Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-09-2024
Ran by user (20-10-2024 11:08:41)
Running from C:\Users\www\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.4894 (X64) (2022-04-20 13:34:15)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

admin (S-1-5-21-2069861480-1445196129-2239134032-1003 - Administrator - Enabled) => C:\Users\admin
Administrator (S-1-5-21-2069861480-1445196129-2239134032-500 - Administrator - Disabled)
android (S-1-5-21-2069861480-1445196129-2239134032-1002 - Limited - Enabled)
DefaultAccount (S-1-5-21-2069861480-1445196129-2239134032-503 - Limited - Disabled)
Guest (S-1-5-21-2069861480-1445196129-2239134032-501 - Limited - Disabled)
user (S-1-5-21-2069861480-1445196129-2239134032-1001 - Administrator - Enabled) => C:\Users\www
WDAGUtilityAccount (S-1-5-21-2069861480-1445196129-2239134032-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: COMODO Firewall (Enabled) {3D87FB90-B561-70B4-3B0B-BCEFE7656ABC}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DMark (HKLM\...\{79C6B345-0AD4-49F8-8E8B-E83AE61A6486}) (Version: 2.27.8177.0 - UL) Hidden
3DMark (HKLM-x32\...\{be89728b-cbfb-4ee0-a2ff-cbbe79d90c4d}) (Version: 2.25.8043.0 - UL)
7-Zip 24.08 (x64) (HKLM\...\7-Zip) (Version: 24.08 - Igor Pavlov)
Adobe Acrobat 2017 (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E1108756300}) (Version: 17.012.30262 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.5.1.3 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601091}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Aliens: Dark Descent (HKLM-x32\...\Aliens: Dark Descent_is1) (Version:  - )
ATLAS.ti 24 (HKLM\...\{B6A1A374-2EFF-49DE-B282-12E347D69601}) (Version: 24.2.0.32043 - Scientific Software Development GmbH) Hidden
ATLAS.ti 24 (HKLM-x32\...\{62931c1a-347b-4f4c-9182-e7d7fbc6c08b}) (Version: 24.2.0.32043 - Scientific Software Development GmbH)
Audacity 3.6.4 (HKLM\...\Audacity_is1) (Version: 3.6.4 - Audacity Team)
AutoHotkey (HKLM\...\AutoHotkey) (Version: 2.0.4 - AutoHotkey Foundation LLC)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 24.10.6133 - Avast Software)
Avidemux VC++ 64bits (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{05405be8-9410-4058-9bfc-71e1f87f7065}) (Version: 2.8.1 - Mean)
Backblaze (HKLM-x32\...\Backblaze) (Version:  - Backblaze, Inc)
Beacon Pines (HKLM-x32\...\1787971761_is1) (Version: 1.0.5 - GOG.com)
Black Book - Endless Battles (HKLM-x32\...\1800288290_is1) (Version: 1.0.36 - GOG.com)
Black Book (HKLM-x32\...\2098791460_is1) (Version: 1.0.36 - GOG.com)
calibre 64bit (HKLM\...\{299468B2-05A9-47DE-848D-26C92333958F}) (Version: 7.19.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 6.29 - Piriform)
Classic Menu for Office v9.25 (HKLM\...\{9A7CEBDF-37E2-4B63-A384-2A9FD5CE0A80}_is1) (Version: 9.25 - Addintools)
CodeTwo QR Code Desktop Reader & Generator (HKLM-x32\...\{AF7E31D6-980C-4788-B80C-47F1837CF44C}) (Version: 1.1.2.4 - CodeTwo)
COMODO Firewall (HKLM\...\{529CC629-B436-4886-B322-4BE75B97783D}) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.) Hidden
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.)
CrystalDiskInfo 9.2.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.2.2 - Crystal Dew World)
Cyberpunk 2077 (HKLM-x32\...\Cyberpunk 2077_is1) (Version:  - )
Detroit: Become Human (HKLM-x32\...\Detroit: Become Human_is1) (Version:  - )
Dicefolk (HKLM-x32\...\Dicefolk_is1) (Version:  - )
Ditto 3.24.214.0 (HKLM\...\Ditto_is1) (Version: 3.24.214.0 - Scott Brogden)
Do Not Feed the Monkeys (HKLM-x32\...\1084764045_is1) (Version: 1.0.6.6 - GOG.com)
Dropbox (HKLM-x32\...\Dropbox) (Version: 211.3.5889 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.913.1 - Dropbox, Inc.) Hidden
Dual Monitor Tools (HKLM-x32\...\{5BFC92E1-36BB-4997-A336-3C76170BB818}) (Version: 2.8.0.0 - GNE)
Everything 1.4.1.1026 (x64) (HKLM\...\Everything) (Version: 1.4.1.1026 - voidtools)
f.lux (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Flux) (Version: 4.134 - f.lux Software LLC)
Ferdium 6.7.7 (HKLM\...\a525f0a2-415e-582b-9d3e-cb67fd71446e) (Version: 6.7.7 - Ferdium Contributors)
FlashFolder (HKLM\...\{92BF7CAE-D925-4868-8875-A154BE3CB26F}) (Version: 1.11.0.0 - zett42)
Futuremark SystemInfo (HKLM-x32\...\{A05A1785-B718-47EF-9EE7-2F82F729D208}) (Version: 5.53.1130.0 - Futuremark)
Gameplay Time Tracker version 3.1 (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Gameplay Time Tracker_is1) (Version: 3.1 - mik61)
Golden Idol Mysteries: The Lemurian Vampire (HKLM-x32\...\1695356779_is1) (Version: 2023.22.08. DLC 2.0.1a - GOG.com)
Golden Idol Mysteries: The Spider of Lanka (HKLM-x32\...\1635977365_is1) (Version: 2023.22.08. DLC 2.0.1a - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 129.0.6668.101 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
Grammarly for Microsoft® Office Suite (HKLM\...\{D55C414A-684A-4B84-A003-C248B40FD7C6}) (Version: 6.8.263 - Grammarly) Hidden
Grammarly for Microsoft® Office Suite (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{54da24a3-a032-400b-8762-669a8bf92df5}) (Version: 6.8.263 - Grammarly)
Grammarly for Windows (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Grammarly Desktop Integrations) (Version: 1.2.107.1495 - Grammarly)
HD Video Converter Factory Pro 26.7 (HKLM-x32\...\HD Video Converter Factory Pro) (Version: 26.7 - WonderFox Soft, Inc.)
HWiNFO® 64 (HKLM\...\HWiNFO® 64_is1) (Version: 8.12 - Martin Malik, REALiX s.r.o.)
IconGroups (HKLM-x32\...\IconGroups) (Version:  - )
Jagged Alliance 3 (HKLM-x32\...\1556263729_is1) (Version: 1.0b - GOG.com)
Java 8 Update 421 (64-bit) (HKLM\...\{77924AE4-039E-4CA4-87B4-2F64180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0.1 - AppWork GmbH)
KeePass Password Safe 2.57.1 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.57.1 - Dominik Reichl)
Kingdom Come: Deliverance (HKLM-x32\...\1719198803_is1) (Version: 1.9.6-404-504czj3 - GOG.com)
Kodi (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Kodi) (Version: 20.3.0.0 - XBMC Foundation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Life is Strange: Complete Season (HKLM-x32\...\1931614212_is1) (Version: 1.0.0.397609 hotfix - GOG.com)
LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: 3.4.3.146 - Crystal Rich Ltd)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Mass Effect 3 (HKLM-x32\...\Mass Effect 3_is1) (Version:  - )
MediaInfo 24.06 (HKLM\...\MediaInfo) (Version: 24.06 - MediaArea.net)
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Metro: Last Light Redux (HKLM-x32\...\1430740172_is1) (Version: 1.03 - GOG.com)
Microsoft .NET Host - 5.0.17 (x64) (HKLM\...\{E663ED1E-899C-40E8-91D0-8D37B95E3C69}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.33 (x64) (HKLM\...\{8584855C-3B2B-4F95-BE1D-CCA5B6DE2815}) (Version: 48.132.18378 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 5.0.17 (x64) (HKLM\...\{8BA25391-0BE6-443A-8EBF-86A29BAFC479}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.33 (x64) (HKLM\...\{62A8E894-9FD1-45A0-A4D0-BD9FA854818D}) (Version: 48.132.18378 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 5.0.17 (x64) (HKLM\...\{5A66E598-37BD-4C8A-A7CB-A71C32ABCD78}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.33 (x64) (HKLM\...\{07BE9B02-0247-471C-B06F-A3B1A8FA9216}) (Version: 48.132.18378 - Microsoft Corporation) Hidden
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.18025.20160 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 130.0.2849.46 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 129.0.2792.89 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.192.0923.0006 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\...\Teams) (Version: 1.5.00.8070 - Microsoft Corporation)
Microsoft Teams classic (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Teams) (Version: 1.6.00.33567 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.25506 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33816 (HKLM-x32\...\{77169412-f642-45e7-b533-0c6f48de12f9}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33816 (HKLM\...\{5904914B-9FC8-44C2-AE48-5C7F30A603EC}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33816 (HKLM\...\{560D2DA4-096E-4868-B22A-DA6418FDE6FB}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 5.0.17 (x64) (HKLM\...\{3C31CBA1-A0D9-4B95-A807-AD2313D12F47}) (Version: 40.68.31219 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 5.0.17 (x64) (HKLM-x32\...\{20d5df4e-006c-4d6d-a0dc-490d009b9786}) (Version: 5.0.17.31219 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.33 (x64) (HKLM\...\{A59F43A6-AADB-42EB-883B-2FE4E3AA3A69}) (Version: 48.132.18374 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.33 (x64) (HKLM-x32\...\{ecb94bc3-963d-412a-b141-8b7c32ef103f}) (Version: 6.0.33.33916 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
MiniTool Partition Wizard Free 12.8 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 12.8 - MiniTool Software Limited)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 131.0.3 (x64 en-US)) (Version: 131.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 131.0.2 - Mozilla)
MPC-BE x64 1.6.6 (HKLM\...\{FE09AF6D-78B2-4093-B012-FCDAF78693CE}_is1) (Version: 1.6.6 - MPC-BE Team)
MSI Afterburner 4.6.5 (HKLM-x32\...\Afterburner) (Version: 4.6.5 - MSI Co., LTD)
NAPS2 6.1.2 (HKLM-x32\...\NAPS2 (Not Another PDF Scanner 2)_is1) (Version:  - Ben Olden-Cooligan)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.7 - Notepad++ Team)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.28.0.417 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.28.0.417 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.0.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 561.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 561.09 - NVIDIA Corporation)
NVIDIA PhysX (Legacy) (HKLM-x32\...\{FAAC26AD-73BA-40CE-86AA-C9213F9E064A}) (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
O&O Defrag Professional (HKLM\...\{C6CD258F-5FAF-4C35-86BD-A74E4374C146}) (Version: 25.6.7601 - O&O Software GmbH)
Observer: System Redux (HKLM-x32\...\1585377690_is1) (Version: 2021.09.16_10.04.08_R24065 - GOG.com)
Obsidian (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\bd400747-f0c1-5638-a859-982036102edf) (Version: 1.6.7 - Obsidian)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18025.20126 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18025.20160 - Microsoft Corporation) Hidden
Old Classic Calculator for Windows 11 and Windows 10 (HKLM\...\Old Classic Calculator for Windows 11 and Windows 10_is1) (Version: 2.0 - Winaero)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Open-Shell (HKLM\...\{FA86549E-94DD-4475-8EDC-504B6882E1F7}) (Version: 4.4.191 - The Open-Shell Team)
OpenShot Video Editor 3.2.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 3.2.1 - OpenShot Studios, LLC)
OXENFREE II: Lost Signals (HKLM-x32\...\OXENFREE II: Lost Signals_is1) (Version:  - )
paint.net (HKLM\...\{A89BF790-0679-403A-9CC7-4015DBF4FEBA}) (Version: 5.0.13 - dotPDN LLC)
pCloud Drive (HKLM\...\{9DF6070C-2DA2-4B30-B567-562129EC4A3F}) (Version: 3.11.17.0 - pCloud AG) Hidden
pCloud Drive (HKLM-x32\...\{6182c2b0-9b44-4fbe-96d6-715b0af4b1dc}) (Version: 3.11.17.0 - pCloud AG)
PDF-XChange Editor (HKLM\...\{E15DCE03-5E6D-4C29-94D3-B5B030172F56}) (Version: 10.4.2.390 - PDF-XChange Co Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{1f8a2272-21f9-461e-bb10-52c019c40c01}) (Version: 10.4.2.390 - PDF-XChange Co Ltd.)
Photolemur 3 (HKLM\...\{22935808-B814-4884-85E7-D8C5CD5C7616}) (Version: 1.1.0.2388 - Skylum) Hidden
Photolemur 3 (HKLM-x32\...\{b136f907-af37-4697-9b5e-442173dd0895}) (Version: 1.1.0.2388 - Skylum)
PhotoPad Image Editor (HKLM-x32\...\PhotoPad) (Version: 13.02 - NCH Software)
PicPick (HKLM-x32\...\PicPick) (Version: 7.2.7 - NGWIN)
Potion Craft: Alchemist Simulator (HKLM-x32\...\1375812220_is1) (Version: 1.0 - GOG.com)
Prey (HKLM-x32\...\1158493447_is1) (Version: 10966486 - GOG.com)
Prey: Mooncrash (HKLM-x32\...\1419994872_is1) (Version: 10966486 - GOG.com)
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.0.0 - The qBittorrent project)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2_is1) (Version: 0.0.0 - DODI-Repacks)
Revo Uninstaller 2.5.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.5.0 - VS Revo Group, Ltd.)
Riffstation (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{bb83b508-25d4-4472-ac05-19d1c04f1c92}) (Version: 1.6.3 - Sonic Ladder Ltd.)
RivaTuner Statistics Server 7.3.4 (HKLM-x32\...\RTSS) (Version: 7.3.4 - Unwinder)
Rocksmith 2014 Remastered (HKLM-x32\...\Rocksmith 2014 Remastered_is1) (Version:  - )
Sekiro: Shadows Die Twice (HKLM-x32\...\Sekiro: Shadows Die Twice_is1) (Version:  - )
Signal 7.29.0 (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 7.29.0 - Signal Messenger, LLC)
Slay the Spire (HKLM-x32\...\1950754973_is1) (Version: 2020-12-15-8735c9fe3cc2280b76aa3ec47c953352a7df1f65 - GOG.com)
SmartGenius (HKLM\...\{F96B1114-82A6-4348-8A84-8FD4E9D99F3B}_is1) (Version: 1.7.0.5 - KYE Systems Corp.)
SteamWorld Heist 2 (HKLM-x32\...\1965670180_is1) (Version: 96643 SteamWorld Heist 2 (Win Release) is_unity fix - GOG.com)
Still Wakes the Deep (HKLM-x32\...\Still Wakes the Deep_is1) (Version:  - )
Sweet Home 3D version 7.0.2 (HKLM\...\Sweet Home 3D_is1) (Version: 7.0.2 - eTeks)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TDPA: House of Ashes (HKLM-x32\...\TDPA: House of Ashes_is1) (Version:  - )
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.5.0.8070 - Microsoft Corporation)
The Case of the Golden Idol (HKLM-x32\...\2094481873_is1) (Version: 2023.22.08. DLC 2.0.1a - GOG.com)
The Forest (HKLM-x32\...\The Forest) (Version:  - )
The Quarry (HKLM-x32\...\The Quarry_is1) (Version:  - )
The Walking Dead - Season 2 (HKLM-x32\...\1432208124_is1) (Version: 2.1.0.3 - GOG.com)
The Witcher 3: Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 4.02_Hotfix - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.01 - Ghisler Software GmbH)
UBitMenuCZ (HKLM-x32\...\{EC5D1433-29AA-45C5-7CBB-48A6B4F787AB}_is1) (Version: 01.0.4 - UBit Schweiz AG)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation)
Vampyr - The Hunters Heirlooms DLC (HKLM-x32\...\1949020249_is1) (Version: 1.1.7 - GOG.com)
Vampyr (HKLM-x32\...\2098644729_is1) (Version: 1.1.7 - GOG.com)
VidCutter (HKLM\...\{CCDC440A-CC57-4BED-8CDE-1DA285976A64}_is1) (Version: 6.0.5.1 - Pete Alexandrou)
ViGEm Bus Driver (HKLM\...\{9C581C76-2D68-40F8-AA6F-94D3C5215C05}) (Version: 1.21.442 - Nefarius Software Solutions e.U.)
Virtual Controller version 1.0.7.2 (HKLM\...\{95eade20-dfac-442c-b723-f7f6cdbc87cd}_is1) (Version: 1.0.7.2 - VIRTUAL)
vJoy Device Driver 2.1.9.1 (HKLM\...\{8E31F76F-74C3-47F1-9550-E041EEDC5FBB}_is1) (Version: 2.1.9.1 - Shaul Eizikovich)
VPN Unlimited 9.1.0 (HKLM-x32\...\{DC24521E-872B-41AF-93EA-FE477902D6FB}_is1) (Version: 9.1.0 - KeepSolid Inc.)
WD Discovery (HKLM-x32\...\WDDiscovery) (Version: 4.6.433 - Western Digital Technologies, Inc.)
WD SES Driver Setup (HKLM-x32\...\{D9ABF771-729C-471F-A6DF-1010527DB376}) (Version: 2.1.0 - Western Digital) Hidden
What Remains of Edith Finch (HKLM-x32\...\1651927092_is1) (Version: 1.0.0.0 - GOG.com)
XMedia Recode 64bit verze 3.6.0.2 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.6.0.2 - XMedia Recode 64bit)
XnView (HKLM-x32\...\XnView_is1) (Version: 2.51.7 - Gougelet Pierre-e)
Zoner Photo Studio 18 (HKLM\...\{C5143891-209D-4D49-9FEA-5F3A6E848DBF}) (Version: 18.0.1.6 - ZONER software, a.s.)
Zoom (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\ZoomUMX) (Version: 5.16.10 (26186) - Zoom Video Communications, Inc.)
Zotero (HKLM\...\Zotero 7.0.7 (x64 en-US)) (Version: 7.0.7 - Corporation for Digital Scholarship)

Chrome apps:
============
Disk Google (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\8de84e0c21ddb286af9511c9711c87e7) (Version: 1.0 - Google\Chrome)
Dokumenty (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\56c71494f7c58eb197820f6ea367dd72) (Version: 1.0 - Google\Chrome)
Gmail (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\d94db03ffd43d378e9c7e135f8da6d7e) (Version: 1.0 - Google\Chrome)
Prezentace (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\0469851e76583428e005000ef7bb93ac) (Version: 1.0 - Google\Chrome)
Tabulky (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\df7ea59b4271e76e2ae8e3a764adc767) (Version: 1.0 - Google\Chrome)
YouTube (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\06b79ef5b2727aaa805c67b8dd4e1f9b) (Version: 1.0 - Google\Chrome)

Packages:
=========

Arc -> C:\Program Files\WindowsApps\TheBrowserCompany.Arc_1.22.2.55438_x64__ttt1ap7aakyb4 [2024-10-15] (The Browser Company of New York)
AV1 Video Extension -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.2.2331.0_x64__8wekyb3d8bbwe [2024-09-05] (Microsoft Corporation)
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2024-10-19] (Dropbox Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-06-03] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-06-03] (Microsoft Corporation) [MS Ad]
Microsoft Teams -> C:\Program Files\WindowsApps\MSTeams_24257.205.3165.2029_x64__8wekyb3d8bbwe [2024-10-12] (Microsoft) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.966.0_x64__56jybvy8sckqj [2024-09-14] (NVIDIA Corp.)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2022-06-22] (Samsung Electronics Co. Ltd.)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0 [2024-10-16] (Spotify AB) [Startup Task]
Vyhledávání na webu z Microsoft Bingu -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.95.0_x64__8wekyb3d8bbwe [2024-07-25] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{04271989-4A69-31F5-953D-FA4FC07E4B40} -> [OneDrive - Univerzita Karlova] => H:\_ONE_DRIVES\OneDrive - Univerzita Karlova [2024-05-08 12:46]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{04271989-C4D2-BA68-8514-65692156B69F} -> [OneDrive - Fakulta humanitních studií] => H:\_ONE_DRIVES\OneDrive - Fakulta humanitních studií [2024-05-08 12:50]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\www\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.24.25506\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{2AD206F1-152C-4F9D-A24E-6F93FE7A4AFC}\InprocServer32 -> C:\Users\www\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.263\BBA1FA34EE\GrammarlyShim64.dll (Grammarly, Inc. -> CompanyName)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{3acddb7c-7daa-0e87-b7f9-e681fc515fb8}\localserver32 -> C:\Apps\OO Defrag\OODTRWND.EXE (O&O Software GmbH -> O&O Software GmbH)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{4BE56754-B616-4998-B825-D16983AEE1B2}\InprocServer32 -> C:\Users\www\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.263\BBA1FA34EE\Grammarly.AddIn.Connect.ActiveX.dll (Grammarly, Inc. -> Grammarly)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{6673A500-E089-414E-8DE7-74C8979FC088} -> [Dropbox] => H:\_ONE_DRIVES\Dropbox [2024-05-08 13:27]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{6f4d811b-050a-062a-8c90-b835ae7ee675}\localserver32 -> C:\Users\www\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{cf92c97c-d71d-1863-d1df-3d81c5b98a3d}\localserver32 -> C:\Apps\YT-DLP\yt-dlp-gui.exe (yt-dlp-gui) [File not signed]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> C:\Users\www\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => H:\_ONE_DRIVES\Dropbox [2024-05-08 13:27]
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [    pCloudINPROGRESS] -> {D8BFAFBD-B670-4252-9C17-9CF1C64C2BAF} => C:\Apps\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudINSYNC] -> {8D0C0582-552A-4A6B-9455-DA63E1F329C0} => C:\Apps\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudNOSYNC] -> {3858ED1B-8F1C-42ED-A8A9-FDBF591E3C6B} => C:\Apps\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2024-09-03] (Avast Software s.r.o. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Open-Shell\ClassicExplorer64.dll [2023-08-16] (Open-Shell) [File not signed]
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2024-09-03] (Avast Software s.r.o. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Open-Shell\ClassicExplorer64.dll [2023-08-16] (Open-Shell) [File not signed]
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.192.0923.0006\FileSyncShell64.dll [2024-10-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2024-09-03] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [ContextMenuExtension] -> {0ef7a918-328d-36da-a1b2-740c97802be6} => C:\Apps\pCloud Drive\ContextMenuHandler64.dll [2021-02-01] (pCloud AG) [File not signed]
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ContextMenuHandlers1: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Apps\OO Defrag\oodsh.dll [2022-08-18] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ContextMenuHandlers2: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Apps\OO Defrag\oodsh.dll [2022-08-18] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2024-09-03] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.192.0923.0006\FileSyncShell64.dll [2024-10-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ContextMenuExtension] -> {0ef7a918-328d-36da-a1b2-740c97802be6} => C:\Apps\pCloud Drive\ContextMenuHandler64.dll [2021-02-01] (pCloud AG) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2023-06-16] (Mega Limited -> )
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.192.0923.0006\FileSyncShell64.dll [2024-10-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-18] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_dcf94619172aceb0\nvshext.dll [2024-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2024-09-03] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Apps\OO Defrag\oodsh.dll [2022-08-18] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2023-08-16] (Open-Shell) [File not signed]
ContextMenuHandlers1_S-1-5-21-2069861480-1445196129-2239134032-1001: [          kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} =>  -> No File
ContextMenuHandlers4_S-1-5-21-2069861480-1445196129-2239134032-1001: [          kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} =>  -> No File

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SYSTEM32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SYSTEM32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Disk Google.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Dokumenty.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Gmail.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Prezentace.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=kefjledonklijopmnomlcbpllchaibag
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Tabulky.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\www\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\45th AIW, (45th AIW) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) =============

2024-10-14 23:16 - 2024-07-18 16:53 - 000121344 _____ () [File not signed] \\?\C:\Apps\Obsidian\resources\app.asar.unpacked\node_modules\btime\binding.node
2023-07-21 19:44 - 2023-04-19 11:33 - 000641024 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\SmartGenius\resources\app\backend\protocol\platform\win32\Release\x64_driverWin.node
2023-07-21 19:44 - 2023-04-19 11:33 - 000641024 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\SmartGenius\resources\app\backend\protocol\platform\win32\Release\x64_hidWin.node
2023-07-21 19:44 - 2023-04-19 11:33 - 000272384 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\SmartGenius\resources\app\backend\protocol\platform\win32\Release\x64_sysWin.node
2024-10-20 09:31 - 2024-10-20 09:31 - 001851904 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\Temp\3fb2b148-8828-4256-aee4-8852455cf7e0.tmp.node
2022-06-05 00:03 - 2021-09-10 19:34 - 000020992 _____ () [File not signed] C:\Apps\Ditto\ICU_Loader.dll
2023-04-03 00:48 - 2023-04-03 00:48 - 000232960 _____ () [File not signed] C:\Apps\MSI Afterburner\RTCore.dll
2023-04-03 00:48 - 2023-04-03 00:48 - 000059392 _____ () [File not signed] C:\Apps\MSI Afterburner\RTFC.dll
2023-04-03 00:49 - 2023-04-03 00:49 - 000699904 _____ () [File not signed] C:\Apps\MSI Afterburner\RTHAL.dll
2023-04-03 00:48 - 2023-04-03 00:48 - 000074240 _____ () [File not signed] C:\Apps\MSI Afterburner\RTMUI.dll
2023-04-03 00:48 - 2023-04-03 00:48 - 000371712 _____ () [File not signed] C:\Apps\MSI Afterburner\RTUI.dll
2022-06-05 00:18 - 2016-09-19 12:09 - 000813056 _____ () [File not signed] C:\Apps\Networx\sqlite.dll
2022-11-08 14:47 - 2022-11-08 14:47 - 002328064 _____ () [File not signed] C:\Apps\pCloud Drive\pSyncLib.dll
2023-03-14 17:57 - 2023-03-14 17:57 - 000058368 _____ () [File not signed] C:\Apps\RivaTuner Statistics Server\RTFC.dll
2023-03-14 17:57 - 2023-03-14 17:57 - 000074240 _____ () [File not signed] C:\Apps\RivaTuner Statistics Server\RTMUI.dll
2023-03-14 17:57 - 2023-03-14 17:57 - 000368640 _____ () [File not signed] C:\Apps\RivaTuner Statistics Server\RTUI.dll
2024-03-29 14:16 - 2024-03-29 14:16 - 001987072 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\ffmpeg.dll
2024-03-29 14:16 - 2024-03-29 14:16 - 000117248 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\swiftshader\libegl.dll
2024-03-29 14:16 - 2024-03-29 14:16 - 002250240 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\swiftshader\libglesv2.dll
2024-09-23 16:06 - 2024-09-22 06:21 - 002923520 _____ () [File not signed] C:\Program Files\Ferdium\ffmpeg.dll
2024-09-23 16:06 - 2024-09-22 06:21 - 000484352 _____ () [File not signed] C:\Program Files\Ferdium\libegl.dll
2024-09-23 16:06 - 2024-09-22 06:21 - 008363520 _____ () [File not signed] C:\Program Files\Ferdium\libglesv2.dll
2024-09-23 16:06 - 2024-09-22 06:21 - 005447168 _____ () [File not signed] C:\Program Files\Ferdium\vk_swiftshader.dll
2023-07-21 19:44 - 2018-12-20 14:15 - 002126848 _____ () [File not signed] C:\Users\www\AppData\Local\SmartGenius\ffmpeg.dll
2023-07-21 19:44 - 2018-12-20 14:14 - 000109056 _____ () [File not signed] C:\Users\www\AppData\Local\SmartGenius\libegl.dll
2023-07-21 19:44 - 2018-12-20 14:14 - 005103616 _____ () [File not signed] C:\Users\www\AppData\Local\SmartGenius\libglesv2.dll
2022-06-05 00:03 - 2021-09-10 19:34 - 000051200 _____ (Ditto Utility Addin) [File not signed] C:\Apps\Ditto\Addins\DittoUtil.dll
2017-02-15 08:57 - 2017-02-15 08:57 - 000975360 _____ (Firebird Project) [File not signed] C:\Apps\Essential PIM\gds32.dll
2014-12-04 07:18 - 2014-12-04 07:18 - 000420864 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icudt30.dll
2014-12-04 07:18 - 2014-12-04 07:18 - 000323584 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icuuc30.dll
2024-09-16 01:47 - 2024-09-16 01:47 - 001654784 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\MFC80U.DLL
2022-06-19 15:09 - 2022-06-19 15:09 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2022-06-19 15:09 - 2022-06-19 15:09 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
2019-04-08 15:31 - 2019-04-08 15:31 - 000082944 _____ (Open Source Software community LGPL) [File not signed] C:\Apps\pCloud Drive\pthreadVC2.dll
2023-08-16 13:46 - 2023-08-16 13:46 - 000987648 _____ (Open-Shell) [File not signed] C:\Program Files\Open-Shell\ClassicExplorer64.dll
2023-08-16 13:46 - 2023-08-16 13:46 - 002867200 _____ (Open-Shell) [File not signed] C:\Program Files\Open-Shell\StartMenuDLL.dll
2022-06-19 15:18 - 2018-03-02 07:51 - 001149440 _____ (Robert Simpson, et al.) [File not signed] C:\Apps\Gameplay Time Tracker\x86\SQLite.Interop.dll
2022-06-03 23:13 - 2021-07-22 14:11 - 000076288 _____ (The c-ares library, hxxps://c-ares.haxx.se/) [File not signed] C:\Apps\VPN Unlimited\cares.dll
2022-06-03 23:13 - 2023-07-04 10:25 - 000498688 _____ (The curl library, hxxps://curl.se/) [File not signed] C:\Apps\VPN Unlimited\libcurl.dll
2020-09-10 10:11 - 2020-09-10 10:11 - 000268288 _____ (The FreeType Project) [File not signed] C:\Apps\Essential PIM\wp_type1ttf.dll
2020-03-19 10:32 - 2020-03-19 10:32 - 000601088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\Essential PIM\libeay32.dll
2020-03-19 10:32 - 2020-03-19 10:32 - 000159744 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\Essential PIM\ssleay32.dll
2023-12-16 18:16 - 2023-07-19 10:19 - 005149696 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libcrypto-3-x64.dll
2023-12-16 18:16 - 2023-07-19 10:19 - 000777728 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libssl-3-x64.dll
2022-06-03 23:13 - 2023-10-22 09:00 - 006066176 _____ (The Qt Company Ltd.) [File not signed] C:\Apps\VPN Unlimited\Qt5Core.dll
2017-10-23 18:28 - 2017-10-23 18:28 - 000342016 _____ (TODO: <Company name>) [File not signed] C:\Apps\pCloud Drive\OverlayIcon64.dll
2020-09-10 10:11 - 2020-09-10 10:11 - 000116736 _____ (WPCubed GmbH) [File not signed] C:\Apps\Essential PIM\wpdecodejp.DLL
2020-09-10 10:11 - 2020-09-10 10:11 - 001264128 _____ (WPCubed GmbH) [File not signed] C:\Apps\Essential PIM\wPDFView04.dll
2012-07-21 21:55 - 2012-08-31 22:57 - 000629248 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439.dll
2012-07-21 22:05 - 2012-08-31 22:46 - 003306496 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439_64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:728B799F [422]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Open-Shell\ClassicExplorer64.dll [2023-08-16] (Open-Shell) [File not signed]
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Open-Shell\ClassicIEDLL_64.dll [2023-08-16] (Open-Shell) [File not signed]
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Open-Shell\ClassicExplorer32.dll [2023-08-16] (Open-Shell) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Open-Shell\ClassicIEDLL_32.dll [2023-08-16] (Open-Shell) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Open-Shell\ClassicExplorer64.dll [2023-08-16] (Open-Shell) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Open-Shell\ClassicExplorer32.dll [2023-08-16] (Open-Shell) [File not signed]
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-10-01] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\sharepoint.com -> hxxps://cunicz-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2024-10-06 19:41 - 000004136 _____ C:\Windows\system32\drivers\etc\hosts
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.org          # Fake FitGirl site
109.94.209.70      fitgirlrepacks.in               # Fake FitGirl site
109.94.209.70      www.fitgirlrepacks.in           # Fake FitGirl site
109.94.209.70      fitgirlrepacks.co               # Fake FitGirl site
109.94.209.70      fitgirl-repacks.cc              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.to              # Fake FitGirl site
109.94.209.70      fitgirl-repack.com              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.website         # Fake FitGirl site
109.94.209.70      www.fitgirlrepacks.co           # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.cc          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.to          # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.com          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.website     # Fake FitGirl site
109.94.209.70      ww9.fitgirl-repacks.xyz         # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      fitgirl-repacks.xyz             # Fake FitGirl site
109.94.209.70      fitgirl-repack.net              # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.net          # Fake FitGirl site
109.94.209.70      fitgirlpack.site                # Fake FitGirl site
109.94.209.70      www.fitgirlpack.site            # Fake FitGirl site
109.94.209.70      fitgirl-repack.org              # Fake FitGirl site
109.94.209.70      fitgirlrepacks.pro              # Fake FitGirl site
109.94.209.70      www.fitgirlrepacks.pro          # Fake FitGirl site
109.94.209.70      fitgirlrepack.games             # Fake FitGirl site
109.94.209.70      www.fitgirlrepack.games         # Fake FitGirl site

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SYSTEMROOT%\SYSTEM32;%SYSTEMROOT%;%SYSTEMROOT%\SYSTEM32\WBEM;%SYSTEMROOT%\SYSTEM32\WINDOWSPOWERSHELL\V1.0\;%SYSTEMROOT%\SYSTEM32\OPENSSH\;;;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files\dotnet\;C:\Program Files\Calibre2\
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\Control Panel\Desktop\\Wallpaper -> C:\Apps\_WP\Krivoklat_okno_75A.jpg
HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.

Network Binding:
=============
Připojení k místní síti: TAP-Windows Adapter V9 -> tap0901.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Killer E2400 Gigabit Ethernet Controller -> e2xw10x64.sys

inspect: COMODO Internet Security Firewall Driver

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "O&O Defrag Tray.lnk"
HKLM\...\StartupApproved\Run: => "KeePass 2 PreLoad"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "OODefragTray"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{7F8B8437-FDB6-4E5B-9D1E-A5BD996E72EC}] => (Allow) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{9D5F3516-BFBD-471C-A2D3-6E24E77DAB0D}] => (Allow) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [TCP Query User{CF4670B7-5C49-45B0-BAEB-BAE1B2A6C5D9}C:\apps\ditto\ditto.exe] => (Allow) C:\apps\ditto\ditto.exe () [File not signed]
FirewallRules: [UDP Query User{F4A3045B-7A78-4648-920E-619F79D06EDB}C:\apps\ditto\ditto.exe] => (Allow) C:\apps\ditto\ditto.exe () [File not signed]
FirewallRules: [{0234B3A2-3E96-4061-A89F-E3451D8617FD}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{282AB00F-15BD-413E-8524-89B333229B5E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{8BA9EB50-A349-4443-92F4-18DCB92E6C83}C:\apps\ditto\ditto.exe] => (Allow) C:\apps\ditto\ditto.exe () [File not signed]
FirewallRules: [UDP Query User{AF0B6544-93C3-4539-AFC7-8A3C1CCC405A}C:\apps\ditto\ditto.exe] => (Allow) C:\apps\ditto\ditto.exe () [File not signed]
FirewallRules: [TCP Query User{3758C29E-71B2-4281-AD87-FD839526F3F2}C:\apps\essential pim\essentialpim.exe] => (Allow) C:\apps\essential pim\essentialpim.exe (ASTONSOFT OU -> Astonsoft)
FirewallRules: [UDP Query User{892323C7-C8EF-4DE2-A092-174AA46CC01F}C:\apps\essential pim\essentialpim.exe] => (Allow) C:\apps\essential pim\essentialpim.exe (ASTONSOFT OU -> Astonsoft)
FirewallRules: [TCP Query User{AF3F36DB-6D32-4503-AD15-E4D11F3AB7E0}C:\users\www\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\www\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{6AB0EB73-7264-40FF-BD28-41C24E9EDB51}C:\users\www\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\www\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{13BB18B7-98E0-496F-B2A8-AB4C82B84AA6}] => (Allow) C:\Apps\pCloud Drive\pCloud.exe (pCloud AG -> pCloud AG)
FirewallRules: [{FB0DA207-E479-4D09-BF29-6F819CCD6F85}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{03E676D3-8925-48A1-9D68-65752FE32B6A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7ABC3E7F-94D3-490B-8645-17026413603D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{64423F31-7FA3-42C5-8218-1A65845FA2BC}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{6CDAA726-CBC8-4247-BB28-C2750788725D}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{4CEC2A5D-E2E8-4FA7-BE31-AE7118038ADF}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{C657024D-A6A9-415D-8A4E-BCEABF66C821}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D98708B7-F57C-43E6-91B4-A9152BF79103}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{90A31051-FE06-4A84-A410-07F68CAB9E49}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{8D69C858-98C1-47DB-8CA2-1A8000BCDB52}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{A4FA2FD6-393A-44F7-92C9-B6FF8ABD630B}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{4B274D39-FD06-4A0A-BA6E-26CDADD39E8B}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{BA6D9136-1EAC-43F2-9B52-DA831FB8A3E8}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{C125EE47-A878-46B1-98AE-4C7000A3EB2A}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{B3685327-9139-4DF0-ABDB-F9EEE61C914B}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{3F2AB135-3CFC-43C2-885D-3955F7283FF4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4E6F9800-3191-4E9C-9017-47F06FCE8F09}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E351D9D2-C140-4250-B981-CF29A9B6744D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{10AB53F9-E7D4-44DF-A2D7-50A96957D4DA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9A3C605A-E943-42AF-8848-7A87A88DDB9B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CCC5DC20-E4F5-4BC2-92AB-1C5672636D64}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{79881FC6-C3B7-45BF-BBBC-5B6A79CA8752}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0D45FA90-6125-4F09-8F72-F106F77D280E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4AF6BD34-64E7-4E79-8E77-BD7E4BB182C3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2FC8B284-472A-4F5E-A2A8-BAA70DAAA3EF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7F792CD2-F865-415A-BA43-DFF49F551419}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8D5D4BBF-1F66-42E6-A778-A9769AF597CF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{EC32D4D0-1E61-4A86-A828-1A5EAA3CFB04}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{809F7790-7615-4184-ADA0-E058AC48EF5C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6E933837-8842-4B4A-AC1D-7CF5B456A995}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6FDD2DA0-5246-4FC0-ABC2-C4CAA2326B0E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AAEB80B9-FB67-4786-B0F0-AE9A87638376}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.242.290.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{95305DBF-7EC4-4FB4-BF9E-8713ADB0CAE0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C48B6791-45AC-4A1D-BA70-A6CC1479C9CF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4974DE55-E9B3-4491-B796-B9EE26927FEA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6516344B-2ED7-414B-9FAE-7FE490DCE3A0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E69AED0D-EA78-4A9E-9E78-31CF6C253F66}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{379EF750-12BA-47AF-9EE5-B35B2BCCA6D8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{601D0D8A-EE4D-4853-AABD-2C3948F933C6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C5A76172-5899-4F6D-BCE3-120DD01C2B7F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C14151D4-D0BA-4A47-922D-FE74593AF858}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5F69A5C6-E13A-408F-A645-089847B51A71}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.245.454.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DBF8326E-BC5B-46A4-9F4E-669B30E24238}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24243.1309.3132.617_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7832E229-161A-4B48-ACA7-B70F180820C1}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24243.1309.3132.617_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{81891A04-4758-4896-BE44-EFA1B50E2F1F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{FC33D1CB-4DDD-4E44-9F1C-5D817C1EA993}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{05FF0A6B-18FD-478C-B2A9-98FAC71440D4}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{AF69548C-4B77-4D06-8EF2-5156C39C161F}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24257.205.3165.2029_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{09D56BF2-03C4-4482-813A-30D69711DC1D}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24257.205.3165.2029_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6CB8B1AC-836E-4242-97E5-4E0090E0FFF5}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\129.0.2792.89\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6A75243D-0AB6-433E-BE1A-A3C1E48C584F}] => (Allow) C:\Program Files\WindowsApps\TheBrowserCompany.Arc_1.22.2.55438_x64__ttt1ap7aakyb4\Arc.exe (THE BROWSER COMPANY OF NEW YORK INC. -> )
FirewallRules: [{2B1C83BD-3D26-4223-8EB6-AB856F0F7477}] => (Allow) C:\Program Files\WindowsApps\TheBrowserCompany.Arc_1.22.2.55438_x64__ttt1ap7aakyb4\Arc.exe (THE BROWSER COMPANY OF NEW YORK INC. -> )
FirewallRules: [{B9D92E31-4264-47A1-8772-727F70CFD27F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C8591292-9BF8-4DC0-B7CD-58286C0D4EC8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{44173161-1E98-42B1-877A-5809342DC390}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{32E41240-AA57-4423-A8DA-188869EF4893}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C552A0BB-2FE8-4A98-AD0E-75CEA2F80121}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B998FE4-6750-4EC6-950B-7173BE9E5558}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B6A02E73-96E5-43C3-BB6A-41698D95EEE8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4F5197BF-3D01-4033-AD39-FC5DE18FB95A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{23E4CF51-02B6-4E17-9B86-34EF55BD4BC3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2A192DA1-3CDD-4FCC-91A6-7E5E1D43226E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.248.405.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{66F27C43-7361-4EC6-A1EC-A4397F8EF182}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.130.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DD3BF381-22D9-4817-99E9-D328E6A0B6EE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.130.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3E204FB7-C417-431A-987E-501C3D3CC684}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.130.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2D8F3C95-1ED6-4FC3-9195-11BF728A4F2F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.130.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{158040AD-8677-4D2F-8C4A-C41C6C2841D2}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{8E586903-8174-4888-8273-05366CF27B00}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)

==================== Restore Points =========================

20-10-2024 10:59:10 Revo Uninstaller's restore point - Until Dawn

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/20/2024 10:59:06 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen..To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
   Shromažďování dat modulu pro zápis

Kontext:
   ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
   Název modulu pro zápis: System Writer
   ID instance modulu pro zápis: {98116ec2-8846-42b2-918e-db31d72ef63f}

Error: (10/20/2024 09:32:04 AM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Objekt nebo vlastnost nebyly nalezeny.

Error: (10/20/2024 09:32:04 AM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Objekt nebo vlastnost nebyly nalezeny.

Error: (10/20/2024 09:32:04 AM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.

Error: (10/20/2024 09:32:04 AM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Objekt nebo vlastnost nebyly nalezeny.

Error: (10/20/2024 09:31:59 AM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Objekt nebo vlastnost nebyly nalezeny.

Error: (10/20/2024 09:31:38 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-TMT)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (10/19/2024 08:38:40 PM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Objekt nebo vlastnost nebyly nalezeny.


System errors:
=============
Error: (10/20/2024 09:24:00 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error -2147020471. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (10/19/2024 11:51:20 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 11:51:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 11:51:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 11:51:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 11:51:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 11:51:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server {60A90A2F-858D-42AF-8929-82BE9D99E8A1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2024 09:25:51 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TMT)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================
Date: 2022-06-03 21:41:14
Description: 
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {C97EB1AA-441A-4629-81AE-ECA1BB058CFD}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
﻿Event[0]:

Date: 2022-06-03 22:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru. 

Date: 2022-06-03 22:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru. 

Date: 2022-06-03 22:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru. 

Date: 2022-06-03 22:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru. 

Date: 2022-06-03 22:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru. 

CodeIntegrity:
===============
Date: 2024-10-20 11:09:47
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume14\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. A.D0 07/04/2018
Motherboard: MSI Z170A GAMING M3 (MS-7978)
Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 43%
Total physical RAM: 32731.46 MB
Available physical RAM: 18575.94 MB
Total Virtual: 37595.46 MB
Available Virtual: 16446.73 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.26 GB) (Free:2.23 GB) (Model: WDS250G2X0C-00L350) NTFS
Drive e: (SG1_DROPBOX) (Fixed) (Total:62.49 GB) (Free:0.75 GB) (Model: ST1000DM003-1CH162) NTFS
Drive f: (Games SSD) (Fixed) (Total:894.25 GB) (Free:80.14 GB) (Model: Patriot Burst) NTFS
Drive g: (SG4_ANDROID_NEW) (Fixed) (Total:654.02 GB) (Free:10.62 GB) (Model: ST4000DM004-2CV104) NTFS
Drive h: (SG4_AV_NEW) (Fixed) (Total:2048 GB) (Free:21.84 GB) (Model: ST4000DM004-2CV104) NTFS
Drive i: (SG4_WORK_NEW) (Fixed) (Total:1024 GB) (Free:20.49 GB) (Model: ST4000DM004-2CV104) NTFS
Drive k: (WD4_ISO) (Fixed) (Total:2048 GB) (Free:27.23 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive l: (WD4_DOWN) (Fixed) (Total:678.01 GB) (Free:96.25 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive p: (pCloud Drive) (Removable) (Total:7 GB) (Free:6.26 GB) exFAT
Drive q: (WD4_FOTO) (Fixed) (Total:1000 GB) (Free:1.65 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive r: (SG1_OLD_GAMES) (Fixed) (Total:869.02 GB) (Free:59.28 GB) (Model: ST1000DM003-1CH162) NTFS
Drive w: (My Book Duo 4TB) (Fixed) (Total:3725.87 GB) (Free:106.58 GB) (Model: WD My Book Duo 25F6 USB Device) NTFS
Drive y: (My Book) (Fixed) (Total:931.5 GB) (Free:157.62 GB) (Model: WD My Book USB Device) NTFS
Drive z: (My Book 2TB) (Fixed) (Total:1863.01 GB) (Free:32.08 GB) (Model: WD My Book USB Device) NTFS

\\?\Volume{1b3f5fa3-0986-4d93-ab9d-587361b97754}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{729bbd59-8644-4ec8-b8af-70b727807fc9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 894.3 GB) (Disk ID: 09AE835C)
Partition 1: (Not Active) - (Size=894.3 GB) - (Type=0F Extended)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: B8B68DED)
Partition 1: (Active) - (Size=62.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=869 GB) - (Type=0F Extended)

==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 3 (Size: 3726 GB) (Disk ID: 238B9290)

Partition: GPT.

==========================================================
Disk: 4 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 0EA60D4B)

Partition: GPT.

==========================================================
Disk: 5 (Size: 931.5 GB) (Disk ID: ACE7F82E)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 6 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 7 (Size: 1863 GB) (Disk ID: A63672C5)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================