Náhled došlo k rapidnímu zpomalení mého PC. Pomohl az restart. Rád bych eliminoval moznost viru.
Zde je log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by jakub (administrator) on ROCKET (Micro-Star International Co., Ltd. MS-7B93) (21-12-2025 23:25:23)
Running from E:\Temp\01_Download\FRST64.exe
Loaded Profiles: jakub
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7462 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe ->) (Corsair Memory, Inc. -> ) C:\Program Files\Corsair\Corsair iCUE5 Software\crashpad_handler.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\CommonDLL\RzEngineMon.exe
(C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceProcess.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe
(explorer.exe ->) (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.) C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe <9>
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.195.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-11-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Corsair iCUE5 Software] => C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE Launcher.exe [189480 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe [907352 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [MicrosoftEdgeAutoLaunch_4F2B1FC128F21355E1EB1FD267A7E60E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [Opera Browser Assistant] => C:\Users\jakub\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3996064 2024-03-04] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Luminar Neo.lnk [2025-12-02]
ShortcutTarget: Luminar Neo.lnk -> C:\Program Files\Skylum\Luminar Neo\Luminar Neo.exe (Skylum Software USA, Inc. -> Skylum)
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2023-10-22]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4EBF6227-3BA0-41F1-AFF7-72C90E4C6ED0} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {4270CE07-77B9-4DDE-868F-27F163CACEA1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {902D07CC-C43A-4A89-90CD-DF28F5F01D47} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70976 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA6BC42D-14F0-479C-AB31-35B419B5929F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C542223A-7EF4-43B7-A732-6698C4714A8E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {7DA9B7D9-ECB6-496D-B37C-F0008D27A689} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {53584DDE-82DB-44F2-B293-14237968D061} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1347344 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {0E6A2C5B-989F-4807-8C59-92576735C3C5} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0523A107-B8BD-4873-9352-CFA9FA432093} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {C412C875-726F-4919-93E8-77FD4F0F59E5} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {BE4AE9C4-6067-4C95-96AB-47E1F2447032} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3823661678-3611372174-1390376250-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {533B461D-2E7D-4F9E-BC32-56D17DC474A4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {0BC677D4-80A3-4122-B9DE-B38683E01937} - System32\Tasks\Opera scheduled assistant Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\jakub\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {343BFF92-4D92-4F71-951B-9104378FA1A8} - System32\Tasks\Opera scheduled Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6189528 2025-11-19] (Opera Norway AS -> Opera Software)
Task: {412ADA0D-0099-48A8-B793-8688A91FF4B1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [154438440 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\--disable-gpu-sandbox /AUTOHIDE
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{2e946ed5-d0cd-4e94-a4e1-5b06e09eaf8f}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-21]
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge NewTab: Default -> Not-active:"chrome-extension://onagfgjlokaciajhjmajljcfanonbmia/index.html"
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Extension: (Edge relevant text changes) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Privacy Badger) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-12-12]
Edge Extension: (uBlock Origin) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2025-11-28]
Edge Extension: (Custom New Tab) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\onagfgjlokaciajhjmajljcfanonbmia [2023-10-21]
FireFox:
========
FF DefaultProfile: 0ciywr5v.default
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release [2025-12-10]
FF Homepage: Mozilla\Firefox\Profiles\52s79vo0.default-release -> chrome://browser/content/blanktab.html
FF Extension: (New Tab) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\newtab@mozilla.org.xpi [2025-11-30]
FF Extension: (uBlock Origin) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-07]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\0ciywr5v.default [2022-05-18]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly [2025-08-28]
FF Extension: (Privacy Badger) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2023-09-16]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-12-21]
Chrome:
=======
CHR Profile: C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default [2025-12-13]
CHR DownloadDir: D:\10_General\10_Temp\01_Download
CHR HomePage: Default -> hxxps://www.google.cz/
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-14]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3386064 2025-09-18] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13419408 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [765736 2025-11-11] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R3 CorsairCpuIdService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe [300584 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R3 CorsairDeviceControlService; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe [2368040 2024-08-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 CorsairDeviceListerService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairDeviceListerService.exe [175656 2024-08-24] (Corsair Memory, Inc. -> )
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [613952 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe [84008 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [126268152 2025-09-11] (Electronic Arts, Inc. -> Electronic Arts)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19281056 2025-10-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5543856 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R3 iCUEUpdateService; C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe [459304 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [19361616 2025-07-12] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe [11391560 2025-07-22] (Logitech Inc -> Logitech, Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Razer Elevation Service; C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe [1741960 2025-04-25] (Razer USA Ltd. -> Razer Inc)
R2 Razer Game Manager Service 3; C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe [362248 2024-06-27] (Razer USA Ltd. -> Razer Inc)
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [497448 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4414464 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [282480 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [77240 2022-07-18] (Advanced Micro Devices Inc. -> AMD)
S3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [63040 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccess8F050F5E415C1A5882EB9FF7CE2BC59B7BE3A953; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairLLAccess64.sys [23728 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessE5624B0A345A7E17A08498BFEDC2D42A7CBA71C2; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairLLAccess64.sys [23632 2024-08-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44592 2025-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [175824 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232928 2025-10-26] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [17840 2025-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [273768 2025-10-26] (ESET, spol. s r.o. -> ESET)
S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57368 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86800 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126552 2025-10-26] (ESET, spol. s r.o. -> ESET)
R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [106704 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsb; C:\WINDOWS\System32\drivers\FocusriteUsb.sys [170320 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbAudio; C:\WINDOWS\System32\drivers\FocusriteUsbAudio.sys [109392 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbSwRoot; C:\WINDOWS\System32\drivers\FocusriteUsbSwRoot.sys [112952 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2025-01-25] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-12-29] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2025-01-25] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray.sys [89696 2025-07-22] (Logitech Inc -> Logitech, Inc.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64880 2023-09-26] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_00aa; C:\WINDOWS\System32\drivers\RzDev_00aa.sys [63200 2022-05-09] (Razer USA Ltd. -> Razer Inc)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174264 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [20880 2025-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [627104 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [102816 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:24 - 2025-12-21 23:25 - 000000000 ____D C:\FRST
2025-12-19 18:31 - 2025-12-21 09:38 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-12-16 18:53 - 2025-12-21 14:07 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-12-13 11:23 - 2025-12-13 11:23 - 000000511 _____ C:\Users\Public\Desktop\Diablo IV.lnk
2025-12-13 11:23 - 2025-12-13 11:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo IV
2025-12-10 22:26 - 2025-12-10 22:26 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-12-10 22:26 - 2025-12-10 22:26 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-12-09 17:30 - 2025-12-09 17:30 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Stationery
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Signatures
2025-12-06 20:38 - 2025-12-06 20:38 - 000000000 ____D C:\Users\jakub\Desktop\Práce A Soud
2025-12-05 17:13 - 2025-12-05 17:14 - 000000000 ____D C:\Users\jakub\Desktop\Nová složka (2)
2025-12-03 17:26 - 2025-12-03 17:26 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-12-02 17:48 - 2025-12-02 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2025-11-21 15:21 - 2025-11-21 15:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Razer
2025-11-21 15:13 - 2025-11-21 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2025-11-21 15:13 - 2025-11-21 15:23 - 000000000 ____D C:\Program Files\Razer
2025-11-21 14:51 - 2025-11-23 22:25 - 000000000 ____D C:\Program Files (x86)\Razer
2025-11-21 14:51 - 2025-11-21 15:23 - 000000000 ____D C:\ProgramData\Razer
2025-11-21 14:51 - 2023-06-16 07:33 - 000161920 _____ (Razer Inc) C:\WINDOWS\system32\RazerS3CoinstallerEx.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:26 - 2022-05-14 20:18 - 000000000 ____D C:\Users\jakub\AppData\Roaming\vlc
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-21 23:18 - 2024-12-07 14:03 - 000074314 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-12-21 23:17 - 2024-12-07 14:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-12-21 23:17 - 2024-05-31 20:01 - 000000000 ____D C:\Users\jakub\Desktop\IG
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-12-21 23:17 - 2022-05-13 22:35 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Samsung Magician
2025-12-21 23:17 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-21 23:17 - 2022-05-13 22:11 - 000012288 ___SH C:\DumpStack.log.tmp
2025-12-21 23:16 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-12-21 23:14 - 2022-05-26 17:43 - 000000000 ____D C:\Users\jakub\Documents\Soubory aplikace Outlook
2025-12-21 23:13 - 2022-05-14 12:12 - 000000000 ____D C:\Program Files (x86)\Steam
2025-12-21 23:12 - 2022-06-05 20:39 - 000000000 ____D C:\Users\jakub\AppData\Local\Battle.net
2025-12-21 20:45 - 2022-05-14 08:05 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Excel
2025-12-21 17:27 - 2024-12-07 14:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-12-21 14:07 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\D3DSCache
2025-12-21 09:44 - 2023-09-02 19:52 - 000000000 ____D C:\Program Files\Microsoft Office
2025-12-21 09:38 - 2023-10-25 19:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-20 23:47 - 2022-05-18 21:50 - 000000000 ____D C:\Users\jakub\AppData\Roaming\qBittorrent
2025-12-20 12:25 - 2022-10-01 19:16 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2025-12-20 10:47 - 2022-05-13 22:11 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 10:11 - 2025-09-23 15:50 - 000440696 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_b.dll
2025-12-20 10:11 - 2022-10-22 16:55 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-12-20 10:11 - 2022-10-22 16:55 - 000076152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-12-20 10:11 - 2022-05-14 09:26 - 004606328 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000289144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000166256 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-12-20 09:58 - 2024-12-07 14:04 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-12-20 09:58 - 2023-10-25 19:20 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-12-16 18:42 - 2024-12-07 14:04 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-12-16 18:42 - 2024-12-07 14:04 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-12-13 14:46 - 2022-05-13 22:28 - 000000000 ____D C:\Program Files (x86)\Google
2025-12-12 21:40 - 2025-11-17 22:11 - 000001150 _____ C:\Users\Public\Desktop\DxO PhotoLab 7.lnk
2025-12-12 21:40 - 2023-11-27 20:11 - 000001162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO PhotoLab 7.lnk
2025-12-10 22:26 - 2024-12-07 14:02 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-12-10 22:26 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-12-10 22:24 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-12-10 20:47 - 2022-05-18 21:50 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-12-10 17:26 - 2024-12-07 14:01 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-12-10 17:23 - 2022-05-14 09:39 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-12-10 17:22 - 2022-05-14 09:39 - 218369424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-12-04 18:31 - 2022-06-05 20:38 - 000000000 ____D C:\Program Files (x86)\Battle.net
2025-12-03 21:22 - 2025-10-23 16:57 - 000000000 ____D C:\Users\jakub\AppData\Roaming\.minecraft
2025-12-03 17:27 - 2024-12-07 14:01 - 000472584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-12-03 17:26 - 2025-06-27 22:09 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-12-03 17:26 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-12-03 17:26 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2025-12-02 19:50 - 2025-11-09 22:28 - 000001231 _____ C:\Users\Public\Desktop\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:40 - 000001237 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:35 - 000000000 ____D C:\ProgramData\Luminar Neo
2025-12-02 17:48 - 2024-12-07 14:04 - 000003378 _____ C:\WINDOWS\system32\Tasks\SamsungMagician
2025-11-26 19:44 - 2024-12-07 13:03 - 000017840 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2025-11-24 11:51 - 2024-03-08 17:57 - 000017173 _____ C:\Users\jakub\Desktop\STAHOVANÍ.txt
2025-11-24 10:37 - 2024-12-07 14:04 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1703177349
2025-11-24 10:37 - 2023-12-21 17:49 - 000001390 _____ C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-11-21 19:02 - 2022-05-14 12:02 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Word
==================== Files in the root of some directories ========
2022-06-07 21:19 - 2022-06-07 21:19 - 000004622 _____ () C:\Users\jakub\AppData\Local\2287057899
2025-07-24 09:27 - 2025-07-24 09:27 - 000002185 _____ () C:\Users\jakub\AppData\Local\recently-used.xbel
2023-04-30 15:01 - 2023-04-30 15:01 - 000007626 _____ () C:\Users\jakub\AppData\Local\Resmon.ResmonCfg
==================== SigCheckExt =========================
2002-08-31 06:00 - 2002-08-31 06:00 - 000001959 ____H C:\WINDOWS\SysWOW64\msisl$.dll
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== BCD ================================
Firmware Boot Manager
---------------------
identifier {fwbootmgr}
displayorder {bootmgr}
timeout 1
Windows Boot Manager
--------------------
identifier {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
description Windows Boot Manager
locale cs-CZ
inherit {globalsettings}
default {current}
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Windows Boot Loader
-------------------
identifier {current}
device partition=C:
path \WINDOWS\system32\winload.efi
description Windows 11
locale cs-CZ
inherit {bootloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
displaymessageoverride Recovery
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
nx OptIn
bootmenupolicy Standard
Windows Boot Loader
-------------------
identifier {70f2b94e-d309-11ec-a54d-ece3bc837e18}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale cs-CZ
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes
Resume from Hibernate
---------------------
identifier {70f2b94b-d309-11ec-a54d-ece3bc837e18}
device partition=C:
path \WINDOWS\system32\winresume.efi
description Windows Resume Application
locale cs-CZ
inherit {resumeloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
custom:21000026 partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No
Windows Memory Tester
---------------------
identifier {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostika paměti systému Windows
locale cs-CZ
inherit {globalsettings}
badmemoryaccess Yes
EMS Settings
------------
identifier {emssettings}
bootems No
Debugger Settings
-----------------
identifier {dbgsettings}
debugtype Local
RAM Defects
-----------
identifier {badmemory}
Global Settings
---------------
identifier {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Boot Loader Settings
--------------------
identifier {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Hypervisor Settings
-------------------
identifier {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Resume Loader Settings
----------------------
identifier {resumeloadersettings}
inherit {globalsettings}
Device options
--------------
identifier {70f2b951-d309-11ec-a54d-ece3bc837e18}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi
==================== End of FRST.txt ========================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zpomalení PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zpomalení PC
Zdravím!
Potřebuji ještě vidět:
1. Log Additioin, který najdete v souboru addition.txt v E:\Temp\01_Download a
2. Provést sken ADWC:
Potřebuji ještě vidět:
1. Log Additioin, který najdete v souboru addition.txt v E:\Temp\01_Download a
2. Provést sken ADWC:
Děkuji.Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zpomalení PC
Omlouvám se za opomenutí logu. Zde je
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by jakub (21-12-2025 23:27:56)
Running from E:\Temp\01_Download
Microsoft Windows 11 Pro Version 25H2 26200.7462 (X64) (2024-12-07 13:04:45)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3823661678-3611372174-1390376250-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3823661678-3611372174-1390376250-503 - Limited - Disabled)
Guest (S-1-5-21-3823661678-3611372174-1390376250-501 - Limited - Disabled)
jakub (S-1-5-21-3823661678-3611372174-1390376250-1001 - Administrator - Enabled) => C:\Users\jakub
WDAGUtilityAccount (S-1-5-21-3823661678-3611372174-1390376250-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 21.07 (x64) (HKLM\...\7-Zip) (Version: 21.07 - Igor Pavlov)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.134 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 7.06.02.123 - Advanced Micro Devices, Inc.)
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{43ab2cfd-3f71-4aa8-ab15-5f517f620c41}) (Version: 7.06.02.123 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
blender (HKLM\...\{447524DE-DB18-4E94-8D90-4FD62C00212F}) (Version: 3.4.1 - Blender Foundation)
Corsair Device Control Service (HKLM\...\{ADE422C8-E07A-42A5-8B9B-F9CDD1875C08}) (Version: 1.1.4 - Corsair)
Corsair iCUE5 Software (HKLM\...\{A9B0B2D7-8C59-4413-A2FB-99EDBE65A608}) (Version: 5.18.106 - Corsair)
Diablo II Resurrected (HKLM-x32\...\Diablo II Resurrected) (Version: - Blizzard Entertainment)
Diablo IV (HKLM-x32\...\Diablo IV) (Version: - Blizzard Entertainment)
DxO PhotoLab 7 (HKLM\...\{0B2F187E-2C6C-434C-87D0-86320DFB5864}) (Version: 7.19.0 - DxO)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.566.0.6079 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{70613246-0c75-4eb9-a5c4-d2b7a8e76e7f}) (Version: 13.566.0.6079 - Electronic Arts)
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ESET Security (HKLM\...\{7640EC0A-921E-44D1-9165-DE31D473EAE3}) (Version: 19.0.14.0 - ESET, spol. s r.o.)
Focusrite Audio Drivers 4.124.3.5 (HKLM\...\Focusrite Audio Drivers_is1) (Version: 4.124.3.5 - Focusrite Audio Engineering, Ltd.)
Focusrite Control 2 1.576.0.0 (HKLM\...\Focusrite Control 2_is1) (Version: 1.576.0.0 - Focusrite Audio Engineering Ltd.)
GIMP 2.10.36-1 (HKLM\...\GIMP-2_is1) (Version: 2.10.36 - The GIMP Team)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000230-0220-1029-84C8-B8D95FA3C8C3}) (Version: 22.230.0.2 - Intel Corporation)
IrfanView 4.70 (64-bit) (HKLM\...\IrfanView64) (Version: 4.70 - Irfan Skiljan)
Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-IE) (HKLM-x32\...\{998D5259-3BED-4710-98FF-D63387B5429E}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-NZ) (HKLM-x32\...\{07FC9CAD-FCEC-4186-BB83-EF7CCC9372BA}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-ES) (HKLM-x32\...\{F49AF755-A5C3-4252-A190-5772B2669C3B}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-MX) (HKLM-x32\...\{E8F3B154-03CE-4120-8B9D-9E83ED5F3AD7}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (fr-CA) (HKLM-x32\...\{7D179500-CA0C-4456-B624-C15876B15F39}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (fr-FR) (HKLM-x32\...\{4CC174AA-25BC-46FF-B1E2-13B24AFB6142}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (it-IT) (HKLM-x32\...\{969D900A-3481-4A77-B888-D24160D4D727}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (ja-JP) (HKLM-x32\...\{EDA8693D-9E82-4FD1-98C8-0DC4F9141E0F}) (Version: 11.0.7400.336 - Microsoft Corporation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2025.5.741244 - Logitech)
Luminar Neo (HKLM\...\Luminar Neo) (Version: 1.25.1.15981 - Skylum)
Microsoft .NET 6.0.16 - Windows Server Hosting (HKLM-x32\...\{58f3f479-fe1b-4cb4-b547-d6cb9196eac4}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft .NET Host - 6.0.16 (x64) (HKLM\...\{1D0AC7F1-2B34-44AF-91F6-88757D768DA7}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.16 (x86) (HKLM-x32\...\{5F37B629-52CB-480F-B71C-FD7F5E5AC674}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.18 (x86) (HKLM-x32\...\{B6730DA1-5D6F-4EF5-B8A7-CF82FC7E5290}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.16 (x64) (HKLM\...\{B8537ACA-B210-4DF5-B928-E41CEB76723D}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.16 (x86) (HKLM-x32\...\{D783E62B-5799-4D6C-8058-D9F1F16DDD37}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.18 (x86) (HKLM-x32\...\{76E94068-D600-47F9-8C91-DAF237498C78}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM\...\{C71E93D2-B8B4-4858-B2A1-4C967DBC1C5F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM-x32\...\{2a8d0f2b-911b-4b58-8252-46b29e7a4590}) (Version: 6.0.16.32323 - Microsoft Corporation)
Microsoft .NET Runtime - 6.0.16 (x86) (HKLM-x32\...\{D9C57643-68F6-4D39-8E6A-20107848904F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x86) (HKLM-x32\...\{f9b16c16-83ac-4b92-ab03-236229ebbf38}) (Version: 6.0.16.32323 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.18 (x86) (HKLM-x32\...\{ECB844FE-BC7B-4994-89AB-3EDA7D3CE179}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 - Shared Framework (x64) (HKLM-x32\...\{ed4c6994-b659-4b75-a949-c8819e6c0aa9}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.16 - Shared Framework (x86) (HKLM-x32\...\{404f1909-b182-4aab-ad0a-04c727d70f13}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.16 Hosting Bundle Options (HKLM-x32\...\{1DB68DD7-07DF-3B9C-A907-3E94A08E4651}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 Shared Framework (x64) (HKLM\...\{0DF7C481-9E91-3118-B877-6EA9084358AD}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 Shared Framework (x86) (HKLM-x32\...\{5545924B-28E4-37E9-9C29-84BF047EB3CB}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.19426.20218 - Microsoft Corporation)
Microsoft OneNote - en-us (HKLM\...\OneNoteFreeRetail - en-us) (Version: 16.0.19426.20218 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (en-IN) (HKLM-x32\...\{3B06AC90-DE68-44A9-95EB-0A3C1AF1514F}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (pl-PL) (HKLM-x32\...\{BEFB9378-5E88-4266-8EB1-C92869449885}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (pt-BR) (HKLM-x32\...\{F6B5EB21-0ABF-487C-B9A9-D9DB259C4403}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (ru-RU) (HKLM-x32\...\{9419B7EA-6A4B-4A57-8E2A-3BDD4676118F}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (zh-CN) (HKLM-x32\...\{BAD2A75A-1708-47BA-A498-20890D2C78A7}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.16 (x64) (HKLM\...\{805626FF-2BC9-4567-A71E-A76A470D000A}) (Version: 48.67.58484 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.16 (x64) (HKLM-x32\...\{8d173101-98c1-4e92-97c6-47c6840745a7}) (Version: 6.0.16.32327 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.18 (x86) (HKLM-x32\...\{3d771bf1-8cb6-4242-85d8-7f3c989c6360}) (Version: 8.0.18.35017 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.18 (x86) (HKLM-x32\...\{89326E2B-5B52-42AE-BB95-782127D70E70}) (Version: 64.72.35986 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 146.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 128.4.2 - Mozilla)
NVIDIA Ovladače grafiky 581.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.15 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19426.20170 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 124.0.5705.42 (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Opera 124.0.5705.42) (Version: 124.0.5705.42 - Opera Software)
PDF-XChange Editor (HKLM\...\{27B09AC2-12E9-4B42-B5B7-D042A3E339E9}) (Version: 9.5.368.0 - Tracker Software Products (Canada) Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{7355a6b3-4efb-4023-88a1-8c00d955b625}) (Version: 9.5.368.0 - Tracker Software Products (Canada) Ltd.)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 4.0.563 - Razer Inc.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 9.0.0.910 - Samsung Electronics)
SILKYPIX Developer Studio Pro 11 for Panasonic English (HKLM-x32\...\{EEB6A270-8361-4933-BE31-F3BF8BFAFD2A}) (Version: 11 - Ichikawa Soft Laboratory)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.52 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
Warcraft III (HKLM-x32\...\Warcraft III) (Version: - Blizzard Entertainment)
Wargaming.net Game Center (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Wargaming.net Game Center) (Version: 25.5.1.491 - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\1014304189) (Version: - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Classic Era (HKLM-x32\...\World of Warcraft Classic Era) (Version: - Blizzard Entertainment)
Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6901.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7171.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
Apple Music -> C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa [2025-09-16] (Apple Inc.)
AppleInc.AppleDevices -> C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa [2025-10-16] (Apple Inc.) [Startup Task]
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2025-12-01] (Sparse Package)
Forza Horizon 5 -> C:\Program Files\WindowsApps\Microsoft.624F8B84B80_3.687.302.0_x64__8wekyb3d8bbwe [2025-09-30] (Microsoft Studios)
Forza Horizon 5: Rally Adventure -> C:\Program Files\WindowsApps\Microsoft.Expansion2FH5_3.573.834.0_x64__8wekyb3d8bbwe [2024-01-08] (Microsoft Studios)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa [2025-10-17] (Apple Inc.) [Startup Task]
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-12-21] ()
Microsoft Sonia (Natural) - English (United Kingdom) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-GB.Sonia.1_1.0.4.0_x64__cw5n1h2txyewy [2025-06-03] (Microsoft Windows)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-12-21] ()
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.11401.0_x64__8wekyb3d8bbwe [2025-10-22] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.5.2.0_x64__8wekyb3d8bbwe [2025-12-09] (Microsoft Studios)
Minecraft: Java Edition -> C:\Program Files\WindowsApps\Microsoft.MinecraftJavaEdition_1.0.5.0_x64__8wekyb3d8bbwe [2025-10-22] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-12-21] ()
Příslušenství pro Xbox -> C:\Program Files\WindowsApps\Microsoft.XboxDevices_2506.2505.28001.0_x64__8wekyb3d8bbwe [2025-06-20] (Microsoft Corporation)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.675.1142.0_x64__8wekyb3d8bbwe [2025-12-03] (Microsoft Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{fa5312d1-0b58-428a-bd93-3b87ef89945d}\localserver32 -> C:\Program Files\Skylum\Luminar Neo\Luminar Neo.exe (Skylum Software USA, Inc. -> Skylum)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\nvshext.dll [2025-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-12-21 23:17 - 2025-12-21 23:17 - 000255488 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\15f68b51-b711-4ca5-976a-1cd4b8b0b78d.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000701952 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\8b57189a-d6af-4869-ae00-b91ea71d5f52.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000241664 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\8f8649bf-a97f-4517-90b3-2b2baa9b807f.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000223744 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\9d02572d-c108-46ff-ba04-1606260ac97a.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000281600 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\a6f751e2-e230-4b44-95b4-96782cef85a0.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000226304 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\b5d77fc9-4f80-4d4b-9f01-2a8933566e05.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000380416 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\dea03f27-1ba8-4acd-94ca-95a8af0f3161.tmp.node
2025-12-02 17:48 - 2025-11-12 00:08 - 002380800 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\ffmpeg.dll
2025-12-02 17:48 - 2025-11-12 00:08 - 000379904 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\libegl.dll
2025-12-02 17:48 - 2025-11-12 00:08 - 007021568 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\libglesv2.dll
2025-12-02 17:48 - 2025-11-12 00:07 - 000148480 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\resources\app\dist\magutils-napi.node
2025-12-02 17:48 - 2025-11-12 00:07 - 000573440 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\resources\app\dist\uimpewrapper-napi.node
2022-10-07 22:37 - 2025-11-12 00:08 - 004815872 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\vk_swiftshader.dll
2022-05-14 19:52 - 2021-12-26 15:00 - 000093696 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2023-09-02 19:54 - 2023-09-02 19:54 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2023-09-02 19:54 - 2023-09-02 19:54 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 13:08 - 2021-06-05 13:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2023-05-21 20:20 - 2023-05-21 20:50 - 000000436 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r68x64.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX200 160MHz -> Netwtw10.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jakub\Pictures\Saved Pictures\wallpaper_02.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{04A1EBCB-5775-430A-9E21-88F5E18ABFD0}C:\program files\skylum\luminar neo\luminar neo.exe] => (Block) C:\program files\skylum\luminar neo\luminar neo.exe (Skylum Software USA, Inc. -> Skylum)
FirewallRules: [TCP Query User{13136E10-FCF8-41C0-8DD5-2BEB2CA3F670}C:\program files\skylum\luminar neo\luminar neo.exe] => (Block) C:\program files\skylum\luminar neo\luminar neo.exe (Skylum Software USA, Inc. -> Skylum)
FirewallRules: [UDP Query User{9F8E2406-6AD4-44C8-A2C4-31BA7A095674}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Block) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{D8291070-1C84-44CF-A0F3-2B8373813F9F}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Block) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{A92CD164-A1B0-4E85-AA8F-165F4186B89C}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{3C306A6F-6BC6-47AF-9D39-6A088D224C37}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{1DC8A9BE-4D04-4D50-9573-4571CFB2DBFB}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [TCP Query User{2CF200BD-8F38-4C55-94FF-AC45CCC6BA07}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [{95536C39-1BC0-433A-8D80-AD277D2BCBB3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{DDD43711-6E21-4681-B2FB-8607F2E04AB6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [{C4FD4928-9E56-41A6-95C4-0BE8B4F55817}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23091.406.2009.3890_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6D7AFF59-F285-48B8-AA77-B7469D7D2A5B}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23091.406.2009.3890_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{EE59DD07-17BD-4BB0-931E-9C8B169B8848}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{FD82373F-6CAA-471E-8ECB-3D58D70FB3CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{36190384-EC80-42F0-ACF3-31F99007B70A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{10E47B8C-9CD3-4951-BA60-E75D250D2807}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{339B9431-ECFF-427B-B5CC-F0CFC7881ACA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed]
FirewallRules: [{81F8CE53-A25E-41DD-A87B-4418776D6740}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed]
FirewallRules: [TCP Query User{F1998180-60F2-45B7-AEC7-5F137E163F1D}C:\program files\vlc\vlc.exe] => (Block) C:\program files\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{B1297F08-455C-43AA-8CEF-19232D00B164}C:\program files\vlc\vlc.exe] => (Block) C:\program files\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [TCP Query User{C0073C06-6EC1-4D59-9A73-D71E3F23D643}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{0EE68D9E-1933-4701-BCF5-D58AF8AF2C7F}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{60FC4C9F-E13C-4427-93F3-06FE830DF335}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [UDP Query User{59F2D2B3-A44C-4453-9FC4-7234730E4864}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{B384890E-A8A6-4131-8802-912220A37902}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{AC8792CD-3110-437C-B4EC-7A9472D3FE4D}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [TCP Query User{3A62BB2D-DC74-429B-85D3-104D823DC274}C:\program files\focusrite\focusrite control 2\focusrite control 2.exe] => (Allow) C:\program files\focusrite\focusrite control 2\focusrite control 2.exe (Focusrite Audio Engineering Ltd.) [File not signed]
FirewallRules: [UDP Query User{1DCF5855-5DAD-471F-AECC-29FF4BA219E2}C:\program files\focusrite\focusrite control 2\focusrite control 2.exe] => (Allow) C:\program files\focusrite\focusrite control 2\focusrite control 2.exe (Focusrite Audio Engineering Ltd.) [File not signed]
FirewallRules: [TCP Query User{C3671F9A-4B54-4FD8-8257-1835D61FABBC}C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [UDP Query User{1E7E92B0-1F41-4261-AD98-38450A26392A}C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{9F10CC70-47AE-41B6-A76A-9F5ED271E67E}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{87E4CA1C-1941-4560-B725-9CE82EFE3CF8}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [{2C4B4D64-0EBD-4E28-9360-EF20699A7667}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{E8108480-390E-498C-8EA5-456550C5D73B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{1C2DEC60-2D30-48F8-8FFA-E597509DA5BA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{214F8B78-538E-413C-826E-BBF473635BCB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [TCP Query User{4F7D8184-BF8A-46C8-8C8C-140A10A6F487}E:\program files\10_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\program files\10_portable\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [UDP Query User{8F36A56A-BFB8-45F4-A08A-24E1373BB64C}E:\program files\10_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\program files\10_portable\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{601C0E5C-37E7-473F-A7EF-7E14E385DEFB}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{5D051254-9C65-4ED4-9455-54117C34132B}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{3F9B4276-E656-48C6-AC0B-FE141036E3D3}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [{6BDFE533-7508-427B-878A-2D4C8B3B4AA7}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [TCP Query User{12EB9E14-40F4-4FBC-B890-DF7BAE700047}E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe (Creative Assembly -> The Creative Assembly Ltd)
FirewallRules: [UDP Query User{BE083F6C-B0EC-4702-AB0E-979B0BD6798C}E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe (Creative Assembly -> The Creative Assembly Ltd)
FirewallRules: [TCP Query User{78DC0AC5-E283-4DF7-9526-78A214BEDC72}E:\program files\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\program files\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{4CFCFDB1-E8DC-4BDC-99C0-08B4E4910C88}E:\program files\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\program files\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{13B7B26D-C9AA-42A1-8903-6B7BD3D8689F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3E29D606-44F2-4E3B-B5FE-CFE5BE46CA23}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{ECAAF3E2-F90E-431C-B0D4-9974B876F32F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1A705849-B128-4CBA-849A-7FCDBBDD49C4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E63A3282-250C-42D8-88EC-69FCC1364639}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{C772F5E6-03E8-4DA5-8FDC-6F986C528446}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E9AA12DC-23C4-4410-8AD6-538F86C3AB19}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4BE39C2A-EA37-4653-9AD5-660F58D774A5}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{37064034-C1EE-47F6-9FED-59106F0187E3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{B73201B8-F9A9-4FB8-8953-B328E2BDFEC8}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{3F5D63CE-1A7B-4C77-9836-7662F53E9673}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1C4908E4-8201-4F28-A2FA-253C178AED58}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{67605568-E87D-4323-9609-93BA56754919}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{61EAD1FA-F253-4BE2-A1A4-4EAAF1D9B971}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{244CC80D-DC5D-4C98-8098-2C741C37E4C6}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AMPDevicesAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6DD0F259-A0BC-440B-8B5B-A46158473BB4}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AMPDevicesAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D605CDCA-D7FF-4D1D-B6B3-828E12A3B185}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{93248EE0-013B-4459-B4F2-A9386D94BB11}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{C06CD439-87FB-4875-B9D0-4125DE602508}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{5C239A53-BDEB-4978-8D1C-D8B1121BC119}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{B76DB2C4-C9E8-4539-A5BB-08F6340237C8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{407091E2-835E-48AD-B335-8F44E56614E2}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{9441A880-5DD0-4595-B710-762FCE42D21B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{64F9447A-0C50-477A-9CF1-A8013A65F807}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{F3773AAD-8AF6-4882-95CB-2D0E17CE63A1}] => (Allow) E:\Program Files\20_Steam\steamapps\common\F1 22\F1_22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{549741A8-78F4-4E35-A27D-9CBC68465909}] => (Allow) E:\Program Files\20_Steam\steamapps\common\F1 22\F1_22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{8DD828D7-9334-4B1E-BFC6-9F7527514D66}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe (Razer USA Ltd. -> Razer Inc.)
FirewallRules: [{D881E79B-7337-4D67-9112-97C24853AB46}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.503\RazerAppEngine.exe => No File
FirewallRules: [{F11C6D69-FDA7-401A-9EC1-DDBCB086EC1A}] => (Allow) E:\Program Files\20_Steam\steamapps\common\ofAshAndSteel\ofAshAndSteelGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{8BCB23C2-3D26-4072-B119-94472FECED58}] => (Allow) E:\Program Files\20_Steam\steamapps\common\ofAshAndSteel\ofAshAndSteelGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F7202628-646C-4D01-A973-1ADF14F07271}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [{DF3F0BC1-2CF0-47BB-93E4-BA06254E4430}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [TCP Query User{DB87CDA5-670D-45A8-A0D1-09BC1C6A4C53}E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed]
FirewallRules: [UDP Query User{4D3B0522-039D-4B4B-9424-223A394ADAEB}E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed]
FirewallRules: [TCP Query User{3C2C31A7-F4CE-4945-9A05-47ABF273931F}E:\program files\diablo iv\diablo iv.exe] => (Allow) E:\program files\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{EB8C7CFD-A26B-4E83-84D9-B3E81121D2ED}E:\program files\diablo iv\diablo iv.exe] => (Allow) E:\program files\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{AC3C42EB-200A-488D-855D-B1F64475EF70}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C2226426-79B4-408C-8AE0-2A32EA99D35A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/21/2025 11:20:43 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.26100.7309, časové razítko: 0xe3dfc84c
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x80131623
Posun chyby: 0x00007ffb1731200f
ID chybujícího procesu: 0x30a0
Čas spuštění chybující aplikace: 0x1dc72c80b46d1d4
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: 8b532cef-a95f-4242-a782-0c3183029a37
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (12/21/2025 11:20:43 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: wmiprvse.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Byla vyvolána neočekávaná výjimka od poskytovatele:
System.IO.FileLoadException:
File name: 'Microsoft.AppV.AppvClientComConsumer, Version=10.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'
at Microsoft.AppV.AppvPublishingServerWMI.AppvPublishingServer.EnumeratePublishingServers()
Stack:
at System.Environment.FailFast(System.String)
at WmiNative.WbemProvider.WmiNative.IWbemServices.CreateInstanceEnumAsync(System.String, Int32, WmiNative.IWbemContext, WmiNative.IWbemObjectSink)
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003
Error: (12/21/2025 11:17:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\ROCKET$ přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(141ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (12/21/2025 11:17:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(78ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (12/21/2025 11:16:32 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: GameManagerService3.exe, verze: 3.7.0.482, časové razítko: 0x65310000
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.7462, časové razítko: 0x832e17c6
Kód výjimky: 0xe0434352
Posun chyby: 0x00161e54
ID chybujícího procesu: 0x1164
Čas spuštění chybující aplikace: 0x1dc7255261c0244
Cesta k chybující aplikaci: C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: 138df670-5404-4e0e-87fc-06b049b496b6
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
System errors:
=============
Error: (12/21/2025 11:22:09 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Micro-Star International Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:1.F0;OEMModelBaseBoard:MPG X570 GAMING PRO CARBON WIFI (MS-7B93);OEMManufacturerName:Micro-Star International Co., Ltd.;OSArchitecture:amd64;
BucketId: d233b8fcee8301321be26b6d3c99be7fa08f093894905e1a7c1e003ea0d4a71e
BucketConfidenceLevel:
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (12/21/2025 11:16:20 PM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 11:16:20 PM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 10:03:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (12/21/2025 10:03:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (60000 ms).
Error: (12/21/2025 09:43:15 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Micro-Star International Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:1.F0;OEMModelBaseBoard:MPG X570 GAMING PRO CARBON WIFI (MS-7B93);OEMManufacturerName:Micro-Star International Co., Ltd.;OSArchitecture:amd64;
BucketId: d233b8fcee8301321be26b6d3c99be7fa08f093894905e1a7c1e003ea0d4a71e
BucketConfidenceLevel:
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (12/21/2025 12:05:58 AM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {740FE937-01F7-4482-AA62-C83F0AD3D6D0} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 12:05:58 AM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===============
Date: 2025-12-21 23:27:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
Date: 2025-12-21 23:22:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. 1.F0 03/21/2022
Motherboard: Micro-Star International Co., Ltd. MPG X570 GAMING PRO CARBON WIFI (MS-7B93)
Processor: AMD Ryzen 7 5700X 8-Core Processor
Percentage of memory in use: 26%
Total physical RAM: 32689.71 MB
Available physical RAM: 23873.36 MB
Total Virtual: 34737.71 MB
Available Virtual: 25896.72 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.59 GB) (Free:352.64 GB) (Model: Samsung SSD 980 PRO 1TB) NTFS
Drive d: (Data) (Fixed) (Total:1863 GB) (Free:815.49 GB) (Model: Samsung SSD 870 EVO 2TB) NTFS
Drive e: (App) (Fixed) (Total:1863 GB) (Free:1111.7 GB) (Model: Samsung SSD 990 EVO Plus 2TB) NTFS
\\?\Volume{8e65c78c-ba07-4d76-a404-aa4017a8ea00}\ () (Fixed) (Total:0.8 GB) (Free:0.11 GB) NTFS
\\?\Volume{9aff5c52-8de6-4b68-8d92-712ce72e95c7}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
A zde AdwCleaner log:
# -------------------------------
# Malwarebytes AdwCleaner 8.7.0.619
# -------------------------------
# Build: 12-17-2025
# Database: 2025-12-16.1 (Local)
# Support: https://help.malwarebytes.com/
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 12-22-2025
# Duration: 00:00:00
# OS: Windows 11 (Build 26200.7462)
# Cleaned: 1
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
Deleted C:\ProgramData\54F3DE4E-B7BA-4EBD-8B3B-385D272CC583
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1472 octets] - [22/12/2025 13:03:50]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by jakub (21-12-2025 23:27:56)
Running from E:\Temp\01_Download
Microsoft Windows 11 Pro Version 25H2 26200.7462 (X64) (2024-12-07 13:04:45)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3823661678-3611372174-1390376250-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3823661678-3611372174-1390376250-503 - Limited - Disabled)
Guest (S-1-5-21-3823661678-3611372174-1390376250-501 - Limited - Disabled)
jakub (S-1-5-21-3823661678-3611372174-1390376250-1001 - Administrator - Enabled) => C:\Users\jakub
WDAGUtilityAccount (S-1-5-21-3823661678-3611372174-1390376250-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 21.07 (x64) (HKLM\...\7-Zip) (Version: 21.07 - Igor Pavlov)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.134 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 7.06.02.123 - Advanced Micro Devices, Inc.)
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{43ab2cfd-3f71-4aa8-ab15-5f517f620c41}) (Version: 7.06.02.123 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
blender (HKLM\...\{447524DE-DB18-4E94-8D90-4FD62C00212F}) (Version: 3.4.1 - Blender Foundation)
Corsair Device Control Service (HKLM\...\{ADE422C8-E07A-42A5-8B9B-F9CDD1875C08}) (Version: 1.1.4 - Corsair)
Corsair iCUE5 Software (HKLM\...\{A9B0B2D7-8C59-4413-A2FB-99EDBE65A608}) (Version: 5.18.106 - Corsair)
Diablo II Resurrected (HKLM-x32\...\Diablo II Resurrected) (Version: - Blizzard Entertainment)
Diablo IV (HKLM-x32\...\Diablo IV) (Version: - Blizzard Entertainment)
DxO PhotoLab 7 (HKLM\...\{0B2F187E-2C6C-434C-87D0-86320DFB5864}) (Version: 7.19.0 - DxO)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.566.0.6079 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{70613246-0c75-4eb9-a5c4-d2b7a8e76e7f}) (Version: 13.566.0.6079 - Electronic Arts)
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ESET Security (HKLM\...\{7640EC0A-921E-44D1-9165-DE31D473EAE3}) (Version: 19.0.14.0 - ESET, spol. s r.o.)
Focusrite Audio Drivers 4.124.3.5 (HKLM\...\Focusrite Audio Drivers_is1) (Version: 4.124.3.5 - Focusrite Audio Engineering, Ltd.)
Focusrite Control 2 1.576.0.0 (HKLM\...\Focusrite Control 2_is1) (Version: 1.576.0.0 - Focusrite Audio Engineering Ltd.)
GIMP 2.10.36-1 (HKLM\...\GIMP-2_is1) (Version: 2.10.36 - The GIMP Team)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000230-0220-1029-84C8-B8D95FA3C8C3}) (Version: 22.230.0.2 - Intel Corporation)
IrfanView 4.70 (64-bit) (HKLM\...\IrfanView64) (Version: 4.70 - Irfan Skiljan)
Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-IE) (HKLM-x32\...\{998D5259-3BED-4710-98FF-D63387B5429E}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-NZ) (HKLM-x32\...\{07FC9CAD-FCEC-4186-BB83-EF7CCC9372BA}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-ES) (HKLM-x32\...\{F49AF755-A5C3-4252-A190-5772B2669C3B}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-MX) (HKLM-x32\...\{E8F3B154-03CE-4120-8B9D-9E83ED5F3AD7}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (fr-CA) (HKLM-x32\...\{7D179500-CA0C-4456-B624-C15876B15F39}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (fr-FR) (HKLM-x32\...\{4CC174AA-25BC-46FF-B1E2-13B24AFB6142}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (it-IT) (HKLM-x32\...\{969D900A-3481-4A77-B888-D24160D4D727}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (ja-JP) (HKLM-x32\...\{EDA8693D-9E82-4FD1-98C8-0DC4F9141E0F}) (Version: 11.0.7400.336 - Microsoft Corporation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2025.5.741244 - Logitech)
Luminar Neo (HKLM\...\Luminar Neo) (Version: 1.25.1.15981 - Skylum)
Microsoft .NET 6.0.16 - Windows Server Hosting (HKLM-x32\...\{58f3f479-fe1b-4cb4-b547-d6cb9196eac4}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft .NET Host - 6.0.16 (x64) (HKLM\...\{1D0AC7F1-2B34-44AF-91F6-88757D768DA7}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.16 (x86) (HKLM-x32\...\{5F37B629-52CB-480F-B71C-FD7F5E5AC674}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.18 (x86) (HKLM-x32\...\{B6730DA1-5D6F-4EF5-B8A7-CF82FC7E5290}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.16 (x64) (HKLM\...\{B8537ACA-B210-4DF5-B928-E41CEB76723D}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.16 (x86) (HKLM-x32\...\{D783E62B-5799-4D6C-8058-D9F1F16DDD37}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.18 (x86) (HKLM-x32\...\{76E94068-D600-47F9-8C91-DAF237498C78}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM\...\{C71E93D2-B8B4-4858-B2A1-4C967DBC1C5F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM-x32\...\{2a8d0f2b-911b-4b58-8252-46b29e7a4590}) (Version: 6.0.16.32323 - Microsoft Corporation)
Microsoft .NET Runtime - 6.0.16 (x86) (HKLM-x32\...\{D9C57643-68F6-4D39-8E6A-20107848904F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x86) (HKLM-x32\...\{f9b16c16-83ac-4b92-ab03-236229ebbf38}) (Version: 6.0.16.32323 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.18 (x86) (HKLM-x32\...\{ECB844FE-BC7B-4994-89AB-3EDA7D3CE179}) (Version: 64.72.35889 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 - Shared Framework (x64) (HKLM-x32\...\{ed4c6994-b659-4b75-a949-c8819e6c0aa9}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.16 - Shared Framework (x86) (HKLM-x32\...\{404f1909-b182-4aab-ad0a-04c727d70f13}) (Version: 6.0.16.23174 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.16 Hosting Bundle Options (HKLM-x32\...\{1DB68DD7-07DF-3B9C-A907-3E94A08E4651}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 Shared Framework (x64) (HKLM\...\{0DF7C481-9E91-3118-B877-6EA9084358AD}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.16 Shared Framework (x86) (HKLM-x32\...\{5545924B-28E4-37E9-9C29-84BF047EB3CB}) (Version: 6.0.16.23174 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.19426.20218 - Microsoft Corporation)
Microsoft OneNote - en-us (HKLM\...\OneNoteFreeRetail - en-us) (Version: 16.0.19426.20218 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (en-IN) (HKLM-x32\...\{3B06AC90-DE68-44A9-95EB-0A3C1AF1514F}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (pl-PL) (HKLM-x32\...\{BEFB9378-5E88-4266-8EB1-C92869449885}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (pt-BR) (HKLM-x32\...\{F6B5EB21-0ABF-487C-B9A9-D9DB259C4403}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (ru-RU) (HKLM-x32\...\{9419B7EA-6A4B-4A57-8E2A-3BDD4676118F}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (zh-CN) (HKLM-x32\...\{BAD2A75A-1708-47BA-A498-20890D2C78A7}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.16 (x64) (HKLM\...\{805626FF-2BC9-4567-A71E-A76A470D000A}) (Version: 48.67.58484 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.16 (x64) (HKLM-x32\...\{8d173101-98c1-4e92-97c6-47c6840745a7}) (Version: 6.0.16.32327 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.18 (x86) (HKLM-x32\...\{3d771bf1-8cb6-4242-85d8-7f3c989c6360}) (Version: 8.0.18.35017 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.18 (x86) (HKLM-x32\...\{89326E2B-5B52-42AE-BB95-782127D70E70}) (Version: 64.72.35986 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 146.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 128.4.2 - Mozilla)
NVIDIA Ovladače grafiky 581.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.15 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19426.20170 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 124.0.5705.42 (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Opera 124.0.5705.42) (Version: 124.0.5705.42 - Opera Software)
PDF-XChange Editor (HKLM\...\{27B09AC2-12E9-4B42-B5B7-D042A3E339E9}) (Version: 9.5.368.0 - Tracker Software Products (Canada) Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{7355a6b3-4efb-4023-88a1-8c00d955b625}) (Version: 9.5.368.0 - Tracker Software Products (Canada) Ltd.)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 4.0.563 - Razer Inc.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 9.0.0.910 - Samsung Electronics)
SILKYPIX Developer Studio Pro 11 for Panasonic English (HKLM-x32\...\{EEB6A270-8361-4933-BE31-F3BF8BFAFD2A}) (Version: 11 - Ichikawa Soft Laboratory)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.52 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
Warcraft III (HKLM-x32\...\Warcraft III) (Version: - Blizzard Entertainment)
Wargaming.net Game Center (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Wargaming.net Game Center) (Version: 25.5.1.491 - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\1014304189) (Version: - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Classic Era (HKLM-x32\...\World of Warcraft Classic Era) (Version: - Blizzard Entertainment)
Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-30] ()
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6901.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-03] ()
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7171.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
Apple Music -> C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa [2025-09-16] (Apple Inc.)
AppleInc.AppleDevices -> C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa [2025-10-16] (Apple Inc.) [Startup Task]
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-12-10] (Microsoft Windows)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2025-12-01] (Sparse Package)
Forza Horizon 5 -> C:\Program Files\WindowsApps\Microsoft.624F8B84B80_3.687.302.0_x64__8wekyb3d8bbwe [2025-09-30] (Microsoft Studios)
Forza Horizon 5: Rally Adventure -> C:\Program Files\WindowsApps\Microsoft.Expansion2FH5_3.573.834.0_x64__8wekyb3d8bbwe [2024-01-08] (Microsoft Studios)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa [2025-10-17] (Apple Inc.) [Startup Task]
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-12-21] ()
Microsoft Sonia (Natural) - English (United Kingdom) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-GB.Sonia.1_1.0.4.0_x64__cw5n1h2txyewy [2025-06-03] (Microsoft Windows)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-12-21] ()
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.11401.0_x64__8wekyb3d8bbwe [2025-10-22] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.5.2.0_x64__8wekyb3d8bbwe [2025-12-09] (Microsoft Studios)
Minecraft: Java Edition -> C:\Program Files\WindowsApps\Microsoft.MinecraftJavaEdition_1.0.5.0_x64__8wekyb3d8bbwe [2025-10-22] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-12-21] ()
Příslušenství pro Xbox -> C:\Program Files\WindowsApps\Microsoft.XboxDevices_2506.2505.28001.0_x64__8wekyb3d8bbwe [2025-06-20] (Microsoft Corporation)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.675.1142.0_x64__8wekyb3d8bbwe [2025-12-03] (Microsoft Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{fa5312d1-0b58-428a-bd93-3b87ef89945d}\localserver32 -> C:\Program Files\Skylum\Luminar Neo\Luminar Neo.exe (Skylum Software USA, Inc. -> Skylum)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\nvshext.dll [2025-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-26] (ESET, spol. s r.o. -> ESET)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-12-21 23:17 - 2025-12-21 23:17 - 000255488 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\15f68b51-b711-4ca5-976a-1cd4b8b0b78d.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000701952 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\8b57189a-d6af-4869-ae00-b91ea71d5f52.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000241664 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\8f8649bf-a97f-4517-90b3-2b2baa9b807f.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000223744 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\9d02572d-c108-46ff-ba04-1606260ac97a.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000281600 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\a6f751e2-e230-4b44-95b4-96782cef85a0.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000226304 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\b5d77fc9-4f80-4d4b-9f01-2a8933566e05.tmp.node
2025-12-21 23:17 - 2025-12-21 23:17 - 000380416 _____ () [File not signed] \\?\C:\Users\jakub\AppData\Local\Temp\dea03f27-1ba8-4acd-94ca-95a8af0f3161.tmp.node
2025-12-02 17:48 - 2025-11-12 00:08 - 002380800 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\ffmpeg.dll
2025-12-02 17:48 - 2025-11-12 00:08 - 000379904 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\libegl.dll
2025-12-02 17:48 - 2025-11-12 00:08 - 007021568 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\libglesv2.dll
2025-12-02 17:48 - 2025-11-12 00:07 - 000148480 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\resources\app\dist\magutils-napi.node
2025-12-02 17:48 - 2025-11-12 00:07 - 000573440 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\resources\app\dist\uimpewrapper-napi.node
2022-10-07 22:37 - 2025-11-12 00:08 - 004815872 _____ () [File not signed] C:\Program Files (x86)\Samsung\Samsung Magician\vk_swiftshader.dll
2022-05-14 19:52 - 2021-12-26 15:00 - 000093696 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2023-09-02 19:54 - 2023-09-02 19:54 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2023-09-02 19:54 - 2023-09-02 19:54 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 13:08 - 2021-06-05 13:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2023-05-21 20:20 - 2023-05-21 20:50 - 000000436 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r68x64.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX200 160MHz -> Netwtw10.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jakub\Pictures\Saved Pictures\wallpaper_02.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{04A1EBCB-5775-430A-9E21-88F5E18ABFD0}C:\program files\skylum\luminar neo\luminar neo.exe] => (Block) C:\program files\skylum\luminar neo\luminar neo.exe (Skylum Software USA, Inc. -> Skylum)
FirewallRules: [TCP Query User{13136E10-FCF8-41C0-8DD5-2BEB2CA3F670}C:\program files\skylum\luminar neo\luminar neo.exe] => (Block) C:\program files\skylum\luminar neo\luminar neo.exe (Skylum Software USA, Inc. -> Skylum)
FirewallRules: [UDP Query User{9F8E2406-6AD4-44C8-A2C4-31BA7A095674}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Block) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{D8291070-1C84-44CF-A0F3-2B8373813F9F}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Block) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{A92CD164-A1B0-4E85-AA8F-165F4186B89C}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{3C306A6F-6BC6-47AF-9D39-6A088D224C37}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{1DC8A9BE-4D04-4D50-9573-4571CFB2DBFB}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [TCP Query User{2CF200BD-8F38-4C55-94FF-AC45CCC6BA07}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [{95536C39-1BC0-433A-8D80-AD277D2BCBB3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{DDD43711-6E21-4681-B2FB-8607F2E04AB6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [{C4FD4928-9E56-41A6-95C4-0BE8B4F55817}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23091.406.2009.3890_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6D7AFF59-F285-48B8-AA77-B7469D7D2A5B}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23091.406.2009.3890_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{EE59DD07-17BD-4BB0-931E-9C8B169B8848}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{FD82373F-6CAA-471E-8ECB-3D58D70FB3CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{36190384-EC80-42F0-ACF3-31F99007B70A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{10E47B8C-9CD3-4951-BA60-E75D250D2807}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{339B9431-ECFF-427B-B5CC-F0CFC7881ACA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed]
FirewallRules: [{81F8CE53-A25E-41DD-A87B-4418776D6740}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed]
FirewallRules: [TCP Query User{F1998180-60F2-45B7-AEC7-5F137E163F1D}C:\program files\vlc\vlc.exe] => (Block) C:\program files\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{B1297F08-455C-43AA-8CEF-19232D00B164}C:\program files\vlc\vlc.exe] => (Block) C:\program files\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [TCP Query User{C0073C06-6EC1-4D59-9A73-D71E3F23D643}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{0EE68D9E-1933-4701-BCF5-D58AF8AF2C7F}C:\users\jakub\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\jakub\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{60FC4C9F-E13C-4427-93F3-06FE830DF335}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [UDP Query User{59F2D2B3-A44C-4453-9FC4-7234730E4864}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{B384890E-A8A6-4131-8802-912220A37902}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{AC8792CD-3110-437C-B4EC-7A9472D3FE4D}C:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) C:\xboxgames\forza horizon 5\content\forzahorizon5.exe (Access Denied) [File not signed?]
FirewallRules: [TCP Query User{3A62BB2D-DC74-429B-85D3-104D823DC274}C:\program files\focusrite\focusrite control 2\focusrite control 2.exe] => (Allow) C:\program files\focusrite\focusrite control 2\focusrite control 2.exe (Focusrite Audio Engineering Ltd.) [File not signed]
FirewallRules: [UDP Query User{1DCF5855-5DAD-471F-AECC-29FF4BA219E2}C:\program files\focusrite\focusrite control 2\focusrite control 2.exe] => (Allow) C:\program files\focusrite\focusrite control 2\focusrite control 2.exe (Focusrite Audio Engineering Ltd.) [File not signed]
FirewallRules: [TCP Query User{C3671F9A-4B54-4FD8-8257-1835D61FABBC}C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [UDP Query User{1E7E92B0-1F41-4261-AD98-38450A26392A}C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ea sports fc 25\fc25.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{9F10CC70-47AE-41B6-A76A-9F5ED271E67E}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{87E4CA1C-1941-4560-B725-9CE82EFE3CF8}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [{2C4B4D64-0EBD-4E28-9360-EF20699A7667}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{E8108480-390E-498C-8EA5-456550C5D73B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AppleMusic.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{1C2DEC60-2D30-48F8-8FFA-E597509DA5BA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{214F8B78-538E-413C-826E-BBF473635BCB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleMusicWin_1.1536.28673.0_x64__nzyj5cx40ttqa\AMPLibraryAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [TCP Query User{4F7D8184-BF8A-46C8-8C8C-140A10A6F487}E:\program files\10_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\program files\10_portable\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [UDP Query User{8F36A56A-BFB8-45F4-A08A-24E1373BB64C}E:\program files\10_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\program files\10_portable\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{601C0E5C-37E7-473F-A7EF-7E14E385DEFB}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{5D051254-9C65-4ED4-9455-54117C34132B}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{3F9B4276-E656-48C6-AC0B-FE141036E3D3}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [{6BDFE533-7508-427B-878A-2D4C8B3B4AA7}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [TCP Query User{12EB9E14-40F4-4FBC-B890-DF7BAE700047}E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe (Creative Assembly -> The Creative Assembly Ltd)
FirewallRules: [UDP Query User{BE083F6C-B0EC-4702-AB0E-979B0BD6798C}E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war warhammer iii\warhammer3.exe (Creative Assembly -> The Creative Assembly Ltd)
FirewallRules: [TCP Query User{78DC0AC5-E283-4DF7-9526-78A214BEDC72}E:\program files\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\program files\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{4CFCFDB1-E8DC-4BDC-99C0-08B4E4910C88}E:\program files\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\program files\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{13B7B26D-C9AA-42A1-8903-6B7BD3D8689F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3E29D606-44F2-4E3B-B5FE-CFE5BE46CA23}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{ECAAF3E2-F90E-431C-B0D4-9974B876F32F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1A705849-B128-4CBA-849A-7FCDBBDD49C4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E63A3282-250C-42D8-88EC-69FCC1364639}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{C772F5E6-03E8-4DA5-8FDC-6F986C528446}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E9AA12DC-23C4-4410-8AD6-538F86C3AB19}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4BE39C2A-EA37-4653-9AD5-660F58D774A5}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{37064034-C1EE-47F6-9FED-59106F0187E3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{B73201B8-F9A9-4FB8-8953-B328E2BDFEC8}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{3F5D63CE-1A7B-4C77-9836-7662F53E9673}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1C4908E4-8201-4F28-A2FA-253C178AED58}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{67605568-E87D-4323-9609-93BA56754919}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{61EAD1FA-F253-4BE2-A1A4-4EAAF1D9B971}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{244CC80D-DC5D-4C98-8098-2C741C37E4C6}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AMPDevicesAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6DD0F259-A0BC-440B-8B5B-A46158473BB4}] => (Allow) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AMPDevicesAgent.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D605CDCA-D7FF-4D1D-B6B3-828E12A3B185}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{93248EE0-013B-4459-B4F2-A9386D94BB11}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{C06CD439-87FB-4875-B9D0-4125DE602508}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{5C239A53-BDEB-4978-8D1C-D8B1121BC119}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{B76DB2C4-C9E8-4539-A5BB-08F6340237C8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{407091E2-835E-48AD-B335-8F44E56614E2}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{9441A880-5DD0-4595-B710-762FCE42D21B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{64F9447A-0C50-477A-9CF1-A8013A65F807}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12139.1.59021.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{F3773AAD-8AF6-4882-95CB-2D0E17CE63A1}] => (Allow) E:\Program Files\20_Steam\steamapps\common\F1 22\F1_22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{549741A8-78F4-4E35-A27D-9CBC68465909}] => (Allow) E:\Program Files\20_Steam\steamapps\common\F1 22\F1_22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{8DD828D7-9334-4B1E-BFC6-9F7527514D66}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe (Razer USA Ltd. -> Razer Inc.)
FirewallRules: [{D881E79B-7337-4D67-9112-97C24853AB46}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.503\RazerAppEngine.exe => No File
FirewallRules: [{F11C6D69-FDA7-401A-9EC1-DDBCB086EC1A}] => (Allow) E:\Program Files\20_Steam\steamapps\common\ofAshAndSteel\ofAshAndSteelGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{8BCB23C2-3D26-4072-B119-94472FECED58}] => (Allow) E:\Program Files\20_Steam\steamapps\common\ofAshAndSteel\ofAshAndSteelGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F7202628-646C-4D01-A973-1ADF14F07271}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [{DF3F0BC1-2CF0-47BB-93E4-BA06254E4430}] => (Allow) E:\Program Files\20_Steam\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd)
FirewallRules: [TCP Query User{DB87CDA5-670D-45A8-A0D1-09BC1C6A4C53}E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed]
FirewallRules: [UDP Query User{4D3B0522-039D-4B4B-9424-223A394ADAEB}E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) E:\program files\20_steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed]
FirewallRules: [TCP Query User{3C2C31A7-F4CE-4945-9A05-47ABF273931F}E:\program files\diablo iv\diablo iv.exe] => (Allow) E:\program files\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{EB8C7CFD-A26B-4E83-84D9-B3E81121D2ED}E:\program files\diablo iv\diablo iv.exe] => (Allow) E:\program files\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{AC3C42EB-200A-488D-855D-B1F64475EF70}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C2226426-79B4-408C-8AE0-2A32EA99D35A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/21/2025 11:20:43 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.26100.7309, časové razítko: 0xe3dfc84c
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x80131623
Posun chyby: 0x00007ffb1731200f
ID chybujícího procesu: 0x30a0
Čas spuštění chybující aplikace: 0x1dc72c80b46d1d4
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: 8b532cef-a95f-4242-a782-0c3183029a37
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (12/21/2025 11:20:43 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: wmiprvse.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Byla vyvolána neočekávaná výjimka od poskytovatele:
System.IO.FileLoadException:
File name: 'Microsoft.AppV.AppvClientComConsumer, Version=10.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'
at Microsoft.AppV.AppvPublishingServerWMI.AppvPublishingServer.EnumeratePublishingServers()
Stack:
at System.Environment.FailFast(System.String)
at WmiNative.WbemProvider.WmiNative.IWbemServices.CreateInstanceEnumAsync(System.String, Int32, WmiNative.IWbemContext, WmiNative.IWbemObjectSink)
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002
Error: (12/21/2025 11:20:41 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003
Error: (12/21/2025 11:17:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\ROCKET$ přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(141ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (12/21/2025 11:17:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:
GetCACaps
Metoda: GET(78ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (12/21/2025 11:16:32 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: GameManagerService3.exe, verze: 3.7.0.482, časové razítko: 0x65310000
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.7462, časové razítko: 0x832e17c6
Kód výjimky: 0xe0434352
Posun chyby: 0x00161e54
ID chybujícího procesu: 0x1164
Čas spuštění chybující aplikace: 0x1dc7255261c0244
Cesta k chybující aplikaci: C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: 138df670-5404-4e0e-87fc-06b049b496b6
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
System errors:
=============
Error: (12/21/2025 11:22:09 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Micro-Star International Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:1.F0;OEMModelBaseBoard:MPG X570 GAMING PRO CARBON WIFI (MS-7B93);OEMManufacturerName:Micro-Star International Co., Ltd.;OSArchitecture:amd64;
BucketId: d233b8fcee8301321be26b6d3c99be7fa08f093894905e1a7c1e003ea0d4a71e
BucketConfidenceLevel:
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (12/21/2025 11:16:20 PM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 11:16:20 PM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 10:03:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (12/21/2025 10:03:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (60000 ms).
Error: (12/21/2025 09:43:15 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Micro-Star International Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:1.F0;OEMModelBaseBoard:MPG X570 GAMING PRO CARBON WIFI (MS-7B93);OEMManufacturerName:Micro-Star International Co., Ltd.;OSArchitecture:amd64;
BucketId: d233b8fcee8301321be26b6d3c99be7fa08f093894905e1a7c1e003ea0d4a71e
BucketConfidenceLevel:
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (12/21/2025 12:05:58 AM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {740FE937-01F7-4482-AA62-C83F0AD3D6D0} se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/21/2025 12:05:58 AM) (Source: DCOM) (EventID: 10010) (User: ROCKET)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===============
Date: 2025-12-21 23:27:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
Date: 2025-12-21 23:22:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. 1.F0 03/21/2022
Motherboard: Micro-Star International Co., Ltd. MPG X570 GAMING PRO CARBON WIFI (MS-7B93)
Processor: AMD Ryzen 7 5700X 8-Core Processor
Percentage of memory in use: 26%
Total physical RAM: 32689.71 MB
Available physical RAM: 23873.36 MB
Total Virtual: 34737.71 MB
Available Virtual: 25896.72 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.59 GB) (Free:352.64 GB) (Model: Samsung SSD 980 PRO 1TB) NTFS
Drive d: (Data) (Fixed) (Total:1863 GB) (Free:815.49 GB) (Model: Samsung SSD 870 EVO 2TB) NTFS
Drive e: (App) (Fixed) (Total:1863 GB) (Free:1111.7 GB) (Model: Samsung SSD 990 EVO Plus 2TB) NTFS
\\?\Volume{8e65c78c-ba07-4d76-a404-aa4017a8ea00}\ () (Fixed) (Total:0.8 GB) (Free:0.11 GB) NTFS
\\?\Volume{9aff5c52-8de6-4b68-8d92-712ce72e95c7}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
A zde AdwCleaner log:
# -------------------------------
# Malwarebytes AdwCleaner 8.7.0.619
# -------------------------------
# Build: 12-17-2025
# Database: 2025-12-16.1 (Local)
# Support: https://help.malwarebytes.com/
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 12-22-2025
# Duration: 00:00:00
# OS: Windows 11 (Build 26200.7462)
# Cleaned: 1
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
Deleted C:\ProgramData\54F3DE4E-B7BA-4EBD-8B3B-385D272CC583
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
No malicious registry entries cleaned.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [1472 octets] - [22/12/2025 13:03:50]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zpomalení PC
OK. ADWC smazal jednoho šmejdíka. Otevřte poznámkový blok a zkopírujte do něj:
Uložte do E:\Temp\01_Download jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
C:\Users\jakub\AppData\Local\Temp
FirewallRules: [UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{EE59DD07-17BD-4BB0-931E-9C8B169B8848}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{10E47B8C-9CD3-4951-BA60-E75D250D2807}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [{D881E79B-7337-4D67-9112-97C24853AB46}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.503\RazerAppEngine.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\jakub\AppData\Local\2287057899
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zpomalení PC
Zde je log po Fix:
Fix result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by jakub (22-12-2025 21:43:14) Run:1
Running from E:\Temp\01_Download
Loaded Profiles: jakub
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
C:\Users\jakub\AppData\Local\Temp
FirewallRules: [UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{EE59DD07-17BD-4BB0-931E-9C8B169B8848}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{10E47B8C-9CD3-4951-BA60-E75D250D2807}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [{D881E79B-7337-4D67-9112-97C24853AB46}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.503\RazerAppEngine.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\jakub\AppData\Local\2287057899
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2 => removed successfully
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2} => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
"C:\Users\jakub\AppData\Local\Temp" Folder move:
Could not move "C:\Users\jakub\AppData\Local\Temp" => Scheduled to move on reboot.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE59DD07-17BD-4BB0-931E-9C8B169B8848}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{10E47B8C-9CD3-4951-BA60-E75D250D2807}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D881E79B-7337-4D67-9112-97C24853AB46}" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
C:\Users\jakub\AppData\Local\2287057899 => moved successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1254468411 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 860926348 B
Windows/system/drivers => 115766057 B
Edge => 0 B
Chrome => 506197841 B
Firefox => 1130631111 B
Opera => 6058734 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 44408276 B
systemprofile32 => 44409267 B
LocalService => 47240399 B
NetworkService => 47241501 B
jakub => 447247846 B
RecycleBin => 0 B
EmptyTemp: => 4.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 22-12-2025 21:46:54)
C:\Users\jakub\AppData\Local\Temp => Could not move
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
==== End of Fixlog 21:46:54 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by jakub (22-12-2025 21:43:14) Run:1
Running from E:\Temp\01_Download
Loaded Profiles: jakub
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
C:\Users\jakub\AppData\Local\Temp
FirewallRules: [UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe] => (Allow) E:\10_app\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe] => (Allow) E:\20_portable\qbittorrent\qbittorrent.exe => No File
FirewallRules: [{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{EE59DD07-17BD-4BB0-931E-9C8B169B8848}] => (Allow) E:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{10E47B8C-9CD3-4951-BA60-E75D250D2807}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe] => (Allow) E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe => No File
FirewallRules: [TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [{D881E79B-7337-4D67-9112-97C24853AB46}] => (Allow) C:\Program Files\Razer\RazerAppEngine\app-4.0.503\RazerAppEngine.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\jakub\AppData\Local\2287057899
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\86ca1aa0-34aa-4e8b-a509-50c905bae2a2 => removed successfully
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2} => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
"C:\Users\jakub\AppData\Local\Temp" Folder move:
Could not move "C:\Users\jakub\AppData\Local\Temp" => Scheduled to move on reboot.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0966DB43-E98F-4E71-AC90-452E76392F33}E:\10_app\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DE1E8E91-0181-413A-8713-BD8BD78A4401}E:\10_app\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5B301E87-D134-44CA-820D-E98F9A0D7759}E:\20_portable\qbittorrent\qbittorrent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{969610DA-D0FD-418A-990B-AC5380F398D8}E:\20_portable\qbittorrent\qbittorrent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BCC6F02A-C659-490F-99C6-7BE0B3E5E411}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE59DD07-17BD-4BB0-931E-9C8B169B8848}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{10E47B8C-9CD3-4951-BA60-E75D250D2807}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1C4EBCBB-1780-4E40-9822-5B7FA58BFB85}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3859E7DB-F93A-4654-956D-0B700AF186CA}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3B84D4C0-AF04-4FD5-B80C-DBAD34C00009}E:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5B206507-65C3-4B73-B681-5F1B4E5C4EA9}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AACCA5AA-A04E-493E-941C-7CA25A1E05D5}E:\steamlibrary\steamapps\common\forza motorsport\forza_steamworks_release_final.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{39EE9C68-8850-4385-AEEC-74A69DB92D73}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5A8B3707-964B-45C5-BCBE-5B46425178EE}E:\10_app\wargaming.net\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D881E79B-7337-4D67-9112-97C24853AB46}" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
C:\Users\jakub\AppData\Local\2287057899 => moved successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1254468411 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 860926348 B
Windows/system/drivers => 115766057 B
Edge => 0 B
Chrome => 506197841 B
Firefox => 1130631111 B
Opera => 6058734 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 44408276 B
systemprofile32 => 44409267 B
LocalService => 47240399 B
NetworkService => 47241501 B
jakub => 447247846 B
RecycleBin => 0 B
EmptyTemp: => 4.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 22-12-2025 21:46:54)
C:\Users\jakub\AppData\Local\Temp => Could not move
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
==== End of Fixlog 21:46:54 ====
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zpomalení PC
Vše smazáno. Zrychlil se chod?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?