Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-06-2022
Ran by Marian (administrator) on DESKTOP-2SGA964 (HP 870-287nc) (30-06-2022 09:45:32)
Running from C:\Users\Marian\Desktop
Loaded Profiles: Marian
Platform: Microsoft Windows 10 Home Version 21H2 19044.1806 (X64) Language: Čeština (Česká republika) -> Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(explorer.exe ->) (Glenn Stuart Delahoy -> Glenn Delahoy) C:\Users\Marian\Desktop\SDIO_1.12.5.745\SDIO_x64_R745.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <30>
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.28001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(svchost.exe ->) (HP Inc. -> ) C:\Program Files (x86)\HP\HP JUMPSTART LAUNCH\HPJumpStartLaunch.exe
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(svchost.exe ->) (TechPowerUp LLC -> uWebb Software) D:\Games\Throttlestop\ThrottleStop.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [707624 2018-08-08] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HPMSGSVC] => C:\Program Files (x86)\HP\HPPhoenixCtrl\HPMSGSVC.exe [502032 2016-06-16] (Hewlett-Packard Company -> HP Development Company, L.P.)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\Run: [MicrosoftEdgeAutoLaunch_DE496D050D9179B255934D95785E0207] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-06-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe  --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --flag-switches-begin --flag-switches-end --enable-audio-service-s (the data entry has 102 more characters). (No File)
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {1d48d100-8dd2-11ec-9914-10050142c29b} - "O:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {321a68de-8a36-11ec-9914-10050142c29b} - "N:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {37e24095-883b-11ec-9912-10050142c29b} - "M:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {37e240f6-883b-11ec-9912-10050142c29b} - "M:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {37e2411b-883b-11ec-9912-10050142c29b} - "M:\setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {37e24171-883b-11ec-9912-10050142c29b} - "N:\startupcheck.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7a2a3d6b-5742-11ec-98fe-10050142c29b} - "L:\setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aad9f61-8056-11ec-990f-10050142c29b} - "L:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aad9fa8-8056-11ec-990f-10050142c29b} - "L:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aad9fd5-8056-11ec-990f-10050142c29b} - "L:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada10d-8056-11ec-990f-10050142c29b} - "L:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada13c-8056-11ec-990f-10050142c29b} - "L:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada140-8056-11ec-990f-10050142c29b} - "L:\autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada1b4-8056-11ec-990f-10050142c29b} - "L:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada1ea-8056-11ec-990f-10050142c29b} - "L:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {7aada324-8056-11ec-990f-10050142c29b} - "L:\Setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {8d922680-5687-11eb-9839-10050142c29b} - "L:\Setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {91a502da-7ba1-11ec-990e-10050142c29b} - "L:\setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {91a50344-7ba1-11ec-990e-10050142c29b} - "L:\setup.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {c55a001b-844a-11ec-9912-10050142c29b} - "M:\Autorun.exe" 
HKU\S-1-5-21-963594185-2070104337-283957109-1001\...\MountPoints2: {e2c47069-e4a8-11eb-98bb-10050142c29b} - "M:\fh2_setup.exe" 
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\103.0.5060.66\Installer\chrmstp.exe [2022-06-27] (Google LLC -> Google LLC)
Startup: C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel® Processor Identification Utility.lnk [2021-12-04]
ShortcutTarget: Intel® Processor Identification Utility.lnk -> C:\Program Files (x86)\Intel Corporation\Intel Processor Identification Utility\ProcID.exe (Intel Corporation -> Intel Corporation)
Startup: C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2021-08-26]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
BootExecute: autocheck autochk /p \??\C:autocheck autochk * 
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-963594185-2070104337-283957109-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {079831B1-1D53-4210-ABB2-6F034685DFCB} - System32\Tasks\Throttlestop => D:\Games\Throttlestop\ThrottleStop.exe [3923456 2021-08-17] (TechPowerUp LLC -> uWebb Software)
Task: {0B6FBCB7-7D90-49B5-A724-C8E8730D8374} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0E833782-107E-47DA-950A-31DE249B3DFA} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {2804C9F7-9D0D-4DB7-8250-31F50B9958C0} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => cmd /c start hpdiags:
Task: {444D333F-6D44-4CE7-9C6D-D60666A6BB50} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => cmd /c start hpdiags://SmartCheckError
Task: {47AEC9A5-747E-492A-85D8-E4C11531E1AB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => cmd /c start hpdiags://LaunchUI
Task: {483A93AD-1D55-4862-AEDC-159ACB48317A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => cmd /c start hpdiags://BHM2
Task: {4A661CEA-E4DF-43EC-B349-9A931F94088D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {590CCCA8-D473-4D26-AF5C-5F899BC9493B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-09-19] (Google LLC -> Google LLC)
Task: {59ADCA4E-8AB9-46C8-BD31-4E7CED609709} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3077448 2021-12-13] (Intel Corporation -> Intel Corporation)
Task: {673B0575-3ADA-404B-834D-3F077AB96E47} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => cmd /c start hpdiags://BCF
Task: {80170EC8-B16E-4208-A49D-7B8B799FBAC6} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102808 2021-12-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {94D2D6D3-7FF0-4B84-BDA6-4A2FCCA9D791} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {99C31FFC-862E-4FDE-8FAD-5728A72C4443} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3077448 2021-12-13] (Intel Corporation -> Intel Corporation)
Task: {99DC63EC-F4B9-435D-9E27-7F0ABA17EF93} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9B7B4991-9A30-4AEB-BB05-40690D7530AB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4F9B4C1-CEF3-47E4-A728-A95FDB009FD3} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => cmd /c start hpdiags://SmartCheckTest
Task: {AB90330B-EB12-4C9C-A922-F93F710A094F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {AD0FFF20-E049-41C0-A55E-CCE1C3B6C2E0} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [459680 2017-07-28] (HP Inc. -> )
Task: {C009F540-C7D8-4991-814F-37BAC6EEB1D9} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [688560 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {C6D3EAA6-5E06-48D6-BE93-6D517D201A90} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {CBBC75FB-729B-443C-B025-D60405E36C66} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => cmd /c start hpdiags://BatteryStatusError
Task: {E0B44CFF-65DF-4667-8672-F57A627B697A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => cmd /c start hpdiags://ABO
Task: {E2AC368A-CE9C-41C3-A037-6B240D59CFE1} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {E8D900B8-6ADD-42AB-8A96-8695C8BC1F7D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-09-19] (Google LLC -> Google LLC)
Task: {EBBFFA19-17C9-4B95-8FFF-F3D1ABF87E20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EDD39811-1B2B-4B7E-BEA5-944659F247F4} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => cmd /c start hpdiags://BHM1
Task: {F2AE81CD-8944-4CEA-9BA5-13F16987F219} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {F7E998DA-15B6-4E71-B608-E4BB1ACC7689} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {FC3A0669-AE58-44B4-8EBF-1BF9700F230F} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 80.242.44.85 80.242.44.39 8.8.8.8
Tcpip\..\Interfaces\{db3bfbef-48c8-4665-bf02-8ad739c0730a}: [DhcpNameServer] 80.242.44.85 80.242.44.39 8.8.8.8

Edge: 
=======
DownloadDir: C:\Users\Marian\Downloads
Edge Notifications: HKU\S-1-5-21-963594185-2070104337-283957109-1001 -> hxxps://forums.codemasters.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Marian\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-30]
Edge HomePage: Default -> hxxp://www.google.com/
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Marian\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2022-06-04]
Edge Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\Marian\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2022-06-30]
Edge Profile: C:\Users\Marian\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2022-06-08]

FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> D:\Games\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-963594185-2070104337-283957109-1001: ubisoft.com/uplaypc -> D:\Games\H.A.W.X. 2\orbit\npuplaypc.dll [No File]

Chrome: 
=======
CHR Profile: C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default [2022-06-30]
CHR Notifications: Default -> hxxps://forums.flightsimulator.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR Session Restore: Default -> is enabled.
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-06-01]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-16]
CHR Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-05-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8912272 2021-11-29] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988384 2022-06-17] (Microsoft Corporation -> Microsoft Corporation)
S4 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803952 2021-07-27] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S4 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029472 2021-10-22] (Epic Games Inc. -> Epic Games, Inc.)
S3 GalaxyClientService; D:\Games\GOG Galaxy\GalaxyClientService.exe [1959776 2022-01-24] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6484832 2021-08-01] (GOG Sp. z o.o. -> GOG.com)
S2 GameInput Service; C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe [75240 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
S4 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.)
S4 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [733200 2021-04-19] (HP Inc. -> HP Inc.)
S4 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [731152 2021-04-19] (HP Inc. -> HP Inc.)
S4 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-07-28] (HP Inc. -> HP Inc.)
S4 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [731152 2021-04-19] (HP Inc. -> HP Inc.)
S4 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [732176 2021-04-19] (HP Inc. -> HP Inc.)
S4 IRMTService; C:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe [182896 2016-10-13] (Intel(R) RMT -> Intel Corporation)
S3 MBAMService; D:\Games\Anti-Malware\mbamservice.exe [4470736 2017-07-12] (Malwarebytes Corporation -> Malwarebytes)
S4 Origin Client Service; D:\Games\Origin\OriginClientService.exe [2575624 2022-06-26] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; D:\Games\Origin\OriginWebHelperService.exe [3494672 2022-06-26] (Electronic Arts, Inc. -> Electronic Arts)
S4 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2021-12-11] (Even Balance, Inc. -> )
S3 Rockstar Service; D:\Games\Launcher\RockstarService.exe [1908688 2022-06-26] (Rockstar Games, Inc. -> Rockstar Games)
S4 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [10752 2018-01-10] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 WMIRegistrationService; C:\WINDOWS\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_fa7d111a720fa1f7\WMIRegistrationService.exe [144008 2022-02-13] (Intel Corporation -> Intel Corporation)
S3 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_48e9f4d4e0a42fa1\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_48e9f4d4e0a42fa1\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 fiddrv64; no ImagePath
R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [34720 2016-10-13] (Intel Corporation -> Intel Corporation)
R3 MpKsl5eb79f18; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{93E1B8A8-7183-402C-AD9B-A9153925C46C}\MpKslDrv.sys [141568 2022-06-30] (Microsoft Windows -> Microsoft Corporation)
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [27744 2021-03-09] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
R1 steamxbox; C:\WINDOWS\System32\drivers\steamxbox.sys [232792 2021-09-05] (Valve Corp. -> Valve Corporation)
R3 ThrottleStop; C:\Users\Marian\AppData\Local\Temp\ThrottleStop.sys [50216 2022-06-30] (TechPowerUp LLC -> ) <==== ATTENTION
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [611728 2021-01-30] (Bitdefender SRL -> Bitdefender)
R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [165744 2020-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
S4 46e5390a7dd1eb89; \??\C:\Users\Marian\AppData\Local\Temp\62d6e9a1.sys [X] <==== ATTENTION
S4 46e53fdd695f6089; \??\C:\Users\Marian\AppData\Local\Temp\1aef1d64ad6.sys [X] <==== ATTENTION
S4 46ea47aa1b835f89; \??\C:\Users\Marian\AppData\Local\Temp\11f2860b7.sys [X] <==== ATTENTION
S4 bomebus; \SystemRoot\System32\drivers\bomebus.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-30 09:45 - 2022-06-30 09:45 - 000023353 _____ C:\Users\Marian\Desktop\FRST.txt
2022-06-30 09:45 - 2022-06-30 09:45 - 000000000 ____D C:\FRST
2022-06-30 09:43 - 2022-06-30 09:43 - 002369024 _____ (Farbar) C:\Users\Marian\Desktop\FRST64.exe
2022-06-30 09:02 - 2022-06-30 09:02 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-06-30 09:02 - 2022-06-30 09:02 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2022-06-30 09:02 - 2022-06-30 09:02 - 000011801 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-06-30 08:58 - 2022-06-30 08:58 - 000000000 ___HD C:\$WinREAgent
2022-06-29 11:27 - 2022-06-29 11:27 - 000000000 ____D C:\Users\Marian\AppData\Local\D3DSCache
2022-06-29 11:13 - 2022-06-29 11:18 - 000000000 ____D C:\Users\Marian\AppData\Local\NVIDIA
2022-06-29 11:12 - 2022-06-30 00:16 - 000000000 ____D C:\ProgramData\NVIDIA
2022-06-29 11:12 - 2022-06-24 05:05 - 000129032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2022-06-28 20:17 - 2022-06-29 15:25 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2022-06-28 20:17 - 2022-06-29 15:21 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-06-28 20:16 - 2022-06-24 05:05 - 000041984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2022-06-28 20:15 - 2022-06-29 15:21 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-06-28 20:15 - 2022-06-24 17:26 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-06-28 20:15 - 2022-06-24 17:26 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-06-28 20:15 - 2022-06-24 17:26 - 001478384 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-06-28 20:15 - 2022-06-24 17:26 - 001478384 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-06-28 20:15 - 2022-06-24 17:26 - 001432304 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-06-28 20:15 - 2022-06-24 17:26 - 001432304 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-06-28 20:15 - 2022-06-24 17:26 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-06-28 20:15 - 2022-06-24 17:26 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-06-28 20:15 - 2022-06-24 17:23 - 000866344 _____ C:\WINDOWS\system32\nvofapi64.dll
2022-06-28 20:15 - 2022-06-24 17:23 - 000687592 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2022-06-28 20:15 - 2022-06-24 17:22 - 043718120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2022-06-28 20:15 - 2022-06-24 17:22 - 001537064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2022-06-28 20:15 - 2022-06-24 17:22 - 001182696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2022-06-28 20:15 - 2022-06-24 17:22 - 000771560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2022-06-28 20:15 - 2022-06-24 17:22 - 000715304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2022-06-28 20:15 - 2022-06-24 17:21 - 002127864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2022-06-28 20:15 - 2022-06-24 17:21 - 001608232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2022-06-28 20:15 - 2022-06-24 17:21 - 001059904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2022-06-28 20:15 - 2022-06-24 17:21 - 000845304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2022-06-28 20:15 - 2022-06-24 17:21 - 000456168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2022-06-28 20:15 - 2022-06-24 17:20 - 010270256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2022-06-28 20:15 - 2022-06-24 17:20 - 008804400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2022-06-28 20:15 - 2022-06-24 17:20 - 005734392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2022-06-28 20:15 - 2022-06-24 17:20 - 005363248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2022-06-28 20:15 - 2022-06-24 17:20 - 003067440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2022-06-28 20:15 - 2022-06-24 16:40 - 007483904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2022-06-28 20:15 - 2022-06-24 16:40 - 006366896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2022-06-28 20:15 - 2022-06-24 05:05 - 000093241 _____ C:\WINDOWS\system32\nvinfo.pb
2022-06-28 19:54 - 2022-06-28 19:54 - 001472552 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-06-28 19:54 - 2022-06-28 19:54 - 001213416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-06-28 19:54 - 2022-06-28 19:54 - 000853568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2022-06-26 14:49 - 2022-06-26 14:49 - 000000207 _____ C:\Users\Marian\Desktop\Fallout 3 - Game of the Year Edition.url
2022-06-26 12:39 - 2022-06-26 12:39 - 000000000 ____D C:\Users\Marian\.QtWebEngineProcess
2022-06-26 12:39 - 2022-06-26 12:39 - 000000000 ____D C:\Users\Marian\.Origin
2022-06-24 22:37 - 2022-06-24 22:51 - 000000000 ____D C:\Users\Marian\Documents\Automobilista 2 Demo
2022-06-22 23:13 - 2022-06-22 23:13 - 000000000 ____D C:\Users\Marian\AppData\Local\DBG
2022-06-22 23:13 - 2021-03-09 15:07 - 000027744 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2022-06-22 12:30 - 2022-06-22 12:30 - 003611536 _____ (TechPowerUp) C:\Users\Marian\Desktop\NVCleanstall_1.13.0.exe
2022-06-17 22:40 - 2022-06-17 22:40 - 001373784 _____ (Igor Pavlov) C:\Users\Marian\Desktop\DDU v18.0.5.1.exe
2022-06-16 23:17 - 2022-06-16 23:17 - 000000000 _____ C:\WINDOWS\system32\sfc
2022-06-16 21:31 - 2022-06-29 15:25 - 000000000 ____D C:\WINDOWS\system32\lxss
2022-06-16 21:31 - 2022-06-29 15:25 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-06-15 15:22 - 2022-03-18 11:15 - 008756328 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw04.sys
2022-06-15 15:22 - 2022-03-18 11:15 - 001626192 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter04.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 003445648 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 003168296 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 001435032 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000541008 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000467048 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000381296 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000230600 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000218160 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2022-06-15 15:21 - 2021-12-17 10:23 - 000174832 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 003676960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2022-06-15 15:21 - 2021-12-17 10:22 - 003601368 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 003160744 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001414992 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001403728 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001327944 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001195872 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001111144 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001078592 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 001061480 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000692072 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000392776 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000343616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000327160 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000266440 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000221360 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000117512 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000093808 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2022-06-15 15:21 - 2021-12-17 10:22 - 000084592 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2022-06-15 15:21 - 2021-12-17 10:21 - 072520608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2022-06-15 15:21 - 2021-12-17 10:21 - 002930048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2022-06-15 15:21 - 2021-12-17 09:53 - 049584655 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2022-06-15 15:20 - 2022-04-06 00:25 - 001184712 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2022-06-15 15:20 - 2021-12-17 10:20 - 002354640 _____ (Synaptics Incorporated.) C:\WINDOWS\system32\CX64APO.dll
2022-06-15 15:20 - 2021-12-17 10:20 - 001530096 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64Proxy.dll
2022-06-15 15:20 - 2021-12-17 10:20 - 000123288 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2022-06-15 15:20 - 2021-06-15 19:45 - 001094848 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorAC.sys
2022-06-15 15:19 - 2022-04-15 03:13 - 009909616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2022-06-15 15:19 - 2021-11-30 19:54 - 000337288 _____ (Intel Corporation) C:\WINDOWS\system32\JHI64.dll
2022-06-15 15:19 - 2021-11-30 19:54 - 000321416 _____ (Intel Corporation) C:\WINDOWS\system32\TEEManagement64.dll
2022-06-15 15:19 - 2021-11-30 19:54 - 000273328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\JHI.dll
2022-06-15 15:19 - 2021-11-30 19:54 - 000260528 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\TEEManagement.dll
2022-06-14 20:35 - 2022-06-14 20:35 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-06-14 20:35 - 2022-06-14 20:35 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2022-06-14 20:35 - 2022-06-14 20:35 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll
2022-06-14 12:19 - 2021-09-14 05:39 - 000136472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\SET98EF.tmp
2022-06-14 12:18 - 2021-09-16 05:22 - 007280840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\SET8E88.tmp
2022-06-13 23:29 - 2022-06-30 08:06 - 000000000 ____D C:\Users\Marian\Desktop\SDIO_1.12.5.745
2022-06-13 16:41 - 2022-06-13 16:41 - 000882612 _____ C:\WINDOWS\Minidump\061322-9156-01.dmp
2022-06-13 16:16 - 2022-06-13 16:41 - 1043498486 _____ C:\WINDOWS\MEMORY.DMP
2022-06-13 16:16 - 2022-06-13 16:16 - 000882484 _____ C:\WINDOWS\Minidump\061322-9781-01.dmp
2022-06-13 11:08 - 2022-06-13 11:08 - 000000000 ____D C:\Users\Marian\AppData\Local\INetHistory
2022-06-10 08:46 - 2022-06-30 08:06 - 000000000 ____D C:\Users\Marian\AppData\Local\AcTools Content Manager
2022-06-10 08:46 - 2022-06-10 08:46 - 000001562 _____ C:\Users\Marian\Desktop\Content Manager.exe – odkaz.lnk
2022-06-10 08:16 - 2022-06-10 08:16 - 000000208 _____ C:\Users\Marian\Desktop\Assetto Corsa.url
2022-06-09 21:53 - 2022-06-09 21:53 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2022-06-09 16:15 - 2022-06-09 16:15 - 000041920 _____ C:\WINDOWS\system32\Drivers\truesight.sys
2022-06-09 16:14 - 2022-06-09 16:25 - 000000000 ____D C:\ProgramData\RogueKiller
2022-06-09 00:09 - 2022-06-09 07:25 - 000036208 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2022-06-09 00:06 - 2022-02-16 22:18 - 002928520 ____N (Sysinternals - www.sysinternals.com) C:\Users\Marian\Desktop\Autoruns64.exe
2022-06-09 00:04 - 2022-06-30 09:10 - 116391936 _____ C:\WINDOWS\system32\config\SOFTWARE
2022-06-08 23:22 - 2022-06-08 23:22 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\723504D7.sys
2022-06-07 13:36 - 2022-06-09 21:53 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput
2022-06-05 22:11 - 2022-06-06 14:25 - 000015648 _____ C:\WINDOWS\ntbtlog.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-06-30 09:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-06-30 09:39 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-30 09:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-06-30 09:17 - 2020-06-12 12:48 - 001829354 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-30 09:17 - 2019-12-07 16:41 - 000741560 _____ C:\WINDOWS\system32\perfh005.dat
2022-06-30 09:17 - 2019-12-07 16:41 - 000162304 _____ C:\WINDOWS\system32\perfc005.dat
2022-06-30 09:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-06-30 09:12 - 2017-06-20 09:59 - 000000000 ____D C:\Program Files (x86)\Google
2022-06-30 09:10 - 2020-06-12 12:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-30 09:10 - 2020-06-12 12:38 - 000008192 ___SH C:\DumpStack.log.tmp
2022-06-30 09:10 - 2019-12-07 11:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2022-06-30 09:07 - 2020-06-12 12:38 - 000434624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-06-30 09:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-06-30 08:54 - 2017-06-23 20:50 - 000000000 ____D C:\Users\Marian\AppData\Local\ElevatedDiagnostics
2022-06-30 08:44 - 2019-10-03 17:53 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2022-06-30 08:15 - 2020-06-12 12:45 - 000004210 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{219F2BD4-A9EE-4CF1-810F-99A948DBFE12}
2022-06-30 08:12 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-30 08:09 - 2021-11-17 23:14 - 000144864 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2022-06-30 08:09 - 2020-04-15 08:15 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-06-30 08:09 - 2020-01-31 08:25 - 002754024 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2022-06-30 08:09 - 2020-01-31 08:25 - 000402912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2022-06-30 08:09 - 2020-01-31 08:25 - 000234976 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2022-06-30 08:09 - 2020-01-31 08:25 - 000198120 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2022-06-30 08:09 - 2020-01-31 08:25 - 000067048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2022-06-30 08:07 - 2020-06-12 12:39 - 000000000 ____D C:\Users\Marian
2022-06-30 08:06 - 2020-06-12 13:30 - 000000000 ____D C:\WINDOWS\system32\sk
2022-06-30 08:06 - 2020-06-12 12:39 - 000000000 ____D C:\Users\defaultuser0
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files\Windows Portable Devices
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-06-30 08:06 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2022-06-30 08:06 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2022-06-30 08:06 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\system32\cs
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\dsc
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\downlevel
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Containers
2022-06-30 08:06 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-30 08:06 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-06-30 08:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\registration
2022-06-30 07:59 - 2017-02-13 04:38 - 000000000 ____D C:\Program Files\HP
2022-06-30 07:49 - 2018-06-20 17:58 - 000000000 ____D C:\ProgramData\Packages
2022-06-30 07:49 - 2017-10-17 21:42 - 000000000 ____D C:\Users\Marian\AppData\Local\Packages
2022-06-29 23:58 - 2019-06-23 22:16 - 000000000 ____D C:\Users\Marian\AppData\Local\PlaceholderTileLogoFolder
2022-06-29 23:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-06-29 15:36 - 2020-09-19 09:37 - 000000000 ____D C:\Program Files\Google
2022-06-29 15:25 - 2017-02-13 04:39 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-06-29 10:09 - 2020-06-12 12:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-28 20:59 - 2020-09-13 07:03 - 000000000 ____D C:\Users\Marian\Desktop\DS4Windows
2022-06-28 20:59 - 2017-07-09 00:53 - 000253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2022-06-28 01:00 - 2017-06-19 18:12 - 000000000 ____D C:\Users\Marian\AppData\Local\CrashDumps
2022-06-27 22:12 - 2020-09-19 09:37 - 000002266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-06-27 22:12 - 2020-09-19 09:37 - 000002225 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-06-26 12:43 - 2018-11-29 18:24 - 000000000 ____D C:\Users\Marian\AppData\Roaming\Origin
2022-06-26 12:43 - 2018-11-29 18:24 - 000000000 ____D C:\ProgramData\Origin
2022-06-26 12:40 - 2018-10-05 11:00 - 000000000 ____D C:\Users\Marian\AppData\Local\Origin
2022-06-26 12:28 - 2019-01-02 19:40 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2022-06-26 12:27 - 2019-01-02 19:41 - 000000000 ____D C:\Users\Marian\AppData\Local\Rockstar Games
2022-06-26 12:27 - 2019-01-02 19:40 - 000000000 ____D C:\Program Files\Rockstar Games
2022-06-25 00:11 - 2020-01-31 12:41 - 000000000 ____D C:\Users\Marian\AppData\Local\FlightSimulator
2022-06-24 19:02 - 2019-09-12 19:44 - 000000032 _____ C:\Users\Marian\AppData\Roaming\msregsvv.dll
2022-06-24 19:02 - 2019-09-12 19:44 - 000000032 _____ C:\ProgramData\autobk.inc
2022-06-24 17:46 - 2020-06-06 07:05 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-06-24 17:46 - 2020-06-06 07:05 - 000002289 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-06-24 17:42 - 2017-06-19 16:20 - 000000589 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2022-06-24 15:08 - 2021-03-03 20:20 - 000000000 ____D C:\Users\Marian\AppData\Roaming\vlc
2022-06-23 06:39 - 2018-02-28 18:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-06-22 16:44 - 2021-05-01 09:53 - 000000000 ____D C:\Users\Marian\Documents\Euro Truck Simulator 2
2022-06-21 09:34 - 2020-09-20 15:23 - 000000290 __RSH C:\ProgramData\ntuser.pol
2022-06-20 21:06 - 2021-04-18 20:18 - 000000000 ____D C:\Users\Marian\Documents\1C SoftClub
2022-06-18 14:47 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-06-17 11:15 - 2017-02-13 04:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-06-16 06:40 - 2020-06-12 12:45 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-16 06:40 - 2020-06-12 12:45 - 000003508 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-06-15 15:22 - 2020-06-12 12:39 - 000002065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk
2022-06-15 15:21 - 2020-06-12 12:45 - 000003194 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2022-06-15 15:21 - 2018-01-10 01:07 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2022-06-15 13:55 - 2020-09-22 15:12 - 000000000 ____D C:\Users\Marian\AppData\Local\NPE
2022-06-15 13:44 - 2018-12-10 19:03 - 000000000 ____D C:\Users\Marian\AppData\Local\Ubisoft Game Launcher
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-06-14 20:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-06-14 20:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-06-14 20:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-06-14 19:18 - 2017-06-20 08:34 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-06-14 19:16 - 2017-06-20 08:34 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-06-14 19:16 - 2017-02-13 04:39 - 000000000 ____D C:\ProgramData\Package Cache
2022-06-13 22:27 - 2017-02-13 05:34 - 000000000 ____D C:\Program Files (x86)\Intel
2022-06-13 21:35 - 2020-06-12 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2022-06-13 20:43 - 2017-02-13 04:38 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2022-06-13 16:41 - 2021-07-20 10:43 - 000000000 ____D C:\WINDOWS\Minidump
2022-06-13 13:02 - 2020-11-11 10:07 - 000020617 _____ C:\Users\Marian\Desktop\čaj.txt
2022-06-09 22:34 - 2017-06-21 18:05 - 000007597 _____ C:\Users\Marian\AppData\Local\resmon.resmoncfg
2022-06-09 16:27 - 2018-08-17 20:58 - 000000000 ____D C:\Users\Marian\AppData\LocalLow\Google
2022-06-09 14:34 - 2019-04-30 10:49 - 000000000 ____D C:\Users\Marian\Documents\Avalanche Studios
2022-06-09 14:32 - 2017-06-20 23:49 - 000000000 ____D C:\Users\Marian\AppData\LocalLow\Temp
2022-06-09 14:26 - 2021-01-21 20:54 - 000000000 ____D C:\Users\Marian\AppData\Local\cache
2022-06-09 00:22 - 2017-07-09 00:53 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2022-06-09 00:04 - 2020-06-12 12:45 - 000003102 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2022-06-09 00:03 - 2020-06-12 12:45 - 000002558 _____ C:\WINDOWS\system32\Tasks\HPEA3JOBS
2022-06-09 00:03 - 2017-07-16 07:53 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2022-06-08 23:21 - 2017-07-09 00:53 - 000192952 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2022-06-08 21:44 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2022-06-08 21:44 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 __RHD C:\Users\Public\Libraries
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\Nui
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ta-lk
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ta-in
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\si-lk
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ras
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\my-mm
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\icsxml
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ias
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Bthprops
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\am-et
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\L2Schemas
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IdentityCRL
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Cursors
2022-06-08 21:44 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\Services
2022-06-08 21:44 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\TextInput
2022-06-08 21:44 - 2017-07-08 23:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-06-08 21:44 - 2017-02-13 05:37 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles
2022-06-08 21:44 - 2017-02-13 05:35 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2022-06-08 21:44 - 2017-02-13 04:39 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2022-06-08 21:41 - 2022-05-07 15:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2022-06-08 21:41 - 2020-06-12 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-963594185-2070104337-283957109-1001
2022-06-08 21:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-06-08 21:41 - 2019-11-18 15:25 - 000000000 ____D C:\WINDOWS\SysWOW64\xlive
2022-06-08 21:41 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2022-06-08 21:41 - 2016-07-16 13:47 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2022-06-08 21:08 - 2021-10-18 08:00 - 000000000 ____D C:\Program Files\Microsoft.WebView2.FixedVersionRuntime.92.0.902.73.x64
2022-06-08 21:08 - 2021-10-09 18:02 - 000000000 ____D C:\Program Files\dotnet
2022-06-08 21:08 - 2021-09-03 19:19 - 000000000 ____D C:\Users\Marian\Documents\American Truck Simulator
2022-06-08 21:08 - 2021-08-28 12:18 - 000000000 ____D C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2022-06-08 21:08 - 2021-05-04 21:51 - 000000000 ____D C:\Users\Marian\Documents\Arma 3
2022-06-08 21:08 - 2021-03-03 20:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-06-08 21:08 - 2021-02-21 08:46 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-08 21:08 - 2021-01-22 20:25 - 000000000 ____D C:\ProgramData\Intel Package Cache {1CEAC85D-2590-4760-800F-8DE5E91F3700}
2022-06-08 21:08 - 2021-01-21 22:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia
2022-06-08 21:08 - 2020-08-26 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinCDEmu
2022-06-08 21:08 - 2020-08-25 18:18 - 000000000 ____D C:\Users\Marian\Documents\FIFA 17
2022-06-08 21:08 - 2020-05-24 23:32 - 000000000 ____D C:\Users\Marian\AppData\Roaming\2K
2022-06-08 21:08 - 2020-02-20 23:37 - 000000000 ____D C:\Users\Marian\Documents\Assassin's Creed Syndicate
2022-06-08 21:08 - 2019-11-07 00:04 - 000000000 ____D C:\Program Files (x86)\OpenAL
2022-06-08 21:08 - 2019-10-15 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2022-06-08 21:08 - 2019-10-06 17:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Processor Diagnostic Tool 64bit
2022-06-08 21:08 - 2019-09-17 21:34 - 000000000 ____D C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2022-06-08 21:08 - 2019-08-08 20:08 - 000000000 ____D C:\Users\Marian\Documents\Assetto Corsa
2022-06-08 21:08 - 2019-04-17 18:53 - 000000000 ____D C:\Users\Marian\Documents\Assassin's Creed Unity
2022-06-08 21:08 - 2019-01-03 14:15 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2022-06-08 21:08 - 2017-07-13 10:44 - 000000000 ____D C:\WINDOWS\pss
2022-06-08 21:08 - 2017-07-01 19:40 - 000000000 ____D C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2022-06-08 21:08 - 2017-06-24 11:22 - 000000000 ____D C:\Windows10Upgrade
2022-06-08 21:08 - 2017-06-20 22:16 - 000000000 ____D C:\Users\Marian\AppData\Roaming\SmartSteamEmu
2022-06-08 21:08 - 2017-06-20 10:14 - 000000000 ___RD C:\Users\Marian\3D Objects
2022-06-08 21:08 - 2017-06-20 09:57 - 000000000 ____D C:\Users\Marian\AppData\Local\Microsoft Help
2022-06-08 21:08 - 2017-06-19 15:47 - 000000000 ____D C:\Users\Marian\AppData\Local\ConnectedDevicesPlatform
2022-06-08 21:08 - 2017-02-13 05:39 - 000000000 ____D C:\WINDOWS\HP
2022-06-08 21:08 - 2017-02-13 05:34 - 000000000 ____D C:\Program Files\Intel
2022-06-08 21:08 - 2017-02-13 04:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2022-06-08 21:08 - 2017-02-13 04:41 - 000000000 ____D C:\Program Files\HPCOMMRECOVERY
2022-06-08 21:08 - 2016-08-23 21:10 - 000000000 ___HD C:\SYSTEM.SAV
2022-06-08 21:08 - 2016-07-29 14:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-06-05 17:17 - 2021-05-04 21:48 - 000000000 ____D C:\Users\Marian\AppData\Local\Arma 3 Launcher
2022-06-05 17:05 - 2021-05-04 21:51 - 000000000 ____D C:\Users\Marian\AppData\Local\Arma 3
2022-05-31 23:52 - 2022-05-30 22:06 - 000001456 _____ C:\Users\Marian\AppData\Local\Adobe Save for Web 13.0 Prefs

==================== Files in the root of some directories ========

2019-09-12 19:44 - 2022-06-24 19:02 - 000000032 _____ () C:\Users\Marian\AppData\Roaming\msregsvv.dll
2019-06-20 20:15 - 2021-12-20 00:57 - 000016601 _____ () C:\Users\Marian\AppData\Roaming\TheHunterSettings_live.bin
2019-06-20 20:29 - 2021-12-15 18:05 - 000000049 _____ () C:\Users\Marian\AppData\Roaming\TheHunterSettings_steam_live.cfg
2021-01-18 10:42 - 2021-01-18 11:07 - 000000096 _____ () C:\Users\Marian\AppData\Roaming\version2.xml
2020-09-28 11:57 - 2020-09-28 12:49 - 000000081 _____ () C:\Users\Marian\AppData\Local\.bidstack.fault
2022-05-30 22:06 - 2022-05-31 23:52 - 000001456 _____ () C:\Users\Marian\AppData\Local\Adobe Save for Web 13.0 Prefs
2022-01-24 00:40 - 2022-01-24 00:40 - 000000000 ___SH () C:\Users\Marian\AppData\Local\LumaEmu
2017-06-21 18:05 - 2022-06-09 22:34 - 000007597 _____ () C:\Users\Marian\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================