Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-03-2025
Ran by DGaap (administrator) on DGAAP (Micro-Star International Co., Ltd. MS-7D42) (10-03-2025 20:20:33)
Running from C:\Users\DGaap\Desktop\FRST64.exe
Loaded Profiles: DGaap
Platform: Microsoft Windows 11 Home Version 24H2 26100.3323 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Games\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Games\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.20\avp.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.20\avpui.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Games\Steam\steam.exe
(GAIJIN NETWORK LTD -> Gaijin) C:\Users\DGaap\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe
(Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.20\avp.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_e64b097e1b71c7b9\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_434f4faf6aa034b3\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.25012.50.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.235.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.1301.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_434f4faf6aa034b3\RtkAudUService64.exe [2389976 2024-12-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\...\Run: [HP DeskJet 4530 series (NET)] => C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe [3770528 2021-11-17] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45452080 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\...\Run: [MicrosoftEdgeAutoLaunch_4146E221EBF7D13E69F596621982BCEF] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4291112 2025-03-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3597056 2025-02-11] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3597056 2025-02-11] (Razer USA Ltd. -> Razer Inc.)
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\Windows\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [912208 2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\133.0.6943.142\Installer\chrmstp.exe [2025-02-28] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D8684996-90B6-43FC-9E79-A9EBE6F2913F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.)
Task: {99CECE84-ECC1-4592-97F3-07667B23E8E2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D16C6F1B-AC9A-44D8-A94A-FE057DCC0A86} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "6d818975-7b8e-4ca8-9fc9-6993fae75fb8" --version "6.33.0.11465" --silent
Task: {6576B8EE-46F4-43D5-9F8B-5096C8263ABC} - System32\Tasks\CCleanerSkipUAC - DGaap => C:\Program Files\CCleaner\CCleaner.exe [39224624 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {50CB9CF6-F937-4EDB-9186-A8D264C6D38D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [2774080 2025-03-05] (Microsoft Windows -> Microsoft Corporation)
Task: {FA2431D3-ED00-456A-ABAC-6D956F493B19} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [30992 2024-11-06] (Garmin International, Inc. -> )
Task: {A8D8CC01-91B2-44C5-8CF0-63E9CB427F4B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{D30AF5DF-8F82-45CF-9A2C-96372A052A48} => C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe [5745760 2025-02-19] (Google LLC -> Google LLC)
Task: {C74F5EC1-F0E0-4928-9DDE-7AC3D524D6D3} - System32\Tasks\HPCustParticipation HP DeskJet 4530 series => C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPCustPartic.exe [6439072 2021-11-17] (HP Inc. -> HP Inc.)
Task: {F391430F-C85A-466B-971C-B00CAC57346A} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4983528 2024-08-02] (Intel Corporation -> Intel Corporation)
Task: {C1AC8C49-C426-4A0B-A7AD-92B96DB05B5A} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4983528 2024-08-02] (Intel Corporation -> Intel Corporation)
Task: {B29CB766-6974-4BEE-8007-D682A8E73539} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky\upgrade_launcher.exe [728992 2025-02-12] (AO Kaspersky Lab -> AO Kaspersky Lab)
Task: {3A8CA65A-5625-40FD-A750-403779C47499} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2118144 2024-07-01] () [File not signed]
Task: {69306E19-0898-4F05-A7D5-B2CEF42048F4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4EF55C6-BADC-4DD3-8C63-864D4106C6B5} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {CFD87C04-4799-497C-A7B6-D42F2330C317} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {3AF42EFC-D967-444F-8F8F-736E967AF943} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {14D256B7-36D5-473A-8308-3044D061B8C1} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187600 2024-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {9A492470-A6E4-4DE8-8575-54C1EEA4A996} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-02-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {70A45D83-5154-4B24-B510-7968550AC179} - System32\Tasks\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA app.exe [3287072 2025-02-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EB646555-0855-451D-9D4B-79499B67BAD7} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1017664951-3671858022-2397921313-1001 => C:\Users\DGaap\AppData\Local\Microsoft\OneDrive\25.020.0202.0001\OneDriveLauncher.exe [669200 2025-03-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {5D748151-8072-4765-B792-79F03EAE2640} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\WINDOWS\System32\Wscript.exe [200704 2025-03-05] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files\Intel\SUR\QUEENCREEK\x64\//B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{52656b66-0acb-4d9f-9683-0a600206cc76}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{b528f227-cc9c-4ea0-96d0-dc5036d416af}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{b528f227-cc9c-4ea0-96d0-dc5036d416af}: [DhcpDomain] home
Tcpip\..\Interfaces\{b528f227-cc9c-4ea0-96d0-dc5036d416af}\441667964602D202960586F6E656: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{b528f227-cc9c-4ea0-96d0-dc5036d416af}\44F6D696E696B623234393D25374: [DhcpNameServer] 192.168.8.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\DGaap\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-18]
Edge Extension: (Dokumenty Google offline) - C:\Users\DGaap\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-18]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\DGaap\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-10-11]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
Edge HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
FireFox:
========
FF DefaultProfile: idubbtyp.default
FF ProfilePath: C:\Users\DGaap\AppData\Roaming\Mozilla\Firefox\Profiles\idubbtyp.default [2023-08-16]
FF ProfilePath: C:\Users\DGaap\AppData\Roaming\Mozilla\Firefox\Profiles\7ystjxf1.default-release [2025-03-05]
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\DGaap\AppData\Roaming\Mozilla\Firefox\Profiles\7ystjxf1.default-release\Extensions\
jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-01-17]
FF Extension: (Language: Čeština (Czech)) - C:\Users\DGaap\AppData\Roaming\Mozilla\Firefox\Profiles\7ystjxf1.default-release\Extensions\
langpack-cs@firefox.mozilla.org.xpi [2025-01-22]
FF HKLM\...\Firefox\Extensions: [
light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [
light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\FFExt\light_plugin_firefox\addon.xpi => not found
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-02-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1017664951-3671858022-2397921313-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1017664951-3671858022-2397921313-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1017664951-3671858022-2397921313-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-02-12] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2023-08-16] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2023-08-16] <==== ATTENTION
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\Default [2025-03-10]
CHR HomePage: Default -> hxxp://
www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-26]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-03-08]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-25]hxxps://clients2.google.com/service/update2/crx
CHR Profile: C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-11-29]
CHR Profile: C:\Users\DGaap\AppData\Local\Google\Chrome\User Data\System Profile [2023-12-01]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKU\S-1-5-21-1017664951-3671858022-2397921313-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3107232 2024-08-30] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2098080 2024-08-30] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
R2 AVP21.20; C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.20\avp.exe [32008 2025-01-18] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20285608 2025-02-16] (BattlEye Innovations e.K. -> )
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13652176 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2020-07-15] (EasyAntiCheat Oy -> Epic Games, Inc)
S4 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [80971496 2025-02-07] (ESL FACEIT Group Ltd. -> )
S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
S3 klvssbridge64_21.20; C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.20\x64\vssbridge64.exe [301472 2025-01-18] (AO Kaspersky Lab -> AO Kaspersky Lab)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_e64b097e1b71c7b9\Display.NvContainer\NVDisplay.Container.exe [1275032 2025-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [298240 2025-02-11] (Razer USA Ltd. -> Razer Inc.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [538416 2024-11-20] (Razer USA Ltd. -> Razer Inc.)
S4 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21826352 2025-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S4 tmHInstall; C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe [113168 2022-03-02] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3174840 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [133592 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Rockstar Service; "C:\Program Files\Rockstar Games\Launcher\RockstarService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACE-BASE; C:\WINDOWS\system32\drivers\ACE-BASE.sys [2198584 2024-08-31] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 ace-game; C:\WINDOWS\System32\drivers\ace-game.sys [826112 2024-08-31] (Tencent Technology (Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-SSC-DRV64; C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [188416 2024-08-30] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2024-12-11] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2024-12-11] (Microsoft Corporation) [File not signed]
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [84640 2023-03-21] (Microsoft Windows Hardware Compatibility Publisher -> wch.cn)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [226784 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [102872248 2025-02-12] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [222528 2024-12-04] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_6f8ae740d22247ce\iaLPSS2_GPIO2_ADL.sys [141288 2024-05-16] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_8e2f374849f1eba9\gna.sys [90208 2024-01-26] (Intel Corporation -> Intel Corporation)
R1 klbackupdisk.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klbackupdisk.sys [93232 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klbackupflt.K4W-21-20; C:\WINDOWS\System32\DRIVERS\K4W-21-20\klbackupflt.sys [253976 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kldisk.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\kldisk.sys [109088 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [48776 2025-01-18] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klflt.sys [712768 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klgse.K4W-21-20; C:\WINDOWS\System32\DRIVERS\K4W-21-20\klgse.sys [857432 2025-02-12] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 KLHK.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klhk.sys [2256208 2025-02-12] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klids.K4W-21-20; C:\ProgramData\Kaspersky Lab\AVP21.20\Bases\klids.sys [236024 2025-02-13] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klif.K4W-21-20; C:\WINDOWS\System32\DRIVERS\K4W-21-20\klif.sys [1434176 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [90144 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klkbdflt.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klkbdflt.sys [97744 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klmouflt.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klmouflt.sys [103752 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpd.K4W-21-20; C:\WINDOWS\System32\DRIVERS\K4W-21-20\klpd.sys [59944 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpnpflt.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klpnpflt.sys [86568 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_K4W-21-20_arkmon; C:\WINDOWS\System32\Drivers\klupd_K4W-21-20_arkmon.sys [400152 2025-03-08] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_K4W-21-20_klark; C:\WINDOWS\System32\Drivers\klupd_K4W-21-20_klark.sys [364056 2025-03-08] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_K4W-21-20_klbg; C:\WINDOWS\System32\Drivers\klupd_K4W-21-20_klbg.sys [204440 2025-03-08] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_K4W-21-20_mark; C:\WINDOWS\System32\Drivers\klupd_K4W-21-20_mark.sys [266432 2025-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwtp.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\klwtp.sys [550936 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kneps.K4W-21-20; C:\WINDOWS\system32\DRIVERS\K4W-21-20\kneps.sys [385048 2025-01-18] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [140744 2025-03-05] (Microsoft Windows -> Microsoft Corporation)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-12-31] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-12-31] (Logitech Inc -> Logitech)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-09-08] (Realtek Semiconductor Corp. -> Realtek)
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_00b6; C:\WINDOWS\System32\drivers\RzDev_00b6.sys [63200 2022-06-08] (Razer USA Ltd. -> Razer Inc)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2024-12-04] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [55856 2024-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [594304 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [105856 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-12-04] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\WSDScan.sys [61440 2024-12-04] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-03-10 20:20 - 2025-03-10 20:20 - 000031276 _____ C:\Users\DGaap\Desktop\FRST.txt
2025-03-10 20:20 - 2025-03-10 20:20 - 000000000 ____D C:\FRST
2025-03-10 20:17 - 2025-03-10 20:17 - 002404352 _____ (Farbar) C:\Users\DGaap\Desktop\FRST64.exe
2025-03-10 20:06 - 2025-03-10 20:06 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-03-10 20:06 - 2025-03-10 20:06 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-03-10 20:00 - 2025-03-10 20:00 - 000000000 ____D C:\WINDOWS\Windows.SystemToast.PresenceSensing.OnlookerDetection
2025-03-10 19:59 - 2025-03-10 19:59 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2025-03-10 19:59 - 2025-03-10 19:59 - 000003670 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2025-03-10 19:59 - 2025-03-10 19:59 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2025-03-10 19:59 - 2025-03-10 19:59 - 000000000 ____D C:\Users\DGaap\AppData\Local\Intel
2025-03-10 19:59 - 2024-08-05 00:16 - 000048472 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2025-03-10 19:26 - 2025-03-10 19:26 - 000000209 _____ C:\Users\DGaap\Desktop\Ready or Not.url
2025-03-08 14:27 - 2025-03-08 14:27 - 000000208 _____ C:\Users\DGaap\Desktop\Hogwarts Legacy.url
2025-03-05 22:27 - 2025-03-10 20:18 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-03-05 22:25 - 2025-03-05 22:25 - 000070484 _____ C:\WINDOWS\SysWOW64\ctac.json
2025-03-05 22:25 - 2025-03-05 22:25 - 000070484 _____ C:\WINDOWS\system32\ctac.json
2025-02-28 17:46 - 2025-02-27 02:14 - 002072432 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-02-28 17:46 - 2025-02-27 02:14 - 002072432 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-02-28 17:46 - 2025-02-27 02:14 - 001614192 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-02-28 17:46 - 2025-02-27 02:14 - 001614192 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-02-28 17:46 - 2025-02-27 02:14 - 001576848 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-02-28 17:46 - 2025-02-27 02:14 - 001576848 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-02-28 17:46 - 2025-02-27 02:14 - 001389968 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-02-28 17:46 - 2025-02-27 02:14 - 001389968 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-02-28 17:46 - 2025-02-27 02:14 - 000478376 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-02-28 17:46 - 2025-02-27 02:14 - 000374424 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-02-28 17:46 - 2025-02-27 02:10 - 001183896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-02-28 17:46 - 2025-02-27 02:10 - 000670376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-02-28 17:46 - 2025-02-27 02:10 - 000505496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-02-28 17:46 - 2025-02-27 02:09 - 025643160 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-02-28 17:46 - 2025-02-27 02:09 - 001563776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-02-28 17:46 - 2025-02-27 02:09 - 001215608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-02-28 17:46 - 2025-02-27 02:09 - 000904880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-02-28 17:46 - 2025-02-27 02:08 - 019904120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-02-28 17:46 - 2025-02-27 02:08 - 002194584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-02-28 17:46 - 2025-02-27 02:08 - 001642152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-02-28 17:46 - 2025-02-27 02:08 - 001046184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-02-28 17:46 - 2025-02-27 02:08 - 000803992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-02-28 17:46 - 2025-02-27 02:08 - 000463528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-02-28 17:46 - 2025-02-27 02:07 - 019329144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-02-28 17:46 - 2025-02-27 02:07 - 007224976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-02-28 17:46 - 2025-02-27 02:07 - 005913768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-02-28 17:46 - 2025-02-27 02:07 - 005500024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-02-28 17:46 - 2025-02-27 02:07 - 003944064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-02-28 17:46 - 2025-02-27 02:07 - 000853144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-02-28 17:46 - 2025-02-27 02:05 - 005554848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-02-28 17:46 - 2025-02-27 02:05 - 004859568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-02-28 17:46 - 2025-02-25 10:43 - 000137714 _____ C:\WINDOWS\system32\nvinfo.pb
2025-02-28 17:43 - 2025-02-28 17:43 - 000001434 _____ C:\Users\Public\Desktop\NVIDIA.lnk
2025-02-23 23:16 - 2025-02-23 23:16 - 000000000 ____D C:\Battlestate Games
2025-02-23 23:15 - 2025-02-23 23:15 - 000000789 _____ C:\Users\Public\Desktop\Battlestate Games Launcher.lnk
2025-02-23 23:15 - 2025-02-23 23:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games
2025-02-21 19:29 - 2025-02-21 19:29 - 000001115 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk
2025-02-21 19:29 - 2025-02-21 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
2025-02-21 19:29 - 2025-02-21 19:29 - 000000000 ____D C:\ProgramData\FileOpen
2025-02-21 19:29 - 2025-02-21 19:29 - 000000000 ____D C:\Program Files\Tracker Software
2025-02-21 19:29 - 2025-02-21 19:29 - 000000000 ____D C:\Program Files\Common Files\Tracker Software
2025-02-21 19:29 - 2025-02-12 15:32 - 000912208 _____ (PDF-XChange Co Ltd.) C:\WINDOWS\system32\pxcpmL.dll
2025-02-21 19:28 - 2025-02-21 19:28 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-02-19 18:46 - 2025-02-19 18:46 - 018913197 _____ C:\Users\DGaap\Downloads\TYPE-4 CZECH-PMG.pdf
2025-02-16 17:47 - 2025-02-16 17:47 - 000000196 _____ C:\Users\DGaap\Desktop\lesy cr krpole.txt
2025-02-16 16:16 - 2025-02-16 16:16 - 000000000 ____D C:\Users\DGaap\AppData\Local\BattlEye
2025-02-16 14:18 - 2025-02-16 14:18 - 000001613 _____ C:\Users\DGaap\Desktop\WarThunder.lnk
2025-02-16 14:18 - 2025-02-16 14:18 - 000000000 ____D C:\Users\DGaap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2025-02-12 20:52 - 2025-02-12 20:52 - 000003384 _____ C:\WINDOWS\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2025-02-12 20:50 - 2025-02-12 20:51 - 000000000 ____D C:\Users\DGaap\AppData\Local\FACEIT
2025-02-12 20:50 - 2025-02-12 20:50 - 000000000 ____D C:\ProgramData\Packer
2025-02-12 20:47 - 2025-02-12 20:47 - 000000209 _____ C:\Users\DGaap\Desktop\Microsoft Flight Simulator.url
2025-02-12 20:36 - 2025-02-12 20:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\K4W-21-20
2025-02-08 18:38 - 2025-02-08 18:38 - 000000000 ____D C:\Users\DGaap\Documents\Hogwarts Legacy
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-03-10 20:19 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-03-10 20:18 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-03-10 20:15 - 2024-08-07 04:58 - 004120032 _____ C:\WINDOWS\SysWOW64\AppRulesStorage-wal
2025-03-10 20:06 - 2024-12-04 16:18 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-03-10 20:06 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-03-10 20:06 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-03-10 20:06 - 2022-06-07 01:59 - 000000000 ____D C:\Program Files (x86)\Intel
2025-03-10 20:06 - 2022-04-06 21:11 - 000000000 ____D C:\ProgramData\Package Cache
2025-03-10 20:04 - 2024-12-04 16:13 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-03-10 20:04 - 2024-04-21 07:49 - 000012288 _____ C:\WINDOWS\SysWOW64\AppRulesStorage
2025-03-10 20:04 - 2022-09-30 05:16 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-03-10 20:04 - 2022-06-07 01:58 - 000000000 ____D C:\Program Files\Intel
2025-03-10 20:03 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-03-10 20:03 - 2022-06-07 01:55 - 000000000 ____D C:\ProgramData\NVIDIA
2025-03-10 20:02 - 2024-12-04 16:20 - 000002190 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-03-10 20:02 - 2024-12-04 16:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-03-10 20:02 - 2024-12-04 16:09 - 000495296 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-03-10 20:02 - 2024-12-04 16:09 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2025-03-10 20:02 - 2024-08-07 04:58 - 000032768 _____ C:\WINDOWS\SysWOW64\DnsStorage-shm
2025-03-10 20:02 - 2024-08-07 04:58 - 000032768 _____ C:\WINDOWS\SysWOW64\AppRulesStorage-shm
2025-03-10 20:02 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-03-10 20:02 - 2022-04-06 19:07 - 000012288 ___SH C:\DumpStack.log.tmp
2025-03-10 20:01 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-03-10 20:00 - 2024-12-04 16:06 - 000000000 ____D C:\WINDOWS\InboxApps
2025-03-10 20:00 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\UNP
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-03-10 20:00 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-03-10 20:00 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2025-03-10 19:59 - 2022-06-07 01:59 - 000000000 ____D C:\ProgramData\Intel
2025-03-10 19:02 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-03-10 18:50 - 2024-12-04 16:13 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-03-08 16:16 - 2024-03-25 20:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2025-03-08 15:40 - 2023-03-21 17:49 - 000000000 ____D C:\ProgramData\Hogwarts Legacy
2025-03-08 15:40 - 2022-06-24 21:50 - 000000000 ____D C:\Users\DGaap\AppData\Local\D3DSCache
2025-03-08 14:51 - 2022-04-06 19:07 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-03-08 14:26 - 2024-12-04 16:13 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-03-08 14:26 - 2024-12-04 16:13 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-03-05 22:30 - 2024-04-01 08:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2025-03-05 22:25 - 2024-12-04 16:13 - 003346432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-03-05 22:25 - 2022-07-24 21:08 - 000000000 ____D C:\Program Files\CCleaner
2025-03-04 14:23 - 2025-02-06 10:04 - 000003148 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1017664951-3671858022-2397921313-1001
2025-03-04 07:08 - 2024-12-04 16:13 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1017664951-3671858022-2397921313-1001
2025-03-04 07:08 - 2024-12-04 16:13 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1017664951-3671858022-2397921313-1001
2025-03-04 07:08 - 2022-06-24 21:52 - 000002381 _____ C:\Users\DGaap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-03-03 15:30 - 2022-06-24 21:54 - 000000000 ____D C:\Users\DGaap\AppData\Local\CrashDumps
2025-03-03 09:20 - 2022-06-26 05:56 - 000000000 ____D C:\Program Files\TeamViewer
2025-02-28 17:43 - 2024-12-04 16:13 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-02-28 17:43 - 2022-06-07 01:56 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-02-28 17:42 - 2022-06-24 21:54 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-02-26 18:57 - 2024-12-04 16:13 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-02-26 18:57 - 2022-10-11 18:27 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-02-26 18:57 - 2022-10-11 18:27 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-02-24 19:18 - 2024-11-02 09:52 - 000308776 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_6.dll
2025-02-24 19:18 - 2022-10-26 08:34 - 000124480 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-02-24 19:18 - 2022-10-26 08:34 - 000075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-02-24 19:18 - 2022-08-12 20:29 - 002897472 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-02-24 19:18 - 2022-08-12 20:29 - 000788032 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-02-24 19:18 - 2022-08-12 20:29 - 000267840 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-02-24 19:18 - 2022-08-12 20:29 - 000243264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-02-24 19:18 - 2022-08-12 20:29 - 000153128 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-02-23 23:15 - 2023-10-08 16:12 - 000000000 ____D C:\Users\DGaap\AppData\Roaming\Battlestate Games
2025-02-23 23:15 - 2022-06-26 00:43 - 000000000 ____D C:\Users\DGaap\AppData\Local\Battlestate Games
2025-02-23 23:15 - 2022-06-25 21:45 - 000000000 ____D C:\Games
2025-02-23 22:14 - 2023-07-09 10:05 - 000000000 ____D C:\Users\DGaap\AppData\Roaming\Microsoft Flight Simulator
2025-02-23 22:13 - 2023-07-01 02:00 - 000000000 ____D C:\Users\DGaap\AppData\Local\FlightSimulator
2025-02-21 20:02 - 2024-12-04 16:13 - 000003300 _____ C:\WINDOWS\system32\Tasks\klcp_update
2025-02-21 20:02 - 2022-06-24 21:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2025-02-21 20:02 - 2022-06-24 21:54 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2025-02-21 19:34 - 2022-06-24 21:53 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-02-21 19:28 - 2025-01-22 08:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-02-21 19:28 - 2022-06-24 21:53 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-02-19 01:24 - 2024-11-18 20:54 - 003108896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2025-02-19 01:24 - 2024-11-18 20:54 - 002398752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2025-02-19 01:24 - 2022-06-07 01:56 - 000271904 _____ C:\WINDOWS\system32\FvSDK_x64.dll
2025-02-19 01:24 - 2022-06-07 01:56 - 000245792 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
2025-02-19 01:05 - 2022-06-07 01:56 - 000180760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2025-02-19 01:05 - 2022-06-07 01:56 - 000159768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2025-02-19 01:05 - 2022-06-07 01:56 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2025-02-18 14:33 - 2022-06-24 21:50 - 000000000 ____D C:\Users\DGaap\AppData\Local\NVIDIA
2025-02-18 14:33 - 2022-06-07 01:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2025-02-18 14:32 - 2022-06-28 22:22 - 000000000 ____D C:\Users\DGaap\AppData\LocalLow\NVIDIA
2025-02-18 14:31 - 2022-06-24 21:52 - 000000000 ____D C:\Users\DGaap\AppData\Local\NVIDIA Corporation
2025-02-16 17:55 - 2022-06-25 21:47 - 000000000 ____D C:\Users\DGaap\AppData\Local\Steam
2025-02-13 22:40 - 2023-10-20 17:28 - 000000000 ____D C:\Users\DGaap\Downloads\David
2025-02-12 20:56 - 2023-10-28 21:12 - 000000000 ____D C:\Users\DGaap\AppData\Roaming\FACEIT
2025-02-12 20:52 - 2023-12-09 19:33 - 000000000 ____D C:\Program Files\FACEIT AC
2025-02-12 20:52 - 2022-06-28 14:57 - 000000000 ____D C:\Program Files\Common Files\AV
2025-02-12 20:51 - 2022-07-10 21:24 - 000000000 ____D C:\Users\DGaap\AppData\Local\SquirrelTemp
2025-02-12 20:50 - 2023-12-09 19:33 - 000000892 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk
2025-02-12 20:50 - 2023-12-09 19:33 - 000000880 _____ C:\Users\Public\Desktop\FACEIT AC.lnk
2025-02-12 20:50 - 2023-12-09 19:30 - 000002179 _____ C:\Users\DGaap\Desktop\FACEIT.lnk
2025-02-12 20:50 - 2023-10-28 21:12 - 000000000 ____D C:\Users\DGaap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FACEIT Ltd
2025-02-12 20:37 - 2022-06-28 14:56 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2025-02-12 20:37 - 2022-06-28 14:56 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2025-02-12 20:37 - 2022-06-24 21:50 - 000000000 ____D C:\Users\DGaap\AppData\Local\Packages
2025-02-12 20:37 - 2022-04-06 19:08 - 000000000 ____D C:\ProgramData\Packages
2025-02-12 20:36 - 2024-04-21 07:48 - 000002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky.lnk
2025-02-12 20:36 - 2024-04-21 07:48 - 000002270 _____ C:\Users\Public\Desktop\Kaspersky.lnk
2025-02-12 20:36 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-02-12 20:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-02-12 19:42 - 2022-06-24 22:16 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-02-12 19:40 - 2022-06-24 22:16 - 209365816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-02-08 18:38 - 2023-03-21 17:49 - 000000000 ____D C:\Users\DGaap\AppData\Local\Hogwarts Legacy
==================== Files in the root of some directories ========
2024-01-24 15:24 - 2024-01-24 15:24 - 000003596 _____ () C:\Users\DGaap\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================