Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-02-2023 01
Ran by ZALMAN (administrator) on DESKTOP-T24R4MM (Gigabyte Technology Co., Ltd. B560M H) (16-02-2023 23:40:23)
Running from C:\Users\ZALMAN\Desktop
Loaded Profiles: ZALMAN
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2604 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Discord Inc. -> Discord Inc.) C:\Users\ZALMAN\AppData\Local\Discord\app-1.0.9010\Discord.exe <6>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_da725289af73928f\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe [1231864 2021-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [219032 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [362056 2022-05-05] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3089288 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [Steam] => D:\Programy\Steam\steam.exe [4253032 2023-02-14] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [EpicGamesLauncher] => D:\Programy\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32823760 2023-02-16] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [Discord] => C:\Users\ZALMAN\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38935376 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [MicrosoftEdgeAutoLaunch_2C389501B3AB7759959FF5C63C776684] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243408 2023-02-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [1610344 2023-02-16] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-1376666150-4259590915-1670796979-1001\...\MountPoints2: {339d1103-0345-11ec-be6a-18c04df9641d} - "F:\Lenovo_Suite.exe" 
HKLM\...\Windows x64\Print Processors\Canon MG3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCT.DLL [30208 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series: C:\Windows\system32\CNMLMCT.DLL [406528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.121\Installer\chrmstp.exe [2023-02-09] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01D06C71-1BA3-4CB8-B699-52250205C19B} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {05693C32-C0FE-404E-B5EE-197C22131850} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {178804B7-C435-4383-B870-023199850229} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {25F4490C-5230-406C-93C7-9F79837728D7} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3F7AB521-649A-485C-A656-99DB708E1F10} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334160 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {4C9A7639-64C8-4CDF-B471-33CC2ED93A2B} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168920 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {5FFC07B5-3F72-423E-A2BB-5769CBE9D4B2} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4713808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "476740bc-5675-4135-8745-8d6577250a2a" --version "6.08.10255" --silent
Task: {6DDC0AB5-8E22-4FF4-BE53-D54043CA32D7} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6F281097-5816-485E-AB7E-379D39EB58E3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
Task: {7610B590-E69B-4B1C-A04A-D98ED403923C} - System32\Tasks\CCleanerSkipUAC - ZALMAN => C:\Program Files\CCleaner\CCleaner.exe [32617808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {7C65DFB0-7ACC-4DD4-A161-F93CF30CEF13} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8C1AAE3E-BE12-4720-BCA2-9AEB6B909D90} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334160 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {90EF6373-120B-4052-AE29-1DF2041929FB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {A9943920-F41C-421A-948C-50733F02428B} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {AC745441-E073-48E4-A9C2-46334B71395E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {B305C7A9-25A5-490C-953A-E452489526E3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.)
Task: {B5042B70-BD78-43BC-833C-49CF3DC020E6} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1003496 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAFB362A-DBA7-4A12-8A25-FE2769BC40A3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {E0B3F0B9-F862-46F7-9C13-B11E83A0845F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2295192 2023-01-31] (Avast Software s.r.o. -> Avast Software)
Task: {E2E38803-B95E-4B30-AE52-06C3FF499DFA} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4867992 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
Task: {F64FC983-1799-43E4-996C-2481278156CB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-01-11] (Piriform Software Ltd -> Piriform)
Task: {F7ADEA44-D0DD-40F3-A5EB-4D8ED59D4E3B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\Intel PTT EK Recertification.job => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll => No File 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{2dc7ba16-4201-4404-998a-36a6f6b680c8}: [DhcpNameServer] 192.168.1.1 195.146.128.62

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ZALMAN\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-16]

FireFox:
========
FF DefaultProfile: uswc131q.default
FF ProfilePath: C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\uswc131q.default [2022-01-17]
FF ProfilePath: C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release [2023-02-16]
FF Extension: (AdGuard blokovač reklamy) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\adguardadblocker@adguard.com.xpi [2022-11-23]
FF Extension: (HTTPS Everywhere) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\https-everywhere@eff.org.xpi [2021-08-22]
FF Extension: (Surfshark VPN Extension) - C:\Users\ZALMAN\AppData\Roaming\Mozilla\Firefox\Profiles\rcfitc31.default-release\Extensions\{732216ec-0dab-43bb-ac85-4b5e1977599d}.xpi [2022-11-23]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)

Chrome: 
=======
CHR Profile: C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default [2023-02-16]
CHR Extension: (AdGuard blokovač reklamy) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-12-25]
CHR Extension: (HTTPS Everywhere) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2022-12-10]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ZALMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-12-10]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8603544 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [576408 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2065304 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [575896 2023-02-16] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-03-17] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-09-18] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12553648 2023-01-31] (Microsoft Corporation -> Microsoft Corporation)
R3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [10138216 2023-02-16] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-06-21] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
R2 MSSQL$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [372416 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
R2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4490376 2020-09-18] (Logitech Inc -> Logitech)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224184 2023-02-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 SQLAgent$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2022-01-12] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10430256 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8737992 2022-01-20] (PUBG CORPORATION -> PUBG Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_da725289af73928f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_da725289af73928f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [31392 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [231800 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [391264 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297848 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [95928 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39600 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [268448 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [556080 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105216 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80392 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [852016 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [696016 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [212632 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319016 2023-02-16] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys [128680 2020-12-23] (Intel Corporation -> Intel Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S4 RsFx0310; C:\Windows\System32\DRIVERS\RsFx0310.sys [249024 2015-04-20] (Microsoft Corporation -> Microsoft Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2021-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [22216888 2022-11-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49568 2021-08-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [434424 2021-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\Windows\xhunter1.sys [2522256 2022-01-20] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-16 23:40 - 2023-02-16 23:40 - 000025278 _____ C:\Users\ZALMAN\Desktop\FRST.txt
2023-02-16 23:39 - 2023-02-16 23:39 - 008791352 _____ (Malwarebytes) C:\Users\ZALMAN\Desktop\adwcleaner.exe
2023-02-16 23:39 - 2023-02-16 23:39 - 002378240 _____ (Farbar) C:\Users\ZALMAN\Desktop\FRST64.exe
2023-02-16 20:55 - 2023-02-16 20:55 - 000000000 ___HD C:\$WinREAgent
2023-02-16 18:06 - 2023-02-16 18:06 - 000288664 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2023-02-12 21:37 - 2023-02-12 21:37 - 010365532 _____ C:\Users\ZALMAN\Downloads\Co_je_ty_skupino_Co_je_ty_prde_Ty_hovne_Napi_sa_Sedni_si_Napi_sa_Lehni_si_Pry_maserka_Kurva_je_to.rar
2023-02-09 16:18 - 2023-02-04 00:00 - 002237024 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2023-02-09 16:18 - 2023-02-04 00:00 - 002237024 _____ C:\Windows\system32\vulkaninfo.exe
2023-02-09 16:18 - 2023-02-04 00:00 - 001642568 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-02-09 16:18 - 2023-02-04 00:00 - 001642568 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2023-02-09 16:18 - 2023-02-04 00:00 - 001487376 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2023-02-09 16:18 - 2023-02-04 00:00 - 001444448 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2023-02-09 16:18 - 2023-02-04 00:00 - 001444448 _____ C:\Windows\system32\vulkan-1.dll
2023-02-09 16:18 - 2023-02-04 00:00 - 001227304 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2023-02-09 16:18 - 2023-02-04 00:00 - 001168968 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2023-02-09 16:18 - 2023-02-04 00:00 - 001168968 _____ C:\Windows\SysWOW64\vulkan-1.dll
2023-02-09 16:18 - 2023-02-03 23:54 - 000671736 _____ C:\Windows\system32\nvofapi64.dll
2023-02-09 16:18 - 2023-02-03 23:54 - 000507392 _____ C:\Windows\SysWOW64\nvofapi.dll
2023-02-09 16:18 - 2023-02-03 23:53 - 001532936 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2023-02-09 16:18 - 2023-02-03 23:53 - 001192440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2023-02-09 16:18 - 2023-02-03 23:53 - 000865296 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2023-02-09 16:18 - 2023-02-03 23:52 - 002164264 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2023-02-09 16:18 - 2023-02-03 23:52 - 001619960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2023-02-09 16:18 - 2023-02-03 23:52 - 000950264 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2023-02-09 16:18 - 2023-02-03 23:52 - 000748048 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2023-02-09 16:18 - 2023-02-03 23:52 - 000734720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 012453368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 010220552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 005891080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 005865976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 003334696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2023-02-09 16:18 - 2023-02-03 23:51 - 000457720 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2023-02-09 16:18 - 2023-02-03 23:50 - 005819880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2023-02-09 16:18 - 2023-02-03 23:49 - 000852984 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2023-02-09 16:18 - 2023-02-03 23:48 - 006517032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2023-02-09 16:18 - 2023-02-03 00:10 - 000101010 _____ C:\Windows\system32\nvinfo.pb
2023-02-06 15:16 - 2023-02-06 15:16 - 000000000 ____D C:\Users\ZALMAN\AppData\LocalLow\CampfireStudio
2023-02-04 22:26 - 2023-02-04 22:26 - 000000000 ____D C:\Users\ZALMAN\AppData\LocalLow\Beam Team Games
2023-02-04 22:07 - 2023-02-04 22:07 - 000000000 ____D C:\Users\ZALMAN\AppData\LocalLow\Oleg Skutte
2023-02-03 23:15 - 2023-02-03 23:15 - 000000000 ____D C:\Users\ZALMAN\AppData\LocalLow\Eleven Puzzles
2023-02-03 14:09 - 2023-02-03 14:09 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\EALaunchHelper
2023-02-02 15:42 - 2023-02-02 15:42 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\EADesktop
2023-02-02 15:41 - 2023-02-02 15:42 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Origin
2023-02-02 15:41 - 2023-02-02 15:42 - 000000000 ____D C:\ProgramData\EA Desktop
2023-02-02 15:41 - 2023-02-02 15:41 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Link2EA
2023-02-02 15:41 - 2023-02-02 15:41 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Electronic Arts
2023-02-02 15:41 - 2023-02-02 15:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
2023-02-02 15:41 - 2023-02-02 15:41 - 000000000 ____D C:\Program Files\Electronic Arts
2023-01-26 15:41 - 2023-01-26 15:41 - 005644819 _____ C:\Users\ZALMAN\Downloads\Screen_Recording_20221221_222558_YouTube.mp4
2023-01-26 10:47 - 2023-01-26 10:47 - 005271134 _____ C:\Users\ZALMAN\Downloads\Screen_Recording_20221221_222020_YouTube.mp4

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-16 23:41 - 2021-08-20 17:43 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\discord
2023-02-16 23:40 - 2022-01-10 21:31 - 000000000 ____D C:\FRST
2023-02-16 23:32 - 2021-09-23 08:51 - 000000000 ____D C:\Program Files\CCleaner
2023-02-16 23:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2023-02-16 23:32 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-16 23:29 - 2021-08-20 15:09 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\CrashDumps
2023-02-16 23:28 - 2021-09-23 08:51 - 000002256 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - ZALMAN
2023-02-16 23:26 - 2022-03-17 13:55 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2023-02-16 23:24 - 2022-12-02 18:47 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\Blitz
2023-02-16 23:12 - 2022-12-10 14:39 - 000000000 ____D C:\Program Files (x86)\Google
2023-02-16 23:02 - 2021-10-23 16:58 - 000049064 _____ C:\Windows\system32\perfh01B.dat
2023-02-16 23:02 - 2021-10-23 16:58 - 000012206 _____ C:\Windows\system32\perfc01B.dat
2023-02-16 23:02 - 2021-08-19 14:40 - 001027750 _____ C:\Windows\system32\PerfStringBackup.INI
2023-02-16 23:02 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2023-02-16 22:56 - 2023-01-11 18:58 - 000000001 _____ C:\Windows\vgkbootstatus.dat
2023-02-16 22:56 - 2021-10-27 08:58 - 000000032 _____ C:\Users\ZALMAN\AppData\Roaming\.machineId
2023-02-16 22:56 - 2021-10-23 16:56 - 000000000 ____D C:\ProgramData\Riot Games
2023-02-16 22:56 - 2021-08-20 17:43 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Discord
2023-02-16 22:56 - 2021-08-19 15:32 - 000000000 ____D C:\ProgramData\NVIDIA
2023-02-16 22:55 - 2022-09-21 16:00 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-02-16 22:55 - 2019-12-07 08:01 - 000000000 ____D C:\Users\ZALMAN
2023-02-16 22:55 - 2019-12-07 07:59 - 000008192 ___SH C:\DumpStack.log.tmp
2023-02-16 22:55 - 2019-12-07 07:59 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-02-16 22:55 - 2019-12-07 07:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-02-16 22:54 - 2022-09-21 16:00 - 000003108 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-02-16 22:54 - 2021-09-23 08:51 - 000003048 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-02-16 22:54 - 2021-08-20 15:00 - 000003458 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003212 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003044 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003008 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003008 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003008 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000003008 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000002974 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2021-08-20 15:00 - 000002804 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-02-16 22:54 - 2019-12-07 07:59 - 000003620 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-16 22:54 - 2019-12-07 07:59 - 000003396 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-16 22:03 - 2022-12-10 14:39 - 000002262 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-16 22:03 - 2022-03-17 13:56 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2023-02-16 22:03 - 2021-09-07 18:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2023-02-16 22:03 - 2021-09-07 18:53 - 000002402 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2023-02-16 22:03 - 2019-12-07 07:59 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-16 22:02 - 2022-12-29 13:30 - 000000000 ___RD C:\Users\ZALMAN\Desktop\Games
2023-02-16 21:49 - 2022-03-17 13:52 - 000000000 ____D C:\ProgramData\Avast Software
2023-02-16 21:48 - 2019-12-07 10:03 - 000262144 _____ C:\Windows\system32\config\BBI
2023-02-16 21:46 - 2019-12-07 07:59 - 000490128 _____ C:\Windows\system32\FNTCACHE.DAT
2023-02-16 21:44 - 2019-12-07 15:41 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\DDFs
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-02-16 21:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2023-02-16 21:03 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2023-02-16 21:00 - 2019-12-07 08:02 - 003015680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-02-16 20:54 - 2021-08-19 15:21 - 000000000 ____D C:\Windows\system32\MRT
2023-02-16 20:52 - 2021-08-19 15:21 - 149955784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-02-16 19:03 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-16 18:06 - 2022-03-17 13:54 - 000852016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000696016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000556080 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000391264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000319016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000297848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000268448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000231800 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000105216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000095928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000080392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000039600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000031392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2023-02-16 18:06 - 2022-03-17 13:54 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-02-16 18:06 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2023-02-13 10:04 - 2019-12-07 08:01 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\Packages
2023-02-13 09:42 - 2021-12-17 13:55 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\vlc
2023-02-12 13:55 - 2021-08-22 13:38 - 000000000 ____D C:\Users\ZALMAN\AppData\Roaming\qBittorrent
2023-02-09 16:22 - 2021-08-20 15:00 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\NVIDIA
2023-02-06 17:03 - 2021-09-07 18:53 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2023-02-06 17:03 - 2021-08-20 16:37 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2023-02-06 17:03 - 2021-08-20 15:08 - 000000897 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2023-02-06 10:50 - 2021-09-08 17:48 - 000002376 _____ C:\Users\ZALMAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2023-02-05 22:37 - 2021-09-07 18:53 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2023-02-03 23:48 - 2021-08-19 15:16 - 007648048 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2023-02-03 14:24 - 2021-08-20 16:17 - 000000000 ____D C:\Users\ZALMAN\Documents\My Games
2023-02-03 10:04 - 2021-08-20 15:11 - 000000000 ____D C:\Users\ZALMAN\AppData\Local\D3DSCache
2023-02-02 15:42 - 2022-02-04 22:21 - 000000000 ____D C:\ProgramData\Origin
2023-02-02 15:41 - 2021-08-20 15:00 - 000000000 ____D C:\ProgramData\Package Cache
2023-02-01 17:47 - 2022-02-16 21:59 - 000000081 _____ C:\Users\ZALMAN\AppData\Local\.bidstack.fault
2023-01-31 13:08 - 2021-08-20 15:00 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2023-01-31 13:08 - 2021-08-19 15:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-01-31 13:08 - 2021-08-19 15:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2023-01-31 11:56 - 2021-09-07 18:46 - 000000000 ____D C:\Program Files\Microsoft Office
2023-01-24 09:30 - 2022-12-02 18:47 - 000002225 _____ C:\Users\ZALMAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2023-01-20 17:45 - 2021-08-20 15:00 - 002904632 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2023-01-20 17:45 - 2021-08-20 15:00 - 002234920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2023-01-20 17:45 - 2021-08-20 15:00 - 001297464 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2023-01-19 11:19 - 2021-08-19 15:21 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools

==================== Files in the root of some directories ========

2021-10-27 08:58 - 2023-02-16 22:56 - 000000032 _____ () C:\Users\ZALMAN\AppData\Roaming\.machineId
2022-02-16 21:59 - 2023-02-01 17:47 - 000000081 _____ () C:\Users\ZALMAN\AppData\Local\.bidstack.fault
2021-11-01 12:04 - 2021-11-27 15:17 - 000000000 _____ () C:\Users\ZALMAN\AppData\Local\Temptable.xml

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================