Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 13-12-2023
Ran by Viera Kadlíčková (administrator) on DESKTOP-VAOOUPU (ASUSTeK COMPUTER INC. X550MJ) (15-12-2023 08:18:17)
Running from C:\Users\Viera Kadlíčková\OneDrive\Počítač\FRST64.exe
Loaded Profiles: Viera Kadlíčková
Platform: Microsoft Windows 10 Home Version 22H2 19045.3758 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\acrocef_1\RdrCEF.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(C:\Program Files (x86)\Google\Update\Install\{F7F7D656-E57E-45D8-9886-1FF15E08501B}\120.0.6099.109_120.0.6099.71_chrome_updater.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\Install\{F7F7D656-E57E-45D8-9886-1FF15E08501B}\CR_5BCD9.tmp\setup.exe <2>
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.17029.20068\OfficeClickToRun.exe
(C:\Program Files\ESET\ESET Smart Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Smart Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Smart Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Smart Security\eOppFrame.exe
(Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Viera Kadlíčková\AppData\Local\WebEx\WebexHost.exe
(Disig a.s. -> Disig a.s.) C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\Install\{F7F7D656-E57E-45D8-9886-1FF15E08501B}\120.0.6099.109_120.0.6099.71_chrome_updater.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation -> © 2015 Microsoft Corporation) C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(Ministerstvo vnútra Slovenskej republiky -> ) C:\Program Files (x86)\eID_klient\eID_Client.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Pervasive Software Inc. -> Pervasive Software Inc.) C:\Program Files (x86)\Pervasive Software\PSQL\bin\w3dbsmgr.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(services.exe ->) (CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Smart Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(svchost.exe ->) (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3745_none_7ded3f327ca60a41\TiWorker.exe
(svchost.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(svchost.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\ecmdS.exe [195576 2023-12-11] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [eID_Client] => C:\Program Files (x86)\eID_klient\eID_Client.exe [25324840 2023-05-18] (Ministerstvo vnútra Slovenskej republiky -> )
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode (No File)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode (No File)
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [49958368 2022-02-01] (Google LLC -> )
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [BingSvc] => C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\BingSvc\BingSvc.exe [146312 2020-08-15] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Viera Kadlíčková\AppData\Local\WebEx\WebexHost.exe [7651256 2022-05-12] (Cisco WebEx LLC -> Cisco Webex LLC)
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [Disig Web Signer] => C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe [268128 2023-04-05] (Disig a.s. -> Disig a.s.)
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\Teams\Update.exe [2492128 2022-04-13] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-765558173-3457487112-3880999057-1001\...\Run: [MicrosoftEdgeAutoLaunch_C22EAE16CBAA3356B2E23DC412E05365] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788736 2023-12-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\84.0.11.0\GoogleDriveFS.exe --startup_mode (No File)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.71\Installer\chrmstp.exe [2023-12-12] (Google LLC -> Google LLC)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"
Startup: C:\Users\Viera Kadlíčková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2021-01-16]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {F32EFDF7-1E62-43B4-895F-B439591F2DB5} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {4046FE90-343C-47EE-A0A4-643714AA1C7B} - System32\Tasks\{196798AE-8139-4535-A147-DEEA85DC6648} => c:\program files (x86)\google\chrome\application\chrome.exe [2693920 2023-12-06] (Google LLC -> Google LLC) -> hxxp://ui.skype.com/ui/0/7.18.0.112/sk/abandoninstall?source=lightinstaller&page=tsMain
Task: {6C7DD98F-23A7-4E01-B099-F385DBE38414} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {8446504A-7146-475B-AF07-5F0245687CC6} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19782224 2015-05-25] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {AF7E7051-3CE0-41A5-B41C-4932AF0F5638} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
Task: {330E18E6-44C7-4BEB-B8F9-D0D780C3E285} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168 2015-03-10] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {CCC5C4FB-2808-4748-B66C-CD1777CCF1CF} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168 2015-03-10] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {43B5E1D3-3048-4741-9D9F-D02211086973} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-11] (Google Inc -> Google Inc.)
Task: {ED31C673-7872-47C1-A4C1-4B931AFE90DB} - System32\Tasks\GoogleUpdateTaskMachineCore1d49a0e4b034be => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-11] (Google Inc -> Google Inc.)
Task: {F9AABE8E-33EC-4750-B4C8-FED0D8487433} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-11] (Google Inc -> Google Inc.)
Task: {6C1C7923-0307-4491-A41B-4402F5846B7B} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [38560 2021-12-28] (HP Inc. -> HP Inc.)
Task: {10ECE67F-84FF-4D50-A250-A2BB76A2A8F6} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [38560 2021-12-28] (HP Inc. -> HP Inc.)
Task: {3BC74FE4-2D3B-435A-8535-9E5E9DC3F76A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26977976 2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {EAE5B860-B64C-4214-B568-9AE5FDB1B4C3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26977976 2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {25D4CDD2-8258-4C0C-8D8E-778520A24DA3} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [125992 2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {1A9F1810-5046-4238-8AD2-C2811CCFE010} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [125992 2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C63CA5AA-AC67-4261-B876-04B7F220B9F1} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Refresh Group Policy Cache => {07369A67-07A6-4608-ABEA-379491CB7C46} C:\Windows\System32\UpdatePolicy.dll [256512 2023-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {17C9E091-3A34-4DDE-8589-C60D16350023} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1403136 2015-07-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {0CD06C75-637A-4AB6-B0DA-53C22AE23801} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16165632 2015-07-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.20.248.1
Tcpip\..\Interfaces\{74becc3c-f0dd-4efe-bdc7-d598d77b8a1f}: [DhcpNameServer] 77.48.221.10 10.0.0.1
Tcpip\..\Interfaces\{dd09d04d-3a18-4239-9d5c-9ab97dbcc792}: [DhcpNameServer] 10.20.248.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\Edge\User Data\Default [2023-12-15]
Edge HomePage: Default -> hxxps://
www.financnasprava.sk/sk/titulna-stranka
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-11]
Edge Extension: (Microsoft Editor: Kontrola pravopisu a gramatiky) - C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gpaiobkfhnonedkhhfjpmhdalgeoebfa [2023-12-15]
Edge Extension: (Edge relevant text changes) - C:\Users\Viera Kadlíčková\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-12-11]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: o9gcze65.default
FF ProfilePath: C:\Users\Viera Kadlíčková\AppData\Roaming\Mozilla\Firefox\Profiles\o9gcze65.default [2021-10-22]
FF Homepage: Mozilla\Firefox\Profiles\o9gcze65.default -> hxxp://
www.msn.com/?pc=SK216&ocid=SK216DHP&osmkt=en-ww
FF Extension: (Bing Search) - C:\Users\Viera Kadlíčková\AppData\Roaming\Mozilla\Firefox\Profiles\o9gcze65.default\Extensions\
bingsearch.full@microsoft.com.xpi [2016-11-17] [Legacy]
FF Extension: (No Name) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [not found]
FF SearchPlugin: C:\Users\Viera Kadlíčková\AppData\Roaming\Mozilla\Firefox\Profiles\o9gcze65.default\searchplugins\bing-.xml [2016-11-17]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ditec.sk/DAsicFac -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/DitecZepDViewerFb -> C:\PROGRA~2\Ditec\DViewer\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigMessageContainer -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesExtender -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~3.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~1.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/XmlDataContainerFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~2.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.AsicFactory.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigMessageContainerFb.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigXadesExtenderFb.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigXadesFb.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DViewerFb.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.XmlDataContainerFb.js [2021-12-14]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2021-12-14]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default [2023-12-12]
CHR Notifications: Default -> hxxps://mail.ovbmail.sk; hxxps://meetings.ipvideotalk.com; hxxps://mkr-novo2.ru; hxxps://podnikam.sk; hxxps://podnikam.webnoviny.sk; hxxps://
www.facebook.com
CHR Extension: (Adobe Acrobat: nástroje na upravovanie, prevádzanie a podpisovanie súborov PDF) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-12-12]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-25]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (ESET Browser Privacy & Security) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2023-12-12]
CHR Profile: C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-16]
CHR Profile: C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-25]
CHR Notifications: Profile 1 -> hxxps://
www.facebook.com
CHR Extension: (Adobe Acrobat: nástroje na upravovanie, prevádzanie a podpisovanie súborov PDF) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-02-25]
CHR Extension: (MSN Homepage & Bing Search Engine) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2022-05-23]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-01]
CHR Extension: (Skype) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2022-05-13]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-01-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-07]
CHR Profile: C:\Users\Viera Kadlíčková\AppData\Local\Google\Chrome\User Data\System Profile [2022-09-16]
CHR HKU\S-1-5-21-765558173-3457487112-3880999057-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd]
CHR HKU\S-1-5-21-765558173-3457487112-3880999057-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-07-29] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12860928 2023-10-23] (Microsoft Corporation -> Microsoft Corporation)
S2 dLauncherLoopback; C:\Program Files (x86)\Ditec\DLauncher\dLauncherLoopback.exe [154960 2019-08-02] (DITEC, a.s. -> )
R2 efwd; C:\Program Files\ESET\ESET Smart Security\efwd.exe [2537928 2023-12-11] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [3850920 2023-12-11] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [3850920 2023-12-11] (ESET, spol. s r.o. -> ESET)
S3 GameInputSvc; C:\WINDOWS\System32\GameInputSvc.exe [50168 2023-12-11] (Microsoft Corporation -> Microsoft Corporation)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-12-28] (HP Inc. -> HP Inc.)
S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.4947\wtoolex\wpsupdatesvr.exe [133480 2015-08-15] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1658400 2023-01-28] (Solitea, a.s. -> Solitea Česká republika, a.s.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [15212856 2023-01-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 Asus WebStorage Windows Service; "C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSWinService.exe" [X]
S2 ASUSGiftBoxDekstop; C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGIFTBOXDesktop.exe [X]
S2 GamesAppIntegrationService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe" [X]
S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [215616 2023-12-11] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [120032 2023-12-11] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-31] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [254344 2023-12-11] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [55528 2023-12-11] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81824 2023-12-11] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [124168 2023-12-11] (ESET, spol. s r.o. -> ESET)
S3 GemCCID; C:\WINDOWS\System32\drivers\GemCCID.sys [137712 2016-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Gemalto)
R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S4 UCPD; C:\WINDOWS\System32\drivers\UCPD.sys [29184 2023-12-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-12-15 08:18 - 2023-12-15 08:23 - 000026530 _____ C:\Users\Viera Kadlíčková\OneDrive\Počítač\FRST.txt
2023-12-15 08:18 - 2023-12-15 08:18 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\FRST-OlderVersion
2023-12-15 07:49 - 2023-12-15 07:49 - 000000000 ___HD C:\$WinREAgent
2023-12-12 15:34 - 2023-12-12 15:34 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2023-12-12 15:34 - 2017-09-14 00:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2023-12-12 15:34 - 2017-09-14 00:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2023-12-12 15:34 - 2017-09-14 00:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2023-12-12 15:34 - 2017-09-14 00:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2023-12-12 15:32 - 2023-12-12 15:32 - 000000000 ____D C:\temp
2023-12-12 15:14 - 2018-02-13 13:52 - 036357664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2023-12-12 15:14 - 2018-02-13 13:52 - 029389768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2023-12-12 15:14 - 2018-02-13 13:51 - 000991744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2023-12-12 15:14 - 2018-02-13 13:51 - 000942024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2023-12-12 15:14 - 2018-02-13 13:51 - 000624912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2023-12-12 15:14 - 2018-02-13 13:51 - 000515528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2023-12-12 15:14 - 2018-02-13 13:50 - 001998792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438873.dll
2023-12-12 15:14 - 2018-02-13 13:50 - 001683400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438873.dll
2023-12-12 15:14 - 2018-02-13 13:50 - 001109776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2023-12-12 15:14 - 2018-02-13 13:50 - 001041352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2023-12-12 15:14 - 2018-02-13 13:49 - 040246304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2023-12-12 15:14 - 2018-02-13 13:49 - 035166664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2023-12-12 15:14 - 2018-02-13 13:49 - 004210536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2023-12-12 15:14 - 2018-02-13 13:49 - 003624952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 023482944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 019218440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 014000816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 013377536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 010985720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 001154264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2023-12-12 15:14 - 2018-02-13 13:39 - 000902096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2023-12-12 15:14 - 2018-02-13 13:38 - 011896592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2023-12-12 15:14 - 2018-02-13 13:38 - 003859632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2023-12-12 15:14 - 2018-02-13 09:05 - 000048510 _____ C:\WINDOWS\system32\nvinfo.pb
2023-12-12 14:59 - 2023-12-12 15:27 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2023-12-12 14:14 - 2023-12-12 14:22 - 000000000 ____D C:\AdwCleaner
2023-12-12 14:11 - 2023-12-12 13:28 - 008791352 _____ (Malwarebytes) C:\Users\Viera Kadlíčková\OneDrive\Počítač\adwcleaner.exe
2023-12-12 13:53 - 2023-12-12 13:53 - 002385408 _____ (Farbar) C:\Users\Viera Kadlíčková\Downloads\FRST64 (1).exe
2023-12-12 12:28 - 2023-12-15 08:20 - 000000000 ____D C:\FRST
2023-12-12 12:25 - 2023-12-15 08:18 - 002386432 _____ (Farbar) C:\Users\Viera Kadlíčková\OneDrive\Počítač\FRST64.exe
2023-12-12 12:23 - 2023-12-12 12:24 - 002385408 _____ (Farbar) C:\Users\Viera Kadlíčková\Downloads\FRST64.exe
2023-12-11 15:57 - 2023-12-11 15:57 - 000000000 ____D C:\WINDOWS\InboxApps
2023-12-11 15:15 - 2023-12-11 15:15 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2023-12-11 15:14 - 2023-12-11 15:14 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2023-12-11 15:06 - 2023-12-11 15:06 - 000016707 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2023-12-11 12:49 - 2023-12-11 12:49 - 000000000 ____D C:\ProgramData\PLUG
2023-12-05 12:03 - 2023-12-05 12:14 - 000000000 ____D C:\Users\Viera Kadlíčková\AppData\Roaming\AnyDesk
2023-12-05 12:02 - 2023-12-05 12:02 - 005525576 _____ (AnyDesk Software GmbH) C:\Users\Viera Kadlíčková\Downloads\AnyDesk.exe
2023-12-05 12:02 - 2023-12-05 12:02 - 005525576 _____ (AnyDesk Software GmbH) C:\Users\Viera Kadlíčková\Downloads\AnyDesk (3).exe
2023-12-05 12:02 - 2023-12-05 12:02 - 005525576 _____ (AnyDesk Software GmbH) C:\Users\Viera Kadlíčková\Downloads\AnyDesk (2).exe
2023-12-05 12:02 - 2023-12-05 12:02 - 005525576 _____ (AnyDesk Software GmbH) C:\Users\Viera Kadlíčková\Downloads\AnyDesk (1).exe
2023-12-05 11:31 - 2023-12-05 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disig Web Signer
2023-12-05 11:29 - 2023-12-05 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eID Klient
2023-12-05 11:29 - 2023-12-05 11:29 - 000000000 ____D C:\Program Files (x86)\eID_klient
2023-12-05 11:28 - 2023-12-12 14:16 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\ovb
2023-12-05 11:28 - 2023-11-22 19:01 - 004041728 _____ (AnyDesk Software GmbH) C:\Users\Viera Kadlíčková\OneDrive\Počítač\Pomoc_Na_Dialku.exe
2023-12-05 11:28 - 2023-11-16 15:37 - 000001040 _____ C:\Users\Viera Kadlíčková\OneDrive\Počítač\Telegram.lnk
2023-12-05 11:28 - 2023-11-07 15:03 - 005157076 _____ C:\Users\Viera Kadlíčková\OneDrive\Počítač\elektronicka-kniha_zdravy-chrbat.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-12-15 08:46 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-12-15 08:19 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-12-15 08:08 - 2021-12-16 13:01 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-12-15 08:08 - 2015-12-11 11:25 - 000000000 ____D C:\Program Files (x86)\Google
2023-12-15 07:51 - 2020-09-01 15:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-12-15 07:42 - 2022-09-27 08:08 - 000000000 ____D C:\Users\Viera Kadlíčková\AppData\Local\eID_klient
2023-12-15 07:39 - 2015-12-11 11:20 - 000000000 __SHD C:\Users\Viera Kadlíčková\IntelGraphicsProfiles
2023-12-12 16:02 - 2017-06-04 19:06 - 000000000 ____D C:\ProgramData\NVIDIA
2023-12-12 15:42 - 2017-01-10 18:45 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-12-12 15:41 - 2020-09-01 15:47 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-12-12 15:41 - 2020-09-01 15:05 - 000008192 ___SH C:\DumpStack.log.tmp
2023-12-12 15:41 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-12-12 15:04 - 2022-05-12 06:00 - 000632490 _____ C:\WINDOWS\system32\perfh01B.dat
2023-12-12 15:04 - 2022-05-12 06:00 - 000118084 _____ C:\WINDOWS\system32\perfc01B.dat
2023-12-12 15:04 - 2020-09-01 15:28 - 001481498 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-12-12 14:59 - 2017-06-04 19:07 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2023-12-12 14:25 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-12-12 14:24 - 2017-06-04 19:08 - 000000000 ____D C:\Program Files (x86)\ASUS
2023-12-12 14:24 - 2015-12-11 11:14 - 000000000 ____D C:\ProgramData\ASUS
2023-12-12 14:24 - 2015-08-15 06:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2023-12-12 14:15 - 2023-01-10 11:01 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\Dane_23
2023-12-12 14:12 - 2023-10-23 10:26 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\blanka
2023-12-12 14:12 - 2021-05-18 07:55 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\cus
2023-12-12 14:11 - 2015-12-11 11:24 - 000000000 ___RD C:\Users\Viera Kadlíčková\OneDrive
2023-12-12 13:47 - 2016-01-15 06:10 - 000000000 ____D C:\ProgramData\ASUS Smart Gesture
2023-12-12 13:47 - 2015-12-11 11:20 - 000000165 _____ C:\Users\Viera Kadlíčková\AppData\Roaming\sp_data.sys
2023-12-12 12:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-12-12 12:16 - 2018-07-15 17:08 - 000000000 ____D C:\Users\Viera Kadlíčková\AppData\Local\D3DSCache
2023-12-12 12:11 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-12-12 12:10 - 2017-12-09 10:58 - 000000000 ____D C:\Users\Viera Kadlíčková\AppData\Local\Packages
2023-12-12 12:01 - 2015-12-11 11:30 - 000002315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-12-12 11:52 - 2020-06-08 22:14 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-12-12 11:52 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-12-11 16:10 - 2022-05-08 14:28 - 000306320 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2023-12-11 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2023-12-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2023-12-11 15:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2023-12-11 15:57 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2023-12-11 15:57 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-12-11 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2023-12-11 15:57 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2023-12-11 15:48 - 2019-12-07 15:39 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2023-12-11 15:48 - 2019-12-07 15:39 - 000020827 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2023-12-11 15:48 - 2019-12-07 10:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2023-12-11 15:48 - 2019-12-07 10:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2023-12-11 15:03 - 2020-09-01 15:09 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-12-11 13:28 - 2016-01-12 20:32 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-12-11 12:58 - 2016-01-12 20:31 - 182871392 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-12-11 12:51 - 2020-09-01 15:47 - 000003752 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-12-11 12:51 - 2020-09-01 15:47 - 000003656 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d49a0e4b034be
2023-12-11 12:49 - 2022-11-15 18:04 - 000000000 ____D C:\Program Files\RUXIM
2023-12-11 12:49 - 2020-08-14 19:48 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-12-11 09:54 - 2017-01-17 08:15 - 000120032 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2023-12-11 09:54 - 2016-11-21 19:50 - 000055528 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys
2023-12-11 09:54 - 2015-11-20 13:21 - 000254344 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2023-12-11 09:54 - 2015-11-20 13:21 - 000215616 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2023-12-11 09:54 - 2015-11-20 13:21 - 000124168 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2023-12-11 09:54 - 2015-11-20 13:21 - 000081824 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2023-12-05 12:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-12-05 12:06 - 2016-01-10 10:06 - 000000792 _____ C:\Users\Viera Kadlíčková\OneDrive\Počítač\JU EIS ECAV.lnk
2023-12-05 11:52 - 2022-09-27 08:08 - 000000000 ____D C:\Users\Viera Kadlíčková\AppData\Roaming\eID_klient
2023-12-05 11:28 - 2017-06-15 20:08 - 000000000 ____D C:\Users\Viera Kadlíčková\OneDrive\Počítač\stretávka
2023-12-05 11:12 - 2020-09-01 15:47 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-12-05 11:11 - 2020-09-01 15:47 - 000003506 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
==================== Files in the root of some directories ========
2018-12-22 16:48 - 2018-12-22 16:48 - 007895040 _____ () C:\Program Files (x86)\GUTC9E7.tmp
2015-12-11 11:20 - 2023-12-12 13:47 - 000000165 _____ () C:\Users\Viera Kadlíčková\AppData\Roaming\sp_data.sys
2020-01-24 19:22 - 2020-01-24 19:22 - 000000000 _____ () C:\Users\Viera Kadlíčková\AppData\Local\{1945F6D3-09E7-4D2F-8E5F-B0C88833F712}
2017-03-30 17:59 - 2017-03-30 17:59 - 000000000 _____ () C:\Users\Viera Kadlíčková\AppData\Local\{277E2C48-BF61-4D8A-8784-6DE4069B12AF}
2020-01-24 19:22 - 2020-01-24 19:22 - 000000000 _____ () C:\Users\Viera Kadlíčková\AppData\Local\{788F8675-C1A6-449F-9C5E-0A86A4A7D3DE}
2019-03-30 14:38 - 2019-03-30 14:38 - 000000000 _____ () C:\Users\Viera Kadlíčková\AppData\Local\{84E0EA02-3678-4CA7-83E0-F0D7A66971A0}
2019-03-30 14:38 - 2019-03-30 14:38 - 000000000 _____ () C:\Users\Viera Kadlíčková\AppData\Local\{DE13F611-3A04-46DA-873A-71080AA1B373}
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================