Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zabržděné PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Zabržděné PC

#1 Příspěvek od Cizap »

Dobrý večer,
poslední týden se mi z ničeho nic začal sekat notas, je to teda hodně špatný, když dělám v accessu, ale i když je zavřený a otevírám jiné programy, tak se PC seká, seká se myš, programy pozdě reagují na klik, atd. Prosím tedy, zda mi tady najdete nějakou příčinu, stav se zhoršil skokem, jeden den vše ok, druhý den tohle začalo. Když se podívám do správce úloh, tak zatížení procesoru je do 40% a pamět 60-70%. Předem díky, za pomoc a čas.


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-02-2025
Ran by Lenovo (administrator) on DESKTOP-D7P1O08 (LENOVO 20LJS3A100) (07-02-2025 18:32:04)
Running from C:\Users\Lenovo\Desktop\FRST64.exe
Loaded Profiles: Lenovo & SQLTELEMETRY$WINMED2 & MSSQL$WINMED2
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5371 (X64) Language: Čeština (Česko)
Default browser: "C:\Users\Lenovo\AppData\Local\Programs\Opera\opera.exe" -noautoupdate -- "%1"
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe
(AutoHotkey Foundation LLC) [File not signed] C:\Program Files\AutoHotkey\v2\AutoHotkey64.exe
(C:\Moje\utils+programy\WindowTop.v5.25.2.Portable\WindowTop.exe ->) (WindowTop.Info) [File not signed] C:\Moje\utils+programy\WindowTop.v5.25.2.Portable\WindowTop.exe
(C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe ->) (Palo Alto Networks -> Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe
(C:\Users\Lenovo\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Lenovo\AppData\Local\Programs\Opera\116.0.5366.71\opera_crashreporter.exe
(C:\Windows\splwow64.exe ->) (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.) [File not signed] C:\Program Files\Tracker Software\PDF-XChange Standard\pdfSaver.exe
(cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\Lenovo\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Discord Inc. -> Discord Inc.) C:\Users\Lenovo\AppData\Local\Discord\app-1.0.9177\Discord.exe <6>
(DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FNCC3C~1.INF\driver\shtctky.exe
(DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FNCC3C~1.INF\driver\tposd.exe
(DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxEM.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Lenovo\AppData\Local\Programs\Opera\opera.exe <41>
(explorer.exe ->) (Spotify AB -> Spotify Ltd) C:\Users\Lenovo\AppData\Roaming\Spotify\Spotify.exe <6>
(explorer.exe ->) (WindowTop.Info) [File not signed] C:\Moje\utils+programy\WindowTop.v5.25.2.Portable\WindowTop.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\15.1.0.12339\AdskLicensingService\AdskLicensingService.exe
(services.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_ece153ca769ec179\aesm_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_f222132bfa8270de\RstMwService.exe
(services.exe ->) (Key for TBT Legacy Driver -> Intel Corporation) C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\LITSSvc.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlceip.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlservr.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (Palo Alto Networks -> Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_e6fcc557ac12c616\WTabletServiceISD.exe <2>
(services.exe ->) (ZEROTIER, INC. -> ) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2411.1.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(sihost.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <6>
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxext.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22183.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22183.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2412.6.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.5363_none_7e1ab0d27c839437\TiWorker.exe
(TeamViewer Germany GmbH -> ) C:\Windows\Temp\nsu80EE.tmp\TvUpdateInfo.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GlobalProtect] => C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe [10641248 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
HKLM\...\Run: [Autodesk Access] => C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe [23042336 2024-05-21] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM\...\Run: [Bxsyscrb] => C:\Program Files\BFK\syscrb.exe (No File)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [sspk_global] => C:\Program Files (x86)\FunPlus\SOS - Last Warrior\Launcher.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Discord] => C:\Users\Lenovo\AppData\Local\Discord\Update.exe [1525016 2022-12-09] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Opera Browser Assistant] => C:\Users\Lenovo\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3996064 2024-03-04] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [MicrosoftEdgeAutoLaunch_5EF70F99B4529735F3564FFE246DB961] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911240 2024-12-19] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Spotify] => C:\Users\Lenovo\AppData\Roaming\Spotify\Spotify.exe [36280648 2025-02-07] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Policies\Explorer: []
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDT.DLL [509952 2023-06-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\Windows\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS200 series: C:\Windows\system32\CNMLMDT.DLL [1328640 2023-06-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\PDF-XChange Standard Port Monitor: C:\Windows\system32\pxcpm.dll [915280 2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\...\Authentication\Credential Providers: [{25CA8579-1BD8-469c-B9FC-6AC45A161C18}] -> C:\Windows\system32\PanV2CredProv.dll [2021-01-07] (Palo Alto Networks -> )
Startup: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk [2024-12-06]
ShortcutTarget: Hkeys.bat.lnk -> C:\Users\Lenovo\Documents\AutoHotkey\Hkeys.bat () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {70F1E981-BF42-4A97-A3DB-9865EB8CF8D9} - System32\Tasks\01-Pondělí Záloha WinMed_R => C:\WinMed2\BACKUP\01-WinMed2.bat (No File)
Task: {CFFAA2E8-D3EF-4BF5-BC9C-A68F729E3789} - System32\Tasks\02-Úterý Záloha WinMed_R => C:\WinMed2\BACKUP\02-WinMed2.bat (No File)
Task: {00A65FB0-BA39-4946-8A7C-768770F1489B} - System32\Tasks\03-Středa Záloha WinMed_R => C:\WinMed2\BACKUP\03-WinMed2.bat (No File)
Task: {04B8F18A-88DF-481B-B8A6-7DA5C2E598FD} - System32\Tasks\04-Čtvrtek Záloha WinMed_R => C:\WinMed2\BACKUP\04-WinMed2.bat (No File)
Task: {9E458EEB-8981-496A-84E4-F48EF30E0873} - System32\Tasks\05-Pátek Záloha WinMed_R => C:\WinMed2\BACKUP\05-WinMed2.bat (No File)
Task: {A344DB02-F789-45FA-AB87-004B19A13CFD} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {D6BC4EC6-2B7F-43DF-896F-34338E2A4B1C} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {C3D7D8DC-147E-4555-9124-A61B5733B179} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {956200D9-4BB7-4975-8C0B-8AE23305F2DA} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2311216 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {0B60BBCD-A564-4541-97A6-2DDBDFC3D4C5} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {64327FED-F7B1-4292-8CD5-1E7F4AED1DF7} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1431687685-2443868726-21383991-1001 => C:\Users\Lenovo\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [88584 2024-05-17] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {A4924E12-1DAD-43D6-9376-D76B6B180A1E} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [129368 2024-06-26] (Lenovo -> Lenovo)
Task: {17392E35-57BC-4421-A7B5-824F40BC7D64} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\Windows\SysWOW64\PowerMgrInst.exe [64984 2022-05-17] (Lenovo -> )
Task: {2755D9AE-4021-403A-8AC5-5E44536F4D64} - System32\Tasks\Microsoft\Windows\Conexant\AFA => C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232 2016-07-05] (Conexant Systems, Inc.) [File not signed] -> C:\Program Files\CONEXANT\cAudioFilterAgent\/uid:cAudioFilterAgent /delay:45
Task: {E92AF59E-E65B-42AE-B3F7-E9210D1E5733} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280 2017-06-07] (Conexant Systems, Inc. -> Conexant Systems, Inc.) -> C:\Program Files\CONEXANT\SAII\/c /delay:45
Task: {191112DD-F312-4E51-A0FC-8730ED74F2E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F7E358F0-5E67-44C9-A3AD-399F7F3884F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E9AFF866-6335-4219-9D40-E678CC4F49F6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {21A9317B-835C-4CB7-B173-A4822BFE7EF8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {14C761FC-A21A-4C4D-A3F9-29375B1E4C06} - System32\Tasks\Odeslání připomínající SMS z WINMEDu => C:\WinMed2\PosliSMS\PosliSMS.bat [525 2023-08-01] () [File not signed]
Task: {E8D50C26-1186-4DD8-B5CE-ADDAB9EE89EE} - System32\Tasks\Opera scheduled assistant Autoupdate 1671663169 => C:\Users\Lenovo\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Lenovo\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {A87D4E68-A06D-4CBA-A412-B04AEB50AD44} - System32\Tasks\Opera scheduled Autoupdate 1671663161 => C:\Users\Lenovo\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5656472 2025-01-28] (Opera Norway AS -> Opera Software)
Task: {AC219EDE-E373-4F84-9CB6-B7CFA96D2886} - System32\Tasks\PowerToys\Autorun for Lenovo => C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe [1231904 2025-01-24] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION
Task: {58A24D3C-C08C-462F-B034-73CEB03597E2} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {D5CEA618-61CA-4B7F-A87F-AD8D2A40472F} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {F930F94F-F1C7-491B-8847-6A67BCD26FDE} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {A5C228CB-2022-46FE-B91B-A34B61580C9E} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {27D55CB5-8A51-48E8-AF4A-8563FDE231CE} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-1431687685-2443868726-21383991-1001 => C:\Users\Lenovo\AppData\Roaming\Zoom\bin\Zoom.exe [435000 2024-12-04] (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\3496A716F523E243: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\3496A756B6F5B6C69656E647F53596D656C6F6E6E2E45445: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\542434D27457563747: [DhcpNameServer] 10.11.6.1 1.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\6556E616075637: [DhcpNameServer] 192.168.50.159
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\7416C616879702E4F647561303B283538326: [DhcpNameServer] 192.168.192.180
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\C4B43525: [DhcpNameServer] 194.213.212.4
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\C4B43525F5B61627166716E697: [DhcpNameServer] 194.213.212.4
Tcpip\..\Interfaces\{82a4a511-cef3-4b4f-9537-94a292984b23}: [DhcpNameServer] 10.11.6.1 1.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{d218b67e-067a-43bb-afd3-dab69813a27f}: [NameServer] 172.17.193.102,172.17.193.106

Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-07]
Edge Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-06]
Edge Extension: (Edge relevant text changes) - C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge HKLM\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo]
Edge HKLM-x32\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo]

FireFox:
========
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid]
CHR HKLM-x32\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid]

Opera:
=======
OPR DefaultProfile: Default

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [18184984 2024-11-20] (Autodesk, Inc. -> Autodesk)
R2 Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [13687584 2024-05-24] (Autodesk, Inc. -> Autodesk, Inc.)
R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [152312 2019-08-19] (Microsoft Windows -> Microsoft Corporation)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 IBMPMSVC; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmsvc.exe [1031408 2024-05-31] (Lenovo -> Lenovo)
R2 Lenovo Instant On; C:\Windows\SysWOW64\EasyResume.exe [2352368 2022-05-17] (Lenovo -> Lenovo Group Limited)
S4 LenovoBrightCtrl; C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\BrightnessControl.exe [160080 2024-07-29] (Lenovo -> Lenovo.)
R2 LITSSVC; C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\LITSSvc.exe [1099592 2024-07-29] (Lenovo -> Lenovo.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 LPlatSvc; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\LPlatSvc.exe [916312 2024-05-31] (Lenovo -> Lenovo)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSSQL$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlservr.exe [882768 2024-10-18] (Microsoft Corporation -> Microsoft Corporation)
R2 PanGPS; C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe [7389024 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [69864 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2024-07-07] (Even Balance, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 SQLAgent$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\SQLAGENT.EXE [727096 2024-10-18] (Microsoft Corporation -> Microsoft Corporation)
R2 SQLTELEMETRY$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlceip.exe [300968 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21819184 2025-01-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 TPHKLOAD; C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\TPHKLOAD.exe [473760 2021-10-22] (Lenovo -> Lenovo Group Limited)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroTierOneService; C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe [6698816 2024-04-17] (ZEROTIER, INC. -> )

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 dokan1; C:\Windows\System32\DRIVERS\dokan1.sys [386552 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Dokan Project)
S3 gpfltdrv; C:\Windows\system32\DRIVERS\gpfltdrv.sys [86824 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2024-03-25] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 IBMPMDRV; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmdrv.sys [56664 2024-05-31] (Lenovo -> Lenovo)
R3 MpKsl84984150; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41D9FB77-535D-4C86-98A3-85D7221CD7FA}\MpKslDrv.sys [267552 2025-02-07] (Microsoft Windows -> Microsoft Corporation)
S3 PanGpd; C:\Windows\system32\DRIVERS\pangpd.sys [67744 2021-01-07] (Palo Alto Networks -> Palo Alto Networks Inc.)
R1 PMDRVS; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\pmdrvs.sys [42328 2024-05-31] (Lenovo -> Lenovo)
S4 RsFx0700; C:\Windows\System32\DRIVERS\RsFx0700.sys [298392 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
S3 rtump64x64; C:\Windows\System32\drivers\rtump64x64.sys [1418184 2024-04-21] (Realtek Semiconductor Corp. -> Realtek Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 WacHIDRouterISDU; C:\Windows\System32\drivers\WacHIDRouterISDU.sys [136952 2022-04-21] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 zttap300; C:\Windows\System32\drivers\zttap300.sys [31744 2023-03-06] (Microsoft Windows Hardware Compatibility Publisher -> ZeroTier Networks LLC)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-02-07 18:32 - 2025-02-07 18:33 - 000033347 _____ C:\Users\Lenovo\Desktop\FRST.txt
2025-02-07 18:31 - 2025-02-07 18:31 - 002403328 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2025-02-07 09:08 - 2025-02-07 16:32 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Spotify
2025-02-07 09:07 - 2025-02-07 18:05 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Spotify
2025-02-07 09:07 - 2025-02-07 09:07 - 000001855 _____ C:\Users\Lenovo\Desktop\Spotify.lnk
2025-02-07 09:07 - 2025-02-07 09:07 - 000001841 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2025-02-05 14:52 - 2025-02-05 14:52 - 000000000 ____D C:\ProgramData\NeteaseWinDev
2025-02-05 14:51 - 2025-02-06 11:05 - 000000000 ____D C:\Program Files (x86)\FunPlus
2025-02-05 14:51 - 2025-02-05 14:53 - 000000000 ____D C:\Users\Lenovo\AppData\LocalLow\Kingsgroup
2025-02-05 13:06 - 2025-02-05 13:06 - 000649334 _____ C:\Users\Lenovo\Downloads\DPB_Faktura_4825950182.pdf
2025-02-04 06:24 - 2025-02-04 06:24 - 051585468 _____ C:\Users\Lenovo\Downloads\Master_3.2.2025_1907.zip
2025-02-03 12:04 - 2025-02-03 12:04 - 000089831 _____ C:\Users\Lenovo\Downloads\RD Čeněk_1.1.2 základy_250118.pdf
2025-02-03 11:52 - 2025-02-03 11:52 - 000151337 _____ C:\Users\Lenovo\Downloads\výškopis.dwg
2025-02-03 08:53 - 2025-02-03 08:53 - 051567495 _____ C:\Users\Lenovo\Downloads\Master_3.2.2025.zip
2025-01-30 16:27 - 2025-01-30 16:27 - 000033294 _____ C:\Users\Lenovo\Downloads\lekarsky_posudek.pdf
2025-01-30 16:25 - 2025-01-30 16:25 - 000245950 _____ C:\Users\Lenovo\Downloads\LÉKAŘSKÝ POSUDEK K ŘÍZENÍ VOZIDLA.pdf
2025-01-30 08:41 - 2025-01-30 08:41 - 051425963 _____ C:\Users\Lenovo\Downloads\Master_30.1.2025.zip
2025-01-30 08:06 - 2025-01-30 08:06 - 000000000 ____D C:\Windows\system32\Tasks\PowerToys
2025-01-30 08:06 - 2025-01-30 08:06 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview)
2025-01-30 08:06 - 2025-01-30 08:06 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PowerToys
2025-01-27 16:52 - 2025-01-27 16:52 - 000012856 _____ C:\Users\Lenovo\Downloads\Vývoj 2025.xlsx
2025-01-27 15:24 - 2025-01-27 15:24 - 051266808 _____ C:\Users\Lenovo\Downloads\Master_27.1.2025.zip
2025-01-27 11:08 - 2025-02-06 13:44 - 163319808 _____ C:\Users\Lenovo\Desktop\ddp.accdb
2025-01-27 11:08 - 2022-04-06 20:01 - 012361728 _____ C:\Users\Lenovo\Desktop\ddp_lib.accde
2025-01-27 11:08 - 2022-04-06 20:00 - 011661312 _____ C:\Users\Lenovo\Desktop\ddp_lib.accdb
2025-01-27 10:39 - 2025-01-27 10:39 - 043081462 _____ C:\Users\Lenovo\Downloads\ddp_2022_04_20_1730_Radovan.zip
2025-01-23 11:16 - 2025-01-23 11:16 - 051318026 _____ C:\Users\Lenovo\Downloads\Master_23.1.2025.zip
2025-01-22 21:07 - 2025-01-22 21:07 - 000072474 _____ C:\Users\Lenovo\Downloads\dorucenka_1469246182.pdf
2025-01-22 21:05 - 2025-01-22 21:05 - 000153154 _____ C:\Users\Lenovo\Downloads\VZP_tata (1).pdf
2025-01-22 21:05 - 2025-01-22 21:05 - 000034706 _____ C:\Users\Lenovo\Downloads\VZP_tata (2).pdf
2025-01-22 21:03 - 2025-01-22 21:03 - 000013576 _____ C:\Users\Lenovo\Downloads\priloha_1469246182_0_Textová zpráva.PDF
2025-01-22 14:52 - 2025-01-22 14:52 - 051300070 _____ C:\Users\Lenovo\Downloads\Master_21.01.2025.zip
2025-01-22 13:31 - 2025-01-22 13:31 - 000035321 _____ C:\Users\Lenovo\Downloads\Posudek o zdravotní způsobilosti k řízení motorových vozidel.pdf
2025-01-21 09:08 - 2025-01-21 10:39 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Tracker Software
2025-01-21 09:08 - 2025-01-21 09:09 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000001249 _____ C:\Users\Public\Desktop\PDF-XChange Office2PDF.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000001115 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000001097 _____ C:\Users\Public\Desktop\PDF Tools.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\FileOpen
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\Program Files\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\Program Files\Common Files\Tracker Software
2025-01-21 09:06 - 2024-10-15 17:07 - 000915280 _____ (PDF-XChange Co Ltd.) C:\Windows\system32\pxcpm.dll
2025-01-20 12:27 - 2025-01-20 12:58 - 000001665 _____ C:\Users\Lenovo\Desktop\WindowTop.lnk
2025-01-20 12:07 - 2025-01-20 12:07 - 000000000 ____D C:\Program Files\Sublime Text
2025-01-17 20:36 - 2025-01-17 20:36 - 000000412 __RSH C:\ProgramData\ntuser.pol
2025-01-17 20:32 - 2025-01-17 20:36 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Rufus
2025-01-15 19:49 - 2025-01-17 15:42 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\WindowsDefender
2025-01-15 19:49 - 2025-01-15 19:49 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Imminent
2025-01-15 19:31 - 2025-01-15 19:31 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\SKL
2025-01-15 19:31 - 2025-01-15 19:31 - 000000000 ____D C:\Program Files (x86)\tsk
2025-01-15 14:25 - 2025-01-15 14:25 - 000000000 ___HD C:\$WinREAgent
2025-01-14 09:44 - 2025-01-14 09:44 - 000083945 _____ C:\Users\Lenovo\Downloads\E8FB4B.pdf
2025-01-10 09:17 - 2025-01-10 09:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2025-01-10 09:16 - 2025-12-15 15:44 - 000000000 ____D C:\Program Files (x86)\Microsoft Works
2025-01-10 09:16 - 2025-01-10 09:16 - 000000000 ____D C:\Windows\PCHEALTH
2025-01-10 09:15 - 2025-01-10 09:15 - 000000000 ____D C:\Program Files\Microsoft Office
2025-01-10 09:14 - 2025-01-10 09:15 - 000000000 ____D C:\Windows\SHELLNEW
2025-01-10 09:14 - 2025-01-10 09:14 - 000000000 __RHD C:\MSOCache
2025-01-10 08:34 - 2025-01-10 08:34 - 000000000 ____D C:\Users\Lenovo\Downloads\runtime2007
2025-01-10 07:59 - 2025-01-10 07:59 - 035934145 _____ C:\Users\Lenovo\Downloads\ddp.zip

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-01-20 15:41 - 2022-12-20 09:03 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-01-20 15:41 - 2022-12-20 09:03 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-02-07 18:33 - 2023-09-03 19:02 - 000003836 _____ C:\Windows\system32\Tasks\YTPXCheck
2025-02-07 18:32 - 2023-07-31 19:33 - 000000000 ____D C:\FRST
2025-02-07 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-02-07 18:30 - 2023-01-02 15:57 - 000000000 ____D C:\WinMed2
2025-02-07 18:11 - 2022-12-26 14:25 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\discord
2025-02-07 18:05 - 2023-01-18 10:04 - 001388432 _____ C:\Users\Public\VOIP.dat
2025-02-07 18:05 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports
2025-02-07 11:46 - 2022-12-20 09:03 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-02-07 11:08 - 2022-12-21 21:01 - 000000000 ____D C:\Users\Lenovo\AppData\Local\D3DSCache
2025-02-07 11:08 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-02-07 11:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-02-07 09:10 - 2022-12-20 09:07 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Packages
2025-02-07 08:59 - 2023-02-10 23:01 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
2025-02-07 08:59 - 2023-02-10 23:00 - 000000000 ____D C:\Program Files\VideoLAN
2025-02-06 13:47 - 2022-12-26 14:21 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Access
2025-02-06 11:05 - 2022-12-26 00:32 - 000000000 ___RD C:\Users\Lenovo\Desktop\Hry
2025-02-06 10:38 - 2022-12-20 09:08 - 000000000 ____D C:\ProgramData\Packages
2025-02-06 09:06 - 2022-12-22 14:57 - 000000000 ____D C:\Moje
2025-02-05 14:51 - 2024-05-07 21:18 - 000000000 ____D C:\Users\Lenovo\AppData\Local\cache
2025-02-05 13:26 - 2019-12-07 15:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2025-02-04 08:38 - 2022-12-22 15:19 - 000000000 ____D C:\MASTER Winmed2
2025-02-03 10:15 - 2023-01-05 15:56 - 000000000 ____D C:\Registrace_Vyvoj
2025-02-03 08:13 - 2022-12-21 23:52 - 000004274 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1671663161
2025-02-03 08:13 - 2022-12-21 23:52 - 000001389 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-01-30 16:23 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Šablony
2025-01-30 10:59 - 2022-12-25 17:17 - 000106160 _____ C:\Users\Lenovo\AppData\Local\GDIPFONTCACHEV1.DAT
2025-01-30 10:59 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\UProof
2025-01-30 08:06 - 2024-08-28 19:10 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Package Cache
2025-01-29 15:12 - 2023-01-01 17:14 - 000000000 ____D C:\Program Files\TeamViewer
2025-01-29 15:12 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-01-28 17:21 - 2022-12-20 10:10 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PlaceholderTileLogoFolder
2025-01-24 08:11 - 2022-12-26 14:25 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Discord
2025-01-23 17:38 - 2024-07-26 09:08 - 000000000 ____D C:\ProgramData\boost_interprocess
2025-01-22 13:10 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Word
2025-01-21 08:45 - 2023-01-06 16:37 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Excel
2025-01-20 12:07 - 2022-12-25 17:20 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Sublime Text
2025-01-18 13:20 - 2022-12-20 10:12 - 002035326 _____ C:\Windows\system32\PerfStringBackup.INI
2025-01-18 13:20 - 2019-12-07 15:43 - 000838290 _____ C:\Windows\system32\perfh005.dat
2025-01-18 13:20 - 2019-12-07 15:43 - 000194490 _____ C:\Windows\system32\perfc005.dat
2025-01-18 13:14 - 2024-12-29 00:58 - 000000000 ____D C:\Users\Lenovo\AppData\Local\LogMeIn Hamachi
2025-01-18 13:12 - 2022-12-20 10:36 - 000000000 __SHD C:\Users\Lenovo\IntelGraphicsProfiles
2025-01-18 13:12 - 2022-12-20 10:36 - 000000000 ____D C:\Intel
2025-01-18 13:12 - 2022-12-20 09:03 - 000008192 ___SH C:\DumpStack.log.tmp
2025-01-18 13:12 - 2022-12-20 09:03 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-01-18 13:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2025-01-18 13:11 - 2019-12-07 10:03 - 001048576 _____ C:\Windows\system32\config\BBI
2025-01-17 19:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2025-01-17 19:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2025-01-17 15:38 - 2022-12-20 09:03 - 000475680 _____ C:\Windows\system32\FNTCACHE.DAT
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2025-01-15 16:05 - 2024-12-23 10:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\SuperSlicer
2025-01-15 16:03 - 2024-01-30 12:56 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\PrusaSlicer
2025-01-15 16:03 - 2023-03-11 09:35 - 000000125 _____ C:\ProgramData\autoclickconfig.ini
2025-01-15 14:34 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2025-01-15 14:30 - 2022-12-20 09:07 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-01-15 14:05 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Office
2025-01-15 11:37 - 2022-12-20 10:11 - 000000000 ____D C:\Windows\system32\MRT
2025-01-15 11:34 - 2023-05-19 13:36 - 000000000 ____D C:\Program Files\dotnet
2025-01-15 11:34 - 2022-12-22 15:55 - 000000000 ____D C:\ProgramData\Package Cache
2025-01-15 11:34 - 2022-12-20 10:11 - 206927936 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-01-14 08:28 - 2022-12-20 09:07 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Credentials
2025-01-11 19:09 - 2023-03-19 14:46 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Kodi
2025-01-10 16:13 - 2023-01-05 16:20 - 000000000 ____D C:\MASTER Registrace
2025-01-10 15:42 - 2024-11-04 07:42 - 000296488 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_6.dll
2025-01-10 15:42 - 2023-03-19 16:13 - 002872896 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-01-10 15:42 - 2023-03-19 16:13 - 000153152 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-01-10 15:42 - 2023-03-19 16:13 - 000124456 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-01-10 15:42 - 2023-03-19 16:13 - 000075328 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-01-10 15:41 - 2023-03-19 16:13 - 000775720 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-01-10 15:41 - 2023-03-19 16:13 - 000259648 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-01-10 15:41 - 2023-03-19 16:13 - 000243264 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-01-10 09:16 - 2023-05-19 08:59 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2025-01-10 09:16 - 2022-12-25 16:55 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-01-10 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2025-01-10 09:11 - 2022-12-26 14:25 - 000002248 _____ C:\Users\Lenovo\Desktop\Discord.lnk
2025-01-10 09:03 - 2023-05-19 08:59 - 000000000 ____D C:\Program Files (x86)\MSBuild
2025-01-08 16:03 - 2022-12-20 09:07 - 000000000 ____D C:\Users\Lenovo
2025-01-08 16:03 - 2022-09-08 04:11 - 000000000 ____D C:\Windows\SystemTemp

==================== Files in the root of some directories ========

2023-01-18 10:04 - 2025-02-07 18:05 - 001388432 _____ () C:\Users\Public\VOIP.dat
2023-10-20 12:47 - 2023-10-20 11:15 - 000035621 _____ () C:\Program Files\ps2exe.1.0.10.nupkg
2024-12-22 11:31 - 2024-12-22 11:31 - 000000018 _____ () C:\Users\Lenovo\AppData\Roaming\.cache9050425797200915815.dat
2023-01-03 09:29 - 2024-10-16 09:50 - 000000600 _____ () C:\Users\Lenovo\AppData\Roaming\winscp.rnd
2024-07-25 23:29 - 2024-07-25 23:29 - 000000218 _____ () C:\Users\Lenovo\AppData\Local\recently-used.xbel
2023-01-18 20:07 - 2023-01-18 20:07 - 000007603 _____ () C:\Users\Lenovo\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================










Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-02-2025
Ran by Lenovo (07-02-2025 18:34:33)
Running from C:\Users\Lenovo\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.5371 (X64) (2022-12-20 08:05:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1431687685-2443868726-21383991-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1431687685-2443868726-21383991-503 - Limited - Disabled)
Guest (S-1-5-21-1431687685-2443868726-21383991-501 - Limited - Disabled)
Lenovo (S-1-5-21-1431687685-2443868726-21383991-1001 - Administrator - Enabled) => C:\Users\Lenovo
WDAGUtilityAccount (S-1-5-21-1431687685-2443868726-21383991-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
AutoCAD Open in Desktop (HKLM\...\{1C66A0B0-784E-4777-97B3-93F843D1C8CF}) (Version: 1.0.20.0 - Autodesk)
Autodesk Access (HKLM\...\{A3158B3E-5F28-358A-BF1A-9532D8EBC811}) (Version: 2.7.0.5 - Autodesk, Inc.)
Autodesk App Manager (HKLM-x32\...\{9C2E49CB-F671-47EC-8093-CC1A8749A92A}) (Version: 3.2.1 - Autodesk)
Autodesk AutoCAD 2022 - English (HKLM\...\{1E7D4EF7-A28E-3D3E-BA3C-C6FAE4AAB2E0}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack – Čeština (Czech) (HKLM\...\{B914E66E-BDF2-3DB2-ADDC-782AC4A48F1F}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk Fusion (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.20981 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.11.9.11 - Autodesk)
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
AutoHotkey (HKLM\...\AutoHotkey) (Version: 2.0.18 - AutoHotkey Foundation LLC)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa CW1 (02/13/2013 1.0.0.0) (HKLM\...\B10CCB939D59F72AA817B257D84328FC4A1DC752) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa i3 MK2 (02/13/2013 1.0.0.0) (HKLM\...\E6CFEF5357DD0E2F987E98779FD6603959DA391B) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa i3 MK3 Multi Material 2.0 upgrade (02/13/2013 1.0.0.0) (HKLM\...\FA562E43945E7D9CAC76A811E49088FF2255A11A) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Prusa i3 Plus MK3 3D printer (02/13/2013 1.0.0.0) (HKLM\...\890B56493F7CACBCA0E70EA8EBFD9A18BC780C34) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Silicon Laboratories Inc. (silabser) Ports (05/23/2018 6.7.6.2130) (HKLM\...\C9C3E5CCB43EEF685DD0E2BB4263DDC88C9B3834) (Version: 05/23/2018 6.7.6.2130 - Silicon Laboratories Inc.)
Balíček ovladače systému Windows - UltiMachine 3D Printer (RAMBo) (02/13/2013 1.0.0.0) (HKLM\...\D77EC126405DC217C7BF7DA6669B51E297D5CF23) (Version: 02/13/2013 1.0.0.0 - UltiMachine)
Betaflight Configurator (HKLM\...\e72c90bb-45eb-48dc-9cf3-ac2e8ec52f8c_is1) (Version: 10.9.0 - The Betaflight open source project)
BlueStacks X (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\BlueStacks X) (Version: 10.3.0.1020 - now.gg, Inc.)
Browser for SQL Server 2022 (HKLM-x32\...\{FDB357D5-CC78-480A-8D26-C15D1A877642}) (Version: 16.0.1000.6 - Microsoft Corporation)
Call of Duty(R) - World at War(TM) (HKLM-x32\...\InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}) (Version: 1.7 - Cenega)
Call of Duty(R) - World at War(TM) 1.1 Patch (HKLM-x32\...\InstallShield_{AFAE2B15-89A0-4215-A030-F7B5B478886B}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.2 Patch (HKLM-x32\...\InstallShield_{2BF0AE92-C3BC-4112-9066-1546342B1FAE}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.4 Patch (HKLM-x32\...\InstallShield_{9F01A67B-7D67-482F-9D4F-D5980A440FD4}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.5 Patch (HKLM-x32\...\InstallShield_{C3DC2DF5-EFAC-4055-9010-31F7C545DD9E}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{064DC64E-7A2F-4FDF-B598-E3C0747BBB9C}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{750C87B8-AF19-4C3C-B791-50D9C83AE572}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden
Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - Canon Inc.)
Discord (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Discord) (Version: 1.0.9008 - Discord Inc.)
Dokan Library 1.5.1.1000 (x64) (HKLM\...\{65A3A964-3DC3-0105-0001-211126123627}) (Version: 1.5.1.1000 - Dokany Project) Hidden
Dokan Library 1.5.1.1000 Bundle (HKLM-x32\...\{05c046de-f751-48c8-b8d3-77259ea88eb7}) (Version: 1.5.1.1000 - Dokany Project)
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.) Hidden
dpbupg - Aktualizace číselníků z Internetu (HKLM-x32\...\ST6UNST #1) (Version: - )
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ExpressLRS Configurator 1.5.9 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\2a8c9963-7c47-572e-b852-e0570c14856b) (Version: 1.5.9 - ExpressLRS Configurator Contributors)
Foxit PDF Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 2024.4.0.27683 - Foxit Software Inc.)
Free Cam 8 (HKLM-x32\...\{7B1D3F21-3095-4292-877E-69C085253F59}) (Version: 8.7.27159 - iSpring Solutions Inc.)
GDR 1050 for SQL Server 2022 (KB5021522) (64-bit) (HKLM\...\KB5021522) (Version: 16.0.1050.5 - Microsoft Corporation)
GDR 1105 for SQL Server 2022 (KB5029379) (64-bit) (HKLM\...\KB5029379) (Version: 16.0.1105.1 - Microsoft Corporation)
GDR 1110 for SQL Server 2022 (KB5032968) (64-bit) (HKLM\...\KB5032968) (Version: 16.0.1110.1 - Microsoft Corporation)
GDR 1115 for SQL Server 2022 (KB5035432) (64-bit) (HKLM\...\KB5035432) (Version: 16.0.1115.1 - Microsoft Corporation)
GDR 1121 for SQL Server 2022 (KB5040936) (64-bit) (HKLM\...\KB5040936) (Version: 16.0.1121.4 - Microsoft Corporation)
GDR 1125 for SQL Server 2022 (KB5042211) (64-bit) (HKLM\...\KB5042211) (Version: 16.0.1125.1 - Microsoft Corporation)
GDR 1130 for SQL Server 2022 (KB5046057) (64-bit) (HKLM\...\KB5046057) (Version: 16.0.1130.5 - Microsoft Corporation)
GDR 1135 for SQL Server 2022 (KB5046861) (64-bit) (HKLM\...\KB5046861) (Version: 16.0.1135.2 - Microsoft Corporation)
GDR 2095 for SQL Server 2019 (KB5014356) (64-bit) (HKLM\...\KB5014356) (Version: 15.0.2095.3 - Microsoft Corporation)
GDR 2101 for SQL Server 2019 (KB5021125) (64-bit) (HKLM\...\KB5021125) (Version: 15.0.2101.7 - Microsoft Corporation)
GF Gear Generator (HKLM\...\{9D615B94-AA69-C668-DBFD-47188A960982}) (Version: 1.1.1 - Gras Solutions)
GlobalProtect (HKLM\...\{C531B514-763E-4495-A3C4-1B28C749A343}) (Version: 5.2.5 - Palo Alto Networks)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
IIS 10.0 Express (HKLM\...\{A43F6F96-4CED-4152-8086-AF954755E324}) (Version: 10.0.08608 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) Hidden
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Hidden
Integration Services (HKLM-x32\...\{B9639A9B-BDBF-4480-9B2B-FE9C06ED54E7}) (Version: 16.0.5107.6 - Microsoft Corporation) Hidden
IrfanView 4.62 (64-bit) (HKLM\...\IrfanView64) (Version: 4.62 - Irfan Skiljan)
Kodi (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Kodi) (Version: 20.1.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo Service Bridge (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.17 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.08.03.59 - Lenovo)
LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: 3.4.3.146 - Crystal Rich Ltd)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft Analysis Services OLE DB Provider (HKLM\...\{7CA9BDB2-DC47-44B5-B384-8938B461CC38}) (Version: 16.0.5143.0 - Microsoft Corporation) Hidden
Microsoft Analysis Services OLE DB Provider (HKLM-x32\...\{8D96B285-698F-42BA-B483-A0A54D75ECD6}) (Version: 16.0.5143.0 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft Command Line Utilities 15 for SQL Server (HKLM\...\{6F11B2D6-193B-4216-A8E6-D7092834F8FB}) (Version: 15.0.4298.1 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 131.0.2903.112 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 131.0.2903.112 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation)
Microsoft Help Viewer 2.3 (HKLM-x32\...\{99DC6816-30B2-32EB-9E12-AF8944C4FA4E}) (Version: 2.3.28307 - Microsoft Corporation) Hidden
Microsoft Help Viewer 2.3 (HKLM-x32\...\Microsoft Help Viewer 2.3) (Version: 2.3.28307 - Microsoft Corporation)
Microsoft ODBC Driver 17 for SQL Server (HKLM\...\{0E0F96AC-80DE-4400-A40C-429D63293651}) (Version: 17.10.6.1 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0405-1000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office Access MUI (Czech) 2007 (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Runtime (Czech) 2007 (HKLM-x32\...\{90120000-001C-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel MUI (Czech) 2007 (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (Czech) 2007 (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2007 (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2007 (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2007 (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (HKLM-x32\...\{90120000-002C-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}) (Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (Czech) 2007 (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2007 (HKLM\...\{90120000-002A-0405-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2007 (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft OLE DB Driver for SQL Server (HKLM\...\{76EB75D2-CCF6-41A9-90B6-922DE9146276}) (Version: 18.7.4.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2019 LocalDB (HKLM\...\{E5B3A478-C4C3-49E3-8384-A12D4B2008D4}) (Version: 15.0.4382.1 - Microsoft Corporation)
Microsoft SQL Server 2022 (64-bit) (HKLM\...\Microsoft SQL Server SQL2022) (Version: - Microsoft Corporation)
Microsoft SQL Server 2022 RsFx Driver (HKLM\...\{629C8FC9-3763-4C58-8264-5288AE34AFEF}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
Microsoft SQL Server 2022 Setup (English) (HKLM\...\{3E7935D6-CC83-46BF-BC86-0452B76689CE}) (Version: 16.0.1135.2 - Microsoft Corporation)
Microsoft SQL Server Management Studio - 19.1 (HKLM-x32\...\{97488653-b791-439a-8ca6-f0dd53cc98c0}) (Version: 19.1.56.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34433 (HKLM-x32\...\{804e7d66-ccc2-4c12-84ba-476da31d103d}) (Version: 14.42.34433.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34433 (HKLM\...\{E1902FC6-C423-4719-AB8A-AC7B2694B367}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34433 (HKLM\...\{382F1166-A409-4C5B-9B1E-85ED538B8291}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{f895a2f1-ae3f-4212-8af1-7fa1f8c212ea}) (Version: 15.0.27520 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2017 x64 Hosting Support (HKLM\...\{AFFB9D8D-6E58-38A0-A7DD-F6F1F4247B36}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2017 x86 Hosting Support (HKLM-x32\...\{9594C97E-6A20-38B3-81BB-2778C4780BE1}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{f3fbabb4-bcfb-45eb-8fff-9b784fd68c38}) (Version: 16.0.31110 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{8E7A3713-551D-333A-9271-10EF4D77A80F}) (Version: 16.0.31110 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{E7A0CD34-1F9B-3496-ADB3-2F180D302F6A}) (Version: 16.0.31110 - Microsoft Corporation) Hidden
Microsoft VSS Writer for SQL Server 2022 (HKLM\...\{AB5D8778-81F3-47E2-87A4-35E776CD664B}) (Version: 16.0.1000.6 - Microsoft Corporation)
Microsoft Web Deploy 4.0 (HKLM\...\{82FD8C73-C24D-433C-85A9-48AE93570410}) (Version: 10.0.8305 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM\...\{71CD19D6-C448-4B5D-9A38-018741753290}) (Version: 64.48.26178 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM-x32\...\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}) (Version: 8.0.12.34404 - Microsoft Corporation)
OpenTX Companion 2.3 (HKLM-x32\...\OpenTX Companion 2.3) (Version: 2.3.15 - OpenTX)
Opera Stable 116.0.5366.71 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Opera 116.0.5366.71) (Version: 116.0.5366.71 - Opera Software)
PDF-XChange PRO (HKLM\...\{9F620C6F-01F1-4B60-9759-A6D5279AC7DD}) (Version: 10.4.3.391 - PDF-XChange Co Ltd.)
Photon_WorkShop_V2.1.23 (HKLM\...\Photon_WorkShop_V2.1.23) (Version: - ANYCUBIC)
PowerToys (Preview) (HKLM\...\{5A775AF0-704E-4912-BEF8-33C16665C3B7}) (Version: 0.88.0 - Microsoft Corporation) Hidden
PowerToys (Preview) x64 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\{d07c4a91-dbbc-4565-ae3b-bcb61d01235e}) (Version: 0.88.0 - Microsoft Corporation)
PrusaSlicer (HKLM\...\PrusaSlicer_is1) (Version: 2.8.1 - Prusa Research s.r.o.)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Speciální aplikace Autodesk (HKLM-x32\...\{46EA8955-D629-4B3E-AAF0-D136031D7C95}) (Version: 3.2.1 - Autodesk)
Spotify (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Spotify) (Version: 1.2.56.502.ga68d2d4f - Spotify AB)
SQL Server 2022 Batch Parser (HKLM\...\{7EFD8B19-A9E6-41CF-A96F-B9B6E30EC345}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Common Files (HKLM\...\{6A68D32C-4C0D-4847-B70C-58E6B4D76A12}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Common Files (HKLM\...\{8770AF64-BB4B-4404-BDD6-6AF8E4C461FC}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Connection Info (HKLM\...\{770DA7F2-817B-4AA6-9160-08BB658ABDC6}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Connection Info (HKLM\...\{EAC54B82-7A37-4A9E-8953-474316BD40F6}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Services (HKLM\...\{6621C765-569C-4D46-A8E9-C69A47971357}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Services (HKLM\...\{C4CF167C-4739-4A3A-8D75-59C9C5F135CA}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Shared (HKLM\...\{161B8D12-C41B-4ACF-9BB5-E1FEE6788869}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Shared (HKLM\...\{D6E82158-05B9-4A18-A624-EA135BC77766}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 DMF (HKLM\...\{5AB77D4E-9E5F-4627-B78B-129A5EC2858A}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 DMF (HKLM\...\{DCA0C2D6-83BF-41AE-B1AB-C4181002DE40}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects (HKLM\...\{12618131-AA9A-4DAE-9387-CE4417955B9F}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects (HKLM\...\{6F8242AA-1B25-421C-8E45-FC5978D9AA3A}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects Extensions (HKLM\...\{35EC6145-E333-42DB-BCB3-380DF6140C11}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects Extensions (HKLM\...\{A0F7ACBA-075F-4BC7-A85A-5DC301FCEC74}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 SQL Diagnostics (HKLM\...\{0CEFE958-E71A-4171-9DEF-77E9234A5613}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 XEvent (HKLM\...\{94AEB0A0-365C-449B-B573-D2ECB353EB06}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 XEvent (HKLM\...\{BD8B7339-7559-4FC3-95E6-264324D45235}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server Management Studio (HKLM-x32\...\{33F6AA45-05AE-4040-A83A-6B27778CA3A4}) (Version: 19.1.56.0 - Microsoft Corp.) Hidden
SQL Server Management Studio Language Pack - English (HKLM-x32\...\{3D59683C-BA05-45FB-B0DC-20A7AB95DA27}) (Version: 19.1.56.0 - Microsoft Corp.) Hidden
SSMS Post Install Tasks (HKLM-x32\...\{93C559A7-55A9-41EA-B0A0-AEB72DB73E92}) (Version: 19.1.56.0 - Microsoft Corporation) Hidden
Sublime Text (HKLM\...\Sublime Text_is1) (Version: - Sublime HQ Pty Ltd)
Sweet Home 3D version 7.1 (HKLM\...\Sweet Home 3D_is1) (Version: 7.1 - eTeks)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.62.4 - TeamViewer)
Thunderbolt™ Software (HKLM-x32\...\{1AA93FF8-C685-4E00-8682-7F2E5D8E8689}) (Version: 17.4.80.550 - Intel Corporation)
Tsk 3.0.0 (HKLM-x32\...\{27C32CA7-F5F3-4982-9B27-CC951B7DF163}}_is1) (Version: 3.0.0 - Tsk)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 139.2.10843 - Ubisoft)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{192B349F-C3F7-4BBE-B49E-00DD4BD28373}) (Version: 3.0.29 - Autodesk) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
Visual Studio 2017 Isolated Shell for SSMS (HKLM-x32\...\{0C69A55F-BC72-4AFB-BAEF-C5DEF9C32B9A}) (Version: 15.0.28308.421 - Microsoft Corporation) Hidden
vs_CoreEditorFonts (HKLM-x32\...\{56FB5923-1A95-4D55-BE78-CD42B50E67AD}) (Version: 17.6.33605 - Microsoft Corporation)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WinMed 2 (HKLM-x32\...\{F81C10F4-EE30-49D9-B8DB-EA0CB870681A}) (Version: 2021.1.1.46 - Plus4U Medical s.r.o.)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
ZeroTier One (HKLM-x32\...\{EC58088A-4E0F-4BD5-B0B2-FD81C803EEC4}) (Version: 1.14.0 - ZeroTier, Inc.) Hidden
ZeroTier One (HKLM-x32\...\ZeroTier One 1.14.0) (Version: 1.14.0 - ZeroTier, Inc.)
Zoom Workplace (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\ZoomUMX) (Version: 6.2.11 (50939) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-11-07] ()
Bezdrátový adaptér displeje Microsoft -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_4.232.137.0_x64__8wekyb3d8bbwe [2024-10-25] (Microsoft Corporation) [Startup Task]
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-04-13] (Microsoft Corporation)
ELAN Touchpad for Thinkpad -> C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTouchpadforThinkpad_24.121.15.0_x64__stws0m115j6hg [2024-10-15] (ELAN Microelectronics Corporation)
ELAN TrackPoint for Thinkpad -> C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTrackPointforThinkpa_24.121.51.0_x64__stws0m115j6hg [2024-10-15] (ELAN Microelectronics Corporation)
Lenovo Pen Settings -> C:\Program Files\WindowsApps\WacomTechnologyCorp.157535B83C264_8.2.8.0_neutral__ss941bf8mfs8a [2024-12-18] (Wacom Technology Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2024-10-15] (Microsoft Corporation)
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.5101.0_x64__8wekyb3d8bbwe [2024-12-18] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.1.3.0_x64__8wekyb3d8bbwe [2024-11-04] (Microsoft Studios)
Minecraft: Java Edition -> C:\Program Files\WindowsApps\Microsoft.MinecraftJavaEdition_1.0.5.0_x64__8wekyb3d8bbwe [2023-07-21] (Microsoft Studios)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{0440049F-D1DC-4E46-B27B-98393D79486B}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{10144713-1526-46C9-88DA-1FB52807A9FF}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.SvgThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{51B4D7E5-7568-4234-B4BB-47FB3C016A69}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.ImageResizerExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{56512e36-c98f-d8d5-43c6-669ea60c4c0b}\localserver32 -> "C:\Program Files\CleverFiles\Disk Drill\DD.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{60789D87-9C3C-44AF-B18C-3DE2C2820ED3}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.MarkdownPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{729B72CD-B72E-4FE9-BCBF-E954B33FE699}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.QoiPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{77257004-6F25-4521-B602-50ECC6EC62A6}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.StlThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{84D68575-E186-46AD-B0CB-BAEB45EE29C0}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{A0257634-8812-4CE8-AF11-FA69ACAEAFAE}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.GcodePreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{AD856B15-D25E-4008-AFB7-AFAA55586188}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.QoiThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\Autodesk\webdeploy\production\bce2902bbfcb27678033cbb9e17a3529631b97a7\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{D8034CFA-F34B-41FE-AD45-62FCBB52A6DA}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.MonacoPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{DD5CACDA-7C2E-4997-A62A-04A597B58F76}\localserver32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2022\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{e9e15306-22d0-4ffa-2e2c-d3af11e3edd2}\localserver32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.PowerLauncher.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{F2847CBE-CD03-4C83-A359-1A8052C1B9D5}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.GcodeThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{FCDD4EED-41AA-492F-8A84-31A1546226E0}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.SvgPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{FF90D477-E32A-4BE8-8CC5-A502A97F5401}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.NewPlus.ShellExtension.win10.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2021-01-29] (Autodesk, Inc. -> Autodesk, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2021-01-29] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers1: [PDFTools Context menu] -> {e0e0016c-6025-4337-948f-0b655a18552b} => C:\Program Files\Tracker Software\PDF Tools\PDFXToolsShellMenu.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2022-06-15] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxDTCM.dll [2022-05-08] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2022-06-15] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2_S-1-5-21-1431687685-2443868726-21383991-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1431687685-2443868726-21383991-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1431687685-2443868726-21383991-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5_S-1-5-21-1431687685-2443868726-21383991-1001: [NewPlusShellExtensionWin10] -> {FF90D477-E32A-4BE8-8CC5-A502A97F5401} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.NewPlus.ShellExtension.win10.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5_S-1-5-21-1431687685-2443868726-21383991-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Lenovo\Desktop\WindowTop.lnk -> C:\Moje\utils+programy\WindowTop.v5.25.2.Portable\WindowTop.bat ()
Shortcut: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk -> C:\Users\Lenovo\Documents\AutoHotkey\Hkeys.bat ()

==================== Loaded Modules (Whitelisted) =============

2025-01-06 11:25 - 2025-01-06 11:25 - 000372736 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.CxHef9fb4ae#\8e1e6e545418d37581be75b0b971c0fa\Interop.CxHDAudioAPILib.ni.dll
2025-01-06 11:25 - 2025-01-06 11:25 - 000018944 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.CxUtilSvcLib\57e4d0236064f67769de82ac194a0b85\Interop.CxUtilSvcLib.ni.dll
2023-01-18 16:51 - 2018-03-13 10:21 - 001173504 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxHDAudioAPI.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\regfile: <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.reg: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.bat: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.cmd: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer (Whitelisted) =============

BHO: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
BHO-x32: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Toolbar: HKLM - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Toolbar: HKLM-x32 - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2024-10-26 19:03 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

2022-12-22 16:26 - 2023-12-23 16:02 - 000000512 _____ C:\Windows\system32\drivers\etc\hosts.ics
192.168.137.1 DESKTOP-D7P1O08.mshome.net # 2028 12 4 21 15 2 12 731
192.168.137.157 TELEFUNKEN-TV.mshome.net # 2023 12 6 30 15 2 12 731

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-80-2196430659-3345688158-4281717578-75482121-3290361108\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-80-417864872-2509941577-3334891905-2270271522-438893919\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

Network Binding:
=============
ZeroTier One [9e1948db63d435d7]: ZeroTier Virtual Port -> zttap300.sys
Ethernet 6: PANGP Virtual Ethernet Adapter -> pangpd.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Intel(R) Ethernet Connection (4) I219-LM -> e1d68x64.sys
Wi-Fi: Intel(R) Dual Band Wireless-AC 8265 -> Netwtw06.sys
Hamachi: LogMeIn Hamachi Virtual Ethernet Adapter -> Hamdrv.sys

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Autodesk Access"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\StartupFolder: => "fnlock.lnk"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_5EF70F99B4529735F3564FFE246DB961"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "OPENVPN-GUI"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "org.openvpn.client"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{0477D01D-B269-4F97-86AC-B2B1101340E7}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [UDP Query User{30C00C6B-AB89-4E5F-B32D-88F2AF473EB6}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [TCP Query User{79E4ADFC-699C-4243-816F-E87FFF5D603A}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Block) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{17606559-DD1A-4AA0-8056-EC7A80B20F9B}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Block) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{66C37B74-C406-4E95-969F-238D570373D5}] => (Allow) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{D3BE78BD-BA56-4849-9A8E-5D8ADDE4075E}C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe] => (Allow) C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe (ExpressLRS Configurator Contributors) [File not signed]
FirewallRules: [UDP Query User{B8EBBBBD-CE98-4DC3-955C-7E9B9A5A2527}C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe] => (Allow) C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe (ExpressLRS Configurator Contributors) [File not signed]
FirewallRules: [TCP Query User{627DB24E-0EB1-4E90-99F8-063EF15D4D0F}C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe] => (Allow) C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe (The NW.js Community) [File not signed]
FirewallRules: [UDP Query User{6555671E-4F37-4F20-A66C-B963C8284974}C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe] => (Allow) C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe (The NW.js Community) [File not signed]
FirewallRules: [TCP Query User{424B0AE8-C7B6-4EC8-BFEE-6D925F249B88}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{30113EB1-B5DC-41C0-9044-9D4093AC5F9F}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [TCP Query User{AB16E68F-CC06-4F80-A9E0-B3CCEBB609EA}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [UDP Query User{93FD0826-06F4-4470-9271-3ACE12103C10}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [{EC54E8A6-345B-4541-8A34-D210333B4AC5}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{BE81A672-61C4-4F6D-977D-3F8025149D66}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{F7727A91-7641-4F72-9C85-BD12D85400CC}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [{7DCCF54F-EB0E-4593-B1A6-0F9023DEA13A}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [{E28CFE59-89AE-43CC-9644-5B1724972DB6}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [{43761188-C81B-4D19-9D3A-B267B5E05768}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Now.gg, INC -> Bluestack Systems, Inc.)
FirewallRules: [{A5B8A32D-39A4-4074-BE01-888812CFBCFB}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Now.gg, INC -> COMPANY NAME)
FirewallRules: [TCP Query User{8A1F02B8-46AD-4519-9984-9A21863EB071}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{F547DA46-77F1-4B51-9F7C-6CFE6A233600}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{11A73BFB-EEDC-4A42-AB44-7BF798205114}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL16.WinMed2\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1BDCD837-6A9F-4F4A-AAD1-EFE6CFDE9601}] => (Allow) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{52D875CC-27B3-4CDE-BCB0-95436C62BEC0}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{F172FD69-FD1A-4AE4-8E43-D0A520E703F8}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{1F4C1D0E-35D1-4704-B601-2CB0F7A30BB2}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [UDP Query User{FB209989-DC5D-4F86-B2FB-B4A16D6538F0}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [{B9908115-B3DD-4E03-8B85-3AE7A432592D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{AE6F50A1-94FF-48B4-83AB-6166398828E7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{65E3E439-A6BD-4AD7-B170-D7A04CCC74EE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{C261743D-9A3F-4225-9784-7A63D947E438}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{62788D0A-6654-4E7B-8921-D50D35DBA081}C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe] => (Allow) C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe => No File
FirewallRules: [UDP Query User{B0C36577-AF0E-4A77-896F-CF0DD866B13D}C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe] => (Allow) C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe => No File
FirewallRules: [TCP Query User{5BAC91B4-B1C1-4E3E-B50F-F0D21CBE6333}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [UDP Query User{53C78346-10AB-45DC-9B5E-A7F38AC561DB}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [TCP Query User{9134DCDC-AE18-424A-B0AF-ABE2FC9CB025}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [UDP Query User{D9C53667-D732-4C57-821A-D367CF30D2E6}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [{68FCD68C-DB7D-4BC9-8C32-E4730DAB1D45}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{AABA1AAF-9619-4037-8742-112ACAF931D1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{D5DEF35F-9B6B-425A-907A-943EAAD19C0F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{0672106B-A6D2-4343-AA71-156B63F68207}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{4844A50D-1AFE-4983-8690-35B2239FDF0C}C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) [File not signed]
FirewallRules: [UDP Query User{BFF80377-507B-4236-A95E-95B233D558C5}C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) [File not signed]
FirewallRules: [{1295AE24-8361-46A6-89F4-3D5FFC7CA0D7}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaW.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{A200866A-BD89-43E0-8618-107CFDFEC139}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaW.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{3984F050-8D2D-413F-8FBA-F13F50C58E3A}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaWmp.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{DBBAACEC-7B82-4BDA-9BFE-BB318B4C58EB}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaWmp.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [TCP Query User{542B3E43-0466-45EF-8686-7618A39EC6D0}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [UDP Query User{E4A2C51A-C7B7-4503-80A4-7959F0DD12CE}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [{81B0955F-D169-4572-BDE0-691F6265C4A2}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{04993B0F-0A5A-49D7-A898-495147D4DB4E}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{EB288B36-9996-42AD-84CC-17462AD40873}] => (Allow) LPort=9993
FirewallRules: [{72A5AED3-5671-4156-9CED-907DD016D303}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )
FirewallRules: [{CA6DA1D5-6208-4C65-A7A8-9E4FA9B16F45}] => (Allow) LPort=9993
FirewallRules: [TCP Query User{4543FF9B-EFF5-4124-B06C-C6278F7BF450}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [UDP Query User{5DA0015A-1DAD-4135-A5A3-04F1E1BBCFCC}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{A1E4E057-E41E-4D03-9740-9DE74FFA89D4}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{034F3F19-6927-4E08-842C-E4D7F11BA942}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [TCP Query User{082B44D7-613A-498F-9835-E7D92208182F}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [UDP Query User{3718DA56-5177-44ED-BB1A-EFDACC764E4E}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [TCP Query User{BB682615-4889-437A-B3AC-E623D88C8DB7}C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [UDP Query User{09166FF4-C86F-4965-874B-350869CB40AA}C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [{1193C965-D7C0-40D6-B68D-C24CC6ACAF02}] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [{7A0CD638-F939-45AF-9DD8-37F2B53EC9CF}] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [TCP Query User{793EED5F-729E-4DF0-9284-65C8AB6DA738}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{0D42EB62-F63A-44FA-A1BF-50E76508B214}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DA8A9E62-1E46-4720-9B7E-301C07FB2679}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{36DB1967-EF38-4127-8097-6259D6E26EAA}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{733DFA5D-7AB0-4380-8DB8-9EBCE426A297}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{7425E17D-E926-4012-8403-5278901D1490}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{62E685A3-DCBA-43C6-A039-322599295A39}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{5508969B-307A-40BB-96C4-B86474E843B8}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{5BE9C128-75B7-4E42-A7BD-3FD1872F7368}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{8B281BFC-F632-448C-AB2C-52504684EA99}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{3E3A0AED-058B-402E-9555-D46D59A10507}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{9B3EE5B9-E537-458E-B6A2-AB3708C2B28D}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{E64BF29D-A05E-4A3A-B9BF-DBD3ED289B47}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{25A4821A-5A86-4661-9B47-4FB281BB960A}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{D1CC1006-DAE9-47FD-BADF-A43095877933}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{14DE2953-FF60-4434-A183-B66E55F8E8A8}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [TCP Query User{732EA61E-0EFE-432D-B2D1-F3200CA8379F}C:\hry\stronghold crusader\stronghold crusader.exe] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [UDP Query User{4697EF28-F496-4593-BB97-A53E3BCDE4E8}C:\hry\stronghold crusader\stronghold crusader.exe] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{141154F8-6196-4835-AE98-56E1CC0AEAF2}] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{EFE907B6-6C0F-4075-B506-C911250D3F57}] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{C630A78C-2638-473D-8ED0-EB815584CAC9}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.112\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B5A8BFEB-65DC-47AC-8179-02C459FED403}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )
FirewallRules: [{8C4E2962-D474-4870-9CDB-9C96CCFF119B}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )
FirewallRules: [{C208B615-2749-43D2-8B23-4744D753FAC5}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3CBA537B-1A52-4E53-A4FF-CF5150E1BADC}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{26F9CEF4-241E-4FB8-8597-7423D81E5481}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{863EF897-671A-4294-929B-2BC2663BC0CA}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{85DEF939-ED41-4C64-8D7C-BF557CCA0B39}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
FirewallRules: [{67E5B946-BC33-4577-883B-4ACC8A6BF114}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
FirewallRules: [{9FFE781D-0CCA-419A-9B24-B434C8470794}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CE93E2A3-1DAF-43B4-A1A0-C3391E028E24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4A61C5E4-7CE1-4895-9B1C-3319FC2BD773}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F197D3BE-151E-4EF1-AD3C-A228B90B03D4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{73853D69-15C8-4606-8608-A7F695A10C84}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{F33B081A-C4B3-4854-B5F2-5774636E207D}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{77C369F0-9D73-461D-A592-6D672BC0E204}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6F388ED3-F882-4EED-BE88-B1D937173AA7}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============
Name: PANGP Virtual Ethernet Adapter
Description: PANGP Virtual Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: PaloAltoNetworks
Service: PanGpd
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Intel(R) USB 3.1 eXtensible Host Controller - 1.10 (Microsoft)
Description: Hostitelský řadič USB kompatibilní s rozhraním xHCI
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Obecný hostitelský řadič USB xHCI
Service: USBXHCI
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: ========================

Application errors:
==================
Error: (02/05/2025 02:52:09 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\Windows\system32\sysmain.dll (kód chyby Win32 126).

Error: (02/04/2025 09:34:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x3fe8
Čas spuštění chybující aplikace: 0x01db76df883cbe9f
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: ef2bbdb4-281a-4aa2-8ce8-571abaad5c5f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 08:44:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x57f0
Čas spuštění chybující aplikace: 0x01db76d7c3f49565
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: 30f86aba-a3c6-4244-841f-b6cb0d556978
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 07:57:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x10c4
Čas spuštění chybující aplikace: 0x01db76d15411b0f0
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: e0820f09-aa7b-48a8-95ea-cdb588ef05af
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 07:51:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x2190
Čas spuštění chybující aplikace: 0x01db76ce3eacb6cf
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: c0dd5c0c-0426-4a95-9e37-3f29ff8f3ef0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 07:29:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x283c
Čas spuštění chybující aplikace: 0x01db76cdaf88762f
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: a9dabc32-b3ca-443d-ae72-a6403f172a86
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 07:25:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x3c9c
Čas spuštění chybující aplikace: 0x01db76cbe3a749fb
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: f5f05d69-112d-4ff0-9c11-173942948268
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 07:13:11 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x46a4
Čas spuštění chybující aplikace: 0x01db76c8de7226bc
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: ae08c32e-b2dc-4a5d-9843-7b5126edbda4
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (02/06/2025 01:01:23 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (02/06/2025 11:20:23 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9WZDNCRFJ364-MICROSOFT.SKYPEAPP.

Error: (02/05/2025 08:20:39 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (02/05/2025 06:20:23 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-D7P1O08)
Description: Server microsoft.windowscommunicationsapps_16005.14326.22178.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/04/2025 08:02:33 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-D7P1O08)
Description: Server microsoft.windowscommunicationsapps_16005.14326.22178.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/03/2025 11:21:13 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (01/27/2025 08:05:03 AM) (Source: disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR14.

Error: (01/24/2025 08:17:12 PM) (Source: disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR14.


Windows Defender:
================
Date: 2025-02-07 11:08:31
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {6A9F4C01-3A05-49BB-A437-116C76D5DB1C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-06 11:19:20
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {40C03138-A239-4697-BC10-1221E148D5C6}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-05 08:20:24
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {E48983F5-11CA-4579-B841-8A7346901430}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-04 08:54:25
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8DE503A0-127B-409F-A854-82FA942750B6}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-01-31 08:24:39
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {F7A75998-2CE0-4D25-BBA7-7168A2C034E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2025-10-10 16:03:56
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.421.716.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24090.11
Kód chyby: 0x800b0101
Popis chyby: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Date: 2025-12-05 14:10:33
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.421.633.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24090.11
Kód chyby: 0x800b0101
Popis chyby: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Date: 2024-07-11 13:29:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Zálohování
Kód chyby: 0x80004004
Popis chyby: Operace přerušena
Verze bezpečnostních informací: 1.415.1.0;1.415.1.0
Verze modulu: 1.1.24060.5

Date: 2024-07-11 13:29:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80501102
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Verze bezpečnostních informací: 1.415.19.0;1.415.19.0
Verze modulu: 1.1.24060.5

Date: 2024-07-07 16:33:59
Description:
Antivirová ochrana v programu Microsoft Defender narazil na kritickou chybu při provádění akce s malwarem nebo jiným potenciálně nežádoucím softwarem.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\explorer.exe
Akce: Karanténa
Stav akce: No additional actions required
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.
Verze bezpečnostních informací: AV: 1.413.740.0, AS: 1.413.740.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.24050.5, NIS: 0.0.0.0

CodeIntegrity:
===============
Date: 2024-02-28 18:44:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO R0SET57W (1.41 ) 09/04/2024
Motherboard: LENOVO 20LJS3A100
Processor: Intel(R) Core(TM) i5-8350U CPU @ 1.70GHz
Percentage of memory in use: 71%
Total physical RAM: 16218.56 MB
Available physical RAM: 4554.55 MB
Total Virtual: 23196.48 MB
Available Virtual: 8150.14 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.84 GB) (Free:4.87 GB) (Model: SAMSUNG MZNLN256HMHQ-000H1) (Protected) NTFS

\\?\Volume{f5f68b7b-042d-4c11-bb43-68c2dc9ae93f}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{325a2bb6-7368-4dfc-8668-efa91a80dd67}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\...\Run: [Bxsyscrb] => C:\Program Files\BFK\syscrb.exe (No File)
HKLM\...\Run: [Bxsyscrb] => C:\Program Files\BFK\syscrb.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Policies\Explorer: []
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {70F1E981-BF42-4A97-A3DB-9865EB8CF8D9} - System32\Tasks\01-Pondělí Záloha WinMed_R => C:\WinMed2\BACKUP\01-WinMed2.bat (No File)
Task: {CFFAA2E8-D3EF-4BF5-BC9C-A68F729E3789} - System32\Tasks\02-Úterý Záloha WinMed_R => C:\WinMed2\BACKUP\02-WinMed2.bat (No File)
Task: {00A65FB0-BA39-4946-8A7C-768770F1489B} - System32\Tasks\03-Středa Záloha WinMed_R => C:\WinMed2\BACKUP\03-WinMed2.bat (No File)
Task: {04B8F18A-88DF-481B-B8A6-7DA5C2E598FD} - System32\Tasks\04-Čtvrtek Záloha WinMed_R => C:\WinMed2\BACKUP\04-WinMed2.bat (No File)
Task: {9E458EEB-8981-496A-84E4-F48EF30E0873} - System32\Tasks\05-Pátek Záloha WinMed_R => C:\WinMed2\BACKUP\05-WinMed2.bat (No File)
Task: {AC219EDE-E373-4F84-9CB6-B7CFA96D2886} - System32\Tasks\PowerToys\Autorun for Lenovo => C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe [1231904 2025-01-24] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION
ask: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {F930F94F-F1C7-491B-8847-6A67BCD26FDE} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {A5C228CB-2022-46FE-B91B-A34B61580C9E} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
C:\DumpStack.log.tmp
C:\Users\Lenovo\AppData\Roaming\.cache9050425797200915815.dat
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{56512e36-c98f-d8d5-43c6-669ea60c4c0b}\localserver32 -> "C:\Program Files\CleverFiles\Disk Drill\DD.exe" -ToastActivated => No File
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\regfile: <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.reg: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.bat: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.cmd: => <==== ATTENTION
FirewallRules: [TCP Query User{AB16E68F-CC06-4F80-A9E0-B3CCEBB609EA}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [UDP Query User{93FD0826-06F4-4470-9271-3ACE12103C10}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [{7DCCF54F-EB0E-4593-B1A6-0F9023DEA13A}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [{E28CFE59-89AE-43CC-9644-5B1724972DB6}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [TCP Query User{5BAC91B4-B1C1-4E3E-B50F-F0D21CBE6333}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [UDP Query User{53C78346-10AB-45DC-9B5E-A7F38AC561DB}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [TCP Query User{542B3E43-0466-45EF-8686-7618A39EC6D0}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [UDP Query User{E4A2C51A-C7B7-4503-80A4-7959F0DD12CE}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [TCP Query User{4543FF9B-EFF5-4124-B06C-C6278F7BF450}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [UDP Query User{5DA0015A-1DAD-4135-A5A3-04F1E1BBCFCC}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{A1E4E057-E41E-4D03-9740-9DE74FFA89D4}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{034F3F19-6927-4E08-842C-E4D7F11BA942}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{85DEF939-ED41-4C64-8D7C-BF557CCA0B39}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
FirewallRules: [{67E5B946-BC33-4577-883B-4ACC8A6BF114}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe


EmptyTemp:
Hosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#3 Příspěvek od Cizap »

Tak tohle zjevně pomohlo, teď to vypadá, že to jede zase jako dřív :-) díky moc . Ještě jsem si vzpomněl, že po zapnutí se mi spustí edge někde na pozadí a začne mi tam hrát nějaká reklama nebo co a musim to ve správci úloh ukončovat, občas to napíše, že nastala chyba s něčim, co má název myslim virtual monkey nebo něco takového. Teď začla hrát reklama, ale tu hlášku po ukončení úlohy zrovna nenapsalo, tak si názvem nejsem jist.



Fix result of Farbar Recovery Scan Tool (x64) Version: 03-02-2025
Ran by Lenovo (07-02-2025 19:41:05) Run:3
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo & SQLTELEMETRY$WINMED2 & MSSQL$WINMED2
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\...\Run: [Bxsyscrb] => C:\Program Files\BFK\syscrb.exe (No File)
HKLM\...\Run: [Bxsyscrb] => C:\Program Files\BFK\syscrb.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Policies\Explorer: []
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {70F1E981-BF42-4A97-A3DB-9865EB8CF8D9} - System32\Tasks\01-Pondělí Záloha WinMed_R => C:\WinMed2\BACKUP\01-WinMed2.bat (No File)
Task: {CFFAA2E8-D3EF-4BF5-BC9C-A68F729E3789} - System32\Tasks\02-Úterý Záloha WinMed_R => C:\WinMed2\BACKUP\02-WinMed2.bat (No File)
Task: {00A65FB0-BA39-4946-8A7C-768770F1489B} - System32\Tasks\03-Středa Záloha WinMed_R => C:\WinMed2\BACKUP\03-WinMed2.bat (No File)
Task: {04B8F18A-88DF-481B-B8A6-7DA5C2E598FD} - System32\Tasks\04-Čtvrtek Záloha WinMed_R => C:\WinMed2\BACKUP\04-WinMed2.bat (No File)
Task: {9E458EEB-8981-496A-84E4-F48EF30E0873} - System32\Tasks\05-Pátek Záloha WinMed_R => C:\WinMed2\BACKUP\05-WinMed2.bat (No File)
Task: {AC219EDE-E373-4F84-9CB6-B7CFA96D2886} - System32\Tasks\PowerToys\Autorun for Lenovo => C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe [1231904 2025-01-24] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION
ask: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {F930F94F-F1C7-491B-8847-6A67BCD26FDE} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {A5C228CB-2022-46FE-B91B-A34B61580C9E} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
C:\DumpStack.log.tmp
C:\Users\Lenovo\AppData\Roaming\.cache9050425797200915815.dat
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> "C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{56512e36-c98f-d8d5-43c6-669ea60c4c0b}\localserver32 -> "C:\Program Files\CleverFiles\Disk Drill\DD.exe" -ToastActivated => No File
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\regfile: <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.reg: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.bat: => <==== ATTENTION
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.cmd: => <==== ATTENTION
FirewallRules: [TCP Query User{AB16E68F-CC06-4F80-A9E0-B3CCEBB609EA}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [UDP Query User{93FD0826-06F4-4470-9271-3ACE12103C10}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe] => (Allow) C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe => No File
FirewallRules: [TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [{7DCCF54F-EB0E-4593-B1A6-0F9023DEA13A}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [{E28CFE59-89AE-43CC-9644-5B1724972DB6}] => (Allow) C:\Program Files\Epic Games\TrackmaniaNext\trackmania.exe => No File
FirewallRules: [TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [TCP Query User{5BAC91B4-B1C1-4E3E-B50F-F0D21CBE6333}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [UDP Query User{53C78346-10AB-45DC-9B5E-A7F38AC561DB}C:\hry\quake 3 arena\quake3.exe] => (Allow) C:\hry\quake 3 arena\quake3.exe => No File
FirewallRules: [TCP Query User{542B3E43-0466-45EF-8686-7618A39EC6D0}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [UDP Query User{E4A2C51A-C7B7-4503-80A4-7959F0DD12CE}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe => No File
FirewallRules: [TCP Query User{4543FF9B-EFF5-4124-B06C-C6278F7BF450}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [UDP Query User{5DA0015A-1DAD-4135-A5A3-04F1E1BBCFCC}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{A1E4E057-E41E-4D03-9740-9DE74FFA89D4}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{034F3F19-6927-4E08-842C-E4D7F11BA942}] => (Block) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{85DEF939-ED41-4C64-8D7C-BF557CCA0B39}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
FirewallRules: [{67E5B946-BC33-4577-883B-4ACC8A6BF114}] => (Allow) C:\Program Files (x86)\FunPlus\SOS - Last Warrior\nGame\1.23.20.1441\sspc.exe => No File
E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe


EmptyTemp:
Hosts:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Bxsyscrb" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Bxsyscrb" => not found
"HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => removed successfully

"C:\Windows\system32\GroupPolicy\Machine" Folder move:

C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{70F1E981-BF42-4A97-A3DB-9865EB8CF8D9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70F1E981-BF42-4A97-A3DB-9865EB8CF8D9}" => removed successfully
C:\Windows\System32\Tasks\01-Pondělí Záloha WinMed_R => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\01-Pondělí Záloha WinMed_R" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFFAA2E8-D3EF-4BF5-BC9C-A68F729E3789}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFFAA2E8-D3EF-4BF5-BC9C-A68F729E3789}" => removed successfully
C:\Windows\System32\Tasks\02-Úterý Záloha WinMed_R => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\02-Úterý Záloha WinMed_R" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{00A65FB0-BA39-4946-8A7C-768770F1489B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00A65FB0-BA39-4946-8A7C-768770F1489B}" => removed successfully
C:\Windows\System32\Tasks\03-Středa Záloha WinMed_R => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\03-Středa Záloha WinMed_R" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{04B8F18A-88DF-481B-B8A6-7DA5C2E598FD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04B8F18A-88DF-481B-B8A6-7DA5C2E598FD}" => removed successfully
C:\Windows\System32\Tasks\04-Čtvrtek Záloha WinMed_R => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\04-Čtvrtek Záloha WinMed_R" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9E458EEB-8981-496A-84E4-F48EF30E0873}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9E458EEB-8981-496A-84E4-F48EF30E0873}" => removed successfully
C:\Windows\System32\Tasks\05-Pátek Záloha WinMed_R => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\05-Pátek Záloha WinMed_R" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AC219EDE-E373-4F84-9CB6-B7CFA96D2886}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC219EDE-E373-4F84-9CB6-B7CFA96D2886}" => removed successfully
C:\Windows\System32\Tasks\PowerToys\Autorun for Lenovo => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PowerToys\Autorun for Lenovo" => removed successfully
ask: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION => Error: No automatic fix found for this entry.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F930F94F-F1C7-491B-8847-6A67BCD26FDE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F930F94F-F1C7-491B-8847-6A67BCD26FDE}" => removed successfully
C:\Windows\System32\Tasks\YTPXCheck => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTPXCheck" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A5C228CB-2022-46FE-B91B-A34B61580C9E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5C228CB-2022-46FE-B91B-A34B61580C9E}" => removed successfully
C:\Windows\System32\Tasks\YTPXCheck LG => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTPXCheck LG" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
C:\Users\Lenovo\AppData\Roaming\.cache9050425797200915815.dat => moved successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000} => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000} => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{56512e36-c98f-d8d5-43c6-669ea60c4c0b} => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\regfile => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.reg => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.bat => removed successfully
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.cmd => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{AB16E68F-CC06-4F80-A9E0-B3CCEBB609EA}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{93FD0826-06F4-4470-9271-3ACE12103C10}C:\dpb\instalace_winmed2_srv\total commander\totalcmd64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7DCCF54F-EB0E-4593-B1A6-0F9023DEA13A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E28CFE59-89AE-43CC-9644-5B1724972DB6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B4479855-BE35-4818-AD6D-42DF10CCA4BF}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0733BBE0-157A-4657-9B02-4A402B199910}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5BAC91B4-B1C1-4E3E-B50F-F0D21CBE6333}C:\hry\quake 3 arena\quake3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{53C78346-10AB-45DC-9B5E-A7F38AC561DB}C:\hry\quake 3 arena\quake3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{542B3E43-0466-45EF-8686-7618A39EC6D0}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E4A2C51A-C7B7-4503-80A4-7959F0DD12CE}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4543FF9B-EFF5-4124-B06C-C6278F7BF450}C:\program files\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5DA0015A-1DAD-4135-A5A3-04F1E1BBCFCC}C:\program files\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A1E4E057-E41E-4D03-9740-9DE74FFA89D4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{034F3F19-6927-4E08-842C-E4D7F11BA942}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{85DEF939-ED41-4C64-8D7C-BF557CCA0B39}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{67E5B946-BC33-4577-883B-4ACC8A6BF114}" => removed successfully
"E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe" => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 126351772 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 252931702 B
Windows/system/drivers => 2046505 B
Edge => 0 B
Firefox => 0 B
Opera => 363857669 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 55 B
systemprofile32 => 55 B
LocalService => 55 B
NetworkService => 390283 B
Lenovo => 117262001 B
SQLTELEMETRY$WINMED2 => 117262001 B
MSSQL$WINMED2 => 117262001 B

RecycleBin => 1176470464 B
EmptyTemp: => 2.1 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 07-02-2025 19:45:13)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 19:45:13 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#4 Příspěvek od Rudy »

Zkusíme vyčistit prohlížeče. Spusťte postupně tyto utility:

1. Stahnete Zoek.exe https://sdilej.cz/29519076/zoek.rar a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#5 Příspěvek od Cizap »

Zoek v příloze JRT zde:

/edit 22:07 teď se mi sám spustil opět edge zase nějak na pozadí, to se mi ještě nestalo, vždy se to spustilo při startu systemu, taď jen tak z ničeho nic, začla hrát reklama a musel jsem ukončit úlohu.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Enterprise x64
Ran by Lenovo (Administrator) on 07.02.2025 at 21:55:39,26
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1

Successfully deleted: C:\Users\Lenovo\AppData\Roaming\imminent (Folder)



Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 07.02.2025 at 21:56:35,05
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Přílohy
zoek-results.rar
(13.06 KiB) Staženo 38 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#6 Příspěvek od Rudy »

Prohlížeče byly vyčištěny. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#7 Příspěvek od Cizap »

Vcelku vše funguje jako dřív, takže pohoda akorát ten edge si pořád dělá co chce, v příloze zasílám chybu co mi to teď když jsem to ukončoval vyhodilo ten Violetmonkey, jak jsem říkal, nevím jestli to s tím souvisí, ale zkrátka se edge cpe do otevírání něčeho na pozadí co pak přehrává reklamu/video. Pokud se to nevyřeší, tak to mě už tolik netrápí s tím jsem fungoval doteď.
Přílohy
obrázek_2025-02-08_185915216.png
obrázek_2025-02-08_185915216.png (82.85 KiB) Zobrazeno 12309 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#8 Příspěvek od Rudy »

Zkuste spustit tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Pokud to nepomůže, vložte ještě jednou logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#9 Příspěvek od Cizap »

Zdá se, že to nic nenašlo, ale nejsem si jist, zda to může najít, když jsem celý Edge ukončil ve správci úloh? Nemám to zkusit po restartu PC, pokud mi zase naběhne na pozadí Edge?

# -------------------------------
# Malwarebytes AdwCleaner 8.4.2.0
# -------------------------------
# Build: 03-04-2024
# Database: 2024-03-04.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 02-10-2025
# Duration: 00:00:12
# OS: Windows 10 (Build 19045.5371)
# Scanned: 32091
# Detected: 10


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.LenovoHotkeyManager Folder C:\Program Files\LENOVO\HOTKEY
Preinstalled.LenovoHotkeyManager Registry HKLM\Software\Classes\CLSID\{53A8E17F-2DE5-4DD7-AF26-74ED2F3223B9}
Preinstalled.LenovoHotkeyManager Registry HKLM\Software\Classes\CLSID\{A48CA1A4-C36B-44f2-8090-19E08DF4365E}
Preinstalled.LenovoPowerManager Folder C:\Windows\SysWOW64\LENOVO\POWERMGR
Preinstalled.LenovoPowerManager Folder C:\Windows\System32\LENOVO\POWERMGR
Preinstalled.LenovoServiceBridge Folder C:\Users\Lenovo\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1
Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE
Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{03C6CC92-68F2-4961-9A73-CAECA350BD08}
Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1


AdwCleaner[S00].txt - [2528 octets] - [31/07/2023 20:39:31]
AdwCleaner[C00].txt - [1655 octets] - [31/07/2023 20:40:30]
AdwCleaner[S01].txt - [2565 octets] - [01/09/2023 08:27:59]
AdwCleaner[S02].txt - [2626 octets] - [01/09/2023 08:29:44]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S03].txt ##########








Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-02-2025
Ran by Lenovo (administrator) on DESKTOP-D7P1O08 (LENOVO 20LJS3A100) (10-02-2025 08:16:50)
Running from C:\Users\Lenovo\Desktop\FRST64.exe
Loaded Profiles: Lenovo & SQLTELEMETRY$WINMED2 & MSSQL$WINMED2
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5371 (X64) Language: Čeština (Česko)
Default browser: "C:\Users\Lenovo\AppData\Local\Programs\Opera\opera.exe" -noautoupdate -- "%1"
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe
(Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdskIdentityManager\1.11.9.11\AdskIdentityManager.exe
(Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Common Files\Autodesk\AdpDesktopSDK\bin\ADPClientService.exe
(AutoHotkey Foundation LLC) [File not signed] C:\Program Files\AutoHotkey\v2\AutoHotkey64.exe
(C:\Program Files\Sublime Text\sublime_text.exe ->) (Sublime HQ Pty Ltd -> ) C:\Program Files\Sublime Text\crash_handler.exe
(C:\Program Files\Sublime Text\sublime_text.exe ->) (Sublime HQ Pty Ltd -> ) C:\Program Files\Sublime Text\plugin_host-3.3.exe
(C:\Program Files\Sublime Text\sublime_text.exe ->) (Sublime HQ Pty Ltd -> ) C:\Program Files\Sublime Text\plugin_host-3.8.exe
(cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\Lenovo\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Discord Inc. -> Discord Inc.) C:\Users\Lenovo\AppData\Local\Discord\app-1.0.9181\Discord.exe <5>
(DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FNCC3C~1.INF\driver\shtctky.exe
(DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FNCC3C~1.INF\driver\tposd.exe
(DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxEM.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(explorer.exe ->) (Palo Alto Networks -> Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <6>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\15.1.0.12339\AdskLicensingService\AdskLicensingService.exe
(services.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_ece153ca769ec179\aesm_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_f222132bfa8270de\RstMwService.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\tphkload.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\LITSSvc.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlceip.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlservr.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (Palo Alto Networks -> Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_e6fcc557ac12c616\WTabletServiceISD.exe <2>
(services.exe ->) (ZEROTIER, INC. -> ) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2411.1.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(Sublime HQ Pty Ltd -> Sublime HQ Pty Ltd) C:\Program Files\Sublime Text\sublime_text.exe
(svchost.exe ->) (Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxext.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GlobalProtect] => C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe [10641248 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
HKLM\...\Run: [Autodesk Access] => C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe [23042336 2024-05-21] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [sspk_global] => C:\Program Files (x86)\FunPlus\SOS - Last Warrior\Launcher.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Discord] => C:\Users\Lenovo\AppData\Local\Discord\Update.exe [1525016 2022-12-09] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Opera Browser Assistant] => C:\Users\Lenovo\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3996064 2024-03-04] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [MicrosoftEdgeAutoLaunch_5EF70F99B4529735F3564FFE246DB961] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3923496 2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Spotify] => C:\Users\Lenovo\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized (No File)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDT.DLL [509952 2023-06-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\Windows\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS200 series: C:\Windows\system32\CNMLMDT.DLL [1328640 2023-06-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\PDF-XChange Standard Port Monitor: C:\Windows\system32\pxcpm.dll [915280 2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\...\Authentication\Credential Providers: [{25CA8579-1BD8-469c-B9FC-6AC45A161C18}] -> C:\Windows\system32\PanV2CredProv.dll [2021-01-07] (Palo Alto Networks -> )
Startup: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk [2024-12-06]
ShortcutTarget: Hkeys.bat.lnk -> C:\Users\Lenovo\Documents\AutoHotkey\Hkeys.bat () [File not signed]

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {A344DB02-F789-45FA-AB87-004B19A13CFD} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {D6BC4EC6-2B7F-43DF-896F-34338E2A4B1C} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {C3D7D8DC-147E-4555-9124-A61B5733B179} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [227888 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation)
Task: {956200D9-4BB7-4975-8C0B-8AE23305F2DA} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2311216 2019-10-02] (Key for TBT Legacy Driver -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {0B60BBCD-A564-4541-97A6-2DDBDFC3D4C5} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {64327FED-F7B1-4292-8CD5-1E7F4AED1DF7} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1431687685-2443868726-21383991-1001 => C:\Users\Lenovo\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [88584 2024-05-17] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {A4924E12-1DAD-43D6-9376-D76B6B180A1E} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [129368 2024-06-26] (Lenovo -> Lenovo)
Task: {17392E35-57BC-4421-A7B5-824F40BC7D64} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\Windows\SysWOW64\PowerMgrInst.exe [64984 2022-05-17] (Lenovo -> )
Task: {2755D9AE-4021-403A-8AC5-5E44536F4D64} - System32\Tasks\Microsoft\Windows\Conexant\AFA => C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232 2016-07-05] (Conexant Systems, Inc.) [File not signed] -> C:\Program Files\CONEXANT\cAudioFilterAgent\/uid:cAudioFilterAgent /delay:45
Task: {E92AF59E-E65B-42AE-B3F7-E9210D1E5733} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280 2017-06-07] (Conexant Systems, Inc. -> Conexant Systems, Inc.) -> C:\Program Files\CONEXANT\SAII\/c /delay:45
Task: {191112DD-F312-4E51-A0FC-8730ED74F2E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F7E358F0-5E67-44C9-A3AD-399F7F3884F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E9AFF866-6335-4219-9D40-E678CC4F49F6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {21A9317B-835C-4CB7-B173-A4822BFE7EF8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {14C761FC-A21A-4C4D-A3F9-29375B1E4C06} - System32\Tasks\Odeslání připomínající SMS z WINMEDu => C:\WinMed2\PosliSMS\PosliSMS.bat [525 2023-08-01] () [File not signed]
Task: {E8D50C26-1186-4DD8-B5CE-ADDAB9EE89EE} - System32\Tasks\Opera scheduled assistant Autoupdate 1671663169 => C:\Users\Lenovo\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Lenovo\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {A87D4E68-A06D-4CBA-A412-B04AEB50AD44} - System32\Tasks\Opera scheduled Autoupdate 1671663161 => C:\Users\Lenovo\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5656472 2025-01-28] (Opera Norway AS -> Opera Software)
Task: {58A24D3C-C08C-462F-B034-73CEB03597E2} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {D5CEA618-61CA-4B7F-A87F-AD8D2A40472F} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {16EEB917-1CEF-46DE-A23D-41EEAD015FD9} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {5A25CBB9-3864-4D78-A35B-E30D9ACF6644} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {27D55CB5-8A51-48E8-AF4A-8563FDE231CE} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-1431687685-2443868726-21383991-1001 => C:\Users\Lenovo\AppData\Roaming\Zoom\bin\Zoom.exe [435000 2024-12-04] (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.11.6.1 1.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}: [DhcpNameServer] 10.11.6.1 1.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\3496A716F523E243: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\3496A756B6F5B6C69656E647F53596D656C6F6E6E2E45445: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\7416C616879702E4F647561303B283538326: [DhcpNameServer] 192.168.192.180
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\C4B43525: [DhcpNameServer] 194.213.212.4
Tcpip\..\Interfaces\{2faca9cd-7ef4-4869-a776-096f81dc3a13}\C4B43525F5B61627166716E697: [DhcpNameServer] 194.213.212.4
Tcpip\..\Interfaces\{82a4a511-cef3-4b4f-9537-94a292984b23}: [DhcpNameServer] 10.11.6.1 1.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{d218b67e-067a-43bb-afd3-dab69813a27f}: [NameServer] 172.17.193.102,172.17.193.106

Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-07]
Edge Extension: (PDF-XChange) - C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\djmbpijobamaimdblhkpclfnpkiogeoo [2025-02-07]
Edge Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-07]
Edge Extension: (Edge relevant text changes) - C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-02-07]
Edge HKLM\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo]
Edge HKLM-x32\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo]

FireFox:
========
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-1431687685-2443868726-21383991-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid]
CHR HKLM-x32\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid]

Opera:
=======
OPR DefaultProfile: Default

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [18184984 2024-11-20] (Autodesk, Inc. -> Autodesk)
R2 Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [13687584 2024-05-24] (Autodesk, Inc. -> Autodesk, Inc.)
R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [152312 2019-08-19] (Microsoft Windows -> Microsoft Corporation)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 IBMPMSVC; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmsvc.exe [1031408 2024-05-31] (Lenovo -> Lenovo)
R2 Lenovo Instant On; C:\Windows\SysWOW64\EasyResume.exe [2352368 2022-05-17] (Lenovo -> Lenovo Group Limited)
S4 LenovoBrightCtrl; C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\BrightnessControl.exe [160080 2024-07-29] (Lenovo -> Lenovo.)
R2 LITSSVC; C:\Windows\System32\DriverStore\FileRepository\litsdrv.inf_amd64_64fe83bb6fa2a9a7\x64\LITSSvc.exe [1099592 2024-07-29] (Lenovo -> Lenovo.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 LPlatSvc; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\LPlatSvc.exe [916312 2024-05-31] (Lenovo -> Lenovo)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSSQL$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlservr.exe [882768 2024-10-18] (Microsoft Corporation -> Microsoft Corporation)
R2 PanGPS; C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe [7389024 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [69864 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2024-07-07] (Even Balance, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 SQLAgent$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\SQLAGENT.EXE [727096 2024-10-18] (Microsoft Corporation -> Microsoft Corporation)
R2 SQLTELEMETRY$WINMED2; C:\Program Files\Microsoft SQL Server\MSSQL16.WINMED2\MSSQL\Binn\sqlceip.exe [300968 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21819184 2025-01-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 TPHKLOAD; C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_9c4c29de89199c58\driver\TPHKLOAD.exe [473760 2021-10-22] (Lenovo -> Lenovo Group Limited)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroTierOneService; C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe [6698816 2024-04-17] (ZEROTIER, INC. -> )

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 dokan1; C:\Windows\System32\DRIVERS\dokan1.sys [386552 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Dokan Project)
S3 gpfltdrv; C:\Windows\system32\DRIVERS\gpfltdrv.sys [86824 2021-01-07] (Palo Alto Networks -> Palo Alto Networks)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2024-03-25] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 IBMPMDRV; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\ibmpmdrv.sys [56664 2024-05-31] (Lenovo -> Lenovo)
R3 MpKsl2d734b3b; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CCAD8A48-9FEB-44BC-9683-B055D1CB48B9}\MpKslDrv.sys [267552 2025-02-07] (Microsoft Windows -> Microsoft Corporation)
S3 PanGpd; C:\Windows\system32\DRIVERS\pangpd.sys [67744 2021-01-07] (Palo Alto Networks -> Palo Alto Networks Inc.)
R1 PMDRVS; C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_c7ee80e7f3d3c3de\x64\pmdrvs.sys [42328 2024-05-31] (Lenovo -> Lenovo)
S4 RsFx0700; C:\Windows\System32\DRIVERS\RsFx0700.sys [298392 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
S3 rtump64x64; C:\Windows\System32\drivers\rtump64x64.sys [1418184 2024-04-21] (Realtek Semiconductor Corp. -> Realtek Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 WacHIDRouterISDU; C:\Windows\System32\drivers\WacHIDRouterISDU.sys [136952 2022-04-21] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 zttap300; C:\Windows\System32\drivers\zttap300.sys [31744 2023-03-06] (Microsoft Windows Hardware Compatibility Publisher -> ZeroTier Networks LLC)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-02-10 08:13 - 2025-02-10 08:13 - 008790880 _____ (Malwarebytes) C:\Users\Lenovo\Desktop\AdwCleaner.exe
2025-02-08 18:53 - 2025-02-08 18:53 - 000000344 _____ C:\Users\Lenovo\Desktop\malovice.txt
2025-02-08 18:49 - 2025-02-08 18:49 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Sublime Text
2025-02-07 22:00 - 2025-02-07 22:00 - 000013374 _____ C:\zoek-results.rar
2025-02-07 21:56 - 2025-02-07 21:56 - 000000952 _____ C:\Users\Lenovo\Desktop\JRT.txt
2025-02-07 21:27 - 2025-02-07 21:27 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PeerDistRepub
2025-02-07 21:26 - 2025-02-08 18:56 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\discord
2025-02-07 21:26 - 2025-02-07 21:26 - 000000000 ____D C:\ProgramData\Validity
2025-02-07 21:23 - 2025-02-07 21:05 - 000024064 _____ C:\Windows\zoek-delete.exe
2025-02-07 21:06 - 2025-02-07 21:06 - 001790024 _____ (Malwarebytes) C:\Users\Lenovo\Desktop\JRT.exe
2025-02-07 21:05 - 2025-02-07 21:20 - 000000000 ____D C:\zoek_backup
2025-02-07 21:04 - 2025-02-07 21:04 - 001302005 _____ C:\Users\Lenovo\Desktop\zoek.rar
2025-02-07 21:04 - 2025-02-07 21:04 - 000000000 ____D C:\Users\Lenovo\Desktop\zoek
2025-02-07 19:45 - 2025-02-07 19:45 - 000000008 _____ C:\ProgramData\ntuser.pol
2025-02-07 19:43 - 2025-02-10 08:16 - 000003836 _____ C:\Windows\system32\Tasks\YTPXCheck
2025-02-07 19:43 - 2025-02-07 19:43 - 000003382 _____ C:\Windows\system32\Tasks\YTPXCheck LG
2025-02-07 19:41 - 2025-02-07 19:45 - 000017625 _____ C:\Users\Lenovo\Desktop\Fixlog.txt
2025-02-07 18:34 - 2025-02-07 18:37 - 000082948 _____ C:\Users\Lenovo\Desktop\Addition.txt
2025-02-07 18:32 - 2025-02-10 08:17 - 000030650 _____ C:\Users\Lenovo\Desktop\FRST.txt
2025-02-07 18:31 - 2025-02-07 18:31 - 002403328 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2025-02-07 09:08 - 2025-02-07 21:25 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Spotify
2025-02-07 09:07 - 2025-02-07 09:07 - 000001855 _____ C:\Users\Lenovo\Desktop\Spotify.lnk
2025-02-07 09:07 - 2025-02-07 09:07 - 000001841 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2025-02-05 14:52 - 2025-02-05 14:52 - 000000000 ____D C:\ProgramData\NeteaseWinDev
2025-02-05 14:51 - 2025-02-05 14:53 - 000000000 ____D C:\Users\Lenovo\AppData\LocalLow\Kingsgroup
2025-02-05 13:06 - 2025-02-05 13:06 - 000649334 _____ C:\Users\Lenovo\Downloads\DPB_Faktura_4825950182.pdf
2025-02-04 06:24 - 2025-02-04 06:24 - 051585468 _____ C:\Users\Lenovo\Downloads\Master_3.2.2025_1907.zip
2025-02-03 12:04 - 2025-02-03 12:04 - 000089831 _____ C:\Users\Lenovo\Downloads\RD Čeněk_1.1.2 základy_250118.pdf
2025-02-03 11:52 - 2025-02-03 11:52 - 000151337 _____ C:\Users\Lenovo\Downloads\výškopis.dwg
2025-02-03 08:53 - 2025-02-03 08:53 - 051567495 _____ C:\Users\Lenovo\Downloads\Master_3.2.2025.zip
2025-01-30 16:27 - 2025-01-30 16:27 - 000033294 _____ C:\Users\Lenovo\Downloads\lekarsky_posudek.pdf
2025-01-30 16:25 - 2025-01-30 16:25 - 000245950 _____ C:\Users\Lenovo\Downloads\LÉKAŘSKÝ POSUDEK K ŘÍZENÍ VOZIDLA.pdf
2025-01-30 08:41 - 2025-01-30 08:41 - 051425963 _____ C:\Users\Lenovo\Downloads\Master_30.1.2025.zip
2025-01-30 08:06 - 2025-02-07 19:41 - 000000000 ____D C:\Windows\system32\Tasks\PowerToys
2025-01-30 08:06 - 2025-01-30 08:06 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview)
2025-01-30 08:06 - 2025-01-30 08:06 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PowerToys
2025-01-27 16:52 - 2025-01-27 16:52 - 000012856 _____ C:\Users\Lenovo\Downloads\Vývoj 2025.xlsx
2025-01-27 15:24 - 2025-01-27 15:24 - 051266808 _____ C:\Users\Lenovo\Downloads\Master_27.1.2025.zip
2025-01-27 11:08 - 2025-02-06 13:44 - 163319808 _____ C:\Users\Lenovo\Desktop\ddp.accdb
2025-01-27 11:08 - 2022-04-06 20:01 - 012361728 _____ C:\Users\Lenovo\Desktop\ddp_lib.accde
2025-01-27 11:08 - 2022-04-06 20:00 - 011661312 _____ C:\Users\Lenovo\Desktop\ddp_lib.accdb
2025-01-27 10:39 - 2025-01-27 10:39 - 043081462 _____ C:\Users\Lenovo\Downloads\ddp_2022_04_20_1730_Radovan.zip
2025-01-23 11:16 - 2025-01-23 11:16 - 051318026 _____ C:\Users\Lenovo\Downloads\Master_23.1.2025.zip
2025-01-22 21:07 - 2025-01-22 21:07 - 000072474 _____ C:\Users\Lenovo\Downloads\dorucenka_1469246182.pdf
2025-01-22 21:05 - 2025-01-22 21:05 - 000153154 _____ C:\Users\Lenovo\Downloads\VZP_tata (1).pdf
2025-01-22 21:05 - 2025-01-22 21:05 - 000034706 _____ C:\Users\Lenovo\Downloads\VZP_tata (2).pdf
2025-01-22 21:03 - 2025-01-22 21:03 - 000013576 _____ C:\Users\Lenovo\Downloads\priloha_1469246182_0_Textová zpráva.PDF
2025-01-22 14:52 - 2025-01-22 14:52 - 051300070 _____ C:\Users\Lenovo\Downloads\Master_21.01.2025.zip
2025-01-22 13:31 - 2025-01-22 13:31 - 000035321 _____ C:\Users\Lenovo\Downloads\Posudek o zdravotní způsobilosti k řízení motorových vozidel.pdf
2025-01-21 09:08 - 2025-01-21 10:39 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Tracker Software
2025-01-21 09:08 - 2025-01-21 09:09 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000001249 _____ C:\Users\Public\Desktop\PDF-XChange Office2PDF.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000001115 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000001097 _____ C:\Users\Public\Desktop\PDF Tools.lnk
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\ProgramData\FileOpen
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\Program Files\Tracker Software
2025-01-21 09:06 - 2025-01-21 09:06 - 000000000 ____D C:\Program Files\Common Files\Tracker Software
2025-01-21 09:06 - 2024-10-15 17:07 - 000915280 _____ (PDF-XChange Co Ltd.) C:\Windows\system32\pxcpm.dll
2025-01-20 12:27 - 2025-01-20 12:58 - 000001665 _____ C:\Users\Lenovo\Desktop\WindowTop.lnk
2025-01-20 12:07 - 2025-01-20 12:07 - 000000000 ____D C:\Program Files\Sublime Text
2025-01-17 20:32 - 2025-01-17 20:36 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Rufus
2025-01-15 19:49 - 2025-01-17 15:42 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\WindowsDefender
2025-01-15 19:31 - 2025-01-15 19:31 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\SKL
2025-01-15 19:31 - 2025-01-15 19:31 - 000000000 ____D C:\Program Files (x86)\tsk
2025-01-15 14:25 - 2025-01-15 14:25 - 000000000 ___HD C:\$WinREAgent
2025-01-14 09:44 - 2025-01-14 09:44 - 000083945 _____ C:\Users\Lenovo\Downloads\E8FB4B.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-01-20 15:41 - 2022-12-20 09:03 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-01-20 15:41 - 2022-12-20 09:03 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-12-15 15:44 - 2025-01-10 09:16 - 000000000 ____D C:\Program Files (x86)\Microsoft Works
2025-02-10 08:17 - 2023-07-31 19:33 - 000000000 ____D C:\FRST
2025-02-10 08:14 - 2023-01-02 15:57 - 000000000 ____D C:\WinMed2
2025-02-10 08:11 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-02-10 08:10 - 2023-01-18 10:04 - 001388432 _____ C:\Users\Public\VOIP.dat
2025-02-10 08:08 - 2022-12-20 10:12 - 002035326 _____ C:\Windows\system32\PerfStringBackup.INI
2025-02-10 08:08 - 2022-12-20 09:03 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-02-10 08:08 - 2019-12-07 15:43 - 000838290 _____ C:\Windows\system32\perfh005.dat
2025-02-10 08:08 - 2019-12-07 15:43 - 000194490 _____ C:\Windows\system32\perfc005.dat
2025-02-10 08:08 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-02-08 18:55 - 2022-12-26 14:25 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Discord
2025-02-08 18:54 - 2023-01-01 17:14 - 000000000 ____D C:\Program Files\TeamViewer
2025-02-08 18:54 - 2022-12-20 10:36 - 000000000 __SHD C:\Users\Lenovo\IntelGraphicsProfiles
2025-02-08 18:54 - 2022-12-20 10:36 - 000000000 ____D C:\Intel
2025-02-08 18:54 - 2022-12-20 09:03 - 000008192 ___SH C:\DumpStack.log.tmp
2025-02-08 18:54 - 2022-12-20 09:03 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-02-08 18:54 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2025-02-08 18:54 - 2019-12-07 10:03 - 001048576 _____ C:\Windows\system32\config\BBI
2025-02-08 18:53 - 2022-12-22 15:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Autodesk
2025-02-08 18:40 - 2022-12-22 15:31 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Autodesk
2025-02-08 00:43 - 2022-12-22 14:57 - 000000000 ____D C:\Moje
2025-02-07 22:31 - 2024-07-26 09:08 - 000000000 ____D C:\ProgramData\boost_interprocess
2025-02-07 22:06 - 2023-07-20 21:23 - 000000000 ____D C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2
2025-02-07 22:06 - 2023-05-09 07:36 - 000000000 ____D C:\Users\Lenovo\AppData\Local\wupdater_cloud
2025-02-07 21:52 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Šablony
2025-02-07 21:52 - 2022-12-25 16:55 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Microsoft Help
2025-02-07 21:49 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Word
2025-02-07 21:26 - 2022-12-26 14:25 - 000002248 _____ C:\Users\Lenovo\Desktop\Discord.lnk
2025-02-07 21:25 - 2022-09-08 04:11 - 000000000 ____D C:\Windows\SystemTemp
2025-02-07 21:21 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2025-02-07 20:25 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports
2025-02-07 19:47 - 2022-12-20 09:03 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-02-07 19:41 - 2023-03-23 16:15 - 000000000 ____D C:\Users\Lenovo\AppData\LocalLow\Temp
2025-02-07 19:41 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2025-02-07 11:08 - 2022-12-21 21:01 - 000000000 ____D C:\Users\Lenovo\AppData\Local\D3DSCache
2025-02-07 11:08 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-02-07 11:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-02-07 09:10 - 2022-12-20 09:07 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Packages
2025-02-07 08:59 - 2023-02-10 23:01 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
2025-02-06 13:47 - 2022-12-26 14:21 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Access
2025-02-06 11:05 - 2022-12-26 00:32 - 000000000 ___RD C:\Users\Lenovo\Desktop\Hry
2025-02-06 10:38 - 2022-12-20 09:08 - 000000000 ____D C:\ProgramData\Packages
2025-02-05 14:51 - 2024-05-07 21:18 - 000000000 ____D C:\Users\Lenovo\AppData\Local\cache
2025-02-05 13:26 - 2019-12-07 15:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2025-02-04 08:38 - 2022-12-22 15:19 - 000000000 ____D C:\MASTER Winmed2
2025-02-03 10:15 - 2023-01-05 15:56 - 000000000 ____D C:\Registrace_Vyvoj
2025-02-03 08:13 - 2022-12-21 23:52 - 000004274 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1671663161
2025-02-03 08:13 - 2022-12-21 23:52 - 000001389 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-01-30 10:59 - 2022-12-25 17:17 - 000106160 _____ C:\Users\Lenovo\AppData\Local\GDIPFONTCACHEV1.DAT
2025-01-30 10:59 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\UProof
2025-01-30 08:06 - 2024-08-28 19:10 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Package Cache
2025-01-28 17:21 - 2022-12-20 10:10 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PlaceholderTileLogoFolder
2025-01-21 08:45 - 2023-01-06 16:37 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Excel
2025-01-20 12:07 - 2022-12-25 17:20 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Sublime Text
2025-01-18 13:14 - 2024-12-29 00:58 - 000000000 ____D C:\Users\Lenovo\AppData\Local\LogMeIn Hamachi
2025-01-17 15:38 - 2022-12-20 09:03 - 000475680 _____ C:\Windows\system32\FNTCACHE.DAT
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser
2025-01-17 15:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2025-01-15 16:05 - 2024-12-23 10:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\SuperSlicer
2025-01-15 16:03 - 2023-03-11 09:35 - 000000125 _____ C:\ProgramData\autoclickconfig.ini
2025-01-15 14:34 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2025-01-15 14:30 - 2022-12-20 09:07 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-01-15 14:05 - 2022-12-25 17:15 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Office
2025-01-15 11:37 - 2022-12-20 10:11 - 000000000 ____D C:\Windows\system32\MRT
2025-01-15 11:34 - 2023-05-19 13:36 - 000000000 ____D C:\Program Files\dotnet
2025-01-15 11:34 - 2022-12-20 10:11 - 206927936 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-01-14 08:28 - 2022-12-20 09:07 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Credentials
2025-01-11 19:09 - 2023-03-19 14:46 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Kodi

==================== Files in the root of some directories ========

2023-01-18 10:04 - 2025-02-10 08:10 - 001388432 _____ () C:\Users\Public\VOIP.dat
2023-10-20 12:47 - 2023-10-20 11:15 - 000035621 _____ () C:\Program Files\ps2exe.1.0.10.nupkg
2023-01-03 09:29 - 2024-10-16 09:50 - 000000600 _____ () C:\Users\Lenovo\AppData\Roaming\winscp.rnd
2024-07-25 23:29 - 2024-07-25 23:29 - 000000218 _____ () C:\Users\Lenovo\AppData\Local\recently-used.xbel
2023-01-18 20:07 - 2023-01-18 20:07 - 000007603 _____ () C:\Users\Lenovo\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================





Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-02-2025
Ran by Lenovo (10-02-2025 08:18:27)
Running from C:\Users\Lenovo\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.5371 (X64) (2022-12-20 08:05:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1431687685-2443868726-21383991-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1431687685-2443868726-21383991-503 - Limited - Disabled)
Guest (S-1-5-21-1431687685-2443868726-21383991-501 - Limited - Disabled)
Lenovo (S-1-5-21-1431687685-2443868726-21383991-1001 - Administrator - Enabled) => C:\Users\Lenovo
WDAGUtilityAccount (S-1-5-21-1431687685-2443868726-21383991-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
AutoCAD Open in Desktop (HKLM\...\{1C66A0B0-784E-4777-97B3-93F843D1C8CF}) (Version: 1.0.20.0 - Autodesk)
Autodesk Access (HKLM\...\{A3158B3E-5F28-358A-BF1A-9532D8EBC811}) (Version: 2.7.0.5 - Autodesk, Inc.)
Autodesk App Manager (HKLM-x32\...\{9C2E49CB-F671-47EC-8093-CC1A8749A92A}) (Version: 3.2.1 - Autodesk)
Autodesk AutoCAD 2022 - English (HKLM\...\{1E7D4EF7-A28E-3D3E-BA3C-C6FAE4AAB2E0}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack – Čeština (Czech) (HKLM\...\{B914E66E-BDF2-3DB2-ADDC-782AC4A48F1F}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk Fusion (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.20981 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.11.9.11 - Autodesk)
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
AutoHotkey (HKLM\...\AutoHotkey) (Version: 2.0.18 - AutoHotkey Foundation LLC)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa CW1 (02/13/2013 1.0.0.0) (HKLM\...\B10CCB939D59F72AA817B257D84328FC4A1DC752) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa i3 MK2 (02/13/2013 1.0.0.0) (HKLM\...\E6CFEF5357DD0E2F987E98779FD6603959DA391B) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Original Prusa i3 MK3 Multi Material 2.0 upgrade (02/13/2013 1.0.0.0) (HKLM\...\FA562E43945E7D9CAC76A811E49088FF2255A11A) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Prusa Research s.r.o. Prusa i3 Plus MK3 3D printer (02/13/2013 1.0.0.0) (HKLM\...\890B56493F7CACBCA0E70EA8EBFD9A18BC780C34) (Version: 02/13/2013 1.0.0.0 - Prusa Research s.r.o.)
Balíček ovladače systému Windows - Silicon Laboratories Inc. (silabser) Ports (05/23/2018 6.7.6.2130) (HKLM\...\C9C3E5CCB43EEF685DD0E2BB4263DDC88C9B3834) (Version: 05/23/2018 6.7.6.2130 - Silicon Laboratories Inc.)
Balíček ovladače systému Windows - UltiMachine 3D Printer (RAMBo) (02/13/2013 1.0.0.0) (HKLM\...\D77EC126405DC217C7BF7DA6669B51E297D5CF23) (Version: 02/13/2013 1.0.0.0 - UltiMachine)
Betaflight Configurator (HKLM\...\e72c90bb-45eb-48dc-9cf3-ac2e8ec52f8c_is1) (Version: 10.9.0 - The Betaflight open source project)
BlueStacks X (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\BlueStacks X) (Version: 10.3.0.1020 - now.gg, Inc.)
Browser for SQL Server 2022 (HKLM-x32\...\{FDB357D5-CC78-480A-8D26-C15D1A877642}) (Version: 16.0.1000.6 - Microsoft Corporation)
Call of Duty(R) - World at War(TM) (HKLM-x32\...\InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}) (Version: 1.7 - Cenega)
Call of Duty(R) - World at War(TM) 1.1 Patch (HKLM-x32\...\InstallShield_{AFAE2B15-89A0-4215-A030-F7B5B478886B}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.2 Patch (HKLM-x32\...\InstallShield_{2BF0AE92-C3BC-4112-9066-1546342B1FAE}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.4 Patch (HKLM-x32\...\InstallShield_{9F01A67B-7D67-482F-9D4F-D5980A440FD4}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.5 Patch (HKLM-x32\...\InstallShield_{C3DC2DF5-EFAC-4055-9010-31F7C545DD9E}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{064DC64E-7A2F-4FDF-B598-E3C0747BBB9C}) (Version: - ) Hidden
Call of Duty(R) - World at War(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{750C87B8-AF19-4C3C-B791-50D9C83AE572}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden
Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - Canon Inc.)
Discord (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Discord) (Version: 1.0.9008 - Discord Inc.)
Dokan Library 1.5.1.1000 (x64) (HKLM\...\{65A3A964-3DC3-0105-0001-211126123627}) (Version: 1.5.1.1000 - Dokany Project) Hidden
Dokan Library 1.5.1.1000 Bundle (HKLM-x32\...\{05c046de-f751-48c8-b8d3-77259ea88eb7}) (Version: 1.5.1.1000 - Dokany Project)
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.) Hidden
dpbupg - Aktualizace číselníků z Internetu (HKLM-x32\...\ST6UNST #1) (Version: - )
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ExpressLRS Configurator 1.5.9 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\2a8c9963-7c47-572e-b852-e0570c14856b) (Version: 1.5.9 - ExpressLRS Configurator Contributors)
Foxit PDF Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 2024.4.0.27683 - Foxit Software Inc.)
Free Cam 8 (HKLM-x32\...\{7B1D3F21-3095-4292-877E-69C085253F59}) (Version: 8.7.27159 - iSpring Solutions Inc.)
GDR 1050 for SQL Server 2022 (KB5021522) (64-bit) (HKLM\...\KB5021522) (Version: 16.0.1050.5 - Microsoft Corporation)
GDR 1105 for SQL Server 2022 (KB5029379) (64-bit) (HKLM\...\KB5029379) (Version: 16.0.1105.1 - Microsoft Corporation)
GDR 1110 for SQL Server 2022 (KB5032968) (64-bit) (HKLM\...\KB5032968) (Version: 16.0.1110.1 - Microsoft Corporation)
GDR 1115 for SQL Server 2022 (KB5035432) (64-bit) (HKLM\...\KB5035432) (Version: 16.0.1115.1 - Microsoft Corporation)
GDR 1121 for SQL Server 2022 (KB5040936) (64-bit) (HKLM\...\KB5040936) (Version: 16.0.1121.4 - Microsoft Corporation)
GDR 1125 for SQL Server 2022 (KB5042211) (64-bit) (HKLM\...\KB5042211) (Version: 16.0.1125.1 - Microsoft Corporation)
GDR 1130 for SQL Server 2022 (KB5046057) (64-bit) (HKLM\...\KB5046057) (Version: 16.0.1130.5 - Microsoft Corporation)
GDR 1135 for SQL Server 2022 (KB5046861) (64-bit) (HKLM\...\KB5046861) (Version: 16.0.1135.2 - Microsoft Corporation)
GDR 2095 for SQL Server 2019 (KB5014356) (64-bit) (HKLM\...\KB5014356) (Version: 15.0.2095.3 - Microsoft Corporation)
GDR 2101 for SQL Server 2019 (KB5021125) (64-bit) (HKLM\...\KB5021125) (Version: 15.0.2101.7 - Microsoft Corporation)
GF Gear Generator (HKLM\...\{9D615B94-AA69-C668-DBFD-47188A960982}) (Version: 1.1.1 - Gras Solutions)
GlobalProtect (HKLM\...\{C531B514-763E-4495-A3C4-1B28C749A343}) (Version: 5.2.5 - Palo Alto Networks)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
IIS 10.0 Express (HKLM\...\{A43F6F96-4CED-4152-8086-AF954755E324}) (Version: 10.0.08608 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) Hidden
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Hidden
Integration Services (HKLM-x32\...\{B9639A9B-BDBF-4480-9B2B-FE9C06ED54E7}) (Version: 16.0.5107.6 - Microsoft Corporation) Hidden
IrfanView 4.62 (64-bit) (HKLM\...\IrfanView64) (Version: 4.62 - Irfan Skiljan)
Kodi (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Kodi) (Version: 20.1.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo Service Bridge (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.17 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.08.03.59 - Lenovo)
LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: 3.4.3.146 - Crystal Rich Ltd)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft Analysis Services OLE DB Provider (HKLM\...\{7CA9BDB2-DC47-44B5-B384-8938B461CC38}) (Version: 16.0.5143.0 - Microsoft Corporation) Hidden
Microsoft Analysis Services OLE DB Provider (HKLM-x32\...\{8D96B285-698F-42BA-B483-A0A54D75ECD6}) (Version: 16.0.5143.0 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft Command Line Utilities 15 for SQL Server (HKLM\...\{6F11B2D6-193B-4216-A8E6-D7092834F8FB}) (Version: 15.0.4298.1 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 132.0.2957.140 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 132.0.2957.140 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation)
Microsoft Help Viewer 2.3 (HKLM-x32\...\{99DC6816-30B2-32EB-9E12-AF8944C4FA4E}) (Version: 2.3.28307 - Microsoft Corporation) Hidden
Microsoft Help Viewer 2.3 (HKLM-x32\...\Microsoft Help Viewer 2.3) (Version: 2.3.28307 - Microsoft Corporation)
Microsoft ODBC Driver 17 for SQL Server (HKLM\...\{0E0F96AC-80DE-4400-A40C-429D63293651}) (Version: 17.10.6.1 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0405-1000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office Access MUI (Czech) 2007 (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Runtime (Czech) 2007 (HKLM-x32\...\{90120000-001C-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel MUI (Czech) 2007 (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (Czech) 2007 (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2007 (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2007 (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2007 (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (HKLM-x32\...\{90120000-002C-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}) (Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (Czech) 2007 (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2007 (HKLM\...\{90120000-002A-0405-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2007 (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft OLE DB Driver for SQL Server (HKLM\...\{76EB75D2-CCF6-41A9-90B6-922DE9146276}) (Version: 18.7.4.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2019 LocalDB (HKLM\...\{E5B3A478-C4C3-49E3-8384-A12D4B2008D4}) (Version: 15.0.4382.1 - Microsoft Corporation)
Microsoft SQL Server 2022 (64-bit) (HKLM\...\Microsoft SQL Server SQL2022) (Version: - Microsoft Corporation)
Microsoft SQL Server 2022 RsFx Driver (HKLM\...\{629C8FC9-3763-4C58-8264-5288AE34AFEF}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
Microsoft SQL Server 2022 Setup (English) (HKLM\...\{3E7935D6-CC83-46BF-BC86-0452B76689CE}) (Version: 16.0.1135.2 - Microsoft Corporation)
Microsoft SQL Server Management Studio - 19.1 (HKLM-x32\...\{97488653-b791-439a-8ca6-f0dd53cc98c0}) (Version: 19.1.56.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34433 (HKLM-x32\...\{804e7d66-ccc2-4c12-84ba-476da31d103d}) (Version: 14.42.34433.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34433 (HKLM\...\{E1902FC6-C423-4719-AB8A-AC7B2694B367}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34433 (HKLM\...\{382F1166-A409-4C5B-9B1E-85ED538B8291}) (Version: 14.42.34433 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{f895a2f1-ae3f-4212-8af1-7fa1f8c212ea}) (Version: 15.0.27520 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2017 x64 Hosting Support (HKLM\...\{AFFB9D8D-6E58-38A0-A7DD-F6F1F4247B36}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2017 x86 Hosting Support (HKLM-x32\...\{9594C97E-6A20-38B3-81BB-2778C4780BE1}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{f3fbabb4-bcfb-45eb-8fff-9b784fd68c38}) (Version: 16.0.31110 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{8E7A3713-551D-333A-9271-10EF4D77A80F}) (Version: 16.0.31110 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{E7A0CD34-1F9B-3496-ADB3-2F180D302F6A}) (Version: 16.0.31110 - Microsoft Corporation) Hidden
Microsoft VSS Writer for SQL Server 2022 (HKLM\...\{AB5D8778-81F3-47E2-87A4-35E776CD664B}) (Version: 16.0.1000.6 - Microsoft Corporation)
Microsoft Web Deploy 4.0 (HKLM\...\{82FD8C73-C24D-433C-85A9-48AE93570410}) (Version: 10.0.8305 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM\...\{71CD19D6-C448-4B5D-9A38-018741753290}) (Version: 64.48.26178 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM-x32\...\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}) (Version: 8.0.12.34404 - Microsoft Corporation)
OpenTX Companion 2.3 (HKLM-x32\...\OpenTX Companion 2.3) (Version: 2.3.15 - OpenTX)
Opera Stable 116.0.5366.71 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Opera 116.0.5366.71) (Version: 116.0.5366.71 - Opera Software)
PDF-XChange PRO (HKLM\...\{9F620C6F-01F1-4B60-9759-A6D5279AC7DD}) (Version: 10.4.3.391 - PDF-XChange Co Ltd.)
Photon_WorkShop_V2.1.23 (HKLM\...\Photon_WorkShop_V2.1.23) (Version: - ANYCUBIC)
PowerToys (Preview) (HKLM\...\{5A775AF0-704E-4912-BEF8-33C16665C3B7}) (Version: 0.88.0 - Microsoft Corporation) Hidden
PowerToys (Preview) x64 (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\{d07c4a91-dbbc-4565-ae3b-bcb61d01235e}) (Version: 0.88.0 - Microsoft Corporation)
PrusaSlicer (HKLM\...\PrusaSlicer_is1) (Version: 2.8.1 - Prusa Research s.r.o.)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Speciální aplikace Autodesk (HKLM-x32\...\{46EA8955-D629-4B3E-AAF0-D136031D7C95}) (Version: 3.2.1 - Autodesk)
Spotify (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Spotify) (Version: 1.2.56.502.ga68d2d4f - Spotify AB)
SQL Server 2022 Batch Parser (HKLM\...\{7EFD8B19-A9E6-41CF-A96F-B9B6E30EC345}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Common Files (HKLM\...\{6A68D32C-4C0D-4847-B70C-58E6B4D76A12}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Common Files (HKLM\...\{8770AF64-BB4B-4404-BDD6-6AF8E4C461FC}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Connection Info (HKLM\...\{770DA7F2-817B-4AA6-9160-08BB658ABDC6}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Connection Info (HKLM\...\{EAC54B82-7A37-4A9E-8953-474316BD40F6}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Services (HKLM\...\{6621C765-569C-4D46-A8E9-C69A47971357}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Services (HKLM\...\{C4CF167C-4739-4A3A-8D75-59C9C5F135CA}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Shared (HKLM\...\{161B8D12-C41B-4ACF-9BB5-E1FEE6788869}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Database Engine Shared (HKLM\...\{D6E82158-05B9-4A18-A624-EA135BC77766}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 DMF (HKLM\...\{5AB77D4E-9E5F-4627-B78B-129A5EC2858A}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 DMF (HKLM\...\{DCA0C2D6-83BF-41AE-B1AB-C4181002DE40}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects (HKLM\...\{12618131-AA9A-4DAE-9387-CE4417955B9F}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects (HKLM\...\{6F8242AA-1B25-421C-8E45-FC5978D9AA3A}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects Extensions (HKLM\...\{35EC6145-E333-42DB-BCB3-380DF6140C11}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 Shared Management Objects Extensions (HKLM\...\{A0F7ACBA-075F-4BC7-A85A-5DC301FCEC74}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 SQL Diagnostics (HKLM\...\{0CEFE958-E71A-4171-9DEF-77E9234A5613}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 XEvent (HKLM\...\{94AEB0A0-365C-449B-B573-D2ECB353EB06}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server 2022 XEvent (HKLM\...\{BD8B7339-7559-4FC3-95E6-264324D45235}) (Version: 16.0.1000.6 - Microsoft Corporation) Hidden
SQL Server Management Studio (HKLM-x32\...\{33F6AA45-05AE-4040-A83A-6B27778CA3A4}) (Version: 19.1.56.0 - Microsoft Corp.) Hidden
SQL Server Management Studio Language Pack - English (HKLM-x32\...\{3D59683C-BA05-45FB-B0DC-20A7AB95DA27}) (Version: 19.1.56.0 - Microsoft Corp.) Hidden
SSMS Post Install Tasks (HKLM-x32\...\{93C559A7-55A9-41EA-B0A0-AEB72DB73E92}) (Version: 19.1.56.0 - Microsoft Corporation) Hidden
Sublime Text (HKLM\...\Sublime Text_is1) (Version: - Sublime HQ Pty Ltd)
Sweet Home 3D version 7.1 (HKLM\...\Sweet Home 3D_is1) (Version: 7.1 - eTeks)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.62.4 - TeamViewer)
Thunderbolt™ Software (HKLM-x32\...\{1AA93FF8-C685-4E00-8682-7F2E5D8E8689}) (Version: 17.4.80.550 - Intel Corporation)
Tsk 3.0.0 (HKLM-x32\...\{27C32CA7-F5F3-4982-9B27-CC951B7DF163}}_is1) (Version: 3.0.0 - Tsk)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 139.2.10843 - Ubisoft)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{192B349F-C3F7-4BBE-B49E-00DD4BD28373}) (Version: 3.0.29 - Autodesk) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
Visual Studio 2017 Isolated Shell for SSMS (HKLM-x32\...\{0C69A55F-BC72-4AFB-BAEF-C5DEF9C32B9A}) (Version: 15.0.28308.421 - Microsoft Corporation) Hidden
vs_CoreEditorFonts (HKLM-x32\...\{56FB5923-1A95-4D55-BE78-CD42B50E67AD}) (Version: 17.6.33605 - Microsoft Corporation)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WinMed 2 (HKLM-x32\...\{F81C10F4-EE30-49D9-B8DB-EA0CB870681A}) (Version: 2021.1.1.46 - Plus4U Medical s.r.o.)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
ZeroTier One (HKLM-x32\...\{EC58088A-4E0F-4BD5-B0B2-FD81C803EEC4}) (Version: 1.14.0 - ZeroTier, Inc.) Hidden
ZeroTier One (HKLM-x32\...\ZeroTier One 1.14.0) (Version: 1.14.0 - ZeroTier, Inc.)
Zoom Workplace (HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\ZoomUMX) (Version: 6.2.11 (50939) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-11-07] ()
Bezdrátový adaptér displeje Microsoft -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_4.232.137.0_x64__8wekyb3d8bbwe [2024-10-25] (Microsoft Corporation) [Startup Task]
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-04-13] (Microsoft Corporation)
ELAN Touchpad for Thinkpad -> C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTouchpadforThinkpad_24.121.15.0_x64__stws0m115j6hg [2024-10-15] (ELAN Microelectronics Corporation)
ELAN TrackPoint for Thinkpad -> C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTrackPointforThinkpa_24.121.51.0_x64__stws0m115j6hg [2024-10-15] (ELAN Microelectronics Corporation)
Lenovo Pen Settings -> C:\Program Files\WindowsApps\WacomTechnologyCorp.157535B83C264_8.2.8.0_neutral__ss941bf8mfs8a [2024-12-18] (Wacom Technology Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2024-10-15] (Microsoft Corporation)
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.5101.0_x64__8wekyb3d8bbwe [2024-12-18] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.1.3.0_x64__8wekyb3d8bbwe [2024-11-04] (Microsoft Studios)
Minecraft: Java Edition -> C:\Program Files\WindowsApps\Microsoft.MinecraftJavaEdition_1.0.5.0_x64__8wekyb3d8bbwe [2023-07-21] (Microsoft Studios)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{0440049F-D1DC-4E46-B27B-98393D79486B}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{10144713-1526-46C9-88DA-1FB52807A9FF}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.SvgThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{51B4D7E5-7568-4234-B4BB-47FB3C016A69}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.ImageResizerExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{60789D87-9C3C-44AF-B18C-3DE2C2820ED3}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.MarkdownPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{729B72CD-B72E-4FE9-BCBF-E954B33FE699}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.QoiPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{77257004-6F25-4521-B602-50ECC6EC62A6}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.StlThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{84D68575-E186-46AD-B0CB-BAEB45EE29C0}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{A0257634-8812-4CE8-AF11-FA69ACAEAFAE}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.GcodePreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2022\acad.exe (Autodesk, Inc. -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{AD856B15-D25E-4008-AFB7-AFAA55586188}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.QoiThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\Autodesk\webdeploy\production\bce2902bbfcb27678033cbb9e17a3529631b97a7\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{D8034CFA-F34B-41FE-AD45-62FCBB52A6DA}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.MonacoPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{DD5CACDA-7C2E-4997-A62A-04A597B58F76}\localserver32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2022\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{e9e15306-22d0-4ffa-2e2c-d3af11e3edd2}\localserver32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.PowerLauncher.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{F2847CBE-CD03-4C83-A359-1A8052C1B9D5}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.GcodeThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{FCDD4EED-41AA-492F-8A84-31A1546226E0}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\PowerToys.SvgPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1431687685-2443868726-21383991-1001_Classes\CLSID\{FF90D477-E32A-4BE8-8CC5-A502A97F5401}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.NewPlus.ShellExtension.win10.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2021-01-29] (Autodesk, Inc. -> Autodesk, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2021-01-29] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers1: [PDFTools Context menu] -> {e0e0016c-6025-4337-948f-0b655a18552b} => C:\Program Files\Tracker Software\PDF Tools\PDFXToolsShellMenu.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2022-06-15] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igfxDTCM.dll [2022-05-08] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2022-06-15] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2_S-1-5-21-1431687685-2443868726-21383991-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1431687685-2443868726-21383991-1001: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3_S-1-5-21-1431687685-2443868726-21383991-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5_S-1-5-21-1431687685-2443868726-21383991-1001: [NewPlusShellExtensionWin10] -> {FF90D477-E32A-4BE8-8CC5-A502A97F5401} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.NewPlus.ShellExtension.win10.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5_S-1-5-21-1431687685-2443868726-21383991-1001: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Users\Lenovo\AppData\Local\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2025-01-24] (Microsoft Corporation -> Microsoft Corporation)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Lenovo\Desktop\WindowTop.lnk -> C:\Moje\utils+programy\WindowTop.v5.25.2.Portable\WindowTop.bat ()
Shortcut: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk -> C:\Users\Lenovo\Documents\AutoHotkey\Hkeys.bat ()

==================== Loaded Modules (Whitelisted) =============

2025-01-20 12:07 - 2025-01-20 12:07 - 001299456 _____ () [File not signed] C:\Program Files\Sublime Text\sqlite3.dll
2025-01-06 11:25 - 2025-01-06 11:25 - 000372736 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.CxHef9fb4ae#\8e1e6e545418d37581be75b0b971c0fa\Interop.CxHDAudioAPILib.ni.dll
2025-01-06 11:25 - 2025-01-06 11:25 - 000018944 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.CxUtilSvcLib\57e4d0236064f67769de82ac194a0b85\Interop.CxUtilSvcLib.ni.dll
2023-01-18 16:51 - 2018-03-13 10:21 - 001173504 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxHDAudioAPI.dll
2025-01-20 12:07 - 2025-01-20 12:07 - 004119552 _____ (Python Software Foundation) [File not signed] C:\Program Files\Sublime Text\python33.dll
2025-01-20 12:07 - 2025-01-20 12:07 - 007095808 _____ (Python Software Foundation) [File not signed] C:\Program Files\Sublime Text\python38.dll
2025-01-20 12:07 - 2025-01-20 12:07 - 003482112 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Sublime Text\libcrypto-1_1-x64.dll
2025-01-20 12:07 - 2025-01-20 12:07 - 000692736 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Sublime Text\libssl-1_1-x64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer (Whitelisted) =============

BHO: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
BHO-x32: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Toolbar: HKLM - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Toolbar: HKLM-x32 - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2024-10-15] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2025-02-07 21:07 - 000000753 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

2022-12-22 16:26 - 2023-12-23 16:02 - 000000512 _____ C:\Windows\system32\drivers\etc\hosts.ics
192.168.137.1 DESKTOP-D7P1O08.mshome.net # 2028 12 4 21 15 2 12 731
192.168.137.157 TELEFUNKEN-TV.mshome.net # 2023 12 6 30 15 2 12 731

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Control Panel\Desktop\\Wallpaper -> c:\users\lenovo\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\uun_pozadi pracovni plochy_001_final_1920x1200.jpg
HKU\S-1-5-80-2196430659-3345688158-4281717578-75482121-3290361108\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-80-417864872-2509941577-3334891905-2270271522-438893919\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 10.11.6.1 - 1.0.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

Network Binding:
=============
ZeroTier One [9e1948db63d435d7]: ZeroTier Virtual Port -> zttap300.sys
Ethernet 6: PANGP Virtual Ethernet Adapter -> pangpd.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Intel(R) Ethernet Connection (4) I219-LM -> e1d68x64.sys
Wi-Fi: Intel(R) Dual Band Wireless-AC 8265 -> Netwtw06.sys
Hamachi: LogMeIn Hamachi Virtual Ethernet Adapter -> Hamdrv.sys

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Autodesk Access"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\StartupFolder: => "fnlock.lnk"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_5EF70F99B4529735F3564FFE246DB961"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "OPENVPN-GUI"
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\StartupApproved\Run: => "org.openvpn.client"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{0477D01D-B269-4F97-86AC-B2B1101340E7}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [UDP Query User{30C00C6B-AB89-4E5F-B32D-88F2AF473EB6}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [TCP Query User{79E4ADFC-699C-4243-816F-E87FFF5D603A}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Block) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{17606559-DD1A-4AA0-8056-EC7A80B20F9B}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Block) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{66C37B74-C406-4E95-969F-238D570373D5}] => (Allow) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{D3BE78BD-BA56-4849-9A8E-5D8ADDE4075E}C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe] => (Allow) C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe (ExpressLRS Configurator Contributors) [File not signed]
FirewallRules: [UDP Query User{B8EBBBBD-CE98-4DC3-955C-7E9B9A5A2527}C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe] => (Allow) C:\users\lenovo\appdata\local\programs\expresslrs configurator\expresslrs configurator.exe (ExpressLRS Configurator Contributors) [File not signed]
FirewallRules: [TCP Query User{627DB24E-0EB1-4E90-99F8-063EF15D4D0F}C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe] => (Allow) C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe (The NW.js Community) [File not signed]
FirewallRules: [UDP Query User{6555671E-4F37-4F20-A66C-B963C8284974}C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe] => (Allow) C:\program files\betaflight\betaflight-configurator\betaflight-configurator.exe (The NW.js Community) [File not signed]
FirewallRules: [TCP Query User{424B0AE8-C7B6-4EC8-BFEE-6D925F249B88}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{30113EB1-B5DC-41C0-9044-9D4093AC5F9F}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{EC54E8A6-345B-4541-8A34-D210333B4AC5}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{BE81A672-61C4-4F6D-977D-3F8025149D66}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{F7727A91-7641-4F72-9C85-BD12D85400CC}] => (Allow) C:\Users\Lenovo\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{43761188-C81B-4D19-9D3A-B267B5E05768}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Now.gg, INC -> Bluestack Systems, Inc.)
FirewallRules: [{A5B8A32D-39A4-4074-BE01-888812CFBCFB}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Now.gg, INC -> COMPANY NAME)
FirewallRules: [TCP Query User{8A1F02B8-46AD-4519-9984-9A21863EB071}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{F547DA46-77F1-4B51-9F7C-6CFE6A233600}C:\users\lenovo\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\lenovo\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{11A73BFB-EEDC-4A42-AB44-7BF798205114}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL16.WinMed2\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1BDCD837-6A9F-4F4A-AAD1-EFE6CFDE9601}] => (Allow) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{52D875CC-27B3-4CDE-BCB0-95436C62BEC0}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{F172FD69-FD1A-4AE4-8E43-D0A520E703F8}C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\lenovo\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{1F4C1D0E-35D1-4704-B601-2CB0F7A30BB2}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [UDP Query User{FB209989-DC5D-4F86-B2FB-B4A16D6538F0}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [{B9908115-B3DD-4E03-8B85-3AE7A432592D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{AE6F50A1-94FF-48B4-83AB-6166398828E7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{65E3E439-A6BD-4AD7-B170-D7A04CCC74EE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{C261743D-9A3F-4225-9784-7A63D947E438}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{62788D0A-6654-4E7B-8921-D50D35DBA081}C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe] => (Allow) C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe => No File
FirewallRules: [UDP Query User{B0C36577-AF0E-4A77-896F-CF0DD866B13D}C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe] => (Allow) C:\hry\unreal-tournament-(1999)-bez-instalacji-hula\u-t-(1999) bez instalacji hula\system\unrealtournament.exe => No File
FirewallRules: [TCP Query User{9134DCDC-AE18-424A-B0AF-ABE2FC9CB025}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [UDP Query User{D9C53667-D732-4C57-821A-D367CF30D2E6}C:\hry\tmnationsforever\tmforever.exe] => (Allow) C:\hry\tmnationsforever\tmforever.exe () [File not signed]
FirewallRules: [{68FCD68C-DB7D-4BC9-8C32-E4730DAB1D45}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{AABA1AAF-9619-4037-8742-112ACAF931D1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{D5DEF35F-9B6B-425A-907A-943EAAD19C0F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{0672106B-A6D2-4343-AA71-156B63F68207}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{4844A50D-1AFE-4983-8690-35B2239FDF0C}C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) [File not signed]
FirewallRules: [UDP Query User{BFF80377-507B-4236-A95E-95B233D558C5}C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\activision\call of duty - world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) [File not signed]
FirewallRules: [{1295AE24-8361-46A6-89F4-3D5FFC7CA0D7}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaW.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{A200866A-BD89-43E0-8618-107CFDFEC139}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaW.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{3984F050-8D2D-413F-8FBA-F13F50C58E3A}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaWmp.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{DBBAACEC-7B82-4BDA-9BFE-BB318B4C58EB}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty - World at War\CoDWaWmp.exe (Activision Publishing -> Activision Blizzard, Inc.)
FirewallRules: [{81B0955F-D169-4572-BDE0-691F6265C4A2}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{04993B0F-0A5A-49D7-A898-495147D4DB4E}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{EB288B36-9996-42AD-84CC-17462AD40873}] => (Allow) LPort=9993
FirewallRules: [{72A5AED3-5671-4156-9CED-907DD016D303}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )
FirewallRules: [{CA6DA1D5-6208-4C65-A7A8-9E4FA9B16F45}] => (Allow) LPort=9993
FirewallRules: [TCP Query User{082B44D7-613A-498F-9835-E7D92208182F}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [UDP Query User{3718DA56-5177-44ED-BB1A-EFDACC764E4E}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe (XBMC Foundation) [File not signed]
FirewallRules: [TCP Query User{BB682615-4889-437A-B3AC-E623D88C8DB7}C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [UDP Query User{09166FF4-C86F-4965-874B-350869CB40AA}C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [{1193C965-D7C0-40D6-B68D-C24CC6ACAF02}] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [{7A0CD638-F939-45AF-9DD8-37F2B53EC9CF}] => (Allow) C:\hry\stronghold-crusader-extreme\stronghold crusader extreme\stronghold crusader.exe () [File not signed]
FirewallRules: [TCP Query User{793EED5F-729E-4DF0-9284-65C8AB6DA738}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{0D42EB62-F63A-44FA-A1BF-50E76508B214}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DA8A9E62-1E46-4720-9B7E-301C07FB2679}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{36DB1967-EF38-4127-8097-6259D6E26EAA}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{733DFA5D-7AB0-4380-8DB8-9EBCE426A297}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{7425E17D-E926-4012-8403-5278901D1490}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{62E685A3-DCBA-43C6-A039-322599295A39}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{5508969B-307A-40BB-96C4-B86474E843B8}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{5BE9C128-75B7-4E42-A7BD-3FD1872F7368}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{8B281BFC-F632-448C-AB2C-52504684EA99}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{3E3A0AED-058B-402E-9555-D46D59A10507}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{9B3EE5B9-E537-458E-B6A2-AB3708C2B28D}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{E64BF29D-A05E-4A3A-B9BF-DBD3ED289B47}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{25A4821A-5A86-4661-9B47-4FB281BB960A}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{D1CC1006-DAE9-47FD-BADF-A43095877933}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{14DE2953-FF60-4434-A183-B66E55F8E8A8}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [TCP Query User{732EA61E-0EFE-432D-B2D1-F3200CA8379F}C:\hry\stronghold crusader\stronghold crusader.exe] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [UDP Query User{4697EF28-F496-4593-BB97-A53E3BCDE4E8}C:\hry\stronghold crusader\stronghold crusader.exe] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{141154F8-6196-4835-AE98-56E1CC0AEAF2}] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{EFE907B6-6C0F-4075-B506-C911250D3F57}] => (Allow) C:\hry\stronghold crusader\stronghold crusader.exe () [File not signed]
FirewallRules: [{C208B615-2749-43D2-8B23-4744D753FAC5}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3CBA537B-1A52-4E53-A4FF-CF5150E1BADC}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{26F9CEF4-241E-4FB8-8597-7423D81E5481}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{863EF897-671A-4294-929B-2BC2663BC0CA}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9FFE781D-0CCA-419A-9B24-B434C8470794}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CE93E2A3-1DAF-43B4-A1A0-C3391E028E24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4A61C5E4-7CE1-4895-9B1C-3319FC2BD773}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F197D3BE-151E-4EF1-AD3C-A228B90B03D4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.136.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{73853D69-15C8-4606-8608-A7F695A10C84}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [UDP Query User{F33B081A-C4B3-4854-B5F2-5774636E207D}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{77C369F0-9D73-461D-A592-6D672BC0E204}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{6F388ED3-F882-4EED-BE88-B1D937173AA7}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{B21D613D-1398-480A-87A0-F2881D8FE226}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\132.0.2957.140\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0D41A1D2-9E0A-4119-BC5C-886501B76911}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )
FirewallRules: [{EA0EA991-0898-4BE2-9B7E-8EB1A3EE6442}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZEROTIER, INC. -> )

==================== Restore Points =========================

07-02-2025 21:55:39 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices ============
Name: PANGP Virtual Ethernet Adapter
Description: PANGP Virtual Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: PaloAltoNetworks
Service: PanGpd
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (02/08/2025 06:37:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.19041.5247, časové razítko: 0xc91815a0
Název chybujícího modulu: Explorer.EXE, verze: 10.0.19041.5247, časové razítko: 0xc91815a0
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000001effa2
ID chybujícího procesu: 0x28f4
Čas spuštění chybující aplikace: 0x01db799e84c3f60a
Cesta k chybující aplikaci: C:\Windows\Explorer.EXE
Cesta k chybujícímu modulu: C:\Windows\Explorer.EXE
ID zprávy: 918a2c84-4fad-41cd-a432-0c18e200f757
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/07/2025 06:57:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: fwdetectcmd1911.exe, verze: 1.0.0.0, časové razítko: 0x5dde0fc6
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.5369, časové razítko: 0x697f1b86
Kód výjimky: 0xe0434352
Posun chyby: 0x00141722
ID chybujícího procesu: 0x4c74
Čas spuštění chybující aplikace: 0x01db7989c7528d55
Cesta k chybující aplikaci: C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\r0stf24w\fwdetectcmd1911.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: e145f0f7-8587-44b1-b86f-02574f9c167a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/07/2025 06:57:42 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: fwdetectcmd1911.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.IO.IOException
na System.IO.__Error.WinIOError(Int32, System.String)
na System.Console.GetBufferInfo(Boolean, Boolean ByRef)
na System.Console.get_WindowWidth()
na FwUpdateCmd.CmdUtilities.WriteWrappedLine(System.String, Int32)
na FwUpdateCmd.CmdUtilities.WriteDescription(System.String, System.String, System.Nullable`1<Int32>)
na FwUpdateCmd.Program.Main(System.String[])

Error: (02/07/2025 06:57:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: fwdetectcmd1911.exe, verze: 1.0.0.0, časové razítko: 0x5dde0fc6
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.5369, časové razítko: 0x697f1b86
Kód výjimky: 0xe0434352
Posun chyby: 0x00141722
ID chybujícího procesu: 0x48c
Čas spuštění chybující aplikace: 0x01db7989c4738ed4
Cesta k chybující aplikaci: C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\r0stf24w\fwdetectcmd1911.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: cf57a699-d50b-4210-bb94-5971005dae4d
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/07/2025 06:57:37 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: fwdetectcmd1911.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.IO.IOException
na System.IO.__Error.WinIOError(Int32, System.String)
na System.Console.GetBufferInfo(Boolean, Boolean ByRef)
na System.Console.get_WindowWidth()
na FwUpdateCmd.CmdUtilities.WriteWrappedLine(System.String, Int32)
na FwUpdateCmd.CmdUtilities.WriteDescription(System.String, System.String, System.Nullable`1<Int32>)
na FwUpdateCmd.Program.Main(System.String[])

Error: (02/05/2025 02:52:09 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\Windows\system32\sysmain.dll (kód chyby Win32 126).

Error: (02/04/2025 09:34:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x3fe8
Čas spuštění chybující aplikace: 0x01db76df883cbe9f
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: ef2bbdb4-281a-4aa2-8ce8-571abaad5c5f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/04/2025 08:44:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Název chybujícího modulu: MSACCESS.EXE, verze: 12.0.6735.5000, časové razítko: 0x561e089f
Kód výjimky: 0xc0000005
Posun chyby: 0x000e53df
ID chybujícího procesu: 0x57f0
Čas spuštění chybující aplikace: 0x01db76d7c3f49565
Cesta k chybující aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
Cesta k chybujícímu modulu: C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE
ID zprávy: 30f86aba-a3c6-4244-841f-b6cb0d556978
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (02/10/2025 08:09:46 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:09:37 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:09:33 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:09:30 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:09:21 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:08:52 AM) (Source: Schannel) (EventID: 4116) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru neobsahuje očekávaný název. Z tohoto důvodu nejde určit, jestli se připojujete ke správnému serveru. Očekával se server s názvem autoupdate.opera.com. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:08:51 AM) (Source: Schannel) (EventID: 4108) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru nebyl správně ověřený. Kód chyby je 0x80092013. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.

Error: (02/10/2025 08:08:51 AM) (Source: Schannel) (EventID: 4108) (User: DESKTOP-D7P1O08)
Description: Certifikát přijatý od vzdáleného serveru nebyl správně ověřený. Kód chyby je 0x80092013. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.


Windows Defender:
================
Date: 2025-02-07 11:08:31
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {6A9F4C01-3A05-49BB-A437-116C76D5DB1C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-06 11:19:20
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {40C03138-A239-4697-BC10-1221E148D5C6}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-05 08:20:24
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {E48983F5-11CA-4579-B841-8A7346901430}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-02-04 08:54:25
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8DE503A0-127B-409F-A854-82FA942750B6}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2025-01-31 08:24:39
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {F7A75998-2CE0-4D25-BBA7-7168A2C034E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2025-10-10 16:03:56
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.421.716.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24090.11
Kód chyby: 0x800b0101
Popis chyby: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Date: 2025-12-05 14:10:33
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.421.633.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24090.11
Kód chyby: 0x800b0101
Popis chyby: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Date: 2024-07-11 13:29:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Zálohování
Kód chyby: 0x80004004
Popis chyby: Operace přerušena
Verze bezpečnostních informací: 1.415.1.0;1.415.1.0
Verze modulu: 1.1.24060.5

Date: 2024-07-11 13:29:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80501102
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Verze bezpečnostních informací: 1.415.19.0;1.415.19.0
Verze modulu: 1.1.24060.5

Date: 2024-07-07 16:33:59
Description:
Antivirová ochrana v programu Microsoft Defender narazil na kritickou chybu při provádění akce s malwarem nebo jiným potenciálně nežádoucím softwarem.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\explorer.exe
Akce: Karanténa
Stav akce: No additional actions required
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.
Verze bezpečnostních informací: AV: 1.413.740.0, AS: 1.413.740.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.24050.5, NIS: 0.0.0.0

CodeIntegrity:
===============
Date: 2024-02-28 18:44:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f694c3678cca2be0\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO R0SET57W (1.41 ) 09/04/2024
Motherboard: LENOVO 20LJS3A100
Processor: Intel(R) Core(TM) i5-8350U CPU @ 1.70GHz
Percentage of memory in use: 35%
Total physical RAM: 16218.56 MB
Available physical RAM: 10520.61 MB
Total Virtual: 21082.56 MB
Available Virtual: 15174.37 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.84 GB) (Free:8.3 GB) (Model: SAMSUNG MZNLN256HMHQ-000H1) (Protected) NTFS

\\?\Volume{f5f68b7b-042d-4c11-bb43-68c2dc9ae93f}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{325a2bb6-7368-4dfc-8668-efa91a80dd67}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#10 Příspěvek od Cizap »

Našel jsem to v cestě viz. příloha.
Přílohy
obrázek_2025-02-10_090658548.png
obrázek_2025-02-10_090658548.png (38.76 KiB) Zobrazeno 11232 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#11 Příspěvek od Rudy »

ADW opravdu nenašel nic, preinstalled jsou utility od Lenova, tedy OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [sspk_global] => C:\Program Files (x86)\FunPlus\SOS - Last Warrior\Launcher.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Spotify] => C:\Users\Lenovo\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized (No File)
Startup: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk
Task: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {16EEB917-1CEF-46DE-A23D-41EEAD015FD9} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {5A25CBB9-3864-4D78-A35B-E30D9ACF6644} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
irewallRules: [TCP Query User{73853D69-15C8-4606-8608-A7F695A10C84}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [UDP Query User{F33B081A-C4B3-4854-B5F2-5774636E207D}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{77C369F0-9D73-461D-A592-6D672BC0E204}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{6F388ED3-F882-4EED-BE88-B1D937173AA7}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe

EmptyTemp:
Hosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#12 Příspěvek od Cizap »

Fix result of Farbar Recovery Scan Tool (x64) Version: 03-02-2025
Ran by Lenovo (10-02-2025 10:46:28) Run:4
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo & SQLTELEMETRY$WINMED2 & MSSQL$WINMED2
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [sspk_global] => C:\Program Files (x86)\FunPlus\SOS - Last Warrior\Launcher.exe (No File)
HKU\S-1-5-21-1431687685-2443868726-21383991-1001\...\Run: [Spotify] => C:\Users\Lenovo\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized (No File)
Startup: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk
Task: {EABBC42E-C7FD-4F56-A998-264C714DB232} - System32\Tasks\YTPX Cloud LG => C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\rhc.exe [1536 2023-07-20] () [File not signed] -> C:\Users\Lenovo\AppData\Local\ypsx_cloud_v2\wdcloud_v2.exe <==== ATTENTION
Task: {16EEB917-1CEF-46DE-A23D-41EEAD015FD9} - System32\Tasks\YTPXCheck => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
Task: {5A25CBB9-3864-4D78-A35B-E30D9ACF6644} - System32\Tasks\YTPXCheck LG => C:\Users\Lenovo\AppData\Local\wupdater_cloud\rhc.exe [1536 2023-03-06] () [File not signed] -> C:\Users\Lenovo\AppData\Local\wupdater_cloud\php.exe keep_play.php <==== ATTENTION
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
irewallRules: [TCP Query User{73853D69-15C8-4606-8608-A7F695A10C84}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [UDP Query User{F33B081A-C4B3-4854-B5F2-5774636E207D}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{77C369F0-9D73-461D-A592-6D672BC0E204}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
FirewallRules: [{6F388ED3-F882-4EED-BE88-B1D937173AA7}] => (Block) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File
E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe

EmptyTemp:
Hosts:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sspk_global" => removed successfully
"HKU\S-1-5-21-1431687685-2443868726-21383991-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Spotify" => removed successfully
"Startup: C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hkeys.bat.lnk" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EABBC42E-C7FD-4F56-A998-264C714DB232}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EABBC42E-C7FD-4F56-A998-264C714DB232}" => removed successfully
C:\Windows\System32\Tasks\YTPX Cloud LG => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTPX Cloud LG" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16EEB917-1CEF-46DE-A23D-41EEAD015FD9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16EEB917-1CEF-46DE-A23D-41EEAD015FD9}" => removed successfully
C:\Windows\System32\Tasks\YTPXCheck => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTPXCheck" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5A25CBB9-3864-4D78-A35B-E30D9ACF6644}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A25CBB9-3864-4D78-A35B-E30D9ACF6644}" => removed successfully
C:\Windows\System32\Tasks\YTPXCheck LG => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTPXCheck LG" => removed successfully
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.18 => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
irewallRules: [TCP Query User{73853D69-15C8-4606-8608-A7F695A10C84}C:\users\lenovo\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lenovo\appdata\roaming\spotify\spotify.exe => No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F33B081A-C4B3-4854-B5F2-5774636E207D}C:\users\lenovo\appdata\roaming\spotify\spotify.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{77C369F0-9D73-461D-A592-6D672BC0E204}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F388ED3-F882-4EED-BE88-B1D937173AA7}" => removed successfully
"E:\call of duty 5 World at War (vše potřebné pro zombie)\call of duty 5 World at War\CODWAW1\Keygen\rzr-c5kg.exe" => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 13940476 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 15896064 B
Windows/system/drivers => 57204 B
Edge => 0 B
Firefox => 0 B
Opera => 3316976 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 2336 B
Lenovo => 235369049 B
SQLTELEMETRY$WINMED2 => 235369049 B
MSSQL$WINMED2 => 235369049 B

RecycleBin => 6608946 B
EmptyTemp: => 712.6 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 10-02-2025 10:48:02)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 10:48:02 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#13 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Cizap
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 07 dub 2014 11:56

Re: Zabržděné PC

#14 Příspěvek od Cizap »

Řekl bych, že je to v pohodě, už žádný problém :) ještě jsem teda PC nerestartoval, ale to bych se kdyžtak ozval, to poslední co tam bylo, už tam kde to bylo nevidím, tak asi vše OK :) zase moc díky za pomoc :idea:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zabržděné PC

#15 Příspěvek od Rudy »

To jsem rád a nemáte zač! :-)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno