V Nedeli sem instaloval k lite codec pack bohuzel sem to nechtene stahnul z jine stranky nez officialni. Pri instalaci to hlasilo ze se muze jednat o mallware ale ja si rekl ze je to jen codek tak sem to nainstaloval i tak. Nasledne se mi odpojil internet hlasiloto DNS nelze najit ve windowsu. Tak sem dal reset modemu a az sel internet vsimnul si na netu ze se jedna scam stranku. Ten codek sem odinstaloval ale zajima me jestli mi neco z toho nezustalo v pc? Pc uz funguje bez problemu a nainstaloval sem si do pc radsi Bitdefender Internet security. Dekuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-06-2025
Ran by danha (administrator) on CISLOCZ (ASUS System Product Name) (09-06-2025 11:47:28)
Running from C:\Users\danha\Desktop\FRST64.exe
Loaded Profiles: danha
Platform: Microsoft Windows 11 Pro Version 24H2 26100.4202 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <3>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\27.1.1.13\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bduserhost.exe <3>
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Creative Technology Ltd -> Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Command\Creative.SBCommand.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <30>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.35\AsusFanControlService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.02.30\atkexComSvc.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Creative Technology Ltd -> Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\CtxSvc32.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.22.2.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.12501.20.0_x64__cw5n1h2txyewy\WidgetBoard.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1088224 2025-06-08] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [Creative.SBCommand] => C:\Program Files (x86)\Creative\Sound Blaster Command\Creative.SBCommand.exe [210904 2023-10-06] (Creative Technology Ltd -> Creative Technology Ltd)
HKLM-x32\...\Run: [CZC.Gaming Revenant] => C:\Program Files\CZC\CZC.Gaming Revenant.exe [1828864 2022-03-03] (TODO: <Company name>) [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2025-04-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Run: [Creative.SBCommand.exe] => C:\Program Files (x86)\Creative\Sound Blaster Command\Creative.SBCommand.exe [210904 2023-10-06] (Creative Technology Ltd -> Creative Technology Ltd)
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [22841736 2025-05-21] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [695360 2025-05-30] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Run: [FACEIT] => C:\Users\danha\AppData\Local\FACEIT\update.exe [2282184 2025-04-03] (ESL Gaming GmbH -> )
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Run: [MicrosoftEdgeAutoLaunch_739984D67ED48D532AB489E0D9A494F2] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141136 2025-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\137.0.7151.69\Installer\chrmstp.exe [2025-06-07] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4AB99D34-6BE7-4C3D-B462-72AF34817BFC} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [671440 2024-07-24] (Advanced Micro Devices -> )
Task: {05FEA04C-8195-4E5F-A761-B61F7F999F1F} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2183016 2024-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {594F3CE2-3B96-46F2-8F4C-BA66EE270CFE} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1467752 2024-01-29] (ASUSTeK COMPUTER INC. -> )
Task: {BDF0BCD4-3094-45B2-AE1B-8C41EE2E2B95} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [4332392 2024-01-08] (ASUSTeK COMPUTER INC. -> TODO: <Company name>)
Task: {932033E7-ED13-4001-AB52-3AF96C6FF444} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\27.1.1.13\WatchDog.exe [1158440 2025-05-12] (Bitdefender SRL -> Bitdefender) -> C:\Program Files\Bitdefender Agent\27.1.1.13\repair
Task: {7BF59A9A-BE46-450A-A1D4-B419072598C1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{CDBD55FA-A995-439F-AF0F-EAEE170E2564} => C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe [6070368 2025-05-22] (Google LLC -> Google LLC)
Task: {3BE62CC6-F41F-4809-B790-6283FBED9A28} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28955376 2025-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {A0FCE4A4-EC23-4A2B-B5C8-73D773807EA1} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [68312 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {86B9E63C-266E-4BDE-AC27-0AD414844897} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28955376 2025-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {362F92D5-99A7-4305-8087-F20B172FC4CA} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309960 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {12F95F98-9374-432D-A686-60D26570F63C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309960 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {1AB860CC-97C0-4E17-AF3C-F1568C691218} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [225992 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {431C5FE6-8A5C-4A3A-80B7-80EFAE166CDF} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309960 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {4D6CE716-688E-464F-9757-0D680220419F} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309960 2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {E12C6A25-ED73-46FA-8DB3-6A9DC819212D} - System32\Tasks\Microsoft\Windows\Hotpatch\Monitoring => C:\WINDOWS\system32\cmd.exe [376832 2025-05-29] (Microsoft Windows -> Microsoft Corporation) -> /d /c %systemroot%\system32\hpatchmonTask.cmd
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {ECC598D5-83CC-4B9F-B40B-47389F32AA66} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695360 2025-05-30] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {24B89E03-EC02-4261-B6C7-F80C4F793F6C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-05-30] (Mozilla Corporation -> Mozilla Foundation)
Task: {ED1B4E39-D149-4730-8397-A387BAA2FF4C} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3322400 2025-06-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {52467BD9-4C97-407B-8311-8D302702C88C} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1398007894-2651273048-4200034700-1001 => C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\OneDriveLauncher.exe [684856 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.15.1
Tcpip\..\Interfaces\{8e4184cb-c139-4002-ab3b-dbfba5137e28}: [DhcpNameServer] 192.168.15.1
Edge:
=======
Edge Profile: C:\Users\danha\AppData\Local\Microsoft\Edge\User Data\Default [2025-06-09]
Edge Session Restore: Default -> is enabled.
Edge Extension: (Dokumenty Google offline) - C:\Users\danha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-05]
Edge Extension: (Edge relevant text changes) - C:\Users\danha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-01]
Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl]
FireFox:
========
FF DefaultProfile: y7i35wwu.default
FF ProfilePath: C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\y7i35wwu.default [2023-12-07]
FF ProfilePath: C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932 [2025-06-09]
FF NetworkProxy: Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932 -> type", 0
FF Session Restore: Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932 -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932 -> hxxps://www.aliexpress.com
FF Extension: (Blerp - AI TTS, Sound Memes on Streams) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\blerp@blerp.com.xpi [2025-06-07]
FF Extension: (BetterTTV) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\firefox@betterttv.net.xpi [2025-05-28]
FF Extension: (FrankerFaceZ) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\frankerfacez@frankerfacez.com.xpi [2025-04-04]
FF Extension: (uBlock Origin) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\uBlock0@raymondhill.net.xpi [2025-05-17]
FF Extension: (Bitwarden - Správce hesel) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2025-05-23]
FF Extension: (ImTranslator: Překladač, Slovník, Hlas) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2025-06-04]
FF Extension: (Hlídač Shopů) - C:\Users\danha\AppData\Roaming\Mozilla\Firefox\Profiles\h2h1pk1i.default-release-1743601422932\Extensions\{d6f0f975-91a3-4d78-96f7-5f1859ad18b6}.xpi [2025-04-22]
FF Plugin: @java.com/DTPlugin,version=11.451.0 -> C:\Program Files\Java\jre1.8.0_451\bin\dtplugin\npDeployJava1.dll [2025-04-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.451.0 -> C:\Program Files\Java\jre1.8.0_451\bin\plugin2\npjp2.dll [2025-04-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.21 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-1398007894-2651273048-4200034700-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-1398007894-2651273048-4200034700-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF Plugin HKU\S-1-5-21-1398007894-2651273048-4200034700-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [No File]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2025-06-08] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2025-06-08] <==== ATTENTION
Chrome:
=======
CHR DefaultProfile: Profile 2
CHR Profile: C:\Users\danha\AppData\Local\Google\Chrome\User Data\Profile 2 [2025-06-08]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\danha\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-06-07]
CHR Extension: (Dokumenty Google offline) - C:\Users\danha\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-07]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\danha\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-06-07]
CHR Profile: C:\Users\danha\AppData\Local\Google\Chrome\User Data\System Profile [2025-06-07]
CHR HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AORUS LCD Panel Service; C:\Program Files\GIGABYTE\Control Center\Lib\GBT_VGA\Service\MonitorService-exec.exe [371304 2023-06-21] (GIGA-BYTE TECHNOLOGY CO., LTD. -> CloudBees, Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.02.30\atkexComSvc.exe [905064 2024-11-19] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [502120 2024-11-19] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.35\AsusFanControlService.exe [1762664 2024-11-19] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [845256 2025-06-08] (ASUSTeK Computer Inc. -> )
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3383952 2025-05-28] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 BDAppSrv; C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe [851640 2025-03-17] (Bitdefender SRL -> Bitdefender)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851640 2025-06-08] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851640 2025-06-08] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2966176 2023-07-20] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2577184 2023-07-20] (Bitdefender SRL -> Bitdefender)
R2 BDSafepaySrv; C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe [851640 2025-06-08] (Bitdefender SRL -> Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [18991400 2025-03-19] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13724376 2025-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 CtxSvc32; C:\WINDOWS\sysWow64\CtxSvc32.exe [167416 2022-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19080800 2025-06-07] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137904 2024-06-25] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [959216 2025-05-29] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3071272 2025-05-28] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [1604112 2025-06-07] (Epic Games Inc. -> Epic Games, Inc.)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [345904 2024-11-22] (Underwriters Laboratories Inc. -> Futuremark)
S3 hpatchmon; C:\WINDOWS\system32\hpatchmon.dll [173472 2025-05-29] (Microsoft Windows -> Microsoft Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [16548744 2025-05-21] (Logitech Inc -> Logitech, Inc.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123304 2025-04-28] (The Document Foundation -> The Document Foundation)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe [2050904 2025-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\Display.NvContainer\NVDisplay.Container.exe [1275544 2025-05-16] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [760160 2025-05-12] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [917472 2025-05-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [295872 2025-06-08] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851640 2025-06-08] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\NisSrv.exe [4525976 2025-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MsMpEng.exe [278304 2025-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12223832 2025-03-19] (KRAFTON, Inc. -> KRAFTON, Inc.)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33592 2024-09-12] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [63392 2020-06-16] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 Asusgio2; C:\Windows\system32\drivers\AsIO2.sys [34384 2021-06-01] (ASUSTeK Computer Inc. -> )
R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [59440 2024-11-19] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 ASUSSC150; C:\WINDOWS\system32\DRIVERS\ASUSSC150.sys [3805696 2016-12-07] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTeK)
R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [7786032 2025-03-14] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci4; C:\WINDOWS\system32\DRIVERS\bddci4.sys [971312 2025-02-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [24568 2023-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R3 bdprivmon; C:\WINDOWS\system32\DRIVERS\bdprivmon.sys [49200 2023-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender SRL)
S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [42432 2024-07-02] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2024-12-13] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2024-12-13] (Microsoft Corporation) [File not signed]
R3 cpuz157; C:\WINDOWS\temp\cpuz157\cpuz157_x64.sys [43568 2025-06-08] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R3 CtxHda; C:\WINDOWS\system32\drivers\CtxHda.sys [1227280 2022-12-20] (Creative Technology Ltd -> Creative Technology Ltd)
R3 CtxHdb; C:\WINDOWS\system32\DRIVERS\Ctxhdb.sys [64056 2022-12-20] (Creative Technology Ltd -> Creative Technology Ltd)
S3 DESerialPort; C:\WINDOWS\system32\DRIVERS\DimensionSerialPort.sys [26112 2020-03-21] (Dimension Engineering LLC -> )
S3 DPMDriver; C:\WINDOWS\System32\drivers\DPMDriver.sys [142272 2025-02-04] (IndiLogic LLC -> Dell Inc.)
R1 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1791064 2024-11-14] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
S3 HWiNFO_204; C:\Users\danha\AppData\Local\Temp\HWiNFO_x64_204.sys [58024 2025-03-13] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R2 Ignisv2; C:\WINDOWS\system32\DRIVERS\ignisv2.sys [848472 2025-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2024-11-27] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [54752 2024-11-19] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [331168 2025-06-06] (Microsoft Windows -> Microsoft Corporation)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-09-12] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2024-01-18] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-09-12] (Logitech Inc -> Logitech)
S3 MTKBTFilterx64; C:\WINDOWS\System32\drivers\mtkbtfilterx.sys [361472 2022-11-16] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
S3 mtkwlex; C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1617920 2022-11-20] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
S3 nssvpd; C:\WINDOWS\System32\drivers\nssvpd.sys [334976 2025-06-06] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)
S3 PlutonHeci; C:\WINDOWS\System32\DriverStore\FileRepository\pluton-heci.inf_amd64_f74945e2fcb1d3d7\pluton-heci.sys [75168 2025-05-29] (Microsoft Windows -> Microsoft Corporation)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64sta.inf_amd64_e534d9a17a5cf932\rt25cx21x64.sys [889808 2025-01-20] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_feec7a9662e785f0\rtcx21x64.sys [539648 2024-03-28] (Microsoft Windows -> Realtek)
S3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
S3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
R1 steamxbox; C:\WINDOWS\System32\drivers\steamxbox.sys [278208 2023-02-21] (Valve Corp. -> Valve Corporation)
S3 ThermalFilter; C:\WINDOWS\System32\DriverStore\FileRepository\c_thermal.inf_amd64_732a53ed1662b707\ThermalFilter.sys [75376 2025-03-28] (Microsoft Windows Hardware Abstraction Layer Publisher -> Microsoft Corporation)
R2 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [629184 2023-07-20] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [1438768 2025-02-20] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [19984 2025-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [606568 2025-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100736 2025-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 HWiNFO_202; \??\C:\Users\danha\AppData\Local\Temp\HWiNFO_x64_202.sys [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-09 11:47 - 2025-06-09 11:47 - 000031956 _____ C:\Users\danha\Desktop\FRST.txt
2025-06-09 11:45 - 2025-06-09 11:45 - 002406912 _____ (Farbar) C:\Users\danha\Desktop\FRST64.exe
2025-06-09 11:35 - 2025-06-09 11:35 - 000000000 ____D C:\Users\danha\Desktop\internet rychlost
2025-06-09 09:42 - 2025-06-09 09:42 - 000001405 _____ C:\Users\Public\Desktop\Returnal.lnk
2025-06-09 01:45 - 2025-06-09 01:45 - 000261328 _____ C:\Users\danha\Downloads\Returnal [FitGirl Repack].torrent
2025-06-08 19:25 - 2025-06-08 19:25 - 000000223 _____ C:\Users\danha\Desktop\The Last of Us™ Part I.url
2025-06-08 12:45 - 2025-06-08 12:45 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-06-08 12:45 - 2025-06-08 12:45 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-06-08 10:30 - 2025-06-08 10:30 - 000000027 _____ C:\WINDOWS\system32\ctc.json
2025-06-08 10:17 - 2025-06-08 10:17 - 000114800 _____ C:\ProgramData\agent.update.1749370615.bdinstall.v2.bin
2025-06-08 10:16 - 2025-06-08 10:16 - 000711176 _____ C:\ProgramData\cl.1749370507.bdinstall.v2.bin
2025-06-08 10:16 - 2025-06-08 10:16 - 000133340 _____ C:\ProgramData\cl.kit.1749370507.bdinstall.v2.bin
2025-06-08 10:16 - 2025-06-08 10:16 - 000002457 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2025-06-08 10:16 - 2025-06-08 10:16 - 000002378 _____ C:\Users\Public\Desktop\Bitdefender.lnk
2025-06-08 10:16 - 2025-06-08 10:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2025-06-08 10:15 - 2025-06-08 10:19 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2025-06-08 10:15 - 2025-06-08 10:17 - 000003842 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2025-06-08 10:15 - 2025-06-08 10:15 - 000000000 ____D C:\Users\danha\AppData\Roaming\Bitdefender
2025-06-08 10:13 - 2025-06-08 10:17 - 000000000 ____D C:\Program Files\Bitdefender Agent
2025-06-08 10:13 - 2025-06-08 10:13 - 013543480 _____ C:\Users\danha\Downloads\bitdefender_isecurity.exe
2025-06-08 10:13 - 2025-06-08 10:13 - 000116904 _____ C:\ProgramData\agent.1749370408.bdinstall.v2.bin
2025-06-07 20:04 - 2025-06-07 20:04 - 000000000 ____D C:\Users\danha\AppData\Roaming\Opera Software
2025-06-07 20:04 - 2025-06-07 20:04 - 000000000 ____D C:\Users\danha\AppData\Local\Opera Software
2025-06-07 19:30 - 2025-06-07 20:59 - 000000000 ____D C:\Users\danha\Desktop\clashofthestarslags
2025-06-07 19:07 - 2025-06-07 19:07 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-06-07 19:07 - 2025-06-07 19:07 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-06-07 19:07 - 2025-06-07 19:07 - 000000000 ____D C:\Program Files\Google
2025-06-07 19:06 - 2025-06-07 19:06 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem
2025-06-07 16:30 - 2025-06-07 16:30 - 000000000 ____D C:\Users\danha\Desktop\sackboy save zaloha
2025-06-07 15:26 - 2025-06-07 15:26 - 000000000 ____D C:\Users\danha\Desktop\faktura ovladac
2025-06-07 11:59 - 2025-06-07 11:59 - 000000000 ____D C:\Users\danha\AppData\Local\Arkane Studios
2025-06-07 11:53 - 2025-06-07 11:53 - 000000000 ____D C:\Users\danha\AppData\LocalLow\Ubisoft
2025-06-07 11:21 - 2025-06-07 11:21 - 000000000 ____D C:\Users\danha\AppData\LocalLow\Aquiris
2025-06-07 10:58 - 2025-06-07 10:58 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PlayStation® Accessories.lnk
2025-06-07 10:58 - 2025-06-07 10:58 - 000002151 _____ C:\Users\Public\Desktop\PlayStation® Accessories.lnk
2025-06-07 10:58 - 2025-06-07 10:58 - 000000000 ____D C:\Users\danha\AppData\Local\Sony Corporation
2025-06-07 10:58 - 2025-06-07 10:58 - 000000000 ____D C:\Program Files\Sony
2025-06-07 00:38 - 2025-06-07 01:09 - 000000000 ____D C:\Users\danha\Desktop\nod32
2025-06-07 00:24 - 2025-06-07 00:24 - 000000000 ____D C:\Users\danha\Desktop\eset
2025-06-06 15:40 - 2025-06-07 16:22 - 000001624 _____ C:\Users\danha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NefariusVirtualPadDriverNotifications.lnk
2025-06-06 15:40 - 2025-06-06 15:40 - 000000000 ____D C:\Users\danha\AppData\Local\Paliverse
2025-06-06 15:40 - 2025-06-06 15:40 - 000000000 ____D C:\Users\danha\AppData\Local\Nefarius Software Solutions
2025-06-06 15:39 - 2025-06-07 16:22 - 000000000 ____D C:\Program Files\Nefarius Software Solutions
2025-06-06 15:39 - 2025-06-06 15:39 - 000334976 ____N (Nefarius Software Solutions e.U.) C:\WINDOWS\system32\Drivers\nssvpd.sys
2025-06-06 15:37 - 2025-06-06 15:37 - 000000000 ____D C:\Users\danha\AppData\Local\DSX
2025-06-06 14:44 - 2025-06-06 14:44 - 000000223 _____ C:\Users\danha\Desktop\Sackboy™ A Big Adventure.url
2025-06-06 14:35 - 2025-06-06 14:35 - 000000631 _____ C:\Users\Public\Desktop\Ratchet & Clank - Rift Apart.lnk
2025-06-06 14:32 - 2025-06-06 14:32 - 000000234 _____ C:\Users\danha\Desktop\Prince of Persia The Lost Crown.url
2025-06-06 14:32 - 2025-06-06 14:32 - 000000234 _____ C:\Users\danha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prince of Persia The Lost Crown.url
2025-06-06 12:37 - 2025-06-06 12:37 - 000000525 _____ C:\Users\Public\Desktop\Out of Sight.lnk
2025-06-06 12:36 - 2025-06-06 12:36 - 000000591 _____ C:\Users\Public\Desktop\MindKatt - First Strike.lnk
2025-06-06 12:29 - 2025-06-06 12:29 - 000173026 _____ C:\Users\danha\Downloads\Ratchet & Clank - Rift Apart [FitGirl Repack].torrent
2025-06-06 12:28 - 2025-06-06 12:28 - 000021996 _____ C:\Users\danha\Downloads\Prince of Persia - The Lost Crown [FitGirl Repack].torrent
2025-06-06 12:18 - 2025-06-06 12:18 - 000095112 _____ C:\Users\danha\Downloads\Sackboy - A Big Adventure [FitGirl Repack].torrent
2025-06-05 22:54 - 2025-06-05 22:54 - 000106150 _____ C:\Users\danha\Downloads\[SkT]Pravidla_zločinu___Criminal_Code_S02_(CZ)[WEB-DL][1080p]_=_CSFD_70_.torrent
2025-06-05 22:53 - 2025-06-05 22:53 - 000040915 _____ C:\Users\danha\Downloads\[SkT]Pravidla_zločinu___Criminal_Code_S01_(CZ)[WebRip][1080p].torrent
2025-06-05 17:18 - 2025-06-05 17:18 - 000019098 _____ C:\Users\danha\Downloads\[SkT]Ospalá_diera____Sleepy_Hollow_(1999)(SK_EN)[1080p]_=_CSFD_83_.torrent
2025-06-05 17:14 - 2025-06-05 17:14 - 000013365 _____ C:\Users\danha\Downloads\[SkT]Zúčtování_2___The_Accountant_2_(2025)[1080p][WebRip]_=_CSFD_72_.torrent
2025-06-04 02:12 - 2025-06-04 02:12 - 000032313 _____ C:\Users\danha\Downloads\[SkT]Novokain___Novocaine_(2025)(CZ_EN)[WEB-DL][1080p]_=_CSFD_67_.torrent
2025-06-04 02:10 - 2025-06-04 02:10 - 000015105 _____ C:\Users\danha\Downloads\[SkT]Novokain___Novocaine_(2025)[WEBRip][2160p][HDR10 ][CZ]_=_CSFD_67_.torrent
2025-06-03 19:45 - 2025-06-03 19:45 - 000014610 _____ C:\Users\danha\Downloads\[SkT]Krotitelé_duchů__Odkaz___Ghostbusters__Afterlife_(2021)(CZ_EN)[2160p][HDR_DV]_=_CSFD_70_.torrent
2025-06-03 17:53 - 2025-06-03 17:53 - 000020802 _____ C:\Users\danha\Downloads\[SkT]MobLand_S01_kompletní_první_série_CZ_titulky_[1080p]_=_CSFD_83_.torrent
2025-06-03 09:16 - 2025-06-03 09:16 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-06-02 00:46 - 2025-06-08 23:15 - 000000132 _____ C:\Users\danha\Desktop\filmy kenny.txt
2025-06-01 02:48 - 2025-06-01 02:51 - 2239106363 _____ C:\Users\danha\Downloads\The Florida Project-2017-Cz dab.mkv
2025-06-01 01:39 - 2025-06-01 01:45 - 3994860911 _____ C:\Users\danha\Downloads\Trojúhelník smutku (2023).mkv
2025-05-30 07:56 - 2025-05-30 08:01 - 3141891752 _____ C:\Users\danha\Downloads\Štastně až do smrti (2022).mkv
2025-05-30 03:19 - 2025-06-08 10:17 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-05-29 13:02 - 2025-05-29 13:13 - 3463323498 _____ C:\Users\danha\Downloads\Sinners_2025_CZ,SK Titulky_WEB-DL DDP5.1 Atmos_1080p_H.264.mkv
2025-05-29 09:34 - 2025-06-08 10:18 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2025-05-29 03:20 - 2025-06-09 11:36 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-05-29 03:18 - 2025-05-29 03:18 - 000033224 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-05-29 03:18 - 2025-05-29 03:18 - 000033224 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-05-29 03:18 - 2025-05-29 03:18 - 000001555 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2025-05-28 14:02 - 2025-05-28 15:24 - 1746354485 _____ C:\Users\danha\Downloads\Bobby Deerfield.mkv
2025-05-26 20:04 - 2025-05-28 11:43 - 000000142 _____ C:\Users\danha\Desktop\cs prikazy.txt
2025-05-25 15:22 - 2025-05-25 17:56 - 3276603021 _____ C:\Users\danha\Downloads\Odvaha pod palbou =1996,-CZ.mkv
2025-05-25 11:14 - 2025-05-25 13:14 - 2561702848 _____ C:\Users\danha\Downloads\Až na konec světa 2023 CZ tit. 1080p.mkv
2025-05-25 10:13 - 2025-05-25 11:04 - 1107368514 _____ C:\Users\danha\Downloads\Žaloba (1998) [juraison+].avi
2025-05-25 07:38 - 2025-05-25 09:39 - 2566216883 _____ C:\Users\danha\Downloads\The Pelican brief 1993 (Pripad Pelikan)Brip Cz,Eng+titulky.mkv
2025-05-25 05:17 - 2025-05-25 07:01 - 2211742723 _____ C:\Users\danha\Downloads\Souboj s rodinou (2019) CZ.mkv
2025-05-25 04:15 - 2025-05-25 05:23 - 1463054920 _____ C:\Users\danha\Downloads\Přijíždí jezdec - (Hrají James Caan, Jane Fonda,)(1978) CZ dab Leg.mkv
2025-05-24 23:32 - 2025-05-25 01:29 - 2502130119 _____ C:\Users\danha\Downloads\Třináct Životů 2022 (748).mkv
2025-05-24 22:14 - 2025-05-24 22:14 - 000000000 ____D C:\Users\danha\AppData\Roaming\LibreOffice
2025-05-24 22:13 - 2025-05-24 22:13 - 000001181 _____ C:\Users\Public\Desktop\LibreOffice 25.2.lnk
2025-05-24 22:13 - 2025-05-24 22:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-05-24 22:13 - 2025-05-24 22:13 - 000000000 ____D C:\Program Files\LibreOffice
2025-05-23 10:09 - 2025-05-23 10:09 - 000000000 ____D C:\Users\danha\AppData\Local\Sifu
2025-05-23 08:33 - 2025-05-23 08:33 - 000000343 _____ C:\Users\danha\Desktop\Sifu.url
2025-05-22 13:05 - 2025-05-22 13:05 - 000000000 ____D C:\Users\danha\Desktop\jidlo
2025-05-22 07:08 - 2025-05-22 07:08 - 000000856 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2025-05-22 07:08 - 2025-05-22 07:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2025-05-22 07:08 - 2025-05-22 07:08 - 000000000 ____D C:\Program Files\LGHUB
2025-05-21 22:42 - 2025-05-21 22:42 - 000000000 ____D C:\Users\danha\AppData\Local\EBOLA
2025-05-20 13:50 - 2025-05-16 03:17 - 002072448 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-05-20 13:50 - 2025-05-16 03:17 - 002072448 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-05-20 13:50 - 2025-05-16 03:17 - 001614208 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-05-20 13:50 - 2025-05-16 03:17 - 001614208 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-05-20 13:50 - 2025-05-16 03:17 - 001576832 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-05-20 13:50 - 2025-05-16 03:17 - 001576832 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-05-20 13:50 - 2025-05-16 03:17 - 001389952 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-05-20 13:50 - 2025-05-16 03:17 - 001389952 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-05-20 13:50 - 2025-05-16 03:17 - 000477832 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-05-20 13:50 - 2025-05-16 03:17 - 000374936 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-05-20 13:50 - 2025-05-16 03:13 - 001259632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-05-20 13:50 - 2025-05-16 03:13 - 000674408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-05-20 13:50 - 2025-05-16 03:13 - 000509056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 026002056 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-05-20 13:50 - 2025-05-16 03:12 - 002313352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 001713824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 001569416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 001220232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 001053848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 000942208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-05-20 13:50 - 2025-05-16 03:12 - 000809576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-05-20 13:50 - 2025-05-16 03:12 - 000467056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-05-20 13:50 - 2025-05-16 03:11 - 023034480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 020517528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 007322760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 005913736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 005240480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 003994264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-05-20 13:50 - 2025-05-16 03:11 - 000853664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-05-20 13:50 - 2025-05-16 03:02 - 005601560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-05-20 13:50 - 2025-05-16 03:02 - 004901616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-05-20 13:50 - 2025-05-15 03:15 - 000143016 _____ C:\WINDOWS\system32\nvinfo.pb
2025-05-19 13:15 - 2025-05-19 15:23 - 2744400886 _____ C:\Users\danha\Downloads\Spring.Breakers.2012.cz.mkv
2025-05-19 11:49 - 2025-05-19 15:21 - 222841364 _____ C:\Users\danha\Downloads\Free Solo (Alex Honnold 2018) [EN CZ] 720p NatGeo.mkv
2025-05-19 11:49 - 2025-05-19 12:09 - 438552293 _____ C:\Users\danha\Downloads\the.alpinist.2021.480p.bluray.x264.mkv
2025-05-18 20:33 - 2025-05-19 00:33 - 825549945 _____ C:\Users\danha\Downloads\Skywalkers A Love Story 2024 CZ dabing HD.mkv
2025-05-18 20:28 - 2025-05-19 00:43 - 1140549424 _____ C:\Users\danha\Downloads\Avicii Jsem Tim Avicii I'm Tim (2024) Dokumentární CZ EN EAC3 5 1 CZ AAC 2 0 1080p.mkv
2025-05-15 14:43 - 2025-05-15 14:43 - 000004749 _____ C:\Users\danha\Desktop\ELIQUDY2.txt
2025-05-15 14:00 - 2025-05-15 14:00 - 000000000 ____D C:\Users\danha\Desktop\fortinte
2025-05-14 16:10 - 2025-05-21 10:41 - 000000949 _____ C:\Users\danha\Desktop\Nový Textový dokument (2).txt
2025-05-13 17:56 - 2025-06-08 09:04 - 000000044 _____ C:\Users\danha\Desktop\vape.txt
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-09 11:47 - 2023-12-07 18:50 - 000000000 ____D C:\FRST
2025-06-09 11:47 - 2023-08-24 19:18 - 000000000 ____D C:\Program Files (x86)\Steam
2025-06-09 11:36 - 2023-08-24 19:24 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-06-09 11:35 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-06-09 11:34 - 2023-08-24 22:02 - 000000000 ____D C:\Users\danha\AppData\Roaming\qBittorrent
2025-06-09 10:38 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-06-09 09:55 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-06-09 09:48 - 2025-02-04 20:29 - 000000000 ____D C:\Hry
2025-06-09 09:36 - 2024-01-18 16:38 - 000000000 ____D C:\Users\danha\AppData\Local\LGHUB
2025-06-09 04:20 - 2023-08-24 18:12 - 000000000 ____D C:\ProgramData\NVIDIA
2025-06-09 01:29 - 2024-12-30 23:19 - 000000000 ____D C:\Users\danha\Desktop\bazos fotky
2025-06-08 20:22 - 2023-08-24 19:01 - 000000000 ____D C:\Users\danha\AppData\Local\CrashDumps
2025-06-08 20:21 - 2023-08-25 14:18 - 000000000 ____D C:\Users\danha\AppData\Roaming\EasyAntiCheat
2025-06-08 19:25 - 2023-08-24 19:31 - 000000000 ____D C:\Users\danha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2025-06-08 19:11 - 2023-08-24 18:04 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-06-08 19:11 - 2023-08-24 18:04 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-06-08 13:00 - 2024-12-13 12:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-06-08 13:00 - 2023-08-24 18:15 - 000000000 ____D C:\Users\danha\AppData\Local\D3DSCache
2025-06-08 12:45 - 2024-12-13 12:24 - 001692396 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-06-08 12:45 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-06-08 12:39 - 2023-08-24 18:15 - 000000000 ____D C:\Users\danha\AppData\Local\Packages
2025-06-08 12:38 - 2024-12-13 12:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-06-08 12:38 - 2024-12-13 12:20 - 000028908 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-06-08 12:38 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-06-08 12:38 - 2023-08-24 18:04 - 000901328 _____ () C:\WINDOWS\system32\wpbbin.exe
2025-06-08 12:38 - 2023-08-24 18:04 - 000845256 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2025-06-08 12:38 - 2023-08-24 18:04 - 000012288 ___SH C:\DumpStack.log.tmp
2025-06-08 10:41 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-06-08 10:39 - 2023-11-02 09:03 - 000000000 ____D C:\ProgramData\Bitdefender
2025-06-08 10:16 - 2024-04-01 09:21 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2025-06-08 10:16 - 2023-08-24 18:06 - 000000000 ____D C:\ProgramData\Packages
2025-06-08 10:15 - 2023-11-02 09:03 - 000000000 ____D C:\Program Files\Bitdefender
2025-06-07 19:06 - 2023-08-24 18:39 - 000000000 ____D C:\Program Files (x86)\Google
2025-06-07 16:22 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-06-07 11:59 - 2024-04-17 22:58 - 000000000 ____D C:\Users\danha\AppData\Local\Ubisoft Game Launcher
2025-06-07 11:59 - 2023-10-24 21:19 - 000000000 ____D C:\Users\danha\AppData\Local\EpicGamesLauncher
2025-06-07 11:53 - 2023-11-23 13:36 - 000000000 ____D C:\Users\danha\Documents\My Games
2025-06-07 11:08 - 2024-04-19 15:04 - 000000000 ____D C:\ProgramData\EA Desktop
2025-06-07 07:40 - 2024-03-22 18:32 - 000000000 ____D C:\Users\danha\AppData\Local\Fortuna Poker
2025-06-07 02:01 - 2024-04-01 09:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-06-07 01:09 - 2023-08-24 18:04 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-06-06 15:39 - 2023-09-18 15:18 - 000000000 ____D C:\Program Files (x86)\dotnet
2025-06-06 15:39 - 2023-08-24 18:32 - 000000000 ____D C:\ProgramData\Package Cache
2025-06-06 07:27 - 2024-12-13 12:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-06-05 07:08 - 2023-08-24 19:24 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-06-04 22:39 - 2025-04-23 17:41 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-06-04 22:39 - 2025-04-23 17:41 - 000001434 _____ C:\Users\Public\Desktop\NVIDIA App.lnk
2025-06-04 22:39 - 2023-08-24 18:50 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-06-04 01:39 - 2023-10-26 23:25 - 000000000 ____D C:\Users\danha\Desktop\mp3
2025-06-03 17:08 - 2023-08-25 20:34 - 000000000 ____D C:\Users\danha\AppData\Roaming\discord
2025-06-03 17:00 - 2023-08-25 20:34 - 000000000 ____D C:\Users\danha\AppData\Local\Discord
2025-06-03 16:00 - 2023-08-25 20:34 - 000002247 _____ C:\Users\danha\Desktop\Discord.lnk
2025-06-03 09:15 - 2023-09-05 00:36 - 000000000 ____D C:\Program Files\Microsoft Office
2025-06-02 17:56 - 2025-02-06 18:56 - 000003576 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1398007894-2651273048-4200034700-1001
2025-06-02 17:56 - 2024-12-13 12:22 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1398007894-2651273048-4200034700-1001
2025-06-02 17:56 - 2024-12-13 12:22 - 000003364 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1398007894-2651273048-4200034700-1001
2025-06-02 17:56 - 2023-08-24 18:17 - 000002381 _____ C:\Users\danha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-06-02 11:20 - 2025-04-23 17:41 - 003175968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2025-06-02 11:20 - 2025-04-23 17:41 - 002522144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2025-06-02 11:20 - 2025-04-23 17:41 - 000271392 _____ C:\WINDOWS\system32\FvSDK_x64.dll
2025-06-02 11:20 - 2025-04-23 17:41 - 000245792 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
2025-06-02 10:53 - 2025-04-23 17:41 - 000180760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2025-06-02 10:53 - 2025-04-23 17:41 - 000159768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2025-06-02 10:51 - 2025-04-23 17:41 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2025-05-30 04:53 - 2023-11-20 17:35 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-05-29 13:06 - 2023-08-25 14:18 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS
2025-05-29 09:53 - 2023-08-24 19:24 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2025-05-29 09:22 - 2024-12-13 12:20 - 000484048 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-05-29 09:21 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Com
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-05-29 09:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-05-29 03:18 - 2024-12-13 12:22 - 003383808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-05-28 07:31 - 2023-12-07 20:48 - 000000000 ____D C:\Users\danha\AppData\Local\Battle.net
2025-05-27 18:04 - 2023-10-23 20:50 - 000000000 ____D C:\Users\danha\Desktop\bazos
2025-05-24 05:23 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-05-24 03:31 - 2024-12-13 09:53 - 000000000 ____D C:\Users\danha
2025-05-22 07:09 - 2024-01-18 16:38 - 000000000 ____D C:\Users\danha\AppData\Roaming\G HUB
2025-05-22 07:08 - 2024-01-18 16:38 - 000000000 ____D C:\Users\danha\AppData\Roaming\lghub
2025-05-20 22:02 - 2023-08-24 22:05 - 000001018 _____ C:\Users\Public\Desktop\PotPlayer 64 bit.lnk
2025-05-20 13:55 - 2023-08-24 18:17 - 000000000 ____D C:\Users\danha\AppData\Local\NVIDIA
2025-05-20 07:05 - 2024-12-13 12:22 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-05-20 07:05 - 2024-12-13 12:22 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-05-14 17:59 - 2023-08-24 19:19 - 000000000 ____D C:\Users\danha\AppData\Local\Steam
2025-05-14 12:36 - 2023-08-24 18:24 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-05-14 12:34 - 2023-08-24 18:24 - 214836568 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-05-14 04:40 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-05-12 16:21 - 2024-07-29 19:23 - 000002978 _____ C:\Users\danha\Desktop\kenny text.txt
==================== Files in the root of some directories ========
2024-08-09 18:23 - 2024-08-09 18:23 - 000006014 _____ () C:\Users\danha\AppData\Local\9483224667
2024-12-30 02:59 - 2024-12-30 02:59 - 000000218 _____ () C:\Users\danha\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-06-2025
Ran by danha (09-06-2025 11:50:30)
Running from C:\Users\danha\Desktop
Microsoft Windows 11 Pro Version 24H2 26100.4202 (X64) (2024-12-13 10:22:38)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1398007894-2651273048-4200034700-500 - Administrator - Disabled)
danha (S-1-5-21-1398007894-2651273048-4200034700-1001 - Administrator - Enabled) => C:\Users\danha
DefaultAccount (S-1-5-21-1398007894-2651273048-4200034700-503 - Limited - Disabled)
Guest (S-1-5-21-1398007894-2651273048-4200034700-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1398007894-2651273048-4200034700-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Bitdefender Antivirus (Enabled - Up to date) {0F59B032-EA77-E3A8-2382-74A4346E5522}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {37623117-A018-E2F0-08DD-DD91CABD1259}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 23.01 (x64) (HKLM\...\7-Zip) (Version: 23.01 - Igor Pavlov)
AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 3.03.36 - ASUSTeK Computer Inc.)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.134 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 7.02.13.148 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.126 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.38.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\{02247819-03CD-414E-AC8D-FD518BFBA445}) (Version: 2.14.1.3286 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.14.1.3286 - Advanced Micro Devices, Inc.)
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{2716aa5a-0535-4e2a-af04-f4e5468df2f8}) (Version: 7.02.13.148 - Advanced Micro Devices, Inc.) Hidden
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.15 - tippach engineering)
balenaEtcher (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\balena_etcher) (Version: 1.19.21 - Balena Ltd. <hello@balena.io>)
Balíček ovladače systému Windows - Dimension Engineering USB Serial Converter (03/12/2020 1.0.4.0) (HKLM\...\107A6C3A58FE281A190741B5E2659A91D140C7C9) (Version: 03/12/2020 1.0.4.0 - Dimension Engineering)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 27.1.1.13 - Bitdefender)
Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 27.0.50.256 - Bitdefender)
CPUID CPU-Z 2.15 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.15 - CPUID, Inc.)
CPUID HWMonitor 1.51 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.51 - CPUID, Inc.)
Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.45 - Creative Technology Limited)
CrystalDiskInfo 9.1.1 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.1.1 - Crystal Dew World)
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
CZC.Gaming Revenant (HKLM-x32\...\CZC.Gaming Revenant) (Version: V1.01n - CZC.cz s.r.o.)
Discord (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\Discord) (Version: 1.0.9016 - Discord Inc.)
Dolby Digital Live Pack version 4.02.00 (HKLM-x32\...\DDLMaster_is1) (Version: 4.02.00 - Creative Technology Ltd.)
DTS Connect Pack version 2.02.00 (HKLM-x32\...\DTSMaster_is1) (Version: 2.02.00 - Creative Technology Ltd.)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.482.0.5995 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d473ca0c-6e51-4386-a9d8-0458f243b271}) (Version: 13.482.0.5995 - Electronic Arts)
ECigStats (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\ECigStats) (Version: - Evolv)
Epic Games Launcher (HKLM-x32\...\{C5C3EE71-4047-4144-946E-18D500510CB5}) (Version: 1.3.128.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{5122B8BC-D6DF-48FF-8D4E-15A63EEC5073}) (Version: 2.8.1 - Epic Games, Inc.)
EScribe Suite (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\EScribe) (Version: - Evolv)
Futuremark SystemInfo (HKLM-x32\...\{9BD32ADA-36E6-4878-96BD-7AC4D9F53DC6}) (Version: 5.76.1304.0 - Futuremark)
GBT_MB_Update (HKLM\...\GBT_MB_Update) (Version: 24.03.25.01 - GIGABYTE)
GBT_RGB_Sync_Control 24.03.21.01 (HKLM\...\GBT_RGB_Sync_Control) (Version: 24.03.21.01 - GIGABYTE)
GBT_VGA 23.09.27.01 (HKLM\...\GBT_VGA) (Version: 23.09.27.01 - GIGABYTE)
GIGABYTE Control Center 24.03.25.01 (HKLM\...\GIGABYTE Control Center) (Version: 24.03.25.01 - GIGABYTE)
GMenu (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\4ac46a8d-c0d4-56ee-87f3-9abd4ce22e7f) (Version: 3.5.14 - AOC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 137.0.7151.69 - Google LLC)
Hand2Note4 (HKLM\...\{7ABEFDCB-DDF1-4B2A-BA90-6C3C84B44CCE}) (Version: 4.0.0.127 - Hand2Note)
Host OpenAL (HKLM-x32\...\Host OpenAL) (Version: 2.03 - Creative Technology Limited)
HWiNFO64 Version 7.60 (HKLM\...\HWiNFO64_is1) (Version: 7.60 - Martin Malik, REALiX s.r.o.)
Java 8 Update 451 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180451F0}) (Version: 8.0.4510.10 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 25.2.3.2 (HKLM\...\{55CF6D12-B29A-4610-9E4A-1ACFE722B691}) (Version: 25.2.3.2 - The Document Foundation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2025.4.719084 - Logitech)
Mario Kart 8 Deluxe (HKLM-x32\...\Mario Kart 8 Deluxe_is1) (Version: - )
Microsoft .NET 8.0.12 - Windows Server Hosting (HKLM-x32\...\{218673b6-7337-4d49-bc41-b4ccb7e34802}) (Version: 8.0.12.24603 - Microsoft Corporation)
Microsoft .NET Host - 6.0.26 (x64) (HKLM\...\{87EBA554-A002-4EF4-A612-4FFD06092B5B}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.5 (x64) (HKLM\...\{CE8DF750-A582-4D59-A610-478A752481B1}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.5 (x86) (HKLM-x32\...\{2F933E6C-13D1-4886-99EB-05ED0C42885B}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.12 (x86) (HKLM-x32\...\{874D52B8-B1F4-4D04-8249-8AC6E698CCF5}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.26 (x64) (HKLM\...\{D81A418F-966D-4069-B3E8-5EE4843CA862}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.5 (x64) (HKLM\...\{B6F2958F-0F6F-4CCD-867F-80EC5C333B79}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.5 (x86) (HKLM-x32\...\{E3B06B8A-7FA4-4421-8A96-8503B2669F50}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x86) (HKLM-x32\...\{9EC250F3-BC02-4B35-8395-E03A02CD9255}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.26 (x64) (HKLM\...\{1A02C1B1-05BB-49F7-9DFF-99A66C6877FC}) (Version: 48.104.7000 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.5 (x64) (HKLM\...\{793FCD19-00AC-4804-B569-782DF3B24A39}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.5 (x86) (HKLM-x32\...\{23D1DA1E-5CBC-4990-BB53-5974E8D0AB3A}) (Version: 56.23.58437 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x86) (HKLM-x32\...\{272C9AEF-D02F-4955-8C11-D9F9198A58EC}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft 365 Apps for enterprise - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.18827.20128 - Microsoft Corporation)
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.18827.20128 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.12 Hosting Bundle Options (HKLM-x32\...\{8C069910-4E69-349B-8840-56F774C92B87}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 8.0.12 Shared Framework (x64) (HKLM\...\{2B76FF3A-309D-3050-9C41-C98FB593258D}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 8.0.12 Shared Framework (x86) (HKLM-x32\...\{0770B9E3-CA2C-37B8-AD77-7336654A2466}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\{C0100F28-7066-3085-A999-1B6A227E4AC5}) (Version: 137.0.3296.68 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 137.0.3296.68 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\OneDriveSetup.exe) (Version: 25.085.0504.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.26 (x64) (HKLM\...\{1F0EB53C-BE30-436A-BC54-FA364227A870}) (Version: 48.104.6996 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.26 (x64) (HKLM-x32\...\{b2476903-b8da-4dcc-903f-378730bb4c48}) (Version: 6.0.26.33205 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.5 (x64) (HKLM\...\{109506AF-BF9E-43E1-87F3-3141B9C3F6BA}) (Version: 56.23.58485 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.5 (x64) (HKLM-x32\...\{c7984cd8-d837-4988-a30d-8da7822bc716}) (Version: 7.0.5.32327 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.5 (x86) (HKLM-x32\...\{10B89C4E-2660-4746-AD74-18C3BD27D929}) (Version: 56.23.58485 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.5 (x86) (HKLM-x32\...\{25d3cc26-2a8e-4175-be20-a3a0c7b08676}) (Version: 7.0.5.32327 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM\...\{71CD19D6-C448-4B5D-9A38-018741753290}) (Version: 64.48.26178 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM-x32\...\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}) (Version: 8.0.12.34404 - Microsoft Corporation)
MindKatt: First Strike (HKLM-x32\...\MindKatt: First Strike_is1) (Version: - )
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 139.0.1 (x64 cs)) (Version: 139.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 123.0 - Mozilla)
Mozilla Thunderbird (x64 cs) (HKLM\...\Mozilla Thunderbird 128.11.0 (x64 cs)) (Version: 128.11.0 - Mozilla)
MSI Afterburner 4.6.6 Beta 3 (HKLM-x32\...\Afterburner) (Version: 4.6.6 Beta 3 - MSI Co., LTD)
Nikoderiko The Magical World Directors Cut (HKLM-x32\...\Nikoderiko The Magical World Directors Cut_is1) (Version: - )
NVIDIA App 11.0.4.148 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.4.148 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.10920.35420203 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.10920.35420203 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 576.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 576.52 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18827.20102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18827.20128 - Microsoft Corporation) Hidden
Open Capture and Analytics Tool (OCAT) (HKLM-x32\...\{971e4fdc-7a93-4e4f-ae6a-d7f3208fdbca}) (Version: 1.6.3.0 - Advanced Micro Devices, Inc.)
Open Capture and Analytics Tool (OCAT) 1.6.3.0 (HKLM\...\{F06081E8-571B-4ABE-8C01-DD47C6F22558}) (Version: 1.6.3.0 - Advanced Micro Devices, Inc.) Hidden
Out of Sight (HKLM-x32\...\Out of Sight_is1) (Version: - )
PlayStation(R) PC SDK Runtime (HKLM\...\{0664B665-622E-490B-87CB-45EF0B52DA46}) (Version: 3.50.0011 - Sony Interactive Entertainment Inc.)
PlayStation® Accessories (HKLM\...\{A27B17B9-90C8-4B07-83C6-1303FC186B6B}) (Version: 2.2.0.3 - Sony Interactive Entertainment Inc.)
Pomocník s instalací Windows 11 (HKLM-x32\...\{115DF11E-4B4C-4EA9-9A79-00DB0C7EF02D}) (Version: 1.4.19041.3630 - Microsoft Corporation)
PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: 25.05.14.0 - Kakao Corp.)
Prince of Persia The Lost Crown (HKLM-x32\...\Uplay Install 6145) (Version: - Ubisoft)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.3.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Ratchet & Clank: Rift Apart (HKLM-x32\...\Ratchet & Clank: Rift Apart_is1) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.22.1116.2024 - Realtek)
Returnal (HKLM-x32\...\Returnal_is1) (Version: - )
RivaTuner Statistics Server 7.3.5 (HKLM-x32\...\RTSS) (Version: 7.3.5 - Unwinder)
Sound Blaster AE-Series Driver (HKLM-x32\...\AESeries_is1) (Version: 1.0.01.06 - Creative Technology Ltd.)
Sound Blaster Command version 3.5.10.00 (HKLM-x32\...\Sound Blaster Command_is1) (Version: 3.5.10.00 - Creative Technology Ltd.)
Star Wars: Outlaws CZ v3.5 (HKLM-x32\...\Star Wars: Outlaws CZ) (Version: 3.5 - Squiee)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Super Mario 3D World... (HKLM-x32\...\Super Mario 3D World..._is1) (Version: - )
Sweep (HKLM-x32\...\Sweep_is1) (Version: - )
The Expanse - A Telltale Series CZ (HKLM-x32\...\The Expanse - A Telltale Series CZ) (Version: - )
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 151.2.11050 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Wise Auto Shutdown (HKLM-x32\...\Wise Auto Shutdown_is1) (Version: 2.0.8 - Lespeed Technology Co., Ltd)
Chrome apps:
============
Disk Google (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\711b8361c4ce9458dab581e2398472e9) (Version: 1.0 - Google\Chrome)
Dokumenty (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\90bbfe368d207ae70caa9c20fb49b5c5) (Version: 1.0 - Google\Chrome)
Gmail (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\f7d0c75cca42459715f1992f955aacc4) (Version: 1.0 - Google\Chrome)
Prezentace (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\2cb47850f6af3054f8680cc9dfceb268) (Version: 1.0 - Google\Chrome)
Tabulky (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\f7d3f49d343a79477465f9e66642ad02) (Version: 1.0 - Google\Chrome)
YouTube (HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\dae31a7a25c6e052a60175d47ba40cbd) (Version: 1.0 - Google\Chrome)
Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] ()
@{MicrosoftWindows.Client.CoreAI_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.CoreAI/AIXHost/ClickToDo/AppDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CoreAI_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
@{MicrosoftWindows.Client.CoreAI_1000.26100.4061.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.CoreAI/AIXHost/ClickToDo/AppDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CoreAI_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Akce kliknutím (náhled) -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CoreAI_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Architectural Structures PREMIUM -> C:\Program Files\WindowsApps\Microsoft.ArchitecturalStructuresPREMIUM_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Autumn Colors -> C:\Program Files\WindowsApps\Microsoft.AutumnColors_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.54792954.Filons_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.56978801.Voiess_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57058570.Speion_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57074914.Livtop_cw5n1h2txyewy [2025-05-29] (Microsoft Windows)
Beautiful Norway -> C:\Program Files\WindowsApps\Microsoft.BeautifulNorway_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Bitdefender CL Contextual Menu -> C:\Program Files\Bitdefender\Bitdefender Security App [2025-06-08] (Bitdefender)
Community Showcase Natural Landscapes -> C:\Program Files\WindowsApps\Microsoft.CommunityShowcaseNaturalLandscapes_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Desert Beauty PREMIUM -> C:\Program Files\WindowsApps\Microsoft.DesertBeautyPREMIUM_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Fish and Corals -> C:\Program Files\WindowsApps\Microsoft.FishandCorals_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Forest for the Trees -> C:\Program Files\WindowsApps\Microsoft.ForestfortheTrees_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.23.0_neutral__8xx8rvfyw5nnt [2024-11-09] (Instagram)
Islands in the Sun -> C:\Program Files\WindowsApps\Microsoft.IslandsintheSun_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Japanese Islands PREMIUM -> C:\Program Files\WindowsApps\Microsoft.JapaneseIslandsPREMIUM_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Lakeside Vistas -> C:\Program Files\WindowsApps\Microsoft.LakesideVistas_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Latvian Landscapes -> C:\Program Files\WindowsApps\Microsoft.LatvianLandscapes_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Lightning Strikes -> C:\Program Files\WindowsApps\Microsoft.LightningStrikes_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Microsoft Jenny (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Jenny.1_1.0.8.0_x64__cw5n1h2txyewy [2025-05-08] (Microsoft Windows)
Microsoft.Edge.GameAssist -> C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe [2025-06-05] (Microsoft Corporation)
Microsoft.StartExperiencesApp -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.22.2.0_x64__8wekyb3d8bbwe [2025-05-29] (Microsoft Corporation)
Mountain's Majesty -> C:\Program Files\WindowsApps\Microsoft.MountainsMajesty_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Natural Hearts PREMIUM -> C:\Program Files\WindowsApps\Microsoft.NaturalHeartsPREMIUM_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-25] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-06-03] ()
Quake 3 -> C:\Program Files\WindowsApps\BethesdaSoftworks.Quake3_1.0.0.0_x86__3275kfvn8vcwc [2024-08-07] (Bethesda Softworks)
River Roll On PREMIUM -> C:\Program Files\WindowsApps\Microsoft.RiverRollOnPREMIUM_3.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Snowy Mountains -> C:\Program Files\WindowsApps\Microsoft.SnowyMountains_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
Speech Pack - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.en-US.1_1.0.23.0_x64__cw5n1h2txyewy [2025-05-08] (Microsoft Windows)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0 [2025-06-05] (Spotify AB) [Startup Task]
Street Views PREMIUM -> C:\Program Files\WindowsApps\Microsoft.StreetViewsPREMIUM_1.0.0.0_neutral__8wekyb3d8bbwe [2024-03-06] (Microsoft Corporation)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_7000.498.2246.0_x64__8wekyb3d8bbwe [2025-06-04] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2024-09-11] (win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{0e065295-40e5-fbff-a113-a775a5c84d70}\localserver32 -> "C:\Program Files (x86)\Steam\steamapps\common\DSX\Main\DSX.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{1131f266-5b75-f5a0-ded5-61c709ea045a}\localserver32 -> "C:\Program Files\Dell\Dell Display and Peripheral Manager\DDPM.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{23F29927-F8B1-4F3E-A7AA-27B64459B4BB}\InprocServer32 -> C:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{a0dc2696-5fe3-49f6-b3f8-8c3418978135}\InprocServer32 -> C:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{a107e1ba-8245-4dff-2dc2-b9cd46b693d0}\localserver32 -> "C:\Program Files (x86)\Steam\steamapps\common\DSX\Main_v3_Beta\DSX.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{aaafeb27-6abd-d0ea-ffd6-e6894baf4a29}\localserver32 -> "C:\Program Files\Dell\Dell Display and Peripheral Manager\Plugins\DDPM.Subagent.User\DDPM.Subagent.User.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{c0f42af5-855f-f8f2-3cc9-c23f54cf00ec}\localserver32 -> "C:\Program Files\Nefarius Software Solutions\Nefarius VirtualPad Driver Runtime\NefariusVirtualPadDriverNotifications.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1398007894-2651273048-4200034700-1001_Classes\CLSID\{D86326C8-9F4E-52A5-8AE6-DA23AF50CA60}\InprocServer32 -> no filepath
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => D:\Soft\AIMP\System\aimp_menu64.dll [2023-11-02] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => D:\Soft\AIMP\System\aimp_menu64.dll [2023-11-02] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\nvshext.dll [2025-05-16] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [1102848 2023-04-10] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [891904 2023-04-10] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\danha\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 2"
ShortcutWithArgument: C:\Users\danha\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
==================== Loaded Modules (Whitelisted) =============
2023-08-24 18:32 - 2020-08-24 07:52 - 000158208 _____ (Creative Lab Pte Ltd.) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\ClplLEDController.dll
2023-08-24 18:32 - 2020-03-05 05:08 - 000565248 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTAudEp.dll
2023-08-24 18:32 - 2020-07-21 08:49 - 002087424 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTCDC.dll
2023-08-24 18:32 - 2020-08-24 07:52 - 001830912 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTDrvLedMgr.dll
2023-08-24 18:32 - 2021-07-21 01:26 - 000124416 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTHID.dll
2023-08-24 18:32 - 2021-07-21 01:26 - 000587776 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTHIDRpA.dll
2023-08-24 18:32 - 2018-10-23 01:25 - 000098304 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\CTIntrfu.dll
2023-08-24 18:32 - 2018-08-16 03:33 - 001878528 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\MalLgcy.dll
2023-08-24 18:32 - 2023-10-05 10:41 - 000153088 _____ (Creative Technology Ltd.) [File not signed] [File is in use] C:\Program Files (x86)\Creative\Sound Blaster Command\Platform\Creative.Platform.PropStore.dll
2023-10-07 21:07 - 2023-06-20 10:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-04-23 17:41 - 2025-06-04 22:39 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox — anonymní prohlížení.lnk:DD458B7765 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk:1DC1525F34 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sound Blaster Command.lnk:AE55C9A172 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk:4D17D28237 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk:7AD7FA8AB1 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk:89C036AC43 [3442]
AlternateDataStreams: C:\Users\danha\Desktop\FRST64.exe:BDU [0]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [3120]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_451\bin\ssv.dll [2025-04-05] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_451\bin\jp2ssv.dll [2025-04-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-06-03] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2025-04-05 13:17 - 000004712 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site
109.94.209.70 fitgirl-repack.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site
109.94.209.70 fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.pro # Fake FitGirl site
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA App\NvDLISR
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\danha\AppData\Local\Microsoft\Windows\Themes\River Rol\DesktopBackground\01 gettyimages-1189935504_resized.jpg
DNS Servers: 192.168.15.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6 MT7921 Wireless LAN Card -> mtkwl6ex.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
FI_Lwf: NDIS Sample LightWeight Filter
steamxboxndi: Steam Xbox Controller Enhanced Features Driver
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "CZC.Gaming Revenant"
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_739984D67ED48D532AB489E0D9A494F2"
HKU\S-1-5-21-1398007894-2651273048-4200034700-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{5BCCCA00-F5D2-467D-80A0-225707BACCAC}] => (Allow) E:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{89F5BA31-CC63-43B5-8C93-D1747DEA9B97}] => (Allow) E:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{A4F56FAA-115A-4AED-8357-164C8D7E3241}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{97E69C25-8891-4480-B622-FC5B154B350F}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{C0C74488-7A70-4486-B268-408D83FBA8BD}] => (Allow) E:\SteamLibrary\steamapps\common\CULTIC\CULTIC.exe => No File
FirewallRules: [{21982D40-C0DA-464A-89A8-C29C2C1FBFE9}] => (Allow) E:\SteamLibrary\steamapps\common\CULTIC\CULTIC.exe => No File
FirewallRules: [{AF4AD352-4B48-4F59-B9DF-E0B78430619C}] => (Allow) D:\SteamLibrary\steamapps\common\DoubleDragonGaiden_ROTD\DoubleDragonGaiden_ROTD.exe => No File
FirewallRules: [{8E16507D-112C-417C-9FA8-C887EAA37EFB}] => (Allow) D:\SteamLibrary\steamapps\common\DoubleDragonGaiden_ROTD\DoubleDragonGaiden_ROTD.exe => No File
FirewallRules: [{56C0166A-75C3-4ABA-9C17-9D5B26876CFD}] => (Allow) E:\SteamLibrary\steamapps\common\The Talos Principle\Bin\x64\Talos_Unrestricted.exe => No File
FirewallRules: [{106C2F6F-3FE7-48A8-BA3E-AA0B5E847DEB}] => (Allow) E:\SteamLibrary\steamapps\common\The Talos Principle\Bin\x64\Talos_Unrestricted.exe => No File
FirewallRules: [{19593D4C-8EE3-42A8-B069-92B2DFF58F7F}] => (Allow) E:\SteamLibrary\steamapps\common\The Talos Principle\Bin\x64\Talos.exe => No File
FirewallRules: [{D8287604-4337-46E2-AE33-046CADE132EC}] => (Allow) E:\SteamLibrary\steamapps\common\The Talos Principle\Bin\x64\Talos.exe => No File
FirewallRules: [{338D0BA2-F1F6-41A3-ADB6-F7AFB728401B}] => (Allow) E:\SteamLibrary\steamapps\common\Cortex Command\Cortex Command.exe => No File
FirewallRules: [{C48F0A0D-AF19-42EE-BFD8-448B722AA24D}] => (Allow) E:\SteamLibrary\steamapps\common\Cortex Command\Cortex Command.exe => No File
FirewallRules: [{A7BF06B5-ED4B-402E-B32A-B37803ADEEE0}] => (Allow) E:\SteamLibrary\steamapps\common\Blameless\Blameless.exe => No File
FirewallRules: [{EEB2786E-549E-4045-922C-CD8070FDC8CA}] => (Allow) E:\SteamLibrary\steamapps\common\Blameless\Blameless.exe => No File
FirewallRules: [{A1BF1627-B1B7-4CF7-AD01-A4DCB211CB73}] => (Allow) E:\SteamLibrary\steamapps\common\UntitledApp\AnomalyMobileCampaign.exe => No File
FirewallRules: [{332C5019-CBF8-466F-974E-7E37F5746AD9}] => (Allow) E:\SteamLibrary\steamapps\common\UntitledApp\AnomalyMobileCampaign.exe => No File
FirewallRules: [{6F461654-E958-4568-8328-84546106E937}] => (Allow) E:\SteamLibrary\steamapps\common\Steel Rats\SteelRats.exe => No File
FirewallRules: [{9681CC45-426D-4F31-8EE5-38F4457AB3C5}] => (Allow) E:\SteamLibrary\steamapps\common\Steel Rats\SteelRats.exe => No File
FirewallRules: [{79DF4A17-73C0-4635-BE69-395D8A1512EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\A Story About My Uncle\Binaries\Win32\ASAMU-Win32-Shipping.exe => No File
FirewallRules: [{6A142427-7B48-40C8-B17D-6F06FE6893C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\A Story About My Uncle\Binaries\Win32\ASAMU-Win32-Shipping.exe => No File
FirewallRules: [{C60982A4-E105-4E5C-9DA2-F0D85F50786D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Speed Limit\KM\SpeedLimitKM.exe => No File
FirewallRules: [{0BD5E16C-08A7-4226-AE6E-FE5B1284482E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Speed Limit\KM\SpeedLimitKM.exe => No File
FirewallRules: [{1A4E4B0E-08EB-4D5A-B5A7-095CC2732DB7}] => (Allow) D:\SteamLibrary\steamapps\common\THPS12\Base\Binaries\Win64\THPS12.exe => No File
FirewallRules: [{C9509B98-DC50-4992-B5E1-1B22DA25AB8D}] => (Allow) D:\SteamLibrary\steamapps\common\THPS12\Base\Binaries\Win64\THPS12.exe => No File
FirewallRules: [{74ADDEED-8D49-44B2-AF1F-B036523582EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Swapper\TheSwapper.exe => No File
FirewallRules: [{517F42BD-1A07-4CCE-8C3C-1CA0B82CE277}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Swapper\TheSwapper.exe => No File
FirewallRules: [{7F5FF5A4-C2F0-4471-A9BD-931F78A4718E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Real Pool 3D\Poolians.exe => No File
FirewallRules: [{C3B4EBC2-B0B7-4FE4-8DF9-141C60924C60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Real Pool 3D\Poolians.exe => No File
FirewallRules: [{6F333ACD-2C5B-4090-AC49-5D66DEC3288A}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{A1E6162D-C894-40E9-84FD-A45653F2FB56}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pumped BMX Pro\PumpedBMXPro.exe () [File not signed]
FirewallRules: [{FA11C6D7-4747-4706-9789-9EF0986D700B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pumped BMX Pro\PumpedBMXPro.exe () [File not signed]
FirewallRules: [{793F5F17-4D78-407E-841F-2AB99B494447}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\THPS12\Base\Binaries\Win64\THPS12.exe => No File
FirewallRules: [{6450B021-5E7A-4A4A-B235-FCEE48397A2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\THPS12\Base\Binaries\Win64\THPS12.exe => No File
FirewallRules: [{15204606-F27E-48CE-89F3-5D5FC69095CA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8992B10E-8086-44E5-8712-D7BB42368BFD}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B9BEDEB7-946C-4C49-846B-98B9F50FC389}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Seen\MG3.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{8094CB3C-B72B-4154-A467-2AD92B587623}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Seen\MG3.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{DC49B7A0-E73C-45ED-8DBA-7D5FD3017739}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{47B5C4A5-774F-4576-B936-CAFC056A6E13}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{08B2AADE-6E99-4680-AAED-5C5047EEBB80}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{0E702091-F30C-4B51-92AF-9BDA05488C2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Escape Underground\game.exe => No File
FirewallRules: [{9068B8B0-0276-49CC-AF9E-0D880144655C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Escape Underground\game.exe => No File
FirewallRules: [{ABAEEA6A-78B3-4156-8A83-52268B729B3C}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{1C6D2A28-6B8E-4979-A63C-D8387E7B9F0A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{DCE3F06E-F517-4C12-A7A1-EC32E0F34526}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{3573BA08-E1D8-42EC-9A94-6E8E36E070F4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0F4A979D-AA18-40C1-BF74-3448A9043C4E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F10E11A6-5292-4A7B-8429-B55F4E3C9A73}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A34D407C-30EC-45E5-977E-424D3750C49B}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3131AFDF-CA5D-4986-97B3-9EE4D0B38A3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Horizon Chase\HorizonChase.exe () [File not signed]
FirewallRules: [{F82B70A1-EC91-4E26-8F2C-5A5FA4065D72}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Horizon Chase\HorizonChase.exe () [File not signed]
FirewallRules: [{42740AAA-B069-4D43-867A-6305492F44B4}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25007.203.3359.7325_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E6C83AAF-7EDF-4C56-99F6-1D1CF64F2526}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25007.203.3359.7325_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1ABB0D3E-8938-4385-B2AE-4EC7BF1292CE}] => (Allow) D:\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{F514ED4B-B2EE-416E-BCED-0C0384516B3F}] => (Allow) D:\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{A1FD8FBE-1250-4FCE-B63E-211A9DAC0AEE}] => (Allow) D:\SteamLibrary\steamapps\common\Asgard's Edda Mechanical Threat Demo\AsgardsEddaMechanicalThreat.exe => No File
FirewallRules: [{ACD06CD1-2D10-4820-B938-9F4DD152CF26}] => (Allow) D:\SteamLibrary\steamapps\common\Asgard's Edda Mechanical Threat Demo\AsgardsEddaMechanicalThreat.exe => No File
FirewallRules: [{E7FBB27A-3059-4802-A73D-BBE18DB796CB}] => (Allow) D:\SteamLibrary\steamapps\common\50 Floors The Paranormal Investigators Prologue\50Floors.exe => No File
FirewallRules: [{12D29FE6-6BE4-433C-9D31-0E3CD14C63BB}] => (Allow) D:\SteamLibrary\steamapps\common\50 Floors The Paranormal Investigators Prologue\50Floors.exe => No File
FirewallRules: [{77AB6C24-60B2-482D-AAD7-02E1029C436F}] => (Allow) D:\SteamLibrary\steamapps\common\Stairway\Stairway\Stairway.exe => No File
FirewallRules: [{A9B178E9-6562-425E-9CBA-E92BF1E3014E}] => (Allow) D:\SteamLibrary\steamapps\common\Stairway\Stairway\Stairway.exe => No File
FirewallRules: [{9C806E5A-EAA4-4B81-9ED7-B266742F9FE7}] => (Allow) D:\SteamLibrary\steamapps\common\Split Fiction\Split\Binaries\Win64\SplitFiction.exe => No File
FirewallRules: [{B006F233-05E0-4C72-A7B5-CC51163E0891}] => (Allow) D:\SteamLibrary\steamapps\common\Split Fiction\Split\Binaries\Win64\SplitFiction.exe => No File
FirewallRules: [{2F9ED758-AB2A-46DA-BDCA-DCCE59493BAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nightsky\NightSky.exe () [File not signed]
FirewallRules: [{FCEEAF40-C61F-4BD3-8626-35F914135107}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nightsky\NightSky.exe () [File not signed]
FirewallRules: [{951CE97B-68EE-47A1-8C4C-14C32A40DBE3}] => (Allow) D:\SteamLibrary\steamapps\common\Smurfs Dream\Smurf_DreamsSteam.exe => No File
FirewallRules: [{B78B5F3C-5848-45BD-944E-33F25D40A22B}] => (Allow) D:\SteamLibrary\steamapps\common\Smurfs Dream\Smurf_DreamsSteam.exe => No File
FirewallRules: [FPS-SpoolWorker-In-TCP] => (Allow) C:\WINDOWS\system32\spoolsvworker.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [FPS-SpoolWorker-In-TCP-V2] => (Allow) C:\WINDOWS\system32\spoolsvworker.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [FPS-SpoolWorker-In-TCP-NoScope] => (Allow) C:\WINDOWS\system32\spoolsvworker.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{E90FCA2A-D31E-4FF6-8F94-7E257FB04A5E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Split Fiction\Split\Binaries\Win64\SplitFiction.exe (Hazelight Studios AB -> Hazelight Studios)
FirewallRules: [{04B3A588-DBF2-4744-8FD9-B79363FED58C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Split Fiction\Split\Binaries\Win64\SplitFiction.exe (Hazelight Studios AB -> Hazelight Studios)
FirewallRules: [{803B0AD7-4445-41BE-BF42-B7C28C972F88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bionic Bay\BionicBay.exe () [File not signed]
FirewallRules: [{B7127BA5-2F43-43BC-8F93-CD8B10779591}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bionic Bay\BionicBay.exe () [File not signed]
FirewallRules: [{DB69EF5E-356A-4839-AC4B-077BBE5FC101}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{73E445E2-BE67-4376-8D4F-B181E7044D3F}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{97229395-CD4F-40BA-AD15-2E273EE741A0}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{BE3B5D02-1AD6-4A5B-882E-4C34044332EB}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{388CCB4D-171C-4B1F-B64B-0E33742075FC}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{CC2246F9-3843-4202-A41D-993F7B1F37F0}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DF167A7E-F62A-49DC-8687-5CC1D532F71D}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{33A64EE9-DE62-4B08-8005-E912BD02C48B}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{48C2A093-07C1-42A3-874A-9B94850A8A8A}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{1F75F61D-4915-436E-B9E5-F75687BE999A}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{564BFE48-BFFF-4D9E-961D-B5983543B138}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DFF909B3-56E4-4FBD-9E4D-EE680D392821}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{9969CE9C-A5C0-4CE2-8835-2BFE7FD275FE}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{4C5B6949-1159-41F7-A111-82880237299D}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{C03E2CE3-78AC-440B-9967-82D8810F2A78}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{A38EE2F3-B0E5-4FC6-8C5A-51553310A048}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{4E04A357-6848-431F-AD8E-4FFB36BCB16A}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{21D7001D-682A-43F1-9A28-9B8F0CF50CD9}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy\OobeHostApp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{CD405FED-A60C-4579-BCA2-351AE1268032}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5FEAA165-07D5-4854-88E4-07ED766FDA37}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{235777BA-E6F8-4BC9-A3BF-0370E20377E2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1907931B-3C8E-4666-9561-E7C0C5B2C5D4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{93DF8F94-930A-4C63-98DB-9187A8D181A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6222EAF8-736D-4CC0-853B-8C432660C909}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{D050C11B-BA33-4AE2-875E-C0E4DC44006E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{47120460-DCA7-4EBA-865B-4E21DE19EBC0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5522A330-6981-4A7B-BA3B-6E9630881EE9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{44C33327-B4A6-491B-93DD-6431EB350EB4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C3D1B904-1236-452C-B848-C28B467C32D1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sackboy\GingerBread\Binaries\Win64\Launcher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{C33340A6-8ADD-429F-909B-1F54412FB948}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sackboy\GingerBread\Binaries\Win64\Launcher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{C051170B-DD7E-487F-AAE9-80D1C3AAF21A}C:\program files (x86)\steam\steamapps\common\sackboy\gingerbread\binaries\win64\sackboy-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sackboy\gingerbread\binaries\win64\sackboy-win64-shipping.exe (Sony Interactive Entertainment Inc.) [File not signed]
FirewallRules: [UDP Query User{3408050E-2F2C-4631-BBAB-03F1633B7181}C:\program files (x86)\steam\steamapps\common\sackboy\gingerbread\binaries\win64\sackboy-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sackboy\gingerbread\binaries\win64\sackboy-win64-shipping.exe (Sony Interactive Entertainment Inc.) [File not signed]
FirewallRules: [{6DDFC6FD-20A9-4B0E-8689-0ED363C96A1B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{D7FD726A-ACB2-4BFF-9A05-EE719E4823A1}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{3F6C2504-1F9C-4C67-BAEC-9C29938B2336}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{A66D6D8D-A0F4-487D-9991-C460BC0853C3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{F5027021-531E-4574-89E8-F8E6D2D40691}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{98EB9296-85D3-4D89-9D27-EA5478FA3143}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E437C690-012D-4CEF-8AB0-8965CB62615C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{73906446-F5CE-4677-8444-9A6FA3D24255}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{3262E1DD-8DE8-4B2C-A152-0DD01B3A24F1}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{97A56E43-5EBA-463F-90AA-C3AC795264BF}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{96FB0A68-4CCE-4F38-9507-EFA2A7BED4C7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{90A84118-E29E-47F6-B946-9355789A65AB}] => (Allow) C:\Hry\Prince of Persia The Lost Crown\TheLostCrown.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{D304B903-F1EE-4A71-98DC-C4C1231EC847}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{1061408A-A46B-4B96-A4FC-3F72C41A4197}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.68\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8028BEBC-7477-480F-A5B7-E8F67976F7EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Last of Us Part I\launcher.exe (Sony Interactive Entertainment) [File not signed]
FirewallRules: [{2C54D8EE-55A0-4C7E-9D2A-2D95A8EC9418}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Last of Us Part I\launcher.exe (Sony Interactive Entertainment) [File not signed]
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: MediaTek Wi-Fi 6 MT7921 Wireless LAN Card
Description: MediaTek Wi-Fi 6 MT7921 Wireless LAN Card
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: MediaTek, Inc.
Service: mtkwlex
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvvad_WaveExtensible
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: MediaTek Bluetooth Adapter
Description: MediaTek Bluetooth Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Mediatek Inc.
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: ========================
Application errors:
==================
Error: (06/09/2025 09:40:17 AM) (Source: Firefox Default Browser Agent) (EventID: 1155) (User: )
Description: Event-ID 1155
Error: (06/08/2025 08:22:00 PM) (Source: Application Error) (EventID: 1000) (User: CISLOCZ)
Description: Název chybující aplikace: EdgeGameAssist.exe, verze: 0.0.0.0, časové razítko: 0x682f8651
Název chybujícího modulu: Windows.UI.Xaml.dll, verze: 10.0.26100.4202, časové razítko: 0x9043c43b
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010c161
ID chybujícího procesu: 0x23a0
Čas spuštění chybující aplikace: 0x1dbd86e31f45d28
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
Cesta k chybujícímu modulu: C:\Windows\System32\Windows.UI.Xaml.dll
ID sestavy: 6518e56e-813f-4408-83b4-05713d968fef
Celý název chybujícího balíčku: Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe
ID chybující aplikace relativní vzhledem k balíčku: App
Error: (06/08/2025 12:38:39 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\CISLOCZ$ přes https://NTC-KeyId-e4a8666f8f4c6d9c3932a ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(0ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (06/08/2025 12:38:36 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\CISLOCZ$ přes https://NTC-KeyId-e4a8666f8f4c6d9c3932a ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(46ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (06/08/2025 12:37:48 PM) (Source: Application Error) (EventID: 1000) (User: CISLOCZ)
Description: Název chybující aplikace: NVIDIA App.exe, verze: 128.4.13.11, časové razítko: 0x683d683c
Název chybujícího modulu: NvCplPlugin.dll, verze: 11.0.4.148, časové razítko: 0x683d6820
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000ae29d
ID chybujícího procesu: 0x1ae8
Čas spuštění chybující aplikace: 0x1dbd8614fc78b1e
Cesta k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe
Cesta k chybujícímu modulu: C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA App\NvCplPlugin.dll
ID sestavy: c63672b5-da0d-4442-a222-1dbbf570a47b
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (06/08/2025 10:24:00 AM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\CISLOCZ$ přes https://NTC-KeyId-e4a8666f8f4c6d9c3932a ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(16ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (06/08/2025 10:23:54 AM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\CISLOCZ$ přes https://NTC-KeyId-e4a8666f8f4c6d9c3932a ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(140ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (06/08/2025 10:23:16 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
System errors:
=============
Error: (06/09/2025 11:46:17 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {07CA83F0-DF06-4E67-89DD-E80924A49512}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 11:24:19 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 11:24:19 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 11:24:19 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 11:24:19 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 10:05:22 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 10:05:22 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Error: (06/09/2025 10:05:22 AM) (Source: DCOM) (EventID: 10000) (User: CISLOCZ)
Description: Nelze spustit server DCOM: {94269C4E-071A-4116-90E6-52E557067E4E}. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\Users\danha\AppData\Local\Microsoft\OneDrive\25.085.0504.0002\FileCoAuth.exe" -Embedding
Windows Defender:
================
Date: 2025-06-07 21:42:01
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
KOntrola ID: {5BCD71E5-AD74-4AED-B4EE-9F27F37EEFA4}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Úplné prohledávání
Uživatel: cislocz\danha
Důvod zastavení: Åъőřτèđ вŷ ŧħé ¢ŀϊэʼnť
Date: 2025-06-07 13:55:38
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
KOntrola ID: {E575270B-2F43-4DC9-AC7A-31AE4C680E86}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: ΓРČ ċŏήйĕċтĩőп ґûʼnđбŵπ
Date: 2025-06-07 13:29:30
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
KOntrola ID: {A5AFBEE7-0EFC-4D2F-8BCB-242019B2F60C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: ΓРČ ċŏήйĕċтĩőп ґûʼnđбŵπ
Date: 2025-06-07 11:52:55
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
KOntrola ID: {5BCF5D7F-B3C7-4B14-9053-5E66A43CB052}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: ΓРČ ċŏήйĕċтĩőп ґûʼnđбŵπ
Event[0]
Date: 2025-06-07 00:24:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.583.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80072efe
Popis chyby: Spojení se serverem bylo nenormálně ukončeno.
Date: 2025-06-07 00:24:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.583.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80072efe
Popis chyby: Spojení se serverem bylo nenormálně ukončeno.
Date: 2025-06-07 00:24:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.583.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80072f8f
Popis chyby: Došlo k chybě zabezpečení.
Date: 2025-06-07 00:24:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.583.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80072f8f
Popis chyby: Došlo k chybě zabezpečení.
Date: 2025-06-07 00:24:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.583.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80072f8f
Popis chyby: Došlo k chybě zabezpečení.
CodeIntegrity:
===============
Date: 2025-06-09 10:39:52
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdamsi\dlls_267059357120000000\antimalware_provider64.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 3611 09/30/2024
Motherboard: ASUSTeK COMPUTER INC. TUF GAMING B550-PLUS WIFI II
Processor: AMD Ryzen 7 5700X3D 8-Core Processor
Percentage of memory in use: 18%
Total physical RAM: 32675.84 MB
Available physical RAM: 26644 MB
Total Virtual: 34723.84 MB
Available Virtual: 26508.2 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.67 GB) (Free:58.62 GB) (Model: Samsung SSD 980 PRO 1TB) NTFS
Drive d: () (Fixed) (Total:465.76 GB) (Free:56.41 GB) (Model: Samsung SSD 980 500GB) NTFS
Drive e: () (Fixed) (Total:223.57 GB) (Free:21.93 GB) (Model: CT240BX200SSD1) NTFS
\\?\Volume{2921ca2d-a20b-456c-a77f-60fbb9590aa9}\ () (Fixed) (Total:0.73 GB) (Free:0.14 GB) NTFS
\\?\Volume{19677de0-7412-4740-b8a9-65ad2d81ec92}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 1E87112C)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 58F7D0A2)
Partition: GPT.
==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: E2614BDC)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosim o kontrolu logu
Ahoj,
1. Vycisti PC s Ccleanerom, vcetne registrov
Restart
2. Vycisti PC s Adwcleanerom
3. Vycisti PC s MBAM
V pripade najdenej nakazy 2 a 3 - logy sem
1. Vycisti PC s Ccleanerom, vcetne registrov
Restart
2. Vycisti PC s Adwcleanerom
3. Vycisti PC s MBAM
V pripade najdenej nakazy 2 a 3 - logy sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosim o kontrolu logu
1: vycisteno i registrama
2
# -------------------------------
# Malwarebytes AdwCleaner 8.5.1.601
# -------------------------------
# Build: 03-26-2025
# Database: 2025-04-04.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 06-09-2025
# Duration: 00:00:00
# OS: Windows 11 (Build 26100.4202)
# Cleaned: 1
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.DellSupportAssistAgent Folder C:\ProgramData\DELL\SUPPORTASSIST
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1472 octets] - [09/06/2025 12:35:01]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
3
dal sem ten klasickej scan a pak custom kde sem dal vsechno a nic nenaslo.
2
# -------------------------------
# Malwarebytes AdwCleaner 8.5.1.601
# -------------------------------
# Build: 03-26-2025
# Database: 2025-04-04.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 06-09-2025
# Duration: 00:00:00
# OS: Windows 11 (Build 26100.4202)
# Cleaned: 1
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.DellSupportAssistAgent Folder C:\ProgramData\DELL\SUPPORTASSIST
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1472 octets] - [09/06/2025 12:35:01]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
3
dal sem ten klasickej scan a pak custom kde sem dal vsechno a nic nenaslo.
Re: Prosim o kontrolu logu
Malo by to byt OK
Nic zavazne som v logoch, len mnozstvo drobnosti s ktorymi si poradi Ccleaner
Bitdefender dobra volba
Nic zavazne som v logoch, len mnozstvo drobnosti s ktorymi si poradi Ccleaner
Bitdefender dobra volba
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosim o kontrolu logu
okej tak diky, o vyplate vam prispeju na forum. 

Re: Prosim o kontrolu logu
Diiiky, nech sa dari 

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/