Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-08-2025
Ran by meduz (03-09-2025 08:09:42)
Running from C:\Users\meduz\Downloads
Microsoft Windows 11 Home Version 24H2 26100.5074 (X64) (2025-02-21 11:38:16)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2096350567-2983039283-999813081-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2096350567-2983039283-999813081-503 - Limited - Disabled)
Guest (S-1-5-21-2096350567-2983039283-999813081-501 - Limited - Disabled)
meduz (S-1-5-21-2096350567-2983039283-999813081-1002 - Administrator - Enabled) => C:\Users\meduz
WDAGUtilityAccount (S-1-5-21-2096350567-2983039283-999813081-504 - Limited - Disabled)
WsiAccount (S-1-5-21-2096350567-2983039283-999813081-1003 - Limited - Disabled) => C:\Users\WsiAccount

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {0F59B032-EA77-E3A8-2382-74A4346E5522}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 27.1.1.14 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\Bitdefender) (Version: 27.0.49.250 - Bitdefender)
Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 27.2.3.8 - Bitdefender)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.539.0.6052 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{4683e74f-9db1-4e11-9b39-195cb9cc56f0}) (Version: 13.539.0.6052 - Electronic Arts)
GIMP 3.0.4 (HKU\S-1-5-21-2096350567-2983039283-999813081-1002\...\GIMP-3_is1) (Version: 3.0.4.0 - The GIMP Team)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP One Agent (HKLM\...\{38EBE077-6B9B-4E51-BE50-8F272A7853DB}) (Version: 1.1.912.0346 - HP Inc.)
HP One Agent (HKLM\...\{D18ABC54-8A7A-41A2-A5B9-F7B2AE263195}) (Version: 1.1.912.346 - HP Inc.) Hidden
Malwarebytes version 5.3.6.205 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.3.6.205 - Malwarebytes)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft 365 - en-gb (HKLM\...\O365HomePremRetail - en-gb) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 139.0.3405.125 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 139.0.3405.125 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-2096350567-2983039283-999813081-1002\...\OneDriveSetup.exe) (Version: 25.149.0803.0003 - Microsoft Corporation)
Microsoft OneNote - cs-cz (HKLM\...\OneNoteFreeRetail - cs-cz) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft OneNote - en-gb (HKLM\...\OneNoteFreeRetail - en-gb) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft OneNote - sk-sk (HKLM\...\OneNoteFreeRetail - sk-sk) (Version: 16.0.19029.20208 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34433 (HKLM-x32\...\{804e7d66-ccc2-4c12-84ba-476da31d103d}) (Version: 14.42.34433.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31938 (HKLM-x32\...\{4f84f2dc-3f70-433a-8f50-8293e0089b0f}) (Version: 14.34.31938.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34433 (HKLM\...\{E1902FC6-C423-4719-AB8A-AC7B2694B367}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34433 (HKLM\...\{382F1166-A409-4C5B-9B1E-85ED538B8291}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31938 (HKLM-x32\...\{080D8397-60F4-44B3-BB95-FBB950CB0B4E}) (Version: 14.34.31938 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31938 (HKLM-x32\...\{8DE5B0D4-A6D8-4F72-B8EF-28776A2EE5D5}) (Version: 14.34.31938 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.47.024017 - Electronic Arts Inc.)
The Sims™ 3 Cestovní horečka (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 World Adventures) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Do Budoucnosti (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Into the Future) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Domácí mazlíčci (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Pets) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Luxusní bydlení – Kolekce (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 High-End Loft Stuff) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Obludárium (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Supernatural) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Povolání snů (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Ambitions) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Roční období (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Seasons) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Showtime (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Showtime) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Studentský život (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 University Life) (Version: 1.0.0.0 - Electronic Arts Inc.)
The Sims™ 3 Tropický ráj (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Island Paradise) (Version: 1.0.0.0 - Electronic Arts Inc.)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\windows\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\windows\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\windows\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-07-29] (Advanced Micro Devices Inc.) [Startup Task]
Bitdefender CL Contextual Menu -> C:\Program Files\Bitdefender\Bitdefender Security App [2025-09-01] (Bitdefender)
Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_2024.3.211.0_neutral__6rarf9sa4v8jt [2025-03-09] (Disney)
Dropbox promotion -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.34.0_x64__xbfy0k16fey96 [2025-06-29] (Dropbox Inc.)
HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_48.52533.6679.0_x64__v10z8vjag6ke6 [2025-08-26] (HP Inc.) [Startup Task]
HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.51.329.0_x64__v10z8vjag6ke6 [2025-02-21] (HP Inc.)
HP Inc. Energy Star -> C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_2.0.3.0_x64__v10z8vjag6ke6 [2024-03-31] (HP Inc.)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_2.8.0.0_x64__v10z8vjag6ke6 [2025-07-08] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.4.17.0_x64__v10z8vjag6ke6 [2025-08-22] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_161.1.1087.0_x64__v10z8vjag6ke6 [2025-08-29] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.46.17.0_x64__v10z8vjag6ke6 [2025-06-29] (HP Inc.)
HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6 [2025-07-31] (HP Inc.)
Local Artificial Intelligence Manager -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-08-22] ()
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-08-23] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2412.12002.0_x64__8wekyb3d8bbwe [2025-03-18] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2025-02-21] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.20111.128.0_x64__8wekyb3d8bbwe [2024-08-12] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-08-22] ()
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.10101.0_x64__8wekyb3d8bbwe [2025-08-14] (Microsoft Studios)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-08-22] ()
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2534.2.0_x64__cv1g1gvanyjgm [2025-08-29] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2096350567-2983039283-999813081-1002_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\meduz\AppData\Local\Microsoft\OneDrive\25.149.0803.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2096350567-2983039283-999813081-1002_Classes\CLSID\{7d043d4e-4259-f459-3630-7b434fd7752c}\localserver32 -> C:\Program Files\HP\HP Media Network\HPMediaNetwork.exe (HP Inc. -> HP Inc.)
CustomCLSID: HKU\S-1-5-21-2096350567-2983039283-999813081-1002_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\meduz\AppData\Local\Microsoft\OneDrive\25.149.0803.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-05-21] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-05-21] (Malwarebytes Inc -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.VP60] => C:\windows\SysWOW64\vp6vfw.dll [447752 2025-04-19] (Electronic Arts -> On2.com)
HKLM\...\Drivers32: [vidc.VP61] => C:\windows\SysWOW64\vp6vfw.dll [447752 2025-04-19] (Electronic Arts -> On2.com)

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2025-08-30 18:35 - 2025-08-30 18:35 - 000869376 _____ (.NET Foundation) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.T417b639d#\ddd566b3dfd5a61a6b00e57796528031\Microsoft.Toolkit.Uwp.Notifications.ni.dll
2025-08-01 15:59 - 2025-08-01 15:59 - 000058880 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\HP.SEU.Localization\a3a8677bc914fe9d68ad327c160dbba1\HP.SEU.Localization.ni.dll
2025-05-01 21:00 - 2025-05-01 21:00 - 000440320 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\LauncherSDK\2d70a2d044f21be30baf78121199320f\LauncherSDK.ni.dll
2025-05-01 21:00 - 2025-05-01 21:00 - 000038400 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\Logging\4f7984a4c26efbf55f686da8b16aa462\Logging.ni.dll
2025-08-30 18:36 - 2025-08-30 18:36 - 000153600 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\RpcClient\71be347db52b8ef4ec0dc7affe29cb9d\RpcClient.ni.dll
2025-08-30 18:36 - 2025-08-30 18:36 - 000125440 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\WMISDK\0a89337d08faf83731a2de9e9c0650d3\WMISDK.ni.dll
2025-08-30 18:35 - 2025-08-30 18:35 - 003884544 _____ (Newtonsoft) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_64\Newtonsoft.Json\65d23422b966fea4dd7bd4efb51a4a3c\Newtonsoft.Json.ni.dll
2025-08-27 00:03 - 2025-08-27 00:03 - 000045568 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Window.2\windowplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\meduz\Downloads\FRST64.exe:BDU [0]
AlternateDataStreams: C:\Users\meduz\Downloads\gimp-3.0.4-setup.exe:BDU [0]
AlternateDataStreams: C:\Users\meduz\Downloads\gimp-3.0.4-setup.exe:MBAM.Zone.Identifier [148]
AlternateDataStreams: C:\Users\meduz\Downloads\MBSetup.exe:BDU [0]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2025-06-19] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2025-06-19] (HP Inc. -> HP Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-08-06] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2025-03-29 13:23 - 2025-03-29 13:23 - 000000825 _____ C:\windows\system32\drivers\etc\hosts

2025-03-01 14:17 - 2025-08-29 10:18 - 000000436 _____ C:\windows\system32\drivers\etc\hosts.ics

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.0.1.138
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: Realtek RTL8822CE 802.11ac PCIe Adapter -> rtwlane.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2096350567-2983039283-999813081-1002\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2096350567-2983039283-999813081-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{BE6AB357-6179-402F-A5B9-17EDC2A247E3}] => (Allow) C:\Program Files\EA Games\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{4D850A1A-676A-4E48-AF34-7DFB4BE8C4D5}] => (Allow) C:\Program Files\EA Games\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{9CEA4627-B19D-48DF-B1CD-174AF06A1A81}] => (Allow) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (Bitdefender SRL -> Bitdefender)
FirewallRules: [{4ACD364A-217D-4BFA-BA82-5E6F08F2157F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0A6663BA-0EE7-4B98-9495-7EF0E5DD8236}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{7D679D6E-4A0D-4DA5-B11C-892CA9596629}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{71289B1F-4C4C-46EB-9C05-F3232129E0DB}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4B6ABEDD-DC61-4AB4-917F-CE55A177F93D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{8909F84D-D349-4986-8C6C-BED96B031A07}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{A65D5219-F9D7-436E-960A-A8A105961B8E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1F429919-FA2A-4313-9EEE-396F66963518}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{33A89846-AA52-4AD4-8C98-A461F4F4800D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{19E55E1E-CB10-4936-994C-7D9DAA96200F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{F567D89D-8C63-4BA8-B432-19DD187D80A3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)

==================== Restore Points =========================

29-08-2025 13:34:53 Windows Update
03-09-2025 07:17:35 Windows Update
03-09-2025 07:17:35 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (08/31/2025 09:10:16 AM) (Source: Application Error) (EventID: 1000) (User: MEDUZA)
Description: Název chybující aplikace: HPSystemEventUtilityHost.exe, verze: 3.1.43.0, časové razítko: 0xf43681cd
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.5074, časové razítko: 0x0e967e89
Kód výjimky: 0xc000000d
 Posun chyby: 0x000000000003ef4f
ID chybujícího procesu: 0x6bc0
Čas spuštění chybující aplikace: 0x1dc1a35305a3a28
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\ntdll.dll
ID sestavy: 496c293f-040b-4199-8225-6a926c0c5571
Celý název chybujícího balíčku: AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6
ID chybující aplikace relativní vzhledem k balíčku: AD2F1837.HPSystemEventUtility

Error: (08/31/2025 09:10:12 AM) (Source: Application Error) (EventID: 1000) (User: MEDUZA)
Description: Název chybující aplikace: HPSystemEventUtilityHost.exe, verze: 3.1.43.0, časové razítko: 0xf43681cd
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.5074, časové razítko: 0x0e967e89
Kód výjimky: 0xc000000d
 Posun chyby: 0x000000000003ef4f
ID chybujícího procesu: 0x6bc0
Čas spuštění chybující aplikace: 0x1dc1a35305a3a28
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\ntdll.dll
ID sestavy: 402fb6b6-c2ec-4131-8658-50e06b458a15
Celý název chybujícího balíčku: AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6
ID chybující aplikace relativní vzhledem k balíčku: AD2F1837.HPSystemEventUtility

Error: (08/30/2025 04:14:04 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 10.0.26100.5074 programu LockApp.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (08/29/2025 10:00:39 AM) (Source: Application Error) (EventID: 1000) (User: MEDUZA)
Description: Název chybující aplikace: HPSystemEventUtilityHost.exe, verze: 3.1.43.0, časové razítko: 0xf43681cd
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.4768, časové razítko: 0x95c61958
Kód výjimky: 0xc000000d
 Posun chyby: 0x000000000008289f
ID chybujícího procesu: 0x2e34
Čas spuštění chybující aplikace: 0x1dc18b669a1aebd
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\ntdll.dll
ID sestavy: fd7b81b5-e269-4aba-a9b6-f231dca26ca3
Celý název chybujícího balíčku: AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6
ID chybující aplikace relativní vzhledem k balíčku: AD2F1837.HPSystemEventUtility

Error: (08/28/2025 06:18:55 PM) (Source: Application Error) (EventID: 1000) (User: MEDUZA)
Description: Název chybující aplikace: HPSystemEventUtilityHost.exe, verze: 3.1.43.0, časové razítko: 0xf43681cd
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.4768, časové razítko: 0x95c61958
Kód výjimky: 0xc000000d
 Posun chyby: 0x000000000008289f
ID chybujícího procesu: 0x11e78
Čas spuštění chybující aplikace: 0x1dc182187dc5f97
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\ntdll.dll
ID sestavy: f291559f-ca12-4bc5-a2d4-0edc7b5241b0
Celý název chybujícího balíčku: AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6
ID chybující aplikace relativní vzhledem k balíčku: AD2F1837.HPSystemEventUtility

Error: (08/28/2025 06:12:21 PM) (Source: Application Error) (EventID: 1000) (User: MEDUZA)
Description: Název chybující aplikace: HPSystemEventUtilityHost.exe, verze: 3.1.43.0, časové razítko: 0xf43681cd
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.4768, časové razítko: 0x95c61958
Kód výjimky: 0xc000000d
 Posun chyby: 0x000000000008289f
ID chybujícího procesu: 0x11e78
Čas spuštění chybující aplikace: 0x1dc182187dc5f97
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\ntdll.dll
ID sestavy: 41837b5b-c820-4869-94a5-e74855db31ee
Celý název chybujícího balíčku: AD2F1837.HPSystemEventUtility_3.1.46.0_x64__v10z8vjag6ke6
ID chybující aplikace relativní vzhledem k balíčku: AD2F1837.HPSystemEventUtility

Error: (08/22/2025 10:59:03 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby. 

 PODROBNOSTI – Přístup byl odepřen.

Error: (08/22/2025 10:59:03 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby. 

 PODROBNOSTI – Přístup byl odepřen.


System errors:
=============
Error: (09/03/2025 07:18:52 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NTXGKQ8P7N0-MicrosoftWindows.CrossDevice.

Error: (09/03/2025 07:18:19 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {740FE937-01F7-4482-AA62-C83F0AD3D6D0} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:19 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {740FE937-01F7-4482-AA62-C83F0AD3D6D0} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:19 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {740FE937-01F7-4482-AA62-C83F0AD3D6D0} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:19 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:19 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:18 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {740FE937-01F7-4482-AA62-C83F0AD3D6D0} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding

Error: (09/03/2025 07:18:18 AM) (Source: DCOM) (EventID: 10001) (User: MEDUZA)
Description: Nelze spustit server DCOM: {740FE937-01F7-4482-AA62-C83F0AD3D6D0} jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147958016
při provádění příkazu: 
"C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe" -RegisterProcessAsComServer -Embedding


CodeIntegrity:
===============
Date: 2025-09-03 07:53:41
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdamsi\dlls_267059357120000000\antimalware_provider64.dll that did not meet the Windows signing level requirements. 


==================== Memory info =========================== 

BIOS: AMI F.34 07/29/2024
Motherboard: HP 887A
Processor: AMD Ryzen 5 5500U with Radeon Graphics 
Percentage of memory in use: 75%
Total physical RAM: 15693.67 MB
Available physical RAM: 3837.03 MB
Total Virtual: 17968.42 MB
Available Virtual: 1122.05 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:475.93 GB) (Free:366.97 GB) (Model: SAMSUNG MZVL4512HBLU-00BH1) NTFS

\\?\Volume{3f306cfc-3255-462a-8fcf-38423c751a18}\ () (Fixed) (Total:0.74 GB) (Free:0.11 GB) NTFS
\\?\Volume{ba5fbc33-b5dd-4468-b9fb-349269ef43b8}\ (Bitdefender Virtual Disk) (Fixed) (Total:0.03 GB) (Free:0.02 GB) NTFS
\\?\Volume{71cb9555-0736-4255-a49d-99e815796b47}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 2E3DAF5C)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 32 MB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================