Děkuji

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024
Ran by patma (administrator) on JAUIN (LENOVO 82K2) (26-10-2024 15:14:23)
Running from C:\Users\patma\OneDrive\Plocha\FRST64.exe
Loaded Profiles: patma
Platform: Microsoft Windows 11 Home Version 23H2 22631.4391 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(LenovoGamingSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.24900.130.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\130.0.2849.52\msedgewebview2.exe <7>
(drivers\lenovo\UDC\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\24.2.1.44\x64\AppProvisioningPlugin.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0391129.inf_amd64_7a819ad751ab7622\B390488\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0391129.inf_amd64_7a819ad751ab7622\B390488\atieclxx.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <37>
(explorer.exe ->) (Logitech -> Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(NahimicService.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\System32\NahimicAPO4Volume.exe
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0391129.inf_amd64_7a819ad751ab7622\B390488\atiesrxx.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\lenovo\UDC\Service\UDClientService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9366beb5d0043df3\RtkAudUService64.exe <2>
(services.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\System32\NahimicService.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24092.24.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(SteelSeries France SASU -> A-Volute) C:\Users\patma\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2410.1001.55.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.1.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.4383_none_e957b12c42d242a6\TiWorker.exe
(svchost.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\System32\NahimicSvc64.exe
(svchost.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9366beb5d0043df3\RtkAudUService64.exe [1987544 2024-08-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [MicrosoftEdgeAutoLaunch_6F7934B3B10DAE215E564D394F4E4F00] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [3865656 2024-10-17] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2239248 2024-10-26] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [utweb] => C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe [6425608 2024-08-06] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4406632 2024-09-17] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [484408 2024-09-05] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.70\Installer\chrmstp.exe [2024-10-26] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {ABC1D5CD-C588-4E12-89C1-7D4271C7F01C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{857193E6-19A9-4F4D-9979-04176894A632} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-10-14] (Google LLC -> Google LLC)
Task: {4C7A55B5-5DB1-4C38-BB7B-6D6080A90EB5} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {F4E3809A-1163-48E5-B373-FC82697C8D9A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {6028C18D-E863-4E74-8B8F-0F0E335B81D3} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\05ebb3b6-9287-47b1-89ee-fc11d1d0c0a9 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {FD7CEB7B-329E-42E3-B8C5-0A84296BCC0E} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\8bab62df-ad7f-4e3f-a3ab-574cf75d015a => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {65A0DF7A-3C90-454E-8E7B-B9045547DF97} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\db4d13ef-19eb-4b09-98d6-1cd7c0a800e8 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {C899B7FD-5710-47E4-BD91-F574E5102196} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\fa488470-1f12-4882-8c55-b8467dc8955b => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {1B9FD1DD-FA6F-4007-8801-B6DBFE3DED93} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [3556248 2024-08-27] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task
Task: {F15BAD51-3E20-41E2-8D77-15216D885262} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [2357656 2024-08-27] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/QuarterlyLaunch
Task: {EA8CEEC1-51C3-48F1-B980-7667EAC5BD21} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [2357656 2024-08-27] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData)
Task: {4D3AFDB3-7A1A-4D48-B405-32D520B90033} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210
Task: {47C6599A-7B81-49E8-96CD-D37FD4143E0B} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\Windows\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [188656 2024-04-07] (Lenovo -> Lenovo Group Ltd.)
Task: {4539AF14-4097-4B23-B3A2-02E89F90CBB7} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {0DD4DFDB-C4F7-4B87-9B3D-9A81F0CABDE7} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {12D01932-B136-4092-A5BA-EDFF9A4ADC3C} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {16D894F6-A616-4BDA-B973-AA30DEA3D670} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {BCD9E92E-3942-4A63-816C-14486C5A464B} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {3B90A1C5-EEB6-4E6F-8A4D-53882F887798} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {269571B7-8FDA-4C46-B863-7039BE7DE5AF} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {A8B5A29C-7FEF-4877-9E9E-8BC12C45BE06} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {0307DA08-898C-4993-B9AD-F7C317CB1EC7} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {910BFD73-C3D8-469A-9594-8ABDC5E0CBD3} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {624BA73F-EC64-458C-9E0C-2F6015C7F13C} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {2A36EC1A-D1CD-49E9-B735-4C734C1C2293} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.174\ScheduleEventAction.exe [17816 2024-08-30] (Lenovo -> Lenovo)
Task: {D1A9FD94-F445-492C-84B8-343F215922D1} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {68EF8442-A580-4D02-9657-14A47A95D8CF} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\uninstall.exe [340968 2024-09-12] (Lenovo -> Lenovo)
Task: {6BAFB5ED-67E4-4FEE-944A-2E6716776D28} - System32\Tasks\McAfee\DAD.WPS.Execute.Updates => "C:\Program Files\McAfee\WPS\1.7.209.1\dad\mc-dad.exe" (No File)
Task: {4E1445FA-3191-4E73-9C2B-8CDE31C53F60} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {3210794C-7982-4C4B-891F-AEC31B30C0D9} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {6EB92726-4DAE-452A-A840-FB57FFA4248B} - System32\Tasks\McAfee\WPS\McAfee Message Check => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {10444018-179C-467C-9D97-42DE781ED64C} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {E16AE994-5936-4608-8AD1-46A14BB3F0FD} - System32\Tasks\McAfee\WPS\McAfee restart of PC => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {295571EC-A19B-4279-AA18-7F2C95B627B5} - System32\Tasks\McAfee\WPS\McAfee Scheduled AV Scan => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {73A19094-3071-412B-9735-6269F2446264} - System32\Tasks\McAfee\WPS\McAfee Scheduled Tracker Remover => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {DC1271E1-43BA-483E-A1D7-FEF6CE4B60F4} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {D944ABB8-101D-4671-AA46-ADE0F75B3683} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28616920 2024-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4BB0516-154F-44D0-ABCA-2B705E2BA05E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28616920 2024-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {695D0F5E-1378-4B7F-9EBD-A7038AC874B0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-10-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {0133B6F3-7116-4358-B5B1-10287E4A9785} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-10-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1A3A847-0E07-4769-8AAF-762DC20C93AC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [187328 2024-10-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {03763C3B-BBA1-4E1D-BC1E-6008620A1A38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2EC78E3F-7A22-47C8-A7FF-BAB0BED5EC6A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {689D6809-956F-4EF2-8D96-E4638C14237B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {53E783F7-198A-4461-869B-9ADB9FDB4BAC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {76CCA1D1-78DB-405D-873B-EA01659A4DD8} - System32\Tasks\NahimicTask32 => C:\Windows\System32\..\SysWOW64\NahimicSvc32.exe [1118128 ] (SteelSeries France SASU -> Nahimic)
Task: {4DED45E3-F42A-4147-B53F-FDAEA5473C0D} - System32\Tasks\NahimicTask64 => C:\Windows\System32\.\NahimicSvc64.exe [1438128 ] (SteelSeries France SASU -> Nahimic)
Task: {ABC97C61-1EB6-4B8E-A75F-48A0A2E0751A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {186D0435-924D-4F7C-9D6D-36AEF9B90690} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-02-28] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {08185764-4933-44F9-8F6F-B95DC480941B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {7D295A04-6DD6-4EB4-8702-7C863AE8A043} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {33C2BA7F-382B-498F-B2D0-C466D7760E34} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A533BBED-6BAE-47E4-8251-7456373E2B68} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {092BAEFF-D3DD-4C3A-8E68-C4B5C79D06F3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F8711249-5397-4580-8112-3FDE6F656382} - System32\Tasks\Opera scheduled assistant Autoupdate 1723969481 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe -> --scheduledtask --productiscomponent --bypasslauncher --installdir="C:\Users\patma\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {2CC7334D-684B-4630-85B8-117376191234} - System32\Tasks\Opera scheduled Autoupdate 1723969481 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (No File)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.1
Tcpip\..\Interfaces\{8dcf7671-feac-4597-89b4-58ec2334258a}: [DhcpNameServer] 192.168.0.1 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-26]
Edge Notifications: Default -> hxxps://www.msn.com; hxxps://www.tiktok.com
Edge Extension: (Dokumenty Google offline) - C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-08-17]
Edge Extension: (Edge relevant text changes) - C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-08-17]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-08-24] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default [2024-10-26]
CHR Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com; hxxps://www.tiktok.com; hxxps://www.youtube.com
CHR Extension: (Dokumenty Google offline) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-04]
CHR Extension: (SPOT Survey Blocker) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\kolklnebpigejnjdnddogpomkanjpmka [2024-08-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-08-18]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2573448 2024-10-10] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13861072 2024-10-14] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4939320 2024-09-05] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
R2 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoFnAndFunctionKeys; C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe [178656 2024-08-21] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe [34256 2024-09-12] (Lenovo -> Lenovo)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9319296 2024-10-26] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-09-07] (Malwarebytes Inc. -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [923064 2024-10-26] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NahimicService; C:\Windows\system32\NahimicService.exe [1910192 2024-08-20] (SteelSeries France SASU -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\Display.NvContainer\NVDisplay.Container.exe [1274904 2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
R2 UDCService; C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72432 2024-04-07] (Lenovo -> Lenovo Group Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-26] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [35344 2022-09-09] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0391129.inf_amd64_7a819ad751ab7622\B390488\amdkmdag.sys [94634376 2023-04-21] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2023-05-26] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2024-09-05] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2024-09-05] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 FBNetFilter; C:\Windows\System32\drivers\FBNetFlt.sys [60784 2023-12-06] (Lenovo -> Lenovo)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-09-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2024-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 NahimicBTLink; C:\Windows\System32\drivers\NahimicBTLink.sys [95856 2024-08-20] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 Nahimic_Mirroring; C:\Windows\System32\drivers\Nahimic_Mirroring.sys [95896 2024-08-20] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-13] (Nvidia Corporation -> NVIDIA Corporation)
R3 nvpcf; C:\Windows\System32\drivers\nvpcf.sys [246272 2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_3037ec512dc36c3a\rt68cx21x64.sys [656328 2023-02-15] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
R1 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22104 2024-10-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [606624 2024-10-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-26] (Microsoft Windows -> Microsoft Corporation)
S3 atvi-randgrid_msstore; \??\C:\XboxGames\Call of Duty\Content\Randgrid.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-10-26 15:14 - 2024-10-26 15:14 - 002397696 _____ (Farbar) C:\Users\patma\OneDrive\Plocha\FRST64.exe
2024-10-26 15:14 - 2024-10-26 15:14 - 000031664 _____ C:\Users\patma\OneDrive\Plocha\FRST.txt
2024-10-26 12:52 - 2024-10-26 12:52 - 000692356 _____ C:\Windows\system32\perfh005.dat
2024-10-26 12:52 - 2024-10-26 12:52 - 000143226 _____ C:\Windows\system32\perfc005.dat
2024-10-26 09:43 - 2024-10-26 09:43 - 000026650 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-10-26 09:42 - 2024-10-26 09:42 - 000026650 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-10-15 15:07 - 2024-10-15 15:07 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-10-10 09:10 - 2024-10-10 09:10 - 000000000 ____D C:\Program Files (x86)\Activision
2024-10-10 08:33 - 2024-10-10 08:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ
2024-10-10 08:30 - 2024-10-10 08:30 - 000000000 ____D C:\Program Files (x86)\Mr DJ
2024-10-10 08:28 - 2024-10-10 08:30 - 000000000 ____D C:\Windows\SysWOW64\directx
2024-10-10 08:28 - 2024-10-10 08:28 - 000000000 ___HD C:\Windows\msdownld.tmp
2024-09-28 08:23 - 2024-09-28 08:23 - 000494135 _____ C:\Users\patma\OneDrive\Plocha\8264052-HS-20240303-0.pdf
2024-09-28 08:23 - 2024-09-28 08:23 - 000465408 _____ C:\Users\patma\OneDrive\Plocha\8264052-PA-20240303-0.pdf
2024-09-27 14:50 - 2024-09-11 18:02 - 011630632 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlane.sys
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-10-26 15:14 - 2024-08-31 11:28 - 000000000 ____D C:\FRST
2024-10-26 15:14 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp
2024-10-26 15:05 - 2024-09-07 10:59 - 000000000 ____D C:\Users\patma\AppData\Local\Malwarebytes
2024-10-26 15:05 - 2024-08-31 13:39 - 000000000 ____D C:\Program Files (x86)\Steam
2024-10-26 15:05 - 2024-08-25 15:23 - 000000000 ____D C:\Users\patma\AppData\Roaming\uTorrent Web
2024-10-26 15:05 - 2024-08-18 10:26 - 000000000 ____D C:\Users\patma\AppData\Local\CrashDumps
2024-10-26 14:47 - 2022-05-25 21:05 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-10-26 13:26 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness
2024-10-26 13:02 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-10-26 12:52 - 2023-11-21 22:10 - 001629502 _____ C:\Windows\system32\PerfStringBackup.INI
2024-10-26 12:52 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF
2024-10-26 12:45 - 2024-08-18 10:35 - 000000000 ____D C:\Users\patma\AppData\Local\BitTorrentHelper
2024-10-26 12:45 - 2024-08-18 07:02 - 000003108 _____ C:\Windows\system32\Tasks\NahimicTask32
2024-10-26 12:45 - 2024-08-18 07:02 - 000003088 _____ C:\Windows\system32\Tasks\NahimicTask64
2024-10-26 12:45 - 2024-08-17 17:35 - 000000000 ___RD C:\Users\patma\OneDrive
2024-10-26 12:45 - 2023-11-21 22:13 - 000000000 ____D C:\ProgramData\NVIDIA
2024-10-26 12:45 - 2022-05-25 21:05 - 000012288 ___SH C:\DumpStack.log.tmp
2024-10-26 12:45 - 2022-05-25 21:05 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-10-26 12:45 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState
2024-10-26 12:45 - 2022-05-07 07:17 - 001048576 _____ C:\Windows\system32\config\BBI
2024-10-26 12:42 - 2024-08-17 17:34 - 000000000 ____D C:\Users\patma\AppData\Local\Packages
2024-10-26 12:05 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-10-26 11:51 - 2024-08-17 17:34 - 000000000 ____D C:\Users\patma\AppData\Local\D3DSCache
2024-10-26 11:51 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-10-26 11:50 - 2022-05-25 21:05 - 000474912 _____ C:\Windows\system32\FNTCACHE.DAT
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ___SD C:\Windows\system32\UNP
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\PrintDialog
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\ShellExperiences
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Sgrm
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\setup
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\DiagTrack
2024-10-26 11:49 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr
2024-10-26 11:49 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\servicing
2024-10-26 09:46 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp
2024-10-26 08:33 - 2022-05-25 21:05 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-10-26 08:23 - 2024-08-17 17:35 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-211460565-2364033777-153572910-1001
2024-10-26 08:23 - 2024-08-17 17:35 - 000003356 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-211460565-2364033777-153572910-1001
2024-10-26 08:23 - 2024-08-17 17:35 - 000002388 _____ C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-10-26 08:13 - 2024-08-18 07:10 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-10-19 21:20 - 2023-11-21 22:05 - 000000000 ____D C:\Program Files\Microsoft Office
2024-10-19 21:20 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-10-19 16:58 - 2022-05-25 21:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-10-12 14:09 - 2024-08-17 17:27 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2024-10-12 14:09 - 2022-05-07 08:10 - 000000000 ____D C:\Windows\system32\OpenSSH
2024-10-10 09:46 - 2024-08-20 15:01 - 000000000 ____D C:\Windows\system32\MRT
2024-10-10 09:45 - 2024-08-20 15:01 - 201324920 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-10-10 08:26 - 2024-09-07 08:59 - 000000000 ____D C:\Users\patma\AppData\Local\Battle.net
2024-10-10 08:26 - 2024-09-07 08:58 - 000000000 ____D C:\Program Files (x86)\Battle.net
2024-10-10 08:02 - 2022-05-25 21:06 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-10-10 08:02 - 2022-05-25 21:06 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-10-08 11:21 - 2024-08-18 12:43 - 000000000 ____D C:\XboxGames
2024-10-08 11:21 - 2022-05-25 21:06 - 000000000 ____D C:\ProgramData\Packages
2024-10-05 23:14 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\LiveKernelReports
2024-10-04 16:05 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\AppLocker
2024-09-29 12:02 - 2024-08-17 17:35 - 000000000 ____D C:\Users\patma\AppData\Local\PlaceholderTileLogoFolder
2024-09-27 14:50 - 2023-11-21 22:19 - 000000000 ____D C:\Windows\TempInst
2024-09-27 14:43 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemApps
2024-09-27 14:43 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning
2024-09-27 14:43 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\IME
2024-09-27 14:26 - 2022-05-25 21:08 - 003213312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 002819648 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 000775720 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 000243264 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 000210472 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 000153152 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2024-09-27 14:09 - 2024-08-18 12:43 - 000124480 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2024-09-27 14:09 - 2024-08-18 12:43 - 000075304 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================