Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2026
Ran by Vrbovi (administrator) on LAPTOP-EDE9DTIG (HP OMEN by HP Laptop 15-dc1xxx) (07-09-2026 09:18:39)
Running from C:\Users\1roma\OneDrive\Plocha\FRST64.exe
Loaded Profiles: Vrbovi
Platform: Microsoft Windows 11 Home Version 25H2 26200.9168 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.40.161.1\mc-web-view.exe
(C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.40.161.1\vpn\mc-vpn.exe
(C:\Program Files\McAfee\WPS\1.40.161.1\mc-web-view.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\wa_3rd_party_host_32.exe
(C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\wa_3rd_party_host_64.exe <2>
(C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (GN Hearing A/S -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\prism\SteelSeriesPrism.exe
(C:\Program Files\SteelSeries\GG\SteelSeriesGGEZ.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe
(C:\Program Files\SteelSeries\GG\SteelSeriesGGEZ.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe
(C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(CANON INC. -> CANON INC.) C:\Windows\System32\spool\drivers\x64\3\CNAP3LAK.EXE
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.40.161.1\extnhost\mc-extn-browserhost.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\BridgeCommunication.exe <2>
(GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\SteelSeriesGGEZ.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16>
(HP Inc. -> HP Inc.) C:\Program Files\HP\HP Media Network\HPMediaNetwork.exe
(HP Inc. -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe
(HP Inc. -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2608.3.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\OmenCommandCenterBackground.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe <10>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <4>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_3eb5ba20f4e575e5\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <3>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Conexant Systems LLC -> Conexant Systems LLC.) C:\Windows\System32\CxAudioSvc.exe
(services.exe ->) (Conexant Systems LLC -> Synaptics Incorporated.) C:\Windows\System32\SynAudSrv.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (HP Inc. -> DTS Inc.) C:\Windows\System32\DTS\HP\APO4x\DtsHPXV2Apo4Service.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ef460d1f2a35fc16\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_38ec91e432e20182\x64\OmenCap\OmenCap.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7aa6ca9dbb25bff8\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_86dc7f4c001ddecd\RstMwService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_3eb5ba20f4e575e5\Display.NvContainer\NVDisplay.Container.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(sihost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENLightStudio_1.0.69.0_x64__v10z8vjag6ke6\LightStudio-ui\LightStudio-background.exe
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(spool\drivers\x64\3\CNAP3LAK.EXE ->) (CANON INC. -> CANON INC.) C:\Windows\System32\spool\drivers\x64\3\CNABHSWD.EXE
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\LightStudioHelper\LightStudioHelper.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\Overlay\OverlayHelper.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\ProgramData\McAfee\wps\content\neo-core\26.7.0.146\mc-neo-host.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2608.1001.17.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.380.2.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.4.0.0_x64__8wekyb3d8bbwe\PushNotificationsLongRunningTask.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\wuaucltcore.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.26100.9156_none_a546383f7734e5e5\TiWorker.exe
(svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe
(SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1141544 2020-09-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGGEZ.exe [195640 2026-08-24] (GN Hearing A/S -> SteelSeries A/S)
HKLM\...\Run: [CNAP3 Launcher] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\CNAP3LAK.EXE [228520 2012-06-13] (CANON INC. -> CANON INC.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2023-07-07] (Adobe Inc. -> )
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe (No File)
HKU\S-1-5-20\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe (No File)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [HPSEU_Host_Launcher] => C:\Program Files\HP\HP System Event Utility\Host Launcher\HpseuHostLauncher.exe [545864 2025-11-09] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5775512 2026-09-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32706512 2022-08-21] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2539536 2026-08-12] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [14359888 2024-11-12] (GOG  sp. z o.o -> GOG.com)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [46787544 2026-08-10] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [29014864 2026-05-12] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3903077161-848237127-2748454431-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKLM\...\Print\Monitors\CNAP3 Monitor: C:\windows\system32\CNAP3SMD.DLL [1654272 2013-10-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\...\AppCompatFlags\Custom\AsusDialService.exe: [{22221111-1111-1111-1111-111111111111}.sdb] -> Microsoft Windows Application Compatibility Fix Database
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\152.0.7977.77\Installer\chrmstp.exe [7924888 2026-09-04] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> 
Startup: C:\Users\1roma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2026-02-27]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {E5BEC141-9719-44FF-B02E-A29D13DFB797} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {2215111D-9A35-4265-8E76-EDD9810C3CD1} - System32\Tasks\Canon\OIPPESP\Canon OIP Product Extended Survey Program => C:\Program Files\Canon\OIPPESP\Cnpspcnt.exe [1829152 2022-11-24] (CANON INC. -> CANON INC.) -> /Config:"C:\Program Files\Canon\OIPPESP\CnpspCfg.xml"
Task: {152DDD9C-3F78-48F3-A6B8-35A10E86DDB1} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E72068FA-C53C-4E71-80B9-64F1C68B4C6E} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31056 2026-05-12] (Garmin International, Inc. -> )
Task: {E5FFFFAD-A78B-40BF-8670-2777CF08D2CF} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem152.0.7933.0{8E41CF70-722D-4344-B14A-E2599B29AF10} => C:\Program Files (x86)\Google\GoogleUpdater\152.0.7933.0\updater.exe [9512088 2026-07-05] (Google LLC -> Google LLC)
Task: {2AC6DC6C-D1B8-4A25-BA6E-C974DDAF8C4E} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {63EF2A30-9A7E-4B59-A325-C22F03C84B5E} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {0EEF36E8-D0DD-4320-A32B-6D19EEB65061} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {129E294F-5A22-4A3B-8CEC-9A65DD6ABE28} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {4416673C-8609-4C31-A8FD-1CDC14F971D2} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {C805115C-19B9-4CF8-8B4E-A7AA13E2A665} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {E1472F87-190A-4003-AB2E-9DEAF54F0CDD} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {942F4DBA-98F1-4645-BF18-FC9DFC568655} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {8F2BF3EA-5C86-4A2E-A1AA-0A5932A74240} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {F6CDE3B0-CD56-439E-9204-852021BC6F8A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [344064 2026-08-12] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {E185FB6F-F2F0-4262-BC8A-664B0870075D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-16] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {D0EDB23E-900E-430F-A174-B9F89DC9AF78} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-16] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {F3DB1117-7A74-4899-8AE9-D9BD7B8260A4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1025096 2026-07-02] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {F9FE87DA-46BF-46D1-896E-BA305B3DDE50} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2026-07-02] (HP Inc. -> HP Inc.)
Task: {71797B98-D129-4B2D-8DD5-366FC8E628CC} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-10-14] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {22ED75C0-E548-45A9-8586-F51C164459D7} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95752 2026-08-13] (HP Inc. -> HP Inc.)
Task: {477A2BF0-B464-4C70-8E6A-A1DA27F3795C} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95752 2026-08-13] (HP Inc. -> HP Inc.)
Task: {98CD3C7D-464D-4395-981E-E8E8A5926198} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644984 2018-07-18] (HP Inc. -> HP Inc.)
Task: {10C864E2-CEBC-4767-B75B-A1693B995304} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [225984 2018-09-06] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {19950D1E-41ED-401A-95F3-B019049523BE} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [225984 2018-09-06] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {E4BB2467-06D6-4327-A2C0-465762D0A4DE} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [225984 2018-09-06] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {99139019-34D4-48B7-AC6B-ABCA7930BD4B} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2308800 2018-09-06] (Intel(R) Client Connectivity Division SW -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {98C13BD7-8863-4085-8770-CF1F18CFBBDD} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => C:\windows\system32\sc.exe [102400 2025-10-14] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {6DD0BCE0-4698-4EE6-A685-BD536B7BC796} - System32\Tasks\LightStudioHelper => C:\Program Files\HP\LightStudioHelper\LightStudioHelper.exe [73224 2026-09-07] (HP Inc. -> HP Inc.)
Task: {2ACE57F6-BA4A-4DB8-B3D8-13DCB1E6AD88} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {2ACE57F6-BA4A-4DB8-B3D8-13DCB1E6AD88} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {48ACD3FB-74D6-4AEC-A1C2-8EABC7EB455A} - System32\Tasks\McAfee\WPS\McAfee Anti-Tracker Scanner => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {48ACD3FB-74D6-4AEC-A1C2-8EABC7EB455A} - System32\Tasks\McAfee\WPS\McAfee Anti-Tracker Scanner => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {AFCA6565-5E9D-43BA-990A-840FD21AC01A} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {AFCA6565-5E9D-43BA-990A-840FD21AC01A} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {413E7129-338F-4765-A2DD-37BB2F63C121} - System32\Tasks\McAfee\WPS\McAfee Fake Alert Blocker => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {ED074EBE-E119-49B1-999F-81B612B106CB} - System32\Tasks\McAfee\WPS\McAfee Health Check => C:\Program Files\McAfee\wps\1.40.161.1\sustainability\mc-sustainability.exe [2173072 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {07171B8C-A38F-443C-B496-05DD27A1CB98} - System32\Tasks\McAfee\WPS\McAfee Hotfix => C:\Program Files\McAfee\wps\1.40.161.1\dad\mc-dad.exe [2796968 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {FA87B1C5-9107-4FF3-AB6D-60C6EB584A5D} - System32\Tasks\McAfee\WPS\McAfee Message Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {FA87B1C5-9107-4FF3-AB6D-60C6EB584A5D} - System32\Tasks\McAfee\WPS\McAfee Message Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {8C0D1EBA-2EC7-4930-AFE0-CCCE3455DA39} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {8C0D1EBA-2EC7-4930-AFE0-CCCE3455DA39} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {9EBC540E-EC86-44FF-886E-ED5EB9D0C069} - System32\Tasks\McAfee\WPS\McAfee restart of PC => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {9EBC540E-EC86-44FF-886E-ED5EB9D0C069} - System32\Tasks\McAfee\WPS\McAfee restart of PC => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {684E351C-1E84-4031-80D4-836ECAFFAB92} - System32\Tasks\McAfee\WPS\McAfee Scheduled AV Scan => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {007D40BF-51B1-4E85-80D1-008EB4F202B4} - System32\Tasks\McAfee\WPS\McAfee Scheduled Tracker Remover => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {0366D845-AA26-4F42-A7D0-FF47A925DDDA} - System32\Tasks\McAfee\wps\McAfee Updater => {81A7CB63-BB07-4DAD-8E72-07B3A9BB08E2} C:\Program Files\McAfee\wps\1.40.161.1\mc-update.exe [3463792 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {7443DD63-BC82-42D0-8617-FAA53F4158FB} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {7443DD63-BC82-42D0-8617-FAA53F4158FB} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
Task: {DCF44F7D-B373-4D06-BBBB-C34D804D511F} - System32\Tasks\McAfee\WPS\McAfee Windows Notification Token => C:\Program Files\McAfee\WPS\1.40.161.1\mc-wns-client\mc-wns-client.exe [1133312 2026-05-25] (McAfee, LLC -> )
Task: {AC6B2B70-6796-4F87-9DC7-75AB8217C2DA} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16470320 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {4D88F40E-7BD5-4BE6-8B91-3DA7C9A86D03} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440464 2026-08-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {586148EF-9340-4D75-8070-EE4D623AC0FC} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [69984 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0C1CE9C-E057-4FC7-A9A5-5A6F5AB85801} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440464 2026-08-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {27D3FD51-540B-4ED2-B97E-F728BBEC9A15} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {512B0D07-AA0D-470A-A4C2-B9D8C7F3E9F3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {E247F867-6196-4234-BE2E-E477893BFA4D} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1328920 2026-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {86377A60-33A3-4615-B84E-BA38217FE29F} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16470320 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {63CCE30A-601C-418D-A839-95BB05A00AEE} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe  (No File)
Task: {EE1CDF18-C4AF-494B-9631-0D36CF3019A1} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe  -evaluateEligibility (No File)
Task: {7C20DB22-774D-4E54-8554-69B46812FFCC} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe  -postProcessPreOrder (No File)
Task: {AA6335DA-AAEE-4F3F-934F-04F2C21C4D9E} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe  -processRefund (No File)
Task: {A0CBDB27-180D-4A30-B972-A2285848FFDC} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe  -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe  (No File)
Task: {4BEEF7C0-9438-4593-A49D-D397270B9972} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe  /RunOnAC ReadyToReboot (No File)
Task: {8BEDF621-E81F-4847-97FA-D159949F5AA3} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe  /RunOnBattery ReadyToReboot (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
Task: {D2F5FAD5-8EED-4D1F-8C3F-B4EA3ACB6359} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3656304 2026-08-31] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {25A5F219-3E8E-4254-ABF3-C90215184D12} - System32\Tasks\OmenInstallMonitor => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-09-02] (HP Inc. -> HP Inc.)
Task: {8C12687A-4CB3-432B-B22A-30144504773D} - System32\Tasks\OmenInstallMonitorCustomEvent => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-09-02] (HP Inc. -> HP Inc.)
Task: {8D71BB13-3619-4551-90FA-3B7233B78AD4} - System32\Tasks\OmenInstallMonitorCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-09-02] (HP Inc. -> HP Inc.)
Task: {E3714629-D1AB-4C3F-B0E2-EB8F12E66E0C} - System32\Tasks\OmenInstallMonitor-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-09-02] (HP Inc. -> HP Inc.)
Task: {4BA5A472-87C2-4C68-8B1E-0019AEFF8811} - System32\Tasks\OmenOverlay => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2026-09-02] (HP Inc. -> HP Inc.)
Task: {8882DE4A-C71B-4C9D-ADAA-34A29386A114} - System32\Tasks\OmenOverlayCustomEvent => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2026-09-02] (HP Inc. -> HP Inc.)
Task: {EFC7BD80-0786-4D19-A200-BE46AA03F9D6} - System32\Tasks\OmenOverlayCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2026-09-02] (HP Inc. -> HP Inc.)
Task: {963062CB-2FDE-47A4-B4CE-C5078FA72A8F} - System32\Tasks\OmenOverlay-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2026-09-02] (HP Inc. -> HP Inc.)
Task: {C208B2DB-7A11-4406-96DF-16F92BF632D9} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {1626D98F-A235-4BFD-924A-8147871CC7AF} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {77E3262E-DBF6-497E-8860-4E82FE200564} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6558608 2026-08-04] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {AB04946F-3348-4A73-9A4E-B1806D23C82A} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {EDE50E0E-2216-472D-957F-724E231CDB9E} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [154438440 2026-02-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\/AUTOHIDE
Task: {268E5569-260B-48DF-9D49-83EEF95A1C63} - System32\Tasks\SystemOptimizer => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-09-02] (HP Inc. -> HP Inc.)
Task: {3809BFB0-D24C-4297-B46E-3241667E0684} - System32\Tasks\SystemOptimizerCustomEvent => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-09-02] (HP Inc. -> HP Inc.)
Task: {DF426019-0E2B-4A83-A13B-278C5FD01623} - System32\Tasks\SystemOptimizerCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-09-02] (HP Inc. -> HP Inc.)
Task: {154ADFA3-BBF6-42AF-9D07-C37BD401BFF1} - System32\Tasks\SystemOptimizer-sid-S-1-5-21-3903077161-848237127-2748454431-1001 => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-09-02] (HP Inc. -> HP Inc.)
Task: {7E2520EA-4BC4-4585-92DA-903C097F58A0} - System32\Tasks\SystemOptimizerTemp => C:\Users\1roma\AppData\Local\Temp\HP\SystemOptimizerTemp\SystemOptimizer.exe  -update (No File) <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{2e217086-8d39-447c-8fa6-b6e25298b311}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{3b297108-2e16-4271-897c-cf767e46e5cb}: [DhcpNameServer] 192.168.44.1
Tcpip\..\Interfaces\{7214f423-ce52-490b-b1e3-5f41c42d9dc8}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{da87fc63-09a2-4ff5-84af-5b4af4f65aa7}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{da87fc63-09a2-4ff5-84af-5b4af4f65aa7}: [DhcpDomain] home
Tcpip\..\Interfaces\{da87fc63-09a2-4ff5-84af-5b4af4f65aa7}\2565: [DhcpNameServer] 10.57.23.141

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-08-10] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2026-08-24] (Microsoft Corporation -> Microsoft Corporation)

Edge: 
=======
Edge Profile: C:\Users\1roma\AppData\Local\Microsoft\Edge\User Data\Default [2026-09-02]
Edge Extension: (Dokumenty Google offline) - C:\Users\1roma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-13]
Edge Extension: (Edge relevant text changes) - C:\Users\1roma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default [2026-09-07]
CHR DownloadDir: C:\Users\1roma\Downloads
CHR Notifications: Default -> hxxps://aukro.cz; hxxps://eshop.tescoma.cz; hxxps://steamcommunity.com; hxxps://web.whatsapp.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR Extension: (Just Black) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2020-08-01]
CHR Extension: (BetterTTV) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2026-07-22]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-09-03]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-09-02]
CHR Extension: (Dokumenty Google offline) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-02]
CHR Profile: C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 1 [2026-09-02]
CHR Notifications: Profile 1 -> hxxps://nadedine.edookit.net
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-11-08]
CHR Profile: C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 2 [2026-09-02]
CHR Notifications: Profile 2 -> hxxps://mail.google.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-02-06]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-01-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-01-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-31]
CHR Profile: C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 3 [2026-09-02]
CHR HomePage: Profile 3 -> hxxp://www.seznam.cz/
CHR StartupUrls: Profile 3 -> "hxxp://www.seznam.cz/"
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-08-27]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\1roma\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-08-13]
CHR Profile: C:\Users\1roma\AppData\Local\Google\Chrome\User Data\System Profile [2026-09-07]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-3903077161-848237127-2748454431-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [31251856 2026-08-04] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13365056 2026-08-29] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [765736 2026-02-12] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [222104 2020-07-11] (DTS, Inc. -> )
R2 DtsHPXV2Apo4Service; C:\WINDOWS\System32\DTS\HP\APO4x\DtsHPXV2Apo4Service.exe [380656 2025-02-14] (HP Inc. -> DTS Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-03-20] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [1039656 2026-06-11] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2368848 2024-11-12] (GOG  sp. z o.o -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7627600 2024-11-12] (GOG  sp. z o.o -> GOG.com)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\AppHelperCap.exe [932032 2026-07-08] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\DiagsCap.exe [929984 2026-07-08] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\NetworkCap.exe [925888 2026-07-08] (HP Inc. -> HP Inc.)
R2 HPOmenCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_38ec91e432e20182\x64\OmenCap\OmenCap.exe [863856 2025-12-10] (HP Inc. -> HP Inc.)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2026-08-13] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_166246cb8bd387ff\x64\SysInfoCap.exe [1029832 2026-07-08] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ef460d1f2a35fc16\x64\TouchpointAnalyticsClientService.exe [639784 2025-10-01] (HP Inc. -> HP Inc.)
R2 mc-fw-host; C:\Program Files\McAfee\WPS\1.40.161.1\mc-fw-host.exe [3103584 2026-05-25] (McAfee, LLC -> McAfee, LLC)
S3 mc-wps-update; C:\Program Files\McAfee\wps\1.40.161.1\mc-update.exe [3463792 2026-05-25] (McAfee, LLC -> McAfee, LLC)
S3 McAfee Scheduled Task - (McAfee Scheduled Task - (mc-sustainability)); C:\Program Files\McAfee\wps\1.40.161.1\sustainability\mc-sustainability.exe [2173072 2026-05-25] (McAfee, LLC -> McAfee, LLC)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [888024 2026-08-20] (McAfee, LLC -> McAfee, LLC)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_3eb5ba20f4e575e5\Display.NvContainer\NVDisplay.Container.exe [1702632 2026-08-26] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75064 2021-08-17] (Even Balance, Inc. -> )
R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [215128 2021-08-26] (Even Balance, Inc. -> )
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [512296 2026-02-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\updateService\SteelSeriesGGUpdateServiceProxy.exe [1587712 2025-03-12] (GN Hearing A/S -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-19] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [114688 2025-10-14] (Microsoft Corporation) [File not signed]
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R3 HPOmenCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_7a1ef17ecb1f36ce\x64\hpomencustomcapdriver.sys [24968 2024-07-12] (HP Inc. -> HP Inc.)
R2 HpReadHWData; \??\C:\WINDOWS\system32\drivers\HpReadHWData.sys [65192 2026-08-24] (HP Inc. -> )
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S0 mfeelam; C:\WINDOWS\System32\DRIVERS\mfeelam.sys [20424 2026-05-25] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R0 mfesec; C:\WINDOWS\System32\DRIVERS\mfesec.sys [78696 2026-05-25] (McAfee, LLC -> McAfee, LLC)
S3 polarbear-split-tunneling; \??\C:\Program Files\McAfee\WPS\1.40.161.1\vpn\Drivers\x64\SplitTunnelingDriver.sys [29176 2026-05-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [72344 2025-12-02] (Realtek Semiconductor Corp. -> Realtek)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [43568 2025-11-04] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [55856 2026-03-06] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_036e27f3054ae1bc\SteelSeries-Sonar-VAD.sys [95912 2026-05-06] (GN Hearing A/S -> Windows (R) Win 7 DDK provider)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [51192 2025-03-15] (OpenVPN Inc. -> The OpenVPN Project)
R3 ViGEmBus; C:\WINDOWS\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys [82840 2019-04-24] (HP Inc. -> Benjamin Hoeglinger-Stelzer)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [21928 2025-12-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [635272 2025-12-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-19] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40208 2026-06-18] (HP Inc. -> HP)

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-09-07 09:18 - 2026-09-07 09:20 - 000052195 _____ C:\Users\1roma\OneDrive\Plocha\FRST.txt
2026-09-07 09:13 - 2026-09-07 09:13 - 002450944 _____ (Farbar) C:\Users\1roma\OneDrive\Plocha\FRST64.exe
2026-09-07 09:00 - 2026-09-07 09:00 - 000747324 _____ C:\WINDOWS\system32\perfh005.dat
2026-09-07 09:00 - 2026-09-07 09:00 - 000170898 _____ C:\WINDOWS\system32\perfc005.dat
2026-09-07 08:53 - 2026-09-07 09:10 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-09-07 08:53 - 2026-09-07 08:53 - 000003758 _____ C:\WINDOWS\system32\Tasks\LightStudioHelper
2026-09-05 00:13 - 2026-09-05 00:13 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-09-05 00:13 - 2026-08-31 12:39 - 001456752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2026-09-05 00:13 - 2026-08-31 12:16 - 000062696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2026-09-05 00:08 - 2026-08-25 08:00 - 000134376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2026-09-05 00:07 - 2026-08-26 14:52 - 003082800 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-09-05 00:07 - 2026-08-26 14:52 - 003082800 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-09-05 00:07 - 2026-08-26 14:52 - 002626600 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-09-05 00:07 - 2026-08-26 14:52 - 002626600 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-09-05 00:07 - 2026-08-26 14:52 - 001730096 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-09-05 00:07 - 2026-08-26 14:52 - 001730096 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-09-05 00:07 - 2026-08-26 14:52 - 001542192 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-09-05 00:07 - 2026-08-26 14:52 - 001542192 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-09-05 00:07 - 2026-08-26 14:51 - 000540904 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2026-09-05 00:07 - 2026-08-26 14:51 - 000418024 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2026-09-05 00:07 - 2026-08-26 14:48 - 001499368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2026-09-05 00:07 - 2026-08-26 14:48 - 000685800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2026-09-05 00:07 - 2026-08-26 14:48 - 000513768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 113932008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2026-09-05 00:07 - 2026-08-26 14:47 - 028185320 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2026-09-05 00:07 - 2026-08-26 14:47 - 002343144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 001734888 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 001702120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2026-09-05 00:07 - 2026-08-26 14:47 - 001594600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 001240808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 001077992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2026-09-05 00:07 - 2026-08-26 14:47 - 000828136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 032227048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 021026024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 008488168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 006052584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 004790504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2026-09-05 00:07 - 2026-08-26 14:46 - 000470760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2026-09-05 00:07 - 2026-08-26 14:45 - 005926120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2026-09-05 00:07 - 2026-08-26 14:45 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2026-09-05 00:07 - 2026-08-26 14:45 - 000574040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2026-09-05 00:07 - 2026-08-26 14:45 - 000442640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2026-09-05 00:07 - 2026-08-25 01:01 - 000176631 _____ C:\WINDOWS\system32\nvinfo.pb
2026-09-04 16:50 - 2026-09-04 16:50 - 000000646 _____ C:\WINDOWS\system32\InstallMonitorLog.csv
2026-09-04 16:49 - 2026-09-04 16:49 - 000000000 ____D C:\Users\1roma\AppData\Roaming\KSM_Gen15
2026-09-04 16:39 - 2026-09-07 08:56 - 000000000 ____D C:\Users\1roma\AppData\Roaming\Samsung Magician
2026-09-04 16:39 - 2026-09-04 16:39 - 000003354 _____ C:\WINDOWS\system32\Tasks\SamsungMagician
2026-09-04 16:39 - 2026-09-04 16:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2026-09-04 16:38 - 2026-09-04 16:40 - 000000000 ____D C:\ProgramData\Samsung
2026-09-04 16:38 - 2026-09-04 16:38 - 000000000 ____D C:\Program Files (x86)\Samsung
2026-09-02 18:08 - 2026-09-02 18:08 - 000004492 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitorCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-09-02 18:08 - 2026-09-02 18:08 - 000004432 _____ C:\WINDOWS\system32\Tasks\OmenOverlayCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-09-02 18:08 - 2026-09-02 18:08 - 000004090 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitor-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-09-02 18:08 - 2026-09-02 18:08 - 000004028 _____ C:\WINDOWS\system32\Tasks\OmenOverlay-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-09-02 18:07 - 2026-09-02 18:07 - 000004468 _____ C:\WINDOWS\system32\Tasks\SystemOptimizerCustomEvent-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-09-02 18:07 - 2026-09-02 18:07 - 000004066 _____ C:\WINDOWS\system32\Tasks\SystemOptimizer-sid-S-1-5-21-3903077161-848237127-2748454431-1001
2026-08-31 07:54 - 2026-08-31 07:54 - 000001849 _____ C:\Users\1roma\OneDrive\Plocha\CrystalDiskInfo.lnk
2026-08-31 07:54 - 2026-08-31 07:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2026-08-31 07:54 - 2026-08-31 07:54 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2026-08-27 09:22 - 2026-08-24 19:07 - 000065192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\HpReadHWData.sys
2026-08-24 19:13 - 2026-08-24 19:13 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-08-14 12:55 - 2026-08-14 12:55 - 000002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-08-12 07:34 - 2026-08-12 07:34 - 000038723 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-08-12 07:34 - 2026-08-12 07:34 - 000038723 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-08-11 22:37 - 2026-08-11 22:37 - 000002998 _____ C:\Users\1roma\OneDrive\Plocha\Základní škola a Mateřská škola Na Dědině s.r.o. (Pro rodiče a žáky).lnk
2026-08-11 22:37 - 2026-08-11 22:37 - 000000000 ____D C:\Users\1roma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-09-07 09:19 - 2024-12-01 13:00 - 000000000 ____D C:\FRST
2026-09-07 09:15 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-07 09:10 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-07 09:09 - 2020-06-15 00:50 - 000000000 ____D C:\Program Files (x86)\Steam
2026-09-07 09:06 - 2020-06-20 13:44 - 000000000 ____D C:\Users\1roma\AppData\Local\CrashDumps
2026-09-07 09:05 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-09-07 09:05 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-07 09:00 - 2025-10-14 17:12 - 001841876 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-07 09:00 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-09-07 08:56 - 2020-06-14 23:26 - 000000000 ____D C:\Users\1roma\AppData\Local\NVIDIA
2026-09-07 08:55 - 2022-02-04 09:51 - 000000000 ____D C:\Users\1roma\AppData\Local\OGH
2026-09-07 08:55 - 2020-06-14 23:40 - 000000000 ____D C:\Users\1roma\AppData\Local\D3DSCache
2026-09-07 08:53 - 2025-10-14 17:10 - 000006132 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-09-07 08:53 - 2025-10-14 16:51 - 000000000 ____D C:\Users\1roma
2026-09-07 08:53 - 2019-06-19 01:59 - 000000000 ____D C:\Program Files\HP
2026-09-07 08:53 - 2019-05-16 19:28 - 000000000 ___HD C:\SYSTEM.SAV
2026-09-07 08:52 - 2025-12-05 00:50 - 000012288 ___SH C:\DumpStack.log.tmp
2026-09-07 08:52 - 2025-10-14 17:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-07 08:52 - 2025-10-14 17:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-09-07 08:52 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-09-07 08:52 - 2019-11-13 16:50 - 000000000 ____D C:\ProgramData\NVIDIA
2026-09-07 08:44 - 2019-06-19 02:01 - 000000000 ____D C:\Program Files\Microsoft Office
2026-09-07 08:35 - 2025-10-14 17:11 - 000004212 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D7BD1E87-625B-4E9D-9C38-53DEF8E9DE03}
2026-09-07 08:35 - 2020-06-14 23:16 - 000000000 ____D C:\Users\1roma\AppData\Local\Packages
2026-09-05 09:12 - 2021-12-28 00:23 - 000000000 ____D C:\Users\1roma\AppData\Roaming\EasyAntiCheat
2026-09-05 00:13 - 2019-11-13 16:50 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2026-09-04 18:30 - 2024-04-01 09:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-09-04 16:48 - 2025-01-15 03:00 - 000000000 ____D C:\Users\1roma\OneDrive\Plocha\uTorrentPortable
2026-09-04 16:48 - 2020-06-15 13:16 - 000000000 ____D C:\Users\1roma\AppData\Roaming\uTorrent
2026-09-04 16:48 - 2020-06-15 13:08 - 000000000 ____D C:\Users\1roma\AppData\Roaming\Lavasoft
2026-09-04 16:48 - 2020-06-15 13:08 - 000000000 ____D C:\ProgramData\Lavasoft
2026-09-04 16:48 - 2020-06-15 13:08 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2026-09-04 16:38 - 2026-04-23 23:23 - 000000000 ____D C:\Users\1roma\AppData\Local\Sentry
2026-09-04 16:38 - 2019-11-13 16:50 - 000000000 ____D C:\ProgramData\Packages
2026-09-04 16:26 - 2020-06-14 23:24 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-09-03 16:58 - 2020-12-20 00:35 - 000000000 ____D C:\Users\1roma\AppData\Roaming\Microsoft\Word
2026-09-02 19:48 - 2020-06-14 22:05 - 000000000 ____D C:\WINDOWS\SoftwareDistribution.old
2026-09-02 19:28 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-09-02 18:17 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-09-02 18:06 - 2021-02-12 15:09 - 000007610 _____ C:\Users\1roma\AppData\Local\resmon.resmoncfg
2026-09-02 18:02 - 2025-10-14 17:11 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-02 18:02 - 2025-10-14 17:11 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-08-31 12:39 - 2025-08-29 16:52 - 001255024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2026-08-31 12:39 - 2021-08-03 08:06 - 000274032 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
2026-08-31 12:37 - 2021-08-03 08:06 - 000301168 _____ C:\WINDOWS\system32\FvSDK_x64.dll
2026-08-31 12:16 - 2026-01-19 11:06 - 000168680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap32v.dll
2026-08-31 12:16 - 2024-11-17 23:34 - 000192232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2026-08-31 12:16 - 2024-11-17 23:34 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2026-08-31 07:58 - 2025-05-14 23:45 - 000000000 ____D C:\Users\1roma\AppData\Roaming\steelseries-gg-client
2026-08-27 18:59 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat
2026-08-27 09:38 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2026-08-27 09:19 - 2025-10-21 00:33 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK
2026-08-27 09:14 - 2025-10-14 17:07 - 000607728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-08-27 09:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2026-08-27 09:12 - 2026-05-28 23:44 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-08-27 09:12 - 2025-12-19 09:32 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-08-27 09:12 - 2025-10-14 16:46 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-08-27 09:12 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-08-27 09:12 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-08-27 09:12 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-08-27 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-08-27 09:12 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-08-14 15:35 - 2020-12-20 00:35 - 000000000 ____D C:\Users\1roma\AppData\Roaming\Microsoft\Office
2026-08-13 21:32 - 2019-11-13 16:50 - 000000000 ____D C:\ProgramData\Package Cache
2026-08-13 21:32 - 2019-06-19 01:59 - 000000000 ____D C:\ProgramData\HP
2026-08-13 21:31 - 2025-10-14 17:11 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2026-08-13 21:31 - 2023-07-19 07:36 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2026-08-13 10:35 - 2020-06-21 22:58 - 000000000 ____D C:\Users\1roma\AppData\Roaming\vlc
2026-08-13 01:25 - 2020-06-15 00:54 - 000000000 ____D C:\Users\1roma\AppData\Local\HP_Inc
2026-08-12 23:48 - 2020-06-15 00:47 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-08-12 23:39 - 2020-06-15 00:47 - 228836432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-08-12 23:32 - 2026-03-11 00:46 - 000000000 ____D C:\Program Files\dotnet
2026-08-12 07:33 - 2025-10-14 17:11 - 003375104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll

==================== Files in the root of some directories ========

2021-02-12 15:09 - 2026-09-02 18:06 - 000007610 _____ () C:\Users\1roma\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================