Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2026
Ran by kalou (administrator) on MIKI (Gigabyte Technology Co., Ltd. B650M AORUS ELITE AX ICE) (01-03-2026 21:35:16)
Running from C:\Users\kalou\Desktop\FRST64.exe
Loaded Profiles: kalou
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7840 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(6B825B3D-C59C-4D09-BF35-3822A8B96997 -> Kingston Technology Company, Inc.) C:\Program Files\WindowsApps\KingstonTechnologyCompany.FURYCTRL_2.0.65.0_x64__5myjd26we8sq4\FuryCTRL\FURYCTRL.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe
(C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2>
(C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe ->) (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <7>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\27.1.1.28_0\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\odscanui.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\NZXT CAM\NZXT CAM.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\cam_helper.exe <2>
(C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\crashpad_handler.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.AlwaysOnTop.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.Awake.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.ColorPickerUI.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.CropAndLock.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.FancyZones.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.PowerLauncher.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.AdvancedPaste.exe
(C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.Peek.UI.exe
(cmd.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Discord Inc. -> Discord Inc.) C:\Users\kalou\AppData\Local\Discord\app-1.0.9226\Discord.exe <6>
(DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atieclxx.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <32>
(explorer.exe ->) (Notion Labs, Inc. -> Notion Labs, Inc) C:\Users\kalou\AppData\Local\Programs\Notion\Notion.exe <7>
(explorer.exe ->) (NZXT, Inc. -> NZXT, Inc.) C:\Program Files\NZXT CAM\NZXT CAM.exe <5>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Windows\System32\GigabyteUpdateService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_e7cd8faef8863187\logi_lamparray_service.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MidiSrv.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\Kingston FURY\FuryCTRL_SDK\FuryControllerService.exe
(services.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\service.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9f05190a2befb920\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(svchost.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) C:\Program Files\GIGABYTE\Control Center\GCC.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3590.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2602.1001.5.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.229.1.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\Microsoft\OneDrive\26.022.0203.0006\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9f05190a2befb920\RtkAudUService64.exe [2150760 2024-05-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4143440 2025-12-02] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1091400 2026-01-26] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [501480 2025-12-09] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [155032 2024-05-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [NZXT.CAM] => C:\Program Files\NZXT CAM\NZXT CAM.exe [186397872 2026-02-26] (NZXT, Inc. -> NZXT, Inc.)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5760152 2026-01-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [24773784 2026-01-30] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [electron.app.Notion] => C:\Users\kalou\AppData\Local\Programs\Notion\Notion.exe [210984944 2026-02-19] (Notion Labs, Inc. -> Notion Labs, Inc)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1987904 2026-02-28] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [Figma Agent] => C:\Users\kalou\AppData\Local\FigmaAgent\figma_agent.exe [10086992 2025-12-02] (Figma, Inc. -> )
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [75280512 2026-01-13] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [MicrosoftEdgeAutoLaunch_B46889973E16FFCFD3595F21DE0839B5] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4342352 2026-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Run: [Discord] => C:\Users\kalou\AppData\Local\Discord\Update.exe [1596344 2026-02-23] (Discord Inc. -> Discord Inc.)
HKLM\...\Windows x64\Print Processors\Canon TS700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDFD.DLL [482816 2018-09-09] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS700 series: C:\WINDOWS\system32\CNMLMFD.DLL [910848 2018-09-09] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {F77A0CEF-0F92-4BBC-94BB-E5674502FEC2} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-kalousova.misa@outlook.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4F1E79BF-F6F7-47A2-A512-C696D9F26EBB} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {22D655B4-72C6-414E-A3AF-162B04428032} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [9818088 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {70FEA9DF-87CA-489B-8B19-7FEC68AE293E} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [672064 2023-11-16] (Advanced Micro Devices Inc. -> )
Task: {775675E7-49C7-4903-A6A4-828D218DDF80} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {114069CB-9C58-4D1B-9452-C82BF088A667} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {D777184D-BA1F-46F1-8A0D-EB6C72C3369F} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [184024 2024-07-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {7DECEA7A-8B1A-43F0-9DAF-C4E31841CC31} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\27.1.1.28_0\WatchDog.exe [1175072 2026-01-16] (Bitdefender SRL -> Bitdefender) -> C:\Program Files\Bitdefender Agent\27.1.1.28_0\repair
Task: {63E9E6DA-C609-47C2-98C7-3EA8B7BA334B} - System32\Tasks\DragonStart => C:\Program  -> Files (x86)\Realtek\Dragon\Dragon.exe
Task: {EF52C002-5F83-41CE-8EFA-88530F6B7BFF} - System32\Tasks\GCC => C:\Program Files\GIGABYTE\Control Center\GCC.exe [35403888 2024-06-27] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) -> C:\Program Files\GIGABYTE\Control Center\\-b
Task: {B5EDFDDC-E326-44C3-B948-F5250B81D977} - System32\Tasks\GigabyteSsdFirmwareUpdateTask => C:\Program Files\GIGABYTE\GBTSsdFirmwareUpdate\GNSSsdFwD.exe [945776 2024-06-19] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
Task: {8A4B2C8C-C700-4350-856D-7CCD0910E7E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {42126387-4861-4CE9-A115-BEE18C5C4A3C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9294D1FC-7047-4169-AECA-AA9F613BC984} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3A3C244F-24CA-4130-9051-BB43F9A55007} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3442307A-A31A-44E1-9442-C6A50E5E9558} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {897E853A-17B7-4C01-B95B-234711DCA718} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2399552 2026-02-28] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule
Task: {77E90105-F5AA-447D-A708-5E69D1A0E64B} - System32\Tasks\PowerToys\Autorun for kalou => C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe [1233464 2024-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {CE987982-B071-4DB7-96AE-B0FDEF8FFE6A} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60632 2024-07-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {85170120-6848-4ADF-A1D4-DFF29594A1B4} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [324312 2024-07-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{ca736385-ac86-4687-994c-2f7ac44adc3a}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{ca736385-ac86-4687-994c-2f7ac44adc3a}: [DhcpDomain] home
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}: [DhcpDomain] home
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}\4556C656B6F6D6D2832333331343: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}\4556C656B6F6D6D2832333331343: [DhcpDomain] home
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}\94E6475627E65647F554131313: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}\94E6475627E65647F554131313: [DhcpDomain] home
Tcpip\..\Interfaces\{d3bc5032-92c9-4cce-971a-392013d46a56}\A4944595: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems Incorporated -> Adobe Systems)

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\kalou\AppData\Local\Microsoft\Edge\User Data\Default [2026-03-01]
Edge Extension: (Dokumenty Google offline) - C:\Users\kalou\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-03-01]
Edge Extension: (Edge relevant text changes) - C:\Users\kalou\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-03-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [9824744 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3493272 2025-01-10] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3318400 2025-01-28] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 BDAppSrv; C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe [851704 2025-12-09] (Bitdefender SRL -> Bitdefender)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-02-24] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-02-24] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2966176 2023-07-20] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2426992 2025-07-03] (Bitdefender SRL -> Bitdefender)
R2 BDSafepaySrv; C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe [851704 2026-02-24] (Bitdefender SRL -> Bitdefender)
R2 bdvpnservice; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [515928 2025-12-04] (Bitdefender SRL -> Bitdefender)
R2 CAMService; C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\service.exe [567472 2026-02-26] (NZXT, Inc. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-08-12] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [960752 2024-08-05] (EasyAntiCheat Oy -> Epic Games, Inc.)
R2 FURYController_Service; C:\Program Files (x86)\Kingston Fury\FuryCTRL_SDK\FURYControllerService.exe [154776 2026-01-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [20112536 2026-01-30] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_e7cd8faef8863187\logi_lamparray_service.exe [11524960 2025-12-04] (Logitech Inc -> Logitech, Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 NGS; C:\ProgramData\Nexon\NGS\NGService.exe [3233216 2024-07-11] (NEXON Korea Corporation -> NEXON Korea Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2399552 2026-02-28] (Overwolf Ltd -> Overwolf LTD)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [759712 2026-01-16] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-11-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [22679856 2024-10-25] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [321784 2026-02-24] (Bitdefender SRL -> Bitdefender)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [62279264 2025-12-02] (Riot Games, Inc. -> Riot Games, Inc.)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-02-24] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 GigabyteUpdateService; C:\WINDOWS\system32\GigabyteUpdateService.exe [878840 2026-03-01] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACE-BASE; C:\WINDOWS\system32\drivers\ACE-BASE.sys [4211872 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrmgr.sys [36040 2024-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R2 AMDRyzenMasterDriverV26; C:\Windows\system32\AMDRyzenMasterDriver.sys [60576 2024-07-14] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
S3 amduw23g; C:\WINDOWS\System32\DriverStore\FileRepository\u0405988.inf_amd64_4848c4ddcd38443b\B405281\amdkmdag.sys [106157448 2024-08-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amduw23g-420529-5f0fe368; C:\WINDOWS\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\amdkmdag.sys [101819840 2025-10-27] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 atc; C:\WINDOWS\System32\drivers\atc.sys [8939096 2026-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci4; C:\WINDOWS\System32\drivers\bddci4.sys [1383512 2025-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [24568 2023-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
S3 bdprivmon; C:\WINDOWS\System32\drivers\bdprivmon.sys [49208 2025-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 bduefiscan; C:\WINDOWS\System32\drivers\bduefiscan.sys [53808 2025-08-13] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R3 bdvpn_callout; C:\Program Files\Bitdefender\Bitdefender VPN\Drivers\x64\netfilter.sys [119392 2025-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [577536 2025-08-06] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-08-06] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-06] (Microsoft Corporation) [File not signed]
S3 cpuz160; C:\WINDOWS\temp\cpuz160\cpuz160_x64.sys [44696 2025-11-02] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R3 cpuz161; C:\ProgramData\CPUID Software\sdk\HaVdCVIqRaulpd [44680 2026-02-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 gdrv3; C:\Windows\system32\drivers\gdrv3.sys [52432 2024-08-01] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
R1 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1793112 2025-06-26] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
R3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [43160 2026-03-01] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 Ignisv2; C:\WINDOWS\System32\drivers\ignisv2.sys [848456 2025-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2025-02-22] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-09-18] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2024-08-02] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-09-18] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_e7cd8faef8863187\logi_lamparray.sys [89440 2025-12-04] (Logitech Inc -> Logitech, Inc.)
R3 NTIOLib_KSFX; C:\Program Files (x86)\Kingston Fury\FuryCTRL_SDK\NTIOLib_X64.sys [31568 2026-01-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_5a99eeac5a197cd5\rt25cx21x64.sys [845272 2024-11-05] (Realtek Semiconductor Corp. -> Realtek)
R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [70712 2021-09-29] (Realtek Semiconductor Corp. -> Realtek)
R2 Trufos; C:\WINDOWS\System32\drivers\Trufos.sys [630320 2025-08-06] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [44293288 2025-12-01] (Riot Games, Inc. -> Riot Games, Inc.)
R0 vlflt; C:\WINDOWS\System32\drivers\vlflt.sys [1445440 2025-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 VoiceAIDriver; C:\WINDOWS\System32\DriverStore\FileRepository\voiceaidriver.inf_amd64_214d6aacf9c41414\voiceaidriver.sys [73616 2023-06-20] (Voice AI LLC -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-08-06] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [X] <==== ATTENTION

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-03-01 21:35 - 2026-03-01 21:35 - 000034060 _____ C:\Users\kalou\Desktop\FRST.txt
2026-03-01 21:34 - 2026-03-01 21:35 - 000000000 ____D C:\FRST
2026-03-01 21:33 - 2026-03-01 21:33 - 002445312 _____ (Farbar) C:\Users\kalou\Desktop\FRST64.exe
2026-03-01 21:19 - 2026-03-01 21:19 - 000000000 ____D C:\Users\kalou\AppData\Local\D3DSCache
2026-03-01 21:08 - 2026-03-01 21:08 - 011536576 _____ (VS Revo Group ) C:\Users\kalou\Downloads\revosetup.exe
2026-03-01 21:08 - 2026-03-01 21:08 - 000001079 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2026-03-01 21:08 - 2026-03-01 21:08 - 000000000 ____D C:\Users\kalou\AppData\Local\VS Revo Group
2026-03-01 21:08 - 2026-03-01 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2026-03-01 21:08 - 2026-03-01 21:08 - 000000000 ____D C:\Program Files\VS Revo Group
2026-03-01 20:58 - 2026-03-01 20:58 - 000203568 _____ C:\ProgramData\vpn.1772395058.bdinstall.v2.bin
2026-03-01 20:57 - 2026-03-01 20:57 - 000002119 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2026-03-01 20:57 - 2026-03-01 20:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN
2026-03-01 20:50 - 2026-03-01 20:50 - 000000318 _____ C:\WINDOWS\system32\httpproxy.json
2026-03-01 20:47 - 2026-03-01 20:47 - 000725308 _____ C:\WINDOWS\system32\perfh005.dat
2026-03-01 20:47 - 2026-03-01 20:47 - 000157160 _____ C:\WINDOWS\system32\perfc005.dat
2026-03-01 20:46 - 2026-03-01 20:51 - 000000000 ____D C:\Users\kalou\AppData\Local\Discord
2026-03-01 20:46 - 2026-03-01 20:46 - 000002229 _____ C:\Users\kalou\Desktop\Discord.lnk
2026-03-01 20:46 - 2026-03-01 20:46 - 000000000 ____D C:\Users\kalou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2026-03-01 20:45 - 2026-03-01 20:45 - 123132344 _____ (Discord Inc.) C:\Users\kalou\Downloads\DiscordSetup.exe
2026-03-01 20:44 - 2026-03-01 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2026-03-01 20:44 - 2026-03-01 20:44 - 000650992 _____ C:\ProgramData\cl.1772394199.bdinstall.v2.bin
2026-03-01 20:44 - 2026-03-01 20:44 - 000136552 _____ C:\ProgramData\cl.kit.1772394199.bdinstall.v2.bin
2026-03-01 20:44 - 2026-03-01 20:44 - 000002374 _____ C:\Users\Public\Desktop\Bitdefender.lnk
2026-03-01 20:43 - 2026-03-01 20:57 - 000000000 ____D C:\Program Files\Bitdefender
2026-03-01 20:43 - 2026-03-01 20:54 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2026-03-01 20:43 - 2026-03-01 20:43 - 000000000 ____D C:\Users\kalou\AppData\Roaming\Bitdefender
2026-03-01 20:41 - 2026-03-01 20:41 - 021514816 _____ C:\Users\kalou\Downloads\bitdefender_avfree.exe
2026-03-01 20:41 - 2026-03-01 20:41 - 000143544 _____ C:\ProgramData\agent.update.1772394114.bdinstall.v2.bin
2026-03-01 20:38 - 2026-03-01 20:38 - 000000330 _____ C:\WINDOWS\system32\.crusader
2026-03-01 20:35 - 2026-03-01 20:39 - 000000000 ____D C:\ProgramData\HitmanPro
2026-03-01 20:35 - 2026-03-01 20:35 - 014701656 _____ (Sophos B.V.) C:\Users\kalou\Downloads\HitmanPro_x64.exe
2026-03-01 20:19 - 2026-03-01 20:20 - 000270158 _____ C:\WINDOWS\ntbtlog.txt
2026-03-01 20:19 - 2026-03-01 20:19 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2026-03-01 20:14 - 2026-03-01 20:50 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC
2026-03-01 20:09 - 2026-03-01 20:09 - 000001870 _____ C:\Users\kalou\Desktop\Rkill.txt
2026-03-01 20:07 - 2026-03-01 20:07 - 000098636 _____ C:\ProgramData\agent.uninstall.1772392052.bdinstall.v2.bin
2026-03-01 20:05 - 2026-03-01 20:42 - 000003850 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2026-03-01 20:05 - 2026-03-01 20:07 - 000000000 ____D C:\ProgramData\BDLogging
2026-03-01 20:05 - 2026-03-01 20:05 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
2026-03-01 20:04 - 2026-03-01 20:44 - 000000000 ____D C:\ProgramData\Bitdefender
2026-03-01 20:04 - 2026-03-01 20:04 - 000000000 ____D C:\Users\kalou\AppData\Roaming\Bitdefender Security App
2026-03-01 20:03 - 2026-03-01 20:42 - 000000000 ____D C:\Program Files\Bitdefender Agent
2026-03-01 20:03 - 2026-03-01 20:03 - 000224684 _____ C:\ProgramData\agent.1772391740.bdinstall.v2.bin
2026-03-01 20:03 - 2026-03-01 20:03 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2026-03-01 19:55 - 2026-03-01 19:55 - 000000000 ____D C:\AdwCleaner
2026-03-01 19:35 - 2026-03-01 19:35 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2026-03-01 19:34 - 2026-03-01 20:26 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-02-28 12:44 - 2026-03-01 20:05 - 000000000 ____D C:\ProgramData\nt_authenticate_rtm
2026-02-19 21:56 - 2026-02-19 21:56 - 058237793 _____ C:\Users\kalou\Downloads\UnacknowledgedVirtueofTheLastUnicornEnglishSummary.pdf.crdownload
2026-02-15 18:58 - 2026-02-15 19:07 - 000000000 ____D C:\Users\kalou\Documents\Grimoire
2026-02-15 18:57 - 2026-02-15 19:10 - 000000000 ____D C:\Users\kalou\AppData\Roaming\obsidian
2026-02-15 18:57 - 2026-02-15 18:57 - 000002263 _____ C:\Users\kalou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Obsidian.lnk
2026-02-15 18:57 - 2026-02-15 18:57 - 000002255 _____ C:\Users\kalou\Desktop\Obsidian.lnk
2026-02-15 18:57 - 2026-02-15 18:57 - 000000000 ____D C:\Users\kalou\AppData\Local\obsidian-updater
2026-02-15 16:31 - 2026-02-15 16:31 - 000000000 ____D C:\WINDOWS\system32\braille-tables
2026-02-14 14:27 - 2026-02-14 14:27 - 000380727 _____ C:\Users\kalou\Downloads\epos-o-gilgames--ovi (1).pdf.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 006291456 _____ C:\Users\kalou\Downloads\Nepotvrzeno 180738.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 006291456 _____ C:\Users\kalou\Downloads\Nepotvrzeno 171186.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 001469786 _____ C:\Users\kalou\Downloads\Nepotvrzeno 441378.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 945291.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 881116.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 854505.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 774247.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 631519.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 616993.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 441920.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 227464.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 201808.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 158230.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 154853.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 154367.crdownload
2026-02-07 00:33 - 2026-02-07 00:33 - 000000000 _____ C:\Users\kalou\Downloads\Nepotvrzeno 134492.crdownload
2026-02-07 00:32 - 2026-02-07 00:38 - 000000000 ____D C:\Users\kalou\AppData\Roaming\koodo-reader
2026-02-07 00:32 - 2026-02-07 00:32 - 000002413 _____ C:\Users\kalou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Koodo Reader.lnk
2026-02-07 00:32 - 2026-02-07 00:32 - 000002405 _____ C:\Users\kalou\Desktop\Koodo Reader.lnk
2026-02-07 00:32 - 2026-02-07 00:32 - 000000000 ____D C:\Users\kalou\AppData\Local\koodo-reader-updater
2026-01-31 12:53 - 2026-01-31 12:53 - 000000856 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2026-01-31 12:53 - 2026-01-31 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2026-01-31 12:53 - 2026-01-31 12:53 - 000000000 ____D C:\ProgramData\LGHUBData
2026-01-31 12:53 - 2026-01-31 12:53 - 000000000 ____D C:\Program Files\LGHUB

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-03-01 21:27 - 2024-10-31 23:54 - 000000000 ____D C:\Users\kalou\AppData\Roaming\Notion
2026-03-01 21:26 - 2024-08-02 00:36 - 000000000 ____D C:\Program Files (x86)\Steam
2026-03-01 21:18 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-03-01 21:14 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-01 21:04 - 2024-11-21 23:04 - 000000000 ____D C:\Program Files (x86)\Overwolf
2026-03-01 20:57 - 2024-09-09 09:28 - 000000000 ____D C:\Program Files\dotnet
2026-03-01 20:57 - 2024-08-01 23:29 - 000000000 ____D C:\ProgramData\Package Cache
2026-03-01 20:50 - 2025-02-15 22:19 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2026-03-01 20:49 - 2024-04-01 08:21 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2026-03-01 20:47 - 2025-08-06 04:40 - 001719034 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-01 20:47 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-01 20:46 - 2024-08-02 08:30 - 000000000 ____D C:\Users\kalou\AppData\Roaming\discord
2026-03-01 20:44 - 2024-08-01 23:15 - 000000000 ____D C:\Users\kalou\AppData\Local\Packages
2026-03-01 20:44 - 2024-08-01 23:05 - 000000000 ____D C:\ProgramData\Packages
2026-03-01 20:44 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-03-01 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-03-01 20:42 - 2025-12-11 12:21 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2026-03-01 20:40 - 2025-08-06 04:38 - 000003942 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-01 20:40 - 2025-08-06 04:38 - 000003426 _____ C:\WINDOWS\system32\Tasks\GCC
2026-03-01 20:40 - 2025-08-06 04:38 - 000003096 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2026-03-01 20:40 - 2025-08-06 04:38 - 000003088 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2026-03-01 20:40 - 2025-08-06 04:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-01 20:40 - 2025-08-06 04:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\PowerToys
2026-03-01 20:40 - 2024-11-12 17:18 - 000000000 ____D C:\Program Files\TeamViewer
2026-03-01 20:40 - 2024-08-02 05:40 - 000878840 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteUpdateService.exe
2026-03-01 20:40 - 2024-08-02 05:40 - 000012288 ___SH C:\DumpStack.log.tmp
2026-03-01 20:40 - 2024-08-01 23:31 - 000000000 ____D C:\Users\kalou\AppData\Roaming\NZXT CAM
2026-03-01 20:40 - 2024-08-01 23:16 - 000000000 ___RD C:\Users\kalou\OneDrive
2026-03-01 20:40 - 2024-08-01 23:15 - 000089336 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteDownloadAssistant.exe
2026-03-01 20:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-03-01 20:39 - 2024-08-02 05:40 - 000906528 _____ C:\WINDOWS\system32\wpbbin.exe
2026-03-01 20:39 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-03-01 20:01 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-03-01 19:40 - 2024-08-02 05:40 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-01 19:40 - 2024-08-02 05:40 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-03-01 19:38 - 2025-12-11 12:21 - 134222904 _____ C:\WINDOWS\392667600.dat
2026-03-01 17:43 - 2025-08-06 04:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-03-01 13:01 - 2025-02-13 15:08 - 000000000 ____D C:\Users\kalou\AppData\Local\Adobe
2026-02-28 22:42 - 2025-08-06 04:38 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-02-28 22:42 - 2025-08-06 04:38 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-02-28 10:57 - 2024-08-01 23:31 - 000000000 ____D C:\Program Files\NZXT CAM
2026-02-26 15:12 - 2025-08-06 04:38 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1517938706-1828810823-68529143-1001
2026-02-26 15:12 - 2025-08-06 04:38 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1517938706-1828810823-68529143-1001
2026-02-26 15:12 - 2025-08-06 04:38 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1517938706-1828810823-68529143-1001
2026-02-26 15:12 - 2024-08-01 23:16 - 000002379 _____ C:\Users\kalou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-02-24 17:16 - 2025-12-11 17:33 - 000000000 ____D C:\Users\kalou\Documents\Stitches
2026-02-23 18:15 - 2024-08-01 23:31 - 000000000 ____D C:\Users\kalou\AppData\Local\AMD_Common
2026-02-16 02:26 - 2025-08-06 04:35 - 000000000 ____D C:\Users\kalou
2026-02-16 02:26 - 2024-08-02 08:33 - 000000000 ____D C:\Users\kalou\AppData\Roaming\G HUB
2026-02-15 17:03 - 2024-08-02 08:33 - 000000000 ____D C:\Users\kalou\AppData\Roaming\lghub
2026-02-15 16:51 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2026-02-15 16:33 - 2025-08-06 04:35 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-02-15 16:32 - 2025-08-06 04:35 - 000297264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-02-15 16:31 - 2025-12-14 05:25 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-02-15 16:31 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2026-02-15 16:31 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-02-15 16:31 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-02-15 16:31 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-02-15 16:31 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-02-15 16:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-02-15 16:31 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2026-02-10 23:08 - 2025-08-06 04:37 - 003276288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-02-10 23:04 - 2024-08-03 10:04 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-02-10 23:04 - 2024-08-03 01:27 - 221154392 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-02-10 22:58 - 2024-08-02 05:40 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-02-07 00:26 - 2024-08-01 23:16 - 000000000 ____D C:\Users\kalou\AppData\Local\PlaceholderTileLogoFolder
2026-02-02 17:01 - 2025-02-19 15:35 - 000000000 ____D C:\Users\kalou\AppData\Roaming\.minecraft
2026-01-31 12:53 - 2024-08-02 08:33 - 000000000 ____D C:\Users\kalou\AppData\Local\LGHUB

==================== Files in the root of some directories ========

2025-02-13 15:11 - 2025-04-09 14:33 - 000000034 _____ () C:\Users\kalou\AppData\Roaming\AdobeWLCMCache.dat
2025-11-27 20:22 - 2025-11-27 20:22 - 000000048 ____R () C:\Users\kalou\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
2024-12-06 18:22 - 2024-12-06 18:22 - 000000048 ____R () C:\Users\kalou\AppData\Local\A26739B46985BC635A27BEC85FB85E06
2025-02-17 15:03 - 2025-02-17 15:03 - 000000000 _____ () C:\Users\kalou\AppData\Local\oobelibMkey.log
2025-08-19 00:16 - 2025-08-19 00:16 - 000002996 _____ () C:\Users\kalou\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================