Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-01-2023
Ran by ZALMAN (administrator) on DESKTOP-T24R4MM (Gigabyte Technology Co., Ltd. B560M H) (15-01-2023 17:40:43)
Running from C:\Users\ZALMAN\Desktop
Loaded Profiles: ZALMAN
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2486 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(D:\Programy\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8>
(Discord Inc. -> Discord Inc.) C:\Users\ZALMAN\AppData\Local\Discord\app-1.0.9008\Discord.exe <6>
(explorer.exe ->) (Logitech -> Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) D:\Programy\Steam\steam.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_2f8b15057bd04fc7\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe [1231864 2021-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [215960 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [362056 2022-05-05] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3089288 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [Steam] => D:\Programy\Steam\steam.exe [4246376 2022-12-15] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [EpicGamesLauncher] => D:\Programy\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32754128 2022-12-12] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [Discord] => C:\Users\ZALMAN\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\ZALMAN\AppData\Local\Microsoft\Teams\Update.exe [2587416 2022-12-15] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [MicrosoftEdgeAutoLaunch_2C389501B3AB7759959FF5C63C776684] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3879368 2023-01-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [com.blitz.app] => C:\Users\ZALMAN\AppData\Local\Programs\Blitz\Blitz.exe [130395848 2023-01-12] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\MountPoints2: {339d1103-0345-11ec-be6a-18c04df9641d} - "F:\Lenovo_Suite.exe" 
HKLM\...\Windows x64\Print Processors\Canon MG3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCT.DLL [30208 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series: C:\Windows\system32\CNMLMCT.DLL [406528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\108.0.5359.126\Installer\chrmstp.exe [2023-01-12] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1222D4D7-2F41-469D-A406-44B16413311A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {42881956-B06D-4E56-9482-5C71AF08CD1D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26308584 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {45B15D66-9B05-4C1E-A043-249B8B0A56EB} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {631AD4EF-7354-4705-991C-EFD7BEC00398} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144344 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {69EFC583-AB8D-45DC-BE77-FC7544E3471A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26308584 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {6E96B113-AC8B-4DC5-B021-C41607DBA1D8} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {724EBC3D-DD23-4CD8-9A44-EF434E6B72BA} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4954008 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
Task: {746D4DD9-2F91-4BF2-ACE3-BACE7F7F99B7} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-12-09] (Piriform Software Ltd -> Piriform)
Task: {7610B590-E69B-4B1C-A04A-D98ED403923C} - System32\Tasks\CCleanerSkipUAC - ZALMAN => C:\Program Files\CCleaner\CCleaner.exe [32602448 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {7859AC61-0DC1-41B5-902E-40679B4FF407} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144344 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {78C19EF1-ED7F-436B-8286-AB15C4204B2B} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {8541D61B-D8FF-49AA-821D-B8EC2A0142EF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8509392 2022-12-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {9A7CB420-8855-4BF6-82AA-D268BFC4CEA7} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [146816 2022-12-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {A9943920-F41C-421A-948C-50733F02428B} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {ADF118FB-A490-4F4D-BDFF-675C5B6DE3B8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8509392 2022-12-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {B305C7A9-25A5-490C-953A-E452489526E3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.)
Task: {B5042B70-BD78-43BC-833C-49CF3DC020E6} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1000912 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {B5D2CEB9-E393-4CB4-9215-B4943B2D0F4D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {B84BA7DD-AC88-41C4-B32E-5E8C237F661A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-17] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {BA4D5ECE-51C9-4EF8-86F8-84B56C64C392} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {BDAB257F-61AB-4ED6-8BBF-0EC4F1504ECB} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)
Task: {DDD476B8-45AC-4F98-AA99-5B23BC65FF41} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "476740bc-5675-4135-8745-8d6577250a2a" --version "6.07.10191" --silent
Task: {E0B3F0B9-F862-46F7-9C13-B11E83A0845F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {E54E2FE8-8D4E-4393-BD51-3F04030DD2BF} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2022-12-07] (Nvidia Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\Intel PTT EK Recertification.job => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll => No File 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{2dc7ba16-4201-4404-998a-36a6f6b680c8}: [DhcpNameServer] 192.168.1.1 195.146.128.62

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ZALMAN\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-15]

FireFox:
========
FF DefaultProfile: uswc131q.default
FF ProfilePath: C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\uswc131q.default [2022-01-17]
FF ProfilePath: C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release [2023-01-14]
FF Extension: (AdGuard blokovač reklamy) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\adguardadblocker@adguard.com.xpi [2022-11-23]
FF Extension: (HTTPS Everywhere) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\https-everywhere@eff.org.xpi [2021-08-22]
FF Extension: (Surfshark VPN Extension) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\{732216ec-0dab-43bb-ac85-4b5e1977599d}.xpi [2022-11-23]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)

Chrome: 
=======
CHR Profile: C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default [2023-01-15]
CHR Extension: (Surfshark VPN Extension) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2022-12-29]
CHR Extension: (AdGuard blokovač reklamy) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-12-25]
CHR Extension: (HTTPS Everywhere) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2022-12-10]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-12-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-12-10]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8553880 2022-12-20] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [597400 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2038168 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [597400 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-03-17] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-09-18] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12540928 2022-12-16] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-06-21] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
R2 MSSQL$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [372416 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
R2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4490376 2020-09-18] (Logitech Inc -> Logitech)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579264 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497800 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224184 2022-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 SQLAgent$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2022-01-12] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10430256 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8737992 2022-01-20] (PUBG CORPORATION -> PUBG Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_2f8b15057bd04fc7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_2f8b15057bd04fc7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [31424 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [229208 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [391272 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297832 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [95960 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39648 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [267888 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [555560 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105248 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80376 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [852000 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [695496 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [212632 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [318456 2022-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys [128680 2020-12-23] (Intel Corporation -> Intel Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S4 RsFx0310; C:\Windows\System32\DRIVERS\RsFx0310.sys [249024 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2021-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [22216888 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49568 2021-08-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [434424 2021-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\Windows\xhunter1.sys [2522256 2022-01-20] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-15 17:40 - 2023-01-15 17:41 - 000027071 _____ C:\Users\ZALMAN\Desktop\FRST.txt
2023-01-15 17:40 - 2023-01-15 17:40 - 002376704 _____ (Farbar) C:\Users\ZALMAN\Desktop\FRST64.exe
2023-01-14 10:46 - 2023-01-14 10:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2023-01-14 10:46 - 2023-01-14 10:46 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2023-01-11 22:13 - 2023-01-11 22:13 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\VALORANT
2023-01-11 18:58 - 2023-01-15 17:09 - 000000001 _____ C:\Windows\vgkbootstatus.dat
2023-01-11 18:13 - 2023-01-11 18:13 - 000000000 ___HD C:\$WinREAgent
2023-01-11 17:47 - 2023-01-11 17:47 - 000000000 ____D C:\Program Files\Riot Vanguard
2023-01-09 17:04 - 2022-12-29 02:24 - 002237024 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2023-01-09 17:04 - 2022-12-29 02:24 - 002237024 _____ C:\Windows\system32\vulkaninfo.exe
2023-01-09 17:04 - 2022-12-29 02:24 - 001642600 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-01-09 17:04 - 2022-12-29 02:24 - 001642600 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2023-01-09 17:04 - 2022-12-29 02:24 - 001168968 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2023-01-09 17:04 - 2022-12-29 02:24 - 001168968 _____ C:\Windows\SysWOW64\vulkan-1.dll
2023-01-09 17:04 - 2022-12-29 02:23 - 001487352 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2023-01-09 17:04 - 2022-12-29 02:23 - 001444448 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2023-01-09 17:04 - 2022-12-29 02:23 - 001444448 _____ C:\Windows\system32\vulkan-1.dll
2023-01-09 17:04 - 2022-12-29 02:23 - 001227272 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2023-01-09 17:04 - 2022-12-29 02:20 - 000865272 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2023-01-09 17:04 - 2022-12-29 02:20 - 000672256 _____ C:\Windows\system32\nvofapi64.dll
2023-01-09 17:04 - 2022-12-29 02:20 - 000506904 _____ C:\Windows\SysWOW64\nvofapi.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 002163688 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 001619968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 001532928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 001192976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 000949736 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2023-01-09 17:04 - 2022-12-29 02:19 - 000746992 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2023-01-09 17:04 - 2022-12-29 02:18 - 012453368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2023-01-09 17:04 - 2022-12-29 02:18 - 010220544 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2023-01-09 17:04 - 2022-12-29 02:18 - 005890544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2023-01-09 17:04 - 2022-12-29 02:18 - 005866496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2023-01-09 17:04 - 2022-12-29 02:18 - 003334656 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2023-01-09 17:04 - 2022-12-29 02:18 - 000457720 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2023-01-09 17:04 - 2022-12-29 02:17 - 005818392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2023-01-09 17:04 - 2022-12-29 02:16 - 000853016 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2023-01-09 17:04 - 2022-12-22 10:29 - 000100815 _____ C:\Windows\system32\nvinfo.pb
2023-01-09 10:47 - 2023-01-09 10:47 - 000703058 _____ C:\Users\ZALMAN\Downloads\InShot_20230106_154445890.mp4
2023-01-09 09:51 - 2023-01-09 09:51 - 002833174 _____ C:\Users\ZALMAN\Downloads\videoplayback (1).mp4
2023-01-09 09:50 - 2023-01-09 09:50 - 001740016 _____ C:\Users\ZALMAN\Downloads\InShot_20221227_000622815.mp4
2023-01-05 14:25 - 2023-01-05 14:25 - 003543573 _____ C:\Users\ZALMAN\Downloads\ae996fe55bd9be39573313f0677b7c59.mp4
2023-01-05 14:25 - 2023-01-05 14:25 - 003001597 _____ C:\Users\ZALMAN\Downloads\received_460241876272559.mp4
2023-01-05 13:03 - 2023-01-05 13:03 - 003716785 _____ C:\Users\ZALMAN\Downloads\v09044g40000ca9nmgrc77u647unlsjg.mp4
2023-01-04 16:48 - 2023-01-04 16:48 - 002833174 _____ C:\Users\ZALMAN\Downloads\videoplayback.mp4
2023-01-04 10:18 - 2023-01-04 10:18 - 009119403 _____ C:\Users\ZALMAN\Downloads\Technika-pre-pestovanie-plodín-SRV-1-s-obrazkami.pdf
2023-01-03 11:27 - 2023-01-03 11:27 - 000164510 _____ C:\Users\ZALMAN\Downloads\306256652_5427076390672999_4137945170765665345_n (1).mp4
2022-12-30 15:22 - 2022-12-30 15:22 - 001281715 _____ C:\Users\ZALMAN\Downloads\InShot_20221221_205135965.mp4
2022-12-29 18:34 - 2022-12-29 18:34 - 000720714 _____ C:\Users\ZALMAN\Downloads\Potvrdenie.pdf
2022-12-29 13:30 - 2023-01-11 19:01 - 000000000 ___RD C:\Users\ZALMAN\Desktop\Games
2022-12-28 22:41 - 2022-12-28 22:41 - 000000000 ____D C:\Users\ZALMAN\AppData\LocalLow\Steel Crate Games
2022-12-27 17:35 - 2022-12-27 17:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrucksBook Client
2022-12-26 12:22 - 2022-12-26 12:23 - 027783147 _____ C:\Users\ZALMAN\Downloads\TB_Client_1_4_2.zip
2022-12-25 22:23 - 2022-12-25 22:23 - 004074886 _____ C:\Users\ZALMAN\Downloads\Copises.mp4
2022-12-20 21:07 - 2022-12-20 21:07 - 001096564 _____ C:\Users\ZALMAN\Downloads\SKODA Financial Services.pdf
2022-12-18 20:54 - 2022-12-18 20:54 - 000164510 _____ C:\Users\ZALMAN\Downloads\306256652_5427076390672999_4137945170765665345_n.mp4
2022-12-18 20:27 - 2022-12-18 20:27 - 000007552 _____ C:\Users\ZALMAN\Downloads\[nCore][xvidser_hun]Young.Sheldon.S02.AMZN.WEBRip.x264.HUN.ENG-prldm.torrent

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-15 17:41 - 2021-08-20 17:43 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\discord
2023-01-15 17:40 - 2022-01-10 21:31 - 000000000 ____D C:\FRST
2023-01-15 17:39 - 2022-09-21 16:00 - 000003048 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-01-15 17:39 - 2022-09-21 16:00 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-01-15 17:39 - 2022-03-17 13:55 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2023-01-15 17:39 - 2021-09-23 08:51 - 000002988 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-01-15 17:39 - 2021-09-23 08:51 - 000002256 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - ZALMAN
2023-01-15 17:39 - 2021-08-20 15:00 - 000003398 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000003152 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002984 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002914 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2021-08-20 15:00 - 000002744 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-01-15 17:39 - 2019-12-07 07:59 - 000003560 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-01-15 17:39 - 2019-12-07 07:59 - 000003336 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-01-15 17:18 - 2022-12-10 14:39 - 000000000 ____D C:\Program Files (x86)\Google
2023-01-15 17:07 - 2022-12-02 18:47 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\Blitz
2023-01-15 17:07 - 2021-10-27 08:58 - 000000032 _____ C:\Users\ZALMAN\AppData\Roaming\.machineId
2023-01-15 17:07 - 2021-09-23 08:51 - 000000000 ____D C:\Program Files\CCleaner
2023-01-15 17:07 - 2021-08-20 17:43 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Discord
2023-01-15 17:07 - 2021-08-19 15:32 - 000000000 ____D C:\ProgramData\NVIDIA
2023-01-15 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-01-15 17:06 - 2019-12-07 08:01 - 000000000 ____D C:\Users\ZALMAN
2023-01-15 17:06 - 2019-12-07 07:59 - 000490128 _____ C:\Windows\system32\FNTCACHE.DAT
2023-01-15 17:06 - 2019-12-07 07:59 - 000008192 ___SH C:\DumpStack.log.tmp
2023-01-15 17:06 - 2019-12-07 07:59 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-01-15 17:06 - 2019-12-07 07:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-01-15 16:54 - 2021-10-14 07:35 - 000000000 ____D C:\Users\ZALMAN\Desktop\Veci
2023-01-15 14:25 - 2021-08-22 13:38 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\qBittorrent
2023-01-15 11:16 - 2021-12-17 13:55 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\vlc
2023-01-14 23:45 - 2022-03-17 13:56 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2023-01-14 23:45 - 2021-09-07 18:53 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2023-01-14 23:45 - 2021-09-07 18:53 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2023-01-14 23:45 - 2021-09-07 18:53 - 000002402 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2023-01-14 23:45 - 2021-08-20 16:37 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2023-01-14 23:45 - 2021-08-20 15:08 - 000000897 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2023-01-14 23:45 - 2019-12-07 07:59 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-01-14 23:44 - 2022-02-16 21:59 - 000000081 _____ C:\Users\ZALMAN\AppData\Local\.bidstack.fault
2023-01-14 23:44 - 2021-10-23 16:56 - 000000000 ____D C:\ProgramData\Riot Games
2023-01-14 22:29 - 2021-08-20 15:09 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\CrashDumps
2023-01-12 21:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2023-01-12 20:58 - 2022-12-10 14:39 - 000002262 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-01-12 20:52 - 2022-03-17 13:52 - 000000000 ____D C:\ProgramData\Avast Software
2023-01-12 20:52 - 2019-12-07 10:03 - 000262144 _____ C:\Windows\system32\config\BBI
2023-01-12 09:03 - 2022-12-02 18:47 - 000002225 _____ C:\Users\ZALMAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2023-01-11 22:13 - 2021-10-23 16:56 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Riot Games
2023-01-11 19:01 - 2022-03-17 13:54 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-01-11 19:00 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2023-01-11 18:58 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2023-01-11 18:58 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2023-01-11 18:58 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-01-11 18:58 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2023-01-11 18:43 - 2021-10-23 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
2023-01-11 18:19 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2023-01-11 18:18 - 2019-12-07 08:02 - 003014656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-01-11 17:53 - 2021-08-19 15:21 - 000000000 ____D C:\Windows\system32\MRT
2023-01-11 17:51 - 2021-08-19 15:21 - 150199536 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-01-11 17:51 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-01-11 17:44 - 2022-12-02 18:47 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\blitz-updater
2023-01-09 19:03 - 2021-08-21 17:20 - 000000000 ___SH C:\Users\Public\Shared Files
2023-01-09 17:09 - 2021-08-20 15:00 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\NVIDIA
2023-01-09 09:41 - 2019-12-07 08:01 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Packages
2023-01-04 10:22 - 2022-05-01 11:51 - 000000000 ____D C:\Windows\Minidump
2023-01-04 10:22 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports
2022-12-30 18:20 - 2022-01-08 17:27 - 000000000 ____D C:\Users\ZALMAN\Documents\Euro Truck Simulator 2
2022-12-30 13:49 - 2021-08-20 15:11 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\D3DSCache
2022-12-29 16:56 - 2022-10-07 14:39 - 000000000 ____D C:\Program Files\Autodesk
2022-12-29 16:56 - 2021-09-30 09:13 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\Autodesk
2022-12-29 16:55 - 2021-09-30 09:13 - 000000000 ____D C:\ProgramData\Autodesk
2022-12-29 16:54 - 2021-09-30 09:12 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Autodesk
2022-12-29 16:51 - 2022-10-07 14:37 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\UI Launcher
2022-12-29 16:47 - 2021-09-30 09:19 - 000000000 ____D C:\ProgramData\boost_interprocess
2022-12-29 02:19 - 2022-12-10 14:21 - 000734192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2022-12-29 02:15 - 2022-10-20 14:20 - 006516480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2022-12-29 02:15 - 2021-08-19 15:16 - 007648008 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2022-12-27 17:35 - 2022-01-11 14:35 - 000000000 ____D C:\Users\Public\Documents\TB Client
2022-12-20 19:12 - 2021-08-19 15:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-12-20 19:11 - 2021-08-20 15:00 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-12-20 19:11 - 2021-08-19 15:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-12-16 17:24 - 2021-09-07 18:46 - 000000000 ____D C:\Program Files\Microsoft Office

==================== Files in the root of some directories ========

2021-10-27 08:58 - 2023-01-15 17:07 - 000000032 _____ () C:\Users\ZALMAN\AppData\Roaming\.machineId
2022-02-16 21:59 - 2023-01-14 23:44 - 000000081 _____ () C:\Users\ZALMAN\AppData\Local\.bidstack.fault
2021-11-01 12:04 - 2021-11-27 15:17 - 000000000 _____ () C:\Users\ZALMAN\AppData\Local\Temptable.xml

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================