Prosím o kontrolu logu z důvodu úbytku místa na SSD
Odeslal: 21 Črv 2026 11:00
Dobrý den, cca. 4 dny se mi začal zaplňovat SSD měl jsem tam cca 25gb volného místa a najednou jsem tam měl 800mb, tak jsem zkusil zase uvolnit místo cca. 10gb, zašel jsem si udělat oběd, přijdu k pc a je tam zase 500-800mb. Děkuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2026
Ran by micha (administrator) on PETR (ASUS System Product Name) (21-06-2026 11:48:33)
Running from C:\Users\micha\OneDrive\Plocha\FRST64.exe
Loaded Profiles: micha
Platform: Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <5>
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <47>
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzBTLEManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectServer
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5>
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\gameoverlayui64.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\LGHUB\lghub_agent.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\lghub_updater.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_526.11701.50.0_x64__cw5n1h2txyewy\WidgetBoard.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe
(cmd.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe
(DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atieclxx.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
(explorer.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\VpnSvc.exe
(services.exe ->) (INPLERON LTD -> ) C:\Program Files (x86)\GameGuard\acsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_5aab0cb93cd60e87\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (Novabench Inc. -> Novabench Inc.) C:\Program Files\Novabench\resources\NovabenchService.exe
(services.exe ->) (PALTALK, INC. -> AVM Software) C:\Program Files (x86)\Paltalk\update\pt_update_service.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Surfshark B.V. -> Surfshark.Service) C:\Program Files\Surfshark\Surfshark.Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe <5>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.4019.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Screenshot\iScrShot.exe
(svchost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe
(svchost.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <6>
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4148120 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox) [File not signed]
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-07-16] () [File not signed]
HKLM-x32\...\Run: [YKB 3400 PANZER] => C:\Program Files\FAST\PANZER\YKB 3400 PANZER.exe [1828864 2019-08-01] (TODO: <Company name>) [File not signed]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia -> Nokia)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2024-09-29] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [VideoPlayTool] => C:\Program Files (x86)\VideoPlayTool\Bin\VideoPlayTool.exe [912384 2025-11-03] () [File not signed]
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5776024 2026-06-09] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Opera GX Stable] => "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe" --autostart [2980808 2026-06-15] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [51722680 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Discord] => C:\Users\micha\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [G-Menu] => C:\G-Menu\G-Menu.exe [110791560 2024-12-27] (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Free Download Manager] => C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe [10551296 2026-03-24] (Softdeluxe) [File not signed]
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [75647752 2026-06-11] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [com.blitz.app] => C:\Users\micha\AppData\Local\Programs\Blitz\Blitz.exe [180674520 2026-06-04] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PaltalkLauncher] => C:\Program Files (x86)\Paltalk\PaltalkLauncher.exe [1310288 2023-12-29] (PALTALK, INC. -> Paltalk, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3599496 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Battle.net] => D:\Battle.net\Battle.net.exe [981632 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3393184 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Wargaming.net Game Center] => D:\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-24] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [IO Auto Clicker] => C:\Users\micha\Programs\IO Auto Clicker\IO-Auto-Clicker.exe [38201072 2023-08-08] (Massive Computing, Inc. -> Wonkru Media (OPC) Private Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PlanetVPN] => C:\Program Files (x86)\PlanetVPN\PlanetVPN.exe [28895528 2025-03-18] (FREE VPN PLANET S.R.L. -> )
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-04-19] (Nokia -> Nokia)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [VoicemodV3] => C:\Program Files\Voicemod V3\Voicemod.exe [6302096 2024-11-21] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [26286744 2026-05-01] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [electron.app.Pi Network] => C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Surfshark] => C:\Program Files\Surfshark\Surfshark.exe [258752 2025-05-21] (Surfshark B.V. -> Surfshark)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [ut] => C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe [3680688 2025-10-09] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5304648 2026-06-17] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\xrhk1apps: C:\Windows\System32\spool\prtprocs\x64\xrhk1apps.dll [33280 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Xerox)
HKLM\...\Print\Monitors\Xerox WorkCentre 6015B Language Monitor: C:\Windows\system32\xrhk1alm.dll [22528 2012-03-09] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\...\AppCompatFlags\Custom\Game.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb [2017-10-31]
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\149.0.7827.114\Installer\chrmstp.exe [7662744 2026-06-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\Installer\chrmstp.exe [6180432 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HMA VPN.lnk [2026-06-12]
ShortcutTarget: HMA VPN.lnk -> C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07383BA5-AC71-4542-A27D-0B1365A76DC5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {58598953-64C1-498A-969D-7E530D78BD35} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401304 2026-03-09] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {4B79E43A-0A8C-4450-85D7-92F1259546C0} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2026-03-09] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {BA57A88A-1A4D-4745-868C-8343AC7BB574} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1dc8b0f8264b10e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {A82E61FC-C1C2-4BB6-8045-424DEB3F411C} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {0BBB9D13-8182-43EA-9D70-A341B104C8D5} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1261464 2025-09-02] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {1CC508F2-2CEA-4175-B350-1A3E8EF97637} - System32\Tasks\AVG\AVG Driver Updater BugReport => C:\Program Files\AVG\Driver Updater\AvBugReport.exe -> --send "dumps|report" --silent --product 149 --programpath "C:\Program Files\AVG\Driver Updater\Setup\.." --configpath "C:\Program Files\AVG\Driver Updater\Setup" --path "C:\ProgramData\AVG\Driver Updater\log" --path "C:\ProgramData\AVG\Icarus\Logs" --logpath "C:\ProgramData\AVG\Driver Updater\log" (the data entry has 44 more characters).
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {96849D15-173B-45F8-BC00-2CF4DB8197EC} - System32\Tasks\CZManagerAgent => C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe [454656 2025-09-09] (Microsoft Windows -> Microsoft Corporation) -> -WindowStyle Hidden -Command Start-Process -FilePath 'C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe' -WindowStyle Hidden
Task: {0E2AFA7F-E936-4DF1-9D3B-26ACEFDFF1E1} - System32\Tasks\FreeDownloadManagerHelperService => C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe [139776 2026-03-24] (Softdeluxe) [File not signed]
Task: {BFAF617D-C894-46EF-9F24-5A2448C7D7B1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{9A1F49F2-B9A2-4FF8-8274-F7B59D04E8BD} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {0CAA4159-CBA2-429E-8515-CEBCE0710748} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {289F1DC7-9AC7-41B2-B1CD-527C67F9E505} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {CADB948C-124D-458F-9DF4-02DB8693A495} - System32\Tasks\iTop Screen Recorder SkipUAC (micha) => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/skipuac
Task: {4B96F151-97A7-4594-9114-042B455D99DC} - System32\Tasks\iTop Screen Recorder Startup => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/autorun
Task: {1E2EF058-B5AD-4EB7-B196-EA895CDC061C} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3570232 2025-07-29] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/auto
Task: {DC9705A8-88CC-4154-B39B-0D45A1C2C611} - System32\Tasks\iTop Screenshot SkipUAC (micha) => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/skipuac
Task: {E3EAD2AC-F085-4A38-BD75-637B32BF1C9E} - System32\Tasks\iTop Screenshot Startup => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/autorun
Task: {08038785-058A-4615-B290-9B987C6330AF} - System32\Tasks\iTop Screenshot Update => C:\Program Files (x86)\iTop Screenshot\AutoUpdate.exe [3081472 2023-05-17] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/auto
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {262840F9-0B02-4A64-95E7-7F7352AFE986} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1BCDA2D-2EBA-4EDC-A515-F495BC7699E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DCA45B5B-8512-402E-B3BE-FF892EB05B32} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE1B17B4-5C4D-4095-9E5F-623D408A95E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {261C748D-8E6F-4711-9D47-7E084864C474} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\micha\AppData\Local\Programs\Opera GX\assistant" --producttype=assistant $(Arg0)
Task: {E5CEE4AE-386B-4109-82E3-9BD53F078E92} - System32\Tasks\Opera GX scheduled Autoupdate 1704393290 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software)
Task: {487CFED9-2C96-424D-8868-096D1A0408C1} - System32\Tasks\Privax\HMA VPN Bug Report => C:\Program Files\Privax\HMA VPN\AvBugReport.exe [6605536 2026-06-11] (Gen Digital Inc. -> Privax Limited) -> --filter "*.dmp;*.mdmp;icarus.log" --send "dumps|report" --silent --product 78 --programpath "C:\Program Files\Privax\HMA VPN" --configpath "C:\ProgramData\Privax\HMA VPN" --path "C:\ProgramData\Privax\HMA VPN\log" --path "C:\ProgramData\Privax\Icarus\Logs" --logpath "C:\ProgramData\Privax\HMA VPN\l (the data entry has 47 more characters).
Task: {838A083D-1997-4EBC-88D2-B0122E6E3A13} - System32\Tasks\Privax\HMA VPN Emergency Update => C:\Program Files\Privax\HMA VPN\VpnUpdate.exe [4037856 2026-06-11] (Gen Digital Inc. -> Privax Limited)
Task: {E092C7B3-915D-490F-8252-1684233C029B} - System32\Tasks\Privax\HMA VPN Update => C:\Program Files\Common Files\Privax\Icarus\privax-vpn\icarus.exe [9715424 2026-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {353900EC-C8D8-4D46-9EAB-9123A2D37F51} - System32\Tasks\Privax\IcarusPrivaxVpnUpgrade => C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe -> /silent /ShowVpnGui=0 /RestartUpdaterTaskName=IcarusPrivaxVpnUpgrade /RestartUpdaterAppExe="C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe"
Task: {26BD7906-16E7-4328-B7CF-BAD752531406} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17246392 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\BlueStacksHelper_nxt.job => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (micha).job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\DriverBooster.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
Task: C:\WINDOWS\Tasks\Overwolf Updater Task.job => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe
Task: C:\WINDOWS\Tasks\RunOW.job => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\055647277237027416C616879702143323: [DhcpNameServer] 10.40.221.78
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\44F6D61684F627E696: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\4505D2C496E6B6F5F4574746F6F627F53353834325F657475627: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\75966696F5352535550574D4C42384: [DhcpNameServer] 192.168.10.10
Tcpip\..\Interfaces\{f6fbe2a6-9f33-45e3-955e-6f0c3fd9a8db}: [DhcpNameServer] 192.168.1.1 192.168.1.1
FireFox:
========
FF DefaultProfile: 3iwgnaym.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\duwbd8eu.default [2025-05-26]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release [2025-08-08]
FF Extension: (Language: English (GB)) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2025-05-26]
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-04-19] (Nokia -> )
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-21]
Edge Extension: (7TV) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2026-05-22]
Edge Extension: (YouTube Shorts Extractor) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bcbngjmjfkdnmpfdmdkpggkcahimnbhh [2025-10-28]
Edge Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejfccgmelcclnoadalcepdmnpgcnglfc [2026-05-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Tampermonkey) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2026-05-25]
Edge Extension: (Show YouTube Video Tags (Advanced)) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jlimlbghmhifobdaampfgllomdldpmeg [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2026-06-04]
Edge Extension: (Adblocker plus pro Twitch ™) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kdiaieegfcpclpalpkmjgfkkggfenamf [2025-05-21]
Edge Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-18]
Edge Extension: (Shazam: Find song names from your browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-04-22]
Edge Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nimlmejbmnecnaghgmbahmbaddhjbecg [2026-06-10]
Edge Extension: (MetaMask) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2026-06-18]
Edge Extension: (vidIQ Vision for YouTube) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2026-06-17]
Chrome:
=======
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2026-01-27]
CHR StartupUrls: Default -> "hxxp://mystart.incredibar.com/?a=6R906EYcyS&loc=skw","hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=3C0D0025225507B2&affID=120007&tt=160913_c3&tsp=5011","hxxp://www.search.ask.com/?tpid=ATU3-SAT&o=APN ... g=EN&cc=CZ"
CHR DefaultSearchURL: Default -> hxxps://search.brave.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Default -> search.brave.com
CHR DefaultSuggestURL: Default -> hxxps://search.brave.com/api/suggest?q={searchTerms}
CHR Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
CHR Extension: (BetterTTV) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2026-01-27]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-15]
CHR Extension: (Steam Inventory Helper) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2025-12-15]
CHR Extension: (Black green shards) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojkleigdijnbfecdhjigpgalhfhkdee [2024-01-04]
CHR Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-12-15]
CHR Extension: (Repeek (formerly FACEIT Enhancer)) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2025-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-04]
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-04]
CHR HKU\S-1-5-21-756127909-4058986209-260929036-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-756127909-4058986209-260929036-1001) Opera GXStable - "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe"
Brave:
=======
BRA Profile: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2026-06-21]
BRA Notifications: Default -> hxxps://cs2.fastcup.net
BRA Extension: (Překladač Google) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2025-02-14]
BRA Extension: (Free Download Manager) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2026-05-12]
BRA Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
BRA Extension: (Surfshark VPN Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2026-05-25]
BRA Extension: (VPN Mexico - Planet VPN lite Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\anojflfckeghbodjglfogdpgkmfinloi [2026-05-27]
BRA Extension: (PureVPN Proxy - Best VPN for Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2026-04-09]
BRA Extension: (Touch VPN - Secure and unlimited VPN proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2024-09-30]
BRA Extension: (change-language) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cofdbpoegempjloogbagkncekinflcnj [2026-06-16]
BRA Extension: (Tipli: Cashback odměny a kupóny) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2026-04-30]
BRA Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dpacanjfikmhoddligfbehkpomnbgblf [2026-05-07]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-06-15]
BRA Extension: (Video Downloader Professional) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2026-03-12]
BRA Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eppiocemhmnlbhjplcgkofciiegomcon [2026-06-10]
BRA Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2026-02-10]
BRA Extension: (Fastcup.net Helper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fafpkjpdfmhkhicmhhaokkbcbhielpjh [2024-08-08]
BRA Extension: (VPN Free - Betternet Unlimited VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gjknjjomckknofjidppipffbpoekiipm [2024-11-05]
BRA Extension: (Bezplatná VPN pro Chrome a blokátor reklam - Planet VPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hipncndjamdcmphkgngojegjblibadbe [2026-05-22]
BRA Extension: (Bezplatný VPN Proxy - VPN pro Chrome uVPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jaoafpkngncfpfggjefnekilbkcpjdgp [2026-04-05]
BRA Extension: (Free VPN - Bezplatná VPN pro Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jcbiifklmgnkppebelchllpdbnibihel [2026-02-06]
BRA Extension: (CSFloat Market Checker) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jjicbefpemnphinccgikpdaagjebbnhg [2026-05-07]
BRA Extension: (Turbo Download Manager (Classic)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kemfccojgjoilhfmcblgimbggikekjip [2024-03-16]
BRA Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2026-06-05]
BRA Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-17]
BRA Extension: (Video Downloader PLUS) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2025-10-07]
BRA Extension: (VPN Bridge) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ogbcbagecoekhkhedecneoeebjidplfn [2025-07-10]
BRA Extension: (Waxpeer Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\pmfjgkjalfcnnipmgfkeipkbehecpjbk [2025-12-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2026-06-20]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2026-06-21]
BRA Extension: (Brave NTP background images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2026-04-16]
BRA Extension: (Brave Ad Block Updater (Mobile app promo blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2026-06-16]
BRA Extension: (Wallet Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2026-06-15]
BRA Extension: (Brave Ad Block Updater (Cookie notice blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2026-06-21]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2025-02-23]
BRA Extension: (Brave NTP sponsored images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2026-06-10]
BRA Extension: (Brave Ads Resources) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2026-02-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2024-09-19]
BRA Extension: (Brave User Agent) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Czech and Slovak website ad blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2026-05-28]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2024-01-04]
BRA Extension: (P3A Configuration) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3493272 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2098080 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [507296 2026-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe [1142168 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe [497560 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe [1879960 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [682904 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [842128 2026-06-21] (ASUSTeK Computer Inc. -> )
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3384464 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20352680 2026-04-09] (BattlEye Innovations e.K. -> )
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\elevation_service.exe [4805200 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [1220760 2025-11-24] (DENUVO GmbH -> Denuvo GmbH)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20690592 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137576 2024-02-01] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [1048360 2026-04-29] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3407800 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2607032 2026-04-29] (Epic Games Inc. -> Epic Games, Inc.)
S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [116503048 2026-06-01] (ESL FACEIT Group Ltd. -> )
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 ggsvc; C:\Program Files (x86)\GameGuard\acsvc.exe [424416 2025-01-26] (INPLERON LTD -> )
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 HmaProVpn; C:\Program Files\Privax\HMA VPN\VpnSvc.exe [15282400 2026-06-11] (Gen Digital Inc. -> Privax Limited)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [20769432 2026-05-01] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5059480 2026-04-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11506480 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 NGS; C:\ProgramData\Nexon\NGS\NGService.exe [3189352 2024-03-20] (NEXON Korea Corporation. -> NEXON Korea Corporation)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NovabenchService5; C:\Program Files\Novabench\resources\NovabenchService.exe [41979096 2023-12-09] (Novabench Inc. -> Novabench Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2026-01-01] (Overwolf Ltd -> Overwolf LTD)
R2 paltalk_update_service; C:\Program Files (x86)\Paltalk\update\pt_update_service.exe [1336624 2023-04-25] (PALTALK, INC. -> AVM Software)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1882024 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [232360 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1268176 2024-07-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300168 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1523832 2026-04-29] (Rockstar Games, Inc. -> Rockstar Games)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2852768 2026-04-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-03-06] (Razer USA Ltd. -> Razer Inc.)
R2 Surfshark Service; C:\Program Files\Surfshark\Surfshark.Service.exe [150720 2025-05-21] (Surfshark B.V. -> Surfshark.Service)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [295592 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5084200 2024-05-01] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [66393768 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [96768 2012-07-16] () [File not signed]
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12458336 2024-05-01] (KRAFTON, Inc. -> KRAFTON, Inc)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACE-BASE; C:\Windows\system32\drivers\ACE-BASE.sys [4323992 2025-05-03] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 ace-game; C:\WINDOWS\System32\drivers\ace-game.sys [3281160 2025-05-03] (Tencent Technology (Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-SSC-DRV64; C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [236136 2025-05-01] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys [37208 2025-02-06] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
S3 amduw23g-417878-33000e3f; C:\WINDOWS\System32\DriverStore\FileRepository\u0417878.inf_amd64_cf56f0cbce08e931\B417693\amdkmdag.sys [101637624 2025-08-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amduw23g-420529-5f0fe368; C:\WINDOWS\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\amdkmdag.sys [101819840 2025-10-27] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [69768 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-03-30] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [9055040 2025-02-05] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid_sr; E:\SteamLibrary\steamapps\common\Call of Duty HQ\randgrid.sys [9109880 2025-11-21] (Activision Publishing Inc -> Activision Blizzard, Inc.)
R1 avpndriver; C:\WINDOWS\System32\drivers\avpndriver.sys [116760 2024-12-16] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-11] (Microsoft Corporation) [File not signed]
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [39672 2026-01-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [3819200 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [87378120 2026-06-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230896 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2024-12-04] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2024-12-04] (Intel Corporation -> Intel Corporation)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 iriuna0; C:\WINDOWS\system32\drivers\iriuna0.sys [46976 2021-04-06] (Iriun Oy -> Windows (R) Win 7 DDK provider)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-20] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_audio_surround; C:\WINDOWS\System32\DriverStore\FileRepository\logi_audio.inf_amd64_affafe6e263c4f51\logi_audio_surround.sys [44112 2025-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\System32\drivers\logi_joy_bus_enum.x64.sys [45448 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\System32\drivers\logi_joy_vir_hid.x64.sys [32648 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\System32\drivers\logi_joy_xlcore.x64.sys [74632 2026-04-04] (Logitech Inc -> Logitech)
S3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [65448 2023-01-17] (ManyCam ULC -> ManyCam ULC)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\Program Files\NordVPN\7.31.8.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.)
R1 networx; C:\WINDOWS\System32\drivers\networx.sys [103496 2022-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2024-01-18] (nordvpn s.a. -> TEFINCOM S.A.)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 ovpn-dco; C:\WINDOWS\System32\drivers\ovpn-dco.sys [104600 2024-10-30] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
S3 pccsmcfd; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 pvxVpnRdr; C:\WINDOWS\System32\drivers\pvxVpnRdr.sys [87800 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
S3 pvxWireGuard; C:\WINDOWS\System32\drivers\pvxWireguard.sys [174872 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-12-04] (Realtek Semiconductor Corp. -> Realtek)
S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0084; C:\WINDOWS\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S3 SurfsharkBypasser; C:\Program Files\Surfshark\Resources\x64\SurfsharkBypasser.sys [128672 2025-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Surfshark)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [41120 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tmhidusb; C:\WINDOWS\system32\DRIVERS\tmhidusb.sys [568488 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmwbulk; C:\WINDOWS\System32\Drivers\tmwbulk.sys [383008 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2022. All rights reserved.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [53793336 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-08-11] (Microsoft Windows -> Microsoft Corporation)
R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [51840 2024-11-11] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2024-07-29] (WireGuard LLC -> WireGuard LLC)
R3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-01-24] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 xhunter1; C:\Windows\xhunter1.sys [215864 2024-05-21] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:48 - 2026-06-21 11:49 - 000067803 _____ C:\Users\micha\OneDrive\Plocha\FRST.txt
2026-06-21 11:47 - 2026-06-21 11:49 - 000000000 ____D C:\FRST
2026-06-21 11:47 - 2026-06-21 11:47 - 002449920 _____ (Farbar) C:\Users\micha\OneDrive\Plocha\FRST64.exe
2026-06-21 10:42 - 2026-06-21 10:42 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-21 10:42 - 2026-06-21 10:42 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-20 23:52 - 2026-06-20 23:54 - 000000000 ____D C:\KVRT2020_Data
2026-06-14 00:44 - 2026-06-14 00:43 - 000481736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_11.dll.0
2026-06-13 18:00 - 2026-06-20 23:38 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-12 12:32 - 2026-06-12 12:32 - 000000000 _____ C:\Users\micha\OneDrive\Plocha\copypastas.txt
2026-06-10 13:04 - 2026-06-10 13:04 - 000000000 ___HD C:\$WinREAgent
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000004066 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-06-05 19:27 - 2026-06-05 19:46 - 2236456448 _____ C:\Users\micha\OneDrive\Plocha\Elite+Squad+(2007)+[Elitní+jednotka]+[114+min,+FHD-x265,+5.1]+[cs,+sk,+pt].mkv
2026-05-30 22:49 - 2026-05-31 13:24 - 000000000 ____D C:\Users\micha\AppData\Local\BET
2026-05-30 22:26 - 2026-05-30 22:26 - 000000223 _____ C:\Users\micha\OneDrive\Plocha\Backrooms Escape Together.url
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:50 - 2025-03-14 18:13 - 000000000 ____D C:\Users\micha\AppData\Local\Malwarebytes
2026-06-21 11:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-21 11:37 - 2024-01-04 20:26 - 000000000 ____D C:\Program Files (x86)\Steam
2026-06-21 11:18 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-21 10:45 - 2024-06-08 19:08 - 000000000 ____D C:\Users\micha\AppData\Local\Ubisoft Game Launcher
2026-06-21 10:45 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-21 10:42 - 2025-08-11 15:55 - 001692332 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-21 10:42 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-21 10:38 - 2025-08-07 17:04 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
2026-06-21 10:37 - 2025-02-23 12:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\Pi Network
2026-06-21 10:37 - 2024-01-15 22:02 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2026-06-21 10:36 - 2025-11-14 18:48 - 000003868 _____ C:\WINDOWS\system32\Tasks\iTop Screen Recorder Update
2026-06-21 10:36 - 2024-01-05 14:05 - 000000000 ____D C:\ProgramData\iTop
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Privax
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\ProgramData\Privax
2026-06-21 10:35 - 2026-01-21 22:08 - 000000000 ____D C:\Users\micha\AppData\Roaming\asus_framework
2026-06-21 10:35 - 2025-08-11 15:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-21 10:35 - 2025-08-11 15:48 - 000067598 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-06-21 10:35 - 2024-01-04 19:39 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
2026-06-21 10:35 - 2024-01-04 19:21 - 000842128 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-06-21 10:34 - 2024-01-04 19:21 - 000880672 _____ C:\WINDOWS\system32\wpbbin.exe
2026-06-21 02:00 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-06-21 00:53 - 2025-04-08 10:14 - 000000000 ____D C:\ProgramData\PackerCrashCanary
2026-06-21 00:03 - 2026-02-21 14:59 - 000000000 ____D C:\Program Files\Upscayl
2026-06-20 23:56 - 2024-01-04 23:44 - 000000000 ____D C:\Program Files\FACEIT AC
2026-06-20 22:41 - 2024-03-16 18:57 - 000000000 ____D C:\Users\micha\AppData\Roaming\Movavi Video Converter 22 Premium
2026-06-20 22:38 - 2024-09-07 17:00 - 000000000 ____D C:\Users\micha\AppData\Roaming\BitTorrent Web
2026-06-20 21:20 - 2025-03-01 15:24 - 000000000 ____D C:\Users\micha\.docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\Users\micha\AppData\Roaming\Docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-06-20 11:27 - 2025-08-11 15:50 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-20 11:27 - 2025-08-11 15:50 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-20 11:18 - 2025-03-05 12:25 - 000000498 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2026-06-20 00:00 - 2024-01-04 20:28 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-06-19 23:41 - 2024-01-04 23:59 - 000000000 ____D C:\Users\micha\AppData\Local\CrashDumps
2026-06-19 02:12 - 2025-08-11 15:47 - 000000000 ____D C:\Users\micha
2026-06-18 23:33 - 2025-12-16 00:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-06-18 21:53 - 2024-01-04 19:22 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-18 17:16 - 2025-08-11 15:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-17 21:58 - 2025-01-01 17:37 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2026-06-16 12:38 - 2025-08-11 15:50 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2024-01-04 19:41 - 000002377 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-06-15 10:38 - 2025-08-11 15:50 - 000004466 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885
2026-06-15 10:38 - 2025-08-11 15:50 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1704393290
2026-06-15 10:38 - 2024-01-04 20:34 - 000001415 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2026-06-15 10:32 - 2024-11-10 22:37 - 134222904 _____ C:\WINDOWS\392667600.dat
2026-06-14 14:33 - 2024-01-15 20:52 - 000000000 ____D C:\ProgramData\Riot Games
2026-06-14 14:32 - 2026-01-22 20:54 - 000000000 ____D C:\Users\micha\AppData\Roaming\Riot Client
2026-06-14 14:32 - 2024-02-17 20:15 - 000000000 ____D C:\Users\micha\AppData\Roaming\riot-client-ux
2026-06-14 10:14 - 2025-03-14 18:13 - 000245864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2026-06-14 00:44 - 2024-08-30 16:18 - 004561352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-06-14 00:44 - 2024-08-30 16:18 - 000158152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-06-14 00:44 - 2024-08-30 16:18 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-06-14 00:43 - 2024-08-30 16:18 - 001182152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000338376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000268744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-06-13 17:40 - 2024-01-12 19:11 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-06-12 20:10 - 2025-03-15 12:08 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-06-10 21:48 - 2025-08-11 15:45 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-06-10 21:45 - 2025-08-11 15:45 - 000306744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-06-10 21:44 - 2025-08-11 16:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2026-06-10 21:44 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-06-10 21:44 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-06-10 11:02 - 2024-01-04 20:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-06-10 11:00 - 2025-08-11 15:48 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-06-10 10:54 - 2024-01-04 20:09 - 222431176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-06-10 00:06 - 2026-02-07 19:24 - 000000000 ____D C:\WINDOWS\Minidump
2026-06-10 00:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-06-09 11:57 - 2024-01-04 19:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-08 20:39 - 2024-01-15 23:56 - 000000000 ____D C:\Users\micha\AppData\Roaming\Blitz
2026-06-08 13:58 - 2024-01-15 23:56 - 000002213 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2026-06-08 13:58 - 2024-01-15 23:56 - 000000032 _____ C:\Users\micha\AppData\Roaming\.machineId
2026-06-06 10:43 - 2024-01-15 20:54 - 000000000 ____D C:\Program Files\Riot Vanguard
2026-06-03 00:42 - 2024-01-04 19:23 - 000000000 ____D C:\ProgramData\Packages
2026-05-23 20:16 - 2024-01-04 20:27 - 000000000 ____D C:\Users\micha\AppData\Local\Steam
==================== Files in the root of some directories ========
2024-01-15 23:56 - 2026-06-08 13:58 - 000000032 _____ () C:\Users\micha\AppData\Roaming\.machineId
2024-01-14 20:36 - 2024-01-14 20:36 - 000000016 _____ () C:\Users\micha\AppData\Roaming\obs-virtualcam.txt
2024-01-08 15:30 - 2024-01-08 15:30 - 000000044 _____ () C:\Users\micha\AppData\Roaming\Screen+.data
2025-11-27 21:04 - 2025-11-27 21:04 - 000000048 ____R () C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
2025-04-19 23:11 - 2025-04-19 23:11 - 000000048 ____R () C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
2024-12-15 11:05 - 2024-12-15 11:05 - 000000048 ____R () C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
2025-10-19 16:48 - 2026-04-30 00:43 - 000000003 _____ () C:\Users\micha\AppData\Local\Autosofted License.txt
2025-03-11 13:19 - 2025-06-03 08:12 - 000007630 _____ () C:\Users\micha\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2026
Ran by micha (administrator) on PETR (ASUS System Product Name) (21-06-2026 11:48:33)
Running from C:\Users\micha\OneDrive\Plocha\FRST64.exe
Loaded Profiles: micha
Platform: Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <5>
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <47>
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzBTLEManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectServer
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5>
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\gameoverlayui64.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\LGHUB\lghub_agent.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\lghub_updater.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_526.11701.50.0_x64__cw5n1h2txyewy\WidgetBoard.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe
(cmd.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe
(DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atieclxx.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
(explorer.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\VpnSvc.exe
(services.exe ->) (INPLERON LTD -> ) C:\Program Files (x86)\GameGuard\acsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_5aab0cb93cd60e87\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (Novabench Inc. -> Novabench Inc.) C:\Program Files\Novabench\resources\NovabenchService.exe
(services.exe ->) (PALTALK, INC. -> AVM Software) C:\Program Files (x86)\Paltalk\update\pt_update_service.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Surfshark B.V. -> Surfshark.Service) C:\Program Files\Surfshark\Surfshark.Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe <5>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.4019.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Screenshot\iScrShot.exe
(svchost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe
(svchost.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <6>
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4148120 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox) [File not signed]
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-07-16] () [File not signed]
HKLM-x32\...\Run: [YKB 3400 PANZER] => C:\Program Files\FAST\PANZER\YKB 3400 PANZER.exe [1828864 2019-08-01] (TODO: <Company name>) [File not signed]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia -> Nokia)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2024-09-29] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [VideoPlayTool] => C:\Program Files (x86)\VideoPlayTool\Bin\VideoPlayTool.exe [912384 2025-11-03] () [File not signed]
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5776024 2026-06-09] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Opera GX Stable] => "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe" --autostart [2980808 2026-06-15] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [51722680 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Discord] => C:\Users\micha\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [G-Menu] => C:\G-Menu\G-Menu.exe [110791560 2024-12-27] (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Free Download Manager] => C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe [10551296 2026-03-24] (Softdeluxe) [File not signed]
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [75647752 2026-06-11] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [com.blitz.app] => C:\Users\micha\AppData\Local\Programs\Blitz\Blitz.exe [180674520 2026-06-04] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PaltalkLauncher] => C:\Program Files (x86)\Paltalk\PaltalkLauncher.exe [1310288 2023-12-29] (PALTALK, INC. -> Paltalk, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3599496 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Battle.net] => D:\Battle.net\Battle.net.exe [981632 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3393184 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Wargaming.net Game Center] => D:\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-24] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [IO Auto Clicker] => C:\Users\micha\Programs\IO Auto Clicker\IO-Auto-Clicker.exe [38201072 2023-08-08] (Massive Computing, Inc. -> Wonkru Media (OPC) Private Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PlanetVPN] => C:\Program Files (x86)\PlanetVPN\PlanetVPN.exe [28895528 2025-03-18] (FREE VPN PLANET S.R.L. -> )
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-04-19] (Nokia -> Nokia)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [VoicemodV3] => C:\Program Files\Voicemod V3\Voicemod.exe [6302096 2024-11-21] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [26286744 2026-05-01] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [electron.app.Pi Network] => C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Surfshark] => C:\Program Files\Surfshark\Surfshark.exe [258752 2025-05-21] (Surfshark B.V. -> Surfshark)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [ut] => C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe [3680688 2025-10-09] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5304648 2026-06-17] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\xrhk1apps: C:\Windows\System32\spool\prtprocs\x64\xrhk1apps.dll [33280 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Xerox)
HKLM\...\Print\Monitors\Xerox WorkCentre 6015B Language Monitor: C:\Windows\system32\xrhk1alm.dll [22528 2012-03-09] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\...\AppCompatFlags\Custom\Game.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb [2017-10-31]
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\149.0.7827.114\Installer\chrmstp.exe [7662744 2026-06-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\Installer\chrmstp.exe [6180432 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HMA VPN.lnk [2026-06-12]
ShortcutTarget: HMA VPN.lnk -> C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07383BA5-AC71-4542-A27D-0B1365A76DC5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {58598953-64C1-498A-969D-7E530D78BD35} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401304 2026-03-09] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {4B79E43A-0A8C-4450-85D7-92F1259546C0} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2026-03-09] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {BA57A88A-1A4D-4745-868C-8343AC7BB574} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1dc8b0f8264b10e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {A82E61FC-C1C2-4BB6-8045-424DEB3F411C} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {0BBB9D13-8182-43EA-9D70-A341B104C8D5} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1261464 2025-09-02] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {1CC508F2-2CEA-4175-B350-1A3E8EF97637} - System32\Tasks\AVG\AVG Driver Updater BugReport => C:\Program Files\AVG\Driver Updater\AvBugReport.exe -> --send "dumps|report" --silent --product 149 --programpath "C:\Program Files\AVG\Driver Updater\Setup\.." --configpath "C:\Program Files\AVG\Driver Updater\Setup" --path "C:\ProgramData\AVG\Driver Updater\log" --path "C:\ProgramData\AVG\Icarus\Logs" --logpath "C:\ProgramData\AVG\Driver Updater\log" (the data entry has 44 more characters).
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {96849D15-173B-45F8-BC00-2CF4DB8197EC} - System32\Tasks\CZManagerAgent => C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe [454656 2025-09-09] (Microsoft Windows -> Microsoft Corporation) -> -WindowStyle Hidden -Command Start-Process -FilePath 'C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe' -WindowStyle Hidden
Task: {0E2AFA7F-E936-4DF1-9D3B-26ACEFDFF1E1} - System32\Tasks\FreeDownloadManagerHelperService => C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe [139776 2026-03-24] (Softdeluxe) [File not signed]
Task: {BFAF617D-C894-46EF-9F24-5A2448C7D7B1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{9A1F49F2-B9A2-4FF8-8274-F7B59D04E8BD} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {0CAA4159-CBA2-429E-8515-CEBCE0710748} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {289F1DC7-9AC7-41B2-B1CD-527C67F9E505} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {CADB948C-124D-458F-9DF4-02DB8693A495} - System32\Tasks\iTop Screen Recorder SkipUAC (micha) => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/skipuac
Task: {4B96F151-97A7-4594-9114-042B455D99DC} - System32\Tasks\iTop Screen Recorder Startup => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/autorun
Task: {1E2EF058-B5AD-4EB7-B196-EA895CDC061C} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3570232 2025-07-29] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/auto
Task: {DC9705A8-88CC-4154-B39B-0D45A1C2C611} - System32\Tasks\iTop Screenshot SkipUAC (micha) => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/skipuac
Task: {E3EAD2AC-F085-4A38-BD75-637B32BF1C9E} - System32\Tasks\iTop Screenshot Startup => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/autorun
Task: {08038785-058A-4615-B290-9B987C6330AF} - System32\Tasks\iTop Screenshot Update => C:\Program Files (x86)\iTop Screenshot\AutoUpdate.exe [3081472 2023-05-17] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/auto
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {262840F9-0B02-4A64-95E7-7F7352AFE986} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1BCDA2D-2EBA-4EDC-A515-F495BC7699E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DCA45B5B-8512-402E-B3BE-FF892EB05B32} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE1B17B4-5C4D-4095-9E5F-623D408A95E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {261C748D-8E6F-4711-9D47-7E084864C474} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\micha\AppData\Local\Programs\Opera GX\assistant" --producttype=assistant $(Arg0)
Task: {E5CEE4AE-386B-4109-82E3-9BD53F078E92} - System32\Tasks\Opera GX scheduled Autoupdate 1704393290 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software)
Task: {487CFED9-2C96-424D-8868-096D1A0408C1} - System32\Tasks\Privax\HMA VPN Bug Report => C:\Program Files\Privax\HMA VPN\AvBugReport.exe [6605536 2026-06-11] (Gen Digital Inc. -> Privax Limited) -> --filter "*.dmp;*.mdmp;icarus.log" --send "dumps|report" --silent --product 78 --programpath "C:\Program Files\Privax\HMA VPN" --configpath "C:\ProgramData\Privax\HMA VPN" --path "C:\ProgramData\Privax\HMA VPN\log" --path "C:\ProgramData\Privax\Icarus\Logs" --logpath "C:\ProgramData\Privax\HMA VPN\l (the data entry has 47 more characters).
Task: {838A083D-1997-4EBC-88D2-B0122E6E3A13} - System32\Tasks\Privax\HMA VPN Emergency Update => C:\Program Files\Privax\HMA VPN\VpnUpdate.exe [4037856 2026-06-11] (Gen Digital Inc. -> Privax Limited)
Task: {E092C7B3-915D-490F-8252-1684233C029B} - System32\Tasks\Privax\HMA VPN Update => C:\Program Files\Common Files\Privax\Icarus\privax-vpn\icarus.exe [9715424 2026-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {353900EC-C8D8-4D46-9EAB-9123A2D37F51} - System32\Tasks\Privax\IcarusPrivaxVpnUpgrade => C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe -> /silent /ShowVpnGui=0 /RestartUpdaterTaskName=IcarusPrivaxVpnUpgrade /RestartUpdaterAppExe="C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe"
Task: {26BD7906-16E7-4328-B7CF-BAD752531406} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17246392 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\BlueStacksHelper_nxt.job => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (micha).job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\DriverBooster.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
Task: C:\WINDOWS\Tasks\Overwolf Updater Task.job => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe
Task: C:\WINDOWS\Tasks\RunOW.job => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\055647277237027416C616879702143323: [DhcpNameServer] 10.40.221.78
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\44F6D61684F627E696: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\4505D2C496E6B6F5F4574746F6F627F53353834325F657475627: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\75966696F5352535550574D4C42384: [DhcpNameServer] 192.168.10.10
Tcpip\..\Interfaces\{f6fbe2a6-9f33-45e3-955e-6f0c3fd9a8db}: [DhcpNameServer] 192.168.1.1 192.168.1.1
FireFox:
========
FF DefaultProfile: 3iwgnaym.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\duwbd8eu.default [2025-05-26]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release [2025-08-08]
FF Extension: (Language: English (GB)) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2025-05-26]
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-04-19] (Nokia -> )
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-21]
Edge Extension: (7TV) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2026-05-22]
Edge Extension: (YouTube Shorts Extractor) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bcbngjmjfkdnmpfdmdkpggkcahimnbhh [2025-10-28]
Edge Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejfccgmelcclnoadalcepdmnpgcnglfc [2026-05-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Tampermonkey) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2026-05-25]
Edge Extension: (Show YouTube Video Tags (Advanced)) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jlimlbghmhifobdaampfgllomdldpmeg [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2026-06-04]
Edge Extension: (Adblocker plus pro Twitch ™) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kdiaieegfcpclpalpkmjgfkkggfenamf [2025-05-21]
Edge Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-18]
Edge Extension: (Shazam: Find song names from your browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-04-22]
Edge Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nimlmejbmnecnaghgmbahmbaddhjbecg [2026-06-10]
Edge Extension: (MetaMask) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2026-06-18]
Edge Extension: (vidIQ Vision for YouTube) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2026-06-17]
Chrome:
=======
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2026-01-27]
CHR StartupUrls: Default -> "hxxp://mystart.incredibar.com/?a=6R906EYcyS&loc=skw","hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=3C0D0025225507B2&affID=120007&tt=160913_c3&tsp=5011","hxxp://www.search.ask.com/?tpid=ATU3-SAT&o=APN ... g=EN&cc=CZ"
CHR DefaultSearchURL: Default -> hxxps://search.brave.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Default -> search.brave.com
CHR DefaultSuggestURL: Default -> hxxps://search.brave.com/api/suggest?q={searchTerms}
CHR Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
CHR Extension: (BetterTTV) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2026-01-27]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-15]
CHR Extension: (Steam Inventory Helper) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2025-12-15]
CHR Extension: (Black green shards) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojkleigdijnbfecdhjigpgalhfhkdee [2024-01-04]
CHR Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-12-15]
CHR Extension: (Repeek (formerly FACEIT Enhancer)) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2025-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-04]
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-04]
CHR HKU\S-1-5-21-756127909-4058986209-260929036-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-756127909-4058986209-260929036-1001) Opera GXStable - "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe"
Brave:
=======
BRA Profile: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2026-06-21]
BRA Notifications: Default -> hxxps://cs2.fastcup.net
BRA Extension: (Překladač Google) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2025-02-14]
BRA Extension: (Free Download Manager) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2026-05-12]
BRA Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
BRA Extension: (Surfshark VPN Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2026-05-25]
BRA Extension: (VPN Mexico - Planet VPN lite Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\anojflfckeghbodjglfogdpgkmfinloi [2026-05-27]
BRA Extension: (PureVPN Proxy - Best VPN for Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2026-04-09]
BRA Extension: (Touch VPN - Secure and unlimited VPN proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2024-09-30]
BRA Extension: (change-language) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cofdbpoegempjloogbagkncekinflcnj [2026-06-16]
BRA Extension: (Tipli: Cashback odměny a kupóny) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2026-04-30]
BRA Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dpacanjfikmhoddligfbehkpomnbgblf [2026-05-07]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-06-15]
BRA Extension: (Video Downloader Professional) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2026-03-12]
BRA Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eppiocemhmnlbhjplcgkofciiegomcon [2026-06-10]
BRA Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2026-02-10]
BRA Extension: (Fastcup.net Helper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fafpkjpdfmhkhicmhhaokkbcbhielpjh [2024-08-08]
BRA Extension: (VPN Free - Betternet Unlimited VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gjknjjomckknofjidppipffbpoekiipm [2024-11-05]
BRA Extension: (Bezplatná VPN pro Chrome a blokátor reklam - Planet VPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hipncndjamdcmphkgngojegjblibadbe [2026-05-22]
BRA Extension: (Bezplatný VPN Proxy - VPN pro Chrome uVPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jaoafpkngncfpfggjefnekilbkcpjdgp [2026-04-05]
BRA Extension: (Free VPN - Bezplatná VPN pro Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jcbiifklmgnkppebelchllpdbnibihel [2026-02-06]
BRA Extension: (CSFloat Market Checker) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jjicbefpemnphinccgikpdaagjebbnhg [2026-05-07]
BRA Extension: (Turbo Download Manager (Classic)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kemfccojgjoilhfmcblgimbggikekjip [2024-03-16]
BRA Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2026-06-05]
BRA Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-17]
BRA Extension: (Video Downloader PLUS) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2025-10-07]
BRA Extension: (VPN Bridge) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ogbcbagecoekhkhedecneoeebjidplfn [2025-07-10]
BRA Extension: (Waxpeer Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\pmfjgkjalfcnnipmgfkeipkbehecpjbk [2025-12-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2026-06-20]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2026-06-21]
BRA Extension: (Brave NTP background images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2026-04-16]
BRA Extension: (Brave Ad Block Updater (Mobile app promo blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2026-06-16]
BRA Extension: (Wallet Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2026-06-15]
BRA Extension: (Brave Ad Block Updater (Cookie notice blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2026-06-21]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2025-02-23]
BRA Extension: (Brave NTP sponsored images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2026-06-10]
BRA Extension: (Brave Ads Resources) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2026-02-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2024-09-19]
BRA Extension: (Brave User Agent) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Czech and Slovak website ad blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2026-05-28]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2024-01-04]
BRA Extension: (P3A Configuration) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3493272 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2098080 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [507296 2026-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe [1142168 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe [497560 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe [1879960 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [682904 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [842128 2026-06-21] (ASUSTeK Computer Inc. -> )
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3384464 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20352680 2026-04-09] (BattlEye Innovations e.K. -> )
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\elevation_service.exe [4805200 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [1220760 2025-11-24] (DENUVO GmbH -> Denuvo GmbH)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20690592 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137576 2024-02-01] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [1048360 2026-04-29] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3407800 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2607032 2026-04-29] (Epic Games Inc. -> Epic Games, Inc.)
S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [116503048 2026-06-01] (ESL FACEIT Group Ltd. -> )
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 ggsvc; C:\Program Files (x86)\GameGuard\acsvc.exe [424416 2025-01-26] (INPLERON LTD -> )
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 HmaProVpn; C:\Program Files\Privax\HMA VPN\VpnSvc.exe [15282400 2026-06-11] (Gen Digital Inc. -> Privax Limited)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [20769432 2026-05-01] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5059480 2026-04-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11506480 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 NGS; C:\ProgramData\Nexon\NGS\NGService.exe [3189352 2024-03-20] (NEXON Korea Corporation. -> NEXON Korea Corporation)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NovabenchService5; C:\Program Files\Novabench\resources\NovabenchService.exe [41979096 2023-12-09] (Novabench Inc. -> Novabench Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2026-01-01] (Overwolf Ltd -> Overwolf LTD)
R2 paltalk_update_service; C:\Program Files (x86)\Paltalk\update\pt_update_service.exe [1336624 2023-04-25] (PALTALK, INC. -> AVM Software)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1882024 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [232360 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1268176 2024-07-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300168 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1523832 2026-04-29] (Rockstar Games, Inc. -> Rockstar Games)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2852768 2026-04-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-03-06] (Razer USA Ltd. -> Razer Inc.)
R2 Surfshark Service; C:\Program Files\Surfshark\Surfshark.Service.exe [150720 2025-05-21] (Surfshark B.V. -> Surfshark.Service)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [295592 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5084200 2024-05-01] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [66393768 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [96768 2012-07-16] () [File not signed]
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12458336 2024-05-01] (KRAFTON, Inc. -> KRAFTON, Inc)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACE-BASE; C:\Windows\system32\drivers\ACE-BASE.sys [4323992 2025-05-03] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 ace-game; C:\WINDOWS\System32\drivers\ace-game.sys [3281160 2025-05-03] (Tencent Technology (Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-SSC-DRV64; C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [236136 2025-05-01] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys [37208 2025-02-06] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
S3 amduw23g-417878-33000e3f; C:\WINDOWS\System32\DriverStore\FileRepository\u0417878.inf_amd64_cf56f0cbce08e931\B417693\amdkmdag.sys [101637624 2025-08-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amduw23g-420529-5f0fe368; C:\WINDOWS\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\amdkmdag.sys [101819840 2025-10-27] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [69768 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-03-30] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [9055040 2025-02-05] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid_sr; E:\SteamLibrary\steamapps\common\Call of Duty HQ\randgrid.sys [9109880 2025-11-21] (Activision Publishing Inc -> Activision Blizzard, Inc.)
R1 avpndriver; C:\WINDOWS\System32\drivers\avpndriver.sys [116760 2024-12-16] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-11] (Microsoft Corporation) [File not signed]
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [39672 2026-01-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [3819200 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [87378120 2026-06-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230896 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2024-12-04] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2024-12-04] (Intel Corporation -> Intel Corporation)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 iriuna0; C:\WINDOWS\system32\drivers\iriuna0.sys [46976 2021-04-06] (Iriun Oy -> Windows (R) Win 7 DDK provider)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-20] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_audio_surround; C:\WINDOWS\System32\DriverStore\FileRepository\logi_audio.inf_amd64_affafe6e263c4f51\logi_audio_surround.sys [44112 2025-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\System32\drivers\logi_joy_bus_enum.x64.sys [45448 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\System32\drivers\logi_joy_vir_hid.x64.sys [32648 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\System32\drivers\logi_joy_xlcore.x64.sys [74632 2026-04-04] (Logitech Inc -> Logitech)
S3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [65448 2023-01-17] (ManyCam ULC -> ManyCam ULC)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\Program Files\NordVPN\7.31.8.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.)
R1 networx; C:\WINDOWS\System32\drivers\networx.sys [103496 2022-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2024-01-18] (nordvpn s.a. -> TEFINCOM S.A.)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 ovpn-dco; C:\WINDOWS\System32\drivers\ovpn-dco.sys [104600 2024-10-30] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
S3 pccsmcfd; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 pvxVpnRdr; C:\WINDOWS\System32\drivers\pvxVpnRdr.sys [87800 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
S3 pvxWireGuard; C:\WINDOWS\System32\drivers\pvxWireguard.sys [174872 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-12-04] (Realtek Semiconductor Corp. -> Realtek)
S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0084; C:\WINDOWS\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S3 SurfsharkBypasser; C:\Program Files\Surfshark\Resources\x64\SurfsharkBypasser.sys [128672 2025-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Surfshark)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [41120 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tmhidusb; C:\WINDOWS\system32\DRIVERS\tmhidusb.sys [568488 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmwbulk; C:\WINDOWS\System32\Drivers\tmwbulk.sys [383008 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2022. All rights reserved.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [53793336 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-08-11] (Microsoft Windows -> Microsoft Corporation)
R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [51840 2024-11-11] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2024-07-29] (WireGuard LLC -> WireGuard LLC)
R3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-01-24] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 xhunter1; C:\Windows\xhunter1.sys [215864 2024-05-21] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:48 - 2026-06-21 11:49 - 000067803 _____ C:\Users\micha\OneDrive\Plocha\FRST.txt
2026-06-21 11:47 - 2026-06-21 11:49 - 000000000 ____D C:\FRST
2026-06-21 11:47 - 2026-06-21 11:47 - 002449920 _____ (Farbar) C:\Users\micha\OneDrive\Plocha\FRST64.exe
2026-06-21 10:42 - 2026-06-21 10:42 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-21 10:42 - 2026-06-21 10:42 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-20 23:52 - 2026-06-20 23:54 - 000000000 ____D C:\KVRT2020_Data
2026-06-14 00:44 - 2026-06-14 00:43 - 000481736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_11.dll.0
2026-06-13 18:00 - 2026-06-20 23:38 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-12 12:32 - 2026-06-12 12:32 - 000000000 _____ C:\Users\micha\OneDrive\Plocha\copypastas.txt
2026-06-10 13:04 - 2026-06-10 13:04 - 000000000 ___HD C:\$WinREAgent
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000004066 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-06-05 19:27 - 2026-06-05 19:46 - 2236456448 _____ C:\Users\micha\OneDrive\Plocha\Elite+Squad+(2007)+[Elitní+jednotka]+[114+min,+FHD-x265,+5.1]+[cs,+sk,+pt].mkv
2026-05-30 22:49 - 2026-05-31 13:24 - 000000000 ____D C:\Users\micha\AppData\Local\BET
2026-05-30 22:26 - 2026-05-30 22:26 - 000000223 _____ C:\Users\micha\OneDrive\Plocha\Backrooms Escape Together.url
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:50 - 2025-03-14 18:13 - 000000000 ____D C:\Users\micha\AppData\Local\Malwarebytes
2026-06-21 11:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-21 11:37 - 2024-01-04 20:26 - 000000000 ____D C:\Program Files (x86)\Steam
2026-06-21 11:18 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-21 10:45 - 2024-06-08 19:08 - 000000000 ____D C:\Users\micha\AppData\Local\Ubisoft Game Launcher
2026-06-21 10:45 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-21 10:42 - 2025-08-11 15:55 - 001692332 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-21 10:42 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-21 10:38 - 2025-08-07 17:04 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
2026-06-21 10:37 - 2025-02-23 12:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\Pi Network
2026-06-21 10:37 - 2024-01-15 22:02 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2026-06-21 10:36 - 2025-11-14 18:48 - 000003868 _____ C:\WINDOWS\system32\Tasks\iTop Screen Recorder Update
2026-06-21 10:36 - 2024-01-05 14:05 - 000000000 ____D C:\ProgramData\iTop
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Privax
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\ProgramData\Privax
2026-06-21 10:35 - 2026-01-21 22:08 - 000000000 ____D C:\Users\micha\AppData\Roaming\asus_framework
2026-06-21 10:35 - 2025-08-11 15:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-21 10:35 - 2025-08-11 15:48 - 000067598 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-06-21 10:35 - 2024-01-04 19:39 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
2026-06-21 10:35 - 2024-01-04 19:21 - 000842128 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-06-21 10:34 - 2024-01-04 19:21 - 000880672 _____ C:\WINDOWS\system32\wpbbin.exe
2026-06-21 02:00 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-06-21 00:53 - 2025-04-08 10:14 - 000000000 ____D C:\ProgramData\PackerCrashCanary
2026-06-21 00:03 - 2026-02-21 14:59 - 000000000 ____D C:\Program Files\Upscayl
2026-06-20 23:56 - 2024-01-04 23:44 - 000000000 ____D C:\Program Files\FACEIT AC
2026-06-20 22:41 - 2024-03-16 18:57 - 000000000 ____D C:\Users\micha\AppData\Roaming\Movavi Video Converter 22 Premium
2026-06-20 22:38 - 2024-09-07 17:00 - 000000000 ____D C:\Users\micha\AppData\Roaming\BitTorrent Web
2026-06-20 21:20 - 2025-03-01 15:24 - 000000000 ____D C:\Users\micha\.docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\Users\micha\AppData\Roaming\Docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-06-20 11:27 - 2025-08-11 15:50 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-20 11:27 - 2025-08-11 15:50 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-20 11:18 - 2025-03-05 12:25 - 000000498 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2026-06-20 00:00 - 2024-01-04 20:28 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-06-19 23:41 - 2024-01-04 23:59 - 000000000 ____D C:\Users\micha\AppData\Local\CrashDumps
2026-06-19 02:12 - 2025-08-11 15:47 - 000000000 ____D C:\Users\micha
2026-06-18 23:33 - 2025-12-16 00:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-06-18 21:53 - 2024-01-04 19:22 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-18 17:16 - 2025-08-11 15:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-17 21:58 - 2025-01-01 17:37 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2026-06-16 12:38 - 2025-08-11 15:50 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2024-01-04 19:41 - 000002377 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-06-15 10:38 - 2025-08-11 15:50 - 000004466 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885
2026-06-15 10:38 - 2025-08-11 15:50 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1704393290
2026-06-15 10:38 - 2024-01-04 20:34 - 000001415 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2026-06-15 10:32 - 2024-11-10 22:37 - 134222904 _____ C:\WINDOWS\392667600.dat
2026-06-14 14:33 - 2024-01-15 20:52 - 000000000 ____D C:\ProgramData\Riot Games
2026-06-14 14:32 - 2026-01-22 20:54 - 000000000 ____D C:\Users\micha\AppData\Roaming\Riot Client
2026-06-14 14:32 - 2024-02-17 20:15 - 000000000 ____D C:\Users\micha\AppData\Roaming\riot-client-ux
2026-06-14 10:14 - 2025-03-14 18:13 - 000245864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2026-06-14 00:44 - 2024-08-30 16:18 - 004561352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-06-14 00:44 - 2024-08-30 16:18 - 000158152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-06-14 00:44 - 2024-08-30 16:18 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-06-14 00:43 - 2024-08-30 16:18 - 001182152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000338376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000268744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-06-13 17:40 - 2024-01-12 19:11 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-06-12 20:10 - 2025-03-15 12:08 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-06-10 21:48 - 2025-08-11 15:45 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-06-10 21:45 - 2025-08-11 15:45 - 000306744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-06-10 21:44 - 2025-08-11 16:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2026-06-10 21:44 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-06-10 21:44 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-06-10 11:02 - 2024-01-04 20:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-06-10 11:00 - 2025-08-11 15:48 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-06-10 10:54 - 2024-01-04 20:09 - 222431176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-06-10 00:06 - 2026-02-07 19:24 - 000000000 ____D C:\WINDOWS\Minidump
2026-06-10 00:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-06-09 11:57 - 2024-01-04 19:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-08 20:39 - 2024-01-15 23:56 - 000000000 ____D C:\Users\micha\AppData\Roaming\Blitz
2026-06-08 13:58 - 2024-01-15 23:56 - 000002213 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2026-06-08 13:58 - 2024-01-15 23:56 - 000000032 _____ C:\Users\micha\AppData\Roaming\.machineId
2026-06-06 10:43 - 2024-01-15 20:54 - 000000000 ____D C:\Program Files\Riot Vanguard
2026-06-03 00:42 - 2024-01-04 19:23 - 000000000 ____D C:\ProgramData\Packages
2026-05-23 20:16 - 2024-01-04 20:27 - 000000000 ____D C:\Users\micha\AppData\Local\Steam
==================== Files in the root of some directories ========
2024-01-15 23:56 - 2026-06-08 13:58 - 000000032 _____ () C:\Users\micha\AppData\Roaming\.machineId
2024-01-14 20:36 - 2024-01-14 20:36 - 000000016 _____ () C:\Users\micha\AppData\Roaming\obs-virtualcam.txt
2024-01-08 15:30 - 2024-01-08 15:30 - 000000044 _____ () C:\Users\micha\AppData\Roaming\Screen+.data
2025-11-27 21:04 - 2025-11-27 21:04 - 000000048 ____R () C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
2025-04-19 23:11 - 2025-04-19 23:11 - 000000048 ____R () C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
2024-12-15 11:05 - 2024-12-15 11:05 - 000000048 ____R () C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
2025-10-19 16:48 - 2026-04-30 00:43 - 000000003 _____ () C:\Users\micha\AppData\Local\Autosofted License.txt
2025-03-11 13:19 - 2025-06-03 08:12 - 000007630 _____ () C:\Users\micha\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================