Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o preventivnu kontrolu

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
toki
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 183
Registrován: 29 črc 2008 11:15
Bydliště: Košice, SK
Kontaktovat uživatele:

Prosim o preventivnu kontrolu

#1 Příspěvek od toki »

Dobry den, prosim o preventivnu kontrolu. Dakujem.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-09-2025
Ran by Toki (administrator) on TOKI (ASUS System Product Name) (27-09-2025 17:16:21)
Running from C:\Users\PC\Desktop\FRST64.exe
Loaded Profiles: Toki
Platform: Microsoft Windows 11 Pro Version 24H2 26100.6584 (X64) Language: Slovenčina (Slovensko)
Default browser not detected!
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe <6>
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(A-Volute SAS -> A-Volute) C:\Users\PC\AppData\Local\NhNotifSys\sonicstudio\asusns.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <6>
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (GN Hearing A/S -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\prism\SteelSeriesPrism.exe
(C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe
(C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\SpotifyWidgetProvider.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\crashpad_handler.exe
(explorer.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe
(explorer.exe ->) (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\Windows Sidebar\sidebar.exe
(explorer.exe ->) (Skutta Software GmbH -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.170.0901.0003\OneDrive.Sync.Service.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(REALiX, s.r.o. -> REALiX s.r.o.) C:\Program Files\HWiNFO64\HWiNFO64.EXE
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.2.40\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.43\AsusFanControlService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7c3f03c5df8f409e\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_2c6939fa3ca49312\RtkAudUService64.exe <2>
(svchost.exe ->) (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ) C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.3.4.0_x64__qmba6cd70vzyy\ArmouryCrate.exe
(svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\SpotifyWidgetProvider.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusDriverHub\ADU.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe <2>
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.140.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.26100.5074_none_a5532eb7772ad4c4\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_2c6939fa3ca49312\RtkAudUService64.exe [2117576 2024-06-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [17682488 2025-09-22] (GN Hearing A/S -> SteelSeries A/S)
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4992888 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4699288 2025-09-12] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\Run: [WallpaperEngine] => C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper64.exe [4649456 2025-09-15] (Skutta Software GmbH -> )
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [42449880 2025-09-08] (Adobe Inc. -> Adobe Systems Incorporated)
Startup: C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar242.lnk [2025-09-27]
ShortcutTarget: Sidebar242.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed] [File is in use]

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01D82CCD-B614-4898-AFB3-9CDD6038C7ED} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {0ECB57C6-2B29-4BB7-A926-8976021037B7} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [671440 2024-07-24] (Advanced Micro Devices -> )
Task: {FEF05DF1-0CAC-4A63-81D3-E17B06BB1A44} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401816 2025-07-11] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {DEC331B4-F482-434D-877B-5AEBB8B6465B} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2025-07-11] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {0E20B6DC-1B12-4F40-A10D-7FC796FEC93D} - System32\Tasks\ASUS\AsusDriverHub => C:\Program Files\ASUS\AsusDriverHub\ADU.exe [9944984 2025-06-16] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {C9D97271-8CC2-419C-83F6-5DDBE545FA49} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253272 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {2BE44762-DD34-4B19-93CB-67D1FA408EF5} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253272 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {BB8BF6D7-D087-471F-BE60-4F722DFE2C91} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1261928 2024-04-09] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {8AAE90A7-0D94-460E-804B-736207C916B2} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {A6B0B01F-9DBB-46AE-9635-EAD658D0AC1A} - System32\Tasks\Core Temp Autostart Toki => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {AAFF12C9-8601-46EF-A05A-1A3B87242D2A} - System32\Tasks\HWiNFO => C:\Program Files\HWiNFO64\HWiNFO64Launcher.exe [33256 2025-09-13] (Martin Malik - REALiX -> REALiX s.r.o.)
Task: {25A695FD-82FD-4578-94C2-330E2A46F6B1} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [17010024 2025-09-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {F04224B3-62AB-45D2-8BB3-20B3D23D6447} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {2054EE93-DBE5-4A85-85F4-8597F8E5E4CD} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70528 2025-09-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {D0A74B95-2384-45D8-991D-D16756D79ECF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {DB903222-E201-4CE6-A68A-C78A2A25B9BB} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {68ADD1F7-04BA-4EAF-A89A-39133DC6F20A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {68DFB03A-1FE8-4D7A-90C7-70668FCB3926} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365272 2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {5C8CBD31-0A6B-44DF-ABB3-06F49A50C3D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {98E7B01B-16D8-44F1-8159-69447DC41806} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F5C7EA45-2B6E-452C-BB50-8F3E73F07724} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F9315A4E-703A-4787-8B74-C5AF39680014} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BFC54FCC-1893-455D-BC6D-242909530ED7} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-4003419306-1086430494-287986826-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [692864 2025-09-27] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {C6B6C43E-6843-4726-82DC-131CAB66CE26} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-09-27] (Mozilla Corporation -> Mozilla Foundation)
Task: {E78A2A9F-2685-4086-9393-B405C6FDAB6C} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3323936 2025-08-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {260B4529-777B-48B5-BD87-4987C99DFA50} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4232592 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C614E6A-B8EE-44CD-BACF-BED138EEBA15} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-4003419306-1086430494-287986826-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4232592 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {AFF6033A-6EA1-4250-8CF9-3802EE2D5901} - System32\Tasks\OneDrive Startup Task-S-1-5-21-4003419306-1086430494-287986826-1001 => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\OneDriveLauncher.exe [725888 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {948F8993-8103-4798-A206-69EC9224DA2F} - System32\Tasks\PCMeter\Startup => C:\Users\PC\Desktop\APPS\PCMeterV4\PCMeterV0.4.exe (No File)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{186129a9-2f56-4bb2-996b-9299795f382a}: [DhcpNameServer] 88.212.8.8 88.212.8.88

Edge:
=======
Edge Profile: C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default [2025-09-15]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-13]
Edge Extension: (Edge relevant text changes) - C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-09-13]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-09-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
S3 ArmouryCrateDownloadTool; C:\WINDOWS\System32\DriverStore\FileRepository\rogms.inf_amd64_3662b6ec6533ed67\ArmouryLiveUpdate.exe [577416 2025-05-27] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [442472 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe [908648 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253272 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.2.40\AsusCertService.exe [497560 2025-08-21] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.43\AsusFanControlService.exe [1854312 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253272 2025-09-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [1207656 2025-09-27] (ASUSTeK COMPUTER INC. -> )
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20317352 2025-09-15] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287824 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncHelper.exe [3625344 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5051288 2025-08-22] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe [2009656 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1926840 2022-07-14] (A-Volute SAS -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7c3f03c5df8f409e\Display.NvContainer\NVDisplay.Container.exe [1275608 2025-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.170.0901.0003\OneDriveUpdaterService.exe [3909480 2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2493032 2025-09-03] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [918456 2025-09-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\SteelSeriesGGUpdateServiceProxy.exe [1587712 2025-03-12] (GN Hearing A/S -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe [4414464 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe [282480 2025-09-18] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ACSEHIDRemap; C:\WINDOWS\System32\drivers\ACSEHIDRemap.sys [135640 2025-09-02] (WDKTestCert Ken,133462420546156706 -> )
R3 ACSEVirtualBus; C:\WINDOWS\System32\drivers\ACSEVirtualBus.sys [47072 2025-09-02] (WDKTestCert Ken,133462420546156706 -> )
R3 ALSysIO; C:\Users\PC\AppData\Local\Temp\ALSysIO64.sys [43528 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman) <==== ATTENTION
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [27920 2024-03-26] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [60040 2025-08-20] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R3 AVoluteSS3Vad; C:\WINDOWS\System32\drivers\AVoluteSS3Vad.sys [94712 2022-06-08] (A-Volute -> Windows (R) Win 7 DDK provider)
S3 cpuz159; C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [44680 2025-09-15] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [34920 2025-09-13] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 e2f68; C:\WINDOWS\System32\drivers\e2f68.sys [507904 2024-03-28] (Microsoft Windows -> Intel Corporation)
S3 e2fexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e2f.inf_amd64_bf51b653ec31b8ab\e2f.sys [531568 2023-07-02] (Intel Corporation -> Intel Corporation)
R3 e2fnexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e2fn.inf_amd64_fcb868ac03f43b71\e2fn.sys [1427528 2023-07-03] (Intel Corporation -> Intel Corporation)
R3 HWiNFO_206; C:\Users\PC\AppData\Local\Temp\HWiNFO_x64_206.sys [57512 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-01] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-18] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
S3 ROGKB; C:\WINDOWS\System32\DriverStore\FileRepository\rogkb.inf_amd64_06b2ad96a4d5ed32\ROGKB.sys [41904 2025-05-27] (ASUSTeK COMPUTER INC. -> Windows (R) Win 7 DDK provider)
S3 ROGMS; C:\WINDOWS\System32\DriverStore\FileRepository\rogms.inf_amd64_3662b6ec6533ed67\ROGMS.sys [41352 2025-05-27] (ASUSTeK COMPUTER INC. -> Windows (R) Win 7 DDK provider)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [43568 2025-09-08] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [55952 2025-09-08] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_4a7a0876e89a4ff8\SteelSeries-Sonar-VAD.sys [95840 2025-05-14] (GN Hearing A/S -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20880 2025-09-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627104 2025-09-18] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102816 2025-09-18] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Users\PC\AppData\Local\Temp\tmp5762.tmp [14544 2025-09-16] (Noriyuki MIYAZAKI -> OpenLibSys.org) <==== ATTENTION

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-27 17:16 - 2025-09-27 17:16 - 000026390 _____ C:\Users\PC\Desktop\FRST.txt
2025-09-27 17:16 - 2025-09-27 17:16 - 000000000 ____D C:\FRST
2025-09-27 17:15 - 2025-09-27 17:15 - 002442752 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2025-09-27 16:38 - 2025-09-27 16:38 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-09-26 13:51 - 2025-09-26 13:57 - 000000000 ____D C:\Users\PC\AppData\Roaming\uTorrent
2025-09-26 13:51 - 2025-09-26 13:51 - 000000986 _____ C:\Users\PC\Desktop\µTorrent.lnk
2025-09-26 13:51 - 2025-09-26 13:51 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2025-09-25 14:56 - 2025-09-25 14:56 - 000352947 _____ C:\Users\PC\Desktop\Object20250925111517767_0.pdf
2025-09-25 14:55 - 2025-09-25 14:55 - 000352947 _____ C:\Users\PC\Downloads\Object20250925111517767_0.pdf
2025-09-21 14:38 - 2025-09-21 14:38 - 000000000 ____D C:\ProgramData\Adobe
2025-09-20 14:26 - 2025-09-20 14:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2025-09-20 14:26 - 2025-09-20 14:26 - 000000000 ____D C:\Program Files\7-Zip
2025-09-20 14:24 - 2025-09-21 14:38 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-09-20 14:24 - 2025-09-20 14:24 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-09-20 14:24 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC\AppData\Roaming\com.adobe.dunamis
2025-09-20 14:24 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC\AppData\LocalLow\Adobe
2025-09-20 14:24 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC\AppData\Local\SolidDocuments
2025-09-20 14:24 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC\.ms-ad
2025-09-20 14:23 - 2025-09-20 14:23 - 000000000 ____D C:\Program Files\Common Files\Adobe
2025-09-20 14:23 - 2025-09-20 14:23 - 000000000 ____D C:\Program Files\Adobe
2025-09-20 14:20 - 2025-09-23 14:00 - 000000000 ____D C:\Users\PC\AppData\Local\Adobe
2025-09-20 14:20 - 2025-09-20 14:21 - 000001568 _____ C:\Users\PC\Desktop\Robota.lnk
2025-09-20 14:20 - 2025-09-20 14:20 - 000000700 _____ C:\Users\PC\Desktop\Toki.lnk
2025-09-18 15:16 - 2025-09-18 15:16 - 000002896 _____ C:\WINDOWS\system32\Tasks\Core Temp Autostart Toki
2025-09-18 15:15 - 2025-09-18 15:16 - 000000000 ____D C:\Program Files\Core Temp
2025-09-18 15:15 - 2025-09-18 15:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
2025-09-18 15:14 - 2025-09-18 15:14 - 001293632 _____ (ALCPU ) C:\Users\PC\Desktop\Core-Temp-setup-v1.18.1.0.exe
2025-09-18 08:01 - 2025-09-18 08:01 - 000000094 _____ C:\Users\PC\AppData\Roaming\Control System_Settings.ini
2025-09-18 08:01 - 2025-09-18 08:01 - 000000000 ____D C:\Users\PC\AppData\Roaming\Windows SideBar
2025-09-17 18:05 - 2025-09-17 18:05 - 000049064 _____ C:\WINDOWS\system32\perfh01B.dat
2025-09-17 18:05 - 2025-09-17 18:05 - 000012220 _____ C:\WINDOWS\system32\perfc01B.dat
2025-09-17 17:44 - 2025-09-17 17:44 - 000000000 ____D C:\Users\PC\AppData\Local\OneDrive
2025-09-17 07:09 - 2025-09-27 17:00 - 000001976 _____ C:\Users\PC\Network_Meter_Data.js
2025-09-16 17:44 - 2025-09-27 17:11 - 000003543 _____ C:\Users\PC\IP_Log_Data.js
2025-09-16 17:43 - 2025-09-16 17:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\PCMeter
2025-09-16 17:41 - 2025-09-16 17:41 - 000000000 ____D C:\Program Files\Reference Assemblies
2025-09-16 17:41 - 2025-09-16 17:41 - 000000000 ____D C:\Program Files\MSBuild
2025-09-16 17:41 - 2025-09-16 17:41 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2025-09-16 17:41 - 2025-09-16 17:41 - 000000000 ____D C:\Program Files (x86)\MSBuild
2025-09-16 17:37 - 2025-09-19 20:17 - 000000849 _____ C:\Users\PC\AppData\Roaming\Network Meter_Settings.ini
2025-09-16 17:37 - 2025-09-16 17:37 - 000000006 _____ C:\Users\PC\AppData\Roaming\Network Meter_Usage.ini
2025-09-16 17:34 - 2025-09-19 20:17 - 000000288 _____ C:\Users\PC\AppData\Roaming\GPU MeterV2_Settings.ini
2025-09-16 17:33 - 2025-09-19 20:16 - 000000630 _____ C:\Users\PC\AppData\Roaming\All CPU MeterV3_Settings.ini
2025-09-16 17:32 - 2025-09-27 17:11 - 000000000 ____D C:\Users\PC\AppData\Local\Sidebar7
2025-09-16 17:32 - 2025-09-16 17:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack
2025-09-16 17:18 - 2025-09-16 17:18 - 000000000 ____D C:\Users\PC\AppData\Roaming\vlc
2025-09-16 17:18 - 2025-09-16 17:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2025-09-16 17:18 - 2025-09-16 17:18 - 000000000 ____D C:\Program Files\VideoLAN
2025-09-16 16:34 - 2025-09-16 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje balíka Microsoft Office
2025-09-16 16:28 - 2025-09-16 16:28 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\UProof
2025-09-16 07:18 - 2025-09-27 17:11 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-09-16 07:18 - 2025-09-16 07:18 - 000000000 ____D C:\WINDOWS\system32\%userprofile%
2025-09-16 07:18 - 2025-09-16 07:18 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-09-16 07:17 - 2025-09-16 16:34 - 000002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk
2025-09-15 18:06 - 2025-09-24 15:12 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-09-15 18:06 - 2025-09-24 15:12 - 000002120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-09-15 18:06 - 2025-09-16 16:27 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Excel
2025-09-15 18:06 - 2025-09-16 07:18 - 000000000 ___RD C:\Users\Default\OneDrive
2025-09-15 18:06 - 2025-09-15 18:06 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Office
2025-09-15 18:06 - 2025-09-15 18:06 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\AddIns
2025-09-15 18:03 - 2025-09-16 16:34 - 000002521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002433 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2025-09-15 18:03 - 2025-09-16 16:34 - 000002399 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk
2025-09-15 18:02 - 2025-09-22 20:20 - 000000000 ____D C:\Program Files\Microsoft Office
2025-09-15 18:02 - 2025-09-15 18:02 - 000000000 ____D C:\Program Files\Microsoft Office 15
2025-09-15 17:30 - 2025-09-16 07:43 - 000000000 ____D C:\Users\PC\AppData\Roaming\steelseries-gg-client
2025-09-15 17:29 - 2025-09-15 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
2025-09-15 17:28 - 2025-09-27 11:24 - 000000000 ____D C:\ProgramData\SteelSeries
2025-09-15 17:28 - 2025-09-15 17:28 - 000000000 ____D C:\Program Files\SteelSeries
2025-09-15 16:54 - 2025-09-15 16:54 - 000000000 ____D C:\WINDOWS\system32\SteelSeries
2025-09-15 16:36 - 2025-09-15 16:36 - 000000000 ___HD C:\OneDriveTemp
2025-09-15 16:36 - 2025-09-15 16:36 - 000000000 ____D C:\Users\PC\AppData\Local\Backup
2025-09-15 16:19 - 2025-09-15 19:09 - 000000000 ____D C:\Users\PC\AppData\Local\AMD
2025-09-15 15:36 - 2025-09-15 16:33 - 000000000 ____D C:\Users\PC\AppData\Roaming\PSpad
2025-09-15 15:36 - 2025-09-15 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
2025-09-15 15:36 - 2025-09-15 15:36 - 000000000 ____D C:\Program Files\PSPad editor
2025-09-15 15:28 - 2025-09-15 15:28 - 000000000 ____D C:\Users\PC\AppData\Roaming\NVIDIA
2025-09-15 15:28 - 2025-09-15 15:28 - 000000000 ____D C:\Users\PC\AppData\LocalLow\Battlestate Games
2025-09-15 15:28 - 2025-09-15 15:28 - 000000000 ____D C:\Users\PC\AppData\Local\BattlEye
2025-09-15 15:20 - 2025-09-15 15:20 - 000000000 ____D C:\Users\PC\Documents\The Witcher 3
2025-09-15 15:20 - 2025-09-15 15:20 - 000000000 ____D C:\Users\PC\Documents\The Last of Us Part II
2025-09-15 15:20 - 2025-09-15 15:20 - 000000000 ____D C:\Users\PC\Documents\Rockstar Games
2025-09-15 15:20 - 2025-09-15 15:20 - 000000000 ____D C:\Users\PC\Documents\My Games
2025-09-15 15:20 - 2025-09-15 15:20 - 000000000 ____D C:\Users\PC\Documents\Escape from Tarkov
2025-09-15 15:02 - 2025-09-15 15:13 - 000000000 ____D C:\Users\Public\SmartPSS
2025-09-15 15:02 - 2025-09-15 15:10 - 000000000 ____D C:\Users\Public\PC-NVR
2025-09-15 15:02 - 2025-09-15 15:02 - 000001543 _____ C:\Users\Public\Desktop\SmartPSS.lnk
2025-09-15 15:02 - 2025-09-15 15:02 - 000001515 _____ C:\Users\Public\Desktop\PC-NVR.lnk
2025-09-15 15:02 - 2025-09-15 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartPSS
2025-09-15 15:01 - 2025-09-15 15:01 - 000000000 ____D C:\Program Files\Smart Professional Surveillance System
2025-09-15 14:59 - 2025-09-15 19:10 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2025-09-15 14:59 - 2025-09-15 14:59 - 000001155 _____ C:\Users\PC\Desktop\MSI Afterburner.lnk
2025-09-15 14:59 - 2025-09-15 14:59 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2025-09-15 14:58 - 2025-09-15 14:58 - 000003516 _____ C:\WINDOWS\system32\Tasks\AMDAutoUpdate
2025-09-15 14:58 - 2025-09-15 14:58 - 000002219 _____ C:\Users\Public\Desktop\AMD Ryzen Master.lnk
2025-09-15 14:58 - 2025-09-15 14:58 - 000000000 ____D C:\Users\PC\AppData\Local\Downloaded Installations
2025-09-15 14:58 - 2025-09-15 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Ryzen Master
2025-09-15 14:58 - 2025-09-15 14:58 - 000000000 ____D C:\Program Files\AMD
2025-09-15 14:57 - 2025-09-15 14:57 - 000000000 ____D C:\Users\PC\AppData\Local\Setup
2025-09-15 14:56 - 2025-09-15 14:56 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2025-09-15 14:55 - 2025-09-15 14:56 - 000000000 ____D C:\Users\PC\AppData\Local\Steam
2025-09-15 14:54 - 2025-09-15 17:39 - 000000000 ____D C:\Program Files (x86)\Steam
2025-09-15 14:54 - 2025-09-15 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2025-09-15 14:52 - 2025-09-15 15:35 - 000000000 ____D C:\Users\PC\AppData\Local\Battlestate Games
2025-09-15 14:52 - 2025-09-15 15:28 - 000000000 ____D C:\Users\PC\AppData\Roaming\Battlestate Games
2025-09-15 14:52 - 2025-09-15 14:52 - 000000000 ____D C:\ProgramData\Battlestate Games
2025-09-15 14:51 - 2025-09-15 14:54 - 000000000 ____D C:\Battlestate Games
2025-09-15 14:51 - 2025-09-15 14:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games
2025-09-15 14:46 - 2025-09-15 14:46 - 000020868 _____ C:\Users\PC\Downloads\Mozilla-Recovery-Key_2025-09-15_tokar.patrik@gmail.com.pdf
2025-09-15 14:46 - 2025-09-15 14:46 - 000020868 _____ C:\Users\PC\Desktop\Mozilla-Recovery-Key_2025-09-15_tokar.patrik@gmail.com.pdf
2025-09-15 14:40 - 2025-09-27 17:13 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-09-15 14:40 - 2025-09-27 17:12 - 000001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-09-15 14:40 - 2025-09-27 17:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-09-15 14:40 - 2025-09-15 14:40 - 000002050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Súkromné prehliadanie Firefoxu.lnk
2025-09-15 14:40 - 2025-09-15 14:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-09-15 14:40 - 2025-09-15 14:40 - 000000000 ____D C:\Users\PC\AppData\Roaming\Mozilla
2025-09-15 14:40 - 2025-09-15 14:40 - 000000000 ____D C:\Users\PC\AppData\Local\Mozilla
2025-09-15 14:21 - 2025-09-27 17:11 - 000000000 ____D C:\Users\PC\AppData\Local\CrashDumps
2025-09-14 00:32 - 2025-09-14 00:32 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2025-09-14 00:32 - 2025-09-13 23:35 - 000000000 ___DC C:\WINDOWS\Panther
2025-09-14 00:19 - 2025-09-27 10:58 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-09-14 00:16 - 2025-09-27 17:11 - 000002382 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sonic Suite Companion.lnk
2025-09-14 00:13 - 2025-09-14 00:13 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-09-14 00:13 - 2025-09-14 00:13 - 000000000 ____D C:\WINDOWS\system32\AccountHealthAssets
2025-09-14 00:13 - 2025-09-14 00:13 - 000000000 ____D C:\inetpub
2025-09-14 00:07 - 2025-09-14 00:07 - 000077233 _____ C:\WINDOWS\SysWOW64\ctac.json
2025-09-14 00:07 - 2025-09-14 00:07 - 000077233 _____ C:\WINDOWS\system32\ctac.json
2025-09-14 00:07 - 2025-09-14 00:07 - 000034314 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-09-14 00:07 - 2025-09-14 00:07 - 000034314 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-09-14 00:07 - 2025-09-14 00:07 - 000001681 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2025-09-14 00:03 - 2025-09-14 00:03 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-09-14 00:02 - 2025-09-14 00:02 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\MMC
2025-09-13 23:57 - 2025-09-14 00:17 - 000000000 ____D C:\ProgramData\UWP
2025-09-13 23:56 - 2025-09-14 00:16 - 000000000 ____D C:\ProgramData\A-Volute
2025-09-13 23:56 - 2025-09-13 23:56 - 000000000 ____D C:\WINDOWS\system32\DTS
2025-09-13 23:56 - 2025-09-13 23:56 - 000000000 ____D C:\WINDOWS\system32\A-Volute
2025-09-13 23:56 - 2025-09-13 23:56 - 000000000 ____D C:\Users\PC\AppData\Local\NhNotifSys
2025-09-13 23:55 - 2024-06-26 21:53 - 006217056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2025-09-13 23:55 - 2024-06-26 21:50 - 000306632 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTHDASIO64.dll
2025-09-13 23:55 - 2024-06-26 21:50 - 000262088 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RTHDASIO.dll
2025-09-13 23:55 - 2022-07-15 01:40 - 001926840 _____ (Nahimic) C:\WINDOWS\system32\NahimicService.exe
2025-09-13 23:55 - 2022-07-15 01:40 - 001177216 _____ (A-Volute) C:\WINDOWS\system32\NhNotifSys.exe
2025-09-13 23:55 - 2022-07-15 01:40 - 001098400 _____ (Nahimic) C:\WINDOWS\system32\NahimicSvc64.exe
2025-09-13 23:55 - 2022-07-15 01:40 - 001013896 _____ (A-Volute) C:\WINDOWS\system32\NhNotifSys.dll
2025-09-13 23:55 - 2022-07-15 01:40 - 000974712 _____ (Nahimic) C:\WINDOWS\system32\NAHIMICV3NSControl.dll
2025-09-13 23:55 - 2022-07-15 01:40 - 000950672 _____ (Nahimic) C:\WINDOWS\system32\NAHIMICV3NSControlExpert.dll
2025-09-13 23:55 - 2022-07-15 01:40 - 000837280 _____ (Nahimic) C:\WINDOWS\SysWOW64\NahimicSvc32.exe
2025-09-13 23:55 - 2022-07-15 01:39 - 006582080 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV3apo.dll
2025-09-13 23:55 - 2022-07-15 01:39 - 000534224 _____ (Nahimic) C:\WINDOWS\system32\NahimicAPO3ConfiguratorDaemonModule.dll
2025-09-13 23:55 - 2022-07-15 01:39 - 000526032 _____ (Nahimic) C:\WINDOWS\system32\NahimicPnPAPO4ConfiguratorDaemonModule.dll
2025-09-13 23:55 - 2022-07-15 01:39 - 000526032 _____ (Nahimic) C:\WINDOWS\system32\NahimicAPO4ConfiguratorDaemonModule.dll
2025-09-13 23:53 - 2025-09-13 23:53 - 000000000 ____D C:\Users\PC\AppData\Local\Comms
2025-09-13 23:52 - 2025-09-15 14:55 - 000000000 ____D C:\Users\PC\AppData\Local\NVIDIA
2025-09-13 23:50 - 2025-09-24 15:12 - 000003546 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-4003419306-1086430494-287986826-1001
2025-09-13 23:50 - 2025-09-13 23:50 - 000000000 ____D C:\Program Files\PD
2025-09-13 23:50 - 2025-09-13 23:50 - 000000000 ____D C:\Program Files\Patriot
2025-09-13 23:50 - 2025-09-13 23:50 - 000000000 ____D C:\Program Files\ENE
2025-09-13 23:50 - 2025-09-06 02:17 - 000126056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2025-09-13 23:49 - 2025-09-27 17:11 - 000000000 ____D C:\Users\PC\AppData\Roaming\asus_framework
2025-09-13 23:47 - 2025-09-13 23:56 - 000000000 ___HD C:\Program Files (x86)\Temp
2025-09-13 23:47 - 2025-09-13 23:55 - 000000000 ____D C:\Program Files (x86)\LightingService
2025-09-13 23:47 - 2025-09-13 23:47 - 000000000 ____D C:\Program Files\dotnet
2025-09-13 23:47 - 2025-09-13 23:47 - 000000000 ____D C:\Program Files (x86)\Realtek
2025-09-13 23:46 - 2025-09-13 23:54 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2025-09-13 23:46 - 2025-09-13 23:53 - 000000000 ____D C:\Users\PC\AppData\Local\AcSdkInsLog
2025-09-13 23:46 - 2025-09-13 23:46 - 000000000 ____D C:\Users\PC\AppData\Local\ASUS
2025-09-13 23:46 - 2025-09-13 23:46 - 000000000 ____D C:\Users\PC\AppData\Local\ArmouryLiveUpdate
2025-09-13 23:46 - 2025-09-13 23:46 - 000000000 ____D C:\Users\PC\AppData\Local\AcLoader
2025-09-13 23:45 - 2025-08-21 11:04 - 000517016 _____ (Asustek Computer Inc.) C:\WINDOWS\system32\AsIO3.dll
2025-09-13 23:45 - 2025-08-21 11:04 - 000444312 _____ (Asustek Computer Inc.) C:\WINDOWS\SysWOW64\AsIO3.dll
2025-09-13 23:45 - 2025-08-20 20:19 - 000060040 _____ (Asustek Computer Inc.) C:\WINDOWS\system32\Drivers\AsIO3.sys
2025-09-13 23:45 - 2024-12-02 01:07 - 000055416 ____N (ASUSTeK Computer Inc.) C:\WINDOWS\system32\Drivers\IOMap64.sys
2025-09-13 23:44 - 2019-12-06 21:29 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\devcon.exe
2025-09-13 23:43 - 2025-09-15 14:57 - 000000000 ____D C:\AMD
2025-09-13 23:43 - 2025-09-13 23:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2025-09-13 23:43 - 2025-09-13 23:52 - 000000000 ____D C:\Users\PC\AppData\LocalLow\NVIDIA
2025-09-13 23:43 - 2025-09-13 23:43 - 000000000 ____D C:\Users\PC\AppData\Roaming\AMD
2025-09-13 23:43 - 2025-09-13 23:43 - 000000000 ____D C:\Program Files (x86)\AMD
2025-09-13 23:42 - 2025-09-14 00:14 - 000000000 ____D C:\Program Files\ASUS
2025-09-13 23:42 - 2025-09-13 23:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUS
2025-09-13 23:42 - 2025-09-13 23:42 - 005138328 _____ (ASUSTek Computer Inc.) C:\Users\PC\Downloads\ASUS-DriverHub-Installer.exe
2025-09-13 23:42 - 2025-09-13 23:42 - 000001184 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\ASUS DriverHub.lnk
2025-09-13 23:42 - 2025-09-13 23:42 - 000001160 _____ C:\Users\PC\Desktop\ASUS DriverHub.lnk
2025-09-13 23:42 - 2025-09-13 23:42 - 000000000 ____D C:\Users\PC\AppData\Local\ToastNotificationManagerCompat
2025-09-13 23:42 - 2025-09-13 23:42 - 000000000 ____D C:\Users\PC\AppData\Local\PeerDistRepub
2025-09-13 23:42 - 2025-09-13 23:42 - 000000000 _____ C:\WINDOWS\system32\Drivers\1043_ASUSTeK_System Product Name.alu
2025-09-13 23:42 - 2025-09-06 12:22 - 002402688 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-09-13 23:42 - 2025-09-06 12:22 - 002402688 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-09-13 23:42 - 2025-09-06 12:22 - 001908072 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-09-13 23:42 - 2025-09-06 12:22 - 001908072 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-09-13 23:42 - 2025-09-06 12:22 - 001581928 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-09-13 23:42 - 2025-09-06 12:22 - 001581928 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-09-13 23:42 - 2025-09-06 12:22 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-09-13 23:42 - 2025-09-06 12:22 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-09-13 23:42 - 2025-09-06 12:22 - 000478400 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-09-13 23:42 - 2025-09-06 12:22 - 000374376 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-09-13 23:42 - 2025-09-06 12:18 - 001316544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-09-13 23:42 - 2025-09-06 12:18 - 000674408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-09-13 23:42 - 2025-09-06 12:18 - 000509120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 026346200 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-09-13 23:42 - 2025-09-06 12:17 - 002316424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 001715336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 001596632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-09-13 23:42 - 2025-09-06 12:17 - 001571952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 001222848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 001057496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-09-13 23:42 - 2025-09-06 12:17 - 000812656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 024674440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 021712008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 007683288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 005469912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 004174472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-09-13 23:42 - 2025-09-06 12:16 - 000468672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-09-13 23:42 - 2025-09-06 12:15 - 005918400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-09-13 23:42 - 2025-09-06 12:15 - 005620296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-09-13 23:42 - 2025-09-06 12:15 - 004920520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-09-13 23:42 - 2025-09-06 12:15 - 000853128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-09-13 23:42 - 2025-09-06 02:17 - 000148834 _____ C:\WINDOWS\system32\nvinfo.pb
2025-09-13 23:41 - 2025-09-27 17:11 - 000000000 ____D C:\ProgramData\NVIDIA
2025-09-13 23:41 - 2025-09-17 18:06 - 000000000 ____D C:\Users\PC\AppData\Local\NVIDIA Corporation
2025-09-13 23:41 - 2025-09-15 17:29 - 000000000 ____D C:\ProgramData\Package Cache
2025-09-13 23:41 - 2025-09-13 23:52 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-09-13 23:41 - 2025-09-13 23:43 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-13 23:41 - 2025-09-13 23:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2025-09-13 23:41 - 2025-09-13 23:43 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2025-09-13 23:41 - 2025-09-13 23:41 - 000000000 ____D C:\Users\PC\AppData\Local\CEF
2025-09-13 23:41 - 2025-08-24 08:09 - 001310240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2025-09-13 23:41 - 2025-08-24 08:09 - 001114656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2025-09-13 23:41 - 2025-08-24 08:09 - 000287776 _____ C:\WINDOWS\system32\FvSDK_x64.dll
2025-09-13 23:41 - 2025-08-24 08:09 - 000262688 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
2025-09-13 23:41 - 2025-08-24 07:46 - 000180760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2025-09-13 23:41 - 2025-08-24 07:46 - 000159768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2025-09-13 23:41 - 2024-08-25 01:08 - 000059928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2025-09-13 23:40 - 2025-09-17 18:05 - 000880736 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-09-13 23:40 - 2025-09-14 02:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2025-09-13 23:39 - 2025-09-13 23:40 - 000000000 ____D C:\Users\PC\Desktop\R23
2025-09-13 23:39 - 2025-09-13 23:39 - 000003546 _____ C:\WINDOWS\system32\Tasks\HWiNFO
2025-09-13 23:39 - 2025-09-13 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO® 64
2025-09-13 23:39 - 2025-09-13 23:39 - 000000000 ____D C:\Program Files\HWiNFO64
2025-09-13 23:38 - 2025-09-27 17:11 - 000001898 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-09-13 23:38 - 2025-09-26 13:48 - 000000000 ____D C:\Users\PC\AppData\Local\PlaceholderTileLogoFolder
2025-09-13 23:38 - 2025-09-24 15:12 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4003419306-1086430494-287986826-1001
2025-09-13 23:38 - 2025-09-13 23:48 - 000000000 ____D C:\Program Files (x86)\ASUS
2025-09-13 23:38 - 2025-09-13 23:38 - 001189784 _____ (ASUSTeK Computer Inc.) C:\WINDOWS\system32\AsusDownloadAgent.exe
2025-09-13 23:38 - 2025-09-13 23:38 - 000378376 _____ C:\WINDOWS\system32\syncas.dll
2025-09-13 23:38 - 2025-09-13 23:38 - 000000000 ____D C:\Users\PC\Desktop\y-cruncher v0.8.6.9545
2025-09-13 23:38 - 2025-09-13 23:38 - 000000000 ____D C:\Users\PC\Desktop\FurMark_win64
2025-09-13 23:37 - 2025-09-26 13:52 - 000000000 ___RD C:\Users\PC\OneDrive
2025-09-13 23:37 - 2025-09-13 23:37 - 000000000 ____D C:\Users\PC\AppData\Local\Publishers
2025-09-13 23:37 - 2025-09-13 23:37 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2025-09-13 23:36 - 2025-09-27 17:14 - 000000000 ____D C:\Users\PC\AppData\Local\D3DSCache
2025-09-13 23:36 - 2025-09-26 13:48 - 000000000 ____D C:\Users\PC\AppData\Local\Packages
2025-09-13 23:36 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC\AppData\Roaming\Adobe
2025-09-13 23:36 - 2025-09-16 16:34 - 000000000 ___SD C:\Users\PC\AppData\Roaming\Microsoft\Protect
2025-09-13 23:36 - 2025-09-15 16:36 - 000000000 ____D C:\Users\PC\AppData\Local\ConnectedDevicesPlatform
2025-09-13 23:36 - 2025-09-15 16:24 - 000000000 __RHD C:\Users\Public\AccountPictures
2025-09-13 23:36 - 2025-09-13 23:38 - 000338040 _____ () C:\WINDOWS\system32\AsusDownLoadLicense.exe
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ___SD C:\Users\PC\AppData\Roaming\Microsoft\SystemCertificates
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ___SD C:\Users\PC\AppData\Roaming\Microsoft\Crypto
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ___SD C:\Users\PC\AppData\Roaming\Microsoft\Credentials
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Vault
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Network
2025-09-13 23:36 - 2025-09-13 23:36 - 000000000 ____D C:\Users\PC\AppData\Local\VirtualStore
2025-09-13 23:35 - 2025-09-20 14:24 - 000000000 ____D C:\Users\PC
2025-09-13 23:35 - 2025-09-20 14:24 - 000000000 ____D C:\ProgramData\Packages
2025-09-13 23:35 - 2025-09-15 17:30 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Spelling
2025-09-13 23:35 - 2025-09-13 23:36 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows
2025-09-13 23:35 - 2025-09-13 23:35 - 000000020 ___SH C:\Users\PC\ntuser.ini
2025-09-13 23:34 - 2025-09-13 23:34 - 000000000 SHDJL C:\Documents and Settings
2025-09-13 23:34 - 2025-09-13 23:34 - 000000000 ____D C:\WINDOWS\CSC
2025-09-13 23:33 - 2025-09-27 17:11 - 001260336 _____ () C:\WINDOWS\system32\wpbbin.exe
2025-09-13 23:33 - 2025-09-27 17:11 - 001207656 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2025-09-13 23:33 - 2025-09-27 17:11 - 000012288 ___SH C:\DumpStack.log.tmp
2025-09-13 23:33 - 2025-09-27 17:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-09-13 23:33 - 2025-09-27 15:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-09-13 23:33 - 2025-09-18 07:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-09-13 23:33 - 2025-09-16 17:44 - 000474696 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-09-13 23:33 - 2025-09-14 00:16 - 000000000 ____D C:\ProgramData\ASUS
2025-09-13 23:33 - 2025-09-13 23:43 - 000003708 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{9B51A512-62A4-4833-8402-3505F771DA98}
2025-09-13 23:33 - 2025-09-13 23:43 - 000003582 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{D1028036-F293-4305-A013-473779FFD9A6}
2025-09-13 23:33 - 2025-09-13 23:33 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2025-09-13 23:33 - 2025-09-13 23:33 - 000000000 ____D C:\WINDOWS\system32\config\BFS
2025-09-13 23:33 - 2025-09-13 23:33 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2025-09-02 19:37 - 2025-09-02 19:37 - 000135640 _____ C:\WINDOWS\system32\Drivers\ACSEHIDRemap.sys
2025-09-02 19:37 - 2025-09-02 19:37 - 000047072 _____ C:\WINDOWS\system32\Drivers\ACSEVirtualBus.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-27 17:12 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-09-27 17:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-09-27 17:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-09-27 17:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-09-27 17:11 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-09-27 17:10 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-09-27 11:24 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-09-16 17:41 - 2024-09-06 05:59 - 001175072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2025-09-16 17:41 - 2024-09-06 05:59 - 000780720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2025-09-16 17:32 - 2024-04-01 09:26 - 000000000 ___SD C:\Program Files\Windows Sidebar
2025-09-16 17:32 - 2024-04-01 09:26 - 000000000 ___SD C:\Program Files (x86)\Windows Sidebar
2025-09-15 18:05 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2025-09-15 15:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat
2025-09-14 00:32 - 2024-04-01 09:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2025-09-14 00:17 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-09-14 00:17 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-09-14 00:15 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\spool
2025-09-14 00:13 - 2024-04-01 18:36 - 000000000 ___SD C:\WINDOWS\system32\AppV
2025-09-14 00:13 - 2024-04-01 18:36 - 000000000 ____D C:\WINDOWS\InboxApps
2025-09-14 00:13 - 2024-04-01 18:36 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2025-09-14 00:13 - 2024-04-01 18:36 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-09-14 00:13 - 2024-04-01 18:36 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2025-09-14 00:13 - 2024-04-01 18:35 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2025-09-14 00:13 - 2024-04-01 18:35 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Com
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\IME
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-09-14 00:13 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-09-14 00:13 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2025-09-14 00:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-09-14 00:11 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2025-09-14 00:11 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2025-09-14 00:03 - 2024-04-01 09:21 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2025-09-13 23:36 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2025-09-13 23:35 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2025-09-13 23:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData

==================== Files in the root of some directories ========

2025-09-16 17:44 - 2025-09-27 17:11 - 000003543 _____ () C:\Users\PC\IP_Log_Data.js
2025-09-17 07:09 - 2025-09-27 17:00 - 000001976 _____ () C:\Users\PC\Network_Meter_Data.js

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-09-2025
Ran by Toki (27-09-2025 17:17:24)
Running from C:\Users\PC\Desktop
Microsoft Windows 11 Pro Version 24H2 26100.6584 (X64) (2025-09-13 21:35:00)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-4003419306-1086430494-287986826-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4003419306-1086430494-287986826-503 - Limited - Disabled)
Guest (S-1-5-21-4003419306-1086430494-287986826-501 - Limited - Disabled)
Toki (S-1-5-21-4003419306-1086430494-287986826-1001 - Administrator - Enabled) => C:\Users\PC
WDAGUtilityAccount (S-1-5-21-4003419306-1086430494-287986826-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 25.01 (x64) (HKLM\...\7-Zip) (Version: 25.01 - Igor Pavlov)
8GadgetPack (HKLM-x32\...\{36E60904-D465-40F7-82A7-A9C7A84C29B7}) (Version: 24.0.0 - 8GadgetPack.net)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1051-1033-7760-BC15014EA700}) (Version: 25.001.20693 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.05.16.221 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.124 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.90 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.27.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\{02247819-03CD-414E-AC8D-FD518BFBA445}) (Version: 2.14.2.3341 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.14.2.3341 - Advanced Micro Devices, Inc.)
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{1ee7f179-da35-4723-a064-99a2a93c80be}) (Version: 6.05.16.221 - Advanced Micro Devices, Inc.) Hidden
AniMeVisionFont_MB (HKLM\...\{93E38BA3-9745-4D67-91BC-F65F81523D0A}) (Version: 1.0.1 - ASUSTek Computer Inc.) Hidden
Armoury Crate Service (HKLM\...\Armoury Crate Service) (Version: 6.3.4.0 - ASUSTeK COMPUTER INC.)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.5.2.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{4726e749-b1f1-43ce-95e4-2972f1911f8c}) (Version: 1.5.2.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM\...\{BEB6AE1D-4CF2-41D3-94F2-3E277787E1D5}) (Version: 7.4.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM-x32\...\{e78d8089-0909-4d8a-9917-ad4d52eb4dd2}) (Version: 7.4.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{359B9A9D-A289-4962-BCE2-13EBFD50D532}) (Version: 1.6.1.2 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{40dadfa2-acc5-4f75-9138-52616f20c493}) (Version: 1.6.1.2 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.05.13 - ASUSTeK COMPUTER INC.) Hidden
ASUS DriverHub (HKLM\...\{A8761B4B-A179-4469-99B7-FDFA94E551F9}) (Version: 1.0.6.10 - ASUS)
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.4.7 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 4.08.04 - ASUSTek Computer Inc.)
ASUS Mouse HAL (HKLM\...\{6F52AA60-0B48-4751-A92D-F3258A7041E9}) (Version: 1.2.1.22 - ASUSTek COMPUTER INC.) Hidden
ASUS Mouse HAL (HKLM-x32\...\{a99fdbc7-ef4c-4f0c-b4a8-c86f99c8d0f5}) (Version: 1.2.1.22 - ASUSTek COMPUTER INC.) Hidden
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.141 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{86D4C8A2-DB22-4948-950D-28DD5145F91C}) (Version: 1.1.29 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{f70a8a88-540d-485d-9aa8-001486fb050e}) (Version: 1.1.29 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.49 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.49 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.08.59 - ASUSTeK COMPUTER INC.) Hidden
AURA Service (HKLM-x32\...\{cabfa89d-a59c-47ac-8d18-2032a1f72f20}) (Version: 3.08.59 - ASUSTeK COMPUTER INC.)
Battlestate Games Launcher 14.5.1.3034 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 14.5.1.3034 - Battlestate Games)
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.58.4 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{a06f2235-c1cb-4cd6-91ac-30089f052973}) (Version: 1.1.58.4 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.16.9.0.39390 - Battlestate Games)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
HWiNFO® 64 (HKLM\...\HWiNFO® 64_is1) (Version: 8.28 - Martin Malik, REALiX s.r.o.)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.40 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{2dcabc26-feae-4bc3-afc0-fba6e9f32af4}) (Version: 1.1.40 - KINGSTON COMPONENTS INC.) Hidden
Microsoft .NET Host - 8.0.13 (x64) (HKLM\...\{6CD2C0A9-55E7-4133-BC19-205CCF2B64C9}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.13 (x64) (HKLM\...\{BB5AC4BC-A263-43DA-A530-9CB56342D6B8}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.13 (x64) (HKLM\...\{C7FB4EEE-D481-4AC1-B113-120A9124FE50}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.13 (x64) (HKLM-x32\...\{8def024a-2c3c-4c48-a40d-05682ee1ec65}) (Version: 8.0.13.34516 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 140.0.3485.81 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2021 - en-us (HKLM\...\ProPlus2021Retail - en-us) (Version: 16.0.19127.20240 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - sk-sk (HKLM\...\ProPlus2021Retail - sk-sk) (Version: 16.0.19127.20240 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 25.170.0901.0003 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 sk) (HKLM\...\Mozilla Firefox 143.0.1 (x64 sk)) (Version: 143.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 142.0.1 - Mozilla)
MSI Afterburner 4.6.5 (HKLM-x32\...\Afterburner) (Version: 4.6.5 - MSI Co., LTD)
NVIDIA App 11.0.5.245 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.245 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Grafický ovládač 581.29 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.29 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16327.20264 - Microsoft Corporation) Hidden
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{55993b50-5bec-47c8-8b2b-1aecad927e48}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.1.0 - Advanced Micro Devices, Inc.) Hidden
PSPad editor (HKLM\...\PSPad editor 64bit_is1) (Version: 5.5.1.825 - Jan Fiala)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9700.1 - Realtek Semiconductor Corp.)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.3.8.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
SmartPSS 2.003.0000002.0 (HKLM-x32\...\SmartPSS) (Version: 2.003.0000002.0 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries GG 95.0.0 (HKLM\...\SteelSeries GG) (Version: 95.0.0 - SteelSeries ApS)
TUF GAMING M5 (HKLM-x32\...\{a6b1965c-2f0e-4252-8a07-d495801b9dd0}) (Version: 4.01.35 - ASUSTek Computer Inc.)
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.7 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{9a732423-e2f4-47d0-87ab-ef745c7dba69}) (Version: 1.0.0.7 - PD) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Xbox 360 Controller Emulator (HKLM\...\{5F00844F-9F65-4193-80FA-3422C51D5A5B}) (Version: 1.0.0.13 - ASUSTek COMPUTER INC.) Hidden
Xbox 360 Controller Emulator (HKLM\...\{66F1BC10-A109-47A5-918D-61023175C03E}) (Version: 1.0.0.13 - ASUSTek COMPUTER INC.) Hidden

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2025-09-20] ()
Armoury Crate -> C:\Program Files\ASUS\AacAmbientHal [2025-09-27] (Sparse Package)
Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.3.4.0_x64__qmba6cd70vzyy [2025-09-13] (ASUSTeK COMPUTER INC.)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2025.2.42.0_x64__t5j2fzbtdg37r [2025-09-14] (DTS, Inc.)
Local Artificial Intelligence Manager -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-09-22] ()
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-09-22] ()
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-09-13] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-09-22] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.339.0_x64__dt26b99r8h8gj [2025-09-13] (Realtek Semiconductor Corp)
Sonic Radar 3 -> C:\Program Files\WindowsApps\A-Volute.28054DF1F58B4_3.16.23.0_x64__w2gh52qy24etm [2025-09-13] (A-Volute)
Sonic Studio 3 -> C:\Program Files\WindowsApps\A-Volute.SonicStudio3_3.16.23.0_x64__w2gh52qy24etm [2025-09-13] (A-Volute)
Speedtest by Ookla -> C:\Program Files\WindowsApps\Ookla.SpeedtestbyOokla_1.18.194.0_x64__43tkc6nmykmb6 [2025-09-26] (Ookla)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0 [2025-09-25] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll (AddGadgets IT -> )
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{25815CC0-43F4-3C75-8C3A-A139D9ADE740}\InprocServer32 -> C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Network_Meter_V9.6.gadget\netlib.dll (AddGadgets IT -> Jonathan Abbott)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{5405618e-4c42-4fb9-a80a-d24d89911296}\localserver32 -> C:\Users\PC\AppData\Local\NhNotifSys\sonicstudio\asusns.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\GPU_Meter_V2.4.gadget\GPUStatusReader.dll (AddGadgets IT -> Orbmu2k)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{9174166b-1133-f6e5-c35a-a75eed7fbabf}\localserver32 -> C:\Program Files\ASUS\AsusDriverHub\ASUS DriverHub.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
CustomCLSID: HKU\S-1-5-21-4003419306-1086430494-287986826-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files\PSPad editor\pspshellx64.dll () [File not signed]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2025-08-03] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2025-09-07] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2025-08-03] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.170.0901.0003\FileSyncShell64.dll [2025-09-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7c3f03c5df8f409e\nvshext.dll [2025-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2025-08-03] (Igor Pavlov) [File not signed]
ContextMenuHandlers1_S-1-5-21-4003419306-1086430494-287986826-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2025-09-13 23:54 - 2025-02-03 17:17 - 000349184 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node
2025-09-15 15:36 - 2014-11-02 18:45 - 000029184 _____ () [File not signed] C:\Program Files\PSPad editor\pspshellx64.dll
2025-09-08 01:09 - 2025-09-08 01:09 - 000030720 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\sk_sk\Acrobat Elements\ContextMenuShim64.sky
2025-09-16 17:32 - 2017-10-07 15:28 - 000608256 _____ (Helmut Buhler) [File not signed] C:\Program Files\Windows Sidebar\dwmapi.dll
2025-09-16 17:32 - 2017-10-06 19:25 - 000475648 _____ (Helmut Buhler) [File not signed] C:\Users\PC\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll
2025-09-20 14:26 - 2025-08-03 08:00 - 000101888 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-09-13 23:41 - 2025-09-13 23:43 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-15] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2024-04-01 09:26 - 2024-04-01 09:24 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 88.212.8.8 - 88.212.8.88
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) Ethernet Controller (2) I225-V -> e2fn.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4003419306-1086430494-287986826-1001\Control Panel\Desktop\\Wallpaper ->
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-4003419306-1086430494-287986826-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{3db16c5f-43df-40b1-8b9e-6f55f7a9eecf}] => (Allow) C:\Program Files\ASUS\AsusDriverHub\adu.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F66C6981-1C8F-4EB2-BD4D-139B1DEC3098}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{B06C99B0-AE9D-4716-BC8E-2819F929E016}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{929F2D59-3EA4-410A-8004-D1903F7677AE}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{FA3945B5-5DCC-4001-AC29-25CE99CC80A0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{9FFAF523-9EDD-4FBA-B7C9-8875A688AF11}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
FirewallRules: [{3DFFBB7C-394D-4B57-B3CE-15D366977D18}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
FirewallRules: [{C5091F8F-FEC3-459D-AE54-52F710AF622D}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{412EA02D-2739-46CB-A626-1E5C25406F71}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{8678C47A-54BF-4D99-A732-D4E7CA4C085A}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{82D6E7BF-B961-45E6-A455-E426D1D80C24}] => (Allow) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{F42746A9-50E2-41AF-AA2E-FDC00A2DD91A}] => (Allow) C:\program files\asus\aacambienthal\aacambientlighting.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{F775FD61-90AD-4922-A8E6-15137EE02747}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{AE83E2B1-9AEC-4E18-B255-44CC0463675D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{4E3CC384-6C0C-444F-8C86-6052B303240D}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{A6B56549-8071-4379-A5F5-821448F1A33E}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{CA5238AF-284F-4121-81C2-E30E4491CF1D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F00F8AC3-49EC-4F9C-80DF-156D680AAC4A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E71B2A4E-0860-4864-A21D-439DE2BC4EC7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2E2166BF-8974-4025-A94C-5DA9FDEAADEB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{27C2924C-4659-4C67-9F17-97B73653B41C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta Software GmbH -> )
FirewallRules: [{8C0075C1-76CB-458A-8831-0F3CD338417C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta Software GmbH -> )
FirewallRules: [TCP Query User{BBB2E8C3-46D5-4C38-91A4-D75A1180D6C6}C:\program files\smart professional surveillance system\smart professional surveillance system\pc-nvr\challenge.exe] => (Allow) C:\program files\smart professional surveillance system\smart professional surveillance system\pc-nvr\challenge.exe () [File not signed]
FirewallRules: [UDP Query User{2B675BD8-CB30-498F-891B-B34C14E0D395}C:\program files\smart professional surveillance system\smart professional surveillance system\pc-nvr\challenge.exe] => (Allow) C:\program files\smart professional surveillance system\smart professional surveillance system\pc-nvr\challenge.exe () [File not signed]
FirewallRules: [TCP Query User{2DABF120-1E26-4093-AF36-D1BD262BDB62}C:\program files\smart professional surveillance system\smart professional surveillance system\smartpss\smartpss.exe] => (Allow) C:\program files\smart professional surveillance system\smart professional surveillance system\smartpss\smartpss.exe () [File not signed]
FirewallRules: [UDP Query User{B7A19B1A-D92A-416A-9C73-229DA68C6F24}C:\program files\smart professional surveillance system\smart professional surveillance system\smartpss\smartpss.exe] => (Allow) C:\program files\smart professional surveillance system\smart professional surveillance system\smartpss\smartpss.exe () [File not signed]
FirewallRules: [{090126BA-410F-423C-90A5-6235C1608C01}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{51F45B33-983B-4B05-94BA-BD408A563C5D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{352C5677-8920-4D81-B83D-94EA0D1D0A90}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{62AD7CB9-4849-484C-9DF3-A38094B32957}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8BD49B7D-0BE0-4097-9C53-45CF987A6248}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{99DB1375-E9FE-434E-9388-FB1220C66646}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{75026496-FCCE-4392-8DC7-701F2AACD985}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9C4A20F3-6ADE-40BE-84EB-E20B08D0216F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F7C116C1-084F-4BCD-8D70-BD794CE2C262}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AF35679E-C392-416D-BC8B-E6EFBA0380DD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7243A3D9-71B5-49F4-BF79-0D54D6CB89C0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{D5445359-F908-47DD-B5FD-1F33839E1662}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{69F70024-60D4-43ED-9528-B57FDE6000D3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F5BD1CC6-01A4-4779-8DBE-57030C28B93E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [TCP Query User{029A5F09-B42E-48E9-9FD6-0E33DAAEF85A}C:\users\pc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\pc\appdata\roaming\utorrent\utorrent.exe (Zdenek Svub -> BitTorrent, Inc.)
FirewallRules: [UDP Query User{8001A73B-DA64-4ACF-9CB7-721FB5268BC1}C:\users\pc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\pc\appdata\roaming\utorrent\utorrent.exe (Zdenek Svub -> BitTorrent, Inc.)

==================== Restore Points =========================

22-09-2025 11:21:08 Scheduled Checkpoint
25-09-2025 15:09:15 Windows Update
25-09-2025 15:09:16 Windows Update
25-09-2025 15:09:16 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (09/27/2025 05:12:45 PM) (Source: Firefox Default Browser Agent) (EventID: 5) (User: )
Description: Event-ID 5

Error: (09/27/2025 05:11:39 PM) (Source: Application Error) (EventID: 1000) (User: TOKI)
Description: Názov chybnej aplikácie: ASUS DriverHub.exe, verzia: 1.0.6.10, časová značka: 0xb7fc31ff
Názov modulu s poruchou: KERNELBASE.dll, verzia: 10.0.26100.6584, časová značka: 0x0a9b38fe
Kód výnimky: 0xe0434352
Odchýlka poruchy: 0x00000000000c66ca
Id poruchového procesu: 0x3fd0
Čas spustenia poruchovej aplikácie: 0x1dc2fc104e99fb4
Cesta k poruchovej aplikácii: C:\Program Files\ASUS\AsusDriverHub\ASUS DriverHub.exe
Cesta k poruchovému modulu: C:\WINDOWS\System32\KERNELBASE.dll
Id správy: 64025918-0512-4421-85bf-4495f27cedf7
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (09/27/2025 05:11:38 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: ASUS DriverHub.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.FormatException
at System.Number.StringToNumber(System.String, System.Globalization.NumberStyles, NumberBuffer ByRef, System.Globalization.NumberFormatInfo, Boolean)
at System.Number.ParseInt32(System.String, System.Globalization.NumberStyles, System.Globalization.NumberFormatInfo)
at ASUS_DriverHub.NotifyInfo.Notify(System.String)
at ASUS_DriverHub.App.App_Startup(System.Object, System.Windows.StartupEventArgs)
at System.Windows.Application.OnStartup(System.Windows.StartupEventArgs)
at System.Windows.Application.<.ctor>b__1_0(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.DispatcherOperation.InvokeImpl()
at MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Windows.Threading.DispatcherOperation.Invoke()
at System.Windows.Threading.Dispatcher.ProcessQueue()
at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at ASUS_DriverHub.App.Main()

Error: (09/27/2025 11:24:26 AM) (Source: SteelSeries GG Update Service Proxy) (EventID: 0) (User: )
Description: Service cannot be started. The handle is invalid

Error: (09/27/2025 11:23:48 AM) (Source: SteelSeries GG Update Service Proxy) (EventID: 0) (User: )
Description: Service cannot be started. The handle is invalid

Error: (09/22/2025 08:20:48 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: TOKI)
Description: Application or service 'Microsoft Office SDX Helper' could not be shut down.

Error: (09/21/2025 02:40:58 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: TOKI)
Description: Application or service 'Microsoft Office SDX Helper' could not be shut down.

Error: (09/20/2025 09:20:37 AM) (Source: Application Error) (EventID: 1000) (User: TOKI)
Description: Názov chybnej aplikácie: ArmouryCrate.UserSessionHelper.exe, verzia: 6.3.3.0, časová značka: 0x68ad4f51
Názov modulu s poruchou: ArmouryCrate.AuraPlugin.dll_unloaded, verzia: 6.3.3.0, časová značka: 0x68b4fdb1
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000002a2f2
Id poruchového procesu: 0x2194
Čas spustenia poruchovej aplikácie: 0x1dc27ebfd661154
Cesta k poruchovej aplikácii: C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
Cesta k poruchovému modulu: ArmouryCrate.AuraPlugin.dll
Id správy: b6a22d1f-86c5-4f8a-80ae-28fefea56bcc
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:


System errors:
=============
Error: (09/27/2025 05:10:44 PM) (Source: DCOM) (EventID: 10010) (User: TOKI)
Description: The server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} did not register with DCOM within the required timeout.

Error: (09/27/2025 10:51:07 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9PC1H9VN18CM-Microsoft.StartExperiencesApp.

Error: (09/27/2025 10:51:07 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9NCBCSZSJRSB-SpotifyAB.SpotifyMusic.

Error: (09/27/2025 10:50:58 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9MV0B5HZVK9Z-Microsoft.GamingApp.

Error: (09/25/2025 03:09:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9MV0B5HZVK9Z-Microsoft.GamingApp.

Error: (09/25/2025 03:09:48 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9NCBCSZSJRSB-SpotifyAB.SpotifyMusic.

Error: (09/23/2025 01:39:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80240016: 9WZDNCRFJ3PT-MICROSOFT.ZUNEMUSIC.

Error: (09/22/2025 11:19:04 AM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.


Windows Defender:
================
Date: 2025-09-27 17:11:38
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Vigorf.A
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Users\PC\AppData\Local\Temp\tmp785C.tmp
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Users\PC\Desktop\APPS\PCMeterV4\PCMeterV0.4.exe
Security intelligence Version: AV: 1.437.185.0, AS: 1.437.185.0, NIS: 1.437.185.0
Engine Version: AM: 1.1.25080.5, NIS: 1.1.25080.5

Date: 2025-09-27 10:58:17
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2025-09-24 15:28:15
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2025-09-23 10:08:40
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2025-09-22 11:14:01
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

CodeIntegrity:
===============
Date: 2025-09-27 17:12:48
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.SonicStudio3\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.

Date: 2025-09-27 17:12:48
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.

Date: 2025-09-27 17:12:48
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.273.474.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\NahimicOSD.dll that did not meet the Microsoft signing level requirements.

Date: 2025-09-20 13:33:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.

Date: 2025-09-20 13:33:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\NahimicOSD.dll that did not meet the Microsoft signing level requirements.

Date: 2025-09-20 13:33:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.SonicStudio3\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 3621 01/13/2025
Motherboard: ASUSTeK COMPUTER INC. ROG STRIX B550-F GAMING
Processor: AMD Ryzen 7 5800X3D 8-Core Processor
Percentage of memory in use: 10%
Total physical RAM: 65449.65 MB
Available physical RAM: 58288.18 MB
Total Virtual: 69545.65 MB
Available Virtual: 60299.75 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.68 GB) (Free:769.38 GB) (Model: WDS100T3X0C-00SJG0) NTFS
Drive d: (Toki SSD) (Fixed) (Total:256.16 GB) (Free:78.73 GB) (Model: Crucial_CT275MX300SSD1) NTFS
Drive e: (Toki HDD) (Fixed) (Total:931.51 GB) (Free:129.76 GB) (Model: ST1000DM010-2EP102) NTFS

\\?\Volume{a1af9450-520c-444f-a4cb-99f7cfbbea8c}\ () (Fixed) (Total:0.71 GB) (Free:0.11 GB) NTFS
\\?\Volume{b4ee610d-1609-44a1-9392-5c346d725680}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 256.2 GB) (Disk ID: 28A81A03)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: B8BF0547)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: B432C3AB)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivnu kontrolu

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {948F8993-8103-4798-A206-69EC9224DA2F} - System32\Tasks\PCMeter\Startup => C:\Users\PC\Desktop\APPS\PCMeterV4\PCMeterV0.4.exe (No File)
S3 cpuz159; C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [44680 2025-09-15] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R3 ALSysIO; C:\Users\PC\AppData\Local\Temp\ALSysIO64.sys [43528 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman) <==== ATTENTION
R3 HWiNFO_206; C:\Users\PC\AppData\Local\Temp\HWiNFO_x64_206.sys [57512 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R3 WinRing0_1_2_0; C:\Users\PC\AppData\Local\Temp\tmp5762.tmp [14544 2025-09-16] (Noriyuki MIYAZAKI -> OpenLibSys.org) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
FirewallRules: [{F66C6981-1C8F-4EB2-BD4D-139B1DEC3098}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{B06C99B0-AE9D-4716-BC8E-2819F929E016}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{9FFAF523-9EDD-4FBA-B7C9-8875A688AF11}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
FirewallRules: [{3DFFBB7C-394D-4B57-B3CE-15D366977D18}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
C:\Users\PC\AppData\Local\Temp\tmp785C.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

toki
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 183
Registrován: 29 črc 2008 11:15
Bydliště: Košice, SK
Kontaktovat uživatele:

Re: Prosim o preventivnu kontrolu

#3 Příspěvek od toki »

Fix result of Farbar Recovery Scan Tool (x64) Version: 27-09-2025
Ran by Toki (27-09-2025 19:26:03) Run:1
Running from C:\Users\PC\Desktop
Loaded Profiles: Toki
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {948F8993-8103-4798-A206-69EC9224DA2F} - System32\Tasks\PCMeter\Startup => C:\Users\PC\Desktop\APPS\PCMeterV4\PCMeterV0.4.exe (No File)
S3 cpuz159; C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [44680 2025-09-15] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R3 ALSysIO; C:\Users\PC\AppData\Local\Temp\ALSysIO64.sys [43528 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman) <==== ATTENTION
R3 HWiNFO_206; C:\Users\PC\AppData\Local\Temp\HWiNFO_x64_206.sys [57512 2025-09-27] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R3 WinRing0_1_2_0; C:\Users\PC\AppData\Local\Temp\tmp5762.tmp [14544 2025-09-16] (Noriyuki MIYAZAKI -> OpenLibSys.org) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
FirewallRules: [{F66C6981-1C8F-4EB2-BD4D-139B1DEC3098}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{B06C99B0-AE9D-4716-BC8E-2819F929E016}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL20250913234523\ACSetup\ACSetup.exe => No File
FirewallRules: [{9FFAF523-9EDD-4FBA-B7C9-8875A688AF11}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
FirewallRules: [{3DFFBB7C-394D-4B57-B3CE-15D366977D18}] => (Allow) C:\Users\PC\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => No File
C:\Users\PC\AppData\Local\Temp\tmp785C.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{948F8993-8103-4798-A206-69EC9224DA2F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{948F8993-8103-4798-A206-69EC9224DA2F}" => removed successfully
C:\WINDOWS\System32\Tasks\PCMeter\Startup => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PCMeter\Startup" => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz159 => removed successfully
cpuz159 => service removed successfully
ALSysIO => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\ALSysIO => removed successfully
ALSysIO => service removed successfully
HWiNFO_206 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\HWiNFO_206 => removed successfully
HWiNFO_206 => service removed successfully
WinRing0_1_2_0 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => removed successfully
WinRing0_1_2_0 => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F66C6981-1C8F-4EB2-BD4D-139B1DEC3098}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B06C99B0-AE9D-4716-BC8E-2819F929E016}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FFAF523-9EDD-4FBA-B7C9-8875A688AF11}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3DFFBB7C-394D-4B57-B3CE-15D366977D18}" => removed successfully
"C:\Users\PC\AppData\Local\Temp\tmp785C.tmp" => not found

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 95233 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 0 B
Edge => 0 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
PC => 0 B

RecycleBin => 5642042761 B
EmptyTemp: => 5.3 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 27-09-2025 19:26:43)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move

==== End of Fixlog 19:26:43 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivnu kontrolu

#4 Příspěvek od Rudy »

Smazáno. Byly to jen zbytečnosti, log již vypadá čistý.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

toki
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 183
Registrován: 29 črc 2008 11:15
Bydliště: Košice, SK
Kontaktovat uživatele:

Re: Prosim o preventivnu kontrolu

#5 Příspěvek od toki »

Velmi pekne dakujem. Prajem vsetko dobre :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivnu kontrolu

#6 Příspěvek od Rudy »

Vše nejlepší i vám a nemáte zač! :-)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět