kontrola logu FRST
Napsal: 05 kvě 2024 10:54
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19.04.2024 01
Ran by Michal (administrator) on DESKTOP-RV3QMI2 (Dell Inc. Precision 7520) (05-05-2024 11:49:33)
Running from D:\Stažené soubory\FRST64.exe
Loaded Profiles: Michal
Platform: Microsoft Windows 10 Pro Version 22H2 19045.4355 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.DCF.UA.Bradbury.API.SubAgent.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <20>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(SearchProtocolHost.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(services.exe ->) ("STMicroelectronics Srl" -> ) C:\Windows\System32\drivers\DellFFDPWmiService.exe
(services.exe ->) (@ByELDI -> @ByELDI) [File not signed] C:\Program Files\KMSpico\Service_KMS.exe
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_7ed3bacbb0a8cc67\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\NVWMI\nvWmi64.exe <2>
(services.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.124.3191.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.124.3191.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [423832 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235920 2020-04-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-04-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45380000 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [MicrosoftEdgeAutoLaunch_3D9802976EF00A6AE9398D528BE31C4A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4081192 2024-05-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\124.0.6367.119\Installer\chrmstp.exe [2024-05-03] (Google LLC -> Google LLC)
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon – zástupce.lnk [2022-07-28]
ShortcutTarget: ctfmon – zástupce.lnk -> C:\Windows\System32\ctfmon.exe (Microsoft Windows -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {799C52B6-0C92-4761-9E9A-489D8061CC8C} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
Task: {AF78A515-78F4-4806-A238-90B177F0EF92} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5188504 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {32175321-8173-41D8-8B64-13A7E40F82E6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software)
Task: {015EC7EF-2A94-422B-AC4E-84CC79FFAB3E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {3B7875A7-1E6D-432A-9D55-8FE3BA509E35} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "0ddc36cd-4798-4351-8296-eeba40e894fb" --version "6.23.11010" --silent
Task: {D60A66E4-BE73-4231-A7F9-5B83B7590AB0} - System32\Tasks\CCleanerSkipUAC - Michal => C:\Program Files\CCleaner\CCleaner.exe [39118752 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {0547FCFD-EFB5-4D61-BE6C-4C3525D1C880} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [739168 2023-10-09] (Dell Inc -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {38DA197F-5AC6-48EB-9D6D-AFF7E39FD99B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6441.0{B86B8C92-7BDB-4FC1-AEEF-F7AFD0B04102} => C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
Task: {D1324AD8-D84C-4671-9127-1703FA8D92EA} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [56816 2022-12-17] (HP Inc. -> HP Inc.)
Task: {101744F1-3979-4B53-9280-2782403AF069} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [56816 2022-12-17] (HP Inc. -> HP Inc.)
Task: {C991C521-3423-4F7D-A40B-38AA7585B716} - System32\Tasks\Intel\Intel® Management and Security Status => "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {C9EF5D5A-5C60-4A57-8FC1-C8A8BEB82A50} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {2B0D3F56-980D-4C39-A3C9-8A5368625132} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {46D79621-A058-47CF-899E-F9F77494B5D8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {97759FC0-7AEC-4788-8EB9-D544E1A72D52} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {2705B1E1-5411-4231-8999-2568C964FD6D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => c:\windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {0567AAE1-EDBC-40D8-9C8A-4F5A35520B50} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28452944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {83B2CF74-59F5-4D53-ADC5-368DD9ED6052} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28452944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DDC265E-1AB4-4707-93AF-0B039F04020F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {0C991662-AAA9-4368-BA3C-59DD4F6439C7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {3DEB7CF5-AA4E-4BAA-92FC-8DECF5FB3578} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [168488 2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1EFC07F-0DD4-4EDC-9CC4-F9BA65BE3FF6} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2096064 2017-03-17] (NVIDIA Corporation -> ) -> C:\Program Files\NVIDIA Corporation\nview\/installquiet
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\05251434841425E414F513: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\75C414E4D2432353838383: [DhcpNameServer] 192.168.8.1 192.168.8.1
Edge:
=======
Edge Profile: C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default [2024-05-05]
Edge Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-02]
Edge Extension: (Edge relevant text changes) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2024-05-05]
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Konečný video downloader) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\elpdbicokgbedckgblmbhoamophfbchi [2024-03-07]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-22]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-04-27]
CHR Extension: (Chrono správce stahování) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mciiogijehkdemklbdcbfkefimifhecn [2024-03-23]
CHR Extension: (Shazam: Hledejte názvy skladeb v prohlížeči) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2024-05-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-28]
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\System Profile [2024-05-05]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Windows\system32\DellTPad\HidMonitorSvc.exe [894848 2021-05-25] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9139608 2024-04-11] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [766360 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1201560 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-28] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-11-18] (BattlEye Innovations e.K. -> )
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1085856 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14221280 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [161488 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [50376 2024-04-24] (Dell Technologies Inc. -> )
R2 DellFFDPWmiService; C:\Windows\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [156064 2022-12-09] (Dell Inc -> Dell)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2432608 2023-08-14] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S2 GoogleUpdaterInternalService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
S2 GoogleUpdaterService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
R2 hostcontrolsvc; C:\Windows\System32\HostControlService.exe [815616 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\Windows\System32\HostStorageService.exe [161280 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2022-12-17] (HP Inc. -> HP Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-02-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NVWMI; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\NVWMI\nvWmi64.exe [4512776 2024-02-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [6291440 2024-04-14] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522200 2024-05-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [160608 2023-10-09] (Dell Inc -> Dell Inc.)
R2 ushupgradesvc; C:\Windows\System32\UshUpgradeService.exe [265728 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidfiltr.sys [371312 2021-05-25] (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [20528 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [230448 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [379960 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [292920 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84536 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27760 2024-02-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28728 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [268856 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548912 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [93752 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [935992 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [695864 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [201784 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306232 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 DellInstrumentation; C:\Windows\System32\drivers\DellInstrumentation.sys [46640 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [163048 2022-07-24] (MEDIATEK INC. -> MBB)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz155; \??\C:\Users\Michal\AppData\Local\Temp\cpuz155\cpuz155_x64.sys [X] <==== ATTENTION
U4 HomeGroupProvider; no ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-05-05 11:47 - 2024-05-05 11:48 - 000000000 ___HD C:\$WinREAgent
2024-05-05 11:47 - 2024-05-05 11:47 - 000022992 _____ C:\Windows\system32\lc.dat
2024-05-05 07:40 - 2024-05-05 07:40 - 000001487 _____ C:\Users\Public\Desktop\Foxit PDF Reader.lnk
2024-05-05 07:34 - 2024-05-05 07:34 - 000000000 ____D C:\Users\Michal\Desktop\Hry
2024-05-03 21:32 - 2024-05-03 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2024-05-03 21:31 - 2024-05-03 21:31 - 000000000 ____D C:\Windows\{A598CE8A-184A-45B9-875B-F5D998E6E383}
2024-04-17 17:20 - 2024-05-05 11:39 - 000002952 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2024-04-17 17:20 - 2024-05-05 11:39 - 000000666 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2024-04-17 17:19 - 2024-05-05 11:39 - 000002988 _____ C:\Windows\system32\Tasks\CCleaner Update
2024-04-11 20:17 - 2024-04-11 20:17 - 000000000 ____D C:\Windows\system32\o2
2024-04-11 20:00 - 2024-04-11 20:00 - 000000000 ___HD C:\Windows\system32\WLANProfiles
2024-04-11 20:00 - 2024-04-11 20:00 - 000000000 ____D C:\Users\Default\AppData\Roaming\Intel
2024-04-11 19:59 - 2024-04-11 19:59 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Intel
2024-04-11 19:59 - 2024-04-11 19:59 - 000000000 ____D C:\Program Files\Common Files\Intel
2024-04-11 19:18 - 2024-04-11 19:17 - 000314776 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2024-04-11 04:58 - 2024-04-11 04:58 - 000020861 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-04-11 04:57 - 2024-04-11 04:57 - 000020861 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-05-05 11:49 - 2023-04-24 21:34 - 000000000 ____D C:\FRST
2024-05-05 11:45 - 2022-10-16 04:35 - 000000000 ____D C:\Program Files (x86)\Steam
2024-05-05 11:45 - 2022-07-28 13:49 - 000000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2024-05-05 11:43 - 2022-07-31 15:00 - 000000000 ____D C:\Program Files\CCleaner
2024-05-05 11:43 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2024-05-05 11:40 - 2022-07-28 16:42 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Excel
2024-05-05 11:39 - 2023-11-01 20:32 - 000003300 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2024-05-05 11:39 - 2023-07-29 07:31 - 000002550 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2024-05-05 11:39 - 2023-05-21 22:12 - 000002618 _____ C:\Windows\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-05-05 11:39 - 2022-07-31 15:00 - 000002254 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Michal
2024-05-05 11:39 - 2022-07-28 13:04 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-05-05 11:39 - 2022-07-28 13:04 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-05-05 11:34 - 2022-07-28 10:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-05-05 11:21 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-05-05 10:14 - 2022-07-28 10:42 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2024-05-05 09:24 - 2022-07-28 11:45 - 000762592 _____ C:\Windows\system32\perfh019.dat
2024-05-05 09:24 - 2022-07-28 11:45 - 000152284 _____ C:\Windows\system32\perfc019.dat
2024-05-05 09:24 - 2022-07-28 10:43 - 002606902 _____ C:\Windows\system32\PerfStringBackup.INI
2024-05-05 09:24 - 2019-12-07 16:43 - 000719734 _____ C:\Windows\system32\perfh005.dat
2024-05-05 09:24 - 2019-12-07 16:43 - 000145860 _____ C:\Windows\system32\perfc005.dat
2024-05-05 09:21 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-05-05 09:21 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2024-05-05 09:20 - 2023-05-21 22:12 - 000000000 ____D C:\ProgramData\NVIDIA
2024-05-05 09:20 - 2023-05-16 09:23 - 000438968 _____ C:\Windows\system32\FNTCACHE.DAT
2024-05-05 09:20 - 2022-07-28 11:51 - 000000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2024-05-05 09:20 - 2022-07-28 11:19 - 000000000 ____D C:\Intel
2024-05-05 09:20 - 2022-07-28 10:52 - 000377138 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2024-05-05 09:20 - 2022-07-28 10:40 - 000000000 ____D C:\ProgramData\Avast Software
2024-05-05 09:20 - 2022-07-28 10:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-05-05 09:20 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2024-05-05 09:19 - 2023-05-31 11:01 - 000008192 ___SH C:\DumpStack.log.tmp
2024-05-05 09:19 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Portable Devices
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2024-05-05 09:18 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2024-05-05 08:20 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2024-05-05 08:14 - 2022-07-28 10:38 - 003017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-05-05 07:49 - 2022-07-28 10:38 - 000000000 ____D C:\Users\Michal\AppData\Local\Packages
2024-05-05 07:40 - 2023-10-03 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Reader
2024-05-04 18:29 - 2022-07-28 10:34 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-05-04 13:38 - 2023-07-04 08:16 - 000000000 ____D C:\Users\Michal\AppData\Local\Spotify
2024-05-04 11:55 - 2023-11-02 08:23 - 000000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2024-05-04 11:00 - 2023-07-04 08:15 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Spotify
2024-05-03 21:33 - 2022-07-28 11:48 - 000000000 ____D C:\Windows\SystemTemp
2024-05-03 21:33 - 2022-07-28 10:48 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-05-03 21:33 - 2022-07-28 10:48 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2024-05-03 21:32 - 2023-01-22 15:40 - 000000000 ____D C:\Program Files (x86)\Dell
2024-04-30 20:35 - 2022-07-28 12:25 - 000001057 _____ C:\Users\Michal\Desktop\Sofisa_Michal_4_24.txt
2024-04-29 19:24 - 2024-02-29 20:36 - 000181040 _____ C:\Users\Michal\Desktop\Prachárna platby 04_2024.pdf
2024-04-28 14:04 - 2022-07-28 12:10 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Word
2024-04-11 20:13 - 2023-05-27 20:45 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2024-04-11 20:10 - 2023-05-21 22:33 - 000000000 ____D C:\Users\Michal\AppData\Local\D3DSCache
2024-04-11 20:00 - 2022-07-28 11:19 - 000000000 ____D C:\ProgramData\Intel
2024-04-11 19:59 - 2023-01-22 16:12 - 000000000 ____D C:\Program Files\Intel
2024-04-11 19:59 - 2022-07-28 10:37 - 000000000 ____D C:\Users\Michal
2024-04-11 19:58 - 2022-08-29 21:32 - 000000000 ____D C:\ProgramData\Package Cache
2024-04-11 19:24 - 2022-07-28 12:07 - 000000000 ____D C:\Program Files\Microsoft Office
2024-04-11 19:18 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2024-04-11 19:11 - 2023-12-13 07:42 - 000000000 ____D C:\Windows\InboxApps
2024-04-11 19:11 - 2022-07-28 11:34 - 000000000 ____D C:\Windows\en-GB
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2024-04-11 04:28 - 2022-07-28 11:13 - 000000000 ____D C:\Windows\system32\MRT
2024-04-11 04:26 - 2022-07-28 11:13 - 192651728 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Files in the root of some directories ========
2022-09-07 22:05 - 2023-02-05 23:40 - 000007597 _____ () C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by Michal (administrator) on DESKTOP-RV3QMI2 (Dell Inc. Precision 7520) (05-05-2024 11:49:33)
Running from D:\Stažené soubory\FRST64.exe
Loaded Profiles: Michal
Platform: Microsoft Windows 10 Pro Version 22H2 19045.4355 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.DCF.UA.Bradbury.API.SubAgent.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <20>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(SearchProtocolHost.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(services.exe ->) ("STMicroelectronics Srl" -> ) C:\Windows\System32\drivers\DellFFDPWmiService.exe
(services.exe ->) (@ByELDI -> @ByELDI) [File not signed] C:\Program Files\KMSpico\Service_KMS.exe
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_7ed3bacbb0a8cc67\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\NVWMI\nvWmi64.exe <2>
(services.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.124.3191.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.124.3191.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [423832 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235920 2020-04-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-04-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45380000 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [MicrosoftEdgeAutoLaunch_3D9802976EF00A6AE9398D528BE31C4A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4081192 2024-05-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\124.0.6367.119\Installer\chrmstp.exe [2024-05-03] (Google LLC -> Google LLC)
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon – zástupce.lnk [2022-07-28]
ShortcutTarget: ctfmon – zástupce.lnk -> C:\Windows\System32\ctfmon.exe (Microsoft Windows -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {799C52B6-0C92-4761-9E9A-489D8061CC8C} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
Task: {AF78A515-78F4-4806-A238-90B177F0EF92} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5188504 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {32175321-8173-41D8-8B64-13A7E40F82E6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software)
Task: {015EC7EF-2A94-422B-AC4E-84CC79FFAB3E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {3B7875A7-1E6D-432A-9D55-8FE3BA509E35} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "0ddc36cd-4798-4351-8296-eeba40e894fb" --version "6.23.11010" --silent
Task: {D60A66E4-BE73-4231-A7F9-5B83B7590AB0} - System32\Tasks\CCleanerSkipUAC - Michal => C:\Program Files\CCleaner\CCleaner.exe [39118752 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {0547FCFD-EFB5-4D61-BE6C-4C3525D1C880} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [739168 2023-10-09] (Dell Inc -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {38DA197F-5AC6-48EB-9D6D-AFF7E39FD99B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6441.0{B86B8C92-7BDB-4FC1-AEEF-F7AFD0B04102} => C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
Task: {D1324AD8-D84C-4671-9127-1703FA8D92EA} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [56816 2022-12-17] (HP Inc. -> HP Inc.)
Task: {101744F1-3979-4B53-9280-2782403AF069} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [56816 2022-12-17] (HP Inc. -> HP Inc.)
Task: {C991C521-3423-4F7D-A40B-38AA7585B716} - System32\Tasks\Intel\Intel® Management and Security Status => "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {C9EF5D5A-5C60-4A57-8FC1-C8A8BEB82A50} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {2B0D3F56-980D-4C39-A3C9-8A5368625132} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {46D79621-A058-47CF-899E-F9F77494B5D8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {97759FC0-7AEC-4788-8EB9-D544E1A72D52} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {2705B1E1-5411-4231-8999-2568C964FD6D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => c:\windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {0567AAE1-EDBC-40D8-9C8A-4F5A35520B50} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28452944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {83B2CF74-59F5-4D53-ADC5-368DD9ED6052} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28452944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DDC265E-1AB4-4707-93AF-0B039F04020F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {0C991662-AAA9-4368-BA3C-59DD4F6439C7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309944 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {3DEB7CF5-AA4E-4BAA-92FC-8DECF5FB3578} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [168488 2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1EFC07F-0DD4-4EDC-9CC4-F9BA65BE3FF6} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2096064 2017-03-17] (NVIDIA Corporation -> ) -> C:\Program Files\NVIDIA Corporation\nview\/installquiet
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\05251434841425E414F513: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\75C414E4D2432353838383: [DhcpNameServer] 192.168.8.1 192.168.8.1
Edge:
=======
Edge Profile: C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default [2024-05-05]
Edge Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-02]
Edge Extension: (Edge relevant text changes) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2024-04-11] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2024-05-05]
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Konečný video downloader) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\elpdbicokgbedckgblmbhoamophfbchi [2024-03-07]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-22]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-04-27]
CHR Extension: (Chrono správce stahování) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mciiogijehkdemklbdcbfkefimifhecn [2024-03-23]
CHR Extension: (Shazam: Hledejte názvy skladeb v prohlížeči) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2024-05-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-28]
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\System Profile [2024-05-05]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Windows\system32\DellTPad\HidMonitorSvc.exe [894848 2021-05-25] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9139608 2024-04-11] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [766360 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1201560 2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-28] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-11-18] (BattlEye Innovations e.K. -> )
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1085856 2024-04-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14221280 2024-04-11] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [161488 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2023-07-06] (Dell Inc -> Dell Technologies Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [50376 2024-04-24] (Dell Technologies Inc. -> )
R2 DellFFDPWmiService; C:\Windows\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [156064 2022-12-09] (Dell Inc -> Dell)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2432608 2023-08-14] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S2 GoogleUpdaterInternalService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
S2 GoogleUpdaterService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
R2 hostcontrolsvc; C:\Windows\System32\HostControlService.exe [815616 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\Windows\System32\HostStorageService.exe [161280 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2022-12-17] (HP Inc. -> HP Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-02-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NVWMI; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_835cfaa45c2ea2d5\NVWMI\nvWmi64.exe [4512776 2024-02-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [6291440 2024-04-14] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522200 2024-05-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [160608 2023-10-09] (Dell Inc -> Dell Inc.)
R2 ushupgradesvc; C:\Windows\System32\UshUpgradeService.exe [265728 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidfiltr.sys [371312 2021-05-25] (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [20528 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [230448 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [379960 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [292920 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84536 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27760 2024-02-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28728 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [268856 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548912 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [93752 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [935992 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [695864 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [201784 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306232 2024-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 DellInstrumentation; C:\Windows\System32\drivers\DellInstrumentation.sys [46640 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [163048 2022-07-24] (MEDIATEK INC. -> MBB)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz155; \??\C:\Users\Michal\AppData\Local\Temp\cpuz155\cpuz155_x64.sys [X] <==== ATTENTION
U4 HomeGroupProvider; no ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-05-05 11:47 - 2024-05-05 11:48 - 000000000 ___HD C:\$WinREAgent
2024-05-05 11:47 - 2024-05-05 11:47 - 000022992 _____ C:\Windows\system32\lc.dat
2024-05-05 07:40 - 2024-05-05 07:40 - 000001487 _____ C:\Users\Public\Desktop\Foxit PDF Reader.lnk
2024-05-05 07:34 - 2024-05-05 07:34 - 000000000 ____D C:\Users\Michal\Desktop\Hry
2024-05-03 21:32 - 2024-05-03 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2024-05-03 21:31 - 2024-05-03 21:31 - 000000000 ____D C:\Windows\{A598CE8A-184A-45B9-875B-F5D998E6E383}
2024-04-17 17:20 - 2024-05-05 11:39 - 000002952 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2024-04-17 17:20 - 2024-05-05 11:39 - 000000666 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2024-04-17 17:19 - 2024-05-05 11:39 - 000002988 _____ C:\Windows\system32\Tasks\CCleaner Update
2024-04-11 20:17 - 2024-04-11 20:17 - 000000000 ____D C:\Windows\system32\o2
2024-04-11 20:00 - 2024-04-11 20:00 - 000000000 ___HD C:\Windows\system32\WLANProfiles
2024-04-11 20:00 - 2024-04-11 20:00 - 000000000 ____D C:\Users\Default\AppData\Roaming\Intel
2024-04-11 19:59 - 2024-04-11 19:59 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Intel
2024-04-11 19:59 - 2024-04-11 19:59 - 000000000 ____D C:\Program Files\Common Files\Intel
2024-04-11 19:18 - 2024-04-11 19:17 - 000314776 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2024-04-11 04:58 - 2024-04-11 04:58 - 000020861 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-04-11 04:57 - 2024-04-11 04:57 - 000020861 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-05-05 11:49 - 2023-04-24 21:34 - 000000000 ____D C:\FRST
2024-05-05 11:45 - 2022-10-16 04:35 - 000000000 ____D C:\Program Files (x86)\Steam
2024-05-05 11:45 - 2022-07-28 13:49 - 000000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2024-05-05 11:43 - 2022-07-31 15:00 - 000000000 ____D C:\Program Files\CCleaner
2024-05-05 11:43 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2024-05-05 11:40 - 2022-07-28 16:42 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Excel
2024-05-05 11:39 - 2023-11-01 20:32 - 000003300 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2024-05-05 11:39 - 2023-07-29 07:31 - 000002550 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2024-05-05 11:39 - 2023-05-21 22:12 - 000002618 _____ C:\Windows\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-05-05 11:39 - 2022-07-31 15:00 - 000002254 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Michal
2024-05-05 11:39 - 2022-07-28 13:04 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-05-05 11:39 - 2022-07-28 13:04 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-05-05 11:34 - 2022-07-28 10:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-05-05 11:21 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-05-05 10:14 - 2022-07-28 10:42 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2024-05-05 09:24 - 2022-07-28 11:45 - 000762592 _____ C:\Windows\system32\perfh019.dat
2024-05-05 09:24 - 2022-07-28 11:45 - 000152284 _____ C:\Windows\system32\perfc019.dat
2024-05-05 09:24 - 2022-07-28 10:43 - 002606902 _____ C:\Windows\system32\PerfStringBackup.INI
2024-05-05 09:24 - 2019-12-07 16:43 - 000719734 _____ C:\Windows\system32\perfh005.dat
2024-05-05 09:24 - 2019-12-07 16:43 - 000145860 _____ C:\Windows\system32\perfc005.dat
2024-05-05 09:21 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-05-05 09:21 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2024-05-05 09:20 - 2023-05-21 22:12 - 000000000 ____D C:\ProgramData\NVIDIA
2024-05-05 09:20 - 2023-05-16 09:23 - 000438968 _____ C:\Windows\system32\FNTCACHE.DAT
2024-05-05 09:20 - 2022-07-28 11:51 - 000000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2024-05-05 09:20 - 2022-07-28 11:19 - 000000000 ____D C:\Intel
2024-05-05 09:20 - 2022-07-28 10:52 - 000377138 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2024-05-05 09:20 - 2022-07-28 10:40 - 000000000 ____D C:\ProgramData\Avast Software
2024-05-05 09:20 - 2022-07-28 10:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-05-05 09:20 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2024-05-05 09:19 - 2023-05-31 11:01 - 000008192 ___SH C:\DumpStack.log.tmp
2024-05-05 09:19 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Portable Devices
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2024-05-05 09:18 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2024-05-05 09:18 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2024-05-05 09:18 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2024-05-05 08:20 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2024-05-05 08:14 - 2022-07-28 10:38 - 003017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-05-05 07:49 - 2022-07-28 10:38 - 000000000 ____D C:\Users\Michal\AppData\Local\Packages
2024-05-05 07:40 - 2023-10-03 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Reader
2024-05-04 18:29 - 2022-07-28 10:34 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-05-04 13:38 - 2023-07-04 08:16 - 000000000 ____D C:\Users\Michal\AppData\Local\Spotify
2024-05-04 11:55 - 2023-11-02 08:23 - 000000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2024-05-04 11:00 - 2023-07-04 08:15 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Spotify
2024-05-03 21:33 - 2022-07-28 11:48 - 000000000 ____D C:\Windows\SystemTemp
2024-05-03 21:33 - 2022-07-28 10:48 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-05-03 21:33 - 2022-07-28 10:48 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2024-05-03 21:32 - 2023-01-22 15:40 - 000000000 ____D C:\Program Files (x86)\Dell
2024-04-30 20:35 - 2022-07-28 12:25 - 000001057 _____ C:\Users\Michal\Desktop\Sofisa_Michal_4_24.txt
2024-04-29 19:24 - 2024-02-29 20:36 - 000181040 _____ C:\Users\Michal\Desktop\Prachárna platby 04_2024.pdf
2024-04-28 14:04 - 2022-07-28 12:10 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Word
2024-04-11 20:13 - 2023-05-27 20:45 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2024-04-11 20:10 - 2023-05-21 22:33 - 000000000 ____D C:\Users\Michal\AppData\Local\D3DSCache
2024-04-11 20:00 - 2022-07-28 11:19 - 000000000 ____D C:\ProgramData\Intel
2024-04-11 19:59 - 2023-01-22 16:12 - 000000000 ____D C:\Program Files\Intel
2024-04-11 19:59 - 2022-07-28 10:37 - 000000000 ____D C:\Users\Michal
2024-04-11 19:58 - 2022-08-29 21:32 - 000000000 ____D C:\ProgramData\Package Cache
2024-04-11 19:24 - 2022-07-28 12:07 - 000000000 ____D C:\Program Files\Microsoft Office
2024-04-11 19:18 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2024-04-11 19:11 - 2023-12-13 07:42 - 000000000 ____D C:\Windows\InboxApps
2024-04-11 19:11 - 2022-07-28 11:34 - 000000000 ____D C:\Windows\en-GB
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2024-04-11 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2024-04-11 04:28 - 2022-07-28 11:13 - 000000000 ____D C:\Windows\system32\MRT
2024-04-11 04:26 - 2022-07-28 11:13 - 192651728 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Files in the root of some directories ========
2022-09-07 22:05 - 2023-02-05 23:40 - 000007597 _____ () C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================