Prosím o jednu preventivní kontrolu. Děkuji
Napsal: 27 lis 2025 21:15
Posílám oba logy, jinak dík za kontrolu.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by kaPL74 (administrator) on KOODL (Gigabyte Technology Co., Ltd. B250M-D3H) (27-11-2025 21:12:19)
Running from C:\Users\kaPL74\Desktop\FRST64.exe
Loaded Profiles: kaPL74
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\MSI_LED.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eServiceHost.exe <2>
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Users\kaPL74\AppData\Roaming\uTorrent\uninstall.exe ->) (Zdenek Svub -> BitTorrent, Inc.) C:\Users\kaPL74\AppData\Roaming\uTorrent\utorrent.exe
(Discord Inc. -> Discord Inc.) C:\Users\kaPL74\AppData\Local\Discord\app-1.0.9216\Discord.exe <6>
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIYOE.EXE <2>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\Nexus.exe
(explorer.exe ->) (Zdenek Svub -> Zdenek Svub) C:\Users\kaPL74\AppData\Roaming\uTorrent\uninstall.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(services.exe ->) (Michael Maltsev -> Ramen Software) C:\Program Files\Windhawk\windhawk.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_f088ae99b5a2f5fd\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(services.exe ->) (Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\WsxService.exe
(sihost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> WhatsApp.Root) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2586.3.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-11-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1690368 2022-07-22] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [455968 2023-05-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2756368 2023-08-09] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [DisableAcrylicBackgroundOnLogon] 1
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [MicrosoftEdgeAutoLaunch_7A1077EE3B991D247C5AEDA2F36CDE89] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253736 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Nexus] => C:\Program Files (x86)\Winstep\Nexus.exe [19226240 2025-09-29] (Winstep Software Technologies) [File not signed]
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3649120 2025-03-10] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Teams] => "C:\Users\kaPL74\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe" msteams:system-initiated (No File)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Discord] => C:\Users\kaPL74\AppData\Local\Discord\Update.exe [1596344 2025-11-10] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {893220f5-a400-11ef-ac24-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {be25676b-360d-11f0-ac5e-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {c0b4d983-918b-11f0-ac79-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [860160 2025-10-30] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\EPSON L3150 Series 64MonitorBE: C:\Windows\system32\E_YLMBUNE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\...\Print\Monitors\EPSON L4260 Series 64MonitorBE: C:\Windows\system32\E_YLMBYOE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeepL auto-start.lnk [2024-08-05]
ShortcutTarget: DeepL auto-start.lnk -> C:\Users\kaPL74\AppData\Roaming\0install.net\desktop-integration\stubs\1eae01f3cdb5ff0ecf683b15a60a1489573c1188cb34abc205fcf7a924b4e54d\auto-start.exe () [File not signed]
Startup: C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2024-12-06]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {C060EBE5-4D92-4CD6-A627-A5C06CB9C00B} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [3166568 2025-10-30] (Microsoft Windows -> Microsoft Corporation)
Task: {AB6FEA38-A7E4-429C-B367-FE9794B4E853} - System32\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {FCBF87A0-81E9-4275-B888-CD8E3A04E478} - System32\Tasks\EPSON L4260 Series Update {1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {AB963276-526E-46ED-921F-CDFB732C76BE} - System32\Tasks\Launch Adobe CCXProcess => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [194048 2025-07-31] (Adobe Inc. -> Adobe Inc.)
Task: {069938DF-B708-41AA-8191-665BF0797567} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16961360 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {BD785BE3-AFB4-4F3C-8469-B25232326F14} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29178296 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {1D50EB8D-02B5-4E1D-B3B1-58AF3422D165} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70488 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {234B24A4-D0F1-4EC3-B94B-CCB8A6A0798F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29178296 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C71EB60-E430-4A3B-9B97-D9225C9FE6F6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316696 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {1672C626-7E2A-4B4C-AA74-981061B9869F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316696 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {19963B57-8CE2-4841-B8B4-254F77D1C768} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365280 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3B58176E-C576-4C4E-9314-30D2D2D387AD} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {3A20377E-A9F5-4026-9494-DA08B3C55072} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {DBA4361B-D895-4D6B-B908-195B5E5D5FEA} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {6DE1FD7A-1439-489D-9E9D-48AF77644AF0} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {DC302B82-D0ED-438D-86A3-517635587495} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3640345311-2590231575-3648685039-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {72032366-BA68-4CA1-A07D-0657B7F43D77} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {7173B180-40EF-4AC9-831F-36EAB8BCEC84} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3354296 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {CD03A155-5B1A-4F49-871D-3E36C2CBDB17} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {0CF43AB4-FAF8-4781-9118-DBB0EF46ECE3} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {91B6FC41-C0BE-487A-95B7-2AFC53884C52} - System32\Tasks\S-1-5-21-3640345311-2590231575-3648685039-1001\DataSenseLiveTileTask => %SystemRoot%\System32\DataUsageLiveTileTask.exe (No File)
Task: {AEB78506-86E7-4488-A9E5-FA196B7F48A7} - System32\Tasks\TrackerAutoUpdate => "C:\Program Files\Tracker Software\Update\TrackerUpdate.exe" -CheckUpdate (No File)
Task: {73C74A65-7865-4AB0-8BDD-8A286ADED84C} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17209528 2025-11-20] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
Task: {DDAF1FF7-12BB-487C-B4FF-AE6119AD91BE} - System32\Tasks\WindhawkRunUITask => C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
Task: {94126885-D9C3-4BE6-ABAA-11D05EC9C522} - System32\Tasks\WindhawkUpdateTask => C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSYOE.EXE:/EXE:{014AA8A6-07BB-4245-B286-D5680465795B} /F:UpdateWORKGROUP\KOODL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\EPSON L4260 Series Update {1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSYOE.EXE:/EXE:{1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3} /F:UpdateWORKGROUP\KOODL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\MSIGH_Host.job => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe
Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{04687598-79ac-424b-a997-68cfe11fc2ae}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2025-11-07]
Edge Extension: (Dokumenty Google offline) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-09-05]
Edge Extension: (ESET Browser Privacy & Security) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc [2025-10-28]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: jyflzkmn.Default Profile
FF DefaultProfile: suv7x4pj.default
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\zen\Profiles\jyflzkmn.Default Profile [2025-05-30]
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\zen\Profiles\4brcocxu.Default (release) [2025-09-04]
FF Homepage: zen\Profiles\4brcocxu.Default (release) -> about:home
FF NewTab: zen\Profiles\4brcocxu.Default (release) -> about:newtab
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default [2025-09-04]
FF Homepage: Mozilla\Firefox\Profiles\suv7x4pj.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\suv7x4pj.default -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\suv7x4pj.default -> hxxps://www.slevomat.cz
FF Extension: (Blokátor reklam AdGuard) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\adguardadblocker@adguard.com.xpi [2020-01-05]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2019-01-05]
FF Extension: (To Google Translate) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2019-12-07]
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release [2025-11-27]
FF Homepage: Mozilla\Firefox\Profiles\bdftw427.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\bdftw427.default-release -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\bdftw427.default-release -> hxxps://www.slevomat.cz; hxxps://calendar.google.com
FF Extension: (Blokátor reklam AdGuard) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\adguardadblocker@adguard.com.xpi [2025-11-20]
FF Extension: (ESET Browser Privacy & Security) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\browserextension@eset.com.xpi [2025-11-17]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2021-06-23]
FF Extension: (Firefox Color) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\FirefoxColor@mozilla.com.xpi [2021-11-20]
FF Extension: (Použijte Google překladač) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2025-10-12]
FF Extension: (AdBlocker for YouTube™) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2025-06-12]
FF Extension: (TWP - Translate Web Pages) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2025-11-01]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-11-27]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13366624 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
R2 dlpsrv; C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe [770528 2025-02-12] (ESET, spol. s r.o. -> ESET)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19012192 2025-03-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5543856 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [222768 2025-03-12] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [46776 2018-09-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2027192 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2025-01-24] (The Document Foundation -> The Document Foundation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2025-11-25] (Malwarebytes Inc. -> Malwarebytes)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [86688 2018-07-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_f088ae99b5a2f5fd\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [10752 2020-02-29] () [File not signed]
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2025-11-20] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3174840 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [133592 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Windhawk; C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService.exe [782848 2025-07-27] (Winstep Software Technologies) [File not signed]
S3 MBVpnTunnelService; "C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2025-11-27] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 DLMFENC; C:\WINDOWS\System32\DRIVERS\DLMFENC.sys [193912 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R0 DLPCRYPT; C:\WINDOWS\System32\DRIVERS\dlpcrypt.sys [121728 2022-08-24] (DESlock Limited -> DESlock Ltd.)
R0 dlpvdisk; C:\WINDOWS\System32\DRIVERS\dlpvdisk.sys [127320 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 DroidCam; C:\WINDOWS\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232928 2025-10-28] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [139904 2025-10-28] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S4 edevmonm; C:\WINDOWS\System32\DRIVERS\edevmonm.sys [127056 2025-10-28] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [17840 2025-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [273768 2025-10-28] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57368 2025-10-28] (ESET, spol. s r.o. -> ESET)
S1 EneIo; C:\WINDOWS\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86800 2025-10-28] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126552 2025-10-28] (ESET, spol. s r.o. -> ESET)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2025-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 Revoflt; C:\WINDOWS\System32\DRIVERS\revoflt.sys [38400 2025-04-24] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [133944 2020-01-20] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
R0 VDLPToken2; C:\WINDOWS\System32\DRIVERS\vdlptkn2.sys [157256 2025-02-12] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [55856 2024-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [594304 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [105856 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-27 21:12 - 2025-11-27 21:12 - 000032785 _____ C:\Users\kaPL74\Desktop\FRST.txt
2025-11-27 21:11 - 2025-11-27 21:12 - 000000000 ____D C:\FRST
2025-11-27 21:09 - 2025-11-27 21:09 - 002444288 _____ (Farbar) C:\Users\kaPL74\Desktop\FRST64.exe
2025-11-27 18:58 - 2025-11-27 18:58 - 000014497 _____ C:\Users\kaPL74\Downloads\[SkT]Adobe_Photoshop_2026_v27.1.0.17_Multilingual.torrent
2025-11-27 18:01 - 2025-11-27 18:01 - 000000000 ____D C:\zoek_backup
2025-11-27 12:49 - 2025-11-27 12:49 - 000005873 _____ C:\Users\kaPL74\Downloads\[TreZzoR]Revo Uninstaller Pro 5.2.2 (5.2.5)-1.torrent
2025-11-27 11:30 - 2025-11-27 11:30 - 000268646 _____ C:\Users\kaPL74\Downloads\Změny v odborné způsobilosti osob dopis.pdf
2025-11-26 19:28 - 2025-11-27 12:54 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-11-26 18:30 - 2025-11-26 18:30 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-11-26 18:30 - 2025-11-26 18:30 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-11-26 18:20 - 2025-11-26 18:20 - 000029281 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E13_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-26 18:20 - 2025-11-26 18:20 - 000028701 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E14_(CZ)[WEB-DL][1080p]_=_CSFD_41_.torrent
2025-11-25 22:42 - 2025-11-25 22:42 - 000010203 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.3_(x64)-1.torrent
2025-11-25 22:42 - 2025-11-25 22:42 - 000006218 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_v5.3.7_(CZ)[AppDoze]_.torrent
2025-11-25 21:26 - 2025-11-25 21:26 - 000286501 _____ C:\Users\kaPL74\Downloads\huawei-watch-fit.pdf
2025-11-25 21:15 - 2025-11-25 21:15 - 002108558 _____ C:\Users\kaPL74\Downloads\Huawei Watch Fit 4 CZ.pdf
2025-11-24 21:48 - 2025-11-25 20:33 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2025-11-24 21:43 - 2025-11-24 21:43 - 000018565 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.0_Portable_[06.2025]-1.torrent
2025-11-24 21:42 - 2025-11-24 21:42 - 000010203 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.3_(x64).torrent
2025-11-24 09:52 - 2025-11-24 09:52 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511-2.pdf
2025-11-24 09:20 - 2025-11-24 09:20 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511-1.pdf
2025-11-24 09:20 - 2025-11-24 09:20 - 000077610 _____ C:\Users\kaPL74\Downloads\Vyuctovani_57623063_2511.pdf
2025-11-24 08:23 - 2025-11-24 08:23 - 002172559 _____ C:\Users\kaPL74\Downloads\cenik_nove_ZS_CZ-1.pdf
2025-11-20 17:23 - 2025-11-20 17:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\Ubisoft
2025-11-20 17:18 - 2025-11-20 17:18 - 000017052 _____ C:\Users\kaPL74\Downloads\termíny sčítání 2026_jen pro CD vse.xlsx
2025-11-20 17:17 - 2025-11-20 17:17 - 000136881 _____ C:\Users\kaPL74\Downloads\Metodický pokyn OIKvýprava el jednotky r 680Pendolínoúčinnosť od 20112025.pdf
2025-11-20 14:40 - 2025-11-20 14:40 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511.pdf
2025-11-20 14:40 - 2025-11-20 14:40 - 000080665 _____ C:\Users\kaPL74\Downloads\Vyuctovani_57623063_2506.pdf
2025-11-18 15:44 - 2025-11-18 15:44 - 000031119 _____ C:\Users\kaPL74\Downloads\[SkT]František_Kotleta_a_Kristýna_Sněgoňová_-_01_Základna_(2025).torrent
2025-11-18 08:34 - 2025-11-18 08:34 - 001038045 _____ C:\Users\kaPL74\Downloads\Příloha č.1_IŘ_461_VJŘ.pdf
2025-11-17 23:23 - 2025-11-17 23:23 - 000025498 _____ C:\Users\kaPL74\Downloads\[SkT]Nikdo_2___Nobody_2_(2025)(CZ_EN)[1080p][WEB-DL]_=_CSFD_62_.torrent
2025-11-15 15:34 - 2025-11-27 20:55 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Discord
2025-11-15 15:19 - 2025-11-27 20:59 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\discord
2025-11-13 18:17 - 2025-11-13 18:17 - 000804667 _____ C:\Users\kaPL74\Downloads\2025 testy doprava O-04.pdf
2025-11-13 13:45 - 2025-11-13 13:46 - 000286501 _____ C:\Users\kaPL74\Downloads\n1019.pdf
2025-11-13 12:22 - 2025-11-13 12:22 - 000064551 _____ C:\Users\kaPL74\Downloads\[SkT]Král_videoher___Grandma's_boy_(2006)(CZ)[1080p][BDRip]_=_CSFD_63_.torrent
2025-11-12 18:18 - 2025-11-12 18:18 - 000012419 _____ C:\Users\kaPL74\Downloads\[SkT]Jdeme_si_hrát___Playdate_(2025)(CZ_EN)[1080p]__=_CSFD_47_.torrent
2025-11-12 18:16 - 2025-11-12 18:16 - 000027441 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E12_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-11 16:26 - 2025-11-11 16:26 - 001319122 _____ C:\Users\kaPL74\Downloads\PM 8 2025.pdf
2025-11-11 16:24 - 2025-11-11 16:24 - 000018132 _____ C:\Users\kaPL74\Downloads\[SkT]Elli_a_parta_příšeráků___Elli_and_the_Ghostly_Ghost_Train_(2024)(CZ)[1080p][TvRip]_=_CSFD_48_.torrent
2025-11-05 17:27 - 2025-11-05 17:27 - 000027601 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E11_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-05 08:17 - 2025-11-05 09:49 - 000000931 _____ C:\WINDOWS\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}.job
2025-11-05 08:17 - 2025-11-05 08:17 - 000004126 _____ C:\WINDOWS\system32\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}
2025-11-05 08:10 - 2025-11-05 08:10 - 000012970 _____ C:\Users\kaPL74\Downloads\[SkT]Computer_(11_2025)_(CZ).torrent
2025-11-05 08:10 - 2025-11-05 08:10 - 000004412 _____ C:\Users\kaPL74\Downloads\[SkT]Uživatelská_příručka_Scenic_3_Ph2_-_1095-6_CSY_[PDF]-1.torrent
2025-11-02 17:29 - 2025-11-02 17:29 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-11-01 20:38 - 2025-11-01 20:38 - 000030427 _____ C:\Users\kaPL74\Downloads\[SkT]Zlouni_2___The_Bad_Guys_2_(2025)(CZ)[1080p]_=_CSFD_78_.torrent
2025-10-30 11:32 - 2025-10-30 11:32 - 000079894 _____ C:\WINDOWS\SysWOW64\ctac.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000079894 _____ C:\WINDOWS\system32\ctac.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000035082 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000035082 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-10-30 11:28 - 2025-10-30 11:28 - 000014881 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E10_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-10-28 19:36 - 2025-10-10 16:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 000478400 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 000374976 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 001322176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 000675008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 000509120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 026354880 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-10-28 19:36 - 2025-10-10 15:57 - 002317504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001715904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001599680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-10-28 19:36 - 2025-10-10 15:57 - 001572544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001223360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001057472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 000813248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 024676032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 021714112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 007683264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 005469888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 004175040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 000468672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-10-28 19:36 - 2025-10-10 15:55 - 005918912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 005625520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 004924120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 000853696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-10-28 19:35 - 2025-10-10 06:36 - 000148902 _____ C:\WINDOWS\system32\nvinfo.pb
2025-10-28 16:50 - 2025-10-28 16:50 - 000266517 _____ C:\Users\kaPL74\Downloads\lic_cert_33c-jfc-3he.pdf
2025-10-28 13:43 - 2025-10-28 13:43 - 000015850 _____ C:\Users\kaPL74\Downloads\[SkT]Visual_C _Redistributable_Runtimes_All-in-One_[07_2025].torrent
2025-10-28 08:19 - 2025-10-28 08:19 - 000115628 _____ C:\Users\kaPL74\Downloads\[SkT]4K_Video_Downloader_Plus_25.3.4.0241_CZ_(x32x64)_portable.torrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-27 21:12 - 2020-05-26 19:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\uTorrent
2025-11-27 21:02 - 2020-02-29 22:17 - 000000000 ____D C:\Program Files (x86)\Steam
2025-11-27 20:25 - 2020-02-29 22:10 - 000000000 ____D C:\Users\kaPL74\AppData\Local\D3DSCache
2025-11-27 20:07 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-27 18:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-11-27 18:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-11-27 18:15 - 2025-06-01 18:31 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2025-11-27 18:15 - 2022-12-14 16:42 - 000000000 ____D C:\Users\kaPL74\AppData\Local\AMSDK
2025-11-27 18:01 - 2020-02-29 20:33 - 000000000 ____D C:\Users\kaPL74\AppData\Local\CrashDumps
2025-11-27 17:45 - 2024-11-30 20:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-11-27 17:23 - 2023-10-26 22:53 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Ubisoft Game Launcher
2025-11-27 12:51 - 2024-12-01 18:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2025-11-27 11:31 - 2025-09-02 19:28 - 000000000 ____D C:\PDF-XChange
2025-11-27 10:54 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-27 10:54 - 2020-02-29 17:59 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Packages
2025-11-27 10:54 - 2020-02-29 17:58 - 000000000 ____D C:\ProgramData\Packages
2025-11-26 21:02 - 2020-03-08 20:47 - 000000000 ____D C:\ProgramData\NVIDIA
2025-11-26 21:01 - 2023-02-28 10:24 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\vlc
2025-11-26 18:30 - 2024-11-30 20:19 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-11-26 18:30 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-11-26 18:23 - 2024-11-30 20:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-11-26 18:23 - 2024-11-30 20:16 - 000014746 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-26 18:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-11-26 18:23 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-11-26 18:23 - 2020-08-23 10:23 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-26 18:06 - 2024-11-30 20:14 - 000017840 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2025-11-26 18:06 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-11-25 22:02 - 2020-02-29 22:49 - 000000000 ___RD C:\Users\kaPL74\Documents\Euro Truck Simulator 2
2025-11-25 20:33 - 2023-06-07 15:31 - 000239568 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2025-11-25 20:33 - 2023-06-07 15:30 - 000000000 ____D C:\Program Files\Malwarebytes
2025-11-25 20:33 - 2020-05-02 07:36 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-11-25 20:31 - 2020-02-29 18:31 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-25 20:30 - 2023-06-07 15:31 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2025-11-25 18:17 - 2024-11-30 20:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-11-24 21:41 - 2022-02-10 14:35 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-11-24 21:22 - 2023-06-07 15:32 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Malwarebytes
2025-11-24 17:47 - 2022-10-20 17:19 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Sentry
2025-11-24 09:11 - 2022-02-25 17:03 - 000001479 _____ C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NVIDIA GeForce NOW.lnk
2025-11-24 09:11 - 2020-03-08 20:57 - 000000000 ____D C:\Users\kaPL74\AppData\Local\NVIDIA Corporation
2025-11-24 08:16 - 2024-11-30 20:19 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-11-24 08:16 - 2024-11-30 20:19 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-11-22 13:25 - 2025-09-18 16:23 - 000000000 ____D C:\Users\kaPL74\Documents\American Truck Simulator
2025-11-21 19:35 - 2020-02-29 22:19 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Steam
2025-11-21 19:07 - 2020-03-13 21:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Word
2025-11-21 18:46 - 2024-11-30 09:29 - 000000000 ____D C:\Program Files\Microsoft Office
2025-11-21 18:41 - 2020-06-07 12:06 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-20 17:23 - 2023-10-26 22:53 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2025-11-20 17:23 - 2023-10-26 22:52 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2025-11-18 19:31 - 2024-06-28 23:50 - 000000000 ____D C:\Users\kaPL74\AppData\Local\anadius
2025-11-18 18:17 - 2020-02-29 19:58 - 000000000 ____D C:\Users\Public\Documents\Winstep
2025-11-18 16:21 - 2020-03-13 21:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Office
2025-11-18 09:00 - 2025-09-05 12:38 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Huawei Watch Face Maker
2025-11-17 22:52 - 2024-11-30 20:19 - 000003546 _____ C:\WINDOWS\system32\Tasks\Launch Adobe CCXProcess
2025-11-15 16:58 - 2020-03-05 21:59 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows Photo Viewer
2025-11-15 15:34 - 2025-05-07 18:06 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-11-15 15:34 - 2020-12-30 20:30 - 000000000 ____D C:\Users\kaPL74\AppData\Local\SquirrelTemp
2025-11-12 18:01 - 2025-10-03 17:53 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-12 16:58 - 2024-11-30 20:15 - 000641736 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-11-12 16:58 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-11-12 16:14 - 2025-01-16 15:03 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2025-11-11 21:33 - 2024-11-30 20:18 - 003277824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-11-11 21:31 - 2020-02-29 20:12 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-11-11 21:29 - 2020-02-29 20:12 - 215625816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-11-02 13:21 - 2020-02-29 18:17 - 000000000 ____D C:\Users\kaPL74\AppData\Local\NVIDIA
2025-10-30 12:40 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-30 12:39 - 2025-06-29 17:56 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-10-30 12:39 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2025-10-30 12:39 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-30 12:39 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\cs
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-10-28 19:34 - 2024-11-30 21:12 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-10-28 19:34 - 2020-02-29 18:16 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-10-28 08:21 - 2024-11-30 20:14 - 000139904 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2025-10-28 08:21 - 2022-04-02 10:08 - 000127056 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmonm.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000273768 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000232928 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000126552 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000086800 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000057368 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys
==================== Files in the root of some directories ========
2020-03-01 10:59 - 2020-03-01 10:59 - 000007859 _____ () C:\Users\kaPL74\AppData\Roaming\pcouffin.cat
2020-03-01 10:59 - 2020-03-01 10:59 - 000001167 _____ () C:\Users\kaPL74\AppData\Roaming\pcouffin.inf
2020-03-01 10:59 - 2020-03-01 10:59 - 000082816 _____ (VSO Software) C:\Users\kaPL74\AppData\Roaming\pcouffin.sys
2024-01-31 19:25 - 2024-01-31 19:25 - 000000044 _____ () C:\Users\kaPL74\AppData\Roaming\Screen+.data
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by kaPL74 (administrator) on KOODL (Gigabyte Technology Co., Ltd. B250M-D3H) (27-11-2025 21:12:19)
Running from C:\Users\kaPL74\Desktop\FRST64.exe
Loaded Profiles: kaPL74
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\MSI_LED.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eServiceHost.exe <2>
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Users\kaPL74\AppData\Roaming\uTorrent\uninstall.exe ->) (Zdenek Svub -> BitTorrent, Inc.) C:\Users\kaPL74\AppData\Roaming\uTorrent\utorrent.exe
(Discord Inc. -> Discord Inc.) C:\Users\kaPL74\AppData\Local\Discord\app-1.0.9216\Discord.exe <6>
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIYOE.EXE <2>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\Nexus.exe
(explorer.exe ->) (Zdenek Svub -> Zdenek Svub) C:\Users\kaPL74\AppData\Roaming\uTorrent\uninstall.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(services.exe ->) (Michael Maltsev -> Ramen Software) C:\Program Files\Windhawk\windhawk.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_f088ae99b5a2f5fd\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(services.exe ->) (Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\WsxService.exe
(sihost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> WhatsApp.Root) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2586.3.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-11-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1690368 2022-07-22] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [455968 2023-05-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2756368 2023-08-09] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [DisableAcrylicBackgroundOnLogon] 1
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [MicrosoftEdgeAutoLaunch_7A1077EE3B991D247C5AEDA2F36CDE89] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253736 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Nexus] => C:\Program Files (x86)\Winstep\Nexus.exe [19226240 2025-09-29] (Winstep Software Technologies) [File not signed]
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3649120 2025-03-10] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Teams] => "C:\Users\kaPL74\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe" msteams:system-initiated (No File)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIYOE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\Run: [Discord] => C:\Users\kaPL74\AppData\Local\Discord\Update.exe [1596344 2025-11-10] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {893220f5-a400-11ef-ac24-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {be25676b-360d-11f0-ac5e-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\...\MountPoints2: {c0b4d983-918b-11f0-ac79-001a7dda7115} - "G:\HonorSuiteOnlineInstaller.exe"
HKU\S-1-5-21-3640345311-2590231575-3648685039-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [860160 2025-10-30] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\EPSON L3150 Series 64MonitorBE: C:\Windows\system32\E_YLMBUNE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\...\Print\Monitors\EPSON L4260 Series 64MonitorBE: C:\Windows\system32\E_YLMBYOE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeepL auto-start.lnk [2024-08-05]
ShortcutTarget: DeepL auto-start.lnk -> C:\Users\kaPL74\AppData\Roaming\0install.net\desktop-integration\stubs\1eae01f3cdb5ff0ecf683b15a60a1489573c1188cb34abc205fcf7a924b4e54d\auto-start.exe () [File not signed]
Startup: C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2024-12-06]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {C060EBE5-4D92-4CD6-A627-A5C06CB9C00B} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [3166568 2025-10-30] (Microsoft Windows -> Microsoft Corporation)
Task: {AB6FEA38-A7E4-429C-B367-FE9794B4E853} - System32\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {FCBF87A0-81E9-4275-B888-CD8E3A04E478} - System32\Tasks\EPSON L4260 Series Update {1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {AB963276-526E-46ED-921F-CDFB732C76BE} - System32\Tasks\Launch Adobe CCXProcess => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [194048 2025-07-31] (Adobe Inc. -> Adobe Inc.)
Task: {069938DF-B708-41AA-8191-665BF0797567} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16961360 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {BD785BE3-AFB4-4F3C-8469-B25232326F14} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29178296 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {1D50EB8D-02B5-4E1D-B3B1-58AF3422D165} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70488 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {234B24A4-D0F1-4EC3-B94B-CCB8A6A0798F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29178296 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C71EB60-E430-4A3B-9B97-D9225C9FE6F6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316696 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {1672C626-7E2A-4B4C-AA74-981061B9869F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316696 2025-11-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {19963B57-8CE2-4841-B8B4-254F77D1C768} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365280 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3B58176E-C576-4C4E-9314-30D2D2D387AD} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {3A20377E-A9F5-4026-9494-DA08B3C55072} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {DBA4361B-D895-4D6B-B908-195B5E5D5FEA} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {6DE1FD7A-1439-489D-9E9D-48AF77644AF0} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {DC302B82-D0ED-438D-86A3-517635587495} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3640345311-2590231575-3648685039-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {72032366-BA68-4CA1-A07D-0657B7F43D77} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {7173B180-40EF-4AC9-831F-36EAB8BCEC84} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3354296 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {CD03A155-5B1A-4F49-871D-3E36C2CBDB17} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {0CF43AB4-FAF8-4781-9118-DBB0EF46ECE3} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {91B6FC41-C0BE-487A-95B7-2AFC53884C52} - System32\Tasks\S-1-5-21-3640345311-2590231575-3648685039-1001\DataSenseLiveTileTask => %SystemRoot%\System32\DataUsageLiveTileTask.exe (No File)
Task: {AEB78506-86E7-4488-A9E5-FA196B7F48A7} - System32\Tasks\TrackerAutoUpdate => "C:\Program Files\Tracker Software\Update\TrackerUpdate.exe" -CheckUpdate (No File)
Task: {73C74A65-7865-4AB0-8BDD-8A286ADED84C} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17209528 2025-11-20] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
Task: {DDAF1FF7-12BB-487C-B4FF-AE6119AD91BE} - System32\Tasks\WindhawkRunUITask => C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
Task: {94126885-D9C3-4BE6-ABAA-11D05EC9C522} - System32\Tasks\WindhawkUpdateTask => C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSYOE.EXE:/EXE:{014AA8A6-07BB-4245-B286-D5680465795B} /F:UpdateWORKGROUP\KOODL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\EPSON L4260 Series Update {1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSYOE.EXE:/EXE:{1863F7E7-EFE7-4815-BD2B-50F0CC65EEB3} /F:UpdateWORKGROUP\KOODL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\MSIGH_Host.job => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe
Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{04687598-79ac-424b-a997-68cfe11fc2ae}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2025-11-07]
Edge Extension: (Dokumenty Google offline) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-09-05]
Edge Extension: (ESET Browser Privacy & Security) - C:\Users\kaPL74\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc [2025-10-28]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: jyflzkmn.Default Profile
FF DefaultProfile: suv7x4pj.default
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\zen\Profiles\jyflzkmn.Default Profile [2025-05-30]
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\zen\Profiles\4brcocxu.Default (release) [2025-09-04]
FF Homepage: zen\Profiles\4brcocxu.Default (release) -> about:home
FF NewTab: zen\Profiles\4brcocxu.Default (release) -> about:newtab
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default [2025-09-04]
FF Homepage: Mozilla\Firefox\Profiles\suv7x4pj.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\suv7x4pj.default -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\suv7x4pj.default -> hxxps://www.slevomat.cz
FF Extension: (Blokátor reklam AdGuard) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\adguardadblocker@adguard.com.xpi [2020-01-05]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2019-01-05]
FF Extension: (To Google Translate) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\suv7x4pj.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2019-12-07]
FF ProfilePath: C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release [2025-11-27]
FF Homepage: Mozilla\Firefox\Profiles\bdftw427.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\bdftw427.default-release -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\bdftw427.default-release -> hxxps://www.slevomat.cz; hxxps://calendar.google.com
FF Extension: (Blokátor reklam AdGuard) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\adguardadblocker@adguard.com.xpi [2025-11-20]
FF Extension: (ESET Browser Privacy & Security) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\browserextension@eset.com.xpi [2025-11-17]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2021-06-23]
FF Extension: (Firefox Color) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\FirefoxColor@mozilla.com.xpi [2021-11-20]
FF Extension: (Použijte Google překladač) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2025-10-12]
FF Extension: (AdBlocker for YouTube™) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2025-06-12]
FF Extension: (TWP - Translate Web Pages) - C:\Users\kaPL74\AppData\Roaming\Mozilla\Firefox\Profiles\bdftw427.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2025-11-01]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-3640345311-2590231575-3648685039-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-11-27]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13366624 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
R2 dlpsrv; C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe [770528 2025-02-12] (ESET, spol. s r.o. -> ESET)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19012192 2025-03-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5543856 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [222768 2025-03-12] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [46776 2018-09-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2027192 2019-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2025-01-24] (The Document Foundation -> The Document Foundation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2025-11-25] (Malwarebytes Inc. -> Malwarebytes)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [86688 2018-07-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_f088ae99b5a2f5fd\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-30] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [10752 2020-02-29] () [File not signed]
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2025-11-20] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3174840 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [133592 2024-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Windhawk; C:\Program Files\Windhawk\windhawk.exe [831616 2025-05-07] (Michael Maltsev -> Ramen Software)
R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService.exe [782848 2025-07-27] (Winstep Software Technologies) [File not signed]
S3 MBVpnTunnelService; "C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2025-11-27] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 DLMFENC; C:\WINDOWS\System32\DRIVERS\DLMFENC.sys [193912 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R0 DLPCRYPT; C:\WINDOWS\System32\DRIVERS\dlpcrypt.sys [121728 2022-08-24] (DESlock Limited -> DESlock Ltd.)
R0 dlpvdisk; C:\WINDOWS\System32\DRIVERS\dlpvdisk.sys [127320 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 DroidCam; C:\WINDOWS\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232928 2025-10-28] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [139904 2025-10-28] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S4 edevmonm; C:\WINDOWS\System32\DRIVERS\edevmonm.sys [127056 2025-10-28] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [17840 2025-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [273768 2025-10-28] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57368 2025-10-28] (ESET, spol. s r.o. -> ESET)
S1 EneIo; C:\WINDOWS\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86800 2025-10-28] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126552 2025-10-28] (ESET, spol. s r.o. -> ESET)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2025-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2025-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 Revoflt; C:\WINDOWS\System32\DRIVERS\revoflt.sys [38400 2025-04-24] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [133944 2020-01-20] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
R0 VDLPToken2; C:\WINDOWS\System32\DRIVERS\vdlptkn2.sys [157256 2025-02-12] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [55856 2024-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [594304 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [105856 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-27 21:12 - 2025-11-27 21:12 - 000032785 _____ C:\Users\kaPL74\Desktop\FRST.txt
2025-11-27 21:11 - 2025-11-27 21:12 - 000000000 ____D C:\FRST
2025-11-27 21:09 - 2025-11-27 21:09 - 002444288 _____ (Farbar) C:\Users\kaPL74\Desktop\FRST64.exe
2025-11-27 18:58 - 2025-11-27 18:58 - 000014497 _____ C:\Users\kaPL74\Downloads\[SkT]Adobe_Photoshop_2026_v27.1.0.17_Multilingual.torrent
2025-11-27 18:01 - 2025-11-27 18:01 - 000000000 ____D C:\zoek_backup
2025-11-27 12:49 - 2025-11-27 12:49 - 000005873 _____ C:\Users\kaPL74\Downloads\[TreZzoR]Revo Uninstaller Pro 5.2.2 (5.2.5)-1.torrent
2025-11-27 11:30 - 2025-11-27 11:30 - 000268646 _____ C:\Users\kaPL74\Downloads\Změny v odborné způsobilosti osob dopis.pdf
2025-11-26 19:28 - 2025-11-27 12:54 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-11-26 18:30 - 2025-11-26 18:30 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-11-26 18:30 - 2025-11-26 18:30 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-11-26 18:20 - 2025-11-26 18:20 - 000029281 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E13_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-26 18:20 - 2025-11-26 18:20 - 000028701 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E14_(CZ)[WEB-DL][1080p]_=_CSFD_41_.torrent
2025-11-25 22:42 - 2025-11-25 22:42 - 000010203 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.3_(x64)-1.torrent
2025-11-25 22:42 - 2025-11-25 22:42 - 000006218 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_v5.3.7_(CZ)[AppDoze]_.torrent
2025-11-25 21:26 - 2025-11-25 21:26 - 000286501 _____ C:\Users\kaPL74\Downloads\huawei-watch-fit.pdf
2025-11-25 21:15 - 2025-11-25 21:15 - 002108558 _____ C:\Users\kaPL74\Downloads\Huawei Watch Fit 4 CZ.pdf
2025-11-24 21:48 - 2025-11-25 20:33 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2025-11-24 21:43 - 2025-11-24 21:43 - 000018565 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.0_Portable_[06.2025]-1.torrent
2025-11-24 21:42 - 2025-11-24 21:42 - 000010203 _____ C:\Users\kaPL74\Downloads\[SkT]Revo_Uninstaller_Pro_5.4.3_(x64).torrent
2025-11-24 09:52 - 2025-11-24 09:52 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511-2.pdf
2025-11-24 09:20 - 2025-11-24 09:20 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511-1.pdf
2025-11-24 09:20 - 2025-11-24 09:20 - 000077610 _____ C:\Users\kaPL74\Downloads\Vyuctovani_57623063_2511.pdf
2025-11-24 08:23 - 2025-11-24 08:23 - 002172559 _____ C:\Users\kaPL74\Downloads\cenik_nove_ZS_CZ-1.pdf
2025-11-20 17:23 - 2025-11-20 17:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\Ubisoft
2025-11-20 17:18 - 2025-11-20 17:18 - 000017052 _____ C:\Users\kaPL74\Downloads\termíny sčítání 2026_jen pro CD vse.xlsx
2025-11-20 17:17 - 2025-11-20 17:17 - 000136881 _____ C:\Users\kaPL74\Downloads\Metodický pokyn OIKvýprava el jednotky r 680Pendolínoúčinnosť od 20112025.pdf
2025-11-20 14:40 - 2025-11-20 14:40 - 000106780 _____ C:\Users\kaPL74\Downloads\Vyuctovani_56191100_2511.pdf
2025-11-20 14:40 - 2025-11-20 14:40 - 000080665 _____ C:\Users\kaPL74\Downloads\Vyuctovani_57623063_2506.pdf
2025-11-18 15:44 - 2025-11-18 15:44 - 000031119 _____ C:\Users\kaPL74\Downloads\[SkT]František_Kotleta_a_Kristýna_Sněgoňová_-_01_Základna_(2025).torrent
2025-11-18 08:34 - 2025-11-18 08:34 - 001038045 _____ C:\Users\kaPL74\Downloads\Příloha č.1_IŘ_461_VJŘ.pdf
2025-11-17 23:23 - 2025-11-17 23:23 - 000025498 _____ C:\Users\kaPL74\Downloads\[SkT]Nikdo_2___Nobody_2_(2025)(CZ_EN)[1080p][WEB-DL]_=_CSFD_62_.torrent
2025-11-15 15:34 - 2025-11-27 20:55 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Discord
2025-11-15 15:19 - 2025-11-27 20:59 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\discord
2025-11-13 18:17 - 2025-11-13 18:17 - 000804667 _____ C:\Users\kaPL74\Downloads\2025 testy doprava O-04.pdf
2025-11-13 13:45 - 2025-11-13 13:46 - 000286501 _____ C:\Users\kaPL74\Downloads\n1019.pdf
2025-11-13 12:22 - 2025-11-13 12:22 - 000064551 _____ C:\Users\kaPL74\Downloads\[SkT]Král_videoher___Grandma's_boy_(2006)(CZ)[1080p][BDRip]_=_CSFD_63_.torrent
2025-11-12 18:18 - 2025-11-12 18:18 - 000012419 _____ C:\Users\kaPL74\Downloads\[SkT]Jdeme_si_hrát___Playdate_(2025)(CZ_EN)[1080p]__=_CSFD_47_.torrent
2025-11-12 18:16 - 2025-11-12 18:16 - 000027441 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E12_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-11 16:26 - 2025-11-11 16:26 - 001319122 _____ C:\Users\kaPL74\Downloads\PM 8 2025.pdf
2025-11-11 16:24 - 2025-11-11 16:24 - 000018132 _____ C:\Users\kaPL74\Downloads\[SkT]Elli_a_parta_příšeráků___Elli_and_the_Ghostly_Ghost_Train_(2024)(CZ)[1080p][TvRip]_=_CSFD_48_.torrent
2025-11-05 17:27 - 2025-11-05 17:27 - 000027601 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E11_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-11-05 08:17 - 2025-11-05 09:49 - 000000931 _____ C:\WINDOWS\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}.job
2025-11-05 08:17 - 2025-11-05 08:17 - 000004126 _____ C:\WINDOWS\system32\Tasks\EPSON L4260 Series Update {014AA8A6-07BB-4245-B286-D5680465795B}
2025-11-05 08:10 - 2025-11-05 08:10 - 000012970 _____ C:\Users\kaPL74\Downloads\[SkT]Computer_(11_2025)_(CZ).torrent
2025-11-05 08:10 - 2025-11-05 08:10 - 000004412 _____ C:\Users\kaPL74\Downloads\[SkT]Uživatelská_příručka_Scenic_3_Ph2_-_1095-6_CSY_[PDF]-1.torrent
2025-11-02 17:29 - 2025-11-02 17:29 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-11-01 20:38 - 2025-11-01 20:38 - 000030427 _____ C:\Users\kaPL74\Downloads\[SkT]Zlouni_2___The_Bad_Guys_2_(2025)(CZ)[1080p]_=_CSFD_78_.torrent
2025-10-30 11:32 - 2025-10-30 11:32 - 000079894 _____ C:\WINDOWS\SysWOW64\ctac.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000079894 _____ C:\WINDOWS\system32\ctac.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000035082 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-30 11:32 - 2025-10-30 11:32 - 000035082 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-10-30 11:28 - 2025-10-30 11:28 - 000014881 _____ C:\Users\kaPL74\Downloads\[SkT]_Kamarádi_S03E10_(CZ)[WEB-DL][1080p]_=_CSFD_40_.torrent
2025-10-28 19:36 - 2025-10-10 16:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-10-28 19:36 - 2025-10-10 16:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 000478400 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-10-28 19:36 - 2025-10-10 16:01 - 000374976 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 001322176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 000675008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-10-28 19:36 - 2025-10-10 15:58 - 000509120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 026354880 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-10-28 19:36 - 2025-10-10 15:57 - 002317504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001715904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001599680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-10-28 19:36 - 2025-10-10 15:57 - 001572544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001223360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 001057472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-10-28 19:36 - 2025-10-10 15:57 - 000813248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 024676032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 021714112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 007683264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 005469888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 004175040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-10-28 19:36 - 2025-10-10 15:56 - 000468672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-10-28 19:36 - 2025-10-10 15:55 - 005918912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 005625520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 004924120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-10-28 19:36 - 2025-10-10 15:55 - 000853696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-10-28 19:35 - 2025-10-10 06:36 - 000148902 _____ C:\WINDOWS\system32\nvinfo.pb
2025-10-28 16:50 - 2025-10-28 16:50 - 000266517 _____ C:\Users\kaPL74\Downloads\lic_cert_33c-jfc-3he.pdf
2025-10-28 13:43 - 2025-10-28 13:43 - 000015850 _____ C:\Users\kaPL74\Downloads\[SkT]Visual_C _Redistributable_Runtimes_All-in-One_[07_2025].torrent
2025-10-28 08:19 - 2025-10-28 08:19 - 000115628 _____ C:\Users\kaPL74\Downloads\[SkT]4K_Video_Downloader_Plus_25.3.4.0241_CZ_(x32x64)_portable.torrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-27 21:12 - 2020-05-26 19:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\uTorrent
2025-11-27 21:02 - 2020-02-29 22:17 - 000000000 ____D C:\Program Files (x86)\Steam
2025-11-27 20:25 - 2020-02-29 22:10 - 000000000 ____D C:\Users\kaPL74\AppData\Local\D3DSCache
2025-11-27 20:07 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-27 18:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-11-27 18:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-11-27 18:15 - 2025-06-01 18:31 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2025-11-27 18:15 - 2022-12-14 16:42 - 000000000 ____D C:\Users\kaPL74\AppData\Local\AMSDK
2025-11-27 18:01 - 2020-02-29 20:33 - 000000000 ____D C:\Users\kaPL74\AppData\Local\CrashDumps
2025-11-27 17:45 - 2024-11-30 20:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-11-27 17:23 - 2023-10-26 22:53 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Ubisoft Game Launcher
2025-11-27 12:51 - 2024-12-01 18:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2025-11-27 11:31 - 2025-09-02 19:28 - 000000000 ____D C:\PDF-XChange
2025-11-27 10:54 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-27 10:54 - 2020-02-29 17:59 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Packages
2025-11-27 10:54 - 2020-02-29 17:58 - 000000000 ____D C:\ProgramData\Packages
2025-11-26 21:02 - 2020-03-08 20:47 - 000000000 ____D C:\ProgramData\NVIDIA
2025-11-26 21:01 - 2023-02-28 10:24 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\vlc
2025-11-26 18:30 - 2024-11-30 20:19 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-11-26 18:30 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-11-26 18:23 - 2024-11-30 20:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-11-26 18:23 - 2024-11-30 20:16 - 000014746 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-26 18:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-11-26 18:23 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-11-26 18:23 - 2020-08-23 10:23 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-26 18:06 - 2024-11-30 20:14 - 000017840 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2025-11-26 18:06 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-11-25 22:02 - 2020-02-29 22:49 - 000000000 ___RD C:\Users\kaPL74\Documents\Euro Truck Simulator 2
2025-11-25 20:33 - 2023-06-07 15:31 - 000239568 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2025-11-25 20:33 - 2023-06-07 15:30 - 000000000 ____D C:\Program Files\Malwarebytes
2025-11-25 20:33 - 2020-05-02 07:36 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-11-25 20:31 - 2020-02-29 18:31 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-25 20:30 - 2023-06-07 15:31 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2025-11-25 18:17 - 2024-11-30 20:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-11-24 21:41 - 2022-02-10 14:35 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-11-24 21:22 - 2023-06-07 15:32 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Malwarebytes
2025-11-24 17:47 - 2022-10-20 17:19 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Sentry
2025-11-24 09:11 - 2022-02-25 17:03 - 000001479 _____ C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NVIDIA GeForce NOW.lnk
2025-11-24 09:11 - 2020-03-08 20:57 - 000000000 ____D C:\Users\kaPL74\AppData\Local\NVIDIA Corporation
2025-11-24 08:16 - 2024-11-30 20:19 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-11-24 08:16 - 2024-11-30 20:19 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-11-22 13:25 - 2025-09-18 16:23 - 000000000 ____D C:\Users\kaPL74\Documents\American Truck Simulator
2025-11-21 19:35 - 2020-02-29 22:19 - 000000000 ____D C:\Users\kaPL74\AppData\Local\Steam
2025-11-21 19:07 - 2020-03-13 21:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Word
2025-11-21 18:46 - 2024-11-30 09:29 - 000000000 ____D C:\Program Files\Microsoft Office
2025-11-21 18:41 - 2020-06-07 12:06 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-20 17:23 - 2023-10-26 22:53 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2025-11-20 17:23 - 2023-10-26 22:52 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2025-11-18 19:31 - 2024-06-28 23:50 - 000000000 ____D C:\Users\kaPL74\AppData\Local\anadius
2025-11-18 18:17 - 2020-02-29 19:58 - 000000000 ____D C:\Users\Public\Documents\Winstep
2025-11-18 16:21 - 2020-03-13 21:23 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Office
2025-11-18 09:00 - 2025-09-05 12:38 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Huawei Watch Face Maker
2025-11-17 22:52 - 2024-11-30 20:19 - 000003546 _____ C:\WINDOWS\system32\Tasks\Launch Adobe CCXProcess
2025-11-15 16:58 - 2020-03-05 21:59 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows Photo Viewer
2025-11-15 15:34 - 2025-05-07 18:06 - 000000000 ____D C:\Users\kaPL74\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-11-15 15:34 - 2020-12-30 20:30 - 000000000 ____D C:\Users\kaPL74\AppData\Local\SquirrelTemp
2025-11-12 18:01 - 2025-10-03 17:53 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-12 16:58 - 2024-11-30 20:15 - 000641736 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-11-12 16:58 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-11-12 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-11-12 16:14 - 2025-01-16 15:03 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2025-11-11 21:33 - 2024-11-30 20:18 - 003277824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-11-11 21:31 - 2020-02-29 20:12 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-11-11 21:29 - 2020-02-29 20:12 - 215625816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-11-02 13:21 - 2020-02-29 18:17 - 000000000 ____D C:\Users\kaPL74\AppData\Local\NVIDIA
2025-10-30 12:40 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-10-30 12:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-30 12:39 - 2025-06-29 17:56 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-10-30 12:39 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2025-10-30 12:39 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-30 12:39 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\cs
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-30 12:39 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-10-28 19:34 - 2024-11-30 21:12 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-10-28 19:34 - 2020-02-29 18:16 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-10-28 08:21 - 2024-11-30 20:14 - 000139904 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2025-10-28 08:21 - 2022-04-02 10:08 - 000127056 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmonm.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000273768 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000232928 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000126552 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000086800 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2025-10-28 08:21 - 2020-10-26 09:28 - 000057368 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys
==================== Files in the root of some directories ========
2020-03-01 10:59 - 2020-03-01 10:59 - 000007859 _____ () C:\Users\kaPL74\AppData\Roaming\pcouffin.cat
2020-03-01 10:59 - 2020-03-01 10:59 - 000001167 _____ () C:\Users\kaPL74\AppData\Roaming\pcouffin.inf
2020-03-01 10:59 - 2020-03-01 10:59 - 000082816 _____ (VSO Software) C:\Users\kaPL74\AppData\Roaming\pcouffin.sys
2024-01-31 19:25 - 2024-01-31 19:25 - 000000044 _____ () C:\Users\kaPL74\AppData\Roaming\Screen+.data
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================