Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Janekas
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 85
Registrován: 14 črc 2009 10:01

Prosím o pomoc

#1 Příspěvek od Janekas »

Dobrý den,

prosím o kontrolu logů z PC. Nelze se přihlásit ke Steamu ( chyba e84) a obnova hesla skončí neplatným Chapta. Jinak se počítač chová normálně. Mbam nic. Vyčištění dns cashe, ani cashe prohlížeče nepomohlo. Děkuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16.04.2024
Ran by Ludvík (administrator) on DESKTOP-6GC5BD6 (Gigabyte Technology Co., Ltd. B450 GAMING X) (17-04-2024 22:23:17)
Running from C:\Users\Ludvík\Desktop\FRST64.exe
Loaded Profiles: Ludvík
Platform: Microsoft Windows 10 Pro Version 22H2 19045.4291 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(DriverStore\FileRepository\u0395307.inf_amd64_04945749e6d18630\B395312\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0395307.inf_amd64_04945749e6d18630\B395312\atieclxx.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0395307.inf_amd64_04945749e6d18630\B395312\atiesrxx.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2414.8.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.4289_none_7e26f6bc7c7a4793\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [856288 2019-10-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [122427152 2021-07-15] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [3306400 2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37397480 2024-03-04] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [981640 2024-04-07] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Ludvík\AppData\Local\Microsoft\Teams\Update.exe [2454240 2023-12-06] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [AMDNoiseSuppression] => "C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe" (No File)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [MicrosoftEdgeAutoLaunch_69BC2688FDD7B980A71EC19A065BD408] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4063800 2024-04-12] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4384104 2024-03-06] (Valve Corp. -> Valve Corporation)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {4A6D4BAC-A1A2-40CD-B810-86B7C774FEA5} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2023-08-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {54B42A00-25C2-4FE9-A9D5-ADAFFF85C9D0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21916864 2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {AB2BA027-D78A-4057-817E-0D07D45A07C0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21916864 2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {BDECF92A-A221-493E-BECD-44A6E01E8FA5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141384 2024-04-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {7D9479E1-AFD8-4E48-B8CE-8FA7ECDE831D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141384 2024-04-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {618A030B-D3E9-479B-B54A-110398CAD2FD} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2023-08-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {BC77082A-7DAE-45CC-BF87-E61EA2D9EB5C} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4207120 2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {5F57CC90-E1CE-4569-A8E6-B8296C92E8C6} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3589282673-692340025-2612224337-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4207120 2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {F410F549-F380-4CBF-858B-1272EBA89664} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60344 2023-08-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {B80B07F2-2379-4C2B-93F2-ABCCEF20FD14} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [291768 2023-08-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.34.1
Tcpip\..\Interfaces\{61690c30-2023-4615-9275-b1a67ee45710}: [DhcpNameServer] 192.168.34.1
Tcpip\..\Interfaces\{61690c30-2023-4615-9275-b1a67ee45710}: [DhcpDomain] khnet.info

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Ludvík\AppData\Local\Microsoft\Edge\User Data\Default [2024-04-17]
Edge Extension: (Dokumenty Google offline) - C:\Users\Ludvík\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-06]
Edge Extension: (Edge relevant text changes) - C:\Users\Ludvík\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2567304 2024-04-12] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15740200 2024-04-06] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9202360 2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2024-01-04] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [954704 2024-02-09] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncHelper.exe [3512224 2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8884840 2024-04-17] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-04-17] (Malwarebytes Inc. -> Malwarebytes)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.055.0317.0002\OneDriveUpdaterService.exe [3852712 2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [6669296 2024-02-22] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522184 2024-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe [3199648 2024-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe [133576 2024-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [25584 2023-06-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_54807f69fe156f14\amdsafd.sys [113088 2023-04-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
S3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0395307.inf_amd64_04945749e6d18630\B395312\amdkmdag.sys [99600928 2023-09-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [3223448 2024-03-06] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [158640 2024-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R2 mbamchameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [223296 2024-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-04-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [201280 2024-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [78400 2024-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239576 2024-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [188784 2024-04-17] (Malwarebytes Inc. -> Malwarebytes)
R3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [20936 2024-04-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [601376 2024-04-10] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105760 2024-04-10] (Microsoft Windows -> Microsoft Corporation)
S3 NEProtect; \??\C:\Program Files (x86)\Steam\steamapps\common\Lost Light\Engine\Binaries\Win64\NEProtect.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-04-17 22:23 - 2024-04-17 22:23 - 000015568 _____ C:\Users\Ludvík\Desktop\FRST.txt
2024-04-17 22:23 - 2024-04-17 22:23 - 000000000 ____D C:\FRST
2024-04-17 22:22 - 2024-04-17 22:21 - 002394112 _____ (Farbar) C:\Users\Ludvík\Desktop\FRST64.exe
2024-04-17 22:21 - 2024-04-17 22:21 - 002394112 _____ (Farbar) C:\Users\Ludvík\Downloads\FRST64.exe
2024-04-17 22:11 - 2024-04-17 22:14 - 000000000 ____D C:\Program Files (x86)\Steam
2024-04-17 22:11 - 2024-04-17 22:11 - 002378560 _____ C:\Users\Ludvík\Downloads\SteamSetup.exe
2024-04-17 22:11 - 2024-04-17 22:11 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk
2024-04-17 22:11 - 2024-04-17 22:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2024-04-17 22:10 - 2024-04-17 22:10 - 000003176 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateBrowserReplacementTask
2024-04-17 22:10 - 2024-04-17 22:10 - 000002508 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-04-17 22:10 - 2024-04-17 22:10 - 000002346 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-04-17 22:08 - 2024-04-17 22:09 - 000000000 ___HD C:\$WinREAgent
2024-04-17 22:08 - 2024-04-17 22:08 - 000188784 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2024-04-17 18:40 - 2024-04-17 22:23 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Malwarebytes
2024-04-17 18:39 - 2024-04-17 18:39 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2024-04-17 18:39 - 2024-04-17 18:39 - 000002081 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2024-04-17 18:39 - 2024-04-17 18:39 - 000000000 ____D C:\ProgramData\Malwarebytes
2024-04-17 18:39 - 2024-04-17 18:39 - 000000000 ____D C:\Program Files\Malwarebytes
2024-04-17 18:38 - 2024-04-17 18:38 - 002589624 _____ (Malwarebytes) C:\Users\Ludvík\Downloads\MBSetup.exe
2024-04-17 15:51 - 2024-04-17 15:51 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Backup
2024-04-14 21:49 - 2024-04-14 21:49 - 000549302 _____ C:\Users\Ludvík\Downloads\pink_neon_tetrarch.zip
2024-04-14 20:23 - 2024-04-14 20:24 - 087822129 _____ C:\Users\Ludvík\Downloads\Universal+Camouflage+of+Marisa.zip
2024-04-14 20:21 - 2024-04-14 20:21 - 000522748 _____ C:\Users\Ludvík\Downloads\Valentine_uk_valentine_mk_1.zip
2024-04-14 20:20 - 2024-04-14 20:20 - 000446554 _____ C:\Users\Ludvík\Downloads\Crusader_II_Daebom_uk_crusader_mk_2.zip
2024-04-12 14:46 - 2024-04-12 14:46 - 000020861 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-04-12 14:46 - 2024-04-12 14:46 - 000020861 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-04-10 19:19 - 2024-04-10 19:19 - 000147374 _____ C:\Users\Ludvík\Downloads\eine_meine_modpack_1.20.1 (2).zip
2024-04-10 19:16 - 2024-04-10 19:16 - 000006068 _____ C:\Users\Ludvík\Downloads\eine_meine_modpack_1.20.1 (1).zip
2024-04-10 19:12 - 2024-04-10 19:12 - 000003114 _____ C:\Users\Ludvík\Downloads\eine_meine_modpack_1.20.1.zip
2024-04-09 21:06 - 2024-04-09 21:07 - 000933427 _____ C:\Users\Ludvík\Downloads\molkovo_modpack_1.19.2.zip
2024-04-07 18:50 - 2024-04-07 18:50 - 007267596 _____ (Syndicate, LLC) C:\Users\Ludvík\Downloads\TechnicLauncher (1).exe
2024-04-07 18:48 - 2024-04-07 18:48 - 007267596 _____ (Syndicate, LLC) C:\Users\Ludvík\Downloads\TechnicLauncher.exe
2024-04-07 13:44 - 2024-04-07 13:44 - 000000000 ____D C:\Users\Ludvík\ansel
2024-04-06 21:48 - 2024-04-06 21:48 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\gg.essential.mod
2024-04-06 21:48 - 2024-04-06 21:48 - 000000000 ____D C:\Users\Ludvík\AppData\Local\NVIDIA
2024-04-06 21:33 - 2024-04-06 21:33 - 000143286 _____ C:\Users\Ludvík\Downloads\Markuv_ModPack__1.20.1.zip
2024-04-06 21:20 - 2024-04-06 21:20 - 000000224 _____ C:\Users\Ludvík\Documents\Markuv_ModPack__1.20.1.zip.url
2024-04-06 21:18 - 2024-04-12 20:19 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\CurseForge
2024-04-06 21:18 - 2024-04-06 21:18 - 000002434 _____ C:\Users\Ludvík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CurseForge.lnk
2024-04-06 21:18 - 2024-04-06 21:18 - 000002426 _____ C:\Users\Ludvík\Desktop\CurseForge.lnk
2024-04-06 21:18 - 2024-04-06 21:18 - 000000000 ____D C:\Users\Ludvík\curseforge
2024-04-06 21:18 - 2024-04-06 21:18 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\ow-electron
2024-04-06 21:18 - 2024-04-06 21:18 - 000000000 ____D C:\Users\Ludvík\AppData\Local\curseforge-updater
2024-04-06 21:17 - 2024-04-06 21:18 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Overwolf
2024-04-06 21:17 - 2024-04-06 21:17 - 002143232 _____ (Overwolf Ltd.) C:\Users\Ludvík\Downloads\CurseForge Windows - Installer.exe
2024-04-06 21:10 - 2024-04-07 18:48 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\.minecraft
2024-04-06 21:08 - 2024-04-06 21:13 - 000000000 ____D C:\Users\Ludvík\AppData\Local\MinecraftInstaller
2024-04-06 20:29 - 2024-04-06 20:29 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\NVIDIA
2024-04-06 18:31 - 2024-04-06 18:31 - 000000000 ____D C:\Users\Ludvík\AppData\Local\DBG
2024-04-06 18:30 - 2024-04-17 22:07 - 000000000 ____D C:\ProgramData\NVIDIA
2024-04-06 18:30 - 2024-04-06 18:30 - 000000000 ____D C:\Windows\system32\lxss
2024-04-06 18:30 - 2024-04-06 18:30 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2024-04-06 18:30 - 2024-04-06 18:30 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2024-04-06 18:29 - 2023-06-21 04:50 - 001487856 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2024-04-06 18:29 - 2023-06-21 04:50 - 001227248 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2024-04-06 18:29 - 2023-06-21 04:46 - 000933896 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2024-04-06 18:29 - 2023-06-21 04:46 - 000668688 _____ C:\Windows\system32\nvofapi64.dll
2024-04-06 18:29 - 2023-06-21 04:46 - 000504352 _____ C:\Windows\SysWOW64\nvofapi.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 002167824 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 001621520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 001537504 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 001195024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 000992272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 000777200 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2024-04-06 18:29 - 2023-06-21 04:45 - 000768520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2024-04-06 18:29 - 2023-06-21 04:45 - 000131560 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2024-04-06 18:29 - 2023-06-21 04:44 - 014520288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 012066800 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 006190088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 005844496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 005550624 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 003482592 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2024-04-06 18:29 - 2023-06-21 04:44 - 000853536 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2024-04-06 18:29 - 2023-06-21 04:44 - 000459760 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2024-04-06 18:29 - 2023-06-21 04:43 - 007858112 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2024-04-06 18:29 - 2023-06-21 04:43 - 006736984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2024-04-06 18:29 - 2023-06-21 04:12 - 000107938 _____ C:\Windows\system32\nvinfo.pb
2024-04-03 16:13 - 2024-04-03 16:13 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\MrCiastku
2024-04-03 11:54 - 2024-04-03 11:54 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\Deepest Inertia Studio
2024-04-03 11:24 - 2024-04-03 11:24 - 000000000 ____D C:\Users\Ludvík\AppData\Local\POLYGON
2024-04-03 11:23 - 2024-04-03 11:24 - 000000000 ____D C:\6d6473de5acca378665dcbae0b15
2024-04-02 21:45 - 2024-04-03 13:28 - 000000000 ____D C:\Users\Ludvík\Documents\ZumbiBlocks2Backups
2024-04-02 21:45 - 2024-04-02 21:45 - 000000000 ____D C:\Users\Ludvík\Documents\ZumbiBlocks2
2024-04-02 21:45 - 2024-04-02 21:45 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\Adrianks47
2024-04-02 21:41 - 2024-04-02 21:41 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\Thor Gaming
2024-04-02 21:37 - 2024-04-02 21:37 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\AlfaBravoInc
2024-04-02 21:34 - 2024-04-02 21:34 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\Broken Metronome Studios
2024-03-31 20:34 - 2024-03-31 20:34 - 001604067 _____ C:\Users\Ludvík\Downloads\M10+skin+pack.zip
2024-03-30 18:44 - 2024-03-30 18:44 - 000311503 _____ C:\Users\Ludvík\Downloads\Daebom+M18+Hellcat+V2.5.zip
2024-03-27 17:43 - 2024-03-27 17:43 - 000000000 ___HD C:\OneDriveTemp
2024-03-26 22:17 - 2024-04-06 18:31 - 022569021 _____ C:\Users\Ludvík\Downloads\M6A1+Darkness+Dustiness+Lalatina (1).zip
2024-03-26 21:57 - 2024-04-06 18:31 - 005091098 _____ C:\Users\Ludvík\Downloads\M4A1(76)W_Kay_GuP.zip
2024-03-26 21:55 - 2024-03-26 21:55 - 022257388 _____ C:\Users\Ludvík\Downloads\M6A1+Darkness+Dustiness+Lalatina.zip
2024-03-26 21:49 - 2024-03-26 21:49 - 006784231 _____ C:\Users\Ludvík\Downloads\M4A2_Rosehip_GuP.zip
2024-03-26 21:46 - 2024-03-26 21:46 - 011788806 _____ C:\Users\Ludvík\Downloads\M4A1_Darjeeling_GuP.zip
2024-03-26 21:41 - 2024-03-26 21:42 - 140262503 _____ C:\Users\Ludvík\Downloads\All_M4_Sherman_+Second_M51_update.zip
2024-03-26 21:33 - 2024-03-26 21:33 - 000000000 ____D C:\Users\Ludvík\Downloads\SiamNeko
2024-03-26 21:32 - 2024-03-26 21:41 - 001165233 _____ C:\Users\Ludvík\Downloads\SiamNeko.zip
2024-03-23 23:33 - 2024-03-23 23:33 - 000000000 ____D C:\Users\Ludvík\AppData\LocalLow\Normogames

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-04-17 22:12 - 2023-12-04 16:29 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2024-04-17 22:12 - 2019-12-07 16:43 - 000682184 _____ C:\Windows\system32\perfh005.dat
2024-04-17 22:12 - 2019-12-07 16:43 - 000137000 _____ C:\Windows\system32\perfc005.dat
2024-04-17 22:12 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2024-04-17 22:08 - 2023-12-06 13:51 - 000003120 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2024-04-17 22:08 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-04-17 22:07 - 2023-12-04 16:23 - 000008192 ___SH C:\DumpStack.log.tmp
2024-04-17 22:07 - 2023-12-04 16:23 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-04-17 22:07 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-04-17 22:05 - 2023-12-07 14:03 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2024-04-17 22:05 - 2023-12-07 14:03 - 000000000 ____D C:\Program Files (x86)\Futuremark
2024-04-17 21:53 - 2023-12-04 16:35 - 000000000 ____D C:\Users\Ludvík\AppData\Local\D3DSCache
2024-04-17 21:46 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-04-17 21:46 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2024-04-17 21:30 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF
2024-04-17 21:29 - 2023-12-06 16:07 - 000000363 _____ C:\Users\Ludvík\Desktop\Heslo.txt
2024-04-17 21:28 - 2023-12-05 15:00 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\discord
2024-04-17 21:26 - 2023-12-05 15:00 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Discord
2024-04-17 20:23 - 2023-12-04 16:23 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-04-17 18:39 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2024-04-17 18:26 - 2024-01-13 17:46 - 000001392 _____ C:\Users\Ludvík\Desktop\Roblox Player.lnk
2024-04-17 18:26 - 2024-01-13 17:45 - 000001220 _____ C:\Users\Ludvík\Desktop\Roblox Studio.lnk
2024-04-17 18:26 - 2024-01-13 17:45 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2024-04-17 17:59 - 2023-12-06 11:33 - 000000000 ____D C:\XboxGames
2024-04-17 16:16 - 2023-12-05 13:00 - 000000000 ____D C:\Program Files\Microsoft Office
2024-04-17 13:33 - 2023-12-04 16:29 - 000000000 ____D C:\Users\Ludvík\AppData\Local\ConnectedDevicesPlatform
2024-04-14 22:35 - 2023-12-04 16:26 - 000000000 ____D C:\Users\Ludvík
2024-04-14 13:36 - 2023-12-05 16:58 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Battle.net
2024-04-14 11:42 - 2023-12-05 16:59 - 000000000 ____D C:\Program Files (x86)\Call of Duty
2024-04-13 17:14 - 2023-12-05 14:35 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2024-04-13 17:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2024-04-12 20:29 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-04-12 20:27 - 2023-12-13 23:37 - 000000000 ____D C:\Windows\InboxApps
2024-04-12 20:27 - 2023-12-04 16:23 - 000438968 _____ C:\Windows\system32\FNTCACHE.DAT
2024-04-12 20:27 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2024-04-12 20:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2024-04-12 14:48 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2024-04-12 14:46 - 2023-12-04 16:26 - 003017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-04-12 14:38 - 2023-12-05 16:57 - 000000000 ____D C:\Program Files (x86)\Battle.net
2024-04-11 20:07 - 2023-12-05 15:00 - 000002232 _____ C:\Users\Ludvík\Desktop\Discord.lnk
2024-04-10 17:52 - 2023-12-04 16:33 - 192651728 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-04-10 17:52 - 2023-12-04 16:33 - 000000000 ____D C:\Windows\system32\MRT
2024-04-10 13:42 - 2023-12-04 16:23 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-04-10 13:33 - 2024-02-10 21:45 - 000263784 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_4.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 002708984 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 000710248 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 000218616 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 000206440 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 000144896 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2024-04-10 13:33 - 2023-12-06 11:33 - 000108136 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2024-04-10 13:33 - 2023-12-06 11:33 - 000075368 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2024-04-06 21:38 - 2023-12-07 18:31 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-04-06 21:10 - 2023-12-04 16:33 - 000000000 ____D C:\Users\Ludvík\AppData\Local\PlaceholderTileLogoFolder
2024-04-06 21:10 - 2023-12-04 16:29 - 000000000 ____D C:\Users\Ludvík\AppData\Local\Packages
2024-04-06 21:10 - 2023-12-04 16:29 - 000000000 ____D C:\ProgramData\Packages
2024-04-06 21:02 - 2023-12-05 17:14 - 000000000 ____D C:\Users\Ludvík\AppData\Local\BattlEye
2024-04-04 20:43 - 2023-12-07 12:26 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-04-04 14:17 - 2024-03-14 17:48 - 000000000 ____D C:\Windows\Minidump
2024-04-03 20:58 - 2023-12-04 16:23 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-04-03 20:58 - 2023-12-04 16:23 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-04-03 13:23 - 2023-12-05 13:02 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-04-03 13:23 - 2023-12-05 13:02 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-04-03 13:23 - 2023-12-04 16:35 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3589282673-692340025-2612224337-1001
2024-04-03 11:24 - 2023-12-31 23:52 - 000000000 ____D C:\Users\Ludvík\AppData\Local\GameAnalytics
2024-04-03 11:24 - 2023-12-07 18:30 - 000000000 ____D C:\Users\Ludvík\AppData\Roaming\EasyAntiCheat
2024-04-03 11:24 - 2023-12-05 15:13 - 000000000 ____D C:\Users\Ludvík\AppData\Local\UnrealEngine
2024-04-03 11:23 - 2023-12-05 15:14 - 000000000 ____D C:\ProgramData\Package Cache
2024-03-29 20:32 - 2024-01-02 22:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games
2024-03-27 22:38 - 2023-12-04 16:31 - 000000000 ___RD C:\Users\Ludvík\OneDrive
2024-03-26 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16.04.2024
Ran by Ludvík (17-04-2024 22:23:56)
Running from C:\Users\Ludvík\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.4291 (X64) (2023-12-04 14:24:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3589282673-692340025-2612224337-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3589282673-692340025-2612224337-503 - Limited - Disabled)
Guest (S-1-5-21-3589282673-692340025-2612224337-501 - Limited - Disabled)
Ludvík (S-1-5-21-3589282673-692340025-2612224337-1001 - Administrator - Enabled) => C:\Users\Ludvík
WDAGUtilityAccount (S-1-5-21-3589282673-692340025-2612224337-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 23.01 (x64) (HKLM\...\7-Zip) (Version: 23.01 - Igor Pavlov)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 5.08.02.027 - Advanced Micro Devices, Inc.)
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.90 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.24.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.Q3.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{94dc9043-935f-4e10-ac8b-5ce0ac055188}) (Version: 5.08.02.027 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlestate Games Launcher 14.3.0.2387 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 14.3.0.2387 - Battlestate Games)
Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare 2 Campaign Remastered (HKLM-x32\...\Call of Duty Modern Warfare 2 Campaign Remastered) (Version: - Blizzard Entertainment)
CurseForge 0.249.3-17472 (HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\ca0e291c-abd4-5fc3-b6a0-3d4333eccbd7) (Version: 0.249.3-17472 - Overwolf)
Discord (HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Discord) (Version: 1.0.9025 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.14.5.1.29624 - Battlestate Games)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 5.1.2.109 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.1.2.109 - Malwarebytes)
Microsoft .NET 6.0 Templates 6.0.418 (x64) (HKLM\...\{21A0BE16-B3C9-49AD-8248-D1483F46E318}) (Version: 24.7.34549 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.26 (x64) (HKLM\...\{3B7BBBE3-9BDC-4F17-AFD9-0175520FD76E}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.26 (x64_arm) (HKLM\...\{5A480FE9-389E-43B5-8760-74A21CFE7BFB}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.26 (x64_arm64) (HKLM\...\{17F5F7DB-6429-4DAB-B427-E964853AF4B0}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.26 (x64_x86) (HKLM\...\{381A6531-6B67-4F82-881C-02A5A6DB0A64}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.26 (x64) (HKLM\...\{87EBA554-A002-4EF4-A612-4FFD06092B5B}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.26 (x64) (HKLM\...\{D81A418F-966D-4069-B3E8-5EE4843CA862}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.26 (x64) (HKLM\...\{1A02C1B1-05BB-49F7-9DFF-99A66C6877FC}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET SDK 6.0.418 (x64) (HKLM-x32\...\{4912adcb-6fee-4197-8fcd-aafcdce2acd3}) (Version: 6.4.1823.60533 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 6.0.26 (x64) (HKLM\...\{0973B714-6575-497F-97E2-6B1D24D7086E}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 6.0.418 (x64) (HKLM\...\{5D07A29E-64DA-4A44-9586-219CCFEFA8E0}) (Version: 24.7.34549 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.26 Shared Framework (x64) (HKLM\...\{ED755FBF-3CAE-3206-A32D-16E67F7CC9A3}) (Version: 6.0.26.23605 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.26 Targeting Pack (x64) (HKLM\...\{764E0466-4783-3C09-9218-D220E568EF0E}) (Version: 6.0.26.23605 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation)
Microsoft Office LTSC Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Volume - cs-cz) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft Office LTSC Professional Plus 2021 - en-us (HKLM\...\ProPlus2021Volume - en-us) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.055.0317.0002 - Microsoft Corporation)
Microsoft Project Professional 2021 - cs-cz (HKLM\...\ProjectPro2021Volume - cs-cz) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft Project Professional 2021 - en-us (HKLM\...\ProjectPro2021Volume - en-us) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\Teams) (Version: 1.4.00.19572 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visio LTSC Professional 2021 - cs-cz (HKLM\...\VisioPro2021Volume - cs-cz) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft Visio LTSC Professional 2021 - en-us (HKLM\...\VisioPro2021Volume - en-us) (Version: 16.0.14332.20685 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33135 (HKLM-x32\...\{c649ede4-f16a-4486-a117-dcc2f2a35165}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.38.33135 (HKLM-x32\...\{46c3b171-c15c-4137-8e1d-67eeb2985b44}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33135 (HKLM\...\{19AFE054-CA83-45D5-A9DB-4108EF4BD391}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33135 (HKLM\...\{AA0C8AB5-7297-4D46-A0D9-08096FE59E46}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.38.33135 (HKLM-x32\...\{9C19C103-7DB1-44D1-A039-2C076A633A38}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.38.33135 (HKLM-x32\...\{286DC39B-5FB7-4AFF-9DD4-22DB47664CD7}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.26 (x64) (HKLM\...\{1F0EB53C-BE30-436A-BC54-FA364227A870}) (Version: 48.104.6996 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Targeting Pack - 6.0.26 (x64) (HKLM\...\{4E61286A-B95A-4FCC-85AA-D4C7A9AEB5EF}) (Version: 48.104.6996 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Android.Manifest-6.0.300 (HKLM\...\{F4E591C2-810D-4D36-B4F9-DC55103019D1}) (Version: 128.75.16384 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-6.0.300 (HKLM\...\{BBA9C60D-75E7-44EE-922D-069AA85C8EC1}) (Version: 125.191.42208 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-6.0.300 (HKLM\...\{FEB76EC8-02F4-46E6-8031-BE403766D13A}) (Version: 125.191.42208 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-6.0.300 (HKLM\...\{F590F859-2F6A-4559-9D09-A8FC442AF16B}) (Version: 100.255.42208 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-6.0.300 (HKLM\...\{C2863251-07E7-44A0-B2F8-4C4E2AF08937}) (Version: 24.78.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-6.0.300 (HKLM\...\{69B1631F-5F98-4C6C-B757-46B0ECC8EDBB}) (Version: 125.191.42208 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.Manifest (x64) (HKLM\...\{901396D0-D47F-4FCE-B247-8C45C97527EA}) (Version: 48.104.6994 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.Manifest (HKLM\...\{DBB48387-294D-4179-81CB-B06A97F8CD8E}) (Version: 48.3.40665 - Microsoft Corporation) Hidden
NVIDIA Ovladače grafiky 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20685 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20685 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.0.0 - Advanced Micro Devices, Inc.) Hidden
Roblox Player for Ludvík (HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\roblox-player) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.85.1858 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.2.7.3 - Rockstar Games)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.4.0.19572 - Microsoft Corporation)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 148.2.10984 - Ubisoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation)

Packages:
=========

Farming Simulator 22 - Window 10 Edition -> C:\Program Files\WindowsApps\GIANTSSoftware.FarmingSimulator22-Window10Edition_1.0.25.0_x64__fa8jxm5fj0esw [2024-01-25] (GIANTS Software)
Microsoft Copilot -> C:\Program Files\WindowsApps\Microsoft.Windows.Ai.Copilot.Provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_1.7.2.0_x64__8wekyb3d8bbwe [2024-04-06] (Microsoft Studios)
Minecraft: Java Edition -> C:\Program Files\WindowsApps\Microsoft.MinecraftJavaEdition_1.0.5.0_x64__8wekyb3d8bbwe [2023-12-06] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.965.0_x64__56jybvy8sckqj [2024-04-06] (NVIDIA Corp.)
Palworld -> C:\Program Files\WindowsApps\PocketpairInc.Palworld_0.0.49074.0_x64__ad4psfrxyesvt [2024-03-08] (Pocketpair, Inc)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.1.137.0_x64__dt26b99r8h8gj [2023-12-04] (Realtek Semiconductor Corp)
Roblox -> C:\Program Files\WindowsApps\ROBLOXCORPORATION.ROBLOX_2.620.463.0_x64__55nm5eh3cm0pr [2024-04-14] (Roblox Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0 [2024-04-10] (Spotify AB) [Startup Task]
theHunter™: Call of the Wild - Windows 10 -> C:\Program Files\WindowsApps\AvalancheStudios.theHunterCalloftheWild-Windows10_23.4441.16670.0_x64__m0byj0nmrybdr [2024-03-13] (Fatalist Publishing AB)
Vyhledávání na webu z Microsoft Bingu -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-03-30] (Microsoft Corporation)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2414.8.0_x64__cv1g1gvanyjgm [2024-04-15] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3589282673-692340025-2612224337-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Ludvík\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21105.1\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-17] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.055.0317.0002\FileSyncShell64.dll [2024-04-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\nvshext.dll [2023-06-21] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-17] (Malwarebytes Inc. -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-02-14 13:56 - 2023-06-20 10:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Ludvík\Desktop\FRST64.exe:MBAM.Zone.Identifier [240]
AlternateDataStreams: C:\Users\Ludvík\Downloads\FRST64.exe:MBAM.Zone.Identifier [240]
AlternateDataStreams: C:\Users\Ludvík\Downloads\SteamSetup.exe:MBAM.Zone.Identifier [151]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [6104]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ludvík\Downloads\d84f0c79b574de73ebe15ae9f1225ed9.jpg
DNS Servers: 192.168.34.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_69BC2688FDD7B980A71EC19A065BD408"
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3589282673-692340025-2612224337-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{0B9139FE-214E-4460-9492-84E030105127}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9FE901E9-286C-446B-8098-6ACBBC2F90AD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0D46FBFE-78E9-4297-A1B3-932070C9B7A9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A0750285-7C62-4BA9-9BB7-486E4EBCA6D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{927D4222-0717-43D1-95F0-3CDE99EE06B7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{167944E1-5C21-40D0-B280-FD1FD6B22EE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty WWII\s2_mp64_ship.exe => No File
FirewallRules: [{1FF0F973-5AFA-4322-B591-F79D62C0FB1E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty WWII\s2_mp64_ship.exe => No File
FirewallRules: [{E6F9AD53-BF92-4074-A4AC-912C4C1F4673}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty WWII\s2_sp64_ship.exe => No File
FirewallRules: [{27C6BA5A-453A-4E10-B074-2CA55262DBD9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty WWII\s2_sp64_ship.exe => No File
FirewallRules: [{FA56E8CE-F390-40D4-A093-E518EEA2E29B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe => No File
FirewallRules: [{0ECD6A2F-552B-4BC9-BC41-52C06F327DE1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe => No File
FirewallRules: [{D7708C72-93D2-45D1-AD36-D8650C0EEC4A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => No File
FirewallRules: [{0D1AC0D6-A939-40E3-80F0-C0FC81BC5733}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => No File
FirewallRules: [{B35490B4-9D76-418A-947B-CA8057F7BEBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_Vulkan.exe => No File
FirewallRules: [{C68FC608-B5BB-430E-9111-1E3CE6414754}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_Vulkan.exe => No File
FirewallRules: [TCP Query User{881FD639-627F-478C-8411-60C06C309DFE}C:\program files (x86)\call of duty\_retail_\cod.exe] => (Allow) C:\program files (x86)\call of duty\_retail_\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{FF968223-5AE8-46FE-8573-78F5F4D433BB}C:\program files (x86)\call of duty\_retail_\cod.exe] => (Allow) C:\program files (x86)\call of duty\_retail_\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{A0F0EAD6-DBAA-44F0-9CAF-A39CFA0D8A42}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{16AF1005-4DAA-4061-AA20-5A49947822EB}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [{E0EA9AAB-451C-48EE-B5FC-1811FEB971B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{23A64777-0366-4AA3-A064-0066502E42CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{3B08E396-6FB3-4D2E-9E32-22D1BC050CD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{F4756FDA-3D10-456C-AD7A-7DCAA72FF659}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [TCP Query User{E3BEE23C-75F5-4006-A18A-465961ECEE54}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{56788F4E-3F25-4C01-BA97-EDDF19184CDC}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{B49610A6-A00A-4518-AB33-4D95BFEB0117}C:\program files (x86)\call of duty modern warfare 2 campaign remastered\mw2cr.exe] => (Block) C:\program files (x86)\call of duty modern warfare 2 campaign remastered\mw2cr.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{DBBDF664-4BB1-417E-9C21-2590AE5643A0}C:\program files (x86)\call of duty modern warfare 2 campaign remastered\mw2cr.exe] => (Block) C:\program files (x86)\call of duty modern warfare 2 campaign remastered\mw2cr.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{E300C1B8-2EEA-46B5-B1EB-8A2111CE09DE}C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\game_x64r.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\game_x64r.exe => No File
FirewallRules: [UDP Query User{B3D47163-B5E9-46F0-A15D-004F844CE7BE}C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\game_x64r.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\game_x64r.exe => No File
FirewallRules: [TCP Query User{664C6CBD-B901-4EFD-B6E9-BF0FAD5E96D3}C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\cc\ccmini.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\cc\ccmini.exe => No File
FirewallRules: [UDP Query User{BB2BFA12-7EA1-44FA-A99C-8067DEAF87CF}C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\cc\ccmini.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lost light\engine\binaries\win64\cc\ccmini.exe => No File
FirewallRules: [{718C999A-6F9B-4782-88CF-BEBA71FDF3B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AAGame.exe => No File
FirewallRules: [{2484F98C-B674-4591-A5CE-626C94EB5DB2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AAGame.exe => No File
FirewallRules: [{7A7EC350-07EC-49AE-A76B-AC95EDFC82A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe => No File
FirewallRules: [{F1CE48A9-BFCF-44DB-B670-3B94F5FF6135}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe => No File
FirewallRules: [TCP Query User{074528D3-8B95-44C0-808A-450B231F4881}C:\program files (x86)\steam\steamapps\common\warface clutch\mglauncher\mgl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface clutch\mglauncher\mgl.exe => No File
FirewallRules: [UDP Query User{232D10B1-DFFA-4A33-85A7-BC368BC46F34}C:\program files (x86)\steam\steamapps\common\warface clutch\mglauncher\mgl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface clutch\mglauncher\mgl.exe => No File
FirewallRules: [{F40002AC-30FC-454B-8FBD-9D6ED25FB736}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Harsh Doorstop\HarshDoorstop\Binaries\Win64\HarshDoorstop-Win64-Shipping.exe => No File
FirewallRules: [{2C711A15-59E9-424D-A7E0-9C83192D4B3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Harsh Doorstop\HarshDoorstop\Binaries\Win64\HarshDoorstop-Win64-Shipping.exe => No File
FirewallRules: [TCP Query User{5C76914F-1D13-48E6-8D6E-173C829DE7F7}C:\users\ludvík\appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\ludvík\appdata\local\ubisoft\r6siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{8268DF8F-1303-444E-9C05-37446A0A1464}C:\users\ludvík\appdata\local\ubisoft\r6siege\rainbowsix.exe] => (Allow) C:\users\ludvík\appdata\local\ubisoft\r6siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{473EB5CF-A703-4702-852B-0BA5DA35FA41}C:\program files (x86)\call of duty\_retail_\cod22\cod22-cod.exe] => (Allow) C:\program files (x86)\call of duty\_retail_\cod22\cod22-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{E820EDC7-47CB-43E9-9E07-2CD356F78F96}C:\program files (x86)\call of duty\_retail_\cod22\cod22-cod.exe] => (Allow) C:\program files (x86)\call of duty\_retail_\cod22\cod22-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{ED2C66C1-2C86-443E-AD27-934F9763BDC2}] => (Allow) C:\Program Files\Epic Games\GhostReconBreakpoint\GRB.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{0592E9F8-F72D-4698-A148-208ED72B034A}] => (Allow) C:\Program Files\Epic Games\GhostReconBreakpoint\GRB.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [TCP Query User{42675C9C-DB85-4F06-A01A-DD60896ECCAC}C:\program files\epic games\payday2\payday2_win32_release.exe] => (Allow) C:\program files\epic games\payday2\payday2_win32_release.exe () [File not signed]
FirewallRules: [UDP Query User{B501F5AD-6C6B-4FA0-B9A8-BBB55FE4BE50}C:\program files\epic games\payday2\payday2_win32_release.exe] => (Allow) C:\program files\epic games\payday2\payday2_win32_release.exe () [File not signed]
FirewallRules: [TCP Query User{F13AF63F-80C4-45B4-A00E-A109A3E2B733}C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe => No File
FirewallRules: [UDP Query User{EE3028A4-A8A4-4F07-A281-CC1ABCC62F8F}C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe => No File
FirewallRules: [TCP Query User{AEB13AB6-8E6C-42F0-BA7E-0068BD4CCF9A}C:\users\ludvík\appdata\local\rustdesk\rustdesk.exe] => (Allow) C:\users\ludvík\appdata\local\rustdesk\rustdesk.exe (Zhou Huabing -> com.carriez)
FirewallRules: [UDP Query User{A23DF3B1-F395-41B5-AEDA-51E92F713D63}C:\users\ludvík\appdata\local\rustdesk\rustdesk.exe] => (Allow) C:\users\ludvík\appdata\local\rustdesk\rustdesk.exe (Zhou Huabing -> com.carriez)
FirewallRules: [TCP Query User{208FFBEF-10D4-4BA7-9F6D-040558252342}C:\xboxgames\broforce\content\broforce.exe] => (Allow) C:\xboxgames\broforce\content\broforce.exe => No File
FirewallRules: [UDP Query User{A627E83A-317B-4BBE-B9FE-B3146F279CD0}C:\xboxgames\broforce\content\broforce.exe] => (Allow) C:\xboxgames\broforce\content\broforce.exe => No File
FirewallRules: [TCP Query User{D189E083-A3FB-4411-AE64-D224D0EC97FD}C:\xboxgames\hell let loose\content\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) C:\xboxgames\hell let loose\content\hll\binaries\win64\hll-win64-shipping.exe => No File
FirewallRules: [UDP Query User{94C51D0C-9F0C-47AB-AD91-E245EBF7E6C7}C:\xboxgames\hell let loose\content\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) C:\xboxgames\hell let loose\content\hll\binaries\win64\hll-win64-shipping.exe => No File
FirewallRules: [TCP Query User{98B345C3-7C95-422F-8BA6-150C3CAF9B23}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{88CFC5B4-D910-4990-9B08-8FCDE39BA5AD}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{4DF380F0-1073-4CFB-9E2D-B73997192A34}C:\xboxgames\farming simulator 22 - window 10 edition\content\x64\farmingsimulator2022game.exe] => (Allow) C:\xboxgames\farming simulator 22 - window 10 edition\content\x64\farmingsimulator2022game.exe (Access Denied) [File not signed]
FirewallRules: [UDP Query User{73874084-EF79-4B7F-960A-F92A904F83EA}C:\xboxgames\farming simulator 22 - window 10 edition\content\x64\farmingsimulator2022game.exe] => (Allow) C:\xboxgames\farming simulator 22 - window 10 edition\content\x64\farmingsimulator2022game.exe (Access Denied) [File not signed]
FirewallRules: [TCP Query User{662AC475-2EB5-4F34-B57D-E05EB40FBA0F}C:\program files (x86)\steam\steamapps\common\their land\theirland\binaries\win64\theirland.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\their land\theirland\binaries\win64\theirland.exe => No File
FirewallRules: [UDP Query User{3DA0B8F0-D10E-46B1-B1D9-AC4A1485D8E9}C:\program files (x86)\steam\steamapps\common\their land\theirland\binaries\win64\theirland.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\their land\theirland\binaries\win64\theirland.exe => No File
FirewallRules: [{F0DCFE21-13F8-40D1-A9ED-7E1BB60D0070}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{13998650-10A1-4E2E-B789-2494FDB4B51A}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{622D53F8-4657-437E-B427-72653A408E9F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\POLYGON\POLYGON.exe => No File
FirewallRules: [{1FF15E1E-261A-4DE3-ACA1-DF9D6F7F2AD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\POLYGON\POLYGON.exe => No File
FirewallRules: [{AB0475A6-4490-47E6-9635-5A7E4E40327E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\STALCRAFT\sclauncher.exe => No File
FirewallRules: [{6987A3B2-C95A-40C5-9BA8-03352A733C34}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\STALCRAFT\sclauncher.exe => No File
FirewallRules: [TCP Query User{22475C49-CC3D-4234-BF67-795050476AFF}C:\program files (x86)\steam\steamapps\common\stalcraft\bin_global\win64\java\bin\stalcraftw.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\stalcraft\bin_global\win64\java\bin\stalcraftw.exe => No File
FirewallRules: [UDP Query User{00CB3A61-6414-44A6-8D44-F04CCD4735A3}C:\program files (x86)\steam\steamapps\common\stalcraft\bin_global\win64\java\bin\stalcraftw.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\stalcraft\bin_global\win64\java\bin\stalcraftw.exe => No File
FirewallRules: [{F3D50B16-DDB6-410E-B10B-36B780B3C669}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Thief Simulator 2 Prologue\Thief Simulator 2 Prologue.exe => No File
FirewallRules: [{7EEE1913-0720-47D1-B217-F8DA61EF01A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Thief Simulator 2 Prologue\Thief Simulator 2 Prologue.exe => No File
FirewallRules: [TCP Query User{A27EC149-2862-42AF-A90F-65F2C82D401E}C:\users\ludvík\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\ludvík\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{0A2676D4-886F-4AFD-803C-83B2FBC0FC23}C:\users\ludvík\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\ludvík\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [TCP Query User{163E7C13-7910-45D6-B542-090AD8B08ABF}C:\users\ludvík\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\ludvík\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{F34E02FD-CF13-4CA9-81F0-738D428447EF}C:\users\ludvík\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\ludvík\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [{A07A4DF2-D45D-4D14-971F-2A1F0736B186}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9E465280-FD6E-458A-92F9-8CCB81589C5B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0766B1F2-CF3C-42B8-B4AA-014A19310332}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7FF365C5-BD3F-42B6-9F49-887639CB224C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{791582B2-CCDF-4864-858E-C40F447ABA0D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6C9DEDC4-197C-4EE8-A4C2-89121F2FBDE6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CC0E3125-D6E2-4F97-84E7-99C24E3D7D80}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E7DEF432-D199-46F2-B857-0E71F9E7B255}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B0338888-75F4-48F6-9918-5FDAD1DF6531}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7E314AE2-A462-48FD-A880-A28D737F6D4D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{89DA08D8-5DB9-4806-AEAE-A12CF036B397}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\123.0.2420.97\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1387FE67-1A7C-459C-A619-BEC12C9B1DCC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.117.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{EB77557E-E74D-486F-B42A-60BD55ECD7A2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.117.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6B08909D-9656-47A4-B036-FDCC71A4C243}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.117.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9A468D44-BFCE-4D3B-ADF5-F044503FF3CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.117.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

15-04-2024 19:12:22 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/17/2024 04:51:24 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (04/17/2024 04:51:24 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (04/13/2024 05:19:56 PM) (Source: ESENT) (EventID: 428) (User: )
Description: wuaueng.dll (17136,D,0) SUS20ClientDataStore: Databázový stroj odmítá operace aktualizace kvůli nedostatku místa na disku s protokolem.

Error: (04/13/2024 05:12:47 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2124-03-20T15:12:47Z. Kód chyby: 0x80070070

Error: (04/13/2024 05:12:17 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2124-03-20T15:12:17Z. Kód chyby: 0x80070070

Error: (04/13/2024 05:11:47 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2124-03-20T15:11:47Z. Kód chyby: 0x80070070

Error: (04/13/2024 05:11:17 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2124-03-20T15:11:17Z. Kód chyby: 0x80070070

Error: (04/13/2024 05:10:47 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2124-03-20T15:10:47Z. Kód chyby: 0x80070070


System errors:
=============
Error: (04/17/2024 10:12:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (04/17/2024 10:12:10 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (04/17/2024 10:09:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): 2024-01, aktualizace zabezpečení pro Windows 10 Version 22H2 pro systémy typu x64 (KB5034441).

Error: (04/17/2024 10:08:04 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba GameInput Service byla neočekávaně ukončena. Tento stav nastal již 6krát.

Error: (04/17/2024 10:08:04 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba GameInput Service byla ukončena s následující chybou:
Složený soubor GameInput Service byl vytvořen s novější verzi úložného prostoru.

Error: (04/17/2024 10:08:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba GameInput Service byla nečekaně ukončena. Stalo se to 5 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (04/17/2024 10:08:03 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba GameInput Service byla ukončena s následující chybou:
Složený soubor GameInput Service byl vytvořen s novější verzi úložného prostoru.

Error: (04/17/2024 10:08:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba GameInput Service byla nečekaně ukončena. Stalo se to 4 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.


Windows Defender:
================
Date: 2024-04-17 16:15:20
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {4D2EC4B2-13FF-4333-BEA8-B0F708A34B08}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-04-16 14:11:50
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {78DA2F59-8264-4CD8-B8A1-3BD93698CFA3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-04-15 14:14:21
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {3FC2E574-F6A9-4085-B5AB-F982F7F8D0CE}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-04-14 15:15:10
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {9B38F1B9-51F9-4168-A231-A255EDD53D42}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-04-14 14:56:01
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {772BB515-0830-4A49-8CEB-00A7EE74E249}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: American Megatrends Inc. F50 11/27/2019
Motherboard: Gigabyte Technology Co., Ltd. B450 GAMING X
Processor: AMD Ryzen 5 3600 6-Core Processor
Percentage of memory in use: 29%
Total physical RAM: 16332.43 MB
Available physical RAM: 11541.96 MB
Total Virtual: 24268.43 MB
Available Virtual: 17667.22 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.9 GB) (Free:376.79 GB) (Model: ADATA LEGEND 800) NTFS

\\?\Volume{5052afa8-7f08-47ad-8322-903a6a70032a}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{6250df86-506d-4e83-b97e-497bcda4a3da}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118288
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc

#2 Příspěvek od Rudy »

Zdravím!
Toto není problém malware. Neřešíme ani herní problematiku, navíc Steam je tolerovaný šmejd, který zanáší do PC pouze problémy. Koukněte sem: https://steamcommunity-com.translate.go ... _tr_pto=sc , je tam návod na řešení přímo od Steam.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět