Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-02-2026 01
Ran by evase (04-02-2026 18:38:29)
Running from C:\Users\evase\Desktop
Microsoft Windows 11 Home Version 24H2 26100.7623 (X64) (2026-02-01 12:41:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3500700032-3245530713-1389133632-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3500700032-3245530713-1389133632-503 - Limited - Disabled)
evase (S-1-5-21-3500700032-3245530713-1389133632-1001 - Administrator - Enabled) => C:\Users\evase
Guest (S-1-5-21-3500700032-3245530713-1389133632-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3500700032-3245530713-1389133632-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 25.001.21151 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 25.8.1 - Advanced Micro Devices, Inc.)
Apple Mobile Device Support (HKLM\...\{B9292776-A87E-404C-8569-72CEC689F6C6}) (Version: 19.0.1.27 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 144.1.86.146 - Autoři prohlížeče Brave)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.4.1172.1418 - Piriform)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1583.3 - Piriform Software) Hidden
Discord (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\Discord) (Version: 1.0.9007 - Discord Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 144.0.7559.110 - Google LLC)
iCloud Outlook (HKLM\...\{F35C51FC-B854-4106-89D2-50709F12A4B5}) (Version: 12.5.0.74 - Apple Inc.)
iTunes (HKLM\...\{ED787FA9-C9D2-49EB-9B7B-72C6C25E9501}) (Version: 12.13.9.1 - Apple Inc.)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
League of Legends (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\Riot Game league_of_legends.live) (Version:  - Riot Games, Inc)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.2601.20.0 - Lenovo Group Ltd.)
Malwarebytes version 5.4.6.227 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.4.6.227 - Malwarebytes)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 144.0.3719.104 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 144.0.3719.104 - Microsoft Corporation) Hidden
Microsoft Office Standard 2016 - cs-cz (HKLM\...\StandardRetail - cs-cz) (Version: 16.0.19628.20150 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\OneDriveSetup.exe) (Version: 26.002.0105.0001 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Notion 2.0.34 (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\fcdf0d7f-424b-5f10-a1c7-a8f643f21adf) (Version: 2.0.34 - Notion Labs, Inc)
Notion 4.6.2 (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\661f0cc6-343a-59cb-a5e8-8f6324cc6998) (Version: 4.6.2 - Notion Labs, Inc)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19426.20170 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.12527.22021 - Microsoft Corporation) Hidden
Riot Vanguard (HKLM\...\Riot Vanguard) (Version:  - Riot Games, Inc.)
RyzenMasterSDK (HKLM\...\{0963A25D-EBBE-4919-ACF8-BB45BFCC518A}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Transmission 3.00 (bb6b5a062e) (HKLM-x32\...\{E98621B6-AA42-4390-93AF-4C3D2C557258}) (Version: 3.00.0 - Transmission Project)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1086 - McAfee, LLC)
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Wondershare Filmora 13(Build 13.2.6.6098) (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\Wondershare Filmora 13_is1) (Version:  - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Wondershare NativePush(Build 1.0.1.0) (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\Wondershare NativePush_is1) (Version:  - Wondershare Software)
Zoom (HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\ZoomUMX) (Version: 5.16.5 (24296) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-02-04] ()
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-10-12] (Advanced Micro Devices Inc.)
Dolby Audio -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyaudio_3.20602.609.0_x64__rz1tebttyb220 [2021-09-04] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-09-08] (Microsoft Corporation)
Glance by Mirametrix® -> C:\Program Files\WindowsApps\MirametrixInc.GlancebyMirametrix_11.36.71.0_x64__17mer8kcn3j54 [2025-08-23] (Mirametrix Inc.) [Startup Task]
ChatGPT -> C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2025.328.0_x64__2p2nqsd0c76g0 [2025-12-05] (OpenAI) [Startup Task]
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.7.56.0_x64__nzyj5cx40ttqa [2026-01-22] (Apple Inc.) [Startup Task]
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.7.18.0_x64__5grkq8ppsgwt4 [2025-05-16] (LENOVO INC) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2511.10.0_x64__k1h2ywk1493x8 [2026-01-06] (LENOVO INC.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-02-01] ()
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-01-25] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-09-17] (Microsoft Corp.)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-02-01] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-02-01] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj [2023-08-24] (Realtek Semiconductor Corp)
Smart Microphone Setting -> C:\Program Files\WindowsApps\4505Fortemedia.FMAPOControl_1.0.38.0_x64__4pejv7q2gmsnr [2025-03-26] (Fortemedia)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0 [2026-01-30] (Spotify AB) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.731.1532.0_x64__8wekyb3d8bbwe [2026-01-15] (Microsoft Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\evase\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{16D958C6-9389-4DDF-9645-2AD73BF774A4} -> [Fotky na iCloudu] => C:\Users\evase\iCloudPhotos\Photos [2021-09-09 09:16]
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{6DC4663B-3647-4DD5-993E-79A1FD87E010} -> [iCloud Drive] => C:\Users\evase\iCloudDrive [2021-09-09 09:16]
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\ProgramData\evase\Microsoft\Teams\current\Teams.exe" --toast => No File
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\evase\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-01-20] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-01-25] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-01-25] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-04-16 21:04 - 2016-07-21 09:54 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2024-04-16 21:04 - 2017-09-12 09:34 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2021-09-16 14:18 - 2021-09-16 14:18 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppvIsvSubsystems64.dll
2021-09-16 14:18 - 2021-09-16 14:18 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000035840 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000044032 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000033792 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000564736 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000029696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qpdf.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000026624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000024064 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000540672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000890368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 001964544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000210432 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qmodernwindowsstyle.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000299520 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\Qt5Compat\GraphicalEffects\private\qtgraphicaleffectsprivateplugin.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000556032 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\Qt5Compat\GraphicalEffects\qtgraphicaleffectsplugin.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000020480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtMultimedia\quickmultimediaplugin.dll
2025-05-14 13:45 - 2025-05-14 13:45 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Basic\qtquickcontrols2basicstyleplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Fusion\impl\qtquickcontrols2fusionstyleimplplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Fusion\qtquickcontrols2fusionstyleplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000028160 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\qtquickcontrols2plugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Windows\impl\qtquickcontrols2windowsstyleimplplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000468992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Windows\qtquickcontrols2windowsstyleplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Dialogs\qtquickdialogsplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Effects\effectsplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Layouts\qquicklayoutsplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000767488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\NativeStyle\qtquickcontrols2nativestyleplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Templates\qtquicktemplates2plugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Window\quickwindowplugin.dll
2025-05-14 13:46 - 2025-05-14 13:46 - 000022016 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtWebEngine\qtwebenginequickplugin.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 006071296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Core.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 008933376 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Gui.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000972288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Multimedia.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000250368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6MultimediaQuick.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001725952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Network.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001964544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6OpenGL.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 005337600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Pdf.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000500224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Positioning.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 005204992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Qml.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlMeta.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000721920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlModels.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000062976 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlWorkerScript.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 006282752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Quick.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000084992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001313280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Basic.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001131008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Fusion.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000195584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2FusionStyleImpl.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000276480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Impl.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000058368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2WindowsStyleImpl.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000142336 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001992704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2QuickImpl.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000035328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2Utils.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000389120 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickEffects.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000192512 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickLayouts.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 001864192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickTemplates2.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 004028416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6ShaderTools.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000303616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Sql.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000513024 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Svg.dll
2025-06-17 03:46 - 2025-06-17 03:46 - 154372608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebEngineCore.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000580096 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebEngineQuick.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000228352 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebChannel.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000050176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebChannelQuick.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 006447616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Widgets.dll
2025-05-14 13:44 - 2025-05-14 13:44 - 000141824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Xml.dll
2024-04-16 21:04 - 2017-09-12 09:36 - 000708608 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk:B026C77744 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk:C5D586BE93 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk:104946E0EA [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk:3DF0A9C0EF [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk:954E53D7F9 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transmission Qt Client.lnk:F362B48BC7 [3442]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\sharepoint.com -> hxxps://upolomouc-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.0.1.138
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: Realtek 8822CE Wireless LAN 802.11ac PCI-E NIC -> rtwlane.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\evase\Desktop\Eva\Fotky\02933b89-6874-4e13-aaa4-38a054fd9725.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run32: => "TeamsMachineUninstallerLocalAppData"
HKLM\...\StartupApproved\Run32: => "TeamsMachineUninstallerProgramData"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "LenovoVantageToolbar"
HKU\S-1-5-21-3500700032-3245530713-1389133632-1001\...\StartupApproved\Run: => "RiotClient"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F6D70717-9087-4194-BEF7-0289283F7C83}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{792EA6E7-CA36-4C04-9DEB-51DE4451E300}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8759689E-DE21-48D8-B7A1-29CFCF09E2A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F027853A-C3E1-436D-9848-5CB01EEDAD38}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{853BDA32-6CC0-43A4-82C6-214788976337}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3E5338EE-C7FA-40B8-A7EE-1776A24B7717}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{950777CC-F70F-4754-95E4-6FA83EF816E7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E33880F5-CE09-4301-B01B-C5615000F5CD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8E7922FE-9DF5-439D-B2B0-7397611F11AB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{633D56F9-1103-48C2-A4BF-6FA2FCB7E8E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A35E7424-1351-4EA1-9CE9-E7890AA615BB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{85880A84-91FC-4E46-B978-7B074E2A4FC6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A247C858-7FAB-4F5F-B182-85BC1438FAB2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.282.428.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{164B9E5E-1453-44D8-B636-14DAC4DBFD17}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{64B16E37-C747-46B6-AB1A-0D6685F7252E}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{8653A732-E80C-4E85-8914-5ADA2F338176}] => (Allow) C:\Users\evase\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
FirewallRules: [UDP Query User{BA6FC344-14CC-47E3-AEBB-EDDBADF94B98}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{2922C548-9C39-4D30-BC00-4F67E282C6E0}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{CE5C7C5A-2C81-436B-834E-8874D081EA56}C:\users\evase\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\evase\appdata\roaming\gameranger\gameranger\gameranger.exe => No File
FirewallRules: [TCP Query User{87C34AEA-A438-4F16-B19C-D8BA66079705}C:\users\evase\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\evase\appdata\roaming\gameranger\gameranger\gameranger.exe => No File
FirewallRules: [UDP Query User{33785F30-EA5C-4F7E-B196-637625944C4A}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{2D0F9254-6ECB-4B68-8F17-A13C67C71C92}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{C84D69D7-15F2-4FCA-A7E7-86B1D4D443DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe () [File not signed]
FirewallRules: [{BC7C9F8D-DEFA-449F-AC01-472905B96DD4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe () [File not signed]
FirewallRules: [{FD100C0F-0CB5-4E23-A803-2F69E13B001D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{ED9E485A-1E72-4F56-809D-A9037C384AAF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{9A113D69-0EFA-44CD-A616-83EADC9DDB2B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{CAF962AB-2888-466B-8C19-1A840C25D969}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F91F526B-C7CB-4C45-AF18-1FBB553A2C48}] => (Allow) C:\Users\evase\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{F8AC9CF5-B06A-4B60-BFE4-86FB310013D3}] => (Allow) C:\Users\evase\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{BD927F7C-9500-4666-A4D4-510372927477}] => (Allow) C:\Users\evase\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{694F9EA3-3C34-4C84-99EC-3CCD6C18E41A}] => (Allow) C:\Users\evase\AppData\Local\Programs\Opera\80.0.4170.63\opera.exe => No File
FirewallRules: [{CBB090C9-7AFD-495D-89F0-340982EE4EA1}] => (Allow) C:\Users\evase\AppData\Local\Programs\Opera\78.0.4093.147\opera.exe => No File
FirewallRules: [UDP Query User{4A1BB8F3-CE02-4CB2-8384-162C7005411C}C:\programdata\evase\microsoft\teams\current\teams.exe] => (Allow) C:\programdata\evase\microsoft\teams\current\teams.exe => No File
FirewallRules: [TCP Query User{858A48B1-337B-47ED-88A9-C647915217B0}C:\programdata\evase\microsoft\teams\current\teams.exe] => (Allow) C:\programdata\evase\microsoft\teams\current\teams.exe => No File
FirewallRules: [{D44E36B3-8CE8-4BF4-AF3D-AF8555BEB55C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe => No File
FirewallRules: [{267C95D1-773E-4CED-9D7E-37C30E1A8C1D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe => No File
FirewallRules: [UDP Query User{CD9A4BFD-8C4F-48B7-913B-714E97F213D4}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{5E09F808-E33C-4AD6-B006-847C97425CFA}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{09CE1C6E-494E-492F-9F5A-070EEE56862D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A319331A-DC05-4611-8C51-383793675514}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D40164C2-F182-4CE3-8996-6E4272EE7439}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E2C9D807-C2C3-44FD-8217-FA3E6D931489}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FABA5F5B-5467-42B4-917A-9DAF94C14C2C}C:\users\evase\appdata\local\discord\app-1.0.9007\discord.exe] => (Allow) C:\users\evase\appdata\local\discord\app-1.0.9007\discord.exe => No File
FirewallRules: [UDP Query User{78F4806C-DDAF-40EC-89C6-78EFBD888670}C:\users\evase\appdata\local\discord\app-1.0.9007\discord.exe] => (Allow) C:\users\evase\appdata\local\discord\app-1.0.9007\discord.exe => No File
FirewallRules: [TCP Query User{FAF0A534-A9B3-46ED-9681-A9B3A5C10994}C:\program files (x86)\transmission\transmission-qt.exe] => (Allow) C:\program files (x86)\transmission\transmission-qt.exe (SignPath Foundation -> Transmission Project)
FirewallRules: [UDP Query User{B6286F92-2460-4DFE-A5F4-DB1A863A8F1D}C:\program files (x86)\transmission\transmission-qt.exe] => (Allow) C:\program files (x86)\transmission\transmission-qt.exe (SignPath Foundation -> Transmission Project)
FirewallRules: [{17909520-D4FE-44F9-8829-DC81563A4F7D}] => (Block) C:\program files (x86)\transmission\transmission-qt.exe (SignPath Foundation -> Transmission Project)
FirewallRules: [{C57A1218-FAB3-4B09-87B4-2E2BDEE16E73}] => (Block) C:\program files (x86)\transmission\transmission-qt.exe (SignPath Foundation -> Transmission Project)
FirewallRules: [{7E45FE7E-BBF5-49F3-8C01-4144DF06AD72}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25072.1501.3493.5261_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FD93EFD5-9D39-4E1E-95A5-204E437C4D6C}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25072.1501.3493.5261_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{66726CA3-8772-46F6-B661-3FDB18C74F67}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C36BD33A-FA85-4947-B51D-BE23009187C0}] => (Allow) C:\Users\evase\AppData\Local\Programs\Opera\opera.exe => No File
FirewallRules: [{F02493ED-056E-47FA-9C0D-98C45B9FC067}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)

==================== Restore Points =========================

01-02-2026 13:49:19 Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211
01-02-2026 13:49:46 Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211
02-02-2026 08:56:54 AdwCleaner_BeforeCleaning_02/02/2026_08:56:54

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (02/04/2026 04:42:58 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 22500. ID zprávy: [0x2509].

Error: (02/03/2026 09:00:55 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 24944. ID zprávy: [0x2509].

Error: (02/02/2026 06:27:23 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 17368. ID zprávy: [0x2509].

Error: (02/02/2026 12:39:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname LAPTOP-LGHCPJ35.local already in use; will try LAPTOP-LGHCPJ35-2.local instead

Error: (02/02/2026 12:39:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 1; will deregister   16 LAPTOP-LGHCPJ35.local. AAAA 2A00:1028:83CC:6E36:818E:F997:8C78:47BC

Error: (02/02/2026 12:39:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:CE47:1F7E:879C:F953:5353    4 LAPTOP-LGHCPJ35.local. Addr 10.0.1.17

Error: (02/02/2026 09:22:54 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 15096. ID zprávy: [0x2509].

Error: (02/02/2026 09:15:57 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 1492. ID zprávy: [0x2509].


System errors:
=============
Error: (02/03/2026 08:19:51 PM) (Source: BTHUSB) (EventID: 5) (User: )
Description: Ovladač Bluetooth očekával událost HCI s určitou velikostí, ale neobdržel ji.

Error: (02/02/2026 05:29:31 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 05:25:01 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 05:16:44 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 05:15:35 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 05:09:54 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 05:01:16 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/02/2026 04:52:46 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-LGHCPJ35)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================
Date: 2026-02-03 19:52:39
Description: 
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{DB37EB63-3863-4D17-A868-05F899D7DDB4}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π  %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьΓΡ€ çоňиέčťíбŉ ŗúⁿδόώй 

Date: 2026-02-02 19:10:50
Description: 
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{B88F1D1B-A5B1-4233-BF84-177BB6A7A78D}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π  %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьΓΡ€ çоňиέčťíбŉ ŗúⁿδόώй 

Date: 2026-02-02 18:05:28
Description: 
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{5C1FAA9A-CA28-49F8-B299-06C4F2144E57}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π  %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьΓΡ€ çоňиέčťíбŉ ŗúⁿδόώй 
﻿
==================== Memory info =========================== 

BIOS: LENOVO E7CN45WW 04/28/2022
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 7 4700U with Radeon Graphics 
Percentage of memory in use: 52%
Total physical RAM: 15734.8 MB
Available physical RAM: 7456.5 MB
Total Virtual: 22134.8 MB
Available Virtual: 10077.04 MB

==================== Drives ================================

Drive c: (Windows-SSD) (Fixed) (Total:475.69 GB) (Free:225.55 GB) (Model: KBG40ZNT512G TOSHIBA MEMORY) NTFS

\\?\Volume{b88933ec-0d69-4999-a10c-57c11185bea5}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.31 GB) NTFS
\\?\Volume{c21863f5-cb9e-41ee-be53-8c80ff3119cf}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 63A69289)

Partition: GPT.

==================== End of Addition.txt =======================