kontrola pre istotu
Napsal: 01 dub 2026 07:53
poprosím a dakujem
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-03-2026
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (01-04-2026 08:48:55)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 25H2 26200.8116 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\CoreProvider\CoreProvider.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\Software Package Manager\SoftwarePackageManager.exe
(C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\123.0.1.0\crashpad_handler.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\BridgeCommunication.exe
(DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOS64.exe
(DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atieclxx.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> DesktopExtension) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\HP.ContextAware.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe <2>
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMToastNotification.exe
(FMService64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMAudioMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (MEDIATEK INC. -> MediaTek Inc.) C:\Windows\System32\mtkbtsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe <3>
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2511.3002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\HP.HPX.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe [3245608 2025-12-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3101848 2026-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\146.0.7680.165\Installer\chrmstp.exe [7359128 2026-03-25] (Google LLC -> Google LLC)
Startup: C:\Users\igorv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2026-02-22]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-10-28]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {463206D8-8236-47D7-9D90-DD678745B403} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem148.0.7730.0{34D9D644-B19A-4B39-AD46-E8C68CF00E1D} => C:\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\updater.exe [8459416 2026-03-12] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {59A3FDEA-F9F2-4E14-9182-597D9A9B920D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {2485C39A-E871-4B62-87F9-F7E02C2A2B7B} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {AEBCEBED-5604-41E5-8AE1-BFF391752753} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1015880 2025-12-15] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {48A211BF-3686-480D-8C89-571A6BCD2308} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2025-12-15] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-07-10] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DA847129-1FBC-49A8-95F1-9AB56F0DADCB} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [78979088 2024-07-31] (HP Inc. -> HP)
Task: {9C0BE82C-E4B0-46CD-835A-647A94AD9F3A} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [263752 2025-10-22] (HP Inc. -> HP Inc.)
Task: {67F09B4E-DBF1-4A32-A14B-10A83D743C8D} - System32\Tasks\HPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [3170056 2026-03-19] (HP Inc. -> )
Task: {1AC9AC68-A9ED-474A-9EE3-DB35AD5C4615} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{D3913CAA-0A30-494D-AE06-F79A68997FAB}\HPOneAgent.exe [1169760 2025-10-29] (HP Inc. -> HP Inc; HP Development Company, L.P.)
Task: {4E96B2D1-F910-461A-9CBD-3F1A75D4CA13} - System32\Tasks\HPSupportTool => C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-iolo-collector_ver_4.675.11370\HPSupportAssistant1.exe (No File)
Task: {09266611-4E1B-407E-B37A-49E5E4A3756C} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {C811E1E0-FE52-4414-AC5E-83A408D28648} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEF74F71-41D9-4CC6-9805-4C38B1AB8EB7} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {34C4AFD3-52F5-4ABA-BAE4-062CD8141D46} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {1E9C9E61-39EA-4DDF-9D1A-F9F9D64812E0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {6F2F3465-554C-48D4-BE27-2454E728665E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {30BA9ABB-68A1-450A-876E-AFBC04D38FAC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1349920 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {45BB6910-11EB-47F8-99A2-8E4B9060240B} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F6DBB90-924B-48D2-98A4-38A2683806F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5A6F3D01-843B-4E31-8C51-2C63FC2AC7F2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {080CA3D9-5261-4BCE-B281-E12A8E62860C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5FE16F27-71DE-4569-889C-7670BF6077E2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3E4451E-7955-479C-AB09-1F3B63639060} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2024-10-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F5548545: [DhcpNameServer] 192.168.31.234
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [NameServer] 1.1.1.1,8.8.8.8
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpDomain] localdomain
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-03-28]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-22]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-07-26]
Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2026-04-01]
CHR HomePage: Default -> hxxp://www.google.com/
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-03-18]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2025-08-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-31]
CHR HKU\S-1-5-21-2384847340-952867437-1279697988-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 brlapi; C:\WINDOWS\brltty\bin\brltty.exe [1067072 2026-03-26] (Microsoft 3rd Party Application Component -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233464 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1107496 2025-10-08] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [385960 2026-03-09] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe [1516200 2025-12-17] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2445408 2025-09-11] (HP Inc. -> HP Inc; HP Development Company, L.P.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe [503976 2025-12-17] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe [907936 2025-09-30] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [7664328 2026-03-20] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [1526984 2026-03-20] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe [903840 2025-09-30] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 hpsvcsscan; C:\WINDOWS\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe [7124768 2025-10-07] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe [639776 2025-10-01] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe [608424 2025-12-17] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe [2088128 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MTKBTSVC; C:\WINDOWS\System32\mtkbtsvc.exe [545208 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPNService.exe [477424 2026-02-02] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPN.WireGuardService.exe [476912 2026-02-02] (Proton AG -> ProtonVPN)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe [5080392 2026-01-20] (Bromium UK Limited -> HP)
R2 SNAPOService; C:\WINDOWS\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe [369408 2025-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation)
S2 WbfPolicyService110; C:\WINDOWS\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_b12a1111c8064a8a\WbfPolicyService110.exe [715784 2025-05-22] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe [4451664 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe [290704 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AIDA64Driver; C:\Program Files\FinalWire\AIDA64 Extreme\kerneld-x64.sys [81296 2025-12-09] (FinalWire Kft. -> FinalWire Ltd.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\amdkmdag.sys [106595800 2025-06-18] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [49448 2025-09-10] (Advanced Micro Devices -> Advanced Micro Devices, Inc)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226688 2025-12-04] (Microsoft Windows -> Microsoft Corporation)
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 HpPair; C:\WINDOWS\System32\drivers\HpPair.sys [69912 2025-06-09] (HP Inc. -> HP Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 mtkbtacx; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtacx.inf_amd64_83b672d8fe91251d\mtkbtacx.sys [289184 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_04e48cf0e2222a28\mtkbtfilterx.sys [611264 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_731ab61f1805181e\mtkwl6ex.sys [2115608 2026-02-05] (MEDIATEK INC. -> MediaTek Inc.)
S3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v4.3.12\Resources\ProtonVPN.CalloutDriver.sys [41416 2025-12-05] (Proton AG -> Proton AG)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_9aa8fb2bbee4c5e5\rt68cx21x64.sys [921128 2026-01-15] (Realtek Semiconductor Corp. -> Realtek)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-14] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-03-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [641416 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [103816 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2026-02-15] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
2026-04-01 08:48 - 2026-04-01 08:49 - 000031066 _____ C:\Users\igorv\Downloads\FRST.txt
2026-04-01 08:48 - 2026-04-01 08:49 - 000000000 ____D C:\FRST
2026-04-01 08:48 - 2026-04-01 08:48 - 002445824 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2026-03-29 18:27 - 2026-03-31 18:02 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-03-28 12:02 - 2026-03-28 12:02 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-03-27 09:34 - 2026-03-27 09:34 - 000000000 ____D C:\WINDOWS\brltty
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-03-18 18:41 - 2026-03-18 18:41 - 000000000 ____D C:\Program Files\Microsoft GameInput
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-01 08:44 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2026-04-01 08:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-31 10:54 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2026-03-30 19:48 - 2024-05-21 08:47 - 000002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-03-29 18:20 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2026-03-28 16:25 - 2024-12-12 17:55 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-28 16:25 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-28 16:21 - 2024-05-21 08:56 - 000000000 ____D C:\3
2026-03-28 16:19 - 2025-09-16 22:04 - 000010512 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-28 16:19 - 2024-12-12 17:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-28 16:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-03-28 16:19 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-03-28 16:19 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2026-03-28 12:01 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2026-03-28 10:13 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-27 09:37 - 2024-12-12 17:54 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-03-27 09:36 - 2024-12-12 17:54 - 000630808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-03-27 09:34 - 2025-07-10 12:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-03-27 09:34 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-03-27 09:19 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2026-03-27 09:19 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2026-03-26 23:53 - 2024-12-12 17:55 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-03-26 11:40 - 2023-09-05 13:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-03-25 20:35 - 2025-08-31 10:58 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-03-22 11:29 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll.0
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 004590024 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000911816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000260552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-03-21 21:56 - 2024-05-24 09:37 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-03-21 13:19 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2026-03-21 13:19 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2026-03-21 13:19 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2026-03-18 18:54 - 2024-01-26 15:44 - 000000000 ____D C:\Program Files\AMD
2026-03-18 13:04 - 2024-12-12 17:38 - 000000000 ____D C:\WINDOWS\Firmware
2026-03-18 11:58 - 2024-12-12 17:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-03-16 21:58 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2026-03-12 00:39 - 2024-12-12 17:39 - 000000000 ____D C:\Users\igorv
2026-03-10 22:53 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-03-10 22:45 - 2025-04-19 16:23 - 000000000 ____D C:\Program Files\dotnet
2026-03-10 15:45 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Word
2026-03-09 23:48 - 2025-09-21 11:19 - 001154472 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\GameInputRedist.dll
2026-03-09 23:48 - 2025-09-21 11:19 - 000013736 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2026-03-07 10:30 - 2024-12-12 17:56 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-07 10:30 - 2024-12-12 17:56 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
==================== Files in the root of some directories ========
2024-06-22 21:39 - 2024-06-22 21:39 - 000000017 _____ () C:\Users\igorv\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-03-2026
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (01-04-2026 08:48:55)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 25H2 26200.8116 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\CoreProvider\CoreProvider.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\Software Package Manager\SoftwarePackageManager.exe
(C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\123.0.1.0\crashpad_handler.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\BridgeCommunication.exe
(DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOS64.exe
(DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atieclxx.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> DesktopExtension) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\HP.ContextAware.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe <2>
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMToastNotification.exe
(FMService64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMAudioMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (MEDIATEK INC. -> MediaTek Inc.) C:\Windows\System32\mtkbtsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe <3>
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2511.3002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\HP.HPX.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe [3245608 2025-12-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3101848 2026-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\146.0.7680.165\Installer\chrmstp.exe [7359128 2026-03-25] (Google LLC -> Google LLC)
Startup: C:\Users\igorv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2026-02-22]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-10-28]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {463206D8-8236-47D7-9D90-DD678745B403} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem148.0.7730.0{34D9D644-B19A-4B39-AD46-E8C68CF00E1D} => C:\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\updater.exe [8459416 2026-03-12] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {59A3FDEA-F9F2-4E14-9182-597D9A9B920D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {2485C39A-E871-4B62-87F9-F7E02C2A2B7B} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {AEBCEBED-5604-41E5-8AE1-BFF391752753} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1015880 2025-12-15] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {48A211BF-3686-480D-8C89-571A6BCD2308} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2025-12-15] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-07-10] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DA847129-1FBC-49A8-95F1-9AB56F0DADCB} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [78979088 2024-07-31] (HP Inc. -> HP)
Task: {9C0BE82C-E4B0-46CD-835A-647A94AD9F3A} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [263752 2025-10-22] (HP Inc. -> HP Inc.)
Task: {67F09B4E-DBF1-4A32-A14B-10A83D743C8D} - System32\Tasks\HPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [3170056 2026-03-19] (HP Inc. -> )
Task: {1AC9AC68-A9ED-474A-9EE3-DB35AD5C4615} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{D3913CAA-0A30-494D-AE06-F79A68997FAB}\HPOneAgent.exe [1169760 2025-10-29] (HP Inc. -> HP Inc; HP Development Company, L.P.)
Task: {4E96B2D1-F910-461A-9CBD-3F1A75D4CA13} - System32\Tasks\HPSupportTool => C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-iolo-collector_ver_4.675.11370\HPSupportAssistant1.exe (No File)
Task: {09266611-4E1B-407E-B37A-49E5E4A3756C} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {C811E1E0-FE52-4414-AC5E-83A408D28648} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEF74F71-41D9-4CC6-9805-4C38B1AB8EB7} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {34C4AFD3-52F5-4ABA-BAE4-062CD8141D46} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {1E9C9E61-39EA-4DDF-9D1A-F9F9D64812E0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {6F2F3465-554C-48D4-BE27-2454E728665E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {30BA9ABB-68A1-450A-876E-AFBC04D38FAC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1349920 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {45BB6910-11EB-47F8-99A2-8E4B9060240B} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F6DBB90-924B-48D2-98A4-38A2683806F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5A6F3D01-843B-4E31-8C51-2C63FC2AC7F2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {080CA3D9-5261-4BCE-B281-E12A8E62860C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5FE16F27-71DE-4569-889C-7670BF6077E2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3E4451E-7955-479C-AB09-1F3B63639060} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2024-10-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F5548545: [DhcpNameServer] 192.168.31.234
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [NameServer] 1.1.1.1,8.8.8.8
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpDomain] localdomain
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-03-28]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-22]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-07-26]
Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2026-04-01]
CHR HomePage: Default -> hxxp://www.google.com/
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-03-18]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2025-08-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-31]
CHR HKU\S-1-5-21-2384847340-952867437-1279697988-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 brlapi; C:\WINDOWS\brltty\bin\brltty.exe [1067072 2026-03-26] (Microsoft 3rd Party Application Component -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233464 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1107496 2025-10-08] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [385960 2026-03-09] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe [1516200 2025-12-17] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2445408 2025-09-11] (HP Inc. -> HP Inc; HP Development Company, L.P.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe [503976 2025-12-17] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe [907936 2025-09-30] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [7664328 2026-03-20] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [1526984 2026-03-20] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe [903840 2025-09-30] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 hpsvcsscan; C:\WINDOWS\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe [7124768 2025-10-07] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe [639776 2025-10-01] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe [608424 2025-12-17] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe [2088128 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MTKBTSVC; C:\WINDOWS\System32\mtkbtsvc.exe [545208 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPNService.exe [477424 2026-02-02] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPN.WireGuardService.exe [476912 2026-02-02] (Proton AG -> ProtonVPN)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe [5080392 2026-01-20] (Bromium UK Limited -> HP)
R2 SNAPOService; C:\WINDOWS\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe [369408 2025-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation)
S2 WbfPolicyService110; C:\WINDOWS\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_b12a1111c8064a8a\WbfPolicyService110.exe [715784 2025-05-22] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe [4451664 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe [290704 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AIDA64Driver; C:\Program Files\FinalWire\AIDA64 Extreme\kerneld-x64.sys [81296 2025-12-09] (FinalWire Kft. -> FinalWire Ltd.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\amdkmdag.sys [106595800 2025-06-18] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [49448 2025-09-10] (Advanced Micro Devices -> Advanced Micro Devices, Inc)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226688 2025-12-04] (Microsoft Windows -> Microsoft Corporation)
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 HpPair; C:\WINDOWS\System32\drivers\HpPair.sys [69912 2025-06-09] (HP Inc. -> HP Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 mtkbtacx; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtacx.inf_amd64_83b672d8fe91251d\mtkbtacx.sys [289184 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_04e48cf0e2222a28\mtkbtfilterx.sys [611264 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_731ab61f1805181e\mtkwl6ex.sys [2115608 2026-02-05] (MEDIATEK INC. -> MediaTek Inc.)
S3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v4.3.12\Resources\ProtonVPN.CalloutDriver.sys [41416 2025-12-05] (Proton AG -> Proton AG)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_9aa8fb2bbee4c5e5\rt68cx21x64.sys [921128 2026-01-15] (Realtek Semiconductor Corp. -> Realtek)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-14] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-03-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [641416 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [103816 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2026-02-15] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
2026-04-01 08:48 - 2026-04-01 08:49 - 000031066 _____ C:\Users\igorv\Downloads\FRST.txt
2026-04-01 08:48 - 2026-04-01 08:49 - 000000000 ____D C:\FRST
2026-04-01 08:48 - 2026-04-01 08:48 - 002445824 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2026-03-29 18:27 - 2026-03-31 18:02 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-03-28 12:02 - 2026-03-28 12:02 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-03-27 09:34 - 2026-03-27 09:34 - 000000000 ____D C:\WINDOWS\brltty
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-03-18 18:41 - 2026-03-18 18:41 - 000000000 ____D C:\Program Files\Microsoft GameInput
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-01 08:44 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2026-04-01 08:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-31 10:54 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2026-03-30 19:48 - 2024-05-21 08:47 - 000002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-03-29 18:20 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2026-03-28 16:25 - 2024-12-12 17:55 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-28 16:25 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-28 16:21 - 2024-05-21 08:56 - 000000000 ____D C:\3
2026-03-28 16:19 - 2025-09-16 22:04 - 000010512 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-28 16:19 - 2024-12-12 17:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-28 16:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-03-28 16:19 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-03-28 16:19 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2026-03-28 12:01 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2026-03-28 10:13 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-27 09:37 - 2024-12-12 17:54 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-03-27 09:36 - 2024-12-12 17:54 - 000630808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-03-27 09:34 - 2025-07-10 12:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-03-27 09:34 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-03-27 09:19 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2026-03-27 09:19 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2026-03-26 23:53 - 2024-12-12 17:55 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-03-26 11:40 - 2023-09-05 13:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-03-25 20:35 - 2025-08-31 10:58 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-03-22 11:29 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll.0
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 004590024 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000911816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000260552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-03-21 21:56 - 2024-05-24 09:37 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-03-21 13:19 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2026-03-21 13:19 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2026-03-21 13:19 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2026-03-18 18:54 - 2024-01-26 15:44 - 000000000 ____D C:\Program Files\AMD
2026-03-18 13:04 - 2024-12-12 17:38 - 000000000 ____D C:\WINDOWS\Firmware
2026-03-18 11:58 - 2024-12-12 17:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-03-16 21:58 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2026-03-12 00:39 - 2024-12-12 17:39 - 000000000 ____D C:\Users\igorv
2026-03-10 22:53 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-03-10 22:45 - 2025-04-19 16:23 - 000000000 ____D C:\Program Files\dotnet
2026-03-10 15:45 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Word
2026-03-09 23:48 - 2025-09-21 11:19 - 001154472 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\GameInputRedist.dll
2026-03-09 23:48 - 2025-09-21 11:19 - 000013736 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2026-03-07 10:30 - 2024-12-12 17:56 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-07 10:30 - 2024-12-12 17:56 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
==================== Files in the root of some directories ========
2024-06-22 21:39 - 2024-06-22 21:39 - 000000017 _____ () C:\Users\igorv\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================