Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2026
Ran by kalou (01-03-2026 21:36:18)
Running from C:\Users\kalou\Desktop
Microsoft Windows 11 Pro Version 25H2 26200.7840 (X64) (2025-08-06 03:38:56)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1517938706-1828810823-68529143-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-1517938706-1828810823-68529143-503 - Limited - Disabled)
Guest (S-1-5-21-1517938706-1828810823-68529143-501 - Limited - Disabled)
kalou (S-1-5-21-1517938706-1828810823-68529143-1001 - Administrators - Enabled) => C:\Users\kalou
WDAGUtilityAccount (S-1-5-21-1517938706-1828810823-68529143-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {0F59B032-EA77-E3A8-2382-74A4346E5522}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 24.07 (x64) (HKLM\...\7-Zip) (Version: 24.07 - Igor Pavlov)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.0.327 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 9.1.0.52 - Adobe Inc.)
Adobe Illustrator CC 2017 (HKLM-x32\...\ILST_21_0_0) (Version: 21.0.0 - Adobe Systems Incorporated)
Advanced Combat Tracker (remove only) (HKLM-x32\...\Advanced Combat Tracker) (Version: 3.8.2.285 - EQAditu)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.06.11.2153 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.124 - Advanced Micro Devices, Inc.) Hidden
AMD PPM Provisioning File Driver (HKLM-x32\...\{3665A5DE-D07C-46D7-9207-713E8E9FEF32}) (Version: 8.0.0.32 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.28.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\{02247819-03CD-414E-AC8D-FD518BFBA445}) (Version: 2.13.0.2771 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.13.0.2771 - Advanced Micro Devices, Inc.)
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.7.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{f738e81d-6f36-4eae-83b9-c4a2d7d7a868}) (Version: 6.06.11.2153 - Advanced Micro Devices, Inc.) Hidden
AntiCheatExpert (HKLM\...\AntiCheatExpert) (Version: 17.6.2412.504 - )
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 27.1.1.28 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\Bitdefender) (Version: 27.0.56.308 - Bitdefender)
Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 27.3.0.7 - Bitdefender)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Discord (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Discord) (Version: 1.0.9226 - Discord Inc.)
Dragon (HKLM-x32\...\{3C8FA4F4-8471-4C60-9002-9B9F78B7B483}) (Version: 6 - Realtek)
FF Logs Companion (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Overwolf_gdgggfkjbbopooaagkfaolnfcicejolklgmfcfbc) (Version: 8.17.115 - Overwolf app)
FFXIV Teamcraft (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\ffxiv-teamcraft) (Version: 11.3.10 - FFXIV Teamcraft)
FFXIV TexTools (HKLM-x32\...\FFXIV_TexTools) (Version: 2.2.1 - )
Figma (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Figma) (Version: 125.10.8 - Figma, Inc.)
Figma Agent (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\FigmaAgent) (Version: 125.11.6 - Figma, Inc.)
FURY CTRL version 2.0.54.0 (HKLM-x32\...\{8C7A0B76-7444-4EBA-B021-2B36E52EFB94}_is1) (Version: 2.0.54.0 - Kingston Technology Company, Inc.)
GBT_MB_Update (HKLM\...\GBT_MB_Update) (Version: 24.06.25.01 - GIGABYTE)
GBT_RGB_Sync_Control 24.06.25.01 (HKLM\...\GBT_RGB_Sync_Control) (Version: 24.06.25.01 - GIGABYTE)
GBT_rgbMotherboard_UC 24.06.20.01 (HKLM\...\GBT_rgbMotherboard_UC) (Version: 24.06.20.01 - GIGABYTE)
GIGABYTE Control Center 24.06.27.01 (HKLM\...\GIGABYTE Control Center) (Version: 24.06.27.01 - GIGABYTE)
GIGABYTE SSD Firmware Update Tool (HKLM\...\GBTSsdFirmwareUpdate) (Version: 24.06.19.01 - GIGABYTE)
InfinityNikkiGlobal Launcher (HKLM\...\InfinityNikkiGlobal Launcher) (Version: 1.0.9 - Papegames)
Inkscape (HKLM\...\{B90496FF-9F08-4BEB-8928-F49AB6308EEB}) (Version: 1.4.2 - Inkscape)
Koodo Reader 2.2.6 (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\233610fa-2bda-5a09-a37b-75e0bafa7920) (Version: 2.2.6 - App by Troye)
League of Legends (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Riot Game league_of_legends.live) (Version:  - Riot Games, Inc)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2026.1.828335 - Logitech)
Microsoft .NET Host - 6.0.11 (x64) (HKLM\...\{B92B890A-04F2-4880-BA20-20D4364FB263}) (Version: 48.47.50420 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.24 (x64) (HKLM\...\{A96D010F-E130-4929-B445-414E7AE4F04B}) (Version: 64.96.47242 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.11 (x64) (HKLM\...\{5E63E49B-C88C-46C5-855C-A7B07C11CDC8}) (Version: 48.47.50420 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.24 (x64) (HKLM\...\{66D8D2C3-B7A9-4F32-8FE4-42FE64B8422D}) (Version: 64.96.47242 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.11 (x64) (HKLM\...\{C3DD1448-513A-4DB8-978D-6991562EA63D}) (Version: 48.47.50420 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.24 (x64) (HKLM\...\{774E3EF4-74C6-460B-BEED-FC1D0E3014D7}) (Version: 64.96.47242 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.24 (x64) (HKLM-x32\...\{94e7146a-2587-4f75-bf15-0d1f3210093c}) (Version: 8.0.24.35720 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 145.0.3800.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 145.0.3800.82 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\OneDriveSetup.exe) (Version: 26.022.0203.0006 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.19202 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.11 (x64) (HKLM\...\{A39D4115-3A27-4245-AE92-3214B8B21932}) (Version: 48.47.50419 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.11 (x64) (HKLM-x32\...\{c4846f79-a633-4ae4-92a3-92fdbeb33da2}) (Version: 6.0.11.31823 - Microsoft Corporation)
Notion 7.5.2 (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\661f0cc6-343a-59cb-a5e8-8f6324cc6998) (Version: 7.5.2 - Notion Labs, Inc)
NZXT CAM 4.76.1 (HKLM\...\ac0666ae-ee66-5310-ac01-9d6348133b2d) (Version: 4.76.1 - NZXT, Inc.)
Obsidian (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\bd400747-f0c1-5638-a859-982036102edf) (Version: 1.11.7 - Obsidian)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.294.2.2 - Overwolf Ltd.)
PowerToys (Preview) (HKLM\...\{B192781D-0571-4144-BA95-43274BAF33CE}) (Version: 0.86.0 - Microsoft Corporation) Hidden
PowerToys (Preview) x64 (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\{7eb5eb19-d85f-4c0b-94ff-e2947d4cb6fc}) (Version: 0.86.0 - Microsoft Corporation)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9689.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.18.0312.2024 - Realtek)
Realtek PCI-E Wireless LAN WiFi 6 Driver (HKLM-x32\...\InstallShield_{F226CA8A-6F3D-429b-B310-776FEA12B17E}) (Version: Drv_3.00.0045 - REALTEK Semiconductor Corp.)
Revo Uninstaller 2.6.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.8 - VS Revo Group, Ltd.)
Riot Client  (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Riot Game Riot_Client.) (Version:  - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version:  - Riot Games, Inc.)
RyzenMasterSDK (HKLM\...\{1F022860-E6B9-402E-A96A-54BD53C98668}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden
Star Wars: The Old Republic (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\Star Wars - The Old Republic Installer) (Version: 6.1.1.12 - BioWare)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.59.3 - TeamViewer)
TeamViewer Meeting (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\TeamViewerMeeting) (Version: 15.57.5 - TeamViewer)
UE Prerequisites (x64) (HKLM\...\{9F18D9CE-84C9-4AEA-9421-38FD2AC30B77}) (Version: 1.0.21.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{e9d9f387-657e-40d8-8f5b-4fc1aa768343}) (Version: 1.0.21.0 - Epic Games, Inc.) Hidden
XIVLauncher (HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\XIVLauncher) (Version: 6.4.1 - goaaats)

Packages:
=========
Apple Music -> C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1538.24068.0_x64__nzyj5cx40ttqa [2026-01-28] (Apple Inc.)
Bitdefender CL Contextual Menu -> C:\Program Files\Bitdefender\Bitdefender Security App [2026-03-01] (Bitdefender)
FURY CTRL -> C:\Program Files\WindowsApps\KingstonTechnologyCompany.FURYCTRL_2.0.65.0_x64__5myjd26we8sq4 [2026-01-20] (Kingston Technology Company, Inc.) [Startup Task]
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.5.2.0_x64__8wekyb3d8bbwe [2025-12-09] (Microsoft Studios)
PowerToys FileLocksmith Context Menu -> C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps [2024-11-13] (Microsoft)
PowerToys ImageResizer Context Menu -> C:\Users\kalou\AppData\Local\PowerToys [2024-11-13] (Microsoft)
PowerToys PowerRename Context Menu -> C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps [2024-11-13] (Microsoft)
Real eBooks Reader -> C:\Program Files\WindowsApps\36059XiaoyaStudio.RealeBooksReader_2.2.5.0_x86__ngh7ertwt50re [2026-02-06] (Xiaoya Lab)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.331.0_x64__dt26b99r8h8gj [2025-02-02] (Realtek Semiconductor Corp)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0 [2026-02-27] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{0440049F-D1DC-4E46-B27B-98393D79486B}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{10144713-1526-46C9-88DA-1FB52807A9FF}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.SvgThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{51B4D7E5-7568-4234-B4BB-47FB3C016A69}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.ImageResizerExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{60789D87-9C3C-44AF-B18C-3DE2C2820ED3}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.MarkdownPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{703d069b-fa5d-b364-f02c-88afc0d18354}\localserver32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.PowerLauncher.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{729B72CD-B72E-4FE9-BCBF-E954B33FE699}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.QoiPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{77257004-6F25-4521-B602-50ECC6EC62A6}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.StlThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{84D68575-E186-46AD-B0CB-BAEB45EE29C0}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{A0257634-8812-4CE8-AF11-FA69ACAEAFAE}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.GcodePreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{AD856B15-D25E-4008-AFB7-AFAA55586188}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.QoiThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{D8034CFA-F34B-41FE-AD45-62FCBB52A6DA}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.MonacoPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{DD5CACDA-7C2E-4997-A62A-04A597B58F76}\localserver32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems Incorporated -> Adobe Systems)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{F2847CBE-CD03-4C83-A359-1A8052C1B9D5}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.GcodeThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1517938706-1828810823-68529143-1001_Classes\CLSID\{FCDD4EED-41AA-492F-8A84-31A1546226E0}\InprocServer32 -> C:\Users\kalou\AppData\Local\PowerToys\PowerToys.SvgPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2024-07-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ContextMenuHandlers2_S-1-5-21-1517938706-1828810823-68529143-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2024-11-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1517938706-1828810823-68529143-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2024-11-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1517938706-1828810823-68529143-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2024-11-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5_S-1-5-21-1517938706-1828810823-68529143-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\kalou\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2024-11-03] (Microsoft Corporation -> Microsoft Corporation)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\WINDOWS\system32\wdmaud2.drv [126976 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [78848 2026-02-10] (Microsoft Windows -> Microsoft Corporation)

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2016-10-12 01:08 - 2016-10-12 01:08 - 000124928 _____ () [File not signed] \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
2016-10-12 01:08 - 2016-10-12 01:08 - 000118272 _____ () [File not signed] \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
2016-10-12 01:08 - 2016-10-12 01:08 - 000166400 _____ () [File not signed] \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
2016-10-12 01:08 - 2016-10-12 01:08 - 000223232 _____ () [File not signed] \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2016-10-12 01:08 - 2016-10-12 01:08 - 000117248 _____ () [File not signed] \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
2026-03-01 20:40 - 2026-03-01 20:40 - 000116224 _____ () [File not signed] \\?\C:\Users\kalou\AppData\Local\Temp\3c1bd7e2-853e-488e-9394-72837ef607b7.tmp.node
2024-08-03 20:01 - 2024-06-19 08:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2024-08-02 01:18 - 2024-08-02 01:18 - 000126976 ____N (Microsoft Corporation) [File not signed] C:\WINDOWS\SYSTEM32\UpdatePolicyScenarioReliabilityAggregator.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\kalou\Desktop\FRST64.exe:BDU [0]
AlternateDataStreams: C:\Users\kalou\Downloads\revosetup.exe:BDU [0]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1517938706-1828810823-68529143-1001\Software\Classes\regfile:  <==== ATTENTION
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\Software\Classes\.reg:  =>  <==== ATTENTION
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\Software\Classes\.bat:  =>  <==== ATTENTION
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\Software\Classes\.cmd:  =>  <==== ATTENTION

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2021-06-05 13:08 - 2021-06-05 13:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: Realtek 8852CE WiFi 6E PCI-E NIC -> rtwlane602.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys

nt_rtf64: Realtek LightWeight Filter (NDIS6.40)

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1517938706-1828810823-68529143-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\kalou\Pictures\wallpaper\grady-frederick-final-005.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\StartupApproved\Run: => "Figma Agent"
HKU\S-1-5-21-1517938706-1828810823-68529143-1001\...\StartupApproved\Run: => "RiotClient"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{CE46C0E3-B856-48A1-86A0-42AEF5F74BD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UmamusumePrettyDerby\UmamusumePrettyDerby.exe () [File not signed]
FirewallRules: [{58A4E70A-D0BF-4FEE-88E4-59E7C67B5417}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UmamusumePrettyDerby\UmamusumePrettyDerby.exe () [File not signed]
FirewallRules: [{B2FB526A-3913-4B30-9AE3-AB4EAB487F4F}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\InfinityNikki.exe (Suzhou Nikki Co.,Ltd. -> Epic Games, Inc.)
FirewallRules: [{EEC5B8D6-06A5-473F-80DC-02CF8D4D87AB}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\X6Game\Binaries\Win64\X6Game-Win64-Shipping.exe (Suzhou Nikki Co.,Ltd. -> Infold Games)
FirewallRules: [{815B5277-5713-48C4-A237-A278761A3357}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\InfinityNikki.exe (Suzhou Nikki Co.,Ltd. -> Epic Games, Inc.)
FirewallRules: [{D8734991-DDD3-45CE-867E-A6C909FC06D7}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\X6Game\Binaries\Win64\X6Game-Win64-Shipping.exe (Suzhou Nikki Co.,Ltd. -> Infold Games)
FirewallRules: [{6D36CB86-8178-4591-A701-DC3359D9A111}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\InfinityNikki.exe (Suzhou Nikki Co.,Ltd. -> Epic Games, Inc.)
FirewallRules: [{76A4AA3F-D935-4E87-9B2B-EBF5400DAAAE}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\InfinityNikkiGlobal\X6Game\Binaries\Win64\X6Game-Win64-Shipping.exe (Suzhou Nikki Co.,Ltd. -> Infold Games)
FirewallRules: [{3E0890A3-F528-4A23-9BE8-5389A564328A}] => (Allow) C:\Program Files\InfinityNikkiGlobal Launcher\1.0.9\xstarter.exe => No File
FirewallRules: [{D188A3A3-E6B1-4483-A6EC-49546E09A8A7}] => (Allow) D:\SteamLibrary\steamapps\common\Reka\Reka.exe () [File not signed]
FirewallRules: [{0FF16453-8D6E-4DF7-AB07-B2B4CEDB55FC}] => (Allow) D:\SteamLibrary\steamapps\common\Reka\Reka.exe () [File not signed]
FirewallRules: [UDP Query User{75180D5D-C0CC-44F2-B9ED-2EDC354B0928}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe (NetEase (Hangzhou) Network Co., Ltd -> Netease Games)
FirewallRules: [TCP Query User{FADD86E5-F306-4EDA-A77A-D657D9062CC6}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe (NetEase (Hangzhou) Network Co., Ltd -> Netease Games)
FirewallRules: [{033A0C93-5062-45EF-9973-34AC6889A110}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe (NetEase (Hangzhou) Network Co., Ltd -> )
FirewallRules: [{6B6D5CEE-C26E-4FC6-BE30-1409CA4BC00F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe (NetEase (Hangzhou) Network Co., Ltd -> )
FirewallRules: [UDP Query User{D9A0475B-8120-42DB-AD9F-06677A8C28F3}E:\steamlibrary\steamapps\common\mtga\mtga.exe] => (Allow) E:\steamlibrary\steamapps\common\mtga\mtga.exe () [File not signed]
FirewallRules: [TCP Query User{1C1B907E-5D7B-437D-AA32-9A768168D1F6}E:\steamlibrary\steamapps\common\mtga\mtga.exe] => (Allow) E:\steamlibrary\steamapps\common\mtga\mtga.exe () [File not signed]
FirewallRules: [UDP Query User{8E112CBB-5C48-4F9E-9ACB-B2A11E546481}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{72246E53-1C07-4A83-97B4-93342710107C}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{9DE3033F-ED86-4BD7-9496-DD8A299828F4}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4420EAA4-8F39-4E6F-96F1-84B52FE4B7C3}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{61E98A1B-1282-4E25-84A9-E0B2C0B0D513}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{BC68ED1C-448A-48AF-90CD-C0AD2DEA0DBC}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A620FFCC-C738-4672-8172-17DDBC82707C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WorshippersOfCthulhu\WorshippersOfCthulhu.exe () [File not signed]
FirewallRules: [{C8849D47-9FAE-41C5-A2C6-91AA8605CDDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WorshippersOfCthulhu\WorshippersOfCthulhu.exe () [File not signed]
FirewallRules: [{BC252BA8-C627-41F7-A8B8-7CA657B0993D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worshippers of Cthulhu Demo\WorshippersOfCthulhu.exe () [File not signed]
FirewallRules: [{6356D702-2CCC-48EE-BD2C-19B5EE840CD7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worshippers of Cthulhu Demo\WorshippersOfCthulhu.exe () [File not signed]
FirewallRules: [{270F1502-531A-4E65-87D4-5BAEB1E70FAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Meadow\Meadow.exe () [File not signed]
FirewallRules: [{13DBC4CF-A753-49C2-97DA-E536A3822522}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Meadow\Meadow.exe () [File not signed]
FirewallRules: [UDP Query User{48DFC227-E627-4417-A7F6-F7039C6F3C2B}E:\steamlibrary\steamapps\common\war for the overworld\wftogame.exe] => (Allow) E:\steamlibrary\steamapps\common\war for the overworld\wftogame.exe () [File not signed]
FirewallRules: [TCP Query User{F5BFE5FD-334C-4FC9-BDB9-9E41A09FFA4E}E:\steamlibrary\steamapps\common\war for the overworld\wftogame.exe] => (Allow) E:\steamlibrary\steamapps\common\war for the overworld\wftogame.exe () [File not signed]
FirewallRules: [{63DBA39F-58FF-4CB5-ADDF-15B91009B40C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Townscaper\Townscaper.exe () [File not signed]
FirewallRules: [{34982035-0CA8-490D-8CCD-F1B78FD97D6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Townscaper\Townscaper.exe () [File not signed]
FirewallRules: [{043AFC6A-DD97-44B4-A57B-11D66EA7A107}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The WereCleaner\The WereCleaner.exe () [File not signed]
FirewallRules: [{5BB91E07-7E5F-41AF-AC09-EFF9A538EC2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The WereCleaner\The WereCleaner.exe () [File not signed]
FirewallRules: [UDP Query User{E48B86D8-7690-45E1-BF0A-D811901223B8}C:\program files (x86)\steam\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe (Larian Studios Games Ltd. -> )
FirewallRules: [TCP Query User{52791AB1-034E-4421-82D2-DB16796AEE72}C:\program files (x86)\steam\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe (Larian Studios Games Ltd. -> )
FirewallRules: [{1E6D17FB-FB76-4130-B7A4-BD6909A7138F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{9ADDA1CA-247F-4D85-9625-4D5F72BD0C2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{854806CE-E0E2-4F9D-B04D-74072FA26281}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlock\game\bin\win64\project8.exe => No File
FirewallRules: [{0D68F41C-83A2-455E-A4B5-DCA4560F2C56}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlock\game\bin\win64\project8.exe => No File
FirewallRules: [{6D1D700A-2186-4BB0-B8E8-FD823BA6A1DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire Survivors\VampireSurvivors.exe () [File not signed]
FirewallRules: [{97746528-5C64-4CDD-B034-C0E3E34E42BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire Survivors\VampireSurvivors.exe () [File not signed]
FirewallRules: [{50E83772-11ED-43E2-9D2E-81FCEAEB666C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cult of the Lamb\Cult Of The Lamb.exe () [File not signed]
FirewallRules: [{664077C5-5885-44B6-960B-05B1D53E62B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cult of the Lamb\Cult Of The Lamb.exe () [File not signed]
FirewallRules: [{87521A86-4C62-4FBA-9514-D0C5ADF52D39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{773C44B8-E90C-4E06-B052-15B35EB2A826}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{A989F6FD-6BA9-44FF-9AA3-3CB34B15F75C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin64\dontstarve_steam_x64.exe () [File not signed]
FirewallRules: [{AD397282-7044-49E4-AA80-7E27C222D4A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin64\dontstarve_steam_x64.exe () [File not signed]
FirewallRules: [UDP Query User{53BF5876-14EA-4EC0-90F4-C8E699661324}E:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) E:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [TCP Query User{7DD770E8-3F99-4923-955B-D36DF7FA4408}E:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) E:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [UDP Query User{5CFB6A2C-B2E7-42F5-968F-03DA27ABF8BB}E:\steamlibrary\steamapps\common\the first descendant\m1\binaries\win64\m1-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\the first descendant\m1\binaries\win64\m1-win64-shipping.exe (NEXON Korea Corporation. -> NEXON Games Co., Ltd)
FirewallRules: [TCP Query User{096E01DB-BBD2-4EC7-821D-C8B320AD7AAC}E:\steamlibrary\steamapps\common\the first descendant\m1\binaries\win64\m1-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\the first descendant\m1\binaries\win64\m1-win64-shipping.exe (NEXON Korea Corporation. -> NEXON Games Co., Ltd)
FirewallRules: [{DACD9A50-445B-43E9-84E1-DA55731ECEE3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{8AF87D37-00CC-432F-B279-D1BFE571E712}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{A71D0614-95B5-4DF9-A388-FEB6174A1AC4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B4A73156-90AD-4803-BAF0-3B13075583F4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BFB7BC40-172A-407E-A091-F2A90EA60EEC}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24165.1306.2986.9504_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C70805E7-1BBB-4A07-8675-D4C76B5490F9}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24165.1306.2986.9504_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0304F0F5-62B8-4FFC-904D-ABFBAB856269}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24165.1306.2986.9504_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C1923499-511C-44D2-AFE7-609F0F00CA0D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24165.1306.2986.9504_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3DDB9B2D-3A14-428D-9324-3C3D0660B118}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{727A1EF4-1755-49A7-92A8-CA386BEE94AF}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [TCP Query User{BC711C97-77E3-4EAC-8E14-374F149AC9D8}C:\users\kalou\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\kalou\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{D79462FA-C80A-4738-A4CF-E2CF166CDD37}C:\users\kalou\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\kalou\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{74A5C5E0-A38E-4B23-B596-7186C4B0EE33}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{541B4EFA-2DB1-425A-A881-3079413AD54C}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{50C31F85-C989-4957-9231-892A37453BF1}] => (Allow) E:\SteamLibrary\steamapps\common\Shashingo Learn Japanese with Photography\Shashingo.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{28446604-72E0-4AB7-94EE-3BCD5BE2B08D}] => (Allow) E:\SteamLibrary\steamapps\common\Shashingo Learn Japanese with Photography\Shashingo.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{DCD03035-931B-49F0-8C09-1010813B9290}] => (Allow) E:\SteamLibrary\steamapps\common\Naiad\NAIAD.exe () [File not signed]
FirewallRules: [{06092692-D631-4290-A91C-72C80CFF4822}] => (Allow) E:\SteamLibrary\steamapps\common\Naiad\NAIAD.exe () [File not signed]
FirewallRules: [{A7C5E5A4-2D0D-487D-9C7D-CDB45C2C6DF8}] => (Allow) E:\SteamLibrary\steamapps\common\Botany Manor\Botany Manor.exe () [File not signed]
FirewallRules: [{1E4FFFA9-26DF-410A-BE42-207D59EFC514}] => (Allow) E:\SteamLibrary\steamapps\common\Botany Manor\Botany Manor.exe () [File not signed]
FirewallRules: [{8EB2B2BA-09B5-4BDF-B435-BC72A97B0F17}] => (Allow) E:\SteamLibrary\steamapps\common\Little-Known Galaxy\Little-Known Galaxy.exe () [File not signed]
FirewallRules: [{275900C3-0E69-4F83-B1D7-1995BF6C10A4}] => (Allow) E:\SteamLibrary\steamapps\common\Little-Known Galaxy\Little-Known Galaxy.exe () [File not signed]
FirewallRules: [{A36CAED2-159B-4F05-94FD-578AF6A6DE5F}] => (Allow) E:\SteamLibrary\steamapps\common\Kind Words 2\Kind Words 2.exe () [File not signed]
FirewallRules: [{A054BF1F-FD06-40CD-BBE6-EF0C9E5D4C82}] => (Allow) E:\SteamLibrary\steamapps\common\Kind Words 2\Kind Words 2.exe () [File not signed]
FirewallRules: [{90024A0D-5B2C-46D3-A4A0-B4FE76EF1A58}] => (Allow) E:\SteamLibrary\steamapps\common\SUMMERHOUSE\SUMMERHOUSE.exe () [File not signed]
FirewallRules: [{15EA6FE1-E2C4-4F95-BC14-C85054538971}] => (Allow) E:\SteamLibrary\steamapps\common\SUMMERHOUSE\SUMMERHOUSE.exe () [File not signed]
FirewallRules: [{2F15844F-E896-4860-86C8-DEB68D6CD3A9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AD6E433D-B9B4-40E4-AA40-F73C51849DC1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{CBDA9398-ADB5-48BF-A073-00D6B37C004B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\On-Together Demo\On-TogetherDemo\On-TogetherDemo.exe () [File not signed]
FirewallRules: [{42FFF78B-D224-4A5D-AE3B-724D245E3B47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\On-Together Demo\On-TogetherDemo\On-TogetherDemo.exe () [File not signed]
FirewallRules: [TCP Query User{9F51D158-E421-4570-911A-B0FD6D7D626F}C:\program files (x86)\steam\steamapps\common\deadlock\game\bin\win64\deadlock.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\deadlock\game\bin\win64\deadlock.exe (Valve Corp. -> )
FirewallRules: [UDP Query User{E284AC0C-8314-4C27-9CF2-9336E16381C4}C:\program files (x86)\steam\steamapps\common\deadlock\game\bin\win64\deadlock.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\deadlock\game\bin\win64\deadlock.exe (Valve Corp. -> )
FirewallRules: [{8BE876E9-32DD-4F00-AEA0-C3842FD9BF00}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1538.24068.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{A1B5F8D6-9037-4296-A6E8-2E2286C2DFEB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1538.24068.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{7C960EAC-9214-4466-B571-4960EA5E7456}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1538.24068.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{5E6FE019-6020-435E-91C9-83CEA3673974}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1538.24068.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{F321635A-C7DE-40D8-AE53-7F814A4A91EE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{36E284CC-AAA1-4299-B376-D281BD46818D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3270C2FC-F741-4DBC-A5B5-B61F7A66EB09}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{61576966-508E-4E7A-A1A4-A2BF1E81B9BB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{17E879F4-89EA-41F7-9E11-D95ED6F7D589}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A3541041-B814-4604-9739-5CADF57A2BDF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DD2DC689-5AC5-4956-9068-1CF824563CEE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E8FC7EE1-13E4-45DE-89CD-BFBB47D6E2B9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3D91230B-E4CD-430E-B83A-47773D514130}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E21F8073-D73C-4029-A337-94266FDF9E0E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4814ADB9-1940-422C-B976-0000260128F4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A4BD774F-75C8-477C-897C-D6122AC61475}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B85163C-1B9D-4735-A6D3-E028C9BF973A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F6213CB4-8D76-466F-874E-6FE1DFC51353}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{00DC46E9-305D-44CC-AE9C-97F569773DB0}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{34175FEA-1192-4517-AAA6-10AB6875FCB0}] => (Block) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{A2CCEF26-69D9-45E1-890B-68AF24F5BDFF}] => (Block) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{1B33F5A9-0B33-4315-AD9A-B65CAB822E15}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{963FE564-9B40-4C97-BB58-5D7A63005354}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{6D8DCBF2-2DDA-41D0-8300-4F3CCCA8D912}] => (Block) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{09043BCA-B7C4-40A0-9AFC-48B229D0EC4F}] => (Block) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{DE2BFFBF-7345-4190-B604-A5C8FF1E32DA}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.2.2\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{B4A6B407-920C-4DA1-956C-6C53DBED6B51}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.2.2\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{49DBDE9E-3A25-4F0A-BBC4-42D85B79C5BB}] => (Allow) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (Bitdefender SRL -> Bitdefender)

==================== Restore Points =========================

25-02-2026 11:08:20 Instalační služba modulů systému Windows
01-03-2026 13:11:24 Windows Update
01-03-2026 13:11:24 Windows Update
01-03-2026 13:11:25 Windows Update

==================== Faulty Device Manager Devices ============
Name: AMD Radeon(TM) Graphics
Description: AMD Radeon(TM) Graphics
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Advanced Micro Devices, Inc.
Service: amduw23g-420529-5f0fe368
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Event log errors: ========================

Application errors:
==================
Error: (03/01/2026 08:13:03 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/01/2026 08:13:03 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/01/2026 08:13:03 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/01/2026 08:13:03 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/01/2026 08:13:01 PM) (Source: CAM Service) (EventID: 1) (User: )
Description: request thread encountered an error: Failed to send result: io error: Přesměrování se uzavírá. (os error 232)

Error: (03/01/2026 07:34:55 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/01/2026 07:34:55 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/01/2026 07:34:55 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..


System errors:
=============
Error: (03/01/2026 08:45:13 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Updated Secure Boot certificates are available on this device but have not yet been applied to the firmware. Review the published guidance to complete the update and maintain full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F31b;OEMModelNumber:B650M AORUS ELITE AX ICE;OEMModelBaseBoard:B650M AORUS ELITE AX ICE;OEMModelSystemFamily:B650 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: 4b5ffa98314ad0c2a141ca7eecf38956ecdd2b664d19538f0e84d9be181d6644
BucketConfidenceLevel: Under Observation - More Data Needed
UpdateType: 
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.

Error: (03/01/2026 08:40:53 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Adaptér výkonu rozhraní WMI byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (03/01/2026 08:40:12 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba HitmanPro38CrusaderBoot skončila s následující chybou specifickou pro službu: 
Operace byla dokončena úspěšně.

Error: (03/01/2026 08:39:21 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
Přístup byl odepřen.

Error: (03/01/2026 08:39:20 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
Přístup byl odepřen.

Error: (03/01/2026 08:39:14 PM) (Source: DCOM) (EventID: 10010) (User: MIKI)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/01/2026 08:39:14 PM) (Source: DCOM) (EventID: 10010) (User: MIKI)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/01/2026 08:39:14 PM) (Source: DCOM) (EventID: 10010) (User: MIKI)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================
Date: 2026-03-01 20:04:53
Description: 
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Malgent&threatid=2147794830&enterprise=0
Název: Trojan:Win32/Malgent
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\ProgramData\nt_authenticate_rtm\BugSplat64.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: Miki\kalou
Název procesu: C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-27-26D55C19-73F1-4BCA-A0F9-D9EC7F2C9D61\bdpretraining.exe
Verze bezpečnostních informací: AV: 1.445.303.0, AS: 1.445.303.0, NIS: 1.445.303.0
Verze modulu: AM: 1.1.26010.1, NIS: 1.1.26010.1 

Date: 2026-03-01 01:59:53
Description: 
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{28C865EC-1C75-4142-B69A-C67892300433}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ŉ  %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŞĉђěδυŀзď şсåл ẃãŝ śкϊрρеđ ъè¢àϋšє тнè ŀаѕť ŝų¢сзŝšƒυĺ ѕçâń ωàş ώіτђĭŉ τђэ ľăŝŧ 7 đаўś 

Date: 2026-02-27 23:36:44
Description: 
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{7AA328F4-C909-4D80-8619-B982FBBFA365}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ŉ  %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŞĉђěδυŀзď şсåл ẃãŝ śкϊрρеđ ъè¢àϋšє тнè ŀаѕť ŝų¢сзŝšƒυĺ ѕçâń ωàş ώіτђĭŉ τђэ ľăŝŧ 7 đаўś 

Date: 2026-02-27 00:51:27
Description: 
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{088FF775-3236-4EC6-A620-F7BB002B4310}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ŉ  %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŞĉђěδυŀзď şсåл ẃãŝ śкϊрρеđ ъè¢àϋšє тнè ŀаѕť ŝų¢сзŝšƒυĺ ѕçâń ωàş ώіτђĭŉ τђэ ľăŝŧ 7 đаўś 

Date: 2026-02-25 23:59:24
Description: 
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{85E9D643-978A-4052-949D-60F8F1958225}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ŉ  %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŞĉђěδυŀзď şсåл ẃãŝ śкϊрρеđ ъè¢àϋšє тнè ŀаѕť ŝų¢сзŝšƒυĺ ѕçâń ωàş ώіτђĭŉ τђэ ľăŝŧ 7 đаўś 
﻿Event[0]

Date: 2026-03-01 20:19:50
Description: 
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.  
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby. 

Date: 2026-01-24 20:26:51
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.443.798.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.25110.1
Kód chyby: 0x80072ee2
Popis chyby: Operace nebyla v požadované době dokončena.  

Date: 2025-08-11 11:09:37
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.435.73.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.25070.4
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.  

Date: 2025-08-11 11:09:37
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.435.73.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.25070.4
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.  

Date: 2025-08-11 11:09:37
Description: 
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 
Předchozí verze bezpečnostních informací: 1.435.73.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 
Předchozí verze modulu: 1.1.25070.4
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.  

CodeIntegrity:
===============
Date: 2026-03-01 20:55:05
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdamsi\dlls_267059357120000000\antimalware_provider64.dll that did not meet the Windows signing level requirements. 

Date: 2026-03-01 20:51:56
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\kalou\AppData\Local\Discord\app-1.0.9226\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\OWClient.dll that did not meet the Microsoft signing level requirements. 

Date: 2026-03-01 20:51:56
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\kalou\AppData\Local\Discord\app-1.0.9226\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements. 

Date: 2026-03-01 20:40:47
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\NZXT CAM\NZXT CAM.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\OWClient.dll that did not meet the Microsoft signing level requirements. 

Date: 2026-03-01 20:40:47
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\NZXT CAM\NZXT CAM.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements. 

Date: 2026-03-01 20:40:47
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\NZXT CAM\NZXT CAM.exe) attempted to load \Device\HarddiskVolume3\Program Files\NZXT CAM\vulkan-1.dll that did not meet the Microsoft signing level requirements. 


==================== Memory info =========================== 

BIOS: American Megatrends International, LLC. F31b 07/23/2024
Motherboard: Gigabyte Technology Co., Ltd. B650M AORUS ELITE AX ICE
Processor: AMD Ryzen 5 7600X 6-Core Processor 
Percentage of memory in use: 45%
Total physical RAM: 31861.84 MB
Available physical RAM: 17246.59 MB
Total Virtual: 33909.84 MB
Available Virtual: 14511.59 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.7 GB) (Free:163.47 GB) (Model: Samsung SSD 990 PRO 1TB) NTFS
Drive d: () (Fixed) (Total:223.08 GB) (Free:27.18 GB) (Model: KINGSTON SHSS37A240G) NTFS
Drive e: (SSD) (Fixed) (Total:953.85 GB) (Free:164.75 GB) (Model: Apacer AS350 1TB) NTFS

\\?\Volume{4493fafc-5fa3-420b-af65-3d3ef3863e80}\ () (Fixed) (Total:0.7 GB) (Free:0.05 GB) NTFS
\\?\Volume{ba5fbc33-b5dd-4468-b9fb-349269ef43b8}\ (Bitdefender Virtual Disk) (Fixed) (Total:0.03 GB) (Free:0.02 GB) NTFS
\\?\Volume{8df2f1cb-0000-0000-0000-40c537000000}\ () (Fixed) (Total:0.49 GB) (Free:0.08 GB) NTFS
\\?\Volume{f1dafa35-80e5-4ec8-9a5b-153d3b315568}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 8DF2F1CB)
Partition 1: (Not Active) - (Size=223.1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=498 MB) - (Type=27)

==========================================================
Disk: 1 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 3 (Protective MBR) (Size: 32 MB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================