Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-12-2023
Ran by Roman (administrator) on ROMAN (MSI MS-7971) (19-12-2023 20:41:21)
Running from C:\Users\Roman\Desktop\FRST64 (1).exe
Loaded Profiles: Roman
Platform: Microsoft Windows 10 Pro Version 22H2 19045.3803 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(C:\Program Files\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Program Files\Opera\105.0.4970.48\opera_crashreporter.exe
(DriverStore\FileRepository\u0397033.inf_amd64_bf2b1fc18ba7195d\B396953\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0397033.inf_amd64_bf2b1fc18ba7195d\B396953\atieclxx.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Opera Norway AS -> Opera Software) C:\Program Files\Opera\opera.exe <28>
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0397033.inf_amd64_bf2b1fc18ba7195d\B396953\atiesrxx.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe
(services.exe ->) (Chickadee Digital, LLC -> Chickadee Digital LLC) C:\Program Files (x86)\OneBrowser\Update\OBUpdateService.exe
(services.exe ->) (Lespeed Technology Ltd. -> WiseCleaner.com) C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2349.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Roman\AppData\Local\Microsoft\OneDrive\23.246.1127.0002\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2023-12-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2023-12-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\...\Run: [MicrosoftEdgeAutoLaunch_66D161819F0EAC1A9819F518A968ED0B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854376 2023-12-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44486048 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\...\Policies\Explorer: []
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\...\MountPoints2: {fd953d6f-8e13-11ee-9142-4ccc6a6d0ec0} - "F:\setup.exe"
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [39936 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2023-12-18] (Google LLC -> Google, Inc.)
HKLM\...\Print\Monitors\HP c111 Status Monitor: C:\WINDOWS\system32\hpinkstsc111LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.110\Installer\chrmstp.exe [2023-12-19] (Google LLC -> Google LLC)
BootExecute: autocheck autochk * avgBoot.exe /M:6de394024a /dir:"C:\Program Files\AVG\Antivirus"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {E79460D9-8FED-4AC1-87B4-10EF2351AEA4} - System32\Tasks\{530F65A9-5287-4B5F-83F4-98E3FF9F55D8} => C:\Windows\system32\pcalua.exe [53760 2023-11-30] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Users\Roman\Desktop\zoek1\zoek (1).exe" -d C:\Users\Roman\Desktop\zoek1
Task: {B39ADC6B-ADF2-40AA-BAC5-4F38E59F4B1C} - System32\Tasks\{977C5418-B343-424B-A9C2-8A0F33BD3106} => C:\Windows\system32\pcalua.exe [53760 2023-11-30] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe" -c uninstall_game -autologging
Task: {F590873F-8C30-4A97-AD15-40EAC678EF09} - System32\Tasks\{B5A7E01A-B572-4972-8D70-EED030CA29B2} => C:\Windows\system32\pcalua.exe [53760 2023-11-30] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Roman\Desktop\zoek1\zoek1\zoek.exe -d C:\Users\Roman\Desktop\zoek1\zoek1
Task: {74D6DED2-14C2-4B85-BCE9-A11BB4F29F4F} - System32\Tasks\{C30BB5A5-9E23-444F-A450-A9CB8B282090} => C:\Windows\system32\pcalua.exe [53760 2023-11-30] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Users\Roman\Desktop\čištění PC\zoek\zoek1\zoek (1).exe" -d "C:\Users\Roman\Desktop\čištění PC\zoek\zoek1"
Task: {B4417120-B076-41FE-9795-089FD917282A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-05] (Avast Software s.r.o. -> Avast Software)
Task: {3BAAFCD7-0797-4F4D-A341-DE309B35ACA5} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {F64CB0C8-D01F-4E8B-BED7-D201E5CA27D8} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "ff23339d-bb51-42b1-885a-9cdbee020fb3" --version "6.19.10858" --silent
Task: {719025DA-4265-458A-8169-1E1B244096D9} - System32\Tasks\CCleanerSkipUAC - Roman => C:\Program Files\CCleaner\CCleaner.exe [37458848 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {7DB76F60-B46D-476C-A3D5-097F5D94C7FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-22] (Google Inc -> Google Inc.)
Task: {A68A477E-0EE5-4B83-8CC3-8FF5BA879940} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-22] (Google Inc -> Google Inc.)
Task: {153A89E5-00C3-43EB-8F0B-DC9461911F2F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {7624807A-11DE-462C-9665-E9FAF775EA2C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3258B303-F753-48DC-BCC6-53988F7B7557} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139656 2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {C02ABF01-AD67-4206-8036-322C3AC7E3F3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139656 2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {160E0086-DC3C-476C-816D-6DA4B4A466C7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8386448 2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {92E37D2E-6720-4653-8F09-88F7F9B97C61} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8386448 2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {3A3C87CD-8411-4B19-A4D6-5EA71EF5CC51} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {0CCDBB7E-021A-4DEA-9644-F852928E7E4F} - System32\Tasks\Opera scheduled assistant Autoupdate 1583089720 => C:\Program Files\Opera\launcher.exe [2353056 2023-12-13] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Program Files\Opera\assistant" $(Arg0)
Task: {AFBCA974-40A9-4026-95A4-C726A1F9C990} - System32\Tasks\Opera scheduled Autoupdate 1516182081 => C:\Program Files\Opera\launcher.exe [2353056 2023-12-13] (Opera Norway AS -> Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 172.16.32.3 93.93.32.32 93.93.33.33
Tcpip\..\Interfaces\{6C0FD1B0-B1B2-456A-ABA1-B65612D05AAF}: [DhcpNameServer] 172.16.32.3 93.93.32.32 93.93.33.33
HKU\S-1-5-21-3164086441-1288322857-271608641-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
Edge:
=======
Edge Profile: C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default [2023-12-19]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2023-12-19]
Edge Extension: (Dokumenty Google offline) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-19]
Edge Extension: (Online Security) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jcpgbnbdnakoblgfkbgggankeidkfcdl [2023-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-12-19]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl]
FireFox:
========
FF DefaultProfile: wbssuqo1.default
FF ProfilePath: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\wbssuqo1.default [2023-12-19]
FF Homepage: Mozilla\Firefox\Profiles\wbssuqo1.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\wbssuqo1.default -> about:newtab
FF Extension: (AdBlock) - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\wbssuqo1.default\Extensions\
jid1-NIfFY2CA8fy1tg@jetpack.xpi [2020-02-04]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2015-11-18] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-06-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKU\S-1-5-21-3164086441-1288322857-271608641-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc. -> Autodesk, Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2023-12-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129160 2021-12-02] (Microsoft Corporation -> Microsoft Corporation)
S3 CPUMonitor; C:\Windows\nssm.exe [331264 2014-08-31] () [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4974416 2023-12-02] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11385960 2023-12-12] (Electronic Arts, Inc. -> Electronic Arts)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [9341488 2023-11-30] (Malwarebytes Inc. -> Malwarebytes)
S3 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2286032 2017-03-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 obupdate; C:\Program Files (x86)\OneBrowser\Update\OBUpdateService.exe [3306400 2023-12-17] (Chickadee Digital, LLC -> Chickadee Digital LLC)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2022-11-05] (Even Balance, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23100.2009-0\NisSrv.exe [3121120 2023-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23100.2009-0\MsMpEng.exe [133704 2023-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WiseBootAssistant; C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe [658600 2017-07-06] (Lespeed Technology Ltd. -> WiseCleaner.com)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [25584 2023-06-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_54807f69fe156f14\amdsafd.sys [113088 2023-04-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0397033.inf_amd64_bf2b1fc18ba7195d\B396953\amdkmdag.sys [106378272 2023-10-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 aswTap; C:\WINDOWS\system32\DRIVERS\aswTap.sys [53904 2018-02-13] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2023-12-05] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2023-11-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2023-11-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2018-02-11] (Red Fox UK Limited -> Highresolution Enterprises [
www.highrez.co.uk])
S3 kltap; C:\WINDOWS\system32\DRIVERS\kltap.sys [52152 2016-06-07] (AnchorFree Inc -> The OpenVPN Project)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-09-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-09-28] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2016-12-21] (Apple, Inc.) [File not signed]
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [55744 2023-11-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [578856 2023-11-28] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
S4 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105768 2023-11-28] (Microsoft Windows -> Microsoft Corporation)
S3 WiseHDInfo; C:\Windows\WiseHDInfo64.dll [33864 2018-02-13] (Beijing Lang Xingda Network Technology Co., Ltd -> wisecleaner.com)
S3 WiseRegNotify; C:\Windows\WiseRegNotify.sys [51272 2018-02-12] (Beijing Lang Xingda Network Technology Co., Ltd -> WiseCleaner.com)
S3 WiseUnlock; C:\Windows\WiseUnlock64.sys [33864 2018-02-13] (Beijing Lang Xingda Network Technology Co., Ltd -> WiseCleaner.com)
S1 amsdk; \??\C:\WINDOWS\system32\drivers\amsdk.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-12-19 20:41 - 2023-12-19 20:41 - 000021375 _____ C:\Users\Roman\Desktop\FRST.txt
2023-12-19 20:40 - 2023-12-19 20:41 - 000000000 ____D C:\FRST
2023-12-19 20:40 - 2023-12-19 20:40 - 002387456 _____ (Farbar) C:\Users\Roman\Desktop\FRST64 (1).exe
2023-12-19 20:40 - 2023-12-19 20:40 - 000000000 ____D C:\Users\Roman\Desktop\FRST-OlderVersion
2023-12-19 20:30 - 2023-12-19 20:30 - 000547892 _____ (glax24 (safezone.cc)) C:\Users\Roman\Downloads\SecurityCheck (1).exe
2023-12-19 20:28 - 2023-12-19 20:30 - 000000000 ____D C:\SecurityCheck
2023-12-19 20:28 - 2023-12-19 20:28 - 000547892 _____ (glax24 (safezone.cc)) C:\Users\Roman\Downloads\SecurityCheck.exe
2023-12-19 20:28 - 2023-12-19 20:28 - 000518860 _____ (glax24 (safezone.cc)) C:\Users\Roman\Desktop\SecurityCheck (1).exe
2023-12-19 19:53 - 2023-12-19 19:53 - 000001852 _____ C:\Users\Roman\Desktop\SecurityCheck.exe
2023-12-19 17:48 - 2023-12-19 17:48 - 000226168 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2023-12-19 17:48 - 2023-12-19 17:48 - 000214392 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2023-12-19 17:01 - 2023-12-19 17:01 - 000000000 ___SD C:\WINDOWS\system32\containers
2023-12-19 17:01 - 2023-12-19 17:01 - 000000000 ____D C:\WINDOWS\system32\HvsiSettingsProviders
2023-12-19 16:54 - 2023-12-19 16:57 - 000060562 _____ C:\WINDOWS\ZAM.krnl.trace
2023-12-19 16:28 - 2023-12-19 16:28 - 000000646 _____ C:\DelFix.txt
2023-12-19 16:16 - 2023-12-19 19:01 - 000001134 _____ C:\WINDOWS\system32\config\VSMIDK
2023-12-19 10:58 - 2023-12-19 10:58 - 000000000 ____D C:\Users\Roman\AppData\Local\OneDrive
2023-12-19 07:22 - 2023-12-19 07:22 - 000000000 ____D C:\Users\Roman\AppData\Local\cache
2023-12-19 06:36 - 2023-12-19 06:36 - 005114192 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-12-19 06:31 - 2023-12-19 06:31 - 000000000 ____D C:\ProgramData\Piriform
2023-12-19 06:06 - 2023-12-19 06:06 - 000000008 __RSH C:\ProgramData\ntuser.pol
2023-12-19 06:05 - 2014-02-13 23:59 - 000024064 _____ C:\WINDOWS\zoek-delete.exe
2023-12-18 07:08 - 2023-12-18 07:08 - 000000000 ____D C:\Users\Roman\AppData\Roaming\FLT
2023-12-18 07:07 - 2023-12-19 08:16 - 000000994 _____ C:\Users\Roman\Desktop\Crysis 3 Remastered.lnk
2023-12-18 06:22 - 2023-12-18 06:22 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2023-12-18 06:04 - 2023-12-18 06:04 - 000000925 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Temp File Cleaner.lnk
2023-12-18 06:04 - 2023-12-18 06:04 - 000000000 ____D C:\Users\Roman\AppData\Roaming\addpcs
2023-12-18 06:04 - 2023-12-18 06:04 - 000000000 ____D C:\Program Files\Temp File Cleaner
2023-12-18 05:48 - 2023-12-18 05:48 - 000000000 ____D C:\Users\Roman\AppData\LocalLow\AMD
2023-12-17 20:11 - 2023-12-17 20:11 - 000000000 ____D C:\ProgramData\AMD
2023-12-17 20:07 - 2023-08-29 16:37 - 000721344 _____ C:\WINDOWS\system32\hiprt0200064.dll
2023-12-17 20:07 - 2023-08-29 15:42 - 031938072 _____ C:\WINDOWS\system32\hiprt02000_amd.hipfb
2023-12-17 20:07 - 2023-08-29 15:42 - 023302232 _____ C:\WINDOWS\system32\hiprt02000_nv.fatbin
2023-12-17 20:07 - 2023-08-29 15:42 - 002433848 _____ C:\WINDOWS\system32\oro_compiled_kernels.hipfb
2023-12-17 20:07 - 2023-08-29 15:42 - 002000584 _____ C:\WINDOWS\system32\oro_compiled_kernels.fatbin
2023-12-17 19:39 - 2023-12-17 19:39 - 000000000 ___HD C:\$SysReset
2023-12-17 17:35 - 2023-12-19 19:01 - 000008192 ___SH C:\DumpStack.log.tmp
2023-12-17 17:35 - 2023-12-17 18:47 - 000000000 ____D C:\WINDOWS\Minidump
2023-12-17 16:46 - 2023-12-17 16:46 - 000000000 ____D C:\Users\Roman\AppData\Local\OneBrowser
2023-12-17 16:39 - 2023-12-17 16:39 - 000000000 ___HD C:\$AV_AVG
2023-12-17 16:38 - 2023-12-17 16:38 - 000314304 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
2023-12-17 16:37 - 2023-12-17 16:45 - 000000000 ____D C:\ProgramData\AVG
2023-12-17 16:37 - 2023-12-17 16:39 - 000000000 ____D C:\Program Files (x86)\progIqUE
2023-12-17 16:37 - 2023-12-17 16:37 - 000000000 ____D C:\Users\Roman\AppData\Local\Gh
2023-12-17 16:35 - 2023-12-17 16:35 - 000002322 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneBrowser.lnk
2023-12-17 16:35 - 2023-12-17 16:35 - 000001090 _____ C:\Users\Roman\Downloads\install.exe.lnk
2023-12-17 16:35 - 2023-12-17 16:35 - 000000000 ____D C:\Program Files (x86)\OneBrowser
2023-12-17 09:21 - 2023-12-17 09:21 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3164086441-1288322857-271608641-1001
2023-12-17 09:21 - 2023-12-17 09:21 - 000002377 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-12-16 15:50 - 2023-12-16 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monkey's Audio
2023-12-16 15:50 - 2023-12-16 15:50 - 000000000 ____D C:\Program Files (x86)\Monkey's Audio
2023-12-16 15:50 - 2015-03-24 20:55 - 000445952 _____ (Matthew T. Ashland) C:\WINDOWS\SysWOW64\MACDll.dll
2023-12-15 05:50 - 2023-12-16 12:46 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-12-15 05:50 - 2023-12-15 05:50 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-12-15 05:50 - 2023-12-15 05:50 - 000003380 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-12-14 15:18 - 2023-12-14 15:18 - 000003938 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1516182081
2023-12-14 15:18 - 2023-12-14 15:18 - 000001113 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2023-12-14 14:35 - 2023-12-14 14:35 - 000000000 ____D C:\WINDOWS\InboxApps
2023-12-13 15:36 - 2023-12-13 15:36 - 000016707 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2023-12-13 15:28 - 2023-12-13 15:28 - 000000000 ___HD C:\$WinREAgent
2023-12-06 16:06 - 2023-10-26 16:42 - 000846880 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2023-12-06 16:06 - 2023-10-26 16:42 - 000846880 _____ C:\WINDOWS\system32\vulkaninfo.exe
2023-12-06 16:06 - 2023-10-26 16:42 - 000727584 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-12-06 16:06 - 2023-10-26 16:42 - 000727584 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2023-12-06 16:06 - 2023-10-26 16:42 - 000672192 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000672192 _____ C:\WINDOWS\system32\vulkan-1.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000657792 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000657792 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000597936 _____ C:\WINDOWS\system32\GameManager64.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000539064 _____ C:\WINDOWS\system32\libsmi_guest.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000514480 _____ C:\WINDOWS\system32\libsmi_host.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000494008 _____ C:\WINDOWS\system32\EEURestart.exe
2023-12-06 16:06 - 2023-10-26 16:42 - 000452536 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000197560 _____ C:\WINDOWS\system32\mantle64.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000176560 _____ C:\WINDOWS\system32\mantleaxl64.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000174624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000155680 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000139296 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2023-12-06 16:06 - 2023-10-26 16:42 - 000138784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 011747104 _____ C:\WINDOWS\system32\amdsmi.exe
2023-12-06 16:06 - 2023-10-26 16:41 - 002235424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 002089912 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 001607600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 001607600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 001328672 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 001049632 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000965664 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2023-12-06 16:06 - 2023-10-26 16:41 - 000933920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000761376 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000527392 _____ C:\WINDOWS\system32\atieah64.exe
2023-12-06 16:06 - 2023-10-26 16:41 - 000463392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000396320 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2023-12-06 16:06 - 2023-10-26 16:41 - 000256952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000219168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000200936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000186400 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000164960 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000132528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000129056 _____ C:\WINDOWS\system32\amdxc64.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000108464 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000104888 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2023-12-06 16:06 - 2023-10-26 16:41 - 000064944 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 105391032 _____ C:\WINDOWS\system32\amd_comgr.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 088596400 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 019424288 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 004375072 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 004180000 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 001701144 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 001378456 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000791584 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000668704 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000560160 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000532912 _____ C:\WINDOWS\system32\dgtrayicon.exe
2023-12-06 16:06 - 2023-10-26 16:40 - 000514992 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000461240 _____ C:\WINDOWS\system32\amdlogum.exe
2023-12-06 16:06 - 2023-10-26 16:40 - 000423856 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000380848 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000328040 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdfendr.stz
2023-12-06 16:06 - 2023-10-26 16:40 - 000222688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000177856 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000166832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000155968 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000146064 _____ C:\WINDOWS\system32\atidxx64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000135608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000127328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000119984 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000093104 _____ C:\WINDOWS\system32\clinfo.exe
2023-12-06 16:06 - 2023-10-26 16:40 - 000046440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdfendrmgr.stz
2023-12-06 16:06 - 2023-10-26 16:40 - 000041504 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2023-12-06 16:06 - 2023-10-26 16:40 - 000038432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2023-12-06 16:06 - 2023-10-26 16:39 - 000557448 _____ C:\WINDOWS\system32\amdmiracast.dll
2023-12-06 16:06 - 2023-10-26 16:39 - 000166328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2023-12-06 16:06 - 2023-10-26 16:39 - 000155968 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2023-12-06 16:06 - 2023-10-26 16:39 - 000141272 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2023-12-06 16:06 - 2023-10-26 16:39 - 000127440 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2023-12-06 16:06 - 2023-10-26 15:53 - 109628272 _____ C:\WINDOWS\system32\amdxc64.so
2023-12-06 05:55 - 2023-12-06 05:56 - 654624176 _____ (Advanced Micro Devices, Inc.) C:\Users\Roman\Desktop\whql-amd-software-adrenalin-edition-23.11.1-win10-win11-nov3-vega-polaris.exe