Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-11-2025
Ran by Stynky (17-11-2025 13:47:13)
Running from C:\Users\Stynky\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6466 (X64) (2020-12-03 21:07:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-4189276865-3890784843-2552735134-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4189276865-3890784843-2552735134-503 - Limited - Disabled)
Guest (S-1-5-21-4189276865-3890784843-2552735134-501 - Limited - Disabled)
Stynky (S-1-5-21-4189276865-3890784843-2552735134-1001 - Administrator - Enabled) => C:\Users\Stynky
WDAGUtilityAccount (S-1-5-21-4189276865-3890784843-2552735134-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKLM-x32\...\uTorrent) (Version: 3.1.3.26837 - emc, uTorrent.CZ)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.16 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 25.10.10528.3189 - Gen Digital Inc.)
Balanced (HKLM-x32\...\{0EA45DD4-A825-420C-AFED-C659EFE3B84F}) (Version: 4.00.0000 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bloody7 (HKLM-x32\...\Bloody3) (Version: 20.02.0002 - Bloody)
Cataclysm Classic (HKLM-x32\...\Cataclysm Classic) (Version:  - Blizzard Entertainment)
CPUID CPU-Z 1.91 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.91 - CPUID, Inc.)
CrystalDiskInfo 8.4.0 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.4.0 - Crystal Dew World)
CurseForge 1.290.0-28665 (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\ca0e291c-abd4-5fc3-b6a0-3d4333eccbd7) (Version: 1.290.0-28665 - Overwolf)
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
Diablo Immortal (HKLM-x32\...\Diablo Immortal) (Version:  - Blizzard Entertainment)
Diablo IV (HKLM-x32\...\Diablo IV) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
ENE RGB HAL (HKLM\...\{B380DBDE-BA95-481B-92E9-52F2E5E84F24}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{adbc3d98-57f2-4d68-b155-138f8fb0f73d}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{26b207d1-1f37-4df9-8b3f-aeebbca6bb85}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 142.0.7444.163 - Google LLC)
Java 8 Update 431 (HKLM-x32\...\{71024AE4-039E-4CA4-87B4-2F32180431F0}) (Version: 8.0.4310.10 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft .NET Host - 6.0.10 (x64) (HKLM\...\{0222FFF1-57A3-48A6-9AD2-0D6B5D0172B3}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.10 (x64) (HKLM\...\{A93C4E12-1BAB-4CFB-ADBC-9CE0B93176FF}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.10 (x64) (HKLM\...\{A2A39CB9-677D-4299-8537-C00B99F3D4A4}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 142.0.3595.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 142.0.3595.80 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\OneDriveSetup.exe) (Version: 25.149.0803.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x64) (HKLM\...\{3EC7701F-54F2-491D-AFD1-0395F465BC5A}) (Version: 48.43.48870 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x64) (HKLM-x32\...\{ff748137-9c9a-4056-be0a-48c7e465453c}) (Version: 6.0.10.31726 - Microsoft Corporation)
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
OEM Application Profile (HKLM-x32\...\{84AD2AF7-10C8-0395-66F9-FFAEB4C5DBF1}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Patriot Viper M2 SSD RGB (HKLM\...\{0886A906-0625-4A43-930D-AA92F6665AF4}) (Version: 1.00.04 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{ebb7013c-0b03-497c-bed1-1e48e806a593}) (Version: 1.00.04 - Patriot Memory)
RGB Fusion (HKLM-x32\...\{FFA8F1FA-3C2C-4A94-AC0B-0DF47272C25F}) (Version: 3.20.0122.1 - GIGABYTE)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.7.6 - TeamViewer)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.9316 - TLauncher Inc.)
Twitch (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.1.0 - Elaborate Bytes)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Wargaming.net Game Center (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\Wargaming.net Game Center) (Version: 25.3.0.9647 - Wargaming.net)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\428105247) (Version:  - Wargaming.net)
World of Warcraft Classic Era (HKLM-x32\...\World of Warcraft Classic Era) (Version:  - Blizzard Entertainment)

Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep [2021-02-19] (Canon Inc.)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-07-01] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-02-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-02-27] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-07] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.180.0_x64__dt26b99r8h8gj [2020-02-26] (Realtek Semiconductor Corp)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001_Classes\CLSID\{2fd1b642-ca5d-4583-bccf-12ef694a9d59}\localserver32 -> "C:\Program Files\MobiSystems\OfficeSuite\MobiSystemsUpdate.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\Stynky\AppData\Local\Microsoft\OneDrive\25.149.0803.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\Stynky\AppData\Local\Microsoft\OneDrive\25.149.0803.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001_Classes\CLSID\{d93ca5c3-3782-4250-c4a8-af58febbcf13}\localserver32 -> "C:\Users\Stynky\AppData\Local\PlariumPlay\9.2.0-0.0.0\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-10-23] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-10-23] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-10-23] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-10-23] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-10-23] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2025-11-05 07:41 - 2025-11-05 07:41 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2025-01-07 20:16 - 2025-11-05 07:41 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Temp:$DATA​ [16]
AlternateDataStreams: C:\WINDOWS\tracing:? [16]
AlternateDataStreams: C:\Users\Stynky\Data aplikací:48e63d4de0a63256000858a7c61c87df [394]
AlternateDataStreams: C:\Users\Stynky\AppData\Roaming:48e63d4de0a63256000858a7c61c87df [394]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {1BE19249-6645-4536-A116-DA594CA35860} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {20AEFCEE-2DBD-4C13-89E1-9AB21B871DA9} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {30ECB9D0-69F7-403E-9752-8C900306EF14} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {5E640A29-2431-46F4-8DA2-CFC3C3394ECE} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {5F05B4C6-FB50-4ECE-B4FB-0683E3F17212} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {AA5B4101-F585-4E7F-8D24-669C98291FD9} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {C4F9104A-A959-4D74-B5C8-93270C12D1C8} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {CDBB2E73-EDE1-4162-9188-14C8D34F486F} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_37180
SearchScopes: HKU\S-1-5-21-4189276865-3890784843-2552735134-1001 -> {E1BB873C-C0B5-47AB-905F-CDDD90442E76} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_37180
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_431\bin\ssv.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_431\bin\jp2ssv.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek Gaming GbE Family Controller -> rt640x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Stynky\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\wp4241479-amaterasu-wallpapers.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 0) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-4189276865-3890784843-2552735134-1001\...\StartupApproved\Run: => "Bloody2"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{D7FDD955-4C18-47A9-88C1-ACEE2F1A3E10}C:\users\stynky\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\stynky\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{563153B9-A880-48F8-8149-313251A66279}C:\users\stynky\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\stynky\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [{4743B547-6699-4402-9A24-16A5F2CF99B7}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0AF1CB12-B961-4C3A-89CD-1D61630DD26E}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E2D2F36E-C576-49AF-AB13-4BBD2C98FBC8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{5F9322DC-343B-4179-BAD5-6F57BFB98314}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{60BDCEFE-061E-49E7-A5BE-E38521BA3741}D:\games\dungeon defenders the tavern\binaries\win32\dundefgame.exe] => (Allow) D:\games\dungeon defenders the tavern\binaries\win32\dundefgame.exe => No File
FirewallRules: [UDP Query User{0687D6C0-AB80-46EB-8B75-0DCEC9A905F5}D:\games\dungeon defenders the tavern\binaries\win32\dundefgame.exe] => (Allow) D:\games\dungeon defenders the tavern\binaries\win32\dundefgame.exe => No File
FirewallRules: [TCP Query User{C83869B2-5339-471A-8C83-7DA031D18AF4}C:\users\stynky\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\stynky\appdata\local\gamecenter\gamecenter.exe => No File
FirewallRules: [UDP Query User{12D46FB2-459B-45F0-9874-7164760F3EAB}C:\users\stynky\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\stynky\appdata\local\gamecenter\gamecenter.exe => No File
FirewallRules: [TCP Query User{1A1635AA-AB53-4755-82E2-98E2619A3703}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{F58B71D9-79DA-4AA1-AA32-A68A8ECD0709}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{DAC2D110-1941-4AB5-B632-3716DAD3E57F}C:\users\stynky\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe => No File
FirewallRules: [UDP Query User{0D59540F-6C00-4379-9A57-3B6C26B5C0C4}C:\users\stynky\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe => No File
FirewallRules: [TCP Query User{A68F4D6E-401D-4C55-9F11-89B1656485F4}C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe => No File
FirewallRules: [UDP Query User{9DBE3A55-DDCA-43B1-9563-B583347936F3}C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe => No File
FirewallRules: [TCP Query User{A4D0F3B5-59B7-47C7-8C38-3A31D149D3D4}C:\users\stynky\appdata\local\gamecenter\gamecenter.exe] => (Block) C:\users\stynky\appdata\local\gamecenter\gamecenter.exe => No File
FirewallRules: [UDP Query User{1008E7CD-4456-4ED3-91B2-43CA841C5E02}C:\users\stynky\appdata\local\gamecenter\gamecenter.exe] => (Block) C:\users\stynky\appdata\local\gamecenter\gamecenter.exe => No File
FirewallRules: [{2F3BC50D-C90B-46F0-A996-C69015E6CBDD}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{FB40BD23-BEF6-41A4-9524-EEE86F5D21C5}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [TCP Query User{7597C37F-4DA2-4893-9EF0-71EDAE7236D5}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{A741CD2D-EF50-47F2-9A21-43E2763C5D7A}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{BBA5BB17-5500-40F4-8B8A-93B95B943054}D:\hry\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\hry\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{C12E7600-24FF-4F4C-83DF-3BEF3598D696}D:\hry\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\hry\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{83315B7B-E51A-4236-B78A-05C576BECE00}D:\hry\diablo iii\x64\diablo iii64.exe] => (Allow) D:\hry\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [UDP Query User{DE29EA9D-08C8-41C9-9707-8C038AE70982}D:\hry\diablo iii\x64\diablo iii64.exe] => (Allow) D:\hry\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [TCP Query User{9CDEF132-AF46-42C6-AD80-E5C0E1BE0A6E}D:\hry\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\hry\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{B4807D7F-4C33-4DDC-98D1-9AB58FEDE1AB}D:\hry\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\hry\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{49FF9BE5-3FF3-422B-82F5-E0CBCF34CF26}] => (Allow) LPort=1688
FirewallRules: [{68C4830F-E363-4F9B-AA0F-7797D992FA7B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin64\dontstarve_steam_x64.exe => No File
FirewallRules: [{B4C56EB1-E18A-46E7-BB2C-346D482DE261}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin64\dontstarve_steam_x64.exe => No File
FirewallRules: [{A16CA49F-9F98-4DF3-AB0C-AAF22523DFA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe => No File
FirewallRules: [{0C5986E3-2E9F-40C0-BD52-36CAEA06555A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe => No File
FirewallRules: [{39D2C8FB-770B-4872-83F2-F45E7B79B762}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Grim Dawn\x64\Grim Dawn.exe => No File
FirewallRules: [{416561BE-D4D7-4CDF-8AC7-EF73653F05CC}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Grim Dawn\x64\Grim Dawn.exe => No File
FirewallRules: [TCP Query User{D06BE5B7-DA02-4376-80C4-90682F9E16FC}D:\hry\diablo iv - beta\diablo iv.exe] => (Allow) D:\hry\diablo iv - beta\diablo iv.exe => No File
FirewallRules: [UDP Query User{5082B4ED-E8C6-4C3D-A2E3-82F087477583}D:\hry\diablo iv - beta\diablo iv.exe] => (Allow) D:\hry\diablo iv - beta\diablo iv.exe => No File
FirewallRules: [TCP Query User{BCFAB2B8-8368-402F-9511-34E2F1871C6B}C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe => No File
FirewallRules: [UDP Query User{BBFFA177-081A-4120-A059-0FCFC75950A7}C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\stynky\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe => No File
FirewallRules: [TCP Query User{84AC927F-C024-4D5A-B94A-0D98B9B9D002}D:\hry\diablo iv\diablo iv.exe] => (Allow) D:\hry\diablo iv\diablo iv.exe => No File
FirewallRules: [UDP Query User{33057CC3-00C1-4C47-A350-8EE24F2746EA}D:\hry\diablo iv\diablo iv.exe] => (Allow) D:\hry\diablo iv\diablo iv.exe => No File
FirewallRules: [{EEB2F64D-D534-401E-9745-0AB1745EDAE6}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Path of Exile\PathOfExileSteam.exe => No File
FirewallRules: [{8DDE823F-35A9-4887-9A15-2CE83FDB4D5A}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Path of Exile\PathOfExileSteam.exe => No File
FirewallRules: [{1F39DED3-F46B-45AD-98BA-76E5023F17B2}] => (Allow) C:\Users\Stynky\AppData\Local\tofminiloader\tofminiloader.exe (PROXIMA BETA PTE. LIMITED -> )
FirewallRules: [{F31A5368-3289-453B-9301-CBE430443B5F}] => (Allow) C:\Users\Stynky\AppData\Local\tofminiloader\tofminiloader.exe (PROXIMA BETA PTE. LIMITED -> )
FirewallRules: [{B921E723-4875-4435-9FC7-18762ED36F25}] => (Allow) D:\Tower Of Fantasy\Hotta\Binaries\Win64\INTLWebViewHelper.exe => No File
FirewallRules: [TCP Query User{C038AF96-348A-4F70-89ED-0747D89F4C73}D:\hry\destiny 2\steamapps\common\age of conan\ageofconan.exe] => (Allow) D:\hry\destiny 2\steamapps\common\age of conan\ageofconan.exe => No File
FirewallRules: [UDP Query User{1D4D54F1-96E9-4F2C-B7B8-183323B9A7C7}D:\hry\destiny 2\steamapps\common\age of conan\ageofconan.exe] => (Allow) D:\hry\destiny 2\steamapps\common\age of conan\ageofconan.exe => No File
FirewallRules: [{65600CA1-26BA-4474-AF4B-A7ABDDF0038B}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Grim Dawn\Grim Dawn.exe => No File
FirewallRules: [{633327D9-A827-4EB9-A49A-E4C053F02E80}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Grim Dawn\Grim Dawn.exe => No File
FirewallRules: [{B21DFAA3-9ACF-4A92-A5B8-81E27C5C30FB}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Enshrouded\enshrouded.exe => No File
FirewallRules: [{F4788F26-FE19-4794-B9FE-9B90AEAF36FB}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Enshrouded\enshrouded.exe => No File
FirewallRules: [{590D413B-C88A-49A6-9667-E6A88F9511CE}] => (Allow) C:\Users\Stynky\AppData\Local\Programs\Opera\107.0.5045.21\opera.exe => No File
FirewallRules: [{C362BE63-6A81-49BF-874B-B3F403ED6530}] => (Allow) C:\Users\Stynky\AppData\Local\Programs\Opera\107.0.5045.36\opera.exe => No File
FirewallRules: [{558E279A-2D2A-4DDE-8487-2B520761FB88}] => (Allow) D:\Hry\Destiny 2\steamapps\common\ValkyrieConnectWW\ValkyrieConnect.exe => No File
FirewallRules: [{9E5836AF-6CE0-4B59-8E77-8BB5E012F91A}] => (Allow) D:\Hry\Destiny 2\steamapps\common\ValkyrieConnectWW\ValkyrieConnect.exe => No File
FirewallRules: [TCP Query User{B5A1CAC6-6C66-4EC2-8483-8F2267ECD83C}C:\program files\diablo iv\diablo iv.exe] => (Allow) C:\program files\diablo iv\diablo iv.exe => No File
FirewallRules: [UDP Query User{966F4310-6437-4578-B3D8-ECBE7745BE6A}C:\program files\diablo iv\diablo iv.exe] => (Allow) C:\program files\diablo iv\diablo iv.exe => No File
FirewallRules: [TCP Query User{866EF85E-8A1F-4A54-A3C3-53B93170C187}D:\wuthering waves\wuthering waves game\client\binaries\win64\client-win64-shipping.exe] => (Allow) D:\wuthering waves\wuthering waves game\client\binaries\win64\client-win64-shipping.exe => No File
FirewallRules: [UDP Query User{51EF0A4F-B32F-4F32-90C7-FB987EBD5B06}D:\wuthering waves\wuthering waves game\client\binaries\win64\client-win64-shipping.exe] => (Allow) D:\wuthering waves\wuthering waves game\client\binaries\win64\client-win64-shipping.exe => No File
FirewallRules: [TCP Query User{B8DF57E5-C133-4790-8292-202B4AE16169}C:\diablo3\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo3\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [UDP Query User{5C2925EC-ECBC-423C-8D06-47DE8882CA3B}C:\diablo3\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo3\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [{956C74F0-8D91-4716-A339-4869055DFACF}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Valheim\valheim.exe => No File
FirewallRules: [{EEBA2CC5-EA7B-447E-9901-6CCD08AEEB65}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Valheim\valheim.exe => No File
FirewallRules: [{8485D56D-9039-4E22-9699-47BFB5499162}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Throne and Liberty\start_protected_game.exe => No File
FirewallRules: [{07160CF5-AD7E-4C1E-BAF6-94804F021DE3}] => (Allow) D:\Hry\Destiny 2\steamapps\common\Throne and Liberty\start_protected_game.exe => No File
FirewallRules: [TCP Query User{FB3BD726-CF7A-41F9-9F13-897F031B3927}D:\diablo iv\diablo iv.exe] => (Allow) D:\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{3523441E-9363-4BE8-B1E6-0C985D311702}D:\diablo iv\diablo iv.exe] => (Allow) D:\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{3888B470-CB0C-49CE-BF51-322FAD06A73E}] => (Allow) D:\SteamLibrary\steamapps\common\Path of Exile 2\PathOfExileSteam.exe => No File
FirewallRules: [{A7766288-A462-4D7B-AD8C-569DCF16424B}] => (Allow) D:\SteamLibrary\steamapps\common\Path of Exile 2\PathOfExileSteam.exe => No File
FirewallRules: [{2AC79597-4E4C-44D2-8988-3FA65C160D73}] => (Allow) C:\Program Files\Netmarble\Netmarble Launcher\Netmarble Launcher.exe => No File
FirewallRules: [{633F0C9A-888A-44EA-A4B2-304D5F11CC9D}] => (Allow) D:\SteamLibrary\steamapps\common\Titan Quest II\TQ2.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{28964553-A362-43D3-B9B8-E16B47E7581E}] => (Allow) D:\SteamLibrary\steamapps\common\Titan Quest II\TQ2.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{9E5E6EF6-46AC-4C3B-B270-437C8712EE80}] => (Allow) D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> )
FirewallRules: [{919C1CA7-5E7F-40D3-ACE0-A06406F32249}] => (Allow) D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> )
FirewallRules: [{A97AE08A-B154-430E-A301-4D6F5797DC60}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

16-11-2025 14:42:05 Naplánovaný kontrolní bod
17-11-2025 13:37:22 AdwCleaner_BeforeCleaning_17/11/2025_13:37:22

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (11/16/2025 11:36:06 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 12) (User: DESKTOP-UMUAPA8)
Description: Microsoft.Windows.Photos_8wekyb3d8bbwe-2147023878

Error: (11/15/2025 11:46:27 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x8007001f, Zařízení připojené k systému nefunguje..

Operace:
   Spouštění asynchronní operace

Kontext:
   Aktuální stav: DoSnapshotSet

Error: (10/18/2025 03:50:39 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (10/18/2025 03:50:39 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (10/15/2025 06:10:36 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x80070006, Neplatný popisovač..

Operace:
   Spouštění asynchronní operace

Kontext:
   Aktuální stav: DoSnapshotSet

Error: (10/14/2025 05:14:35 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 12) (User: DESKTOP-UMUAPA8)
Description: Microsoft.Windows.Photos_8wekyb3d8bbwe-2147023878

Error: (10/10/2025 02:55:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Diablo IV.exe, verze: 2.4.1.3290, časové razítko: 0x68dd8a98
Název chybujícího modulu: Diablo IV.exe, verze: 2.4.1.3290, časové razítko: 0x68dd8a98
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000009192b7
ID chybujícího procesu: 0x1e20
Čas spuštění chybující aplikace: 0x01dc39882a4c7d2f
Cesta k chybující aplikaci: D:\Diablo IV\Diablo IV.exe
Cesta k chybujícímu modulu: D:\Diablo IV\Diablo IV.exe
ID zprávy: fcdeb5e6-b84e-479b-bccf-86a95fdec72d
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/26/2025 11:19:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_InstallService, verze: 10.0.19041.5794, časové razítko: 0x11bd0919
Název chybujícího modulu: gameplatformservices.dll_unloaded, verze: 10.0.26100.5729, časové razítko: 0x662146e8
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000036060
ID chybujícího procesu: 0x2564
Čas spuštění chybující aplikace: 0x01dc2de3274fd823
Cesta k chybující aplikaci: C:\WINDOWS\System32\svchost.exe
Cesta k chybujícímu modulu: gameplatformservices.dll
ID zprávy: 72814b88-ddb1-4e33-a484-86254283e2d5
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (11/17/2025 01:37:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/17/2025 01:37:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/17/2025 01:37:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (11/17/2025 01:35:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/17/2025 01:35:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/17/2025 01:35:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (11/17/2025 01:14:55 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UMUAPA8)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/17/2025 04:38:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UMUAPA8)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===============
Date: 2024-10-26 13:16:58
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2024-10-26 13:16:14
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. F51 12/18/2019
Motherboard: Gigabyte Technology Co., Ltd. B450 AORUS ELITE
Processor: AMD Ryzen 5 3600 6-Core Processor 
Percentage of memory in use: 32%
Total physical RAM: 16335.04 MB
Available physical RAM: 11074.08 MB
Total Virtual: 21199.04 MB
Available Virtual: 14557.5 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.26 GB) (Free:21.44 GB) (Model: KINGSTON SA2000M8250G) NTFS
Drive d: (Data) (Fixed) (Total:1863 GB) (Free:1301.15 GB) (Model: ST2000DM008-2FR102) NTFS

\\?\Volume{3f4018ad-6aba-4b5f-aa3c-a3a6c21e5438}\ () (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{08a857e3-8c1b-4e88-b2e0-1f4fc622d555}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 232.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================