Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by marka (administrator) on MARKALOUSOVO (Acer Predator PH315-52) (08-12-2025 19:48:34)
Running from C:\Users\marka\OneDrive\Desktop\FRST64.exe
Loaded Profiles: marka
Platform: Microsoft Windows 10 Home Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\PredatorSense Service\PSAgent.exe
(C:\CGMSERVER\bin\pgsql10\bin\pg_ctl.exe ->) (PostgreSQL Global Development Group) [File not signed] C:\CGMSERVER\bin\pgsql10\bin\postgres.exe <29>
(C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSATray.exe
(C:\Program Files\Acer\PredatorSense Service\PSSvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\PredatorSense Service\PSAdminAgent.exe
(C:\Program Files\Acer\Quick Access Service\QASvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe
(C:\Program Files\Acer\Quick Access Service\QASvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QAAgent.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\Norton\Suite\nllToolsSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\su_worker.exe
(C:\Program Files\Norton\Suite\NortonSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswEngSrv.exe
(C:\Program Files\Norton\Suite\su_worker.exe ->) (Gen Digital Inc. -> OPSWAT, Inc.) C:\Program Files\Norton\Suite\wa_3rd_party_host_32.exe
(C:\Program Files\Norton\Suite\su_worker.exe ->) (Gen Digital Inc. -> OPSWAT, Inc.) C:\Program Files\Norton\Suite\wa_3rd_party_host_64.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(drivers\RivetNetworks\Killer\KAPSService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
(drivers\RivetNetworks\Killer\KNDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWM.exe <2>
(DriverStore\FileRepository\cui_dch.inf_amd64_c36cd6406677db45\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_c36cd6406677db45\igfxEM.exe
(EAF76292-FADE-4EAB-A62C-FE5E78661D58 -> Acer Incorporated) C:\Program Files\WindowsApps\AcerIncorporated.PredatorSenseV30_3.0.3136.0_x64__48frkmn4z8aw4\Win32\PredatorSense.exe
(EB742617-4934-4951-8B93-E211D04E5A38 -> Intel Corporation) C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_40.25.509.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\Killer.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Limited) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Limited) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(explorer.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Program Files\Navigraph Navdata Center\Navigraph Navdata Center\Navigraph Navdata Center.exe <4>
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Users\marka\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe <4>
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_b71853ad38306f1c\WavesSvc64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonUI.exe <4>
(hasplms.exe ->) (Gemalto, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplmv.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13>
(Navigraph Kommanditbolag -> Navigraph) C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe
(services.exe ->) (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> QuickShareService) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_2.2.19.0_x64__wyx1vj98g3asy\QuickShareService\QuickShareService.exe
(services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
(services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\PredatorSense Service\PSSvc.exe
(services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QASvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Limited) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) C:\CGMSERVER\bin\ecommunication-1\cgm.ecommunication-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) C:\CGMSERVER\bin\erepository-1\cgm.erepository-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) C:\CGMSERVER\bin\etrzby-1\cgm.etrzby-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> Microsoft) C:\CGMSERVER\bin\core\cgm.servercore.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> Microsoft) C:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe
(services.exe ->) (Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(services.exe ->) (Gemalto, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\AvDump.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\nllToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_c36cd6406677db45\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c18e9c8eed547b01\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9abf929c7fde5205\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9abf929c7fde5205\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_a616adf5d12836b6\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAUpdateService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\IntelNetworkHelperService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerProviderDataHelperService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_5d83605e8696144c\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\wsc_proxy.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvacsi.inf_amd64_c3a9319280e22172\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (PostgreSQL Global Development Group) [File not signed] C:\CGMSERVER\bin\pgsql10\bin\pg_ctl.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (The Apache Software Foundation -> Apache Software Foundation) C:\CGMSERVER\cgm.jetty.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_b71853ad38306f1c\WavesSysSvc64.exe
(sihost.exe ->) (EAF76292-FADE-4EAB-A62C-FE5E78661D58 -> ) C:\Program Files\WindowsApps\AcerIncorporated.AcerCollectionS_1.0.3004.0_x64__48frkmn4z8aw4\DesktopApp\ACEStd.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2546.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (83564403-0B26-46B8-9D84-040F43691D31 -> Realtek Semiconductor) C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.9.214.0_x64__dt26b99r8h8gj\RtkUWP.exe
(svchost.exe ->) (Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\ePowerButton_NB.exe
(svchost.exe ->) (Acer Incorporated -> Microsoft) C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe
(svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_c36cd6406677db45\igfxext.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2512.1001.31.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319544 2019-02-26] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1082592 2020-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_b71853ad38306f1c\WavesSvc64.exe [1597528 2019-12-23] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [NortonUI.exe] => C:\Program Files\Norton\Suite\AvLaunch.exe [870568 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] => C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe [283904 2019-08-02] (Prvni certifikacni autorita, a.s. -> I.CA, a.s.)
HKLM-x32\...\Run: [Navigraph FMS Data Manager] => C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe [994832 2024-01-30] (Navigraph Kommanditbolag -> Navigraph)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4700824 2025-11-22] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [Navigraph Simlink] => C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe [1795296 2025-10-14] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [Navigraph Navdata Center] => C:\Program Files\Navigraph Navdata Center\Navigraph Navdata Center\Navigraph Navdata Center.exe [126290672 2023-03-23] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [SimBrief Downloader] => C:\Users\marka\AppData\Local\Programs\SimBrief Downloader\SimBrief Downloader.exe [131485608 2023-08-29] (Navigraph Kommanditbolag -> SimBrief)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [Navigraph Hub] => C:\Users\marka\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe [176372304 2025-11-21] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [com.messenger] => "C:\Users\marka\AppData\Local\Programs\Messenger\Messenger.exe" messenger://openAtLogin (No File)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [483888 2025-04-17] (AVB Disc Soft, SIA -> Disc Soft Limited)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41613784 2025-11-17] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\Run: [MicrosoftEdgeAutoLaunch_5FDF07C648A683ED6B498A6B9F471405] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3884064661-2057490552-529112882-1001\...\MountPoints2: {92749c11-22cd-11f0-9ec6-7cd30a82a504} - "E:\AUTORUN.EXE" 
HKLM\...\Windows x64\Print Processors\Canon iP2700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDA4.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDQ.DLL [482816 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS6300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDFQ.DLL [529408 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor iP2700 series: C:\Windows\system32\CNMLMA4.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5100 series: C:\Windows\system32\CNMLMDQ.DLL [1302016 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS6300 series: C:\Windows\system32\CNMLMFQ.DLL [959488 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON XP-530 Series 64MonitorBE: C:\Windows\system32\E_YLMBPME.DLL [187392 2018-06-15] (Seiko Epson Corporation) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\142.0.7444.176\Installer\chrmstp.exe [2025-11-26] (Google LLC -> Google LLC)
Startup: C:\Users\marka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fbw-simbridge.lnk [2022-09-27]
ShortcutTarget: fbw-simbridge.lnk -> C:\Users\marka\AppData\Local\Packages\Microsoft.FlightSimulator_8wekyb3d8bbwe\LocalCache\Packages\Community\flybywire-externaltools-simbridge\fbw-simbridge.exe (No File)
Startup: C:\Users\marka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\thunderbird.exe [2021-11-22] (Mozilla Corporation -> Mozilla Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {6B70BDE3-F873-432D-B837-3618558F49EC} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [3089768 2023-02-03] (Acer Incorporated -> ) -> C:\Program Files (x86)\Acer\Care Center\-auto
Task: {A4984E44-6217-4BEE-BB8B-380C9824730E} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41832 2023-02-03] (Acer Incorporated -> )
Task: {67E2419E-6F5D-497B-A9AF-3799261D1D57} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4956008 2023-02-03] (Acer Incorporated -> )
Task: {C9E190CE-4E96-472B-99F9-2F57D0092829} - System32\Tasks\AcerCMUpdateTask2.9.25180 => C:\Program Files (x86)\Acer\Amundsen\2.9.25180\awc.exe [97480 2025-06-24] (Acer Incorporated -> )
Task: {55C3A2F6-9777-4EA3-B4D2-9771F96ED52E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {0BC8EC37-0C64-4894-9327-431C40C80CBA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {582E6364-21C0-4D1C-9540-6A83E700EB29} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "1dd7c7e6-7376-42f8-984c-f76ea585bb05" --version "6.38.0.11537" --silent
Task: {74EDCA5F-A45D-4894-8013-926EE7121392} - System32\Tasks\CCleanerSkipUAC - marka => C:\Program Files\CCleaner\CCleaner.exe [39575776 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {AB92C030-C9C7-4262-9492-B32C7043F93D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.0{D0632D3B-E3AE-4EEA-93F4-BDCEAE711F84} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.0\updater.exe [7056536 2025-11-26] (Google LLC -> Google LLC)
Task: {86382FE4-2E46-436B-852C-96FD52205433} - System32\Tasks\Killer Startup Task => C:\Windows\explorer.exe [6089584 2025-10-16] (Microsoft Windows -> Microsoft Corporation)
Task: {E6E4C1E0-68FA-4A3C-B629-2758E2B74987} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2401792 2025-06-27] () [File not signed]
Task: {15976B8E-30CF-42F1-A607-E1A4F5B793C9} - System32\Tasks\Meta\Messenger-SL-Helper-S-1-5-21-3884064661-2057490552-529112882-1001 => C:\Users\marka\AppData\Local\Programs\Messenger\MessengerHelper.exe [2192632 2024-09-17] (Facebook, Inc. -> Meta Platforms, Inc.)
Task: {B0297C1E-FDFD-4FDC-872B-7403514DFD3A} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16667000 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {57C3B28B-7DFF-4B67-9C0C-7555B78D3F02} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28947776 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {C9A123B9-9AFB-44F2-A41B-E4C765E29436} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [70944 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0281990F-8C5D-459E-B7F2-95E143299D9F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28947776 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {D0BAABCE-9611-4742-8642-EA3CE5F091A6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311576 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {AB4BC7DB-80F4-415C-8227-78BAA07969A1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311576 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B647947-CB05-436A-B769-9698002E5A92} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1351384 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {3397E1F0-013A-4E98-B763-BA4A51F9F7E9} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16667000 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1D195DB-F138-49EA-9FE1-4E89565F94EF} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {3D5A841C-E55A-4DC7-97FD-8BD8A35940D7} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3884064661-2057490552-529112882-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {20617233-BF6E-438A-888E-FCC433AFEDD6} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {92A90FA2-D409-44C1-8502-F2ACB8F7E4A3} - System32\Tasks\Norton\Norton 360 Patcher => C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe [9436016 2025-11-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {1ADFBCE3-E91B-499E-85FF-42623F981C98} - System32\Tasks\Norton\Overseer => C:\Program Files\Common Files\Norton\Overseer\overseer.exe [2979552 2025-10-20] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {2476CE6A-9180-4725-BA76-90FC20FF8A5E} - System32\Tasks\Norton\Suite Emergency Update => C:\Program Files\Norton\Suite\AvEmUpdate.exe [5622952 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {A546F800-7715-43EA-A636-0C169AAED812} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3323936 2025-08-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1F2AEE02-FE55-4C60-837D-0A2A58FC59AA} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792 2022-08-15] (Acer Incorporated -> )
Task: {2A79155E-D3EF-4EB8-A5E1-A52D8B4800FF} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4395920 2025-11-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {2765D78C-F4B1-4419-B6C9-C475D1B1C34E} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3884064661-2057490552-529112882-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4395920 2025-11-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {296FE164-EB36-46CA-B962-28917C87D0BA} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3884064661-2057490552-529112882-1001 => C:\Program Files\Microsoft OneDrive\25.206.1021.0003\OneDriveLauncher.exe [727440 2025-11-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B4BC6C8C-F694-4E4C-9B38-B32006BCB6DC} - System32\Tasks\Power Button => C:\Program Files\Acer\Quick Access Service\ePowerButton_NB.exe [2771616 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {2F9E882A-91A4-4189-886B-37038AE56279} - System32\Tasks\PredatorSense => C:\Program Files\Acer\PredatorSense Service\PSLauncher.exe [580888 2019-10-09] (Acer Incorporated -> Acer Incorporated)
Task: {1C887298-3BBA-470A-B5F0-BE52443B8506} - System32\Tasks\PredatorSense UI => C:\Program Files\Acer\PredatorSense Service\PSLauncher.exe [580888 2019-10-09] (Acer Incorporated -> Acer Incorporated)
Task: {E894EE5C-2F28-45F3-BEEA-02E7439BA5D4} - System32\Tasks\Quick Access => C:\Program Files\Acer\Quick Access Service\QALauncher.exe [446624 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {B8C5A925-5BF6-495E-9696-4B9F7B2527AD} - System32\Tasks\RNIdle Task => C:\Windows\System32\drivers\RivetNetworks\Killer\RNIdleTask.exe [32680 2025-05-13] (Intel Corporation -> Intel)
Task: {40A1341C-81D7-40E3-81F3-B6D52B0F5732} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461472 2021-12-30] (Acer Incorporated -> Acer Incorporated)
Task: {28E67971-A3D6-494F-8ADE-D99DB650FAAC} - System32\Tasks\StorPSCTL => C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe [93504 2018-12-17] (Acer Incorporated -> Microsoft)
Task: {1990F380-C4B9-48CF-A5DA-FE90AB7C83B8} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [268096 2019-01-10] (Acer Incorporated -> Acer Incorporated)
Task: {72DD4C0E-B8A7-4EBE-A5B9-3988F954EF21} - System32\Tasks\UEIPInvitation => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [2211136 2019-01-10] (Acer Incorporated -> Acer Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\14130353: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\14130353: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\14130353: [DhcpDomain] home
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\1477966696: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\1477966696: [DhcpNameServer] 192.168.18.226
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\362603430313F5D696E65647F5334383265646: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\362603430313F5D696E65647F5334383265646: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\4457F602642756560225F6F6D637: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\4457F602642756560225F6F6D637: [DhcpNameServer] 10.128.128.128
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\75C414E413D25374D2E4432453C463: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\75C414E413D25374D2E4432453C463: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\845514755494F524533353F593631464F55374: [NameServer] 1.1.1.2,1.0.0.2
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\845514755494F524533353F593631464F55374: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\A75726E696F5F6274696E6163656: [NameServer] 1.1.1.1,208.67.222.222
Tcpip\..\Interfaces\{f71a6303-fe63-4f9d-a6c9-2284690a7f2e}\A75726E696F5F6274696E6163656: [DhcpNameServer] 192.168.31.1
Tcpip\..\Interfaces\{f8b84737-3a25-4aff-8379-a47a6c44803a}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{f8b84737-3a25-4aff-8379-a47a6c44803a}: [DhcpDomain] home

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-08]
Edge DownloadDir: Default -> C:\Users\marka\OneDrive\Desktop
Edge Notifications: Default -> hxxps://app.zoom.us; hxxps://my.norton.com; hxxps://www.colorland.com; hxxps://www.youtube.com
Edge HomePage: Default -> hxxp://www.seznam.cz/
Edge StartupUrls: Default -> "hxxps://seznam.cz/"
Edge Extension: (Norton Safe Web) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdaafgjhhjkdplpffldcncdignokfkbo [2025-10-26]
Edge Extension: (Podepisovací komponenta Signer) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhlaechjbkikglhincgjdmhceppidngc [2021-07-09]
Edge Extension: (VZP EP2) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\enihbohghjkaaemceeajckblkohjkidi [2024-01-29]
Edge Extension: (change-language) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fancfknaplihpclbhbpclnmmjcjanbaf [2025-11-27]
Edge Extension: (Dokumenty Google offline) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-26]
Edge Extension: (Edge relevant text changes) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-30]
Edge Extension: (Komponenta I.CA PKI Service) - C:\Users\marka\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kchhpancoebhkdgdafnifpkcacaopncp [2025-10-15]

FireFox:
========
FF DefaultProfile: uqoo7kek.default
FF ProfilePath: C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\uqoo7kek.default [2023-01-24]
FF NewTab: Mozilla\Firefox\Profiles\uqoo7kek.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-08-19 09:15:44&bName=
FF ProfilePath: C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release [2025-12-08]
FF DownloadDir: C:\Users\marka\OneDrive\Desktop
FF Homepage: Mozilla\Firefox\Profiles\hmnhhdwh.default-release -> www.seznam.cz
FF NewTab: Mozilla\Firefox\Profiles\hmnhhdwh.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-08-19 09:15:44&bName=
FF Notifications: Mozilla\Firefox\Profiles\hmnhhdwh.default-release -> hxxps://www.mediaexpert.pl; hxxps://pelipecky.cz; hxxps://smallseotools.com; hxxps://www.eurosport.co.uk; hxxps://www.skapiec.pl; hxxps://dailynewshungary.com; hxxps://www.lidl.cz; hxxps://y2mate.nu; hxxps://www.lupa.cz; hxxps://www.oneplay.cz
FF Extension: (Podepisovací komponenta Signer) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\ace.nmsigner@asseco.cz.xpi [2024-04-27]
FF Extension: (fx_cast) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\fx_cast@matt.tf.xpi [2024-07-31] [UpdateUrl:hxxps://hensm.github.io/fx_cast/updates.json]
FF Extension: (Komponenta I.CA PKI Service) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\icapkiservice@ica.cz.xpi [2025-10-08]
FF Extension: (uBlock Origin) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-06]
FF Extension: (Video DownloadHelper) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-06-04]
FF Extension: (To DeepL) - C:\Users\marka\AppData\Roaming\Mozilla\Firefox\Profiles\hmnhhdwh.default-release\Extensions\{db420ff1-427a-4cda-b5e7-7d395b9f16e1}.xpi [2025-03-04]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-11-17] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)

Chrome: 
=======
CHR Profile: C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default [2025-12-06]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-07-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-28]
CHR Extension: (Chrome Audio Capture) - C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfokdmfpdnokpmpbjhjbcabgligoelgp [2025-11-28]
CHR Extension: (Nástroje pro zadávání textu Google) - C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2025-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\marka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-12]
CHR HKU\S-1-5-21-3884064661-2057490552-529112882-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [makcojoppodhcgmmchohadhpkicoafka]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259432 2023-02-03] (Acer Incorporated -> Acer Incorporated)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
R2 cgm.ebooking-1; C:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe [39952 2023-12-11] (CompuGroup Medical Česká republika s.r.o. -> Microsoft)
R2 cgm.ecommunication-1; C:\CGMSERVER\bin\ecommunication-1\cgm.ecommunication-1.exe [93304 2021-11-12] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.)
R2 cgm.erepository-1; C:\CGMSERVER\bin\erepository-1\cgm.erepository-1.exe [27904 2024-07-30] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.)
R2 cgm.etrzby-1; C:\CGMSERVER\bin\etrzby-1\cgm.etrzby-1.exe [24416 2020-03-23] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.)
R2 cgm.jetty; C:\CGMSERVER\cgm.jetty.exe [110080 2020-01-22] (The Apache Software Foundation -> Apache Software Foundation)
R2 cgm.postgres; C:\CGMSERVER\bin\pgsql10\bin\pg_ctl.exe [89600 2018-05-08] (PostgreSQL Global Development Group) [File not signed]
R2 cgm.servercore; C:\CGMSERVER\bin\core\cgm.servercore.exe [29952 2024-08-30] (CompuGroup Medical Česká republika s.r.o. -> Microsoft)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13423504 2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4955696 2025-04-17] (AVB Disc Soft, SIA -> Disc Soft Limited)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAService.exe [133736 2025-08-27] (Intel Corporation -> Intel)
R2 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAUpdateService.exe [133224 2025-08-27] (Intel Corporation -> Intel)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.206.1021.0003\FileSyncHelper.exe [3606376 2025-11-17] (Microsoft Corporation -> Microsoft Corporation)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 hasplms; C:\Windows\system32\hasplms.exe [7236720 2018-11-29] (Gemalto, Inc. -> SafeNet, Inc.)
S3 HCS.MedConnect.Service; C:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe [46080 2016-11-03] (HCS GmbH) [File not signed]
S2 HCS.MEDCONNECT.SERVICEMANAGER; C:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe [91648 2016-11-03] (HCS GmbH) [File not signed]
S3 I.CA Maintenance Service; C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe [283904 2019-08-02] (Prvni certifikacni autorita, a.s. -> I.CA, a.s.)
S3 I.CA Maintenance Service2; C:\Program Files (x86)\I.CA\I.CA Maintenance2\ICAMaintenance.exe [299336 2021-02-08] (Prvni certifikacni autorita, a.s. -> I.CA, a.s.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-09-13] (Canon Inc. -> )
R3 Intel Network Helper Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\IntelNetworkHelperService.exe [159254960 2025-05-13] (Intel Corporation -> Intel)
R3 KAPSService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [78248 2025-05-13] (Intel Corporation -> Intel® Corporation)
R2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2515912 2025-05-13] (Intel Corporation -> Intel)
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2716072 2025-05-13] (Intel Corporation -> Intel)
R2 Killer Provider Data Helper Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerProviderDataHelperService.exe [1288616 2025-05-13] (Intel Corporation -> Intel)
R3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [78248 2025-05-13] (Intel Corporation -> Intel® Corporation)
R3 nllbIDSAgent; C:\Program Files\Norton\Suite\aswidsagent.exe [8090280 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Antivirus; C:\Program Files\Norton\Suite\NortonSvc.exe [1037992 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Firewall; C:\Program Files\Norton\Suite\afwServ.exe [2610856 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Tools; C:\Program Files\Norton\Suite\nllToolsSvc.exe [1091240 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 nortonAvDumper64; C:\Program Files\Norton\Suite\AvDump.exe [3990696 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 NortonWscReporter; C:\Program Files\Norton\Suite\wsc_proxy.exe [76552 2024-11-30] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvacsi.inf_amd64_c3a9319280e22172\Display.NvContainer\NVDisplay.Container.exe [1275544 2025-05-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.206.1021.0003\OneDriveUpdaterService.exe [3890536 2025-11-17] (Microsoft Corporation -> Microsoft Corporation)
R3 PSSvc; C:\Program Files\Acer\PredatorSense Service\PSSvc.exe [979736 2019-10-09] (Acer Incorporated -> Acer Incorporated)
S3 QALSvc; C:\Program Files\Acer\Quick Access Service\QALSvc.exe [466080 2022-01-03] (Acer Incorporated -> Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Quick Access Service\QASvc.exe [504480 2022-01-03] (Acer Incorporated -> Acer Incorporated)
R2 SamsungQuickShareService; C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_2.2.19.0_x64__wyx1vj98g3asy\QuickShareService\QuickShareService.exe [16499712 2025-09-26] (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> QuickShareService)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13109776 2020-07-02] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [305984 2019-01-10] (Acer Incorporated -> Acer Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 XtuService; C:\Program Files\Intel\Intel(R) Extreme Tuning Utility\Service\XtuService.exe [20120 2024-12-04] (Intel Corporation -> Intel(R) Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AcerAirplaneModeController; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [30168 2020-05-12] (Acer Incorporated -> Acer Incorporated)
R2 aksdf; C:\Windows\system32\drivers\aksdf.sys [389560 2018-11-29] (Gemalto, Inc. -> SafeNet, Inc.)
R2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [487352 2018-11-29] (Gemalto, Inc. -> SafeNet, Inc.)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2025-04-26] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2025-04-26] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [1970104 2018-11-29] (Gemalto, Inc. -> SafeNet, Inc.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [216512 2025-05-13] (Intel Corporation -> Rivet Networks, LLC.)
R0 nllArDisk; C:\WINDOWS\System32\drivers\nllArDisk.sys [21088 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllArPot; C:\WINDOWS\System32\drivers\nllArPot.sys [245344 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllbidsdriver; C:\WINDOWS\System32\drivers\nllbidsdriver.sys [397408 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbidsh; C:\WINDOWS\System32\drivers\nllbidsh.sys [302680 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbuniv; C:\WINDOWS\System32\drivers\nllbuniv.sys [85600 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllElam; C:\WINDOWS\System32\drivers\nllElam.sys [29144 2025-08-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 nllKbd; C:\WINDOWS\System32\drivers\nllKbd.sys [31320 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllMonFlt; C:\WINDOWS\System32\drivers\nllMonFlt.sys [286304 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllNetHub; C:\WINDOWS\System32\drivers\nllNetHub.sys [581208 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllRdr; C:\WINDOWS\System32\drivers\nllRdr2.sys [94304 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllRvrt; C:\WINDOWS\System32\drivers\nllRvrt.sys [71768 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSnx; C:\WINDOWS\System32\drivers\nllSnx.sys [892000 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSP; C:\WINDOWS\System32\drivers\nllSP.sys [1309280 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 nllStm; C:\WINDOWS\System32\drivers\nllStm.sys [213600 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllVmm; C:\WINDOWS\System32\drivers\nllVmm.sys [402528 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 nllWintun; C:\WINDOWS\System32\drivers\nllWintun.sys [40640 2024-12-13] (Microsoft Windows Hardware Compatibility Publisher -> NortonLifeLock Inc.)
S3 Secdrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [14304 1999-08-16] () [File not signed]
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 nllWireGuard; \SystemRoot\System32\drivers\nllWireguard.sys [X]
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-12-08 19:48 - 2025-12-08 19:49 - 000050181 _____ C:\Users\marka\OneDrive\Desktop\FRST.txt
2025-12-08 19:46 - 2025-12-08 19:46 - 002444288 _____ (Farbar) C:\Users\marka\OneDrive\Desktop\FRST64.exe
2025-12-08 17:17 - 2025-12-08 17:55 - 000000000 ____D C:\Users\marka\OneDrive\Desktop\Prsentaec
2025-12-08 17:04 - 2025-12-08 17:04 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-12-08 16:59 - 2025-12-08 16:59 - 000245336 _____ C:\Users\marka\OneDrive\Desktop\Sourozenci Baťkovi - Za Lanžhotem v poli.mp3.sfk
2025-12-07 11:20 - 2025-12-07 11:20 - 000000000 ____D C:\Users\marka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigraph Hub
2025-12-07 10:00 - 2025-12-07 11:19 - 000000000 ____D C:\Users\marka\OneDrive\Desktop\Fotky kniha
2025-12-06 17:02 - 2025-12-06 17:02 - 000246828 _____ C:\Users\marka\OneDrive\Desktop\Test_practice.pdf
2025-11-25 20:16 - 2025-11-25 20:15 - 000323752 _____ (Gen Digital Inc.) C:\WINDOWS\system32\nllBoot.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-12-08 19:49 - 2023-01-20 09:24 - 000000000 ____D C:\FRST
2025-12-08 19:45 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-08 19:44 - 2021-03-12 23:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-12-08 18:31 - 2021-12-27 22:29 - 000000000 ____D C:\Users\marka\AppData\Local\Norton
2025-12-08 18:26 - 2020-07-11 18:34 - 000000000 ____D C:\rendering
2025-12-08 18:16 - 2021-03-13 00:08 - 001565902 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-12-08 18:16 - 2019-12-07 15:41 - 000663696 _____ C:\WINDOWS\system32\perfh005.dat
2025-12-08 18:16 - 2019-12-07 15:41 - 000137412 _____ C:\WINDOWS\system32\perfc005.dat
2025-12-08 18:16 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2025-12-08 18:15 - 2021-12-17 13:35 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-12-08 18:12 - 2022-09-30 07:27 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-12-08 18:12 - 2022-09-30 07:27 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-12-08 18:10 - 2024-01-28 21:32 - 000000000 ____D C:\Users\marka\AppData\Roaming\navigraph-hub
2025-12-08 18:10 - 2022-02-01 20:28 - 000000000 ____D C:\Users\marka\AppData\Roaming\navigraph-desktop
2025-12-08 18:10 - 2021-03-13 00:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-12-08 18:10 - 2021-03-12 23:57 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-08 18:10 - 2020-07-16 11:50 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2025-12-08 18:10 - 2020-07-10 16:28 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2025-12-08 18:10 - 2020-07-10 15:47 - 000000000 __SHD C:\Users\marka\IntelGraphicsProfiles
2025-12-08 18:10 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-12-08 18:10 - 2019-11-26 20:17 - 000000000 ____D C:\ProgramData\Norton
2025-12-08 18:10 - 2019-11-26 20:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-08 18:10 - 2019-11-26 19:47 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-08 18:10 - 2019-11-26 19:34 - 000000000 ___HD C:\Intel
2025-12-08 18:09 - 2019-12-07 10:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2025-12-08 17:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-08 17:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-12-08 17:03 - 2019-11-26 20:12 - 000000000 ____D C:\Program Files\Microsoft Office
2025-12-08 16:48 - 2020-09-10 08:25 - 000000000 ____D C:\ProgramData\firebird
2025-12-07 11:23 - 2023-10-12 10:11 - 000000000 ____D C:\PRO-ATC-SR
2025-12-07 11:23 - 2022-02-01 13:11 - 000000000 ____D C:\Users\marka\AppData\Roaming\ABarthel
2025-12-07 11:22 - 2024-05-04 09:52 - 000000000 ____D C:\ProgramData\Fenix
2025-12-07 11:20 - 2022-01-24 20:00 - 000000000 ____D C:\Users\marka\AppData\Local\A
2025-12-07 11:20 - 2022-01-22 21:48 - 000000000 ____D C:\Users\marka\AppData\Roaming\FS2Crew Pushback Express
2025-12-07 11:20 - 2022-01-04 20:34 - 000000000 ____D C:\Users\marka\OneDrive\Desktop\MSFS programy
2025-12-07 11:04 - 2020-07-11 15:06 - 000000000 ____D C:\Users\marka\OneDrive\Desktop\Domácí video
2025-12-06 21:45 - 2021-04-09 15:54 - 000000000 ____D C:\Program Files (x86)\Steam
2025-12-06 20:41 - 2024-01-16 20:28 - 000000000 ____D C:\ProgramData\CanonIJPLM
2025-12-06 17:01 - 2020-07-11 17:45 - 000000000 ____D C:\Users\marka\AppData\Roaming\Microsoft\Word
2025-12-06 16:23 - 2020-07-20 21:29 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-03 20:28 - 2022-02-10 11:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-12-03 20:27 - 2020-07-10 16:28 - 000001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2025-11-29 23:01 - 2021-04-09 15:54 - 000000000 ____D C:\Users\marka\AppData\Local\Steam
2025-11-29 21:33 - 2021-03-13 00:04 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-11-29 21:33 - 2021-03-13 00:04 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-11-26 19:14 - 2023-06-12 20:23 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-11-26 07:54 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-11-26 07:54 - 2019-11-26 20:10 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-25 20:44 - 2021-10-06 11:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-11-25 20:44 - 2019-11-26 20:10 - 000001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-11-25 20:23 - 2022-10-14 10:46 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-11-25 20:20 - 2025-09-26 18:09 - 000436592 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_b.dll
2025-11-25 20:20 - 2024-12-03 20:55 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-11-25 20:20 - 2022-10-22 14:50 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-11-25 20:20 - 2022-10-22 14:50 - 000076152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-11-25 20:20 - 2021-11-23 18:54 - 000285040 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-11-25 20:20 - 2021-03-17 12:34 - 004581752 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-11-25 20:20 - 2021-03-17 12:34 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-11-25 20:20 - 2021-03-17 12:34 - 000166264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-11-25 20:19 - 2020-07-10 20:53 - 000000000 ____D C:\Users\marka\AppData\Local\CrashDumps
2025-11-25 20:19 - 2020-07-10 15:47 - 000000000 ____D C:\Users\marka\AppData\Local\Packages
2025-11-25 20:16 - 2024-11-30 10:23 - 000245344 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArPot.sys
2025-11-25 20:16 - 2024-11-30 10:21 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton
2025-11-25 20:15 - 2024-11-30 10:23 - 001309280 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSP.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000892000 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSnx.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000581208 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllNetHub.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000402528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllVmm.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000397408 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsdriver.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000302680 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsh.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000286304 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllMonFlt.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000094304 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRdr2.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000085600 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbuniv.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000071768 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRvrt.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000031320 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllKbd.sys
2025-11-25 20:15 - 2024-11-30 10:23 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArDisk.sys
2025-11-21 00:47 - 2021-09-11 20:17 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-11-19 19:44 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-11-17 23:42 - 2020-11-02 18:52 - 000000000 ____D C:\Users\marka\AppData\Roaming\Microsoft\Excel
2025-11-17 22:41 - 2025-02-05 23:18 - 000003546 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3884064661-2057490552-529112882-1001
2025-11-17 22:41 - 2021-12-12 20:21 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3884064661-2057490552-529112882-1001
2025-11-17 22:41 - 2021-03-13 00:04 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-11-17 22:41 - 2020-07-11 17:45 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-11-12 20:33 - 2020-07-10 23:18 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-11-12 20:30 - 2020-07-10 23:18 - 215625816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-11-12 20:20 - 2022-11-13 22:07 - 000000000 ____D C:\Program Files\dotnet
2025-11-12 20:20 - 2019-11-26 19:32 - 000000000 ____D C:\ProgramData\Package Cache
2025-11-12 20:19 - 2025-04-08 19:42 - 000000000 ____D C:\Program Files (x86)\dotnet
2025-11-12 20:12 - 2022-02-02 11:40 - 000001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigraph Simlink.lnk
2025-11-11 19:27 - 2020-07-10 16:52 - 000000000 ____D C:\Program Files (x86)\Dialog MIS
2025-11-08 01:44 - 2020-07-10 15:52 - 000000000 ____D C:\Users\marka\AppData\Local\D3DSCache
2025-11-08 01:38 - 2025-08-25 19:01 - 000000000 ____D C:\Users\marka\OneDrive\Documents\OpenTTD

==================== Files in the root of some directories ========

2023-03-04 12:49 - 2023-03-04 12:49 - 002752418 _____ () C:\Users\marka\cd_B_375.exe
2023-02-10 11:27 - 2023-02-10 11:27 - 000000025 _____ () C:\Users\marka\AppData\Roaming\alsoft.ini
2024-05-04 14:09 - 2024-05-04 14:16 - 000024576 _____ () C:\Users\marka\AppData\Roaming\EFB.db
2020-11-11 16:47 - 2020-11-11 16:52 - 000000664 _____ () C:\Users\marka\AppData\Roaming\OEMSDKHASH.txt
2024-08-20 23:22 - 2024-08-20 23:22 - 000000000 ___SH () C:\Users\marka\AppData\Local\LumaEmu
2020-11-30 21:47 - 2021-06-01 20:35 - 000007601 _____ () C:\Users\marka\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================