Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-06-2026
Ran by vercimak (10-06-2026 22:01:14)
Running from C:\Users\verci\OneDrive\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6466 (X64) (2025-10-20 08:36:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3142530377-952368713-1920668173-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3142530377-952368713-1920668173-503 - Limited - Disabled)
Guest (S-1-5-21-3142530377-952368713-1920668173-501 - Limited - Disabled)
vercimak (S-1-5-21-3142530377-952368713-1920668173-1001 - Administrators - Enabled) => C:\Users\verci
WDAGUtilityAccount (S-1-5-21-3142530377-952368713-1920668173-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Enabled - Up to date) {A537353A-1D6A-F6B5-9153-CE1CF80FBE66}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Reader XI - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-041B-0000-0000000FF1CE}_PROPLUS_{9A8C39B0-D27F-4F81-BE74-2FECF164707E}) (Version:  - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-041B-0000-0000000FF1CE}_PROPLUS_{CE23B3DC-18CC-46FC-A309-81D6670F8D3D}) (Version:  - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-041B-0000-0000000FF1CE}_PROPLUS_{D6DBF512-87C0-4F6A-8FB9-AC3A389D9DE5}) (Version:  - Microsoft)
Discord (HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\Discord) (Version: 1.0.9059 - Discord Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 149.0.7827.54 - Google LLC)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.5171 - Intel Corporation)
KMPlayer 64X (HKLM\...\KMPlayer 64X) (Version: 2026.1.26.43 - PandoraTV)
Malwarebytes version 5.5.7.255 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.7.255 - Malwarebytes)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.25 (x64) (HKLM\...\{55218133-14C8-4372-A748-614DE61D6AAA}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.25 (x64) (HKLM\...\{D0E1D031-D6BB-43A5-BD42-175C0C4EE245}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.25 (x64) (HKLM\...\{99B0C384-9362-4D4E-8DAF-23CA44E306E8}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 149.0.4022.62 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 149.0.4022.52 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-041B-1000-0000000FF1CE}_PROPLUS_{8382BA92-20E3-47B6-971B-F673F0492D4E}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-041B-0000-0000000FF1CE}_PROPLUS_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-041B-0000-0000000FF1CE}_PROPLUS_{8382BA92-20E3-47B6-971B-F673F0492D4E}) (Version:  - Microsoft) Hidden
Microsoft Office Access MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0015-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0016-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office InfoPath MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0044-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001A-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0018-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2007 (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (HKLM-x32\...\{90120000-001F-040E-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Slovak) 2007 (HKLM-x32\...\{90120000-002C-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}_PROPLUS_{0B7A4B67-2A38-42B1-9857-662FAB361E08}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-040E-0000-0000000FF1CE}_PROPLUS_{0AD4BB83-13B4-4C9D-9BAC-7F64E0B2D5D7}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}_PROPLUS_{FDF9A959-241A-4662-A8DE-7DED9C22D160}) (Version:  - Microsoft) Hidden
Microsoft Office Publisher MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0019-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Slovak) 2007 (HKLM\...\{90120000-002A-041B-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Slovak) 2007 (HKLM-x32\...\{90120000-006E-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001B-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\OneDriveSetup.exe) (Version: 26.088.0510.0004 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.25 (x64) (HKLM\...\{C5343D9A-9640-4351-90D2-F6CF157C208E}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.25 (x64) (HKLM-x32\...\{64c75e04-ef03-4544-b153-24860eac8d23}) (Version: 8.0.25.35812 - Microsoft Corporation)
NVIDIA Grafický ovládač 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation)
Plarium Play (HKLM-x32\...\{9dbc66e8-ff60-4cf2-acf6-335ba456fd8e}) (Version: 10.9.0 - Plarium)
PlariumPlay (HKLM-x32\...\{A1847511-179D-48A1-B7FE-0B645BF16C36}) (Version: 10.9.0 - Plarium) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8117 - Realtek Semiconductor Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.4.193 - Synaptics Incorporated)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
Windows Kontrola stavu počítača (HKLM\...\{995C446A-850D-44EA-BB71-156C271D9428}) (Version: 3.7.2204.15001 - Microsoft Corporation)
WinRAR 7.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.11.0 - win.rar GmbH)

Chrome apps:
============
YouTube (HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\eac25a851e77cca7ae78c1c595ac541e) (Version: 1.0 - Google\Chrome)

Packages:
=========
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-10-20] (NVIDIA Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3142530377-952368713-1920668173-1001_Classes\CLSID\{5460306b-c286-9043-0b51-b985cf38279e}\localserver32 -> C:\Users\verci\AppData\Local\PlariumPlay\10.7.0-0.0.1\dotnet\PlariumPlay.NetHost.exe (Plarium Global LTD -> PlariumPlay.NetHost)
CustomCLSID: HKU\S-1-5-21-3142530377-952368713-1920668173-1001_Classes\CLSID\{5cc8ac6e-7e74-3a3a-3be9-8a48f32fb70d}\localserver32 -> C:\Windows.old\Users\Dusan\AppData\Local\PlariumPlay\10.4.0-0.0.0\dotnet\PlariumPlay.NetHost.exe (Plarium Global LTD -> PlariumPlay.NetHost)
CustomCLSID: HKU\S-1-5-21-3142530377-952368713-1920668173-1001_Classes\CLSID\{a2aeeb00-70b4-d355-a9b5-2520e20ea3b1}\localserver32 -> C:\Users\verci\AppData\Local\PlariumPlay\10.9.0-0.0.0\dotnet\PlariumPlay.NetHost.exe (PlariumPlay.NetHost) [File not signed]
CustomCLSID: HKU\S-1-5-21-3142530377-952368713-1920668173-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2025-03-20] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2025-03-20] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-05-01] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2025-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvmiig.inf_amd64_ad6e6169787ef539\nvshext.dll [2025-10-20] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-05-01] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2025-03-20] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2025-03-20] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\verci\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_agimnkijcaahngcdmfeangaknmldooml\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\verci\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikácie Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\verci\OneDrive\Desktop\FRST64.exe:MBAM.Zone.Identifier [225]
AlternateDataStreams: C:\Users\verci\Downloads\DiscordSetup.exe:MBAM.Zone.Identifier [155]
AlternateDataStreams: C:\Users\verci\Downloads\SteamSetup.exe:MBAM.Zone.Identifier [147]
AlternateDataStreams: C:\Users\verci\Downloads\windowsdesktop-runtime-6.0.36-win-x64.exe:MBAM.Zone.Identifier [185]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.0.0.1 - 192.168.17.1
Windows Firewall is enabled.

Network Binding:
=============
mbvpn: WireGuard Tunnel -> wireguard.sys
mbvpn 1: WireGuard Tunnel -> mbtun.sys
Wi-Fi: Intel(R) Dual Band Wireless-AC 3160 -> Netwbw02.sys
Ethernet: Killer E2200 Gigabit Ethernet Controller -> e2xw10x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3142530377-952368713-1920668173-1001\Control Panel\Desktop\\Wallpaper -> 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_88893C1BF5C6D07FD71C161A1850519C"
HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3142530377-952368713-1920668173-1001\...\StartupApproved\Run: => "Discord"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C5B18B17-D04D-4CE5-843B-EFF998C10B9C}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe => No File
FirewallRules: [{DC2929C9-B8D9-4DC9-8545-29FA88219ACE}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe => No File
FirewallRules: [{277F52B6-B4AA-433A-910D-57CD023B19CC}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe => No File
FirewallRules: [{069665E9-7237-4EAF-AEED-34141FA90A78}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe => No File
FirewallRules: [TCP Query User{B5D32068-343B-4038-9D41-744E5AE845EC}C:\users\verci\appdata\local\plariumplay\standaloneapps\saga-of-survival\21\saga of survival.exe] => (Allow) C:\users\verci\appdata\local\plariumplay\standaloneapps\saga-of-survival\21\saga of survival.exe (Plarium Global Ltd -> )
FirewallRules: [UDP Query User{F6A29C43-7837-490D-BE90-53C18C5DD060}C:\users\verci\appdata\local\plariumplay\standaloneapps\saga-of-survival\21\saga of survival.exe] => (Allow) C:\users\verci\appdata\local\plariumplay\standaloneapps\saga-of-survival\21\saga of survival.exe (Plarium Global Ltd -> )
FirewallRules: [{410FC1CD-3353-448A-9961-F73BB675B7A8}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{0E124EE6-1744-4446-8916-7EC4FC23588B}] => (Allow) D:\Hry\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B3EBDA5D-DFA7-458D-A0FC-697E7B68DAC9}] => (Allow) D:\Hry\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B9474249-4761-450D-93CA-44B1734711AF}] => (Allow) D:\Hry\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D5ACA47C-6A16-47FB-A6C5-2C2B6EF19C30}] => (Allow) D:\Hry\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============
Name: Radio Switch Device
Description: Radio Switch Device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: ENE TECHNOLOGY INC.
Service: mshidumdf
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Event log errors: ========================

Application errors:
==================
Error: (06/10/2026 10:02:26 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
].


Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: 13
   Snapshot Context: 13
   Execution Context: Coordinator

Error: (06/10/2026 10:02:26 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} and name SW_PROV cannot be started. [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.]

Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: 13
   Snapshot Context: 13
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
].


Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: -1
   Snapshot Context: -1
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} and name SW_PROV cannot be started. [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.]

Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: -1
   Snapshot Context: -1
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
].


Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Check If Volume Is Supported by Provider
   Add a Volume to a Shadow Copy Set

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: 29
   Snapshot Context: 29
   Execution Context: Coordinator
   Provider ID: {00000000-0000-0000-0000-000000000000}
   Volume Name: \\?\Volume{b215dc5f-afcf-4647-93fe-ae71be5cf838}\
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} and name SW_PROV cannot be started. [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.]

Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Check If Volume Is Supported by Provider
   Add a Volume to a Shadow Copy Set

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: 29
   Snapshot Context: 29
   Execution Context: Coordinator
   Provider ID: {00000000-0000-0000-0000-000000000000}
   Volume Name: \\?\Volume{b215dc5f-afcf-4647-93fe-ae71be5cf838}\
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
].


Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: -1
   Snapshot Context: -1
   Execution Context: Coordinator

Error: (06/10/2026 09:58:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} and name SW_PROV cannot be started. [0x80070422, The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.]

Operation:
   Obtain a callable interface for this provider
   List interfaces for all providers supporting this context
   Query Shadow Copies

Context:
   Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshot Context: -1
   Snapshot Context: -1
   Execution Context: Coordinator


System errors:
=============
Error: (06/10/2026 09:31:57 PM) (Source: DCOM) (EventID: 10005) (User: DUSAN-VERCIMAK)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}

Error: (06/10/2026 09:31:57 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Spustenie služby Network Connection Broker, od ktorej závisí služba Connected Devices Platform Service, zlyhalo kvôli nasledujúcej chybe: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (06/10/2026 09:31:55 PM) (Source: DCOM) (EventID: 10005) (User: DUSAN-VERCIMAK)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}

Error: (06/10/2026 09:31:55 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Spustenie služby Network Connection Broker, od ktorej závisí služba Connected Devices Platform Service, zlyhalo kvôli nasledujúcej chybe: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (06/10/2026 09:23:22 PM) (Source: DCOM) (EventID: 10005) (User: DUSAN-VERCIMAK)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}

Error: (06/10/2026 09:23:22 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Spustenie služby Network Connection Broker, od ktorej závisí služba Connected Devices Platform Service, zlyhalo kvôli nasledujúcej chybe: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (06/10/2026 09:22:58 PM) (Source: DCOM) (EventID: 10005) (User: DUSAN-VERCIMAK)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}

Error: (06/10/2026 09:22:58 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Spustenie služby Network Connection Broker, od ktorej závisí služba Connected Devices Platform Service, zlyhalo kvôli nasledujúcej chybe: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.


Windows Defender:
================
Date: 2026-05-15 10:02:21
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Unknown

Date: 2026-03-19 22:41:35
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: RPC connection rundown

Date: 2026-03-19 22:37:01
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: RPC connection rundown

Date: 2026-02-22 02:00:23
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Full Scan
Stop Reason: Unknown

Date: 2025-12-06 01:28:23
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
﻿Event[0]:

Date: 2026-06-03 02:08:22
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Current
Error Code: 0x80501102
Error description: Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 
Security intelligence Version: 1.445.629.0;1.445.629.0
Engine Version: 1.1.26010.1

Date: 2026-05-26 01:02:14
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Backup
Error Code: 0x80070002
Error description: The system cannot find the file specified. 
Security intelligence Version: 1.445.629.0;1.445.629.0
Engine Version: 1.1.26010.1

Date: 2026-05-26 01:02:11
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Current
Error Code: 0x80070002
Error description: The system cannot find the file specified. 
Security intelligence Version: 1.449.625.0;1.449.625.0
Engine Version: 1.1.26030.3008

Date: 2026-05-26 01:02:11
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.451.92.0
Previous security intelligence Version: 1.449.625.0
Update Source: Security intelligence Update Folder
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version: 1.1.26040.8
Previous Engine Version: 1.1.26030.3008
Error code: 0x80070002
Error description: The system cannot find the file specified. 

Date: 2026-05-26 01:02:11
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.451.92.0
Previous security intelligence Version: 1.449.625.0
Update Source: Security intelligence Update Folder
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 1.1.26040.8
Previous Engine Version: 1.1.26030.3008
Error code: 0x80070002
Error description: The system cannot find the file specified. 

CodeIntegrity:
===============
Date: 2026-06-10 22:01:45
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. E16J2IMS.113 07/17/2015
Motherboard: Micro-Star International Co., Ltd. MS-16J2
Processor: Intel(R) Core(TM) i7-5700HQ CPU @ 2.70GHz
Percentage of memory in use: 36%
Total physical RAM: 16299.23 MB
Available physical RAM: 10350.87 MB
Total Virtual: 18731.23 MB
Available Virtual: 12768.62 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:423.7 GB) (Free:274.71 GB) (Model: WD Green M.2 2280 480GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:620.86 GB) (Model: HGST HTS721010A9E630) NTFS

\\?\Volume{b7599a14-48a9-4f6e-a365-5c60b0142bbc}\ (WinRE tools) (Fixed) (Total:0.59 GB) (Free:0.3 GB) NTFS
\\?\Volume{300f75ce-55f8-4290-851e-40e10fba75b8}\ (BIOS_RVY) (Fixed) (Total:22.43 GB) (Free:0.05 GB) NTFS
\\?\Volume{b7d6f257-00e1-4d56-9630-efb9689dd79d}\ (SYSTEM) (Fixed) (Total:0.29 GB) (Free:0.24 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 447.1 GB) (Disk ID: 9683B8F4)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 307A3CE1)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================