Malware detected. Moc prosím o kontrolu logu.
Napsal: 28 úno 2026 00:25
Dobrý den. Moc prosím o kontrolu. Avavst Premium mi nic nedetekuje, nicmíně pocítač se zasekává a vyskakuje okno prohlížeče, ktreré zobrazuje chyby a přítomnost malware. Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2026
Ran by hejda (administrator) on HEJDYS (ASUSTeK COMPUTER INC. ASUS TUF Gaming A15 FA506NC_FA506NC) (27-02-2026 23:13:31)
Running from C:\Users\hejda\Desktop\FRST64.exe
Loaded Profiles: hejda
Platform: Microsoft Windows 11 Home Version 25H2 26200.7840 (X64) Language: English (United Kingdom)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOSD.exe
(C:\Program Files (x86)\LightingService\LightingService.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe
(C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> ) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\PresentMon_x64.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.System.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\nvrla.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\ShadowPlay\nvsphelper64.exe
(C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (GN Hearing A/S -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\prism\SteelSeriesPrism.exe
(C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\amdow.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(C:\Program Files\WindowsApps\Microsoft.YourPhone_1.26011.42.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.26011.42.0_x64__8wekyb3d8bbwe\YourPhoneAppProxy.exe
(C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.ServiceHost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.Notifier.exe
(C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.ServiceHost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.Notifier.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusHotkey.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimizationStartupTask.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe
(DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atiesrxx.exe ->) (AMD Test Build -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atieclxx.exe
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <2>
(explorer.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(services.exe ->) (AMD Test Build -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXNear\GlideXNearService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXServiceExt.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\ASUSACCI\ArmouryCrateControlInterface.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MidiSrv.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtManServ.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a5b5950537cd134e\RtkAudUService64.exe <2>
(sihost.exe ->) (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.43.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe <5>
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Copilot_1.25121.84.0_x64__8wekyb3d8bbwe\Copilot.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiDriveSync_4.2.63704.0_x64__bvgb55c3tfatp\MobiDrive\MobiDrive.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiDriveSync_4.2.63704.0_x64__bvgb55c3tfatp\MobiDrive\MobiDrive.ServiceHost.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.ServiceHost.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.ServiceHost.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <3>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS Hotplug Controller\AsHotplugCtrl.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.229.1.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spaceman.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a5b5950537cd134e\RtkAudUService64.exe [2021320 2024-05-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [20234296 2026-02-24] (GN Hearing A/S -> SteelSeries A/S)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [887976 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [7279840 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [ASUS Smart Display Control] => C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe [178840 2024-03-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [14593584 2026-01-27] (GOG sp. z o.o -> GOG.com)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-02-15] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5760152 2026-01-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-27] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3792032 2026-01-27] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [electron.app.Pi Network] => C:\Users\hejda\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Docker Desktop] => C:\Program Files\Docker\Docker\Docker Desktop.exe [13001648 2026-02-19] (Docker Inc -> Docker Inc.)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [MicrosoftEdgeAutoLaunch_E478EAC7BFC67F03F478E5F2D7931491] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4342352 2026-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\Windows\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2025-08-22]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2026-01-30] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\145.0.7632.117\Installer\chrmstp.exe [2026-02-26] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {410B4D63-12D8-4350-8F4A-E34014E8BDB6} - System32\Tasks\ASUS Hotplug Controller => C:\Program Files\ASUS\ASUS Hotplug Controller\AsHotplugCtrl.exe [208016 2024-04-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {F49AB492-642D-4938-B92E-B58FED3359C3} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusHotkey.exe [362032 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {E78D0C8F-6E32-4DF3-9CA8-F54C7208C281} - System32\Tasks\ASUS Update Checker 2.0 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusUpdateChecker.exe [846384 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {92D0D783-9E50-4AC0-8238-534D411197DD} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [359784 2024-01-15] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {0F054585-BEFC-4EB3-B450-F416C7F164B9} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1812328 2024-01-15] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {E1B4053E-90F4-4FD6-8B4F-41D7D547725F} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [139091304 2024-04-19] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {C616FA06-B577-4015-A6D2-7BD478E4EFFA} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {719E5C49-92AE-4012-AD17-40F53E10A2E1} - System32\Tasks\ASUSSmartDisplayControl => C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe [178840 2024-03-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {3F0AD4E5-9017-4943-AE79-009EA9898A62} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4471344 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {7BE216B5-A86E-4BB1-8F74-6EFFB6154541} - System32\Tasks\AsusSystemDiagnosis_DriverQuality => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1598512 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
Task: {D2F02B02-EF68-4CC9-A3E5-C5F8BCE19511} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9246944 2026-01-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {EF303337-1C6B-406A-9311-C51E91FD197D} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6444768 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {F843CAFF-A462-41CA-9A1D-98D1D5A95CE6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [9246944 2026-02-24] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E3BEE0EC-9B6C-4B76-9664-5391117857F4} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5623464 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DE7DE9CD-3985-4517-815A-ED744A17135A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {403F2053-B32D-4C26-96D1-2A0C891DD2C7} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.6{3D6AC326-8B9E-4A63-AA4F-F47507849CAE} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.6\updater.exe [7056536 2026-02-10] (Google LLC -> Google LLC)
Task: {74EC72C1-7449-47F4-88ED-5D38454F3A22} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16258944 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {8714EBC2-46D3-44F6-9726-201CE81199BB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28625808 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {8F0424AA-107E-4592-BD32-1DC984AF7721} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {972025DF-F308-4E6C-86AD-6E92ACEB9D6D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28625808 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {371A0366-3BFE-4A51-B760-369408FF1D0D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310128 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {01627922-636F-410F-8C80-5110FDBE412A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310128 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {5FE0C2FA-C39B-4AF5-8932-ABEA187A72AF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1346840 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D589F2D-3607-453D-986C-C13CB39BA9D8} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16258944 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {69091364-5637-4A55-A62E-9C564F622FB2} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3337328 2026-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7CF7E640-EF7E-4565-954C-215037FBD7D4} - System32\Tasks\OBUpdate => C:\Users\hejda\AppData\Local\OneBrowser\Update\OBUpdateService.exe [3312144 2025-12-07] (WORK PRODUCT, INC. -> WORK PRODUCT, INC.) <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{1e830ae0-24bc-4813-841d-0138cb78e197}: [DhcpNameServer] 40.54.1.15
Tcpip\..\Interfaces\{1e830ae0-24bc-4813-841d-0138cb78e197}: [DhcpDomain] E3-WDS12.COM
Tcpip\..\Interfaces\{fd519ca8-774d-4d90-a1ae-17f0dd12ef8b}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{fd519ca8-774d-4d90-a1ae-17f0dd12ef8b}: [DhcpDomain] home
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge Profile: C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default [2026-02-27]
Edge Extension: (Google Docs Offline) - C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-26]
Edge Extension: (Edge relevant text changes) - C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-08-19]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default [2026-02-27]
CHR HomePage: Default -> hxxps://thecharitych.com/hp?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&source=hj
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.seznam.cz/"
CHR NewTab: Default -> Active:"chrome-extension://jnannpdmmiphnkpaooplhegabbghlplj/newtab.html"
CHR DefaultSearchURL: Default -> hxxps://thecharitych.com/search?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&q={searchTerms}&source=hj
CHR DefaultSearchKeyword: Default -> yahoo.com
CHR DefaultNewTabURL: Default -> hxxps://thecharitych.com/nt?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&source=hj
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas_sfp&command={searchTerms}
CHR Extension: (Google Docs Offline) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-25]
CHR Extension: (SearchProtect) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnannpdmmiphnkpaooplhegabbghlplj [2026-02-08] [UpdateUrl:0] <==== ATTENTION
CHR Extension: (Chrome Web Store Payments) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-19]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ArmouryCrateControlInterface; C:\Windows\System32\ASUSACCI\ArmouryCrateControlInterface.exe [212184 2025-09-01] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe [401880 2024-05-31] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 AsusAppService; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\AsusAppService\AsusAppService.exe [1159216 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSOptimization; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe [642608 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 AsusPTPService; C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe [229840 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 ASUSSoftwareManager; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe [1410096 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSwitch; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSwitch\AsusSwitch.exe [652848 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemAnalysis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4471344 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1598512 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7844520 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1039528 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2635432 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1092776 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [21549280 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2026-02-09] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3386064 2026-02-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 Bonjour Service; C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe [390504 2025-08-25] (Apple Inc. -> Apple Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13235088 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
S4 com.docker.service; C:\Program Files\Docker\Docker\com.docker.service [39344 2026-02-19] (Docker Inc -> Docker Inc.)
R2 DtsApo4Service; C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe [442368 2023-12-17] (DTS, Inc. -> DTS Inc.)
S4 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20372640 2026-01-27] (Electronic Arts, Inc. -> Electronic Arts)
S4 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [964336 2025-09-08] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 GalaxyClientService; \\?\C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2443312 2026-01-27] (GOG sp. z o.o -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7657008 2025-08-25] (GOG sp. z o.o -> GOG.com)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 GlideXNearService; C:\Program Files\ASUS\GlideX\GlideXNear\GlideXNearService.exe [1825712 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 GlideXRemoteService; C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteService.exe [486832 2025-11-12] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 GlideXService; C:\Program Files\ASUS\GlideX\GlideXService.exe [2985904 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 GlideXServiceExt; C:\Program Files\ASUS\GlideX\GlideXServiceExt.exe [303024 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4926312 2024-05-06] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [963968 2026-02-20] (McAfee, LLC -> McAfee, LLC)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\Display.NvContainer\NVDisplay.Container.exe [1275624 2026-01-22] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2045400 2024-05-13] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RtkBtManServ; C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtManServ.exe [290192 2025-07-04] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\SteelSeriesGGUpdateServiceProxy.exe [1587712 2025-03-12] (GN Hearing A/S -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrmgr.sys [36040 2024-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amduw23g; C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\amdkmdag.sys [106001688 2024-06-14] (AMD Test Build -> Advanced Micro Devices, Inc.)
R2 amd_dpfc; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\amd_dpfc.sys [47848 2026-01-22] (NVIDIA Corporation -> Advanced Micro Devices)
R3 AsusPTPDrv; C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPFilter.sys [199632 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 AsusSAIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSAIO.sys [51296 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [286816 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [435808 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [304736 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [88160 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [29144 2026-02-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [32864 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [289888 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [586336 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [97376 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [73312 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [898656 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1315424 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [231008 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [404064 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 ATKWMIACPIIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusWmiAcpi.sys [50424 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [110592 2025-08-19] (Microsoft Corporation) [File not signed]
R0 fse; C:\Windows\System32\drivers\fse.sys [226688 2025-12-10] (Microsoft Windows -> Microsoft Corporation)
S3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-23] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\Windows\System32\drivers\l1vhlwf.sys [144768 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
R3 nvpcf; C:\Windows\System32\drivers\nvpcf.sys [303848 2025-12-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_043a02d7d5d8270f\rt68cx21x64.sys [752496 2023-08-16] (Realtek Semiconductor Corp. -> Realtek)
R3 RtkBtFilter2; C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtFilter2.sys [209640 2025-07-04] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corporation)
R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [43568 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 sshid; C:\Windows\System32\drivers\sshid.sys [45632 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 SteelSeries_Sonar_VAD; C:\Windows\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_d2a852794d8f7bf8\SteelSeries-Sonar-VAD.sys [95912 2025-10-31] (GN Hearing A/S -> Windows (R) Win 7 DDK provider)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [51192 2025-08-19] (OpenVPN Inc. -> The OpenVPN Project)
S3 vmbusproxy; C:\Windows\system32\drivers\vmbusproxy.sys [98304 2025-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
U3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
S3 cpuz158; \??\C:\Windows\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-02-27 23:13 - 2026-02-27 23:14 - 000040889 _____ C:\Users\hejda\Desktop\FRST.txt
2026-02-27 23:11 - 2026-02-27 23:13 - 000000000 ____D C:\FRST
2026-02-27 23:11 - 2026-02-27 23:11 - 002445312 _____ (Farbar) C:\Users\hejda\Desktop\FRST64.exe
2026-02-25 23:09 - 2026-02-25 23:09 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000000000 ____D C:\Program Files (x86)\OpenAL
2026-02-25 23:03 - 2026-02-25 23:03 - 000000223 _____ C:\Users\hejda\Desktop\Half-Life Restored.url
2026-02-21 00:04 - 2026-02-27 01:35 - 000000000 ____D C:\Windows\CbsTemp
2026-02-20 23:51 - 2026-02-20 23:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-02-19 23:06 - 2026-02-10 00:04 - 000323752 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2026-02-19 22:43 - 2026-02-19 22:43 - 000002148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Docker Desktop.lnk
2026-02-19 22:43 - 2026-02-19 22:43 - 000002142 _____ C:\Users\hejda\Desktop\Docker Desktop.lnk
2026-02-19 22:42 - 2026-02-19 22:44 - 000000000 ____D C:\Program Files\Docker
2026-02-19 13:19 - 2026-02-19 13:19 - 000000000 ____D C:\Users\hejda\AppData\Roaming\AsusProArt
2026-02-16 18:26 - 2026-02-16 18:26 - 004896464 _____ (Blizzard Entertainment) C:\Users\hejda\Downloads\Battle.net-Setup.exe
2026-02-12 09:49 - 2026-02-12 09:49 - 000000000 ____D C:\Windows\system32\braille-tables
2026-02-11 18:11 - 2026-02-11 18:14 - 000000000 ___HD C:\$WinREAgent
2026-02-09 23:48 - 2026-02-12 09:50 - 000480856 _____ C:\Windows\system32\FNTCACHE.DAT
2026-02-09 23:37 - 2026-02-09 23:37 - 000002127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Cleanup Premium.lnk
2026-02-09 23:37 - 2026-02-09 23:37 - 000002115 _____ C:\Users\Public\Desktop\Avast Cleanup Premium.lnk
2026-02-09 23:19 - 2026-02-19 23:06 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium Security.lnk
2026-02-09 23:19 - 2026-02-19 23:06 - 000002124 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk
2026-02-09 23:09 - 2026-02-17 21:54 - 000000000 ____D C:\Users\hejda\AppData\Local\AVAST Software
2026-02-09 23:09 - 2026-02-09 23:37 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Avast Software
2026-02-09 23:09 - 2026-02-09 17:31 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2026-02-09 23:08 - 2026-02-26 23:50 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2026-02-09 23:08 - 2026-02-17 21:54 - 000000000 ____D C:\Program Files\Avast Software
2026-02-09 23:08 - 2026-02-09 23:09 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2026-02-09 23:08 - 2026-02-09 23:08 - 000000000 ____D C:\Windows\system32\o2
2026-02-09 23:07 - 2026-02-26 23:35 - 000000000 ____D C:\ProgramData\Avast Software
2026-02-09 23:07 - 2026-02-09 23:07 - 000888600 _____ (Google LLC) C:\Users\Public\Documents\gcapi.dll
2026-02-09 23:07 - 2026-02-09 23:07 - 000249584 _____ (Gen Digital Inc.) C:\Users\hejda\Downloads\avast_free_antivirus_setup_online_85nb.exe
2026-02-05 21:03 - 2026-02-05 21:28 - 000000000 ____D C:\Users\hejda\AppData\Roaming\steelseries-gg-client
2026-02-05 21:01 - 2026-02-05 21:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
2026-02-05 21:00 - 2026-02-05 21:00 - 000000000 ____D C:\ProgramData\SteelSeries
2026-02-05 21:00 - 2026-02-05 21:00 - 000000000 ____D C:\Program Files\SteelSeries
2026-02-05 20:33 - 2026-02-17 21:53 - 000000000 ____D C:\Users\hejda\AppData\Local\PulseSoftware
2026-02-05 18:41 - 2026-02-09 23:38 - 000000000 ____D C:\Users\hejda\AppData\Local\SquirrelTemp
2026-02-05 18:41 - 2026-02-05 18:41 - 000001246 _____ C:\Users\hejda\Desktop\Wand (WeMod).lnk
2026-02-05 18:41 - 2026-02-05 18:41 - 000000000 ____D C:\Users\hejda\AppData\Local\Wand
2026-02-05 18:40 - 2026-02-05 21:02 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Wand
2026-02-05 18:35 - 2026-02-05 18:35 - 000000000 ____D C:\Users\hejda\AppData\Local\FLiNGTrainer
2026-02-04 23:54 - 2026-01-20 14:42 - 000127208 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2026-02-04 23:53 - 2026-01-22 00:52 - 002421296 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 002421296 _____ C:\Windows\system32\vulkaninfo.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001923120 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001923120 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001625648 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001625648 _____ C:\Windows\system32\vulkan-1.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001434672 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001434672 _____ C:\Windows\SysWOW64\vulkan-1.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 000478952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 000375016 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 001344744 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 000675048 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 000509160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 027559656 _____ C:\Windows\system32\nvidia-pcc.exe
2026-02-04 23:53 - 2026-01-22 00:47 - 002319080 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001716968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001616104 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2026-02-04 23:53 - 2026-01-22 00:47 - 001574632 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001224936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001055976 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 000812264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 022613224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 018277608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 007908072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005925096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005687448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005586664 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 004288232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 000469224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2026-02-04 23:53 - 2026-01-22 00:45 - 004975632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2026-02-04 23:53 - 2026-01-22 00:45 - 000853736 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2026-02-04 23:53 - 2026-01-20 14:42 - 000153562 _____ C:\Windows\system32\nvinfo.pb
2026-02-04 23:52 - 2026-01-16 15:37 - 000161912 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2026-02-04 23:52 - 2026-01-16 15:37 - 000060568 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2026-02-04 22:30 - 2026-02-04 22:30 - 000000000 ____D C:\ProgramData\Jagex
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-02-27 23:11 - 2025-08-19 13:38 - 000003752 _____ C:\Windows\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2026-02-27 23:05 - 2025-08-19 14:43 - 000000000 ____D C:\Users\hejda\AppData\Roaming\asus_framework
2026-02-27 23:05 - 2025-03-13 00:24 - 000000000 ____D C:\Windows\system32\ASUSACCI
2026-02-27 23:05 - 2024-05-26 09:14 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-02-27 23:05 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SystemTemp
2026-02-27 23:04 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\AppReadiness
2026-02-27 23:04 - 2024-04-01 07:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-02-27 01:46 - 2026-01-21 16:57 - 000003104 _____ C:\Windows\system32\Tasks\ASUS Update Checker 2.0
2026-02-27 01:46 - 2025-12-14 17:57 - 000002904 _____ C:\Windows\system32\Tasks\AsusSystemDiagnosis_DriverQuality
2026-02-27 01:46 - 2025-12-07 16:24 - 000002740 _____ C:\Windows\system32\Tasks\OBUpdate
2026-02-27 01:46 - 2025-09-14 21:39 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Pi Network
2026-02-27 01:46 - 2025-09-08 03:35 - 000003010 _____ C:\Windows\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-02-27 01:46 - 2025-08-19 15:10 - 000000000 ____D C:\Users\hejda\AppData\Local\Battle.net
2026-02-27 01:46 - 2025-08-19 14:44 - 000003090 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-08-19 14:43 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-08-19 14:43 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-03-13 00:24 - 000002552 _____ C:\Windows\system32\Tasks\ASUSSmartDisplayControl
2026-02-27 01:46 - 2025-03-13 00:19 - 000002490 _____ C:\Windows\system32\Tasks\ASUS Hotplug Controller
2026-02-27 01:46 - 2025-03-13 00:13 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1589204013-1864288644-3288743639-500
2026-02-27 01:46 - 2025-03-13 00:13 - 000000000 ____D C:\ProgramData\NVIDIA
2026-02-27 01:46 - 2025-03-13 00:06 - 000003034 _____ C:\Windows\system32\Tasks\ASUS Optimization 36D18D69AFC3
2026-02-27 01:46 - 2024-05-26 09:14 - 000003538 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{0D77E3DA-EDAC-4B78-8B97-3078243A3EB0}
2026-02-27 01:46 - 2024-05-26 09:14 - 000003312 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{04F810C2-61C9-48F3-A74E-6C906168D8E8}
2026-02-26 23:43 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\D3DSCache
2026-02-26 23:42 - 2025-03-13 00:19 - 000791266 _____ C:\Windows\system32\PerfStringBackup.INI
2026-02-26 23:42 - 2024-04-01 07:24 - 000000000 ____D C:\Windows\INF
2026-02-26 23:35 - 2025-03-13 00:52 - 000011388 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-02-26 23:35 - 2024-05-26 09:14 - 000012288 ___SH C:\DumpStack.log.tmp
2026-02-26 23:35 - 2024-05-26 09:14 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-02-26 23:35 - 2024-04-01 07:21 - 000786432 _____ C:\Windows\system32\config\BBI
2026-02-26 23:06 - 2025-08-19 15:58 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-02-26 23:06 - 2025-08-19 15:58 - 000002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-02-25 23:35 - 2024-04-01 07:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-02-25 23:32 - 2025-08-19 17:05 - 000000000 ____D C:\Program Files (x86)\Steam
2026-02-22 18:53 - 2025-08-24 19:51 - 000000000 ____D C:\Users\hejda\Documents\OpenTTD
2026-02-22 16:52 - 2024-05-26 09:17 - 000000000 ____D C:\Program Files\Microsoft Office
2026-02-20 23:51 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\Packages
2026-02-20 23:51 - 2025-03-13 00:10 - 000000000 ____D C:\ProgramData\Packages
2026-02-19 23:06 - 2024-04-01 07:26 - 000000000 ___HD C:\Windows\ELAMBKUP
2026-02-19 23:05 - 2025-08-19 14:33 - 000002354 _____ C:\Users\hejda\Desktop\Microsoft Edge.lnk
2026-02-19 22:44 - 2025-10-13 20:29 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-02-19 22:12 - 2026-01-27 13:51 - 000002630 _____ C:\Users\hejda\Desktop\MobiSlides.lnk
2026-02-19 22:12 - 2026-01-27 13:51 - 000002630 _____ C:\Users\hejda\Desktop\MobiSheets.lnk
2026-02-19 22:12 - 2026-01-27 13:51 - 000002612 _____ C:\Users\hejda\Desktop\MobiDocs.lnk
2026-02-19 22:11 - 2026-01-27 13:50 - 000002572 _____ C:\Users\hejda\Desktop\MobiPDF.lnk
2026-02-17 21:55 - 2025-08-22 09:40 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-02-17 21:54 - 2025-03-13 00:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2026-02-17 02:32 - 2025-08-19 14:43 - 000002385 _____ C:\Users\hejda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-02-15 20:37 - 2025-08-19 15:10 - 000000000 ____D C:\Program Files (x86)\Battle.net
2026-02-15 15:51 - 2025-08-19 14:30 - 000000000 ___SD C:\Users\hejda\AppData\Roaming\Microsoft\Protect
2026-02-12 19:05 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\SecurityHealth
2026-02-12 09:51 - 2025-03-13 00:19 - 000001623 _____ C:\Windows\system32\config\VSMIDK
2026-02-12 09:49 - 2025-12-10 10:12 - 000000000 ____D C:\Windows\system32\NarratorMCAT
2026-02-12 09:49 - 2025-03-13 01:03 - 000000000 ____D C:\Windows\InboxApps
2026-02-12 09:49 - 2024-05-26 09:54 - 000000000 ____D C:\Windows\en-GB
2026-02-12 09:49 - 2024-04-01 08:08 - 000000000 ____D C:\Windows\system32\OpenSSH
2026-02-12 09:49 - 2024-04-01 08:08 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ___SD C:\Windows\system32\F12
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\WUModels
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\UUS
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\oobe
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SystemResources
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\setup
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\oobe
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\migwiz
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\km-KH
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\Dism
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\DDFs
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\ShellExperiences
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\ShellComponents
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\Provisioning
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\BrowserCore
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\bcastdvr
2026-02-12 09:49 - 2024-04-01 07:21 - 000000000 ____D C:\Windows\servicing
2026-02-12 09:48 - 2024-05-26 09:14 - 000000000 ____D C:\Windows\system32\SleepStudy
2026-02-12 06:52 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\LiveKernelReports
2026-02-11 20:31 - 2025-08-19 14:51 - 000000000 ____D C:\Users\hejda\AppData\Local\CrashDumps
2026-02-11 18:10 - 2024-05-26 09:16 - 003276288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2026-02-11 18:07 - 2025-08-19 20:11 - 000000000 ____D C:\Windows\system32\MRT
2026-02-11 18:05 - 2025-08-19 20:11 - 221154392 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2026-02-09 23:42 - 2025-12-07 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake 3 Arena Demo
2026-02-09 23:42 - 2025-08-22 23:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic 3 Complete [GOG.com]
2026-02-09 23:38 - 2025-10-05 19:17 - 000000000 ____D C:\Users\hejda\Documents\Rise of the Tomb Raider
2026-02-09 23:38 - 2025-09-08 15:24 - 000000000 ____D C:\Users\hejda\AppData\Roaming\EasyAntiCheat
2026-02-09 23:38 - 2025-08-29 00:31 - 000000000 ____D C:\Users\hejda\Documents\Euro Truck Simulator 2
2026-02-09 23:38 - 2025-03-13 00:35 - 000000000 ____D C:\Windows\Minidump
2026-02-09 23:38 - 2024-05-26 09:53 - 000000000 ____D C:\Windows\Panther
2026-02-05 16:31 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\AMD
2026-02-05 01:57 - 2025-08-19 14:32 - 000000000 ____D C:\Users\hejda\AppData\Local\PlaceholderTileLogoFolder
2026-02-05 00:50 - 2025-08-19 14:43 - 000000000 ____D C:\Users\hejda\AppData\Local\NVIDIA Corporation
2026-02-05 00:45 - 2025-08-19 17:12 - 000000000 ____D C:\Users\hejda\AppData\Local\NVIDIA
2026-02-05 00:05 - 2025-12-07 16:24 - 000000000 ____D C:\Users\hejda\AppData\Roaming\pdf-proton-nativefier-72c1c6
2026-02-04 23:56 - 2025-03-13 00:13 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2026-02-04 23:52 - 2025-09-08 03:42 - 000001436 _____ C:\Users\Public\Desktop\NVIDIA App.lnk
2026-02-04 23:52 - 2025-03-13 00:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2026-02-04 23:40 - 2025-08-19 14:43 - 000000000 ___RD C:\Users\hejda\OneDrive
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2026
Ran by hejda (administrator) on HEJDYS (ASUSTeK COMPUTER INC. ASUS TUF Gaming A15 FA506NC_FA506NC) (27-02-2026 23:13:31)
Running from C:\Users\hejda\Desktop\FRST64.exe
Loaded Profiles: hejda
Platform: Microsoft Windows 11 Home Version 25H2 26200.7840 (X64) Language: English (United Kingdom)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOSD.exe
(C:\Program Files (x86)\LightingService\LightingService.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe
(C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> ) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\PresentMon_x64.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.System.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\nvrla.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\ShadowPlay\nvsphelper64.exe
(C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (GN Hearing A/S -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\prism\SteelSeriesPrism.exe
(C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\amdow.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.24.10035.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(C:\Program Files\WindowsApps\Microsoft.YourPhone_1.26011.42.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.26011.42.0_x64__8wekyb3d8bbwe\YourPhoneAppProxy.exe
(C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.ServiceHost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.Notifier.exe
(C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.ServiceHost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.Notifier.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusHotkey.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimizationStartupTask.exe
(DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe
(DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atiesrxx.exe ->) (AMD Test Build -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atieclxx.exe
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <2>
(explorer.exe ->) (GN Hearing A/S -> SteelSeries A/S) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(services.exe ->) (AMD Test Build -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXNear\GlideXNearService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\GlideX\GlideXServiceExt.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\ASUSACCI\ArmouryCrateControlInterface.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MidiSrv.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtManServ.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a5b5950537cd134e\RtkAudUService64.exe <2>
(sihost.exe ->) (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.43.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe <5>
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Copilot_1.25121.84.0_x64__8wekyb3d8bbwe\Copilot.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiDriveSync_4.2.63704.0_x64__bvgb55c3tfatp\MobiDrive\MobiDrive.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiDriveSync_4.2.63704.0_x64__bvgb55c3tfatp\MobiDrive\MobiDrive.ServiceHost.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiOffice_11.30.14900.0_x64__bvgb55c3tfatp\MobiOffice\MobiOffice.ServiceHost.exe
(sihost.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\WindowsApps\MobiSystems.MobiPdf_11.30.14900.0_x64__bvgb55c3tfatp\MobiPdf\MobiPDF.ServiceHost.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <3>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS Hotplug Controller\AsHotplugCtrl.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.229.1.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spaceman.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a5b5950537cd134e\RtkAudUService64.exe [2021320 2024-05-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [20234296 2026-02-24] (GN Hearing A/S -> SteelSeries A/S)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [887976 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [7279840 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [ASUS Smart Display Control] => C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe [178840 2024-03-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [14593584 2026-01-27] (GOG sp. z o.o -> GOG.com)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-02-15] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5760152 2026-01-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-27] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3792032 2026-01-27] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [electron.app.Pi Network] => C:\Users\hejda\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [Docker Desktop] => C:\Program Files\Docker\Docker\Docker Desktop.exe [13001648 2026-02-19] (Docker Inc -> Docker Inc.)
HKU\S-1-5-21-1589204013-1864288644-3288743639-1001\...\Run: [MicrosoftEdgeAutoLaunch_E478EAC7BFC67F03F478E5F2D7931491] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4342352 2026-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\Windows\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2025-08-22]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2026-01-30] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\145.0.7632.117\Installer\chrmstp.exe [2026-02-26] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {410B4D63-12D8-4350-8F4A-E34014E8BDB6} - System32\Tasks\ASUS Hotplug Controller => C:\Program Files\ASUS\ASUS Hotplug Controller\AsHotplugCtrl.exe [208016 2024-04-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {F49AB492-642D-4938-B92E-B58FED3359C3} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusHotkey.exe [362032 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {E78D0C8F-6E32-4DF3-9CA8-F54C7208C281} - System32\Tasks\ASUS Update Checker 2.0 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusUpdateChecker.exe [846384 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {92D0D783-9E50-4AC0-8238-534D411197DD} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [359784 2024-01-15] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {0F054585-BEFC-4EB3-B450-F416C7F164B9} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1812328 2024-01-15] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {E1B4053E-90F4-4FD6-8B4F-41D7D547725F} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [139091304 2024-04-19] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {C616FA06-B577-4015-A6D2-7BD478E4EFFA} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {719E5C49-92AE-4012-AD17-40F53E10A2E1} - System32\Tasks\ASUSSmartDisplayControl => C:\Program Files (x86)\ASUS\ASUS Smart Display Control\ASUSSmartDisplayControl.exe [178840 2024-03-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {3F0AD4E5-9017-4943-AE79-009EA9898A62} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4471344 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {7BE216B5-A86E-4BB1-8F74-6EFFB6154541} - System32\Tasks\AsusSystemDiagnosis_DriverQuality => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1598512 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
Task: {D2F02B02-EF68-4CC9-A3E5-C5F8BCE19511} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9246944 2026-01-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {EF303337-1C6B-406A-9311-C51E91FD197D} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6444768 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {F843CAFF-A462-41CA-9A1D-98D1D5A95CE6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [9246944 2026-02-24] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E3BEE0EC-9B6C-4B76-9664-5391117857F4} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5623464 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DE7DE9CD-3985-4517-815A-ED744A17135A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {403F2053-B32D-4C26-96D1-2A0C891DD2C7} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.6{3D6AC326-8B9E-4A63-AA4F-F47507849CAE} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.6\updater.exe [7056536 2026-02-10] (Google LLC -> Google LLC)
Task: {74EC72C1-7449-47F4-88ED-5D38454F3A22} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16258944 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {8714EBC2-46D3-44F6-9726-201CE81199BB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28625808 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {8F0424AA-107E-4592-BD32-1DC984AF7721} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {972025DF-F308-4E6C-86AD-6E92ACEB9D6D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28625808 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {371A0366-3BFE-4A51-B760-369408FF1D0D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310128 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {01627922-636F-410F-8C80-5110FDBE412A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310128 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {5FE0C2FA-C39B-4AF5-8932-ABEA187A72AF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1346840 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D589F2D-3607-453D-986C-C13CB39BA9D8} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16258944 2026-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {69091364-5637-4A55-A62E-9C564F622FB2} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3337328 2026-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7CF7E640-EF7E-4565-954C-215037FBD7D4} - System32\Tasks\OBUpdate => C:\Users\hejda\AppData\Local\OneBrowser\Update\OBUpdateService.exe [3312144 2025-12-07] (WORK PRODUCT, INC. -> WORK PRODUCT, INC.) <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{1e830ae0-24bc-4813-841d-0138cb78e197}: [DhcpNameServer] 40.54.1.15
Tcpip\..\Interfaces\{1e830ae0-24bc-4813-841d-0138cb78e197}: [DhcpDomain] E3-WDS12.COM
Tcpip\..\Interfaces\{fd519ca8-774d-4d90-a1ae-17f0dd12ef8b}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{fd519ca8-774d-4d90-a1ae-17f0dd12ef8b}: [DhcpDomain] home
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge Profile: C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default [2026-02-27]
Edge Extension: (Google Docs Offline) - C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-26]
Edge Extension: (Edge relevant text changes) - C:\Users\hejda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-08-19]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default [2026-02-27]
CHR HomePage: Default -> hxxps://thecharitych.com/hp?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&source=hj
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.seznam.cz/"
CHR NewTab: Default -> Active:"chrome-extension://jnannpdmmiphnkpaooplhegabbghlplj/newtab.html"
CHR DefaultSearchURL: Default -> hxxps://thecharitych.com/search?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&q={searchTerms}&source=hj
CHR DefaultSearchKeyword: Default -> yahoo.com
CHR DefaultNewTabURL: Default -> hxxps://thecharitych.com/nt?the=QUMyZGV3cwRUUHZ2AldWcHIEVFx1cAcYVHB0BlBUdD8DU1N0cgBQUHB1TiEkCCJ7NQojAFopLDR7Sx4IHgRADzQMFV4DHS4AcFYRBRB3MSAABmslNgACdwMsAhBiIDoDNHc%3D&source=hj
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas_sfp&command={searchTerms}
CHR Extension: (Google Docs Offline) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-25]
CHR Extension: (SearchProtect) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnannpdmmiphnkpaooplhegabbghlplj [2026-02-08] [UpdateUrl:0] <==== ATTENTION
CHR Extension: (Chrome Web Store Payments) - C:\Users\hejda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-19]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ArmouryCrateControlInterface; C:\Windows\System32\ASUSACCI\ArmouryCrateControlInterface.exe [212184 2025-09-01] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe [401880 2024-05-31] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 AsusAppService; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\AsusAppService\AsusAppService.exe [1159216 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSOptimization; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusOptimization.exe [642608 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 AsusPTPService; C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe [229840 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 ASUSSoftwareManager; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSoftwareManager\AsusSoftwareManager.exe [1410096 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSwitch; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSwitch\AsusSwitch.exe [652848 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemAnalysis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4471344 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1598512 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7844520 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1039528 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2635432 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1092776 2026-02-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [21549280 2026-02-25] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2026-02-09] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3386064 2026-02-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 Bonjour Service; C:\Program Files\Blizzard\Bonjour Service\mDNSResponder.exe [390504 2025-08-25] (Apple Inc. -> Apple Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13235088 2026-02-14] (Microsoft Corporation -> Microsoft Corporation)
S4 com.docker.service; C:\Program Files\Docker\Docker\com.docker.service [39344 2026-02-19] (Docker Inc -> Docker Inc.)
R2 DtsApo4Service; C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe [442368 2023-12-17] (DTS, Inc. -> DTS Inc.)
S4 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20372640 2026-01-27] (Electronic Arts, Inc. -> Electronic Arts)
S4 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [964336 2025-09-08] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 GalaxyClientService; \\?\C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2443312 2026-01-27] (GOG sp. z o.o -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7657008 2025-08-25] (GOG sp. z o.o -> GOG.com)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 GlideXNearService; C:\Program Files\ASUS\GlideX\GlideXNear\GlideXNearService.exe [1825712 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 GlideXRemoteService; C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteService.exe [486832 2025-11-12] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 GlideXService; C:\Program Files\ASUS\GlideX\GlideXService.exe [2985904 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 GlideXServiceExt; C:\Program Files\ASUS\GlideX\GlideXServiceExt.exe [303024 2025-11-13] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4926312 2024-05-06] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [963968 2026-02-20] (McAfee, LLC -> McAfee, LLC)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\Display.NvContainer\NVDisplay.Container.exe [1275624 2026-01-22] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2045400 2024-05-13] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RtkBtManServ; C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtManServ.exe [290192 2025-07-04] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\SteelSeriesGGUpdateServiceProxy.exe [1587712 2025-03-12] (GN Hearing A/S -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrmgr.sys [36040 2024-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amduw23g; C:\Windows\System32\DriverStore\FileRepository\u0404233.inf_amd64_397a6af4950eb5ee\B402913\amdkmdag.sys [106001688 2024-06-14] (AMD Test Build -> Advanced Micro Devices, Inc.)
R2 amd_dpfc; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_171f1746818db7fd\amd_dpfc.sys [47848 2026-01-22] (NVIDIA Corporation -> Advanced Micro Devices)
R3 AsusPTPDrv; C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPFilter.sys [199632 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 AsusSAIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSSystemAnalysis\AsusSAIO.sys [51296 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [286816 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [435808 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [304736 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [88160 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [29144 2026-02-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [32864 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [289888 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [586336 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [97376 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [73312 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [898656 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1315424 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [231008 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [404064 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 ATKWMIACPIIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_d5b92bc7afd7593a\ASUSOptimization\AsusWmiAcpi.sys [50424 2026-02-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [110592 2025-08-19] (Microsoft Corporation) [File not signed]
R0 fse; C:\Windows\System32\drivers\fse.sys [226688 2025-12-10] (Microsoft Windows -> Microsoft Corporation)
S3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-23] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\Windows\System32\drivers\l1vhlwf.sys [144768 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
R3 nvpcf; C:\Windows\System32\drivers\nvpcf.sys [303848 2025-12-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_043a02d7d5d8270f\rt68cx21x64.sys [752496 2023-08-16] (Realtek Semiconductor Corp. -> Realtek)
R3 RtkBtFilter2; C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_899e279b64ed2cb5\RtkBtFilter2.sys [209640 2025-07-04] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corporation)
R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [43568 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 sshid; C:\Windows\System32\drivers\sshid.sys [45632 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
R3 SteelSeries_Sonar_VAD; C:\Windows\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_d2a852794d8f7bf8\SteelSeries-Sonar-VAD.sys [95912 2025-10-31] (GN Hearing A/S -> Windows (R) Win 7 DDK provider)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [51192 2025-08-19] (OpenVPN Inc. -> The OpenVPN Project)
S3 vmbusproxy; C:\Windows\system32\drivers\vmbusproxy.sys [98304 2025-08-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
U3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
S3 cpuz158; \??\C:\Windows\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-02-27 23:13 - 2026-02-27 23:14 - 000040889 _____ C:\Users\hejda\Desktop\FRST.txt
2026-02-27 23:11 - 2026-02-27 23:13 - 000000000 ____D C:\FRST
2026-02-27 23:11 - 2026-02-27 23:11 - 002445312 _____ (Farbar) C:\Users\hejda\Desktop\FRST64.exe
2026-02-25 23:09 - 2026-02-25 23:09 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2026-02-25 23:09 - 2026-02-25 23:09 - 000000000 ____D C:\Program Files (x86)\OpenAL
2026-02-25 23:03 - 2026-02-25 23:03 - 000000223 _____ C:\Users\hejda\Desktop\Half-Life Restored.url
2026-02-21 00:04 - 2026-02-27 01:35 - 000000000 ____D C:\Windows\CbsTemp
2026-02-20 23:51 - 2026-02-20 23:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-02-19 23:06 - 2026-02-10 00:04 - 000323752 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2026-02-19 22:43 - 2026-02-19 22:43 - 000002148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Docker Desktop.lnk
2026-02-19 22:43 - 2026-02-19 22:43 - 000002142 _____ C:\Users\hejda\Desktop\Docker Desktop.lnk
2026-02-19 22:42 - 2026-02-19 22:44 - 000000000 ____D C:\Program Files\Docker
2026-02-19 13:19 - 2026-02-19 13:19 - 000000000 ____D C:\Users\hejda\AppData\Roaming\AsusProArt
2026-02-16 18:26 - 2026-02-16 18:26 - 004896464 _____ (Blizzard Entertainment) C:\Users\hejda\Downloads\Battle.net-Setup.exe
2026-02-12 09:49 - 2026-02-12 09:49 - 000000000 ____D C:\Windows\system32\braille-tables
2026-02-11 18:11 - 2026-02-11 18:14 - 000000000 ___HD C:\$WinREAgent
2026-02-09 23:48 - 2026-02-12 09:50 - 000480856 _____ C:\Windows\system32\FNTCACHE.DAT
2026-02-09 23:37 - 2026-02-09 23:37 - 000002127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Cleanup Premium.lnk
2026-02-09 23:37 - 2026-02-09 23:37 - 000002115 _____ C:\Users\Public\Desktop\Avast Cleanup Premium.lnk
2026-02-09 23:19 - 2026-02-19 23:06 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium Security.lnk
2026-02-09 23:19 - 2026-02-19 23:06 - 000002124 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk
2026-02-09 23:09 - 2026-02-17 21:54 - 000000000 ____D C:\Users\hejda\AppData\Local\AVAST Software
2026-02-09 23:09 - 2026-02-09 23:37 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Avast Software
2026-02-09 23:09 - 2026-02-09 17:31 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2026-02-09 23:08 - 2026-02-26 23:50 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2026-02-09 23:08 - 2026-02-17 21:54 - 000000000 ____D C:\Program Files\Avast Software
2026-02-09 23:08 - 2026-02-09 23:09 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2026-02-09 23:08 - 2026-02-09 23:08 - 000000000 ____D C:\Windows\system32\o2
2026-02-09 23:07 - 2026-02-26 23:35 - 000000000 ____D C:\ProgramData\Avast Software
2026-02-09 23:07 - 2026-02-09 23:07 - 000888600 _____ (Google LLC) C:\Users\Public\Documents\gcapi.dll
2026-02-09 23:07 - 2026-02-09 23:07 - 000249584 _____ (Gen Digital Inc.) C:\Users\hejda\Downloads\avast_free_antivirus_setup_online_85nb.exe
2026-02-05 21:03 - 2026-02-05 21:28 - 000000000 ____D C:\Users\hejda\AppData\Roaming\steelseries-gg-client
2026-02-05 21:01 - 2026-02-05 21:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
2026-02-05 21:00 - 2026-02-05 21:00 - 000000000 ____D C:\ProgramData\SteelSeries
2026-02-05 21:00 - 2026-02-05 21:00 - 000000000 ____D C:\Program Files\SteelSeries
2026-02-05 20:33 - 2026-02-17 21:53 - 000000000 ____D C:\Users\hejda\AppData\Local\PulseSoftware
2026-02-05 18:41 - 2026-02-09 23:38 - 000000000 ____D C:\Users\hejda\AppData\Local\SquirrelTemp
2026-02-05 18:41 - 2026-02-05 18:41 - 000001246 _____ C:\Users\hejda\Desktop\Wand (WeMod).lnk
2026-02-05 18:41 - 2026-02-05 18:41 - 000000000 ____D C:\Users\hejda\AppData\Local\Wand
2026-02-05 18:40 - 2026-02-05 21:02 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Wand
2026-02-05 18:35 - 2026-02-05 18:35 - 000000000 ____D C:\Users\hejda\AppData\Local\FLiNGTrainer
2026-02-04 23:54 - 2026-01-20 14:42 - 000127208 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2026-02-04 23:53 - 2026-01-22 00:52 - 002421296 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 002421296 _____ C:\Windows\system32\vulkaninfo.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001923120 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001923120 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2026-02-04 23:53 - 2026-01-22 00:52 - 001625648 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001625648 _____ C:\Windows\system32\vulkan-1.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001434672 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 001434672 _____ C:\Windows\SysWOW64\vulkan-1.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 000478952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2026-02-04 23:53 - 2026-01-22 00:52 - 000375016 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 001344744 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 000675048 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2026-02-04 23:53 - 2026-01-22 00:48 - 000509160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 027559656 _____ C:\Windows\system32\nvidia-pcc.exe
2026-02-04 23:53 - 2026-01-22 00:47 - 002319080 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001716968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001616104 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2026-02-04 23:53 - 2026-01-22 00:47 - 001574632 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001224936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 001055976 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2026-02-04 23:53 - 2026-01-22 00:47 - 000812264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 022613224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 018277608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 007908072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005925096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005687448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 005586664 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 004288232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2026-02-04 23:53 - 2026-01-22 00:46 - 000469224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2026-02-04 23:53 - 2026-01-22 00:45 - 004975632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2026-02-04 23:53 - 2026-01-22 00:45 - 000853736 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2026-02-04 23:53 - 2026-01-20 14:42 - 000153562 _____ C:\Windows\system32\nvinfo.pb
2026-02-04 23:52 - 2026-01-16 15:37 - 000161912 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2026-02-04 23:52 - 2026-01-16 15:37 - 000060568 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2026-02-04 22:30 - 2026-02-04 22:30 - 000000000 ____D C:\ProgramData\Jagex
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-02-27 23:11 - 2025-08-19 13:38 - 000003752 _____ C:\Windows\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2026-02-27 23:05 - 2025-08-19 14:43 - 000000000 ____D C:\Users\hejda\AppData\Roaming\asus_framework
2026-02-27 23:05 - 2025-03-13 00:24 - 000000000 ____D C:\Windows\system32\ASUSACCI
2026-02-27 23:05 - 2024-05-26 09:14 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-02-27 23:05 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SystemTemp
2026-02-27 23:04 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\AppReadiness
2026-02-27 23:04 - 2024-04-01 07:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-02-27 01:46 - 2026-01-21 16:57 - 000003104 _____ C:\Windows\system32\Tasks\ASUS Update Checker 2.0
2026-02-27 01:46 - 2025-12-14 17:57 - 000002904 _____ C:\Windows\system32\Tasks\AsusSystemDiagnosis_DriverQuality
2026-02-27 01:46 - 2025-12-07 16:24 - 000002740 _____ C:\Windows\system32\Tasks\OBUpdate
2026-02-27 01:46 - 2025-09-14 21:39 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Pi Network
2026-02-27 01:46 - 2025-09-08 03:35 - 000003010 _____ C:\Windows\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-02-27 01:46 - 2025-08-19 15:10 - 000000000 ____D C:\Users\hejda\AppData\Local\Battle.net
2026-02-27 01:46 - 2025-08-19 14:44 - 000003090 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-08-19 14:43 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-08-19 14:43 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1589204013-1864288644-3288743639-1001
2026-02-27 01:46 - 2025-03-13 00:24 - 000002552 _____ C:\Windows\system32\Tasks\ASUSSmartDisplayControl
2026-02-27 01:46 - 2025-03-13 00:19 - 000002490 _____ C:\Windows\system32\Tasks\ASUS Hotplug Controller
2026-02-27 01:46 - 2025-03-13 00:13 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1589204013-1864288644-3288743639-500
2026-02-27 01:46 - 2025-03-13 00:13 - 000000000 ____D C:\ProgramData\NVIDIA
2026-02-27 01:46 - 2025-03-13 00:06 - 000003034 _____ C:\Windows\system32\Tasks\ASUS Optimization 36D18D69AFC3
2026-02-27 01:46 - 2024-05-26 09:14 - 000003538 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{0D77E3DA-EDAC-4B78-8B97-3078243A3EB0}
2026-02-27 01:46 - 2024-05-26 09:14 - 000003312 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{04F810C2-61C9-48F3-A74E-6C906168D8E8}
2026-02-26 23:43 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\D3DSCache
2026-02-26 23:42 - 2025-03-13 00:19 - 000791266 _____ C:\Windows\system32\PerfStringBackup.INI
2026-02-26 23:42 - 2024-04-01 07:24 - 000000000 ____D C:\Windows\INF
2026-02-26 23:35 - 2025-03-13 00:52 - 000011388 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-02-26 23:35 - 2024-05-26 09:14 - 000012288 ___SH C:\DumpStack.log.tmp
2026-02-26 23:35 - 2024-05-26 09:14 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-02-26 23:35 - 2024-04-01 07:21 - 000786432 _____ C:\Windows\system32\config\BBI
2026-02-26 23:06 - 2025-08-19 15:58 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-02-26 23:06 - 2025-08-19 15:58 - 000002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-02-25 23:35 - 2024-04-01 07:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-02-25 23:32 - 2025-08-19 17:05 - 000000000 ____D C:\Program Files (x86)\Steam
2026-02-22 18:53 - 2025-08-24 19:51 - 000000000 ____D C:\Users\hejda\Documents\OpenTTD
2026-02-22 16:52 - 2024-05-26 09:17 - 000000000 ____D C:\Program Files\Microsoft Office
2026-02-20 23:51 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\Packages
2026-02-20 23:51 - 2025-03-13 00:10 - 000000000 ____D C:\ProgramData\Packages
2026-02-19 23:06 - 2024-04-01 07:26 - 000000000 ___HD C:\Windows\ELAMBKUP
2026-02-19 23:05 - 2025-08-19 14:33 - 000002354 _____ C:\Users\hejda\Desktop\Microsoft Edge.lnk
2026-02-19 22:44 - 2025-10-13 20:29 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-02-19 22:12 - 2026-01-27 13:51 - 000002630 _____ C:\Users\hejda\Desktop\MobiSlides.lnk
2026-02-19 22:12 - 2026-01-27 13:51 - 000002630 _____ C:\Users\hejda\Desktop\MobiSheets.lnk
2026-02-19 22:12 - 2026-01-27 13:51 - 000002612 _____ C:\Users\hejda\Desktop\MobiDocs.lnk
2026-02-19 22:11 - 2026-01-27 13:50 - 000002572 _____ C:\Users\hejda\Desktop\MobiPDF.lnk
2026-02-17 21:55 - 2025-08-22 09:40 - 000000000 ____D C:\Users\hejda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-02-17 21:54 - 2025-03-13 00:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2026-02-17 02:32 - 2025-08-19 14:43 - 000002385 _____ C:\Users\hejda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-02-15 20:37 - 2025-08-19 15:10 - 000000000 ____D C:\Program Files (x86)\Battle.net
2026-02-15 15:51 - 2025-08-19 14:30 - 000000000 ___SD C:\Users\hejda\AppData\Roaming\Microsoft\Protect
2026-02-12 19:05 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\SecurityHealth
2026-02-12 09:51 - 2025-03-13 00:19 - 000001623 _____ C:\Windows\system32\config\VSMIDK
2026-02-12 09:49 - 2025-12-10 10:12 - 000000000 ____D C:\Windows\system32\NarratorMCAT
2026-02-12 09:49 - 2025-03-13 01:03 - 000000000 ____D C:\Windows\InboxApps
2026-02-12 09:49 - 2024-05-26 09:54 - 000000000 ____D C:\Windows\en-GB
2026-02-12 09:49 - 2024-04-01 08:08 - 000000000 ____D C:\Windows\system32\OpenSSH
2026-02-12 09:49 - 2024-04-01 08:08 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ___SD C:\Windows\system32\F12
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\WUModels
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\UUS
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\oobe
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\SystemResources
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\setup
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\oobe
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\migwiz
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\km-KH
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\Dism
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\system32\DDFs
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\ShellExperiences
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\ShellComponents
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\Provisioning
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\BrowserCore
2026-02-12 09:49 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\bcastdvr
2026-02-12 09:49 - 2024-04-01 07:21 - 000000000 ____D C:\Windows\servicing
2026-02-12 09:48 - 2024-05-26 09:14 - 000000000 ____D C:\Windows\system32\SleepStudy
2026-02-12 06:52 - 2024-04-01 07:26 - 000000000 ____D C:\Windows\LiveKernelReports
2026-02-11 20:31 - 2025-08-19 14:51 - 000000000 ____D C:\Users\hejda\AppData\Local\CrashDumps
2026-02-11 18:10 - 2024-05-26 09:16 - 003276288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2026-02-11 18:07 - 2025-08-19 20:11 - 000000000 ____D C:\Windows\system32\MRT
2026-02-11 18:05 - 2025-08-19 20:11 - 221154392 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2026-02-09 23:42 - 2025-12-07 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake 3 Arena Demo
2026-02-09 23:42 - 2025-08-22 23:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic 3 Complete [GOG.com]
2026-02-09 23:38 - 2025-10-05 19:17 - 000000000 ____D C:\Users\hejda\Documents\Rise of the Tomb Raider
2026-02-09 23:38 - 2025-09-08 15:24 - 000000000 ____D C:\Users\hejda\AppData\Roaming\EasyAntiCheat
2026-02-09 23:38 - 2025-08-29 00:31 - 000000000 ____D C:\Users\hejda\Documents\Euro Truck Simulator 2
2026-02-09 23:38 - 2025-03-13 00:35 - 000000000 ____D C:\Windows\Minidump
2026-02-09 23:38 - 2024-05-26 09:53 - 000000000 ____D C:\Windows\Panther
2026-02-05 16:31 - 2025-08-19 14:33 - 000000000 ____D C:\Users\hejda\AppData\Local\AMD
2026-02-05 01:57 - 2025-08-19 14:32 - 000000000 ____D C:\Users\hejda\AppData\Local\PlaceholderTileLogoFolder
2026-02-05 00:50 - 2025-08-19 14:43 - 000000000 ____D C:\Users\hejda\AppData\Local\NVIDIA Corporation
2026-02-05 00:45 - 2025-08-19 17:12 - 000000000 ____D C:\Users\hejda\AppData\Local\NVIDIA
2026-02-05 00:05 - 2025-12-07 16:24 - 000000000 ____D C:\Users\hejda\AppData\Roaming\pdf-proton-nativefier-72c1c6
2026-02-04 23:56 - 2025-03-13 00:13 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2026-02-04 23:52 - 2025-09-08 03:42 - 000001436 _____ C:\Users\Public\Desktop\NVIDIA App.lnk
2026-02-04 23:52 - 2025-03-13 00:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2026-02-04 23:40 - 2025-08-19 14:43 - 000000000 ___RD C:\Users\hejda\OneDrive
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================