s PC nejaky zasadny problem nemam, avsak poslednu dobu je akosi viac zatazovana RAM a v procesoch nic podozrive nevidim.
Zaroven davam do pozornosti, ze ak by sa nahodou zdal podozrivy subor MLtools, tak to je program k jednej hre a virus to nie je

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-04-2023
Ran by njdev (administrator) on MSI (Micro-Star International Co., Ltd. Katana GF66 11SC) (13-04-2023 10:50:58)
Running from C:\Users\njdev\OneDrive\Počítač
Loaded Profiles: njdev
Platform: Microsoft Windows 10 Home Single Language Version 22H2 19045.2846 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A-Volute SAS -> A-Volute) C:\Users\njdev\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe
(C:\Program Files\ESET\ESET Endpoint Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Endpoint Security\eguiProxy.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\Oracle\VirtualBox\VBoxSVC.exe ->) (Oracle Corporation -> Oracle and/or its affiliates) C:\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe <12>
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_x64.exe
(C:\Users\njdev\OneDrive\Počítač\archer89\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\archer89\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\archer89\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\archer89\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\ghoul\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\ghoul\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\ghoul\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\ghoul\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\kisel\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\kisel\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\kisel\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\kisel\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\minifeli\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\minifeli\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\minifeli\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\minifeli\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\razari\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\razari\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\razari\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\razari\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\skiller\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\skiller\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\skiller\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\skiller\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\smudla\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\smudla\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\smudla\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\smudla\bin\MLtools.Browser.exe
(C:\Users\njdev\OneDrive\Počítač\tomasjednodrow\bin\MLtools.Browser.exe ->) (The CefSharp Authors) [File not signed] C:\Users\njdev\OneDrive\Počítač\tomasjednodrow\bin\CefSharp.BrowserSubprocess.exe <3>
(C:\Users\njdev\OneDrive\Počítač\tomasjednodrow\MLtools.exe ->) (S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\tomasjednodrow\bin\MLtools.Browser.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxEMN.exe
(explorer.exe ->) (A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> ) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.13.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe
(explorer.exe ->) (Appwork GmbH -> AppWork GmbH) C:\Users\njdev\AppData\Local\JDownloader 2.0\JDownloader2.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <14>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(explorer.exe ->) (Oracle Corporation -> Oracle and/or its affiliates) C:\Program Files\Oracle\VirtualBox\VirtualBox.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <6>
(explorer.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Program Files (x86)\Zoom\bin\Zoom.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler64.exe
(Henry++) [File not signed] C:\Program Files\Mem Reduct\memreduct.exe
(Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\archer89\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\ghoul\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\kisel\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\minifeli\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\razari\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\skiller\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\smudla\MLtools.exe
(S4G Team) [File not signed] C:\Users\njdev\OneDrive\Počítač\tomasjednodrow\MLtools.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Endpoint Security\ekrn.exe
(services.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\112.0.5615.26\remoting_host.exe <2>
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_f94b71985382657d\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_357acc06f2c40efb\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.GamingServices_10.75.13001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(services.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.GamingServices_10.75.13001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Windows\SysWOW64\MSIService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmiig.inf_amd64_51d44270251c8f74\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Oracle Corporation -> Oracle and/or its affiliates) C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a4555e9b35287491\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe
(svchost.exe ->) (21E1B422-257A-44A2-9C8F-379165856473 -> ) C:\Program Files\WindowsApps\A-Volute.Nahimic_1.9.17.0_x64__w2gh52qy24etm\Nahimic3.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe <2>
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControlEngine.exe
(svchost.exe ->) (Oracle Corporation -> Oracle and/or its affiliates) C:\Program Files\Oracle\VirtualBox\VBoxSVC.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a4555e9b35287491\RtkAudUService64.exe [1649504 2023-03-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Endpoint Security\ecmds.exe [194704 2023-03-16] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [WDDiscovery] => C:\Program Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe [81380632 2022-08-30] (Western Digital Technologies, Inc. -> Western Digital Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1572316507-319707719-3022030611-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [39159608 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1572316507-319707719-3022030611-1001\...\Run: [Mem Reduct] => C:\Program Files\Mem Reduct\memreduct.exe [297472 2023-04-07] (Henry++) [File not signed]
HKU\S-1-5-21-1572316507-319707719-3022030611-500\...\Run: [MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4139936 2023-04-10] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\112.0.5615.49\Installer\chrmstp.exe [2023-04-05] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {060CA9E4-636E-45A3-A601-4F23F1AA790B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation)
Task: {22289898-7736-40FC-A031-D03A42D4A399} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2AB66FEF-38A3-4A5C-872C-48DBE86B7E13} - System32\Tasks\NahimicTask64 => C:\Windows\system32\.\NahimicSvc64.exe [1094272 ] (A-Volute SAS -> Nahimic)
Task: {30B82301-E8C8-4B0E-A3C5-772D408F6969} - System32\Tasks\OneDC_Updater => C:\Users\njdev\OneDrive\Počítač\Dokumenty\temp\OneDC_Updater\OneDC_Updater.exe [654248 2022-02-21] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) <==== ATTENTION
Task: {36459E54-4DDE-47E6-B634-4561B0398C91} - System32\Tasks\HWiNFO => C:\Program Files\HWiNFO64\HWiNFO64.EXE (No File)
Task: {36D16B1D-FA57-48DB-8360-F190DDE79162} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1572316507-319707719-3022030611-500 => C:\Users\njdev\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File)
Task: {5019A64B-B80D-45D0-8502-393F614CB849} - System32\Tasks\WD Discovery Service Task njdev => C:\Program Files (x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe [79640 2022-08-30] (Western Digital Technologies, Inc. -> )
Task: {52B52D2C-9A81-4B28-A6B1-C59D5D13185F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {57B6DE1D-D0ED-4364-AC15-13B3199ED698} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A7672EC-CCCB-4731-A243-A941F1299223} - System32\Tasks\OmApSvcBroker => C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe [803176 2023-03-21] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
Task: {61D57EE9-72B3-4D80-9962-EB18B4162E53} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6A76B151-107B-4618-991D-D82306196501} - System32\Tasks\GoogleUpdateTaskMachineUA{B9346CB3-10EA-420E-ACC0-A5BC9B6FE04B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-14] (Google LLC -> Google LLC)
Task: {742DAB74-B26B-421C-829C-96DFA140FAA3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {7AAC8DB8-A932-4C5F-B565-CA6ED8553EB5} - System32\Tasks\GoogleUpdateTaskMachineCore{6862165D-FE04-4CBB-8A02-95100E032FCA} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-14] (Google LLC -> Google LLC)
Task: {7E6C6E8C-70FC-4235-B717-25BE8D583B91} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "9a2a6507-2a4b-4630-aa61-0e7eead6666d" --version "6.10.10347" --silent
Task: {8C07F0BE-0EE3-4D7A-A976-1C1E8BE351A5} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1572316507-319707719-3022030611-500 => C:\Users\njdev\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File)
Task: {954241D9-E0D8-4F92-9CE9-71B58FE7DA18} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9639D6BB-44FA-467D-B2BC-93D752052759} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {972F17F4-B093-4FB4-AF63-C60D3D87C0D4} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BA521C7B-2CE3-49DC-B1F3-F107857B44F4} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [1710928 2021-05-28] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {C08E30C8-FE77-4994-9977-7370D9DBE991} - System32\Tasks\WD Device Agent Task njdev => C:\Program Files (x86)\Western Digital\Discovery\Current\WD Device Agent.exe [724760 2022-08-30] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
Task: {C624CA82-8180-4A25-A042-B0E9129E17CD} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [835200 2022-09-29] (A-Volute SAS -> Nahimic)
Task: {D649E0BF-74F9-41F4-B659-72BA079AB2FE} - System32\Tasks\CCleanerSkipUAC - njdev => C:\Program Files\CCleaner\CCleaner.exe [33038648 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {D6F5A79A-2E73-492B-85A0-191E0D6927CE} - System32\Tasks\NahimicTask32 => C:\Windows\system32\..\SysWOW64\NahimicSvc32.exe [835200 ] (A-Volute SAS -> Nahimic)
Task: {DEFE1346-5D7F-41D8-8E76-DA3900EB3753} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1094272 2022-09-29] (A-Volute SAS -> Nahimic)
Task: {EF10EE2A-3E07-4A77-ADB3-7DB311BC8A02} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{26206e7d-1d28-4451-a222-461c0a4bbd68}: [DhcpNameServer] 192.168.100.1
Edge:
=======
Edge Profile: C:\Users\njdev\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-04]
Chrome:
=======
CHR Profile: C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default [2023-04-13]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-03-10]
CHR Extension: (MyJDownloader Browser Extension) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2022-02-14]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-03]
CHR Extension: (Excel Online) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\iljnkagajgfdmfnnidjijobijlfjfgnb [2022-05-26]
CHR Extension: (Lord of the Rings) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlpffkkkndaegmljeiheebaedgdiab [2022-02-14]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-14]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\njdev\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2023-03-02]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1072440 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\112.0.5615.26\remoting_host.exe [74520 2023-03-14] (Google LLC -> Google LLC)
S3 EHttpSrv; C:\Program Files\ESET\ESET Endpoint Security\ehttpsrv.exe [53880 2023-03-16] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Endpoint Security\ekrn.exe [3558136 2023-03-16] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Endpoint Security\ekrn.exe [3558136 2023-03-16] (ESET, spol. s r.o. -> ESET)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_10.75.13001.0_x64__8wekyb3d8bbwe\GamingServices.exe [75216 2023-03-17] (Microsoft Corporation -> )
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_10.75.13001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [75216 2023-03-17] (Microsoft Corporation -> )
R2 IntelAudioService; C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\\AS\\IAS\\IntelAudioService.exe [532648 ] (Intel Corporation -> Intel)
S2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 Micro Star SCM; C:\Windows\SysWOW64\MSIService.exe [168416 2022-06-01] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
S2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI NBFoundation Service\MSIAPService.exe [94056 2022-11-29] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
S2 MSI Sendevsvc; C:\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe [307624 2021-04-16] (Micro-Star International CO., LTD. -> )
R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [150176 2022-08-04] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [34032 2022-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [39760 2021-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NahimicService; C:\Windows\system32\NahimicService.exe [1913472 2022-09-29] (A-Volute SAS -> Nahimic)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16971576 2023-03-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [805224 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-08-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-08-27] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmiig.inf_amd64_51d44270251c8f74\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmiig.inf_amd64_51d44270251c8f74\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
R2 ZoomCptService; "C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe" -user_path "C:\Users\njdev\AppData\Roaming\Zoom"
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ANVSOFT_WaveExtensible; C:\Windows\system32\drivers\ammvrtaudio.sys [38048 2019-12-24] (深圳市安韦尔软件技术有限公司 -> )
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 CTIIO; C:\Windows\system32\drivers\CtiIo64.sys [17944 2021-07-15] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [198920 2023-03-16] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2022-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [237176 2023-03-16] (ESET, spol. s r.o. -> ESET)
R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [81680 2023-03-16] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [122488 2023-03-16] (ESET, spol. s r.o. -> ESET)
R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_c330c09d72f3e083\iaLPSS2_GPIO2_TGL.sys [128664 2021-07-14] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_312c3014729186bd\iaLPSS2_I2C_TGL.sys [201376 2021-07-14] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_SPI_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_spi_tgl.inf_amd64_dae60954c36e87c0\iaLPSS2_SPI_TGL.sys [155808 2021-07-14] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_UART2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_0b4251313af34984\iaLPSS2_UART2_TGL.sys [310432 2021-07-14] (Intel Corporation -> Intel Corporation)
R3 IntcUSB; C:\Windows\System32\DriverStore\FileRepository\intcusb.inf_amd64_2f4c83f014ffdaee\IntcUSB.sys [882848 2021-11-30] (Intel Corporation -> Intel(R) Corporation)
R3 IntelGNA; C:\Windows\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [84880 2021-07-14] (Gaussian Mixture Models and Neural Networks Accelerator -> Intel Corporation)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-20] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 NahimicBTLink; C:\Windows\System32\drivers\NahimicBTLink.sys [86200 2022-08-19] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 Nahimic_Mirroring; C:\Windows\System32\drivers\Nahimic_Mirroring.sys [86224 2022-08-19] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
S3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation)
S3 RvNetMP60; C:\Windows\System32\drivers\RvNetMP60.sys [69048 2021-12-20] (Famatech Corp. -> Famatech Corp.)
R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [254616 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [265488 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxSup; C:\Windows\system32\DRIVERS\VBoxSup.sys [1061392 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49576 2022-08-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [452856 2022-08-27] (Microsoft Windows -> Microsoft Corporation)
R1 wdfsconnect2017; C:\Windows\system32\drivers\wdfsconnect2017.sys [468112 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-08-27] (Microsoft Windows -> Microsoft Corporation)
R3 wdvpnpbus; C:\Windows\System32\drivers\wdvpnpbus.sys [20624 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
S3 HWiNFO_172; \??\C:\Users\njdev\AppData\Local\Temp\HWiNFO64A_172.SYS [X] <==== ATTENTION
S3 nsvst_NGC; \SystemRoot\System32\drivers\NGCx64\1616040.00B\nsvst.sys [X]
U4 nxdm; no ImagePath
U4 nxfs; no ImagePath
U4 nxpcap; no ImagePath
U4 nxsshd; no ImagePath
U4 nxtun; no ImagePath
U4 nxusbd; no ImagePath
U4 nxusbh; no ImagePath
U4 nxusbs; no ImagePath
S3 SymEvnt; \??\C:\Program Files\Norton Security\NortonData\22.21.10.40\SymPlatform\SymEvnt.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-04-13 10:49 - 2023-04-13 10:51 - 000000000 ____D C:\FRST
2023-04-13 10:22 - 2023-04-13 10:22 - 000000000 ____D C:\KVRT2020_Data
2023-04-12 15:02 - 2023-04-13 06:00 - 000000000 ____D C:\ProgramData\OmApSvcBroker
2023-04-12 15:02 - 2023-04-12 15:02 - 000003676 _____ C:\Windows\system32\Tasks\OneDC_Updater
2023-04-12 15:02 - 2023-04-12 15:02 - 000000000 ____D C:\Users\njdev\OneDrive\Počítač\Dokumenty\temp
2023-04-12 15:01 - 2023-04-12 15:01 - 000002974 _____ C:\Windows\system32\Tasks\OmApSvcBroker
2023-04-12 09:17 - 2023-04-12 09:17 - 000000000 ___HD C:\$WinREAgent
2023-04-07 17:36 - 2023-04-07 17:37 - 000000000 ____D C:\Program Files\Mem Reduct
2023-04-07 17:36 - 2023-04-07 17:36 - 000000000 ____D C:\Users\njdev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mem Reduct
2023-04-07 17:36 - 2023-04-07 17:36 - 000000000 ____D C:\Users\njdev\AppData\Roaming\Henry++
2023-04-07 04:17 - 2023-04-10 23:16 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-04-06 17:20 - 2023-04-06 18:47 - 000000000 ____D C:\Program Files (x86)\AnVir Task Manager Free
2023-04-06 14:11 - 2023-04-06 14:11 - 000003708 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{D76C755D-CE57-4385-A627-13CC41A6DB20}
2023-04-06 14:11 - 2023-04-06 14:11 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{FDF34A44-E22B-40D3-91FD-8A49605D56E1}
2023-04-06 13:31 - 2023-04-06 13:31 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-04-06 13:31 - 2023-04-06 13:31 - 000000000 ____D C:\Windows\system32\lxss
2023-04-06 13:31 - 2023-04-06 13:31 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2023-04-06 13:31 - 2023-04-06 13:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2023-04-06 13:31 - 2023-03-17 10:32 - 002904632 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 002234920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 001297464 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 000169512 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 000148520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 000086568 _____ C:\Windows\system32\FvSDK_x64.dll
2023-04-06 13:31 - 2023-03-17 10:32 - 000075304 _____ C:\Windows\SysWOW64\FvSDK_x86.dll
2023-04-06 13:27 - 2023-03-17 10:32 - 000060112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2023-04-06 13:26 - 2023-03-17 10:32 - 000059928 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2023-04-06 13:25 - 2023-03-17 18:38 - 002172456 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2023-04-06 13:25 - 2023-03-17 18:38 - 002172456 _____ C:\Windows\system32\vulkaninfo.exe
2023-04-06 13:25 - 2023-03-17 18:38 - 001607720 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-04-06 13:25 - 2023-03-17 18:38 - 001607720 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2023-04-06 13:25 - 2023-03-17 18:38 - 001487368 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2023-04-06 13:25 - 2023-03-17 18:38 - 001479248 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2023-04-06 13:25 - 2023-03-17 18:38 - 001479248 _____ C:\Windows\system32\vulkan-1.dll
2023-04-06 13:25 - 2023-03-17 18:38 - 001227248 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2023-04-06 13:25 - 2023-03-17 18:38 - 001211432 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2023-04-06 13:25 - 2023-03-17 18:38 - 001211432 _____ C:\Windows\SysWOW64\vulkan-1.dll
2023-04-06 13:25 - 2023-03-17 18:34 - 001535984 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2023-04-06 13:25 - 2023-03-17 18:34 - 001194520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2023-04-06 13:25 - 2023-03-17 18:34 - 000851472 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2023-04-06 13:25 - 2023-03-17 18:34 - 000671768 _____ C:\Windows\system32\nvofapi64.dll
2023-04-06 13:25 - 2023-03-17 18:34 - 000506376 _____ C:\Windows\SysWOW64\nvofapi.dll
2023-04-06 13:25 - 2023-03-17 18:33 - 000741920 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2023-04-06 13:25 - 2023-03-17 18:32 - 002165768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2023-04-06 13:25 - 2023-03-17 18:32 - 001621000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2023-04-06 13:25 - 2023-03-17 18:32 - 000979464 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2023-04-06 13:25 - 2023-03-17 18:32 - 000759840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 013767176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 011647472 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 006083552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 005911536 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 003429896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2023-04-06 13:25 - 2023-03-17 18:30 - 000457696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2023-04-06 13:25 - 2023-03-17 18:29 - 005834760 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2023-04-06 13:25 - 2023-03-17 10:32 - 000104369 _____ C:\Windows\system32\nvinfo.pb
2023-04-06 13:24 - 2023-03-17 18:28 - 007932992 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2023-04-06 13:24 - 2023-03-17 18:28 - 000852960 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2023-04-06 13:24 - 2023-03-17 18:27 - 006796224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2023-04-05 13:36 - 2023-04-05 13:36 - 000000000 ____D C:\Users\njdev\AppData\Roaming\Process Hacker 2
2023-04-04 22:21 - 2023-04-04 22:21 - 000000000 ____D C:\Users\njdev\AppData\Local\CodeDead
2023-04-04 22:13 - 2023-04-04 22:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2023-04-04 22:13 - 2023-01-11 09:46 - 001061392 _____ (Oracle and/or its affiliates) C:\Windows\system32\Drivers\VBoxSup.sys
2023-04-04 22:13 - 2023-01-11 09:46 - 000204216 _____ (Oracle and/or its affiliates) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2023-03-25 12:32 - 2023-03-25 12:32 - 000000000 ____D C:\Users\njdev\AppData\Local\DBG
2023-03-20 09:43 - 2023-03-20 09:43 - 000000000 ____D C:\Users\njdev\.dotnet
2023-03-20 09:43 - 2023-03-20 09:43 - 000000000 ____D C:\Program Files\dotnet
2023-03-20 09:31 - 2023-04-12 14:57 - 000000000 ____D C:\Program Files\TeamViewer
2023-03-20 09:31 - 2023-03-20 21:49 - 000000000 ____D C:\Users\njdev\AppData\Local\TeamViewer
2023-03-20 09:31 - 2023-03-20 09:31 - 000000896 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2023-03-17 09:54 - 2023-03-17 09:54 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2023-03-17 09:54 - 2023-03-17 09:54 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-04-13 10:15 - 2022-02-14 16:53 - 000000000 ____D C:\Program Files (x86)\Google
2023-04-13 09:27 - 2022-02-16 16:47 - 000000000 ____D C:\Users\njdev\AppData\Local\JDownloader 2.0
2023-04-13 09:16 - 2022-04-28 14:52 - 000004186 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{BE9EFC93-88D6-40B6-8EF5-EA3CF188C06A}
2023-04-13 08:48 - 2023-02-04 19:11 - 000000000 ____D C:\Program Files\CCleaner
2023-04-13 08:39 - 2020-11-19 09:30 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-04-13 06:00 - 2021-07-15 04:53 - 000000000 ____D C:\ProgramData\MSI
2023-04-12 20:31 - 2022-02-16 20:41 - 000000000 ____D C:\Users\njdev\.VirtualBox
2023-04-12 20:14 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-04-12 16:06 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-04-12 15:04 - 2022-02-21 16:27 - 000051774 _____ C:\Windows\system32\perfh01B.dat
2023-04-12 15:04 - 2022-02-21 16:27 - 000012864 _____ C:\Windows\system32\perfc01B.dat
2023-04-12 15:04 - 2021-03-16 01:22 - 000885128 _____ C:\Windows\system32\PerfStringBackup.INI
2023-04-12 15:03 - 2022-02-16 18:42 - 000000000 ____D C:\ProgramData\VirtualBox
2023-04-12 15:02 - 2021-07-15 04:53 - 000000000 ____D C:\MSI
2023-04-12 15:01 - 2021-07-15 04:53 - 000000000 ____D C:\Program Files (x86)\MSI
2023-04-12 14:57 - 2022-11-05 22:40 - 000003108 _____ C:\Windows\system32\Tasks\NahimicTask32
2023-04-12 14:57 - 2022-11-05 22:40 - 000003088 _____ C:\Windows\system32\Tasks\NahimicTask64
2023-04-12 14:57 - 2022-02-14 16:46 - 000000000 __SHD C:\Users\njdev\IntelGraphicsProfiles
2023-04-12 14:57 - 2021-07-15 04:24 - 000000000 ____D C:\ProgramData\NVIDIA
2023-04-12 14:57 - 2021-07-15 04:23 - 000000000 ____D C:\Intel
2023-04-12 14:57 - 2021-03-16 01:16 - 000008192 ___SH C:\DumpStack.log.tmp
2023-04-12 14:57 - 2020-11-19 09:30 - 000711472 _____ C:\Windows\system32\FNTCACHE.DAT
2023-04-12 14:57 - 2020-11-19 09:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-04-12 14:57 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-04-12 14:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2023-04-12 14:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-04-12 14:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-04-12 14:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-04-12 14:55 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
2023-04-12 14:52 - 2022-02-17 18:43 - 000000000 ____D C:\Users\njdev\AppData\Roaming\qBittorrent
2023-04-12 09:26 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-04-12 09:23 - 2020-11-19 09:32 - 003015680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-04-12 09:15 - 2022-02-15 18:38 - 000000000 ____D C:\Windows\system32\MRT
2023-04-12 09:12 - 2022-02-15 18:38 - 156112424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-04-11 19:11 - 2022-02-15 18:44 - 000000000 ____D C:\Users\njdev\AppData\Local\CrashDumps
2023-04-11 03:10 - 2022-02-14 16:53 - 000003828 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{B9346CB3-10EA-420E-ACC0-A5BC9B6FE04B}
2023-04-11 03:10 - 2022-02-14 16:53 - 000003704 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{6862165D-FE04-4CBB-8A02-95100E032FCA}
2023-04-07 17:02 - 2022-02-21 16:45 - 000000290 __RSH C:\ProgramData\ntuser.pol
2023-04-06 18:56 - 2022-02-14 16:46 - 000000000 ____D C:\Users\njdev\AppData\Local\D3DSCache
2023-04-06 18:33 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2023-04-06 18:07 - 2022-08-01 14:36 - 000000000 ____D C:\Users\njdev\AppData\Roaming\WD Discovery
2023-04-06 18:06 - 2022-08-01 14:36 - 000000000 ____D C:\Users\njdev\.wdc
2023-04-06 14:10 - 2022-02-14 16:47 - 000000000 ____D C:\Users\njdev\AppData\Local\NVIDIA Corporation
2023-04-06 13:54 - 2022-02-14 16:46 - 000000000 ____D C:\Users\njdev\AppData\Local\Packages
2023-04-06 13:50 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-04-06 13:34 - 2022-02-18 16:29 - 000000000 ____D C:\Users\njdev\AppData\Local\NVIDIA
2023-04-06 13:34 - 2021-07-15 04:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-04-06 13:31 - 2021-07-15 04:24 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2023-04-06 13:31 - 2021-07-15 04:24 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2023-04-06 13:28 - 2022-02-21 17:34 - 000000000 ____D C:\Users\Administrator\AppData\Local\NVIDIA Corporation
2023-04-06 12:54 - 2022-02-15 16:04 - 000000000 ____D C:\Users\njdev\AppData\Roaming\MPC-HC
2023-04-05 03:12 - 2022-02-14 16:53 - 000002266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-04 22:59 - 2022-02-16 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2023-04-04 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-04-04 22:26 - 2022-10-28 17:01 - 000007609 _____ C:\Users\njdev\AppData\Local\Resmon.ResmonCfg
2023-03-23 21:06 - 2020-11-19 09:33 - 000000000 ____D C:\ProgramData\Packages
2023-03-20 10:33 - 2023-01-02 17:07 - 000000000 ____D C:\Users\njdev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2023-03-20 09:43 - 2022-02-14 16:42 - 000000000 ____D C:\Users\njdev
2023-03-20 09:43 - 2021-07-15 04:18 - 000000000 ____D C:\ProgramData\Package Cache
2023-03-20 09:27 - 2023-02-04 19:11 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-03-20 08:48 - 2023-02-04 19:11 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-03-20 08:48 - 2023-02-04 19:11 - 000003474 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-03-17 09:54 - 2022-10-26 15:08 - 000079352 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2023-03-17 09:54 - 2022-10-26 15:08 - 000062928 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2023-03-17 09:54 - 2022-02-16 20:27 - 000165328 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2023-03-17 09:54 - 2022-02-14 17:02 - 002786768 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2023-03-17 09:54 - 2022-02-14 17:02 - 000476624 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2023-03-17 09:54 - 2022-02-14 17:02 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll
2023-03-17 09:54 - 2022-02-14 17:02 - 000202192 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2023-03-17 09:54 - 2022-02-14 17:02 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2023-03-16 22:26 - 2022-11-10 14:26 - 000237176 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2023-03-16 22:26 - 2022-11-10 14:26 - 000198920 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2023-03-16 22:26 - 2022-11-10 14:26 - 000122488 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2023-03-16 22:26 - 2022-11-10 14:26 - 000081680 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2023-03-15 19:12 - 2022-02-16 20:35 - 000000000 ____D C:\Users\njdev\VirtualBox VMs
==================== Files in the root of some directories ========
2022-10-28 17:01 - 2023-04-04 22:26 - 000007609 _____ () C:\Users\njdev\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================