Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-09-2025
Ran by patma (administrator) on JAUIN (LENOVO 82K2) (13-09-2025 09:01:16)
Running from C:\Users\patma\OneDrive\Plocha\FRST64.exe
Loaded Profiles: patma
Platform: Microsoft Windows 11 Home Version 24H2 26100.6584 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantage-(LenovoGamingSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(drivers\Lenovo\udc\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\x64\AppProvisioningPlugin.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0417253.inf_amd64_a9b363c4f94f001d\B417132\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0417253.inf_amd64_a9b363c4f94f001d\B417132\atieclxx.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDrive.Sync.Service.exe
(NahimicService.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\System32\NahimicAPO4Volume.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0417253.inf_amd64_a9b363c4f94f001d\B417132\atiesrxx.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\LenovoUtilityService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9366beb5d0043df3\RtkAudUService64.exe <2>
(services.exe ->) (SteelSeries France SASU -> Nahimic) C:\Windows\System32\NahimicService.exe
(SteelSeries France SASU -> A-Volute) C:\Users\patma\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3456.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2508.1001.27.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.124.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9366beb5d0043df3\RtkAudUService64.exe [1987544 2024-08-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\140.0.3485.66\Installer\setup.exe [7629352 2025-09-13] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2136496 2025-08-30] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [utweb] => C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe [6426632 2024-11-25] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4435552 2025-01-22] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [484408 2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [Lesta Game Center] => C:\ProgramData\Lesta\GameCenter\lgc.exe [2186008 2025-09-11] (LESTA LLC -> ©2022-2025 Lesta Games Agency, LLC)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Run: [MicrosoftEdgeAutoLaunch_6F7934B3B10DAE215E564D394F4E4F00] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4254272 2025-09-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\patma\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [91778920 2025-09-13] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\patma\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\RunOnce: [Uninstall 25.155.0811.0002] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.155.0811.0002" [0 2025-09-13] () <==== ATTENTION [zero byte File/Folder]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [1980-01-01] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.155\Installer\chrmstp.exe [2025-08-30] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {959B810A-84DC-40AD-842B-C11669E4AA47} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7376.0{D53D0A1C-EDA4-46B8-AE17-492683882E29} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7376.0\updater.exe [6855320 2025-08-26] (Google LLC -> Google LLC)
Task: {4C7A55B5-5DB1-4C38-BB7B-6D6080A90EB5} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {F4E3809A-1163-48E5-B373-FC82697C8D9A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [102400 2025-09-11] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {3E7BA7BB-104B-4A09-939B-6A6B78D74194} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\040f38ef-ae9c-4c17-bb10-77da74a17647 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {8B978304-5372-4810-88E0-6D428AEA19A6} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\e3b51fbb-4331-4bdd-81ea-b899e94619ac => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {1B9FD1DD-FA6F-4007-8801-B6DBFE3DED93} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [471008 2025-07-22] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task
Task: {F15BAD51-3E20-41E2-8D77-15216D885262} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2025-07-22] (Lenovo -> Lenovo)
Task: {EA8CEEC1-51C3-48F1-B980-7667EAC5BD21} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2025-07-22] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData)
Task: {033A5A0D-2D7C-4EEF-B4C8-E2472567C8F5} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\WINDOWS\system32\sc.exe [102400 2025-09-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210
Task: {58C5203E-F8C0-4FA2-9552-054CDC4DCB7F} - System32\Tasks\Lenovo\UDC\Lenovo UDC Lazy Deployment => C:\WINDOWS\system32\sc.exe [102400 2025-09-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 221
Task: {96BBB44C-E11E-44EF-84C1-7C735D2A21B0} - System32\Tasks\Lenovo\UDC\Lenovo UDC Maintainance Task => C:\WINDOWS\system32\sc.exe [102400 2025-09-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 220
Task: {797C56E2-D4B3-4C6E-880B-A0C6C8AD3648} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [243088 2025-08-18] (Lenovo -> Lenovo Group Ltd.)
Task: {4539AF14-4097-4B23-B3A2-02E89F90CBB7} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [102400 2025-09-11] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {10D464B7-84DB-4AF8-8534-BB7441DD2F6C} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {004E9588-8257-4E41-9B12-9334055CA3AB} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {BDB23D94-956C-484F-8C69-C7807CCF3D8D} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {501B4BD9-2DC4-4C6C-BD5C-4F2A9F11E3A2} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin_Pulsation => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {05A27BEB-797D-4ACC-9217-F435494CC1DA} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {0F909CB2-61AE-45F3-BAE5-546F6ABDCA50} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {950D2A09-5E49-4F0E-94F2-45E625EFA973} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {F7DC2416-5BC6-45F6-A9A6-A53955B9C9D0} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBatteryPartSalesMonthlyToast => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {25FDB64C-6F49-4870-ACC4-BAB5B439A69E} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {D96182B2-7935-4AF1-9639-59CEFD99C036} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {73B3B500-5DAD-4B29-8632-ED7EC68E4B28} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {358E5210-2F84-4159-B401-9D086964C317} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {879144C6-190A-4FF5-9440-9F7285265673} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {A40F8059-89CF-441F-856D-3E9C3BF30C2B} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.205\x64\IdleScheduleEventAction.exe (No File)
Task: {85B9DD03-7629-4A00-BF44-BBDAC41EDF9D} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\ScheduleEventAction.exe [276968 2025-06-20] (Lenovo -> Lenovo)
Task: {68EF8442-A580-4D02-9657-14A47A95D8CF} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {6BAFB5ED-67E4-4FEE-944A-2E6716776D28} - System32\Tasks\McAfee\DAD.WPS.Execute.Updates => "C:\Program Files\McAfee\WPS\1.7.209.1\dad\mc-dad.exe" (No File)
Task: {4E1445FA-3191-4E73-9C2B-8CDE31C53F60} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {3210794C-7982-4C4B-891F-AEC31B30C0D9} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {6EB92726-4DAE-452A-A840-FB57FFA4248B} - System32\Tasks\McAfee\WPS\McAfee Message Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {10444018-179C-467C-9D97-42DE781ED64C} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {E16AE994-5936-4608-8AD1-46A14BB3F0FD} - System32\Tasks\McAfee\WPS\McAfee restart of PC => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {295571EC-A19B-4279-AA18-7F2C95B627B5} - System32\Tasks\McAfee\WPS\McAfee Scheduled AV Scan => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {73A19094-3071-412B-9735-6269F2446264} - System32\Tasks\McAfee\WPS\McAfee Scheduled Tracker Remover => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {DC1271E1-43BA-483E-A1D7-FEF6CE4B60F4} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D}
Task: {1D2A6448-D33B-4A5D-BC43-BAC5B6CB5DFE} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [17009008 2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {65241614-681D-482E-90F4-AD05C42FC098} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-08-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {196C7ACE-AE85-41FD-977D-9FF260AF994F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70584 2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {BFA2E3A8-7C74-40F0-AB49-7839EA9DDC5B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-08-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {B75358A5-F855-4527-AB6D-2486D22CC737} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313688 2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {7ED146A0-01EF-418F-991D-2B366A305115} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313688 2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {7FF01772-30AB-499B-822E-1680BEF5F6C3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365272 2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {36AE42F9-FE5A-4AC6-9620-35AE339F5B95} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6FA826C4-0512-44F4-8425-029005993C29} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F4FC8939-980A-40C6-8A18-FC598A39FD8F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6E4FABAC-3FB8-4932-AC46-C6DD23B35F8E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {ABC97C61-1EB6-4B8E-A75F-48A0A2E0751A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {186D0435-924D-4F7C-9D6D-36AEF9B90690} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-02-28] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {08185764-4933-44F9-8F6F-B95DC480941B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {7D295A04-6DD6-4EB4-8702-7C863AE8A043} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {33C2BA7F-382B-498F-B2D0-C466D7760E34} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A533BBED-6BAE-47E4-8251-7456373E2B68} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {092BAEFF-D3DD-4C3A-8E68-C4B5C79D06F3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6E5EE795-C627-4389-BE44-083CDC9DB7B9} - System32\Tasks\OneDrive Startup Task-S-1-5-21-211460565-2364033777-153572910-1001 => C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDriveLauncher.exe [725352 2025-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {F8711249-5397-4580-8112-3FDE6F656382} - System32\Tasks\Opera scheduled assistant Autoupdate 1723969481 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-11-21] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --bypasslauncher --installdir="C:\Users\patma\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {2C4748CA-BD7F-4CB5-89B6-F1AE5B6EF7DE} - System32\Tasks\Opera scheduled assistant Autoupdate 1732345968 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-11-21] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --bypasslauncher --installdir="C:\Users\patma\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {2CC7334D-684B-4630-85B8-117376191234} - System32\Tasks\Opera scheduled Autoupdate 1723969481 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-11-21] (Opera Norway AS -> Opera Software)
Task: {FC734DE5-D4D1-4C7C-BE2D-CA1667FF359D} - System32\Tasks\Opera scheduled Autoupdate 1732345965 => C:\Users\patma\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-11-21] (Opera Norway AS -> Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.1
Tcpip\..\Interfaces\{8dcf7671-feac-4597-89b4-58ec2334258a}: [DhcpNameServer] 192.168.0.1 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default [2025-09-13]
Edge Notifications: Default -> hxxps://www.msn.com; hxxps://www.tiktok.com
Edge Extension: (Dokumenty Google offline) - C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-30]
Edge Extension: (Edge relevant text changes) - C:\Users\patma\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-08-17]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default [2025-09-13]
CHR Notifications: Default -> hxxps://fastshare.cz; hxxps://fr1.badoo.com; hxxps://www.daemon-tools.cc; hxxps://www.facebook.com; hxxps://www.messenger.com; hxxps://www.tiktok.com; hxxps://www.youtube.com
CHR Extension: (Dokumenty Google offline) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-12]
CHR Extension: (SPOT Survey Blocker) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\kolklnebpigejnjdnddogpomkanjpmka [2024-08-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\patma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-08-18]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3318400 2025-02-08] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287776 2025-08-29] (Microsoft Corporation -> Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4938808 2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_dd4c065a3153c566\LenovoUtilityService.exe [196088 2025-07-18] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe [34792 2025-06-20] (Lenovo -> Lenovo)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [951024 2025-08-30] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe [2009656 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1910192 2024-08-20] (SteelSeries France SASU -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\Display.NvContainer\NVDisplay.Container.exe [1274904 2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72592 2025-08-18] (Lenovo -> Lenovo Group Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe [4414464 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe [282480 2025-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0417253.inf_amd64_a9b363c4f94f001d\B417132\amdkmdag.sys [106597288 2025-07-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2024-11-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2024-11-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 FBNetFilter; C:\WINDOWS\System32\drivers\FBNetFlt.sys [60784 2023-12-06] (Lenovo -> Lenovo)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-11] (Microsoft Windows -> Microsoft Corporation)
R3 NahimicBTLink; C:\WINDOWS\System32\drivers\NahimicBTLink.sys [95856 2024-08-20] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [95896 2024-08-20] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-13] (Nvidia Corporation -> NVIDIA Corporation)
R3 nvpcf; C:\WINDOWS\System32\drivers\nvpcf.sys [246272 2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_3037ec512dc36c3a\rt68cx21x64.sys [656328 2023-02-15] (Realtek Semiconductor Corp. -> Realtek)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20880 2025-09-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627104 2025-09-11] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102816 2025-09-11] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-09-13 09:01 - 2025-09-13 09:01 - 000033501 _____ C:\Users\patma\OneDrive\Plocha\FRST.txt
2025-09-13 09:00 - 2025-09-13 09:00 - 002409984 _____ (Farbar) C:\Users\patma\OneDrive\Plocha\FRST64.exe
2025-09-13 08:20 - 2025-09-13 08:20 - 000678362 _____ C:\WINDOWS\system32\perfh005.dat
2025-09-13 08:20 - 2025-09-13 08:20 - 000145178 _____ C:\WINDOWS\system32\perfc005.dat
2025-09-11 12:16 - 2025-09-11 11:19 - 000000000 ____D C:\Windows.old
2025-09-11 11:25 - 2025-09-13 08:20 - 001603798 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-09-11 11:23 - 2025-09-11 11:23 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2025-09-11 11:20 - 2025-09-11 11:20 - 000000020 ___SH C:\Users\patma\ntuser.ini
2025-09-11 11:19 - 2025-09-13 08:15 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-211460565-2364033777-153572910-1001
2025-09-11 11:19 - 2025-09-13 08:15 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-211460565-2364033777-153572910-1001
2025-09-11 11:19 - 2025-09-13 08:15 - 000003356 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-211460565-2364033777-153572910-1001
2025-09-11 11:19 - 2025-09-13 08:14 - 000000438 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-09-11 11:19 - 2025-09-13 08:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-09-11 11:19 - 2025-09-13 08:08 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-09-11 11:19 - 2025-09-13 08:08 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-09-11 11:19 - 2025-09-11 11:19 - 000003902 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1732345968
2025-09-11 11:19 - 2025-09-11 11:19 - 000003902 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1723969481
2025-09-11 11:19 - 2025-09-11 11:19 - 000003620 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1732345965
2025-09-11 11:19 - 2025-09-11 11:19 - 000003620 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1723969481
2025-09-11 11:19 - 2025-09-11 11:19 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Šablony
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Poslední
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Okolní síť
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Dokumenty
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\Data aplikací
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Šablony
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Plocha
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Dokumenty
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 _SHDL C:\ProgramData\Data aplikací
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Network
2025-09-11 11:19 - 2025-09-11 11:19 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network
2025-09-11 11:16 - 2025-09-13 07:59 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-09-11 11:16 - 2025-09-11 11:16 - 000472576 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-09-11 08:56 - 2025-09-11 12:16 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Crypto
2025-09-11 08:56 - 2025-09-11 12:16 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Crypto
2025-09-11 08:56 - 2025-09-11 08:56 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\SystemCertificates
2025-09-11 08:56 - 2025-09-11 08:56 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Network
2025-09-11 08:56 - 2025-09-11 08:56 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\SystemCertificates
2025-09-11 08:51 - 2025-09-11 12:16 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2025-09-11 08:51 - 2025-09-11 12:16 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Spelling
2025-09-11 08:51 - 2025-09-11 12:16 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Spelling
2025-09-11 08:51 - 2025-09-11 11:21 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows
2025-09-11 08:51 - 2025-09-11 11:20 - 000000000 ____D C:\Users\patma
2025-09-11 08:51 - 2025-09-11 11:19 - 000000000 ____D C:\Users\defaultuser100000
2025-09-11 08:51 - 2025-09-11 08:54 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Šablony
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Soubory cookie
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Poslední
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Okolní tiskárny
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Okolní síť
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Nabídka Start
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Dokumenty
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\Data aplikací
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\patma\AppData\Local\Data aplikací
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Šablony
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Soubory cookie
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Poslední
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Okolní tiskárny
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Okolní síť
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Nabídka Start
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Dokumenty
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\Data aplikací
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2025-09-11 08:51 - 2025-09-11 08:51 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Data aplikací
2025-09-11 08:50 - 2025-09-11 12:16 - 000000000 ____D C:\WINDOWS\system32\AMD
2025-09-11 08:50 - 2025-09-11 08:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\Lenovo
2025-09-11 08:50 - 2025-09-11 08:50 - 000000000 ____D C:\WINDOWS\system32\A-Volute
2025-09-11 08:50 - 2025-09-11 08:50 - 000000000 ____D C:\WINDOWS\Lenovo
2025-09-11 08:49 - 2025-09-11 08:51 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2025-09-11 08:47 - 2025-09-11 08:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-09-11 08:47 - 2025-09-11 08:47 - 000000000 ____D C:\WINDOWS\system32\AccountHealthAssets
2025-09-11 08:47 - 2025-09-11 08:47 - 000000000 ____D C:\WINDOWS\InboxApps
2025-09-11 08:47 - 2025-09-11 08:47 - 000000000 ____D C:\inetpub
2025-09-11 08:44 - 2025-09-11 08:44 - 000001681 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2025-09-11 08:43 - 2025-09-11 08:43 - 000077233 _____ C:\WINDOWS\SysWOW64\ctac.json
2025-09-11 08:43 - 2025-09-11 08:43 - 000077233 _____ C:\WINDOWS\system32\ctac.json
2025-09-11 08:43 - 2025-09-11 08:43 - 000005264 _____ C:\WINDOWS\system32\ecoscore_config.json
2025-09-11 08:41 - 2025-09-11 08:41 - 000034314 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-09-11 08:41 - 2025-09-11 08:41 - 000034314 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-09-11 08:25 - 2025-09-11 08:25 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2025-09-11 07:51 - 2025-09-11 11:20 - 000000000 ___DC C:\WINDOWS\Panther
2025-09-07 17:36 - 2025-09-07 17:36 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-09-04 16:43 - 2025-07-14 17:57 - 000610752 _____ C:\WINDOWS\system32\GameManager64.dll
2025-09-04 16:43 - 2025-07-14 17:57 - 000549288 _____ C:\WINDOWS\system32\libsmi_guest.dll
2025-09-04 16:43 - 2025-07-14 17:57 - 000524688 _____ C:\WINDOWS\system32\libsmi_host.dll
2025-09-04 16:43 - 2025-07-14 17:57 - 000504232 _____ C:\WINDOWS\system32\EEURestart.exe
2025-09-04 16:43 - 2025-07-14 17:57 - 000464296 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2025-09-04 16:43 - 2025-07-14 17:21 - 000154384 _____ C:\WINDOWS\system32\samu_krnl_ci.sbin
2025-09-04 16:43 - 2025-07-14 17:21 - 000138832 _____ C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2025-09-04 16:43 - 2025-07-14 17:21 - 000128048 _____ C:\WINDOWS\system32\kapp_ci.sbin
2025-09-04 16:43 - 2025-07-14 17:21 - 000121168 _____ C:\WINDOWS\system32\kapp_si.sbin
2025-09-04 16:42 - 2025-07-14 17:57 - 000184752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2025-09-04 16:42 - 2025-07-14 17:57 - 000148904 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2025-09-04 16:41 - 2025-07-14 17:57 - 000267184 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2025-09-04 16:41 - 2025-07-14 17:57 - 000229296 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2025-09-04 16:41 - 2025-07-14 17:57 - 000196520 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 105401280 _____ C:\WINDOWS\system32\amd_comgr.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 088615824 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 011757336 _____ C:\WINDOWS\system32\amdsmi.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 004374472 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 004179904 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 002245544 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 002100136 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 001617840 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 001617840 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 001359448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 001077888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000978344 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000944064 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000801704 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000771496 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000678832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000570280 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000545704 _____ C:\WINDOWS\system32\dgtrayicon.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000537512 _____ C:\WINDOWS\system32\atieah64.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000473520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000471464 _____ C:\WINDOWS\system32\amdlogum.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000434112 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000406448 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000233504 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000211760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000188528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000177040 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000175568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000142768 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000139152 _____ C:\WINDOWS\system32\amdxc64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000118704 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000115112 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000103336 _____ C:\WINDOWS\system32\clinfo.exe
2025-09-04 16:41 - 2025-07-14 17:56 - 000075176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000051624 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2025-09-04 16:41 - 2025-07-14 17:56 - 000048552 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2025-09-04 16:41 - 2025-07-14 17:55 - 019434384 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2025-09-04 16:41 - 2025-07-14 17:55 - 000145856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 001741512 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 001416160 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 000168056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 000168048 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 000158000 _____ C:\WINDOWS\system32\atidxx64.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 000139032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2025-09-04 16:41 - 2025-07-14 17:54 - 000131560 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2025-09-04 16:41 - 2025-07-14 17:53 - 000574088 _____ C:\WINDOWS\system32\amdmiracast.dll
2025-09-04 16:41 - 2025-07-14 17:53 - 000178504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2025-09-04 16:41 - 2025-07-14 17:53 - 000153072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2025-09-04 16:41 - 2025-07-14 17:53 - 000139056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2025-09-04 16:41 - 2025-07-14 17:21 - 109624080 _____ C:\WINDOWS\system32\amdxc64.so
2025-08-30 08:10 - 2025-08-30 08:10 - 000432504 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_9.dll.0
2025-08-16 11:59 - 2025-08-30 08:00 - 000000000 ___RD C:\Users\patma\OneDrive\Plocha\Zpět k pramenům
2025-08-16 09:27 - 2025-08-30 08:00 - 000000000 ___RD C:\Users\patma\OneDrive\Plocha\Krajinou domova
2025-08-16 08:45 - 2025-08-16 12:20 - 000000000 ____D C:\Users\patma\AppData\Roaming\uTorrent Web
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-09-13 09:01 - 2024-08-31 11:28 - 000000000 ____D C:\FRST
2025-09-13 08:58 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-09-13 08:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-09-13 08:20 - 2024-08-17 17:34 - 000000000 ____D C:\Users\patma\AppData\Local\D3DSCache
2025-09-13 08:20 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-09-13 08:15 - 2024-08-17 17:35 - 000002388 _____ C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-09-13 08:15 - 2024-08-17 17:35 - 000000000 ___RD C:\Users\patma\OneDrive
2025-09-13 08:15 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-09-13 08:15 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-09-13 08:14 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-09-13 08:14 - 2023-11-21 22:13 - 000000000 ____D C:\ProgramData\NVIDIA
2025-09-13 08:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-09-13 08:13 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-09-13 08:13 - 2022-05-25 21:05 - 000012288 ___SH C:\DumpStack.log.tmp
2025-09-11 12:16 - 2025-07-16 18:39 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games
2025-09-11 12:16 - 2025-01-25 10:09 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-09-11 12:16 - 2025-01-25 10:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-09-11 12:16 - 2024-12-07 09:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2025-09-11 12:16 - 2024-12-01 12:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2025-09-11 12:16 - 2024-11-23 09:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\DAEMON Tools Lite
2025-09-11 12:16 - 2024-08-31 14:12 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2025-09-11 12:16 - 2024-08-31 13:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2025-09-11 12:16 - 2024-08-18 14:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2025-09-11 12:16 - 2024-08-18 07:15 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2025-09-11 12:16 - 2024-04-01 09:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WebThreatDefSvc
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\spool
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\IME
2025-09-11 12:16 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2025-09-11 12:16 - 2023-11-21 22:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2025-09-11 12:16 - 2023-11-21 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2025-09-11 12:16 - 2022-05-07 08:10 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2025-09-11 12:16 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2025-09-11 12:16 - 2022-05-07 07:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2025-09-11 12:16 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2025-09-11 12:16 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2025-09-11 11:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat
2025-09-11 11:41 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-09-11 11:36 - 2024-08-17 17:34 - 000000000 ____D C:\Users\patma\AppData\Local\Packages
2025-09-11 11:36 - 2022-05-25 21:06 - 000000000 ____D C:\ProgramData\Packages
2025-09-11 11:20 - 2024-08-17 17:34 - 000002363 _____ C:\Users\patma\OneDrive\Plocha\Microsoft Edge.lnk
2025-09-11 11:20 - 2022-05-25 21:09 - 000000000 __RHD C:\Users\Public\AccountPictures
2025-09-11 11:19 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-09-11 11:19 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Windows NT
2025-09-11 11:19 - 2022-05-25 21:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-09-11 11:18 - 2024-04-01 09:26 - 000000000 __RHD C:\Users\Public\Libraries
2025-09-11 11:18 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-09-11 11:18 - 2023-11-21 22:15 - 000000000 ____D C:\WINDOWS\system32\zh-hant
2025-09-11 11:18 - 2023-11-21 22:15 - 000000000 ____D C:\WINDOWS\system32\zh-hans
2025-09-11 11:18 - 2023-11-21 22:15 - 000000000 ____D C:\WINDOWS\system32\SONiX
2025-09-11 11:18 - 2023-11-21 22:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2025-09-11 11:17 - 2024-08-18 07:10 - 000002258 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-09-11 11:16 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2025-09-11 09:00 - 2024-04-01 09:29 - 000000000 ____D C:\WINDOWS\Setup
2025-09-11 08:55 - 2024-04-01 09:26 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows
2025-09-11 08:54 - 2024-09-06 20:00 - 000000000 ____D C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Call of Duty
2025-09-11 08:54 - 2024-08-18 12:39 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\Packages
2025-09-11 08:52 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-09-11 08:52 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2025-09-11 08:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2025-09-11 08:51 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\schemas
2025-09-11 08:47 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2025-09-11 08:47 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2025-09-11 08:47 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2025-09-11 08:47 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\WUModels
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Com
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-09-11 08:47 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-09-11 08:47 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2025-09-11 08:46 - 2024-04-01 18:31 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2025-09-11 08:46 - 2024-04-01 18:31 - 000028898 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2025-09-11 08:46 - 2024-04-01 09:26 - 001384944 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-09-11 08:46 - 2024-04-01 09:26 - 001240024 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-09-11 08:46 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2025-09-11 08:46 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2025-09-11 08:43 - 2024-04-01 09:22 - 000063072 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll
2025-09-11 08:43 - 2024-04-01 09:22 - 000063064 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcPseDMA.dll
2025-09-11 08:43 - 2024-04-01 09:22 - 000063064 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll
2025-09-11 08:38 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\OCR
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\winrm
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\WCN
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\slmgr
2025-09-11 08:37 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2025-09-11 08:37 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2025-09-11 07:44 - 2022-05-25 21:05 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-09-11 07:36 - 2023-11-21 22:05 - 000000000 ____D C:\Program Files\Microsoft Office
2025-09-06 17:39 - 2024-08-18 12:43 - 004213136 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-09-06 17:39 - 2024-08-18 12:43 - 000829840 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-09-06 17:39 - 2024-08-18 12:43 - 000276880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-09-06 17:39 - 2024-08-18 12:43 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-09-06 17:39 - 2024-08-18 12:43 - 000166288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-09-06 17:39 - 2024-08-18 12:43 - 000121208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-09-06 17:39 - 2024-08-18 12:43 - 000076176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-08-30 08:10 - 2024-08-18 12:43 - 000829808 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll.0
2025-08-18 20:04 - 2023-11-21 22:05 - 000243088 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\UDCInfInstaller.exe
2025-08-16 12:20 - 2024-08-18 10:26 - 000000000 ____D C:\Users\patma\AppData\Local\CrashDumps
2025-08-16 08:54 - 2024-08-20 15:01 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-08-16 08:53 - 2024-08-20 15:01 - 223939376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-08-16 08:45 - 2024-08-18 10:35 - 000000000 ____D C:\Users\patma\AppData\Local\BitTorrentHelper
2025-08-16 08:45 - 2024-08-18 10:24 - 000001876 _____ C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
==================== Files in the root of some directories ========
2025-02-08 08:47 - 2025-02-08 08:51 - 000001687 _____ () C:\Users\patma\AppData\Local\log.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosím o preventivku, díky moc
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: prosím o preventivku, díky moc
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-09-2025
Ran by patma (13-09-2025 09:02:37)
Running from C:\Users\patma\OneDrive\Plocha
Microsoft Windows 11 Home Version 24H2 26100.6584 (X64) (2025-09-11 09:19:52)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-211460565-2364033777-153572910-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-211460565-2364033777-153572910-503 - Limited - Disabled)
Guest (S-1-5-21-211460565-2364033777-153572910-501 - Limited - Disabled)
patma (S-1-5-21-211460565-2364033777-153572910-1001 - Administrator - Enabled) => C:\Users\patma
WDAGUtilityAccount (S-1-5-21-211460565-2364033777-153572910-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64) (HKLM\...\7-Zip) (Version: 24.07 - Igor Pavlov)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 12.1.0.2213 - Disc Soft Ltd)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 139.0.7258.155 - Google LLC)
Legion Arena (HKLM-x32\...\Legion Arena_is1) (Version: 1.3.1.1 - Lenovo Group Ltd.)
Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.3.0.87 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.3.50.0 - Lenovo Group Ltd.)
Lesta Game Center (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Lesta Game Center) (Version: 25.2.2.876 - Lesta Games)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Microsoft .NET Host - 8.0.3 (x86) (HKLM-x32\...\{C3185BE9-A193-4021-91F1-1E196C20CAB6}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.8 (x64) (HKLM\...\{3BA242F8-BDB5-4096-9FBC-333CD663BBAD}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.3 (x86) (HKLM-x32\...\{AA217943-D70A-4078-988C-31E5EC26AFE1}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.3 (x86) (HKLM-x32\...\{CE4A2F26-87B5-4569-A582-62A8D3B20BE9}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19127.20192 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.3 - Shared Framework (x86) (HKLM-x32\...\{27b7a489-233a-488c-b81b-0cb173d4cd15}) (Version: 8.0.3.24116 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.3 Shared Framework (x86) (HKLM-x32\...\{66F03628-AF73-329C-9DB7-59A701E08AB7}) (Version: 8.0.3.24116 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 140.0.3485.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 140.0.3485.66 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\OneDriveSetup.exe) (Version: 25.159.0817.0003 - Microsoft Corporation)
Microsoft OneNote - cs-cz (HKLM\...\OneNoteFreeRetail - cs-cz) (Version: 16.0.19127.20192 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 (HKLM-x32\...\{5af95fd8-a22e-458f-acee-c61bd787178e}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 (HKLM-x32\...\{47109d57-d746-4f8b-9618-ed6a17cc922b}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 (HKLM\...\{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 (HKLM\...\{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 (HKLM-x32\...\{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 (HKLM-x32\...\{0C3457A0-3DCE-4A33-BEF0-9B528C557771}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.3 (x86) (HKLM-x32\...\{2907caa8-4808-4b6b-b7e7-fb8c862823d2}) (Version: 8.0.3.33416 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.3 (x86) (HKLM-x32\...\{D383E279-1AD9-4DD8-9EB4-7C831665F9CC}) (Version: 64.12.10377 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.114 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.114 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 555.99 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 555.99 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.03 - Ghisler Software GmbH)
uTorrent Web (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\utweb) (Version: 1.4.0 - BitTorrent Limited)
Wargaming.net Game Center (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Wargaming.net Game Center) (Version: 25.4.0.7 - Wargaming.net)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1064 - McAfee, LLC)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\2314027414) (Version: - Wargaming.net)
Мир танков (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\LGC-4094243768) (Version: - Lesta Games)
Мир танков Общий тест (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\LGC-1739465547) (Version: - Lesta Games)
Packages:
=========
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-08-07] (Advanced Micro Devices Inc.) [Startup Task]
Dropbox promotion -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.34.0_x64__xbfy0k16fey96 [2025-07-19] (Dropbox Inc.)
Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.25150.49.0_x64__8wekyb3d8bbwe [2025-07-19] (Microsoft Corporation)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2506.10.0_x64__k1h2ywk1493x8 [2025-07-24] (LENOVO INC.)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.7.18.0_x64__5grkq8ppsgwt4 [2025-05-17] (LENOVO INC) [Startup Task]
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_3.0.42.0_x64__w1wdnht996qgy [2025-03-15] (LinkedIn) [Startup Task]
Local Artificial Intelligence Manager -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-09-11] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2410.16002.0_x64__8wekyb3d8bbwe [2024-12-07] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-08-24] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_55.20610.576.0_x64__8wekyb3d8bbwe [2025-07-19] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-09-11] ()
MSN Počasí -> C:\Program Files\WindowsApps\www.msn.com-7FB783BD_1.0.0.0_neutral__q77jw2zwjvy92 [2025-09-07] (www.msn.com)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-09-11] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-09-11] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.328.0_x64__dt26b99r8h8gj [2024-09-13] (Realtek Semiconductor Corp)
TikTok -> C:\Program Files\WindowsApps\BytedancePte.Ltd.TikTok_1.0.5.0_neutral__6yccndn6064se [2025-09-07] (Bytedance Pte. Ltd.)
WinRAR -> C:\Program Files\WinRAR [2025-01-25] (win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{1fbfb627-93ed-88f1-57b8-78ec8c9febe7}\localserver32 -> "C:\ProgramData\Lenovo\Udc\Hosts\23.4.0.8\x64\MessagingPlugin.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\patma\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (SteelSeries France SASU -> A-Volute)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\nvshext.dll [2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki_PT\Мир танков Общий тест.lnk -> C:\Games\Tanki_PT\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --open <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki_PT\Удалить Мир танков Общий тест.lnk -> C:\Games\Tanki_PT\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --uninstall <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki\Мир танков.lnk -> C:\Games\Tanki\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --open <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki\Удалить Мир танков.lnk -> C:\Games\Tanki\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --uninstall <==== Cyrillic
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2025-03-15 14:44 - 000003992 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site
109.94.209.70 fitgirl-repack.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site
109.94.209.70 fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 fitgirlrepack.games # Fake FitGirl site
109.94.209.70 www.fitgirlrepack.games # Fake FitGirl site
109.94.209.70 fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 fitgirls-repacks.com # Fake FitGirl site
109.94.209.70 fitgirlrepack.cc # Fake FitGirl site
109.94.209.70 fitgirlrepacks.org # Fake FitGirl site
2025-04-05 07:30 - 2025-07-17 17:16 - 000000436 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.0.1
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: Realtek 8822CE Wireless LAN 802.11ac PCI-E NIC -> rtwlane.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\patma\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\4012226080857278747\134021448715896614.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "utweb"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{56ABBC0A-6B3F-4B72-A0D7-1DFF19218A0F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{FCCD49CE-F056-465D-A867-7928FCA60B94}] => (Allow) C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{431185C6-7245-4951-BF7C-29E452E57BD0}] => (Allow) C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{5D6CBD74-8190-46BA-B177-2192D1BD6343}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{46AADDFF-78D6-479B-A351-9ECD54E79E86}C:\games\tanki\win64\tanki.exe] => (Allow) C:\games\tanki\win64\tanki.exe (Lesta Games Agency LLC -> Lesta)
FirewallRules: [TCP Query User{67E72D77-939F-40E9-A136-1CEAE8957C8D}C:\games\tanki\win64\tanki.exe] => (Allow) C:\games\tanki\win64\tanki.exe (Lesta Games Agency LLC -> Lesta)
FirewallRules: [UDP Query User{E6F2AC4E-CE46-4CC3-917B-34C99397D5F2}C:\programdata\lesta\gamecenter\lgc.exe] => (Allow) C:\programdata\lesta\gamecenter\lgc.exe (LESTA LLC -> ©2022-2025 Lesta Games Agency, LLC)
FirewallRules: [TCP Query User{DC39E146-3507-4F60-8F9B-1A0010DB4EC9}C:\programdata\lesta\gamecenter\lgc.exe] => (Allow) C:\programdata\lesta\gamecenter\lgc.exe (LESTA LLC -> ©2022-2025 Lesta Games Agency, LLC)
FirewallRules: [{8F437965-0413-486C-9C84-75BE891AF0BC}] => (Allow) C:\Users\patma\AppData\Local\Temp\7zF4C967C8\aria2c.exe => No File
FirewallRules: [{4CDE3673-B195-445E-B5DD-7441699951D7}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{3E81BCF9-D63B-43AB-9D27-704A3BA2EC92}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{5EC3369F-97BE-4F19-B5D4-4AE93887F809}] => (Allow) C:\Users\patma\AppData\Local\Programs\Opera\opera.exe => No File
FirewallRules: [{D6E60FA7-AF17-4226-9F0B-749FEEDF011B}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{28D631DE-54E6-405F-A6C1-B89F954C2C45}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{A95EC880-C28C-4237-84EC-595881481E28}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe => No File
FirewallRules: [{9F704AC7-561A-49E1-B237-18ED5C58C8E3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe => No File
FirewallRules: [{5C7A9B83-2E48-4907-A48F-F6BD20C7FA00}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe => No File
FirewallRules: [{ABE54436-D969-4184-BAAE-3C89A4B3287B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe => No File
FirewallRules: [{C84277C4-C456-40E1-B5B2-413CCFE1957D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe => No File
FirewallRules: [{05B2846B-89C5-440F-B2B2-9F9F25A32B2D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe => No File
FirewallRules: [{DF543A98-3F3E-41FF-9F6F-3D071AC5E5DF}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe => No File
FirewallRules: [{A7C22E02-BBB3-4C99-A862-2F882D997C8B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe => No File
FirewallRules: [{23CD6B85-5F66-4BD6-9EB9-B875D0627D8E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe => No File
FirewallRules: [{6147DDED-1287-4685-A71E-B56872A113F6}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe => No File
FirewallRules: [{D918AEE4-5D0E-4B42-8712-2ADE6E0A4613}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe => No File
FirewallRules: [UDP Query User{3E8DC745-B959-4E89-BBE8-90A93F0BB621}C:\xboxgames\call of duty\content\sp23\sp23-cod.exe] => (Allow) C:\xboxgames\call of duty\content\sp23\sp23-cod.exe => No File
FirewallRules: [TCP Query User{E43CA15C-B336-450B-8550-B6DAD61B7368}C:\xboxgames\call of duty\content\sp23\sp23-cod.exe] => (Allow) C:\xboxgames\call of duty\content\sp23\sp23-cod.exe => No File
FirewallRules: [UDP Query User{136A534E-8EA8-4C4E-8930-014A9363B665}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{E888CF2B-2628-4B1A-A326-BC5E54E17550}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{F6B01CB4-3BF4-4877-B6E7-C85C577A2A69}C:\program files (x86)\call of duty deluxe edition\codmp.exe] => (Allow) C:\program files (x86)\call of duty deluxe edition\codmp.exe => No File
FirewallRules: [TCP Query User{0A878231-1D3F-4262-882D-97A61A523656}C:\program files (x86)\call of duty deluxe edition\codmp.exe] => (Allow) C:\program files (x86)\call of duty deluxe edition\codmp.exe => No File
FirewallRules: [UDP Query User{A146787D-A2D0-4562-86E7-30A0E06F87EC}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{A64E1424-E8C8-4B03-95C9-DF22F29E67F1}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{72336E96-0D45-4402-B946-0076D266BB0B}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{01C5EA54-17BE-49B5-B5ED-4C4E41FDD756}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{218C716F-2C27-4432-A0CF-272E7F1A14D3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{43F73884-1DB8-4F0D-89CD-3083E5505E0A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{EA7F613F-C178-474F-8F59-B84144AA3DF4}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AFAC08CC-29A8-4669-9AD5-D6650AFC2D94}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [UDP Query User{025E596E-39EB-47E7-B578-37DB17FABB82}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{854F3A73-07AF-4473-B3C7-AB54C636A11C}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
11-09-2025 11:20:02 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/13/2025 08:14:18 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2025 05:26:47 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2025 11:56:44 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2025 11:23:13 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
System errors:
=============
Error: (09/13/2025 08:13:39 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Universal Device Client Service se po přijetí pokynu pro vypnutí neukončila správně.
Error: (09/12/2025 05:26:08 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Universal Device Client Service se po přijetí pokynu pro vypnutí neukončila správně.
Error: (09/12/2025 02:00:04 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9PC1H9VN18CM-Microsoft.StartExperiencesApp.
Error: (09/11/2025 11:27:49 AM) (Source: DCOM) (EventID: 10010) (User: JAUIN)
Description: Server {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} se v daném časovém limitu neregistroval u služby DCOM.
Error: (09/11/2025 11:20:33 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby NahimicService bylo dosaženo časového limitu (30000 ms).
Error: (09/11/2025 11:19:46 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Rozšíření a oznámení tiskárny je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (09/11/2025 11:17:48 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (09/11/2025 11:17:19 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Windows Defender:
================
Date: 2025-09-13 08:58:22
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{62FE2277-9D23-42E3-A793-409FF18C64BB}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъÚplné prohledávání%л %тŮŝέя:%ъJauin\patma%ⁿ %ţŞťορ Ŗèǻśõп:%вΑвοѓŧ℮ď ъγ τħë ĉĺіэпŧ
Date: 2025-09-12 15:38:10
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{91F2FB18-5599-4AF3-8E7B-2687D0F90ED3}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
Date: 2025-09-12 14:56:04
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{6297CF43-09E2-41D1-AEAC-B723C4A8110D}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
==================== Memory info ===========================
BIOS: LENOVO H3CN45WW(V3.03) 09/01/2023
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 5500H with Radeon Graphics
Percentage of memory in use: 38%
Total physical RAM: 15724.06 MB
Available physical RAM: 9638 MB
Total Virtual: 16748.06 MB
Available Virtual: 8950.93 MB
==================== Drives ================================
Drive c: (Windows-SSD) (Fixed) (Total:474.72 GB) (Free:90.89 GB) (Model: SOLIDIGM SSDPFINW512GZL) NTFS
\\?\Volume{0f6a7077-0af0-4e5a-9811-29e7e504da35}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.27 GB) NTFS
\\?\Volume{77df7e6f-f334-4a57-a353-b58f4443e7e4}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: DE67C4CA)
Partition: GPT.
==================== End of Addition.txt =======================
Ran by patma (13-09-2025 09:02:37)
Running from C:\Users\patma\OneDrive\Plocha
Microsoft Windows 11 Home Version 24H2 26100.6584 (X64) (2025-09-11 09:19:52)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-211460565-2364033777-153572910-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-211460565-2364033777-153572910-503 - Limited - Disabled)
Guest (S-1-5-21-211460565-2364033777-153572910-501 - Limited - Disabled)
patma (S-1-5-21-211460565-2364033777-153572910-1001 - Administrator - Enabled) => C:\Users\patma
WDAGUtilityAccount (S-1-5-21-211460565-2364033777-153572910-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64) (HKLM\...\7-Zip) (Version: 24.07 - Igor Pavlov)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 12.1.0.2213 - Disc Soft Ltd)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 139.0.7258.155 - Google LLC)
Legion Arena (HKLM-x32\...\Legion Arena_is1) (Version: 1.3.1.1 - Lenovo Group Ltd.)
Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.3.0.87 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.3.50.0 - Lenovo Group Ltd.)
Lesta Game Center (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Lesta Game Center) (Version: 25.2.2.876 - Lesta Games)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Microsoft .NET Host - 8.0.3 (x86) (HKLM-x32\...\{C3185BE9-A193-4021-91F1-1E196C20CAB6}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.8 (x64) (HKLM\...\{3BA242F8-BDB5-4096-9FBC-333CD663BBAD}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.3 (x86) (HKLM-x32\...\{AA217943-D70A-4078-988C-31E5EC26AFE1}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.3 (x86) (HKLM-x32\...\{CE4A2F26-87B5-4569-A582-62A8D3B20BE9}) (Version: 64.12.10343 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19127.20192 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.3 - Shared Framework (x86) (HKLM-x32\...\{27b7a489-233a-488c-b81b-0cb173d4cd15}) (Version: 8.0.3.24116 - Microsoft Corporation)
Microsoft ASP.NET Core 8.0.3 Shared Framework (x86) (HKLM-x32\...\{66F03628-AF73-329C-9DB7-59A701E08AB7}) (Version: 8.0.3.24116 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 140.0.3485.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 140.0.3485.66 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\OneDriveSetup.exe) (Version: 25.159.0817.0003 - Microsoft Corporation)
Microsoft OneNote - cs-cz (HKLM\...\OneNoteFreeRetail - cs-cz) (Version: 16.0.19127.20192 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 (HKLM-x32\...\{5af95fd8-a22e-458f-acee-c61bd787178e}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 (HKLM-x32\...\{47109d57-d746-4f8b-9618-ed6a17cc922b}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 (HKLM\...\{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 (HKLM\...\{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 (HKLM-x32\...\{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 (HKLM-x32\...\{0C3457A0-3DCE-4A33-BEF0-9B528C557771}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.3 (x86) (HKLM-x32\...\{2907caa8-4808-4b6b-b7e7-fb8c862823d2}) (Version: 8.0.3.33416 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.3 (x86) (HKLM-x32\...\{D383E279-1AD9-4DD8-9EB4-7C831665F9CC}) (Version: 64.12.10377 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.114 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.114 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 555.99 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 555.99 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.03 - Ghisler Software GmbH)
uTorrent Web (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\utweb) (Version: 1.4.0 - BitTorrent Limited)
Wargaming.net Game Center (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\Wargaming.net Game Center) (Version: 25.4.0.7 - Wargaming.net)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1064 - McAfee, LLC)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\2314027414) (Version: - Wargaming.net)
Мир танков (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\LGC-4094243768) (Version: - Lesta Games)
Мир танков Общий тест (HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\LGC-1739465547) (Version: - Lesta Games)
Packages:
=========
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-08-07] (Advanced Micro Devices Inc.) [Startup Task]
Dropbox promotion -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.34.0_x64__xbfy0k16fey96 [2025-07-19] (Dropbox Inc.)
Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.25150.49.0_x64__8wekyb3d8bbwe [2025-07-19] (Microsoft Corporation)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2506.10.0_x64__k1h2ywk1493x8 [2025-07-24] (LENOVO INC.)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.7.18.0_x64__5grkq8ppsgwt4 [2025-05-17] (LENOVO INC) [Startup Task]
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_3.0.42.0_x64__w1wdnht996qgy [2025-03-15] (LinkedIn) [Startup Task]
Local Artificial Intelligence Manager -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-09-11] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2410.16002.0_x64__8wekyb3d8bbwe [2024-12-07] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-08-24] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_55.20610.576.0_x64__8wekyb3d8bbwe [2025-07-19] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-09-11] ()
MSN Počasí -> C:\Program Files\WindowsApps\www.msn.com-7FB783BD_1.0.0.0_neutral__q77jw2zwjvy92 [2025-09-07] (www.msn.com)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-09-11] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-09-11] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.328.0_x64__dt26b99r8h8gj [2024-09-13] (Realtek Semiconductor Corp)
TikTok -> C:\Program Files\WindowsApps\BytedancePte.Ltd.TikTok_1.0.5.0_neutral__6yccndn6064se [2025-09-07] (Bytedance Pte. Ltd.)
WinRAR -> C:\Program Files\WinRAR [2025-01-25] (win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{1fbfb627-93ed-88f1-57b8-78ec8c9febe7}\localserver32 -> "C:\ProgramData\Lenovo\Udc\Hosts\23.4.0.8\x64\MessagingPlugin.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\patma\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (SteelSeries France SASU -> A-Volute)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\patma\AppData\Local\Microsoft\OneDrive\25.159.0817.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-211460565-2364033777-153572910-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-09-30] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_7437c73094842db3\nvshext.dll [2024-07-04] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki_PT\Мир танков Общий тест.lnk -> C:\Games\Tanki_PT\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --open <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki_PT\Удалить Мир танков Общий тест.lnk -> C:\Games\Tanki_PT\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --uninstall <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki\Мир танков.lnk -> C:\Games\Tanki\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --open <==== Cyrillic
ShortcutWithArgument: C:\Users\patma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lesta Games\Tanki\Удалить Мир танков.lnk -> C:\Games\Tanki\lgc_api.exe (©2022-2025 Lesta Games Agency, LLC) -> --uninstall <==== Cyrillic
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2025-03-15 14:44 - 000003992 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site
109.94.209.70 fitgirl-repack.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site
109.94.209.70 fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 fitgirlrepack.games # Fake FitGirl site
109.94.209.70 www.fitgirlrepack.games # Fake FitGirl site
109.94.209.70 fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 fitgirls-repacks.com # Fake FitGirl site
109.94.209.70 fitgirlrepack.cc # Fake FitGirl site
109.94.209.70 fitgirlrepacks.org # Fake FitGirl site
2025-04-05 07:30 - 2025-07-17 17:16 - 000000436 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.0.1
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: Realtek 8822CE Wireless LAN 802.11ac PCI-E NIC -> rtwlane.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\patma\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\4012226080857278747\134021448715896614.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-211460565-2364033777-153572910-1001\...\StartupApproved\Run: => "utweb"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{56ABBC0A-6B3F-4B72-A0D7-1DFF19218A0F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{FCCD49CE-F056-465D-A867-7928FCA60B94}] => (Allow) C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{431185C6-7245-4951-BF7C-29E452E57BD0}] => (Allow) C:\Users\patma\AppData\Roaming\uTorrent Web\utweb.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{5D6CBD74-8190-46BA-B177-2192D1BD6343}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{46AADDFF-78D6-479B-A351-9ECD54E79E86}C:\games\tanki\win64\tanki.exe] => (Allow) C:\games\tanki\win64\tanki.exe (Lesta Games Agency LLC -> Lesta)
FirewallRules: [TCP Query User{67E72D77-939F-40E9-A136-1CEAE8957C8D}C:\games\tanki\win64\tanki.exe] => (Allow) C:\games\tanki\win64\tanki.exe (Lesta Games Agency LLC -> Lesta)
FirewallRules: [UDP Query User{E6F2AC4E-CE46-4CC3-917B-34C99397D5F2}C:\programdata\lesta\gamecenter\lgc.exe] => (Allow) C:\programdata\lesta\gamecenter\lgc.exe (LESTA LLC -> ©2022-2025 Lesta Games Agency, LLC)
FirewallRules: [TCP Query User{DC39E146-3507-4F60-8F9B-1A0010DB4EC9}C:\programdata\lesta\gamecenter\lgc.exe] => (Allow) C:\programdata\lesta\gamecenter\lgc.exe (LESTA LLC -> ©2022-2025 Lesta Games Agency, LLC)
FirewallRules: [{8F437965-0413-486C-9C84-75BE891AF0BC}] => (Allow) C:\Users\patma\AppData\Local\Temp\7zF4C967C8\aria2c.exe => No File
FirewallRules: [{4CDE3673-B195-445E-B5DD-7441699951D7}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{3E81BCF9-D63B-43AB-9D27-704A3BA2EC92}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{5EC3369F-97BE-4F19-B5D4-4AE93887F809}] => (Allow) C:\Users\patma\AppData\Local\Programs\Opera\opera.exe => No File
FirewallRules: [{D6E60FA7-AF17-4226-9F0B-749FEEDF011B}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{28D631DE-54E6-405F-A6C1-B89F954C2C45}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{A95EC880-C28C-4237-84EC-595881481E28}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe => No File
FirewallRules: [{9F704AC7-561A-49E1-B237-18ED5C58C8E3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe => No File
FirewallRules: [{5C7A9B83-2E48-4907-A48F-F6BD20C7FA00}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe => No File
FirewallRules: [{ABE54436-D969-4184-BAAE-3C89A4B3287B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe => No File
FirewallRules: [{C84277C4-C456-40E1-B5B2-413CCFE1957D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe => No File
FirewallRules: [{05B2846B-89C5-440F-B2B2-9F9F25A32B2D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe => No File
FirewallRules: [{DF543A98-3F3E-41FF-9F6F-3D071AC5E5DF}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe => No File
FirewallRules: [{A7C22E02-BBB3-4C99-A862-2F882D997C8B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe => No File
FirewallRules: [{23CD6B85-5F66-4BD6-9EB9-B875D0627D8E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe => No File
FirewallRules: [{6147DDED-1287-4685-A71E-B56872A113F6}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe => No File
FirewallRules: [{D918AEE4-5D0E-4B42-8712-2ADE6E0A4613}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe => No File
FirewallRules: [UDP Query User{3E8DC745-B959-4E89-BBE8-90A93F0BB621}C:\xboxgames\call of duty\content\sp23\sp23-cod.exe] => (Allow) C:\xboxgames\call of duty\content\sp23\sp23-cod.exe => No File
FirewallRules: [TCP Query User{E43CA15C-B336-450B-8550-B6DAD61B7368}C:\xboxgames\call of duty\content\sp23\sp23-cod.exe] => (Allow) C:\xboxgames\call of duty\content\sp23\sp23-cod.exe => No File
FirewallRules: [UDP Query User{136A534E-8EA8-4C4E-8930-014A9363B665}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{E888CF2B-2628-4B1A-A326-BC5E54E17550}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{F6B01CB4-3BF4-4877-B6E7-C85C577A2A69}C:\program files (x86)\call of duty deluxe edition\codmp.exe] => (Allow) C:\program files (x86)\call of duty deluxe edition\codmp.exe => No File
FirewallRules: [TCP Query User{0A878231-1D3F-4262-882D-97A61A523656}C:\program files (x86)\call of duty deluxe edition\codmp.exe] => (Allow) C:\program files (x86)\call of duty deluxe edition\codmp.exe => No File
FirewallRules: [UDP Query User{A146787D-A2D0-4562-86E7-30A0E06F87EC}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{A64E1424-E8C8-4B03-95C9-DF22F29E67F1}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{72336E96-0D45-4402-B946-0076D266BB0B}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{01C5EA54-17BE-49B5-B5ED-4C4E41FDD756}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{218C716F-2C27-4432-A0CF-272E7F1A14D3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{43F73884-1DB8-4F0D-89CD-3083E5505E0A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{EA7F613F-C178-474F-8F59-B84144AA3DF4}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AFAC08CC-29A8-4669-9AD5-D6650AFC2D94}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [UDP Query User{025E596E-39EB-47E7-B578-37DB17FABB82}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{854F3A73-07AF-4473-B3C7-AB54C636A11C}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
11-09-2025 11:20:02 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/13/2025 08:14:18 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2025 05:26:47 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2025 11:56:44 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2025 11:23:13 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\Fusion\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_none_758c8a477f89a995\8.0\8.0.50727.4053\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
System errors:
=============
Error: (09/13/2025 08:13:39 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Universal Device Client Service se po přijetí pokynu pro vypnutí neukončila správně.
Error: (09/12/2025 05:26:08 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Universal Device Client Service se po přijetí pokynu pro vypnutí neukončila správně.
Error: (09/12/2025 02:00:04 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9PC1H9VN18CM-Microsoft.StartExperiencesApp.
Error: (09/11/2025 11:27:49 AM) (Source: DCOM) (EventID: 10010) (User: JAUIN)
Description: Server {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} se v daném časovém limitu neregistroval u služby DCOM.
Error: (09/11/2025 11:20:33 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby NahimicService bylo dosaženo časového limitu (30000 ms).
Error: (09/11/2025 11:19:46 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Rozšíření a oznámení tiskárny je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (09/11/2025 11:17:48 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (09/11/2025 11:17:19 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Windows Defender:
================
Date: 2025-09-13 08:58:22
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{62FE2277-9D23-42E3-A793-409FF18C64BB}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъÚplné prohledávání%л %тŮŝέя:%ъJauin\patma%ⁿ %ţŞťορ Ŗèǻśõп:%вΑвοѓŧ℮ď ъγ τħë ĉĺіэпŧ
Date: 2025-09-12 15:38:10
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{91F2FB18-5599-4AF3-8E7B-2687D0F90ED3}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
Date: 2025-09-12 14:56:04
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{6297CF43-09E2-41D1-AEAC-B723C4A8110D}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
==================== Memory info ===========================
BIOS: LENOVO H3CN45WW(V3.03) 09/01/2023
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 5500H with Radeon Graphics
Percentage of memory in use: 38%
Total physical RAM: 15724.06 MB
Available physical RAM: 9638 MB
Total Virtual: 16748.06 MB
Available Virtual: 8950.93 MB
==================== Drives ================================
Drive c: (Windows-SSD) (Fixed) (Total:474.72 GB) (Free:90.89 GB) (Model: SOLIDIGM SSDPFINW512GZL) NTFS
\\?\Volume{0f6a7077-0af0-4e5a-9811-29e7e504da35}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.27 GB) NTFS
\\?\Volume{77df7e6f-f334-4a57-a353-b58f4443e7e4}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: DE67C4CA)
Partition: GPT.
==================== End of Addition.txt =======================
Re: prosím o preventivku, díky moc
Ahoj,
1. vycisti PC s CCleanerom vcetne registrov
Restart
2. prescanuj s Adwcleanerom - log sem
1. vycisti PC s CCleanerom vcetne registrov
Restart
2. prescanuj s Adwcleanerom - log sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: prosím o preventivku, díky moc
dávám log
# -------------------------------
# Malwarebytes AdwCleaner 8.5.0.595
# -------------------------------
# Build: 03-05-2025
# Database: 2024-10-23.4 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-13-2025
# Duration: 00:00:01
# OS: Windows 11 (Build 26100.6584)
# Cleaned: 5
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Users\patma\AppData\Local\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1877 octets] - [13/09/2025 10:28:45]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.5.0.595
# -------------------------------
# Build: 03-05-2025
# Database: 2024-10-23.4 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-13-2025
# Duration: 00:00:01
# OS: Windows 11 (Build 26100.6584)
# Cleaned: 5
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Users\patma\AppData\Local\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1877 octets] - [13/09/2025 10:28:45]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Re: prosím o preventivku, díky moc
Ak nie su problemy, tak hotovo
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: prosím o preventivku, díky moc
o.k. Díky ,vše šlape



Re: prosím o preventivku, díky moc
Za malo 

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/