Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11.02.2024
- Ran by PC (administrator) on DESKTOP-04GJBNV (Gigabyte Technology Co., Ltd. B450M DS3H) (11-02-2024 20:19:57)
- Running from C:\Users\PC\Downloads\FRST64.exe
- Loaded Profiles: PC & MSSQLFDLauncher$RAFALDB & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY$RAFALDB & SQLTELEMETRY & SQLTELEMETRY$SQLEXPRESS01 & MSSQL$SQLEXPRESS & MSSQLSERVER & MSSQL$RAFALDB & MSSQL$SQLEXPRESS01
- Platform: Microsoft Windows 10 Pro Version 22H2 19045.3930 (X64) Language: Polish (Poland) -> English (United Kingdom)
- Default browser: Chrome
- Boot Mode: Normal
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (Autodesk, Inc. -> Autodesk, Inc.) C:\Users\PC\AppData\Roaming\Autodesk\ADPSDK\bin\ADPClientService.exe
- (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <6>
- (C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\fdlauncher.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\fdhost.exe
- (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <23>
- (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SndVol.exe
- (explorer.exe ->) (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH) G:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
- (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler64.exe
- (services.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
- (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
- (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlceip.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\fdlauncher.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\sqlceip.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\sqlservr.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS\MSSQL\Binn\sqlceip.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS01\MSSQL\Binn\sqlceip.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS01\MSSQL\Binn\sqlservr.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
- (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
- (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_866484083fc526af\Display.NvContainer\NVDisplay.Container.exe <2>
- (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
- (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
- (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2311.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
- (svchost.exe ->) (Microsoft Corporation -> Microsoft) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2312.7.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3745_none_7ded3f327ca60a41\TiWorker.exe
- ==================== Registry (Whitelisted) ===================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [856288 2019-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [13932880 2024-02-06] (SteelSeries ApS -> SteelSeries ApS)
- HKLM\...\Run: [Autodesk Access] => C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe [18088224 2023-05-02] (Autodesk, Inc. -> Autodesk, Inc.)
- HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1792256 2023-06-23] (Logitech Inc -> Logitech, Inc.)
- HKLM-x32\...\Run: [Backup] => C:\Program Files (x86)\Wondershare\drfone\Addins\Backup\DrFoneBackup.exe /hide (No File)
- HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [235624 2015-01-09] (Canon Inc. -> CANON INC.)
- HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
- HKLM-x32\...\Run: [Autodesk Genuine Service ] => C:\Program Files\Autodesk\Genuine Service\GenuineService.exe [3522568 2023-07-12] (Autodesk, Inc. -> Autodesk)
- HKLM\...\RunOnce: [!BCILauncher] => C:\Windows\Temp\MUBSTemp\BCILauncher.EXE [18368 2024-02-11] (Microsoft Corporation -> ) <==== ATTENTION
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4388200 2024-01-13] (Valve Corp. -> Valve Corporation)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [FACEIT] => C:\Users\PC\AppData\Local\FACEIT\update.exe [2280008 2023-12-28] (FACE IT LIMITED -> )
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\PC\AppData\Local\Microsoft\Teams\Update.exe [2587368 2023-04-07] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [24162560 2022-12-10] (Logitech Inc -> Logitech, Inc.)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [utweb] => "C:\Users\PC\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [Discord] => C:\Users\PC\AppData\Local\Discord\Update.exe [1525016 2023-04-26] (Discord Inc. -> GitHub)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Run: [MicrosoftEdgeAutoLaunch_B47356396DDD0FAAE76D0ED141F5CEA2] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788856 2024-02-08] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-2264862351-2215873132-1152238470-1001\...\Policies\Explorer: []
- HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Windows\System32\osk.exe [674304 2023-10-26] (Microsoft Windows -> Microsoft Corporation)
- HKLM\...\Windows x64\Print Processors\Canon MG3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCT.DLL [30208 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
- HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series: C:\Windows\system32\CNMLMCT.DLL [406528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
- HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [375296 2015-03-17] (CANON INC.) [File not signed]
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\121.0.6167.161\Installer\chrmstp.exe [2024-02-09] (Google LLC -> Google LLC)
- Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
- ==================== Scheduled Tasks (Whitelisted) =================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {8B1E9467-3164-47EA-AC97-437F9D83638B} - System32\Tasks\GoogleUpdateTaskMachineCore{69FCCA71-210A-4AF7-BC24-A3F929F5BC4A} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-03] (Google LLC -> Google LLC)
- Task: {094F234F-BD51-4646-97F7-6F202E3DF873} - System32\Tasks\GoogleUpdateTaskMachineUA{10ECEB35-DD1A-4A7B-A868-CB62A0AA496E} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-03] (Google LLC -> Google LLC)
- Task: {C7060D75-EE7C-4A4D-9238-C81201B3A272} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28371568 2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Task: {18703DC6-5D85-48F9-9A7E-02D9B8783254} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28371568 2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Task: {6F7F42C9-B52B-47C1-9B78-6963A2E94B80} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [218672 2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Task: {2CCA9A10-B6F5-4297-99A1-61CB54481B9E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [218672 2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Task: {08A43B32-E428-4819-A790-BFEF91F3957A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {DCCE2062-0E8E-44A5-B669-A23953D19240} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {07161555-55F3-41EA-AD93-80EFEAEDAC3D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {7F76DDD8-DCAE-40AD-A7E3-C84BFC74336D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {CC594545-8A42-4659-8A07-D5953EC1745A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
- Task: {B8963BD6-3042-4F92-986E-843CEEC8B038} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {A59FE0B6-6581-4175-B149-C5A269E332F8} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {872A8E0C-A7B0-411B-84E2-AC68E404D626} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {64E942DC-F870-434F-9103-C4D3CE2B8874} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {F0354F90-8610-4E3C-A19C-EED31E24C877} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {4D568C13-CC2F-445C-BC61-1D4ADE5F79AF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {F66963C7-9B53-496B-A825-EB46937A9DBF} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {6280B60F-2985-485D-9A18-C65E594CB85A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: 127.0.0.1 shop.test
- Tcpip\Parameters: [DhcpNameServer] 178.235.153.32 178.235.153.33
- Tcpip\..\Interfaces\{14224654-69a4-4d73-a6fa-b2f7eae42c15}: [DhcpNameServer] 178.235.153.32 178.235.153.33
- Tcpip\..\Interfaces\{d77c4424-e89f-4dd6-a041-6d921f74fe58}: [DhcpNameServer] 31.11.173.2 89.228.4.126
- Tcpip\..\Interfaces\{d77c4424-e89f-4dd6-a041-6d921f74fe58}\23E24374D2655636472716D275966496D2636463344443: [DhcpNameServer] 31.11.173.2 89.228.4.126
- Edge:
- =======
- Edge DefaultProfile: Default
- Edge Profile: C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-23]
- Edge Extension: (Google Docs Offline) - C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-19]
- Edge Extension: (Edge relevant text changes) - C:\Users\PC\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-13]
- FireFox:
- ========
- FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
- FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default [2024-02-11]
- CHR Extension: (Just Black) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2022-09-03]
- CHR Extension: (alerabat.com | kupony i cashback) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2023-12-12]
- CHR Extension: (Dokumenty Google offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-11]
- CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-02-01]
- CHR Extension: (Tłumacz - tłumaczenie internetowe, Słownik) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibppednjgooiepmkgdcoppnmbhmieefh [2024-02-01]
- CHR Extension: (Mate Translate - translator, słownik) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2024-02-08]
- CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2024-01-30]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-09-03]
- CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-28]
- CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-02-07]
- CHR Extension: (Torrent Scanner) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2024-02-03]
- CHR Extension: (Dokumenty Google offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-21]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-08-21]
- CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 3 [2023-12-03]
- CHR Extension: (Torrent Scanner) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2023-08-25]
- CHR Extension: (Dokumenty Google offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-25]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-08-25]
- CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\System Profile [2024-02-11]
- CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
- ==================== Services (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [10539808 2023-05-21] (Autodesk, Inc. -> Autodesk, Inc.)
- R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [151288 2019-07-24] (Microsoft Windows -> Microsoft Corporation)
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14045768 2024-02-03] (Microsoft Corporation -> Microsoft Corporation)
- S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [9966696 2022-12-13] (Electronic Arts, Inc. -> Electronic Arts)
- S2 EaseUS UPDATE SERVICE; C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [26512 2023-04-26] (CHENGDU YIWO Tech Development Co., Ltd. -> )
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2023-01-29] (EasyAntiCheat Oy -> Epic Games, Inc)
- S2 ElevationService; C:\Program Files (x86)\Wondershare\drfone\Addins\Backup\ElevationService.exe [913408 2022-09-05] () [File not signed]
- S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [70988680 2023-12-13] (FACE IT LIMITED -> )
- R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446360 2022-04-27] (Canon Inc. -> )
- R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10225408 2022-12-10] (Logitech Inc -> Logitech, Inc.)
- S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-02-11] (Malwarebytes Inc. -> Malwarebytes)
- R2 MSSQL$RAFALDB; C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\sqlservr.exe [624680 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [624680 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 MSSQL$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS01\MSSQL\Binn\sqlservr.exe [624680 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R3 MSSQLFDLauncher$RAFALDB; C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\fdlauncher.exe [85600 2019-09-24] (Microsoft Corporation -> Microsoft Corporation)
- R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [624680 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_866484083fc526af\Display.NvContainer\NVDisplay.Container.exe [1274992 2023-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-13] (Microsoft Windows Publisher -> Microsoft Corporation)
- S4 SQLAgent$RAFALDB; C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\SQLAGENT.EXE [690216 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [690216 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- S4 SQLAgent$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS01\MSSQL\Binn\SQLAGENT.EXE [690216 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [690216 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [284608 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 SQLTELEMETRY$RAFALDB; C:\Program Files\Microsoft SQL Server\MSSQL15.RAFALDB\MSSQL\Binn\sqlceip.exe [284608 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 SQLTELEMETRY$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS\MSSQL\Binn\sqlceip.exe [284608 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- R2 SQLTELEMETRY$SQLEXPRESS01; C:\Program Files\Microsoft SQL Server\MSSQL15.SQLEXPRESS01\MSSQL\Binn\sqlceip.exe [284608 2023-08-16] (Microsoft Corporation -> Microsoft Corporation)
- S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\SteelSeriesGGUpdateServiceProxy.exe [1500608 2023-09-18] (SteelSeries ApS -> )
- R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21047096 2024-01-05] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- S2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [277240 2022-09-15] (Wondershare Technology Group Co.,Ltd -> Wondershare)
- S2 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-07-09] (Wondershare Technology Co.,Ltd -> Wondershare)
- S2 DFWSIDService; C:\Program Files (x86)\Wondershare\drfone\WsidService.exe [X]
- S2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [X]
- ===================== Drivers (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
- R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [77297328 2023-12-28] (Microsoft Windows Hardware Compatibility Publisher -> )
- R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [44880 2022-12-11] (Logitech Inc -> Logitech)
- S3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [32080 2022-12-11] (Logitech Inc -> Logitech)
- R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [73040 2022-12-11] (Logitech Inc -> Logitech)
- S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-02-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
- S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239576 2024-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
- R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-12-07] (Nvidia Corporation -> NVIDIA Corporation)
- S4 RsFx0600; C:\Windows\System32\DRIVERS\RsFx0600.sys [286976 2019-09-24] (Microsoft Corporation -> Microsoft Corporation)
- R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [43456 2023-12-19] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
- R3 sshid; C:\Windows\System32\drivers\sshid.sys [44456 2023-03-13] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
- S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
- R3 SteelSeries_Sonar_VAD; C:\Windows\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_da15ab44a6216a8e\SteelSeries-Sonar-VAD.sys [95440 2023-03-17] (SteelSeries ApS -> Windows (R) Win 7 DDK provider)
- S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55856 2023-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [594304 2023-12-07] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-07] (Microsoft Windows -> Microsoft Corporation)
- S3 BTCOMBUS; \SystemRoot\System32\Drivers\brlinkcombus.sys [X]
- S3 Btcsrusb; \SystemRoot\System32\Drivers\brlinkusb.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One month (created) (Whitelisted) =========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2024-02-11 20:19 - 2024-02-11 20:20 - 000028122 _____ C:\Users\PC\Downloads\FRST.txt
- 2024-02-11 20:04 - 2024-02-11 20:20 - 000000000 ____D C:\FRST
- 2024-02-11 20:03 - 2024-02-11 20:03 - 002389504 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
- 2024-02-11 19:48 - 2024-02-11 19:51 - 000000000 ____D C:\AdwCleaner
- 2024-02-11 19:48 - 2024-02-11 19:48 - 008797968 _____ (Malwarebytes) C:\Users\PC\Downloads\adwcleaner.exe
- 2024-02-11 19:47 - 2024-02-11 19:47 - 008551608 _____ (Malwarebytes) C:\Users\PC\Downloads\adwcleaner8.3.2.exe
- 2024-02-11 19:47 - 2024-02-11 19:47 - 000000072 _____ C:\Windows\system32\AdsInfoCls
- 2024-02-11 19:31 - 2024-02-11 19:31 - 000000000 ____D C:\Users\PC\AppData\Local\mbam
- 2024-02-11 19:27 - 2024-02-11 19:56 - 000000000 ____D C:\Users\PC\AppData\Local\Malwarebytes
- 2024-02-11 19:27 - 2024-02-11 19:27 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
- 2024-02-11 19:27 - 2024-02-11 19:27 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2024-02-11 19:27 - 2024-02-11 19:27 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2024-02-11 19:26 - 2024-02-11 19:27 - 000000000 ____D C:\Program Files\Malwarebytes
- 2024-02-11 19:26 - 2024-02-11 19:26 - 002582384 _____ (Malwarebytes) C:\Users\PC\Downloads\MBSetup.exe
- 2024-02-07 20:08 - 2024-02-07 20:08 - 000000118 _____ C:\Users\PC\Downloads\README (1).md
- 2024-02-07 19:09 - 2024-02-07 19:09 - 000052997 _____ C:\Users\PC\Downloads\ANGELIKA-SEKULAR-2024.pdf
- 2024-02-07 18:42 - 2024-02-07 18:42 - 000300140 _____ C:\Users\PC\Downloads\PCPR-DPS-SZYMON (1).pdf
- 2024-02-07 11:33 - 2024-02-07 11:33 - 000300140 _____ C:\Users\PC\Downloads\PCPR-DPS-SZYMON.pdf
- 2024-02-05 14:28 - 2024-02-05 14:29 - 000000000 ___HD C:\$WinREAgent
- 2024-02-04 20:41 - 2024-02-04 20:41 - 000000000 ____D C:\Users\PC\AppData\Local\CrashReportClient
- 2024-01-26 21:31 - 2024-01-26 21:31 - 000000042 _____ C:\Users\PC\Desktop\steamCheat.txt
- 2024-01-24 13:00 - 2024-01-24 13:00 - 000001491 _____ C:\Users\PC\Desktop\Palworld.exe - Shortcut.lnk
- 2024-01-23 18:31 - 2024-01-24 13:13 - 000000000 ____D C:\Users\PC\AppData\Roaming\Goldberg SteamEmu Saves
- 2024-01-23 18:31 - 2024-01-23 18:31 - 000000000 ____D C:\Users\PC\AppData\Local\UnrealEngine
- 2024-01-23 18:31 - 2024-01-23 18:31 - 000000000 ____D C:\Users\PC\AppData\Local\Pal
- 2024-01-23 08:17 - 2024-01-23 08:17 - 000023496 _____ C:\Users\PC\Downloads\SP0841Scan_Duplikat (1).pdf
- 2024-01-20 19:03 - 2024-01-20 19:03 - 000023496 _____ C:\Users\PC\Downloads\SP0841Scan_Duplikat .pdf
- 2024-01-16 16:42 - 2024-01-17 16:43 - 000000000 ____D C:\Users\PC\AppData\Local\NVIDIA Corporation
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000000000 ____D C:\Users\PC\ansel
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
- 2024-01-16 16:42 - 2024-01-16 16:42 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
- 2024-01-16 16:42 - 2023-12-07 00:05 - 002905128 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 002235944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 001296936 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 000170040 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 000149048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 000086568 _____ C:\Windows\system32\FvSDK_x64.dll
- 2024-01-16 16:42 - 2023-12-07 00:05 - 000075304 _____ C:\Windows\SysWOW64\FvSDK_x86.dll
- 2024-01-16 16:39 - 2023-12-07 00:05 - 000060112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
- 2024-01-16 16:39 - 2023-12-07 00:05 - 000059928 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001487368 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001424064 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001424064 _____ C:\Windows\system32\vulkan-1.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001246400 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001246400 _____ C:\Windows\SysWOW64\vulkan-1.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 001227288 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
- 2024-01-16 16:38 - 2023-12-08 02:23 - 000850616 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
- 2024-01-16 16:38 - 2023-12-08 02:23 - 000850616 _____ C:\Windows\system32\vulkaninfo.exe
- 2024-01-16 16:38 - 2023-12-08 02:23 - 000731320 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2024-01-16 16:38 - 2023-12-08 02:23 - 000731320 _____ C:\Windows\SysWOW64\vulkaninfo.exe
- 2024-01-16 16:38 - 2023-12-08 02:19 - 000957960 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
- 2024-01-16 16:38 - 2023-12-08 02:19 - 000670232 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
- 2024-01-16 16:38 - 2023-12-08 02:19 - 000505480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 012375688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 002170992 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 001624712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 001541256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 001198728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 000997512 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 000810096 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
- 2024-01-16 16:38 - 2023-12-08 02:18 - 000773744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
- 2024-01-16 16:38 - 2023-12-08 02:18 - 000459912 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
- 2024-01-16 16:38 - 2023-12-08 02:17 - 015095408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
- 2024-01-16 16:38 - 2023-12-08 02:17 - 006462600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
- 2024-01-16 16:38 - 2023-12-08 02:17 - 005862512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
- 2024-01-16 16:38 - 2023-12-08 02:17 - 005861000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
- 2024-01-16 16:38 - 2023-12-08 02:17 - 003620488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
- 2024-01-16 16:38 - 2023-12-08 02:17 - 000853640 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
- 2024-01-16 16:38 - 2023-12-08 02:16 - 006745768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
- 2024-01-16 16:38 - 2023-12-07 00:05 - 000113947 _____ C:\Windows\system32\nvinfo.pb
- 2024-01-16 16:36 - 2024-01-16 16:36 - 701905008 _____ (NVIDIA Corporation) C:\Users\PC\Downloads\546.33-desktop-win10-win11-64bit-international-dch-whql.exe
- ==================== One month (modified) ==================
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2024-02-11 20:20 - 2022-09-03 13:55 - 000000000 ____D C:\Program Files (x86)\Steam
- 2024-02-11 20:11 - 2022-09-03 14:29 - 000000000 ____D C:\Program Files (x86)\Google
- 2024-02-11 20:11 - 2022-09-03 14:13 - 000000000 ____D C:\Windows\SystemTemp
- 2024-02-11 19:59 - 2023-03-04 20:45 - 000000000 ____D C:\Users\PC\Downloads\KMSAuto Lite 1.5.6 Portable
- 2024-02-11 19:59 - 2022-12-23 15:32 - 000000000 ____D C:\Users\PC\AppData\Roaming\utorrent
- 2024-02-11 19:57 - 2022-09-03 14:32 - 000000000 ____D C:\Users\PC\AppData\Roaming\TS3Client
- 2024-02-11 19:51 - 2022-09-03 13:59 - 000000000 ____D C:\ProgramData\NVIDIA
- 2024-02-11 19:47 - 2019-12-07 10:03 - 000032768 _____ C:\Windows\system32\config\ELAM
- 2024-02-11 19:27 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
- 2024-02-11 18:32 - 2023-03-14 21:11 - 000000000 ____D C:\ProgramData\boost_interprocess
- 2024-02-11 18:21 - 2023-06-26 17:39 - 000000000 ____D C:\Users\PC\AppData\Roaming\discord
- 2024-02-11 18:19 - 2023-06-26 17:39 - 000000000 ____D C:\Users\PC\AppData\Local\Discord
- 2024-02-11 18:19 - 2022-09-03 13:46 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2024-02-11 18:19 - 2022-09-03 13:46 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
- 2024-02-11 18:19 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
- 2024-02-11 18:19 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
- 2024-02-10 00:26 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2024-02-09 23:07 - 2022-09-03 14:15 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2264862351-2215873132-1152238470-1001
- 2024-02-09 23:07 - 2022-09-03 13:52 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2264862351-2215873132-1152238470-1001
- 2024-02-09 23:07 - 2022-09-03 13:50 - 000002374 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2024-02-09 20:34 - 2022-09-03 14:30 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2024-02-09 20:34 - 2022-09-03 14:30 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2024-02-08 19:16 - 2022-09-03 13:46 - 000000000 ____D C:\Windows\system32\SleepStudy
- 2024-02-08 15:52 - 2022-09-03 13:55 - 000000000 ____D C:\Users\PC\AppData\Local\Steam
- 2024-02-08 15:44 - 2023-02-19 20:47 - 000000000 ____D C:\Users\PC\Desktop\DOC
- 2024-02-08 15:25 - 2022-09-04 10:08 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Word
- 2024-02-08 15:21 - 2023-11-20 22:31 - 000000000 ____D C:\Users\PC\Desktop\glovo
- 2024-02-08 15:17 - 2022-09-10 20:22 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Excel
- 2024-02-07 19:11 - 2022-11-26 12:07 - 000000000 ____D C:\Users\PC\AppData\Roaming\steelseries-gg-client
- 2024-02-07 18:43 - 2022-09-03 13:52 - 003104456 _____ C:\Windows\system32\PerfStringBackup.INI
- 2024-02-07 18:43 - 2019-12-07 16:09 - 001248738 _____ C:\Windows\system32\perfh015.dat
- 2024-02-07 18:43 - 2019-12-07 16:09 - 000342698 _____ C:\Windows\system32\perfc015.dat
- 2024-02-07 18:43 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
- 2024-02-07 07:04 - 2022-11-06 14:49 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
- 2024-02-07 07:03 - 2022-11-06 14:49 - 000000000 ____D C:\Users\PC\AppData\Roaming\Code
- 2024-02-05 17:44 - 2022-09-03 19:22 - 000000000 ____D C:\Users\PC\AppData\Local\D3DSCache
- 2024-02-04 22:34 - 2022-09-03 13:50 - 000000000 ____D C:\Users\PC
- 2024-02-04 20:43 - 2023-06-27 19:27 - 000000000 ____D C:\Program Files\TeamViewer
- 2024-02-04 20:43 - 2022-09-03 13:46 - 000008192 ___SH C:\DumpStack.log.tmp
- 2024-02-04 20:43 - 2022-09-03 13:46 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2024-02-04 20:43 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
- 2024-02-04 20:41 - 2023-01-18 12:10 - 000000000 ____D C:\Users\PC\AppData\Local\CrashDumps
- 2024-02-03 20:21 - 2023-04-13 17:32 - 000000000 ____D C:\ProgramData\CanonIJPLM
- 2024-02-03 20:20 - 2022-09-03 14:33 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
- 2024-02-03 20:15 - 2022-09-03 13:46 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2024-02-03 20:15 - 2022-09-03 13:46 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
- 2024-02-01 19:06 - 2022-09-03 14:29 - 000003940 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{10ECEB35-DD1A-4A7B-A868-CB62A0AA496E}
- 2024-02-01 19:06 - 2022-09-03 14:29 - 000003816 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{69FCCA71-210A-4AF7-BC24-A3F929F5BC4A}
- 2024-02-01 06:59 - 2023-06-26 17:39 - 000002216 _____ C:\Users\PC\Desktop\Discord.lnk
- 2024-01-27 16:56 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
- 2024-01-27 09:02 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
- 2024-01-24 21:10 - 2022-12-23 15:30 - 000000000 ____D C:\Users\PC\AppData\Local\BitTorrentHelper
- 2024-01-24 07:23 - 2023-12-15 05:37 - 000026770 ____H C:\Users\PC\Desktop\~WRL0007.tmp
- 2024-01-23 08:31 - 2023-12-15 05:37 - 000026470 ____H C:\Users\PC\Desktop\~WRL0006.tmp
- 2024-01-23 08:03 - 2024-01-11 08:11 - 000013634 _____ C:\Users\PC\Desktop\Trenigng.xlsx
- 2024-01-16 16:42 - 2022-09-03 14:00 - 000000000 ____D C:\Users\PC\AppData\Local\NVIDIA
- 2024-01-16 16:42 - 2022-09-03 13:59 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2024-01-16 16:42 - 2022-09-03 13:59 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2024-01-16 16:41 - 2023-09-04 18:01 - 000000000 ____D C:\Users\PC\AppData\LocalLow\NVIDIA
- 2024-01-16 16:41 - 2022-09-03 13:59 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
- 2024-01-12 21:32 - 2022-09-12 20:38 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Teams
- 2024-01-12 20:36 - 2022-09-03 13:46 - 000487168 _____ C:\Windows\system32\FNTCACHE.DAT
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences
- 2024-01-12 20:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
- 2024-01-12 19:40 - 2022-09-03 14:00 - 000918944 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
- ==================== Files in the root of some directories ========
- 2022-11-06 09:26 - 2023-10-06 08:51 - 000000600 _____ () C:\Users\PC\AppData\Roaming\winscp.rnd
- 2023-01-18 14:49 - 2023-01-18 14:49 - 000006053 _____ () C:\Users\PC\AppData\Local\recently-used.xbel
- ==================== SigCheck ============================
- (There is no automatic fix for files that do not pass verification.)
- ==================== End of FRST.txt ========================
Add Comment
Please, Sign In to add comment