14] (Synology Inc. -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe [3125112 2022-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe [133560 2022-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 dcpm-notify; "C:\Program Files\Dell\CommandPowerManager\NotifyService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R2 BdDci; C:\windows\system32\DRIVERS\bddci.sys [367096 2020-11-23] (Bitdefender SRL -> Bitdefender)
R3 busenum; C:\windows\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider)
R3 DBUtilDrv2; C:\windows\System32\drivers\DBUtilDrv2.sys [24968 2022-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
S3 DDDriver; C:\windows\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies)
R3 DellInstrumentation; C:\windows\System32\drivers\DellInstrumentation.sys [37808 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 DellRbtn; C:\windows\System32\drivers\DellRbtn.sys [22864 2018-08-16] (WDKTestCert Andy_Chen6,131219483243550933 -> OSR Open Systems Resources, Inc.)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [158640 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R2 file_protector; C:\windows\System32\DRIVERS\file_protector.sys [726160 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\windows\System32\DRIVERS\file_tracker.sys [392840 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\windows\System32\DRIVERS\fltsrv.sys [183944 2020-12-13] (Acronis International GmbH -> Acronis International GmbH)
S3 kinonivd; C:\windows\System32\drivers\kinonivd.sys [283672 2021-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 KINONI_Wave; C:\windows\system32\drivers\kinonivad.sys [31256 2021-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [223176 2022-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\windows\System32\DRIVERS\MbamElam.sys [21480 2022-08-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\windows\System32\DRIVERS\farflt.sys [193488 2022-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\windows\system32\DRIVERS\mbam.sys [75216 2022-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [239544 2022-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\windows\system32\DRIVERS\mwac.sys [181992 2022-09-11] (Malwarebytes Inc. -> Malwarebytes)
R2 NDivert; C:\Program Files\NordVPN\Drivers\NDivert.sys [129360 2021-06-08] (nordvpn s.a. -> Nordvpn S.A.)
S3 Netaapl; C:\windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
S0 ngelam; C:\windows\System32\drivers\ngelam.sys [16344 2022-01-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH)
R1 ngscan; C:\windows\System32\DRIVERS\ngscan.sys [179104 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R1 nordlwf; C:\windows\system32\DRIVERS\nordlwf.sys [42576 2021-06-13] (nordvpn s.a. -> TEFINCOM S.A.)
R3 O2FJ2RDR; C:\windows\System32\drivers\O2FJ2x64.sys [201240 2018-08-16] (BayHub Technology Inc. -> BayHubTech/O2Micro)
S3 RT-USB; C:\windows\system32\drivers\RT-USB64.SYS [70984 2010-06-16] (Ross-Tech, LLC -> Ross-Tech LLC)
R0 stdcfltn; C:\windows\System32\DRIVERS\stdcfltn.sys [23216 2015-01-09] (STMicroelectronics -> ST Microelectronics)
R3 tapnordvpn; C:\windows\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project)
S3 tib; C:\windows\system32\DRIVERS\tib.sys [887032 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\windows\system32\DRIVERS\tib_mounter.sys [175648 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\windows\system32\DRIVERS\tnd.sys [694920 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R1 veracrypt; C:\windows\System32\drivers\veracrypt.sys [831616 2020-12-04] (IDRIX SARL -> IDRIX)
R2 virtual_file; C:\windows\System32\DRIVERS\virtual_file.sys [334984 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\windows\System32\DRIVERS\volume_tracker.sys [251016 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
S3 WdBoot; C:\windows\system32\drivers\wd\WdBoot.sys [49576 2022-09-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\windows\system32\drivers\wd\WdFilter.sys [453904 2022-09-09] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [94480 2022-09-09] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-11 16:20 - 2022-09-11 16:23 - 000044510 _____ C:\Users\admin\Desktop\FRST.txt
2022-09-11 16:20 - 2022-09-11 16:20 - 000193488 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000181992 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000075216 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000000000 ____D C:\Users\admin\AppData\LocalLow\IGDump
2022-09-10 23:11 - 2022-09-10 23:11 - 000024968 _____ (Dell) C:\windows\system32\Drivers\DBUtilDrv2.sys
2022-09-10 23:07 - 2022-09-10 23:07 - 000000000 _____ C:\windows\invcol.tmp
2022-09-09 19:25 - 2022-09-09 19:25 - 000223176 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2022-09-09 14:57 - 2022-09-09 14:57 - 002371072 _____ (Farbar) C:\Users\admin\Desktop\FRST64.exe
2022-09-09 14:39 - 2022-09-09 14:39 - 000007602 _____ C:\Users\admin\AppData\Local\Resmon.ResmonCfg
2022-09-09 13:32 - 2022-09-09 13:32 - 013471344 _____ C:\Users\admin\Downloads\MB-SupportTool.exe
2022-09-08 23:03 - 2022-09-08 23:03 - 000000000 __SHD C:\IntelOptaneData
2022-09-08 23:03 - 2022-09-08 23:03 - 000000000 ____D C:\windows\system32\Tasks\Intel
2022-09-02 13:35 - 2022-09-02 13:37 - 000000809 _____ C:\Users\admin\Desktop\Analytics Všechny údaje o webu Veškerá návštěvnost 20220801-20220831.csv
2022-09-01 09:15 - 2022-09-01 09:15 - 000000000 ___HD C:\adobeTemp
2022-08-31 19:07 - 2022-08-31 19:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2022-08-31 11:25 - 2019-08-12 10:45 - 002844672 _____ (Intel Corporation) C:\windows\system32\iaStorAfsService.exe
2022-08-31 11:25 - 2019-08-12 10:45 - 001096192 _____ (Intel Corporation) C:\windows\system32\Drivers\iaStorAC.sys
2022-08-31 11:25 - 2019-08-12 10:45 - 000221696 _____ (Intel Corporation) C:\windows\system32\iaStorAfsNative.exe
2022-08-31 11:25 - 2019-08-12 10:45 - 000114688 _____ (Intel Corporation) C:\windows\system32\Optane.dll
2022-08-31 11:25 - 2019-08-12 10:45 - 000074752 _____ (Intel Corporation) C:\windows\system32\Drivers\iaStorAfs.sys
2022-08-31 09:12 - 2022-08-31 09:12 - 000000214 _____ C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-stable.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-dev.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-canary.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000046832 _____ (Dropbox, Inc.) C:\windows\system32\DbxSvc.exe
2022-08-23 22:36 - 2022-09-11 15:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-08-22 13:37 - 2022-08-22 13:37 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-08-22 13:37 - 2022-08-22 13:37 - 000000000 ____D C:\Users\admin\AppData\Local\mbam
2022-08-22 13:36 - 2022-08-22 13:36 - 000021480 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamElam.sys
2022-08-22 10:25 - 2022-08-22 10:23 - 000158640 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2022-08-22 09:40 - 2022-09-09 13:34 - 002371072 _____ (Farbar) C:\Users\admin\Downloads\FRSTEnglish.exe
2022-08-21 07:57 - 2022-08-21 07:57 - 000000000 ____D C:\Users\admin\AppData\Roaming\Teams
2022-08-17 18:58 - 2022-08-17 18:58 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2022-08-12 21:37 - 2022-08-12 21:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2022-08-12 14:58 - 2022-08-12 14:59 - 000000000 ____D C:\Program Files\Sublime Text 3
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-11 16:23 - 2020-12-04 15:06 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-11 16:23 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-11 16:22 - 2022-07-19 12:18 - 000000000 ____D C:\FRST
2022-09-11 16:22 - 2021-01-09 19:53 - 000000000 ____D C:\Program Files\CCleaner
2022-09-11 16:22 - 2020-12-04 16:27 - 000000000 ____D C:\Users\admin\AppData\Local\Dropbox
2022-09-11 16:21 - 2021-04-20 21:46 - 000000000 ____D C:\Users\admin\AppData\Local\CrashDumps
2022-09-11 16:20 - 2022-06-09 09:03 - 000000000 ____D C:\Users\admin\AppData\Roaming\DropboxElectron
2022-09-11 16:20 - 2020-12-04 19:58 - 000000000 ___RD C:\Users\admin\Creative Cloud Files
2022-09-11 16:19 - 2020-12-04 16:12 - 000000000 __SHD C:\Users\admin\IntelGraphicsProfiles
2022-09-11 16:18 - 2022-07-27 15:39 - 000000000 ____D C:\Program Files\TeamViewer
2022-09-11 16:18 - 2020-12-04 15:54 - 000000180 _____ C:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-09-11 16:18 - 2020-09-27 09:56 - 000000006 ____H C:\windows\Tasks\SA.DAT
2022-09-11 16:18 - 2020-09-27 07:55 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-11 16:18 - 2019-12-07 11:14 - 000000000 ____D C:\windows\ServiceState
2022-09-11 16:18 - 2019-12-07 11:03 - 001048576 _____ C:\windows\system32\config\BBI
2022-09-11 16:04 - 2020-12-04 17:14 - 000000000 ____D C:\Users\admin\AppData\Roaming\Zoom
2022-09-11 16:02 - 2022-07-27 15:40 - 000000000 ____D C:\Users\admin\AppData\Roaming\TeamViewer
2022-09-11 15:55 - 2020-12-04 16:38 - 000000000 ____D C:\Users\admin\AppData\LocalLow\Mozilla
2022-09-11 15:53 - 2020-12-04 17:21 - 000000000 ____D C:\Users\admin\AppData\Roaming\qBittorrent
2022-09-11 15:52 - 2020-09-27 07:55 - 000000000 ____D C:\windows\system32\SleepStudy
2022-09-11 01:08 - 2020-12-04 23:06 - 000000000 ____D C:\Users\admin\AppData\Roaming\vlc
2022-09-11 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\windows\AppReadiness
2022-09-10 23:14 - 2020-10-22 21:50 - 001693204 _____ C:\windows\system32\PerfStringBackup.INI
2022-09-10 23:14 - 2019-12-07 16:43 - 000719496 _____ C:\windows\system32\perfh005.dat
2022-09-10 23:14 - 2019-12-07 16:43 - 000145622 _____ C:\windows\system32\perfc005.dat
2022-09-10 23:14 - 2019-12-07 11:13 - 000000000 ____D C:\windows\INF
2022-09-10 23:11 - 2019-12-07 11:14 - 000000000 ____D C:\windows\LiveKernelReports
2022-09-10 23:04 - 2022-07-26 09:18 - 000000000 ____D C:\Users\admin\AppData\Roaming\com.adobe.dunamis
2022-09-10 22:59 - 2020-12-04 16:11 - 000000000 ____D C:\Users\admin
2022-09-10 22:16 - 2020-12-05 12:39 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task
2022-09-10 22:15 - 2020-12-05 12:38 - 000002121 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2022-09-10 22:15 - 2020-12-05 12:38 - 000002110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2022-09-10 22:14 - 2020-12-04 19:55 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-09-09 19:25 - 2020-12-04 16:38 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-09 18:46 - 2020-12-04 15:06 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-09 15:36 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-09 14:47 - 2022-01-20 19:29 - 000000000 ____D C:\Users\admin\AppData\Local\WhatsApp
2022-09-09 14:47 - 2020-12-04 16:12 - 000000000 ____D C:\Users\admin\AppData\Local\Packages
2022-09-09 14:43 - 2021-10-07 14:44 - 000000000 ____D C:\windows\system32\Tasks\Mozilla
2022-09-09 14:33 - 2022-02-10 16:59 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-09-09 14:31 - 2020-12-04 16:38 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-09-09 13:49 - 2021-11-26 19:17 - 000000000 ____D C:\Users\admin\Downloads\Telegram Desktop
2022-09-09 13:42 - 2021-11-25 10:46 - 000000000 ____D C:\Users\admin\AppData\Roaming\Telegram Desktop
2022-09-09 13:15 - 2021-01-09 19:54 - 000003936 _____ C:\windows\system32\Tasks\CCleaner Update
2022-09-09 13:12 - 2020-12-04 17:27 - 000000000 ____D C:\Users\admin\AppData\Roaming\WhatsApp
2022-09-09 08:37 - 2020-09-27 09:56 - 000000000 ____D C:\windows\system32\Drivers\wd
2022-09-08 23:13 - 2019-12-07 11:03 - 000000000 ____D C:\windows\CbsTemp
2022-09-08 23:05 - 2020-12-04 05:47 - 000000000 ____D C:\Program Files\Intel
2022-09-07 21:40 - 2021-10-20 14:27 - 000003992 _____ C:\windows\system32\Tasks\Opera scheduled Autoupdate 1634732862
2022-09-07 21:40 - 2021-10-20 14:27 - 000001541 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-09-06 10:26 - 2022-07-19 13:07 - 000000000 ____D C:\Users\admin\Desktop\RJ1-RJ2-RS-fotky
2022-08-31 19:08 - 2020-12-04 16:27 - 000000000 ____D C:\Program Files (x86)\Dropbox
2022-08-31 12:05 - 2021-09-16 14:13 - 000000000 ____D C:\Users\admin\Desktop\__BIN from 22_07_19
2022-08-31 09:15 - 2022-07-15 11:00 - 000239544 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2022-08-30 18:38 - 2020-12-04 15:06 - 000003474 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-30 18:38 - 2020-12-04 15:06 - 000003350 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-29 10:00 - 2022-07-20 12:26 - 000000000 ____D C:\Users\admin\Desktop\RH SM Blaclist neaktvni
2022-08-24 12:05 - 2020-12-04 19:54 - 000000000 ____D C:\Program Files\Adobe
2022-08-23 11:54 - 2020-12-04 20:02 - 000003522 _____ C:\windows\system32\Tasks\AdobeGCInvoker-1.0
2022-08-22 13:36 - 2022-04-12 10:10 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-08-22 13:36 - 2022-04-12 10:10 - 000000000 ____D C:\Program Files\Malwarebytes
2022-08-21 16:02 - 2021-01-12 20:13 - 000000000 ____D C:\Users\admin\Documents\Zoom
2022-08-21 07:57 - 2020-12-04 17:26 - 000000000 ____D C:\Users\admin\AppData\Local\SquirrelTemp
2022-08-19 13:45 - 2020-12-04 17:09 - 000000000 ____D C:\Users\admin\Desktop\!! FB MANAGER & WEB BACKUP !!
2022-08-17 18:58 - 2022-04-03 09:46 - 000000000 ____D C:\Program Files\dotnet
2022-08-17 18:58 - 2020-12-04 15:05 - 000000000 ____D C:\Program Files (x86)\Intel
2022-08-17 18:58 - 2020-10-22 21:56 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-15 18:08 - 2020-12-04 16:27 - 000000930 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2022-08-15 18:08 - 2020-12-04 16:27 - 000000926 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2022-08-15 18:08 - 2020-09-27 07:55 - 000732520 _____ C:\windows\system32\FNTCACHE.DAT
2022-08-15 18:06 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-08-15 18:06 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SysWOW64\WinMetadata
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SysWOW64\Dism
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SystemResources
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\WinMetadata
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\oobe
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\Dism
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\ShellExperiences
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\bcastdvr
2022-08-12 21:37 - 2022-02-28 20:08 - 000000000 ____D C:\Program Files (x86)\qBittorrent
2022-08-12 14:59 - 2020-12-05 13:38 - 000000000 ____D C:\Users\admin\AppData\Local\Sublime Text 3
2022-08-12 09:01 - 2020-12-04 16:27 - 000003990 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineUA
2022-08-12 09:01 - 2020-12-04 16:27 - 000003758 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineCore
==================== Files in the root of some directories ========
2022-03-20 18:03 - 2022-03-20 18:03 - 000001934 _____ () C:\Users\admin\AppData\Local\47025BD0F2A846319B7717DCF1232DE1.SANON TISK.lbx
2020-12-04 22:48 - 2020-12-04 22:48 - 000000000 _____ () C:\Users\admin\AppData\Local\oobelibMkey.log
2021-11-02 20:26 - 2021-11-02 20:27 - 000000128 _____ () C:\Users\admin\AppData\Local\PUTTY.RND
2022-09-09 14:39 - 2022-09-09 14:39 - 000007602 _____ () C:\Users\admin\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by admin (administrator) on NTB-BX09S32 (Dell Inc. Latitude E7450) (11-09-2022 16:20:39)
Running from C:\Users\admin\Desktop
Loaded Profiles: admin
Platform: Microsoft Windows 10 Pro Version 21H1 19043.1889 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe
(C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe ->) (Adobe Inc. -> Adobe Systems Incorporated.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrodist.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\AdobeNotificationManager\AdobeNotificationHelper.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe <2>
(C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2>
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ELECTRIC CO., LTD. -> ALPSALPINE CO., LTD.) C:\Program Files\DellTPad\hidfind.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <4>
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <7>
(explorer.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_a9a8972288e9f3b5\RstMwService.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (O2Micro -> BayHubTech/O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1852_none_7de3b01c7cacf858\TiWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [779152 2019-12-12] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9230280 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489384 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [Opera Browser Assistant] => C:\Users\admin\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4110832 2022-07-06] (Opera Norway AS -> Opera Software)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11186408 2022-08-29] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5930664 2022-09-08] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6223200 2022-01-05] (Acronis International GmbH -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-07-26] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [289560 2022-08-16] (Intel Corporation -> Intel)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\admin\AppData\Local\WhatsApp\Update.exe [2254048 2022-09-07] (WhatsApp LLC -> )
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5491880 2022-09-08] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [electron.app.Loom] => C:\Users\admin\AppData\Local\Programs\Loom\Loom.exe --process-start-args "--loomHidden" (No File)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282328 2022-05-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [116056952 2022-02-23] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\Run: [Bose Updater] => C:\Program Files (x86)\Bose Updater\BOSEUPDATER.EXE [415064 2021-10-07] (Bose Corporation -> Bose Corporation)
HKU\S-1-5-21-655938224-1805826271-2506302558-1009\...\MountPoints2: {c3efd6a4-7d49-11ec-97e5-340286fb8ab9} - "D:\CDViewer.exe"
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\windows\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc)
HKLM\...\Print\Monitors\Brother QL-700 Monitor: C:\windows\system32\BSQ70L.DLL [68608 2011-10-13] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\Installer\chrmstp.exe [2022-09-09] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TREZOR Bridge.lnk [2021-02-19]
ShortcutTarget: TREZOR Bridge.lnk -> C:\Program Files (x86)\TREZOR Bridge\trezord.exe (SatoshiLabs, s.r.o. -> )
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {034DA9C0-CA10-43C3-89DE-C0CC4FE86BB6} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {09DFE849-E6F9-4572-9D87-B2F2F64FDF15} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {1214B0A5-FB86-4F08-8E2D-B9A60930E988} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489384 2017-06-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {22FDA1BA-475B-4E7A-A1ED-319FA6CCE583} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {25294562-A85A-4ED7-B8D6-7BAEF07ED932} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-12-04] (Google LLC -> Google LLC)
Task: {37F19985-A9CE-4F88-9CED-EDC0CC641463} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {49C70909-EFC4-4C5A-B65D-822AB4D03A3A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {63772730-9AC0-42DE-AEDA-423074AC0231} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {775E3796-99E7-4CEE-A692-509D04ACC677} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)
Task: {82206439-758D-42AC-A1A6-4A4DEFF89EE8} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {86E61054-C736-42CD-8F56-B6F1359FD9EA} - System32\Tasks\Opera scheduled assistant Autoupdate 1634732864 => C:\Users\admin\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\admin\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {878B2EC0-832A-4552-BCF1-7897C54FE2F3} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {87C6CB4B-3F64-4560-8B3B-09344C81D213} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {91A2094B-34FB-4493-A4A3-B7142E2A2E43} - System32\Tasks\Opera scheduled Autoupdate 1634732862 => C:\Users\admin\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software)
Task: {BB77D643-EC56-4734-861D-7036293EFD03} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-12-04] (Google LLC -> Google LLC)
Task: {C9F5D291-907F-4E1B-9691-B7C1447EBD1E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {D4345799-C972-4688-B857-2CA76EF68C4A} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-655938224-1805826271-2506302558-500 => C:\Users\admin\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File)
Task: {F51C3EB0-29E7-42D8-A365-0AFE01090AEF} - System32\Tasks\CCleanerSkipUAC - admin => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\windows\explorer.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.168.1 192.168.168.3
Tcpip\..\Interfaces\{165b5422-de0f-4082-a16c-529a6da2b953}: [DhcpNameServer] 192.168.168.1 192.168.168.3
Tcpip\..\Interfaces\{1821b988-a2a6-4722-a8d6-c97c33969807}: [DhcpNameServer] 192.168.123.1 1.1.1.1 8.8.8.8
Tcpip\..\Interfaces\{22a6ed7e-f413-4fe2-8ee3-0123a3a8c5e2}: [DhcpNameServer] 192.168.168.1 192.168.168.3
FireFox:
========
FF DefaultProfile: s5jo6cug.default
FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\s5jo6cug.default [2020-12-04]
FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release [2022-09-09]
FF Extension: (Udělej printscreen celé webové stránky - FireShot) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}.xpi [2022-06-11]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-09-09]
FF Extension: (Video DownloadHelper) - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\1earnm1z.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-07-12]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-10-22]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-02-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-02-01] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.15 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-07-26] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-09-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-07-26] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default [2022-09-11]
CHR DownloadDir: C:\Users\admin\Desktop
CHR Notifications: Default -> hxxps://3.basecamp.com; hxxps://agency.barterme.cz; hxxps://app.smartsupp.com; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://spark.adobe.com; hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.tiktok.com
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Extension: (TikTok Pixel Helper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aelgobmabdmlfmiblddjfnjodalhidnn [2022-08-30]
CHR Extension: (DuckDuckGo) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2022-08-28]
CHR Extension: (Nimbus snímky obrazovky a záznam videa) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2022-09-08]
CHR Extension: (Fakturoid import z TSV (Excel)) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbononpokkmliohjgnbepedmkapfchbk [2022-03-11]
CHR Extension: (Facebook Pixel Helper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2022-01-09]
CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-05-30]
CHR Extension: (Google Analytics Opt-out Add-on (by Google)) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2021-02-26]
CHR Extension: (Website IP) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmhlgniedlklkpimlibbaoomlpacmk [2021-11-02]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-28]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-08-30]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2022-08-15]
CHR Extension: (META SEO inspector) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibkclpciafdglkjkcibmohobjkcfkaef [2022-09-08]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-08-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (ColorPick Eyedropper) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohcpnigalekghcmgcdcenkpelffpdolg [2022-08-28]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-11]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-09-09]
CHR Extension: (Prezentace) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-01-17]
CHR Extension: (Ochrana Kaspersky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2022-01-17]
CHR Extension: (Dokumenty) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2022-01-17]
CHR Extension: (Disk Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-17]
CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-01-17]
CHR Extension: (Adobe Acrobat) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-01-17]
CHR Extension: (Tabulky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-01-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-17]
CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-17]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3 [2022-09-09]
CHR Extension: (Prezentace) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-02-24]
CHR Extension: (Ochrana Kaspersky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2022-02-24]
CHR Extension: (Dokumenty) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2022-02-24]
CHR Extension: (Disk Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-02-24]
CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-02-24]
CHR Extension: (Adobe Acrobat: nástroje pro úpravu, převod a podpis souborů PDF) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-02-24]
CHR Extension: (Tabulky) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-02-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-24]
CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-02-24]
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\System Profile [2022-09-11]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
Opera:
=======
OPR Profile: C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable [2022-09-10]
OPR DownloadDir: C:\Users\admin\Desktop
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (TikTok Pixel Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\aelgobmabdmlfmiblddjfnjodalhidnn [2022-08-30]
OPR Extension: (SEO META in 1 CLICK) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2021-01-19]
OPR Extension: (ColorPicker Eyedropper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\cipppkeobpmlmliibpodfhifcanklcog [2020-12-07]
OPR Extension: (Rich Hints Agent) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-05]
OPR Extension: (Facebook Pixel Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2020-12-04]
OPR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-06-01]
OPR Extension: (Pinterest Tag Helper) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\gmlcbajhgoaaegmlbaclmmmhpmfdajmp [2022-08-12]
OPR Extension: (Opera Crypto Wallet) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-07-17]
OPR Extension: (LastPass: Free Password Manager) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2022-08-11]
OPR Extension: (META SEO inspector) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibkclpciafdglkjkcibmohobjkcfkaef [2022-09-09]
OPR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2022-09-09]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-10]
OPR Extension: (Install Chrome Extensions) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2020-12-04]
StartMenuInternet: (HKLM) OperaStable - C:\Users\admin\AppData\Local\Programs\Opera\Launcher.exe
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12978544 2022-01-05] (Acronis International GmbH -> )
R2 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [923656 2022-07-26] (Adobe Inc. -> Adobe Inc.)
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2022-05-06] (Acronis International GmbH -> )
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3863256 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3701464 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\windows\system32\DbxSvc.exe [46832 2022-08-29] (Dropbox, Inc -> Dropbox, Inc.)
S2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
S2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [138448 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2022-05-20] (Dell Inc -> Dell Technologies Inc.)
S3 Dell.CommandPowerManager.Service; C:\windows\system32\dllhost.exe /Processid:{8E473BF0-4121-450F-BCC5-902D5FD61D1F} [21312 2020-10-09] (Microsoft Windows -> Microsoft Corporation)
U2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [44448 2022-04-27] (Dell Inc -> )
S2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [134560 2022-02-19] (Dell Inc -> Dell)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [40728 2022-08-16] (Intel Corporation -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [188696 2022-08-16] (Intel Corporation -> Intel)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-08-28] (Malwarebytes Inc. -> Malwarebytes)
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4882992 2022-01-05] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2020-11-23] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2130296 2022-01-05] (Acronis International GmbH -> )
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [281464 2021-06-09] (nordvpn s.a. -> TEFINCOM S.A.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [137056 2022-06-21] (Dell Inc -> Dell Inc.)
S2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7402528 2022-01-05] (Acronis International GmbH -> )
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16241056 2022-07-13] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [253584 2021-12-14] (Synology Inc. -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe [3125112 2022-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe [133560 2022-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 dcpm-notify; "C:\Program Files\Dell\CommandPowerManager\NotifyService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R2 BdDci; C:\windows\system32\DRIVERS\bddci.sys [367096 2020-11-23] (Bitdefender SRL -> Bitdefender)
R3 busenum; C:\windows\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider)
R3 DBUtilDrv2; C:\windows\System32\drivers\DBUtilDrv2.sys [24968 2022-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
S3 DDDriver; C:\windows\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies)
R3 DellInstrumentation; C:\windows\System32\drivers\DellInstrumentation.sys [37808 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 DellRbtn; C:\windows\System32\drivers\DellRbtn.sys [22864 2018-08-16] (WDKTestCert Andy_Chen6,131219483243550933 -> OSR Open Systems Resources, Inc.)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [158640 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R2 file_protector; C:\windows\System32\DRIVERS\file_protector.sys [726160 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\windows\System32\DRIVERS\file_tracker.sys [392840 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\windows\System32\DRIVERS\fltsrv.sys [183944 2020-12-13] (Acronis International GmbH -> Acronis International GmbH)
S3 kinonivd; C:\windows\System32\drivers\kinonivd.sys [283672 2021-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 KINONI_Wave; C:\windows\system32\drivers\kinonivad.sys [31256 2021-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [223176 2022-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\windows\System32\DRIVERS\MbamElam.sys [21480 2022-08-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\windows\System32\DRIVERS\farflt.sys [193488 2022-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\windows\system32\DRIVERS\mbam.sys [75216 2022-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [239544 2022-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\windows\system32\DRIVERS\mwac.sys [181992 2022-09-11] (Malwarebytes Inc. -> Malwarebytes)
R2 NDivert; C:\Program Files\NordVPN\Drivers\NDivert.sys [129360 2021-06-08] (nordvpn s.a. -> Nordvpn S.A.)
S3 Netaapl; C:\windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
S0 ngelam; C:\windows\System32\drivers\ngelam.sys [16344 2022-01-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH)
R1 ngscan; C:\windows\System32\DRIVERS\ngscan.sys [179104 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R1 nordlwf; C:\windows\system32\DRIVERS\nordlwf.sys [42576 2021-06-13] (nordvpn s.a. -> TEFINCOM S.A.)
R3 O2FJ2RDR; C:\windows\System32\drivers\O2FJ2x64.sys [201240 2018-08-16] (BayHub Technology Inc. -> BayHubTech/O2Micro)
S3 RT-USB; C:\windows\system32\drivers\RT-USB64.SYS [70984 2010-06-16] (Ross-Tech, LLC -> Ross-Tech LLC)
R0 stdcfltn; C:\windows\System32\DRIVERS\stdcfltn.sys [23216 2015-01-09] (STMicroelectronics -> ST Microelectronics)
R3 tapnordvpn; C:\windows\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project)
S3 tib; C:\windows\system32\DRIVERS\tib.sys [887032 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\windows\system32\DRIVERS\tib_mounter.sys [175648 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\windows\system32\DRIVERS\tnd.sys [694920 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R1 veracrypt; C:\windows\System32\drivers\veracrypt.sys [831616 2020-12-04] (IDRIX SARL -> IDRIX)
R2 virtual_file; C:\windows\System32\DRIVERS\virtual_file.sys [334984 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\windows\System32\DRIVERS\volume_tracker.sys [251016 2022-05-06] (Acronis International GmbH -> Acronis International GmbH)
S3 WdBoot; C:\windows\system32\drivers\wd\WdBoot.sys [49576 2022-09-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\windows\system32\drivers\wd\WdFilter.sys [453904 2022-09-09] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [94480 2022-09-09] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-11 16:20 - 2022-09-11 16:23 - 000044510 _____ C:\Users\admin\Desktop\FRST.txt
2022-09-11 16:20 - 2022-09-11 16:20 - 000193488 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000181992 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000075216 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2022-09-11 16:20 - 2022-09-11 16:20 - 000000000 ____D C:\Users\admin\AppData\LocalLow\IGDump
2022-09-10 23:11 - 2022-09-10 23:11 - 000024968 _____ (Dell) C:\windows\system32\Drivers\DBUtilDrv2.sys
2022-09-10 23:07 - 2022-09-10 23:07 - 000000000 _____ C:\windows\invcol.tmp
2022-09-09 19:25 - 2022-09-09 19:25 - 000223176 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2022-09-09 14:57 - 2022-09-09 14:57 - 002371072 _____ (Farbar) C:\Users\admin\Desktop\FRST64.exe
2022-09-09 14:39 - 2022-09-09 14:39 - 000007602 _____ C:\Users\admin\AppData\Local\Resmon.ResmonCfg
2022-09-09 13:32 - 2022-09-09 13:32 - 013471344 _____ C:\Users\admin\Downloads\MB-SupportTool.exe
2022-09-08 23:03 - 2022-09-08 23:03 - 000000000 __SHD C:\IntelOptaneData
2022-09-08 23:03 - 2022-09-08 23:03 - 000000000 ____D C:\windows\system32\Tasks\Intel
2022-09-02 13:35 - 2022-09-02 13:37 - 000000809 _____ C:\Users\admin\Desktop\Analytics Všechny údaje o webu Veškerá návštěvnost 20220801-20220831.csv
2022-09-01 09:15 - 2022-09-01 09:15 - 000000000 ___HD C:\adobeTemp
2022-08-31 19:07 - 2022-08-31 19:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2022-08-31 11:25 - 2019-08-12 10:45 - 002844672 _____ (Intel Corporation) C:\windows\system32\iaStorAfsService.exe
2022-08-31 11:25 - 2019-08-12 10:45 - 001096192 _____ (Intel Corporation) C:\windows\system32\Drivers\iaStorAC.sys
2022-08-31 11:25 - 2019-08-12 10:45 - 000221696 _____ (Intel Corporation) C:\windows\system32\iaStorAfsNative.exe
2022-08-31 11:25 - 2019-08-12 10:45 - 000114688 _____ (Intel Corporation) C:\windows\system32\Optane.dll
2022-08-31 11:25 - 2019-08-12 10:45 - 000074752 _____ (Intel Corporation) C:\windows\system32\Drivers\iaStorAfs.sys
2022-08-31 09:12 - 2022-08-31 09:12 - 000000214 _____ C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-stable.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-dev.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx-canary.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000047600 _____ (Dropbox, Inc.) C:\windows\system32\Drivers\dbx.sys
2022-08-29 17:25 - 2022-08-29 17:25 - 000046832 _____ (Dropbox, Inc.) C:\windows\system32\DbxSvc.exe
2022-08-23 22:36 - 2022-09-11 15:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-08-22 13:37 - 2022-08-22 13:37 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-08-22 13:37 - 2022-08-22 13:37 - 000000000 ____D C:\Users\admin\AppData\Local\mbam
2022-08-22 13:36 - 2022-08-22 13:36 - 000021480 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamElam.sys
2022-08-22 10:25 - 2022-08-22 10:23 - 000158640 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2022-08-22 09:40 - 2022-09-09 13:34 - 002371072 _____ (Farbar) C:\Users\admin\Downloads\FRSTEnglish.exe
2022-08-21 07:57 - 2022-08-21 07:57 - 000000000 ____D C:\Users\admin\AppData\Roaming\Teams
2022-08-17 18:58 - 2022-08-17 18:58 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2022-08-12 21:37 - 2022-08-12 21:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2022-08-12 14:58 - 2022-08-12 14:59 - 000000000 ____D C:\Program Files\Sublime Text 3
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-11 16:23 - 2020-12-04 15:06 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-11 16:23 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-11 16:22 - 2022-07-19 12:18 - 000000000 ____D C:\FRST
2022-09-11 16:22 - 2021-01-09 19:53 - 000000000 ____D C:\Program Files\CCleaner
2022-09-11 16:22 - 2020-12-04 16:27 - 000000000 ____D C:\Users\admin\AppData\Local\Dropbox
2022-09-11 16:21 - 2021-04-20 21:46 - 000000000 ____D C:\Users\admin\AppData\Local\CrashDumps
2022-09-11 16:20 - 2022-06-09 09:03 - 000000000 ____D C:\Users\admin\AppData\Roaming\DropboxElectron
2022-09-11 16:20 - 2020-12-04 19:58 - 000000000 ___RD C:\Users\admin\Creative Cloud Files
2022-09-11 16:19 - 2020-12-04 16:12 - 000000000 __SHD C:\Users\admin\IntelGraphicsProfiles
2022-09-11 16:18 - 2022-07-27 15:39 - 000000000 ____D C:\Program Files\TeamViewer
2022-09-11 16:18 - 2020-12-04 15:54 - 000000180 _____ C:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-09-11 16:18 - 2020-09-27 09:56 - 000000006 ____H C:\windows\Tasks\SA.DAT
2022-09-11 16:18 - 2020-09-27 07:55 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-11 16:18 - 2019-12-07 11:14 - 000000000 ____D C:\windows\ServiceState
2022-09-11 16:18 - 2019-12-07 11:03 - 001048576 _____ C:\windows\system32\config\BBI
2022-09-11 16:04 - 2020-12-04 17:14 - 000000000 ____D C:\Users\admin\AppData\Roaming\Zoom
2022-09-11 16:02 - 2022-07-27 15:40 - 000000000 ____D C:\Users\admin\AppData\Roaming\TeamViewer
2022-09-11 15:55 - 2020-12-04 16:38 - 000000000 ____D C:\Users\admin\AppData\LocalLow\Mozilla
2022-09-11 15:53 - 2020-12-04 17:21 - 000000000 ____D C:\Users\admin\AppData\Roaming\qBittorrent
2022-09-11 15:52 - 2020-09-27 07:55 - 000000000 ____D C:\windows\system32\SleepStudy
2022-09-11 01:08 - 2020-12-04 23:06 - 000000000 ____D C:\Users\admin\AppData\Roaming\vlc
2022-09-11 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\windows\AppReadiness
2022-09-10 23:14 - 2020-10-22 21:50 - 001693204 _____ C:\windows\system32\PerfStringBackup.INI
2022-09-10 23:14 - 2019-12-07 16:43 - 000719496 _____ C:\windows\system32\perfh005.dat
2022-09-10 23:14 - 2019-12-07 16:43 - 000145622 _____ C:\windows\system32\perfc005.dat
2022-09-10 23:14 - 2019-12-07 11:13 - 000000000 ____D C:\windows\INF
2022-09-10 23:11 - 2019-12-07 11:14 - 000000000 ____D C:\windows\LiveKernelReports
2022-09-10 23:04 - 2022-07-26 09:18 - 000000000 ____D C:\Users\admin\AppData\Roaming\com.adobe.dunamis
2022-09-10 22:59 - 2020-12-04 16:11 - 000000000 ____D C:\Users\admin
2022-09-10 22:16 - 2020-12-05 12:39 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task
2022-09-10 22:15 - 2020-12-05 12:38 - 000002121 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2022-09-10 22:15 - 2020-12-05 12:38 - 000002110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2022-09-10 22:14 - 2020-12-04 19:55 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-09-09 19:25 - 2020-12-04 16:38 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-09 18:46 - 2020-12-04 15:06 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-09 15:36 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-09 14:47 - 2022-01-20 19:29 - 000000000 ____D C:\Users\admin\AppData\Local\WhatsApp
2022-09-09 14:47 - 2020-12-04 16:12 - 000000000 ____D C:\Users\admin\AppData\Local\Packages
2022-09-09 14:43 - 2021-10-07 14:44 - 000000000 ____D C:\windows\system32\Tasks\Mozilla
2022-09-09 14:33 - 2022-02-10 16:59 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-09-09 14:31 - 2020-12-04 16:38 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-09-09 13:49 - 2021-11-26 19:17 - 000000000 ____D C:\Users\admin\Downloads\Telegram Desktop
2022-09-09 13:42 - 2021-11-25 10:46 - 000000000 ____D C:\Users\admin\AppData\Roaming\Telegram Desktop
2022-09-09 13:15 - 2021-01-09 19:54 - 000003936 _____ C:\windows\system32\Tasks\CCleaner Update
2022-09-09 13:12 - 2020-12-04 17:27 - 000000000 ____D C:\Users\admin\AppData\Roaming\WhatsApp
2022-09-09 08:37 - 2020-09-27 09:56 - 000000000 ____D C:\windows\system32\Drivers\wd
2022-09-08 23:13 - 2019-12-07 11:03 - 000000000 ____D C:\windows\CbsTemp
2022-09-08 23:05 - 2020-12-04 05:47 - 000000000 ____D C:\Program Files\Intel
2022-09-07 21:40 - 2021-10-20 14:27 - 000003992 _____ C:\windows\system32\Tasks\Opera scheduled Autoupdate 1634732862
2022-09-07 21:40 - 2021-10-20 14:27 - 000001541 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-09-06 10:26 - 2022-07-19 13:07 - 000000000 ____D C:\Users\admin\Desktop\RJ1-RJ2-RS-fotky
2022-08-31 19:08 - 2020-12-04 16:27 - 000000000 ____D C:\Program Files (x86)\Dropbox
2022-08-31 12:05 - 2021-09-16 14:13 - 000000000 ____D C:\Users\admin\Desktop\__BIN from 22_07_19
2022-08-31 09:15 - 2022-07-15 11:00 - 000239544 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2022-08-30 18:38 - 2020-12-04 15:06 - 000003474 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-30 18:38 - 2020-12-04 15:06 - 000003350 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-29 10:00 - 2022-07-20 12:26 - 000000000 ____D C:\Users\admin\Desktop\RH SM Blaclist neaktvni
2022-08-24 12:05 - 2020-12-04 19:54 - 000000000 ____D C:\Program Files\Adobe
2022-08-23 11:54 - 2020-12-04 20:02 - 000003522 _____ C:\windows\system32\Tasks\AdobeGCInvoker-1.0
2022-08-22 13:36 - 2022-04-12 10:10 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-08-22 13:36 - 2022-04-12 10:10 - 000000000 ____D C:\Program Files\Malwarebytes
2022-08-21 16:02 - 2021-01-12 20:13 - 000000000 ____D C:\Users\admin\Documents\Zoom
2022-08-21 07:57 - 2020-12-04 17:26 - 000000000 ____D C:\Users\admin\AppData\Local\SquirrelTemp
2022-08-19 13:45 - 2020-12-04 17:09 - 000000000 ____D C:\Users\admin\Desktop\!! FB MANAGER & WEB BACKUP !!
2022-08-17 18:58 - 2022-04-03 09:46 - 000000000 ____D C:\Program Files\dotnet
2022-08-17 18:58 - 2020-12-04 15:05 - 000000000 ____D C:\Program Files (x86)\Intel
2022-08-17 18:58 - 2020-10-22 21:56 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-15 18:08 - 2020-12-04 16:27 - 000000930 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2022-08-15 18:08 - 2020-12-04 16:27 - 000000926 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2022-08-15 18:08 - 2020-09-27 07:55 - 000732520 _____ C:\windows\system32\FNTCACHE.DAT
2022-08-15 18:06 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-08-15 18:06 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SysWOW64\WinMetadata
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SysWOW64\Dism
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\SystemResources
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\WinMetadata
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\oobe
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\system32\Dism
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\ShellExperiences
2022-08-15 18:06 - 2019-12-07 11:14 - 000000000 ____D C:\windows\bcastdvr
2022-08-12 21:37 - 2022-02-28 20:08 - 000000000 ____D C:\Program Files (x86)\qBittorrent
2022-08-12 14:59 - 2020-12-05 13:38 - 000000000 ____D C:\Users\admin\AppData\Local\Sublime Text 3
2022-08-12 09:01 - 2020-12-04 16:27 - 000003990 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineUA
2022-08-12 09:01 - 2020-12-04 16:27 - 000003758 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineCore
==================== Files in the root of some directories ========
2022-03-20 18:03 - 2022-03-20 18:03 - 000001934 _____ () C:\Users\admin\AppData\Local\47025BD0F2A846319B7717DCF1232DE1.SANON TISK.lbx
2020-12-04 22:48 - 2020-12-04 22:48 - 000000000 _____ () C:\Users\admin\AppData\Local\oobelibMkey.log
2021-11-02 20:26 - 2021-11-02 20:27 - 000000128 _____ () C:\Users\admin\AppData\Local\PUTTY.RND
2022-09-09 14:39 - 2022-09-09 14:39 - 000007602 _____ () C:\Users\admin\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================