
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Útok hackera
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Útok hackera
Zdravím,
včera večer mi hacker uzamčel obrazovku, vypnul antivir a snažil se získat údaje k PayPal. Rychle jsem vypnul PC a naštěstí se mu to nepovedlo.
Rád bych se ujistil, že nemám po něm v PC nějakou havěť.
Prosím Vás o kontrolu logu.
Moc díky!
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [3262544 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1EA117-9BB5-443E-95BB-567D65061E44} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-30] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-28]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-30]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-30]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-23]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-30] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-30 10:16 - 2025-12-30 10:17 - 000028988 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 10:13 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-30 10:17 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-29 16:19 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-30 10:17 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-30 10:17 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-30 10:17 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-30 10:17 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-30 10:17 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-30 10:05 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 09:48 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-30 09:23 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-30 09:23 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-30 09:23 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-30 09:23 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-30 09:18 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-30 09:17 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-30 09:17 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-30 09:17 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-30 03:05 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-30 03:01 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 01:53 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 20:32 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-30 10:17 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.69 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/30/2025 09:28:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x33e8
Čas spuštění chybující aplikace: 0x01dc79663b9e788a
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 20981919-17a3-4409-aa20-2240c5f44726
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 02:06:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x18d0
Čas spuštění chybující aplikace: 0x01dc79287a3fe5ae
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 4eb10140-3bb6-4084-be41-0b2276ba9716
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 01:57:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScreenConnect.WindowsFileManager.exe, verze: 24.4.4.9118, časové razítko: 0xc9d5f63e
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6280, časové razítko: 0x56511854
Kód výjimky: 0xc0020001
Posun chyby: 0x0000000000025369
ID chybujícího procesu: 0x36b0
Čas spuštění chybující aplikace: 0x01dc7927314934fc
Cesta k chybující aplikaci: C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsFileManager.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 7b84ebed-ff7b-4f23-a424-ab0879b3e706
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 04:23:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2bd0
Čas spuštění chybující aplikace: 0x01dc78d723d901fa
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: cd180515-a20a-40e0-b7e2-ad3d074a0a70
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 08:18:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x3f78
Čas spuštění chybující aplikace: 0x01dc7893609f1278
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: dbf79009-db6c-4c5b-9ea8-c903517e2303
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 04:09:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa4c
Čas spuštění chybující aplikace: 0x01dc780befe548f4
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 2ce96442-cae8-4fe8-8b3e-66ea2edf87a9
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 08:26:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x24d8
Čas spuštění chybující aplikace: 0x01dc77cb4eae4fd1
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: a17815c1-2d31-4cc8-ae52-a346a10cf71c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/27/2025 08:31:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AddInProcess32.exe, verze: 4.8.9037.0, časové razítko: 0x68472eac
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6456, časové razítko: 0xbf208242
Kód výjimky: 0xc000041d
Posun chyby: 0x0013b702
ID chybujícího procesu: 0x3ebc
Čas spuštění chybující aplikace: 0x01dc76fe238fcb29
Cesta k chybující aplikaci: C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 0fa618c2-772a-42a5-a7ee-bf96575ba70a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/30/2025 09:22:57 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 09:20:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 09:18:30 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:27 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:26 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:17:46 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Windows Defender:
================
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:VBS/Valyria.RP!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Windows\System32\InteL\Microsoft\xx.vbs
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-30 10:16:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
Date: 2025-12-30 09:49:11
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 27%
Total physical RAM: 32642.79 MB
Available physical RAM: 23769.96 MB
Total Virtual: 37506.79 MB
Available Virtual: 28946.68 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.69 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1265.83 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2295.94 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
včera večer mi hacker uzamčel obrazovku, vypnul antivir a snažil se získat údaje k PayPal. Rychle jsem vypnul PC a naštěstí se mu to nepovedlo.
Rád bych se ujistil, že nemám po něm v PC nějakou havěť.
Prosím Vás o kontrolu logu.
Moc díky!
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [3262544 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1EA117-9BB5-443E-95BB-567D65061E44} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-30] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-28]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-30]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-30]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-23]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-30] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-30 10:16 - 2025-12-30 10:17 - 000028988 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 10:13 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-30 10:17 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-29 16:19 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-30 10:17 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-30 10:17 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-30 10:17 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-30 10:17 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-30 10:17 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-30 10:05 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 09:48 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-30 09:23 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-30 09:23 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-30 09:23 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-30 09:23 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-30 09:18 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-30 09:17 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-30 09:17 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-30 09:17 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-30 03:05 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-30 03:01 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 01:53 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 20:32 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-30 10:17 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.69 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/30/2025 09:28:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x33e8
Čas spuštění chybující aplikace: 0x01dc79663b9e788a
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 20981919-17a3-4409-aa20-2240c5f44726
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 02:06:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x18d0
Čas spuštění chybující aplikace: 0x01dc79287a3fe5ae
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 4eb10140-3bb6-4084-be41-0b2276ba9716
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 01:57:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScreenConnect.WindowsFileManager.exe, verze: 24.4.4.9118, časové razítko: 0xc9d5f63e
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6280, časové razítko: 0x56511854
Kód výjimky: 0xc0020001
Posun chyby: 0x0000000000025369
ID chybujícího procesu: 0x36b0
Čas spuštění chybující aplikace: 0x01dc7927314934fc
Cesta k chybující aplikaci: C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsFileManager.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 7b84ebed-ff7b-4f23-a424-ab0879b3e706
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 04:23:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2bd0
Čas spuštění chybující aplikace: 0x01dc78d723d901fa
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: cd180515-a20a-40e0-b7e2-ad3d074a0a70
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 08:18:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x3f78
Čas spuštění chybující aplikace: 0x01dc7893609f1278
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: dbf79009-db6c-4c5b-9ea8-c903517e2303
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 04:09:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa4c
Čas spuštění chybující aplikace: 0x01dc780befe548f4
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 2ce96442-cae8-4fe8-8b3e-66ea2edf87a9
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 08:26:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x24d8
Čas spuštění chybující aplikace: 0x01dc77cb4eae4fd1
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: a17815c1-2d31-4cc8-ae52-a346a10cf71c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/27/2025 08:31:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AddInProcess32.exe, verze: 4.8.9037.0, časové razítko: 0x68472eac
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6456, časové razítko: 0xbf208242
Kód výjimky: 0xc000041d
Posun chyby: 0x0013b702
ID chybujícího procesu: 0x3ebc
Čas spuštění chybující aplikace: 0x01dc76fe238fcb29
Cesta k chybující aplikaci: C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 0fa618c2-772a-42a5-a7ee-bf96575ba70a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/30/2025 09:22:57 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 09:20:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 09:18:30 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:27 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:26 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:17:46 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Windows Defender:
================
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:VBS/Valyria.RP!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Windows\System32\InteL\Microsoft\xx.vbs
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-30 10:16:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
Date: 2025-12-30 09:49:11
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 27%
Total physical RAM: 32642.79 MB
Available physical RAM: 23769.96 MB
Total Virtual: 37506.79 MB
Available Virtual: 28946.68 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.69 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1265.83 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2295.94 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
- Rudy
- Site Admin

- Příspěvky: 119694
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Útok hackera
Zdravím!
Nejprve spusťte tuto utilitu:¨
Nejprve spusťte tuto utilitu:¨
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Útok hackera
Ok, musel jsem použít starší verzi programu:
# AdwCleaner v6.044 - Log vytvořen 30/12/2025 v 18:28:40
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-02-28.2 [Místní]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Zbyse - DESKTOP-ZS
# Spuštěno z : C:\Users\Zbyse\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Hodnota smazána: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
[#] Hodnota smazána po restartu: [x64] HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1016 Bajty] - [30/12/2025 18:28:40]
C:\AdwCleaner\AdwCleaner[S0].txt - [1515 Bajty] - [30/12/2025 18:24:05]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1162 Bajty] ##########
# AdwCleaner v6.044 - Log vytvořen 30/12/2025 v 18:28:40
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-02-28.2 [Místní]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Zbyse - DESKTOP-ZS
# Spuštěno z : C:\Users\Zbyse\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Hodnota smazána: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
[#] Hodnota smazána po restartu: [x64] HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1016 Bajty] - [30/12/2025 18:28:40]
C:\AdwCleaner\AdwCleaner[S0].txt - [1515 Bajty] - [30/12/2025 18:24:05]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1162 Bajty] ##########
- Rudy
- Site Admin

- Příspěvky: 119694
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Útok hackera
OK. Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Útok hackera
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by Zbyse (administrator) on DESKTOP-ZS (31-12-2025 09:42:42)
Running from C:\Users\Zbyse\Desktop\FRST64.exe
Loaded Profiles: Zbyse
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe <2>
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4D639003-DC4D-48DA-8D4C-3236CC8A23E7} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-31] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-30]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-31]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-30]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-31]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-30]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-30]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-31] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-31 09:42 - 2025-12-31 09:43 - 000028761 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 18:21 - 2025-12-30 18:21 - 004031440 _____ C:\Users\Zbyse\Desktop\adwcleaner_6.044.exe
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 18:28 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-31 09:44 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-30 18:08 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-31 09:43 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-31 09:43 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-31 09:43 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-31 09:43 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-31 09:37 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-31 09:30 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-31 09:30 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-31 09:30 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-31 09:30 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-31 09:28 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-31 09:24 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-31 09:24 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-31 09:23 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-31 09:23 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-31 09:23 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-31 02:58 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-31 02:57 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 18:16 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-30 17:49 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-31 09:43 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by Zbyse (31-12-2025 09:44:15)
Running from C:\Users\Zbyse\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.68 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/31/2025 09:33:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2670
Čas spuštění chybující aplikace: 0x01dc7a3035e2fa8c
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 942a699a-a516-4bff-9ba4-5f1816767103
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:39:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa44
Čas spuštění chybující aplikace: 0x01dc79b33fd88639
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: d555648c-b9a0-4bad-b2fe-102079ec385b
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x1654
Čas spuštění chybující aplikace: 0x01dc79b01a6d84fc
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: 8e83edee-6aee-4f28-9efa-acd543aba28f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0xad4
Čas spuštění chybující aplikace: 0x01dc79b0107b67b3
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: a6f04aac-853f-42fa-8683-bbbcf040b824
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x3414
Čas spuštění chybující aplikace: 0x01dc79b00e90bb36
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: ab0242ae-aa27-42b5-8c5d-73e907254653
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x40a8
Čas spuštění chybující aplikace: 0x01dc79b00af22d9b
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: 1a000b3f-6cde-415a-ab61-160184b26eb0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:12:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xabc
Čas spuštění chybující aplikace: 0x01dc79af8a4c5bf7
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: ddbbf6ef-2b48-4c8a-96c9-b558314c0188
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:11:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x2cd4
Čas spuštění chybující aplikace: 0x01dc79af5b5c9c1b
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: cd2f44ed-89f7-45e3-9492-8b5f3c0e81b5
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/31/2025 09:28:53 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/31/2025 09:25:56 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/31/2025 09:23:42 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Error: (12/30/2025 06:34:22 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 06:31:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 06:29:11 PM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Error: (12/30/2025 06:28:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba zařazování tisku neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.
Error: (12/30/2025 06:28:43 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba Spooler se nemohla přihlásit jako NT AUTHORITY\SYSTEM s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.
Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).
Windows Defender:
================
Date: 2025-12-30 18:26:09
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{275C6DFD-0534-4CC1-A9F7-D5E4EA2DDF4B}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъVlastní prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьŪⁿкйθẃή
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-31 09:27:32
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 16%
Total physical RAM: 32642.79 MB
Available physical RAM: 27232.25 MB
Total Virtual: 37506.79 MB
Available Virtual: 31199.98 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.68 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1278.32 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2298.75 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
Ran by Zbyse (administrator) on DESKTOP-ZS (31-12-2025 09:42:42)
Running from C:\Users\Zbyse\Desktop\FRST64.exe
Loaded Profiles: Zbyse
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe <2>
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4D639003-DC4D-48DA-8D4C-3236CC8A23E7} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-31] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-30]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-31]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-30]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-31]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-31]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-30]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-30]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-31] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-31 09:42 - 2025-12-31 09:43 - 000028761 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 18:21 - 2025-12-30 18:21 - 004031440 _____ C:\Users\Zbyse\Desktop\adwcleaner_6.044.exe
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 18:28 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-31 09:44 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-30 18:08 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-31 09:43 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-31 09:43 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-31 09:43 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-31 09:43 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-31 09:37 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-31 09:30 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-31 09:30 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-31 09:30 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-31 09:30 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-31 09:28 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-31 09:24 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-31 09:24 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-31 09:23 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-31 09:23 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-31 09:23 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-31 02:58 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-31 02:57 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 18:16 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-30 17:49 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-31 09:43 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by Zbyse (31-12-2025 09:44:15)
Running from C:\Users\Zbyse\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.68 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/31/2025 09:33:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2670
Čas spuštění chybující aplikace: 0x01dc7a3035e2fa8c
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 942a699a-a516-4bff-9ba4-5f1816767103
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:39:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa44
Čas spuštění chybující aplikace: 0x01dc79b33fd88639
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: d555648c-b9a0-4bad-b2fe-102079ec385b
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x1654
Čas spuštění chybující aplikace: 0x01dc79b01a6d84fc
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: 8e83edee-6aee-4f28-9efa-acd543aba28f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0xad4
Čas spuštění chybující aplikace: 0x01dc79b0107b67b3
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: a6f04aac-853f-42fa-8683-bbbcf040b824
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x3414
Čas spuštění chybující aplikace: 0x01dc79b00e90bb36
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: ab0242ae-aa27-42b5-8c5d-73e907254653
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:16:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x40a8
Čas spuštění chybující aplikace: 0x01dc79b00af22d9b
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: 1a000b3f-6cde-415a-ab61-160184b26eb0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:12:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xabc
Čas spuštění chybující aplikace: 0x01dc79af8a4c5bf7
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: ddbbf6ef-2b48-4c8a-96c9-b558314c0188
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 06:11:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Název chybujícího modulu: AdwCleaner.exe, verze: 8.5.0.595, časové razítko: 0x67c85360
Kód výjimky: 0xc0000005
Posun chyby: 0x000c2ca2
ID chybujícího procesu: 0x2cd4
Čas spuštění chybující aplikace: 0x01dc79af5b5c9c1b
Cesta k chybující aplikaci: C:\Users\Zbyse\Desktop\AdwCleaner.exe
Cesta k chybujícímu modulu: C:\Users\Zbyse\Desktop\AdwCleaner.exe
ID zprávy: cd2f44ed-89f7-45e3-9492-8b5f3c0e81b5
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/31/2025 09:28:53 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/31/2025 09:25:56 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/31/2025 09:23:42 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Error: (12/30/2025 06:34:22 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 06:31:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 06:29:11 PM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Error: (12/30/2025 06:28:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba zařazování tisku neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.
Error: (12/30/2025 06:28:43 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba Spooler se nemohla přihlásit jako NT AUTHORITY\SYSTEM s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.
Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).
Windows Defender:
================
Date: 2025-12-30 18:26:09
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{275C6DFD-0534-4CC1-A9F7-D5E4EA2DDF4B}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъVlastní prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьŪⁿкйθẃή
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-31 09:27:32
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 16%
Total physical RAM: 32642.79 MB
Available physical RAM: 27232.25 MB
Total Virtual: 37506.79 MB
Available Virtual: 31199.98 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.68 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1278.32 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2298.75 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
- Rudy
- Site Admin

- Příspěvky: 119694
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Útok hackera
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {4D639003-DC4D-48DA-8D4C-3236CC8A23E7} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-31] () [File not signed] <==== ATTENTION
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
C:\DumpStack.log.tmp
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
C:\Users\Zbyse\SystemRootDoc\tbb.dll
C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
EmptyTemp:
Hosts:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Útok hackera
Udělal jsem to, jak jste psal.
ALE: při najetí přihlašovací obrazovky do WIN 10 jsem zadal přihlašovací pin a hlásí to nesprávné heslo.
Nemohu se tedy dostat do Windows.
Nevíte, jak mám nyní postupovat?
Děkuji.
ALE: při najetí přihlašovací obrazovky do WIN 10 jsem zadal přihlašovací pin a hlásí to nesprávné heslo.
Nemohu se tedy dostat do Windows.
Nevíte, jak mám nyní postupovat?
Děkuji.
- Rudy
- Site Admin

- Příspěvky: 119694
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Útok hackera
To znamená, že vám tam hacker propašoval něco skrytého, co se spustilo až nyní. Po úspěšném přihlášení bude třeba ještě hloubkový sken. Návod zde: https://wintip.cz/610-jak-se-dostat-do- ... el-a-heslo .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Útok hackera
Aha, díky.
Raději jsem přeinstaloval Windows s naformátováním disku.
Takže by to mělo být Ok.
Děkuji Vám za pomoc a můžete to vlákno locknout.
Děkuji.
Raději jsem přeinstaloval Windows s naformátováním disku.
Takže by to mělo být Ok.
Děkuji Vám za pomoc a můžete to vlákno locknout.
Děkuji.
- Rudy
- Site Admin

- Příspěvky: 119694
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Útok hackera
To by mělo být OK. Ten návod opravdu funguje (mám odzkoušeno po zapomenutí hesla). Nevadí, bylo to jen trochu delší. Nemáte zač. Šťastný a veselý! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?